Anonymous
2026-06-03 09:01:31
(21 hours ago)
Jun 3 05:01:30 localhost kernel: [108822605.107426] iptables_INPUT_denied: IN=eth0 OUT= MAC=f2:3c:9 ...
show more
Jun 3 05:01:30 localhost kernel: [108822605.107426] iptables_INPUT_denied: IN=eth0 OUT= MAC=f2:3c:91:84:83:95:00:00:0c:9f:f0:1e:08:00 SRC=52.161.83.198 DST=[mungedIP2] LEN=60 TOS=0x00 PREC=0x40 TTL=46 ID=62581 DF PROTO=TCP SPT=3666 DPT=2082 WINDOW=64240 RES=0x00 SYN URGP=0
Jun 3 05:01:30 localhost kernel: [108822605.107446] iptables_INPUT_denied: IN=eth0 OUT= MAC=f2:3c:91:84:83:95:00:00:0c:9f:f0:1e:08:00 SRC=52.161.83.198 DST=[mungedIP2] LEN=60 TOS=0x00 PREC=0x40 TTL=46 ID=62581 DF PROTO=TCP SPT=3666 DPT=2082 SEQ=3187369672 ACK=0 WINDOW=64240 RES=0x00 SYN URGP=0 OPT (020405A00402080A6ABC33C8000000000103030A)
Jun 3 05:01:30 localhost kernel: [108822605.107882] iptables_INPUT_denied: IN=eth0 OUT= MAC=f2:3c:91:84:83:95:00:00:0c:9f:f0:1e:08:00 SRC=52.161.83.198 DST=[mungedIP2] LEN=60 TOS=0x00 PREC=0x40 TTL=43 ID=55065 DF PROTO=TCP SPT=3660 DPT=2083 WINDOW=64240 RES=0x00 SYN URGP=0
Jun 3 05:01:30 localhost kernel: [108822605.113409] iptables_INPUT_denied: IN=eth0 OUT= MAC=f2:3c:91:84:83:95:00:00:0c:9f:f0:1e
show less
Port Scan
๐บ๐ธ
MPL
2026-06-03 06:48:56
(23 hours ago)
tcp/80
Port Scan
๐น๐ท
Threat.live
2026-06-03 06:20:03
(23 hours ago)
Suspicious Connection Attempts
Brute-Force
๐ฌ๐ง
PeravixGroup
2026-06-03 04:07:10
(1 day ago)
Honeypot detection: Web application scanning / reconnaissance attempt on port 8443. Severity: LOW. A ...
show more
Honeypot detection: Web application scanning / reconnaissance attempt on port 8443. Severity: LOW. Aaran.cloud
show less
Port Scan
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-03 04:04:10
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 52.161.83.198 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 52.161.83.198 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 00:04:06.448879 2026] [security2:error] [pid 32286:tid 32286] [client 52.161.83.198:3146] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.10"] [uri "/.env.backup"] [unique_id "ah-ntq6dIvqz-0cPMRGHyQAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐น๐ท
SeczarSecureOps
2026-06-03 04:01:27
(1 day ago)
Auto-blocked by Seczar SecureOps โ Port Scan Detection (7 events in 10min) at 2026-06-03 04:01
Port Scan
๐ท๐ธ
Scan
2026-06-03 00:07:12
(1 day ago)
MultiHost/MultiPort Probe, Scan, Hack -
Port Scan
Hacking
Anonymous
2026-06-02 23:00:00
(1 day ago)
SSH Brute-Force
DDoS Attack
Port Scan
Hacking
Brute-Force
SSH
๐ฆ๐น
urnilxfgbez
2026-06-02 22:45:00
(1 day ago)
Last 24 Hours suspicious: (DPT=445|DPT=3389|DPT=22|DPT=3306|DPT=8080|DPT=23|DPT=5900|DPT=1433)
Port Scan
๐บ๐ธ
MPL
2026-06-02 19:50:44
(1 day ago)
tcp port scan (4 or more attempts)
Port Scan
๐บ๐ธ
MPL
2026-06-02 19:41:06
(1 day ago)
tcp port scan (6 or more attempts)
Port Scan
๐ฉ๐ช
ITSNF
2026-06-02 19:35:05
(1 day ago)
Blocked by os-abuseipdb; 7 hits, proto=tcp, ports=2082,2083,2086,443,80,8080,8443
Port Scan
Hacking
๐ฉ๐ช
gadix
2026-06-02 18:51:24
(1 day ago)
[02/Jun/2026:20:51:17.167785 +0200] ah8mJX3wVOHJ6ZkKSxFtSQAAAAQ 52.161.83.198 37150 127.0.0.1 7080
[ ...
show more
[02/Jun/2026:20:51:17.167785 +0200] ah8mJX3wVOHJ6ZkKSxFtSQAAAAQ 52.161.83.198 37150 127.0.0.1 7080
[02/Jun/2026:20:51:19.877169 +0200] ah8mJ6oI0CTaKXZMnigYogAAAAc 52.161.83.198 37152 127.0.0.1 7080
[02/Jun/2026:20:51:22.678028 +0200] ah8mKpb23XJigH5S6vGr_wAAAA0 52.161.83.198 46546 127.0.0.1 7081
...
show less
Web App Attack
๐ฌ๐ง
PeravixGroup
2026-06-02 18:37:48
(1 day ago)
Honeypot detection: Web application scanning / reconnaissance attempt on port 8080. Severity: LOW. A ...
show more
Honeypot detection: Web application scanning / reconnaissance attempt on port 8080. Severity: LOW. Aaran.cloud
show less
Port Scan
Bad Web Bot
๐ฎ๐น
madaello
2026-06-02 17:50:28
(1 day ago)
52.161.83.198 - - [02/Jun/2026:19:50:08 +0200] "GET /.git/HEAD HTTP/1.1" 301 604 "-" "Mozilla/5.0 (M ...
show more
52.161.83.198 - - [02/Jun/2026:19:50:08 +0200] "GET /.git/HEAD HTTP/1.1" 301 604 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 14_4_1) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.4 Safari/605.1.15"
52.161.83.198 - - [02/Jun/2026:19:50:11 +0200] "GET /.env HTTP/1.1" 301 594 "-" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
52.161.83.198 - - [02/Jun/2026:19:50:14 +0200] "GET /.env.production HTTP/1.1" 301 616 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36 Edg/124.0.0.0"
52.161.83.198 - - [02/Jun/2026:19:50:27 +0200] "GET /server-status HTTP/1.1" 301 4699 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 14_4_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
...
show less
Hacking