|
πΊπΈ
45.79.115.59
|
|
Rule : FTP
IP in black list
|
FTP Brute-Force
|
|
πΊπΈ
45.79.115.134
|
|
Rule : FTP
IP in black list
|
FTP Brute-Force
|
|
π¦πΊ
34.151.121.239
|
|
Domain : dietitiansnigeria.org
Rule : config
2026-09-21 03:54:40 ***hidden-privacy*** GET /.config/c ...
show more
Domain : dietitiansnigeria.org
Rule : config
2026-09-21 03:54:40 ***hidden-privacy*** GET /.config/claude/credentials.json - 443 - 104.22.127.53 HTTP/2 crusader-worker/1.0 - dietitiansnigeria.org 404 0 0 100753 367 18491 - 34.151.121.239
show less
|
Hacking
SQL Injection
|
|
π¨π
34.65.30.46
|
|
Domain : vanzo-tech.com
Rule : config
2026-09-21 03:52:45 217.194.212.5 GET /.claude/settings.local. ...
show more
Domain : vanzo-tech.com
Rule : config
2026-09-21 03:52:45 217.194.212.5 GET /.claude/settings.local.json - 443 - 34.65.30.46 HTTP/1.1 crusader-worker/1.0 - vanzo-tech.com 404 0 2 1560 113 119 - -
show less
|
Hacking
SQL Injection
|
|
π¨π³
49.65.18.48
|
|
Domain : purechalets.com
Rule : UserAgent
2026-09-21 03:52:58 W3SVC79 PLESK76 217.194.212.5 GET /css ...
show more
Domain : purechalets.com
Rule : UserAgent
2026-09-21 03:52:58 W3SVC79 PLESK76 217.194.212.5 GET /css/Chalet_Page.css - 443 - 172.71.103.208 HTTP/2.0 Sogou web spider/4.0( http://www.sogou.com/docs/help/webmasters.htm#07) .AspNetCore.Antiforgery.NW8q0hMr5FI=CfDJ8EWyf82hbc5DkLlAv6D37pYtf_kg7XSHyTn3WUq25LnPPz5anosxYT_aYt2D1wHnbunPkeZGAqHsv72OqC4IyGEi4pMhfogQfu5D5-X7SNb0CrlhfQYIJpfGH0S-32LSj1G-KhA-Ih9dLOGTddzswKE https://purechalets.com/contact purechalets.com 304 0 0 511 1047 20 - 49.65.18.48
show less
|
Port Scan
|
|
πΊπΈ
45.33.109.8
|
|
Rule : Security
IP in black list
|
Port Scan
Hacking
Brute-Force
|
|
π¬π§
34.142.91.114
|
|
Domain : activefuels.co.uk
Rule : hack
2026-09-21 03:53:19 ***hidden-privacy*** GET /.env.bak - 443 ...
show more
Domain : activefuels.co.uk
Rule : hack
2026-09-21 03:53:19 ***hidden-privacy*** GET /.env.bak - 443 - 34.142.91.114 HTTP/1.1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 - activefuels.co.uk 301 0 0 453 298 20 - -
show less
|
Hacking
SQL Injection
Brute-Force
|
|
πΈπ¬
119.28.105.68
|
|
Domain : swimmingcyclingrunning.com
Rule : Method-Head
2026-09-21 03:53:25 79.171.39.6 HEAD /Images/ ...
show more
Domain : swimmingcyclingrunning.com
Rule : Method-Head
2026-09-21 03:53:25 79.171.39.6 HEAD /Images/SwimImages/BreastSide08.jpg - 443 - 119.28.105.68 HTTP/1.1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/150.0.0.0 Safari/537.36 - swimmingcyclingrunning.com 200 0 0 349 284 280 - -
show less
|
Port Scan
|
|
π²πΎ
121.121.60.196
|
|
Rule : Security
Rule: Security
Event: Security
S-1-0-0 - - 0x0 S-1-0-0 Administrator WORKGROUP 0xc ...
show more
Rule : Security
Rule: Security
Event: Security
S-1-0-0 - - 0x0 S-1-0-0 Administrator WORKGROUP 0xc000006d %#13 0xc000006a 3 NtLmSsp NTLM EMDB - - 0 0x0 - 121.121.60.196 61135
show less
|
Port Scan
Hacking
Brute-Force
|
|
π΅π
136.158.51.204
|
|
Rule : Security
Rule: Security
Event: Security
S-1-0-0 - - 0x0 S-1-0-0 administrator 0xc000006d % ...
show more
Rule : Security
Rule: Security
Event: Security
S-1-0-0 - - 0x0 S-1-0-0 administrator 0xc000006d %#13 0xc000006a 3 NtLmSsp NTLM - - - 0 0x0 - 136.158.51.204 46342
show less
|
Port Scan
Hacking
Brute-Force
|
|
πΊπΈ
162.216.150.82
|
|
Rule : Security
Rule: Security
Event: Security
0 - %592 162.216.150.82 53676 ***hidden-privacy*** ...
show more
Rule : Security
Rule: Security
Event: Security
0 - %592 162.216.150.82 53676 ***hidden-privacy*** 14024 6 459341 %597 13
show less
|
Port Scan
Hacking
Brute-Force
|
|
π§π·
16.5.0.239
|
|
Rule : WEB
2026-09-21 03:52:14 16.5.0.239 46728 ***hidden-privacy*** 8086 - - - - 400 - Verb -
|
Port Scan
|
|
π¨π³
121.37.99.162
|
|
Domain : gordonswar.org
Rule : Method-Head
2026-09-21 03:52:41 ***hidden-privacy***46 HEAD /wp-conte ...
show more
Domain : gordonswar.org
Rule : Method-Head
2026-09-21 03:52:41 ***hidden-privacy***46 HEAD /wp-content/uploads/2021/02/suez.jpg - 443 - 121.37.99.162 HTTP/1.1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36 - gordonswar.org 200 0 0 348 273 416 - -
show less
|
Port Scan
|
|
π―π΅
34.97.38.239
|
|
Domain : report.coduconnect.com.au
Rule : hack
2026-09-21 03:52:44 ***hidden-privacy*** GET /.env.ba ...
show more
Domain : report.coduconnect.com.au
Rule : hack
2026-09-21 03:52:44 ***hidden-privacy*** GET /.env.bak - 443 - 34.97.38.239 HTTP/1.1 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 - report.coduconnect.com.au 404 0 2 1564 290 246 - -
show less
|
Hacking
SQL Injection
Brute-Force
|
|
π¦πΊ
91.124.88.101
|
|
Domain : forgewood.org
Rule : pluginsphp
2026-09-21 03:52:24 ***hidden-privacy*** GET /wp-content/pl ...
show more
Domain : forgewood.org
Rule : pluginsphp
2026-09-21 03:52:24 ***hidden-privacy*** GET /wp-content/plugins/pwnd/pwnd.php - 80 - 91.124.88.101 HTTP/1.1 Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; Trident/6.0) - forgewood.org 404 0 2 5251 167 239 - -
show less
|
Web App Attack
|
|
π»π³
125.235.236.49
|
|
Domain : poutinepunks.co.uk
Rule : hack
2026-09-21 03:52:18 ***hidden-privacy*** GET /q-~107RVSDe3Gv ...
show more
Domain : poutinepunks.co.uk
Rule : hack
2026-09-21 03:52:18 ***hidden-privacy*** GET /q-~107RVSDe3GvX2CBvQmEirD8enFxPbqMKC46469/ - 443 - 125.235.236.49 HTTP/1.1 Mozilla/5.0 (Macintosh; Intel Mac OS X 12_7_2) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.6723.191 Safari/537.36 - poutinepunks.co.uk 404 0 0 51432 268 839 - -
show less
|
Hacking
SQL Injection
Brute-Force
|
|
πΊπΈ
35.196.67.126
|
|
Domain : manager.responsesos.com
Rule : env
2026-09-21 03:52:04 ***hidden-privacy*** GET /core/.env ...
show more
Domain : manager.responsesos.com
Rule : env
2026-09-21 03:52:04 ***hidden-privacy*** GET /core/.env - 443 - 35.196.67.126 HTTP/2 Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; GPTBot/1.4; https://openai.com/gptbot - manager.responsesos.com 404 0 2 1137 448 92 - -
show less
|
Hacking
SQL Injection
|
|
π§πͺ
35.187.22.25
|
|
Rule : FTP
2026-09-21 03:45:18 35.187.22.25 - ***hidden-privacy*** 21 PASS IEUser@ 530 1326 42 54 14 ...
show more
Rule : FTP
2026-09-21 03:45:18 35.187.22.25 - ***hidden-privacy*** 21 PASS IEUser@ 530 1326 42 54 14 0 23d990a0-2f18-454b-b78e-d32546e6a22a -
show less
|
FTP Brute-Force
|
|
πΊπΈ
69.164.217.245
|
|
Rule : Security
IP in black list
|
Port Scan
Hacking
Brute-Force
|
|
πΈπͺ
93.158.90.147
|
|
Rule : FTP
2026-09-21 03:51:22 93.158.90.147 - 80.243.183.58 21 Cache-Control: no-cache 500 87 0 201 ...
show more
Rule : FTP
2026-09-21 03:51:22 93.158.90.147 - 80.243.183.58 21 Cache-Control: no-cache 500 87 0 201 25 0 46e30cc9-0d57-4f46-9cdb-63a0e1f3b223 -
show less
|
FTP Brute-Force
|
|
πΊπΈ
66.228.53.136
|
|
Rule : Security
Rule: Security
Event: Security
4 System %592 66.228.53.136 3336 ***hidden-privacy ...
show more
Rule : Security
Rule: Security
Event: Security
4 System %592 66.228.53.136 3336 ***hidden-privacy*** 80 6 432442 %610 44
show less
|
Port Scan
Hacking
Brute-Force
|
|
π―π΅
34.180.71.238
|
|
Domain : lembas.co.uk
Rule : config
2026-09-21 03:50:50 ***hidden-privacy*** GET /.claude/.credentia ...
show more
Domain : lembas.co.uk
Rule : config
2026-09-21 03:50:50 ***hidden-privacy*** GET /.claude/.credentials.json - 443 - 34.180.71.238 HTTP/1.1 crusader-worker/1.0 - www.lembas.co.uk 404 0 2 1416 113 262 - -
show less
|
Hacking
SQL Injection
|
|
π©πͺ
165.154.138.79
|
|
Rule : DNS
Rule: DNS
Event: DNS
UserAccount: SYSTEM
165.154.138.79
|
DNS Compromise
|
|
π³π±
185.223.235.35
|
|
Domain : pleskcontrolpanel
Rule : WEB
IP in black list
|
Port Scan
|
|
π³π±
193.176.31.157
|
|
Domain : pleskcontrolpanel
Rule : WEB
IP in black list
|
Port Scan
|