๐ง๐ท
SOC Blue Team
2026-06-27 01:25:48
(1 day ago)
IPs get by Hunting on SIEM
Phishing
Web Spam
Port Scan
Hacking
๐จ๐ญ
Mario Bretscher
2026-06-19 10:54:49
(1 week ago)
19-Jun-2026 12:54:48.427 security: info: client @0x7fb959e1de38 60.215.138.228#50914 (ns2.letsbuild. ...
show more
19-Jun-2026 12:54:48.427 security: info: client @0x7fb959e1de38 60.215.138.228#50914 (ns2.letsbuild.ch): view Extern: query 'ns2.letsbuild.ch/AAAA/IN' denied
19-Jun-2026 12:54:48.433 security: info: client @0x7fb95016b2f8 60.215.138.228#47639 (ns2.letsbuild.ch): view Extern: query 'ns2.letsbuild.ch/A/IN' denied
19-Jun-2026 12:54:48.445 security: info: client @0x7fb95401d8e8 60.215.138.228#49122 (ns1.letsbuild.ch): view Extern: query 'ns1.letsbuild.ch/AAAA/IN' denied
19-Jun-2026 12:54:48.476 security: info: client @0x7fb95016b2f8 60.215.138.228#47284 (ns3.letsbuild.ch): view Extern: query 'ns3.letsbuild.ch/A/IN' denied
19-Jun-2026 12:54:48.478 security: info: client @0x7fb948070978 60.215.138.228#20521 (ns3.letsbuild.ch): view Extern: query 'ns3.letsbuild.ch/AAAA/IN' denied
...
show less
Web App Attack
๐จ๐ญ
Mario Bretscher
2026-05-30 08:22:43
(4 weeks ago)
30-May-2026 10:22:42.539 security: info: client @0x786eb02dab48 60.215.138.228#11870 (ns2.letsbuild. ...
show more
30-May-2026 10:22:42.539 security: info: client @0x786eb02dab48 60.215.138.228#11870 (ns2.letsbuild.ch): view Extern: query 'ns2.letsbuild.ch/AAAA/IN' denied
30-May-2026 10:22:42.541 security: info: client @0x786eb02dab48 60.215.138.228#27511 (ns3.letsbuild.ch): view Extern: query 'ns3.letsbuild.ch/A/IN' denied
30-May-2026 10:22:42.543 security: info: client @0x786eac057608 60.215.138.228#16516 (ns2.letsbuild.ch): view Extern: query 'ns2.letsbuild.ch/A/IN' denied
30-May-2026 10:22:42.566 security: info: client @0x786eb9ce5f78 60.215.138.228#10596 (ns3.letsbuild.ch): view Extern: query 'ns3.letsbuild.ch/AAAA/IN' denied
30-May-2026 10:22:42.597 security: info: client @0x786eb02dab48 60.215.138.228#4578 (ns1.letsbuild.ch): view Extern: query 'ns1.letsbuild.ch/A/IN' denied
...
show less
Web App Attack
๐จ๐ญ
Mario Bretscher
2026-05-28 03:39:55
(1 month ago)
28-May-2026 05:39:54.672 security: info: client @0x786eb02f3808 60.215.138.228#14355 (ns3.letsbuild. ...
show more
28-May-2026 05:39:54.672 security: info: client @0x786eb02f3808 60.215.138.228#14355 (ns3.letsbuild.ch): view Extern: query 'ns3.letsbuild.ch/A/IN' denied
28-May-2026 05:39:54.674 security: info: client @0x786eac0068a8 60.215.138.228#8103 (ns3.letsbuild.ch): view Extern: query 'ns3.letsbuild.ch/AAAA/IN' denied
28-May-2026 05:39:54.677 security: info: client @0x786eb9ced4c8 60.215.138.228#7149 (ns1.letsbuild.ch): view Extern: query 'ns1.letsbuild.ch/AAAA/IN' denied
28-May-2026 05:39:54.695 security: info: client @0x786eb9ced4c8 60.215.138.228#20452 (ns2.letsbuild.ch): view Extern: query 'ns2.letsbuild.ch/AAAA/IN' denied
28-May-2026 05:39:54.724 security: info: client @0x786eac0068a8 60.215.138.228#37415 (ns1.letsbuild.ch): view Extern: query 'ns1.letsbuild.ch/A/IN' denied
...
show less
Web App Attack
๐ฉ๐ช
Petros Stefanakis
2026-05-23 15:38:29
(1 month ago)
(bind) bind triggered by 60.215.138.228 (CN/China/-)
Hacking
๐จ๐ญ
Mario Bretscher
2026-05-16 07:16:02
(1 month ago)
16-May-2026 09:16:00.754 security: info: client @0x74ae24031568 60.215.138.228#54008 (ns1.letsbuild. ...
show more
16-May-2026 09:16:00.754 security: info: client @0x74ae24031568 60.215.138.228#54008 (ns1.letsbuild.ch): view Extern: query 'ns1.letsbuild.ch/A/IN' denied
16-May-2026 09:16:00.772 security: info: client @0x74ae3422e648 60.215.138.228#26833 (ns3.letsbuild.ch): view Extern: query 'ns3.letsbuild.ch/AAAA/IN' denied
16-May-2026 09:16:00.803 security: info: client @0x74ae24031568 60.215.138.228#46388 (ns3.letsbuild.ch): view Extern: query 'ns3.letsbuild.ch/A/IN' denied
16-May-2026 09:16:00.810 security: info: client @0x74ae20011c28 60.215.138.228#44273 (ns2.letsbuild.ch): view Extern: query 'ns2.letsbuild.ch/A/IN' denied
16-May-2026 09:16:00.850 security: info: client @0x74ae20011c28 60.215.138.228#28472 (ns1.letsbuild.ch): view Extern: query 'ns1.letsbuild.ch/AAAA/IN' denied
...
show less
Web App Attack
๐จ๐ญ
Mario Bretscher
2026-05-14 06:30:32
(1 month ago)
14-May-2026 08:30:31.205 security: info: client @0x74ae24138148 60.215.138.228#30370 (ns3.letsbuild. ...
show more
14-May-2026 08:30:31.205 security: info: client @0x74ae24138148 60.215.138.228#30370 (ns3.letsbuild.ch): view Extern: query 'ns3.letsbuild.ch/A/IN' denied
14-May-2026 08:30:31.252 security: info: client @0x74ae24138148 60.215.138.228#42626 (ns1.letsbuild.ch): view Extern: query 'ns1.letsbuild.ch/AAAA/IN' denied
14-May-2026 08:30:31.263 security: info: client @0x74ae24138148 60.215.138.228#23598 (ns1.letsbuild.ch): view Extern: query 'ns1.letsbuild.ch/A/IN' denied
14-May-2026 08:30:31.310 security: info: client @0x74ae340e2ea8 60.215.138.228#57614 (ns3.letsbuild.ch): view Extern: query 'ns3.letsbuild.ch/AAAA/IN' denied
14-May-2026 08:30:31.323 security: info: client @0x74ae3dd13d28 60.215.138.228#41223 (ns2.letsbuild.ch): view Extern: query 'ns2.letsbuild.ch/A/IN' denied
...
show less
Web App Attack
๐จ๐ญ
Mario Bretscher
2026-05-10 07:55:18
(1 month ago)
10-May-2026 09:55:16.865 security: info: client @0x74ae24192758 60.215.138.228#53456 (ns2.letsbuild. ...
show more
10-May-2026 09:55:16.865 security: info: client @0x74ae24192758 60.215.138.228#53456 (ns2.letsbuild.ch): view Extern: query 'ns2.letsbuild.ch/A/IN' denied
10-May-2026 09:55:16.871 security: info: client @0x74ae200db968 60.215.138.228#23849 (ns1.letsbuild.ch): view Extern: query 'ns1.letsbuild.ch/AAAA/IN' denied
10-May-2026 09:55:16.873 security: info: client @0x74ae3400e018 60.215.138.228#45044 (ns3.letsbuild.ch): view Extern: query 'ns3.letsbuild.ch/A/IN' denied
10-May-2026 09:55:16.876 security: info: client @0x74ae200db968 60.215.138.228#31280 (ns2.letsbuild.ch): view Extern: query 'ns2.letsbuild.ch/AAAA/IN' denied
10-May-2026 09:55:16.893 security: info: client @0x74ae3400e018 60.215.138.228#20045 (ns1.letsbuild.ch): view Extern: query 'ns1.letsbuild.ch/A/IN' denied
...
show less
Web App Attack
๐จ๐ญ
Mario Bretscher
2026-04-28 15:43:51
(1 month ago)
28-Apr-2026 17:43:49.628 security: info: client @0x761b41cdf858 60.215.138.228#57122 (ns1.letsbuild. ...
show more
28-Apr-2026 17:43:49.628 security: info: client @0x761b41cdf858 60.215.138.228#57122 (ns1.letsbuild.ch): view Extern: query 'ns1.letsbuild.ch/AAAA/IN' denied
28-Apr-2026 17:43:49.649 security: info: client @0x761b41cdf858 60.215.138.228#58327 (ns2.letsbuild.ch): view Extern: query 'ns2.letsbuild.ch/A/IN' denied
28-Apr-2026 17:43:49.649 security: info: client @0x761b341ba498 60.215.138.228#58467 (ns2.letsbuild.ch): view Extern: query 'ns2.letsbuild.ch/AAAA/IN' denied
28-Apr-2026 17:43:49.693 security: info: client @0x761b2c121b68 60.215.138.228#63561 (ns3.letsbuild.ch): view Extern: query 'ns3.letsbuild.ch/AAAA/IN' denied
28-Apr-2026 17:43:49.754 security: info: client @0x761b38384a08 60.215.138.228#45006 (ns3.letsbuild.ch): view Extern: query 'ns3.letsbuild.ch/A/IN' denied
...
show less
Web App Attack
๐จ๐ญ
Mario Bretscher
2026-04-28 14:27:43
(1 month ago)
28-Apr-2026 16:27:41.102 security: info: client @0x761b41cdf858 60.215.138.228#29290 (ns3.letsbuild. ...
show more
28-Apr-2026 16:27:41.102 security: info: client @0x761b41cdf858 60.215.138.228#29290 (ns3.letsbuild.ch): view Extern: query 'ns3.letsbuild.ch/AAAA/IN' denied
28-Apr-2026 16:27:41.112 security: info: client @0x761b38384a08 60.215.138.228#39850 (ns2.letsbuild.ch): view Extern: query 'ns2.letsbuild.ch/AAAA/IN' denied
28-Apr-2026 16:27:41.170 security: info: client @0x761b2c121b68 60.215.138.228#28621 (ns1.letsbuild.ch): view Extern: query 'ns1.letsbuild.ch/AAAA/IN' denied
28-Apr-2026 16:27:41.172 security: info: client @0x761b34021888 60.215.138.228#31740 (ns2.letsbuild.ch): view Extern: query 'ns2.letsbuild.ch/A/IN' denied
28-Apr-2026 16:27:41.172 security: info: client @0x761b341e6058 60.215.138.228#18542 (ns1.letsbuild.ch): view Extern: query 'ns1.letsbuild.ch/A/IN' denied
...
show less
Web App Attack
๐จ๐ญ
Mario Bretscher
2026-04-28 08:20:16
(1 month ago)
28-Apr-2026 10:20:14.281 security: info: client @0x761b2c161b48 60.215.138.228#25230 (ns2.letsbuild. ...
show more
28-Apr-2026 10:20:14.281 security: info: client @0x761b2c161b48 60.215.138.228#25230 (ns2.letsbuild.ch): view Extern: query 'ns2.letsbuild.ch/A/IN' denied
28-Apr-2026 10:20:14.287 security: info: client @0x761b41cdf858 60.215.138.228#5938 (ns1.letsbuild.ch): view Extern: query 'ns1.letsbuild.ch/AAAA/IN' denied
28-Apr-2026 10:20:14.292 security: info: client @0x761b2c161b48 60.215.138.228#42545 (ns3.letsbuild.ch): view Extern: query 'ns3.letsbuild.ch/AAAA/IN' denied
28-Apr-2026 10:20:14.293 security: info: client @0x761b2c161b48 60.215.138.228#27663 (ns1.letsbuild.ch): view Extern: query 'ns1.letsbuild.ch/A/IN' denied
28-Apr-2026 10:20:14.309 security: info: client @0x761b34021888 60.215.138.228#39821 (ns3.letsbuild.ch): view Extern: query 'ns3.letsbuild.ch/A/IN' denied
...
show less
Web App Attack
๐จ๐ญ
Mario Bretscher
2026-04-28 04:10:18
(2 months ago)
28-Apr-2026 06:10:16.673 security: info: client @0x761b38384a08 60.215.138.228#7450 (ns2.letsbuild.c ...
show more
28-Apr-2026 06:10:16.673 security: info: client @0x761b38384a08 60.215.138.228#7450 (ns2.letsbuild.ch): view Extern: query 'ns2.letsbuild.ch/AAAA/IN' denied
28-Apr-2026 06:10:16.705 security: info: client @0x761b2c161b48 60.215.138.228#44363 (ns3.letsbuild.ch): view Extern: query 'ns3.letsbuild.ch/AAAA/IN' denied
28-Apr-2026 06:10:16.705 security: info: client @0x761b2c11b498 60.215.138.228#39383 (ns3.letsbuild.ch): view Extern: query 'ns3.letsbuild.ch/A/IN' denied
28-Apr-2026 06:10:16.705 security: info: client @0x761b38384a08 60.215.138.228#2388 (ns2.letsbuild.ch): view Extern: query 'ns2.letsbuild.ch/A/IN' denied
28-Apr-2026 06:10:16.706 security: info: client @0x761b41d00798 60.215.138.228#60279 (ns1.letsbuild.ch): view Extern: query 'ns1.letsbuild.ch/A/IN' denied
...
show less
Web App Attack
๐จ๐ญ
Mario Bretscher
2026-04-22 01:01:40
(2 months ago)
22-Apr-2026 03:01:38.036 security: info: client @0x761b2c1723e8 60.215.138.228#38256 (ns1.letsbuild. ...
show more
22-Apr-2026 03:01:38.036 security: info: client @0x761b2c1723e8 60.215.138.228#38256 (ns1.letsbuild.ch): view Extern: query 'ns1.letsbuild.ch/A/IN' denied
22-Apr-2026 03:01:38.079 security: info: client @0x761b41d00798 60.215.138.228#6047 (ns3.letsbuild.ch): view Extern: query 'ns3.letsbuild.ch/A/IN' denied
22-Apr-2026 03:01:38.081 security: info: client @0x761b41d00798 60.215.138.228#23829 (ns2.letsbuild.ch): view Extern: query 'ns2.letsbuild.ch/AAAA/IN' denied
22-Apr-2026 03:01:38.085 security: info: client @0x761b2c1723e8 60.215.138.228#43771 (ns1.letsbuild.ch): view Extern: query 'ns1.letsbuild.ch/AAAA/IN' denied
22-Apr-2026 03:01:38.142 security: info: client @0x761b2c1723e8 60.215.138.228#42517 (ns2.letsbuild.ch): view Extern: query 'ns2.letsbuild.ch/A/IN' denied
...
show less
Web App Attack
๐ซ๐ท
โจ
2026-04-22 00:49:17
(2 months ago)
Rule : Security
3568 \device\harddiskvolume5\windows\system32\dns.exe %592 60.215.138.228 46899 *** ...
show more
Rule : Security
3568 \device\harddiskvolume5\windows\system32\dns.exe %592 60.215.138.228 46899 ***hidden-privacy*** 53 17 262474278 %610 44
show less
Port Scan
Hacking
Brute-Force
๐จ๐ญ
Mario Bretscher
2026-04-20 08:25:12
(2 months ago)
20-Apr-2026 10:25:10.553 security: info: client @0x761b34076a88 60.215.138.228#57298 (ns2.letsbuild. ...
show more
20-Apr-2026 10:25:10.553 security: info: client @0x761b34076a88 60.215.138.228#57298 (ns2.letsbuild.ch): view Extern: query 'ns2.letsbuild.ch/AAAA/IN' denied
20-Apr-2026 10:25:10.558 security: info: client @0x761b38235ea8 60.215.138.228#54438 (ns1.letsbuild.ch): view Extern: query 'ns1.letsbuild.ch/AAAA/IN' denied
20-Apr-2026 10:25:10.563 security: info: client @0x761b41dd5978 60.215.138.228#2444 (ns2.letsbuild.ch): view Extern: query 'ns2.letsbuild.ch/A/IN' denied
20-Apr-2026 10:25:10.617 security: info: client @0x761b2c06b3a8 60.215.138.228#63661 (ns3.letsbuild.ch): view Extern: query 'ns3.letsbuild.ch/A/IN' denied
20-Apr-2026 10:25:10.619 security: info: client @0x761b2c06b3a8 60.215.138.228#17645 (ns1.letsbuild.ch): view Extern: query 'ns1.letsbuild.ch/A/IN' denied
...
show less
Web App Attack