๐ญ๐บ
45.9.168.192
08 Oct 2026
45.9.168.192 - - [08/Oct/2026:05:51:38 +0200] "\xC9\x94\xD1\xA6\xAE\x9C\x05lM/\x09\x8Cp#\xEE\x9D*5#] ...
show more
45.9.168.192 - - [08/Oct/2026:05:51:38 +0200] "\xC9\x94\xD1\xA6\xAE\x9C\x05lM/\x09\x8Cp#\xEE\x9D*5#]\xC7R:\xC8\x8E/\x11\xB8\xCD\x89Z\xFB\xA4\x19f\xD2\xCE\xB3\xA1\x81\xBB\xFC\xA0\xDD%d1\x17\xA6%n\xC5" 400 150 "-" "-"
...
show less
Web App Attack
๐ฐ๐ท
20.249.5.100
08 Oct 2026
20.249.5.100 - - [08/Oct/2026:05:47:47 +0200] "GET /atomlib.php HTTP/2.0" 404 22 "-" "Mozilla/5.0 (W ...
show more
20.249.5.100 - - [08/Oct/2026:05:47:47 +0200] "GET /atomlib.php HTTP/2.0" 404 22 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
20.249.5.100 - - [08/Oct/2026:05:47:47 +0200] "GET /wp-blog.php HTTP/2.0" 404 22 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
20.249.5.100 - - [08/Oct/2026:05:47:47 +0200] "GET /wp-the.php HTTP/2.0" 404 22 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐บ๐ธ
66.132.195.37
08 Oct 2026
66.132.195.37 - - [08/Oct/2026:05:25:59 +0200] "GET / HTTP/1.1" 400 150 "-" "Mozilla/5.0 (compatible ...
show more
66.132.195.37 - - [08/Oct/2026:05:25:59 +0200] "GET / HTTP/1.1" 400 150 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)"
...
show less
Web App Attack
๐บ๐ธ
66.132.195.119
08 Oct 2026
66.132.195.119 - - [08/Oct/2026:05:19:32 +0200] "PRI * HTTP/2.0" 400 150 "-" "-"
...
Web App Attack
๐ฎ๐ณ
20.219.185.206
08 Oct 2026
20.219.185.206 - [08/Oct/2026:05:03:07 +0200] "GET /atomlib.php HTTP/2.0" 404 36 "-" "Mozilla/5.0 (W ...
show more
20.219.185.206 - [08/Oct/2026:05:03:07 +0200] "GET /atomlib.php HTTP/2.0" 404 36 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
20.219.185.206 - [08/Oct/2026:05:03:08 +0200] "GET /wp-blog.php HTTP/2.0" 404 36 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
20.219.185.206 - [08/Oct/2026:05:03:08 +0200] "GET /wp-the.php HTTP/2.0" 404 36 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐ฉ๐ช
147.45.112.16
08 Oct 2026
Oct 8 04:50:52 balder kernel: ROGUE IN=eth0 OUT= MAC=00:50:56:be:d4:61:00:11:bc:85:3e:80:08:00 ...
show more
Oct 8 04:50:52 balder kernel: ROGUE IN=eth0 OUT= MAC=00:50:56:be:d4:61:00:11:bc:85:3e:80:08:00 SRC=147.45.112.16 DST=94.177.250.148 LEN=40 TOS=0x08 PREC=0x20 TTL=248 ID=24189 PROTO=TCP SPT=58925 DPT=22930 WINDOW=1024 RES=0x00 SYN URGP=0
Oct 8 04:50:59 balder kernel: ROGUE IN=eth0 OUT= MAC=00:50:56:be:d4:61:00:11:bc:85:3e:80:08:00 SRC=147.45.112.16 DST=94.177.250.148 LEN=40 TOS=0x08 PREC=0x20 TTL=248 ID=18676 PROTO=TCP SPT=58925 DPT=56022 WINDOW=1024 RES=0x00 SYN URGP=0
Oct 8 04:51:06 balder kernel: ROGUE IN=eth0 OUT= MAC=00:50:56:be:d4:61:00:11:bc:85:3e:80:08:00 SRC=147.45.112.16 DST=94.177.250.148 LEN=40 TOS=0x08 PREC=0x20 TTL=248 ID=35366 PROTO=TCP SPT=58925 DPT=61636 WINDOW=1024 RES=0x00 SYN URGP=0
Oct 8 04:51:08 balder kernel: ROGUE IN=eth0 OUT= MAC=00:50:56:be:d4:61:00:11:bc:85:3e:80:08:00 SRC=147.45.112.16 DST=94.177.250.148 LEN=40 TOS=0x08 PREC=0x20 TTL=247 ID=40310 PROTO=TCP SPT=58925 DPT=9363 WINDOW=1024 RES=0x00 SYN URGP=0
Oct 8 04:51:09 balder ke
...
show less
DDoS Attack
๐ฏ๐ต
20.210.166.54
08 Oct 2026
20.210.166.54 - [08/Oct/2026:04:48:57 +0200] "GET /wp-content/plugins/hellopress/wp_filemanager.php ...
show more
20.210.166.54 - [08/Oct/2026:04:48:57 +0200] "GET /wp-content/plugins/hellopress/wp_filemanager.php HTTP/2.0" 404 36 "-" "-" Connecting ip: 20.210.166.54 Forwared for: 20.210.166.54
20.210.166.54 - [08/Oct/2026:04:48:58 +0200] "GET /this_is_a_new_hello_world.php HTTP/2.0" 404 36 "-" "-" Connecting ip: 20.210.166.54 Forwared for: 20.210.166.54
20.210.166.54 - [08/Oct/2026:04:48:58 +0200] "GET /3PJcpMFsD8B.php HTTP/2.0" 404 36 "-" "-" Connecting ip: 20.210.166.54 Forwared for: 20.210.166.54
...
show less
Web App Attack
๐ญ๐ฐ
20.2.16.194
08 Oct 2026
20.2.16.194 - [08/Oct/2026:04:34:00 +0200] "GET /wp-content/plugins/hellopress/wp_filemanager.php HT ...
show more
20.2.16.194 - [08/Oct/2026:04:34:00 +0200] "GET /wp-content/plugins/hellopress/wp_filemanager.php HTTP/2.0" 404 36 "-" "-" Connecting ip: 20.2.16.194 Forwared for: 20.2.16.194
20.2.16.194 - [08/Oct/2026:04:34:01 +0200] "GET /this_is_a_new_hello_world.php HTTP/2.0" 404 36 "-" "-" Connecting ip: 20.2.16.194 Forwared for: 20.2.16.194
20.2.16.194 - [08/Oct/2026:04:34:01 +0200] "GET /wsd.php HTTP/2.0" 404 36 "-" "-" Connecting ip: 20.2.16.194 Forwared for: 20.2.16.194
...
show less
Web App Attack
๐ณ๐ฑ
172.94.9.152
08 Oct 2026
2026-10-08T04:22:45.220996+02:00 mx postfix/dnsblog[2695627]: addr 172.94.9.152 listed by domain zen ...
show more
2026-10-08T04:22:45.220996+02:00 mx postfix/dnsblog[2695627]: addr 172.94.9.152 listed by domain zen.spamhaus.org as 127.0.0.4
2026-10-08T04:22:45.221077+02:00 mx postfix/dnsblog[2695627]: addr 172.94.9.152 listed by domain zen.spamhaus.org as 127.0.0.9
2026-10-08T04:22:45.221138+02:00 mx postfix/dnsblog[2695627]: addr 172.94.9.152 listed by domain zen.spamhaus.org as 127.0.0.2
...
show less
Email Spam
๐ญ๐ฐ
104.208.73.227
08 Oct 2026
104.208.73.227 - [08/Oct/2026:04:10:08 +0200] "GET /tdn_up.php HTTP/2.0" 404 36 "-" "Mozilla/5.0 (Wi ...
show more
104.208.73.227 - [08/Oct/2026:04:10:08 +0200] "GET /tdn_up.php HTTP/2.0" 404 36 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36" Connecting ip: 104.208.73.227 Forwared for: 104.208.73.227
104.208.73.227 - [08/Oct/2026:04:10:08 +0200] "GET /term.php HTTP/2.0" 404 36 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36" Connecting ip: 104.208.73.227 Forwared for: 104.208.73.227
104.208.73.227 - [08/Oct/2026:04:10:08 +0200] "GET /thbg.php HTTP/2.0" 404 36 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36" Connecting ip: 104.208.73.227 Forwared for: 104.208.73.227
...
show less
Web App Attack
๐ฉ๐ช
147.45.112.16
08 Oct 2026
Oct 8 03:48:41 balder kernel: ROGUE IN=eth0 OUT= MAC=00:50:56:be:d4:61:00:11:bc:85:3e:80:08:00 ...
show more
Oct 8 03:48:41 balder kernel: ROGUE IN=eth0 OUT= MAC=00:50:56:be:d4:61:00:11:bc:85:3e:80:08:00 SRC=147.45.112.16 DST=94.177.250.148 LEN=40 TOS=0x08 PREC=0x20 TTL=248 ID=6510 PROTO=TCP SPT=58925 DPT=11339 WINDOW=1024 RES=0x00 SYN URGP=0
Oct 8 03:48:48 balder kernel: ROGUE IN=eth0 OUT= MAC=00:50:56:be:d4:61:00:11:bc:85:3e:80:08:00 SRC=147.45.112.16 DST=94.177.250.148 LEN=40 TOS=0x08 PREC=0x20 TTL=248 ID=9141 PROTO=TCP SPT=58925 DPT=54394 WINDOW=1024 RES=0x00 SYN URGP=0
Oct 8 03:49:12 balder kernel: ROGUE IN=eth0 OUT= MAC=00:50:56:be:d4:61:00:11:bc:85:3e:80:08:00 SRC=147.45.112.16 DST=94.177.250.148 LEN=40 TOS=0x08 PREC=0x20 TTL=247 ID=32294 PROTO=TCP SPT=58925 DPT=3329 WINDOW=1024 RES=0x00 SYN URGP=0
Oct 8 03:49:16 balder kernel: ROGUE IN=eth0 OUT= MAC=00:50:56:be:d4:61:00:11:bc:85:3e:80:08:00 SRC=147.45.112.16 DST=94.177.250.148 LEN=40 TOS=0x08 PREC=0x20 TTL=248 ID=58983 PROTO=TCP SPT=58925 DPT=56673 WINDOW=1024 RES=0x00 SYN URGP=0
Oct 8 03:49:17 balder kern
...
show less
DDoS Attack
๐บ๐ธ
70.39.95.72
08 Oct 2026
70.39.95.72 - - [08/Oct/2026:02:54:03 +0200] "SSTP_DUPLEX_POST /sra_{BA195980-CD49-458b-9E23-C84EE0A ...
show more
70.39.95.72 - - [08/Oct/2026:02:54:03 +0200] "SSTP_DUPLEX_POST /sra_{BA195980-CD49-458b-9E23-C84EE0ADCD75}/ HTTP/1.1" 400 150 "-" "-"
...
show less
Web App Attack
๐ฒ๐ฝ
158.23.176.177
08 Oct 2026
158.23.176.177 - [08/Oct/2026:02:51:59 +0200] "GET /wp-content/plugins/hellopress/wp_filemanager.php ...
show more
158.23.176.177 - [08/Oct/2026:02:51:59 +0200] "GET /wp-content/plugins/hellopress/wp_filemanager.php HTTP/2.0" 404 36 "-" "-" Connecting ip: 158.23.176.177 Forwared for: 158.23.176.177
158.23.176.177 - [08/Oct/2026:02:51:59 +0200] "GET /this_is_a_new_hello_world.php HTTP/2.0" 404 36 "-" "-" Connecting ip: 158.23.176.177 Forwared for: 158.23.176.177
158.23.176.177 - [08/Oct/2026:02:52:00 +0200] "GET /tesla.php HTTP/2.0" 404 36 "-" "-" Connecting ip: 158.23.176.177 Forwared for: 158.23.176.177
...
show less
Web App Attack
๐ฉ๐ช
147.45.112.16
08 Oct 2026
Oct 8 02:46:57 balder kernel: ROGUE IN=eth0 OUT= MAC=00:50:56:be:d4:61:00:11:bc:85:3e:80:08:00 ...
show more
Oct 8 02:46:57 balder kernel: ROGUE IN=eth0 OUT= MAC=00:50:56:be:d4:61:00:11:bc:85:3e:80:08:00 SRC=147.45.112.16 DST=94.177.250.148 LEN=40 TOS=0x08 PREC=0x20 TTL=247 ID=62033 PROTO=TCP SPT=58925 DPT=16315 WINDOW=1024 RES=0x00 SYN URGP=0
Oct 8 02:47:04 balder kernel: ROGUE IN=eth0 OUT= MAC=00:50:56:be:d4:61:00:11:bc:85:3e:80:08:00 SRC=147.45.112.16 DST=94.177.250.148 LEN=40 TOS=0x08 PREC=0x20 TTL=247 ID=21834 PROTO=TCP SPT=58925 DPT=5321 WINDOW=1024 RES=0x00 SYN URGP=0
Oct 8 02:47:07 balder kernel: ROGUE IN=eth0 OUT= MAC=00:50:56:be:d4:61:00:11:bc:85:3e:80:08:00 SRC=147.45.112.16 DST=94.177.250.148 LEN=40 TOS=0x08 PREC=0x20 TTL=248 ID=38995 PROTO=TCP SPT=58925 DPT=57009 WINDOW=1024 RES=0x00 SYN URGP=0
Oct 8 02:47:07 balder kernel: ROGUE IN=eth0 OUT= MAC=00:50:56:be:d4:61:00:11:bc:85:3e:80:08:00 SRC=147.45.112.16 DST=94.177.250.148 LEN=40 TOS=0x08 PREC=0x20 TTL=247 ID=22715 PROTO=TCP SPT=58925 DPT=59810 WINDOW=1024 RES=0x00 SYN URGP=0
Oct 8 02:47:39 balder ke
...
show less
DDoS Attack
๐ฎ๐ณ
20.219.185.206
08 Oct 2026
20.219.185.206 - [08/Oct/2026:02:12:29 +0200] "GET /admin.php HTTP/2.0" 404 36 "-" "Mozilla/5.0 (Win ...
show more
20.219.185.206 - [08/Oct/2026:02:12:29 +0200] "GET /admin.php HTTP/2.0" 404 36 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36" Connecting ip: 20.219.185.206 Forwared for: 20.219.185.206
20.219.185.206 - [08/Oct/2026:02:12:30 +0200] "GET /inputs.php HTTP/2.0" 404 36 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36" Connecting ip: 20.219.185.206 Forwared for: 20.219.185.206
20.219.185.206 - [08/Oct/2026:02:12:30 +0200] "GET /goods.php HTTP/2.0" 404 36 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36" Connecting ip: 20.219.185.206 Forwared for: 20.219.185.206
...
show less
Web App Attack
๐บ๐ธ
143.198.149.226
08 Oct 2026
143.198.149.226 - - [08/Oct/2026:02:04:04 +0200] "GET /.git/config HTTP/2.0" 404 22 "-" "Mozilla/5.0 ...
show more
143.198.149.226 - - [08/Oct/2026:02:04:04 +0200] "GET /.git/config HTTP/2.0" 404 22 "-" "Mozilla/5.0 (X11; Linux x86_64; rv:138.0) Gecko/20100101 Firefox/138.0"
143.198.149.226 - - [08/Oct/2026:02:04:05 +0200] "GET /.git/credentials HTTP/2.0" 404 22 "-" "Mozilla/5.0 (X11; Linux x86_64; rv:138.0) Gecko/20100101 Firefox/138.0"
143.198.149.226 - - [08/Oct/2026:02:04:05 +0200] "GET /.git-credentials HTTP/2.0" 404 22 "-" "Mozilla/5.0 (X11; Linux x86_64; rv:138.0) Gecko/20100101 Firefox/138.0"
...
show less
Web App Attack
๐ฉ๐ช
147.45.112.16
07 Oct 2026
Oct 8 01:45:11 balder kernel: ROGUE IN=eth0 OUT= MAC=00:50:56:be:d4:61:00:11:bc:85:3e:80:08:00 ...
show more
Oct 8 01:45:11 balder kernel: ROGUE IN=eth0 OUT= MAC=00:50:56:be:d4:61:00:11:bc:85:3e:80:08:00 SRC=147.45.112.16 DST=94.177.250.148 LEN=40 TOS=0x08 PREC=0x20 TTL=248 ID=64629 PROTO=TCP SPT=58925 DPT=63979 WINDOW=1024 RES=0x00 SYN URGP=0
Oct 8 01:45:12 balder kernel: ROGUE IN=eth0 OUT= MAC=00:50:56:be:d4:61:00:11:bc:85:3e:80:08:00 SRC=147.45.112.16 DST=94.177.250.148 LEN=40 TOS=0x08 PREC=0x20 TTL=247 ID=3148 PROTO=TCP SPT=58925 DPT=48887 WINDOW=1024 RES=0x00 SYN URGP=0
Oct 8 01:45:25 balder kernel: ROGUE IN=eth0 OUT= MAC=00:50:56:be:d4:61:00:11:bc:85:3e:80:08:00 SRC=147.45.112.16 DST=94.177.250.148 LEN=40 TOS=0x08 PREC=0x20 TTL=247 ID=31999 PROTO=TCP SPT=58925 DPT=63453 WINDOW=1024 RES=0x00 SYN URGP=0
Oct 8 01:45:27 balder kernel: ROGUE IN=eth0 OUT= MAC=00:50:56:be:d4:61:00:11:bc:85:3e:80:08:00 SRC=147.45.112.16 DST=94.177.250.148 LEN=40 TOS=0x08 PREC=0x20 TTL=247 ID=59225 PROTO=TCP SPT=58925 DPT=58113 WINDOW=1024 RES=0x00 SYN URGP=0
Oct 8 01:45:28 balder ke
...
show less
DDoS Attack
๐บ๐ธ
104.152.52.112
07 Oct 2026
104.152.52.112 - - [08/Oct/2026:01:23:52 +0200] "GET / HTTP/1.1" 200 58 "-" "curl/7.61.1"
...
Web App Attack
๐ญ๐ฐ
104.208.73.227
07 Oct 2026
104.208.73.227 - [08/Oct/2026:00:45:17 +0200] "GET /tdn_up.php HTTP/2.0" 404 36 "-" "Mozilla/5.0 (Wi ...
show more
104.208.73.227 - [08/Oct/2026:00:45:17 +0200] "GET /tdn_up.php HTTP/2.0" 404 36 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
104.208.73.227 - [08/Oct/2026:00:45:17 +0200] "GET /term.php HTTP/2.0" 404 36 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
104.208.73.227 - [08/Oct/2026:00:45:18 +0200] "GET /thbg.php HTTP/2.0" 404 36 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐ฉ๐ช
147.45.112.16
07 Oct 2026
Oct 8 00:43:14 balder kernel: ROGUE IN=eth0 OUT= MAC=00:50:56:be:d4:61:00:11:bc:85:3e:80:08:00 ...
show more
Oct 8 00:43:14 balder kernel: ROGUE IN=eth0 OUT= MAC=00:50:56:be:d4:61:00:11:bc:85:3e:80:08:00 SRC=147.45.112.16 DST=94.177.250.148 LEN=40 TOS=0x08 PREC=0x20 TTL=247 ID=26677 PROTO=TCP SPT=58925 DPT=57752 WINDOW=1024 RES=0x00 SYN URGP=0
Oct 8 00:43:18 balder kernel: ROGUE IN=eth0 OUT= MAC=00:50:56:be:d4:61:00:11:bc:85:3e:80:08:00 SRC=147.45.112.16 DST=94.177.250.148 LEN=40 TOS=0x08 PREC=0x20 TTL=248 ID=42010 PROTO=TCP SPT=58925 DPT=28812 WINDOW=1024 RES=0x00 SYN URGP=0
Oct 8 00:43:25 balder kernel: ROGUE IN=eth0 OUT= MAC=00:50:56:be:d4:61:00:11:bc:85:3e:80:08:00 SRC=147.45.112.16 DST=94.177.250.148 LEN=40 TOS=0x08 PREC=0x20 TTL=247 ID=51220 PROTO=TCP SPT=58925 DPT=11980 WINDOW=1024 RES=0x00 SYN URGP=0
Oct 8 00:43:27 balder kernel: ROGUE IN=eth0 OUT= MAC=00:50:56:be:d4:61:00:11:bc:85:3e:80:08:00 SRC=147.45.112.16 DST=94.177.250.148 LEN=40 TOS=0x08 PREC=0x20 TTL=247 ID=61999 PROTO=TCP SPT=58925 DPT=5287 WINDOW=1024 RES=0x00 SYN URGP=0
Oct 8 00:43:38 balder ke
...
show less
DDoS Attack
๐ฒ๐ฆ
160.177.3.196
07 Oct 2026
160.177.3.196 - - [07/Oct/2026:23:43:30 +0200] "GET /.env HTTP/1.1" 444 0 "-" "-"
160.177.3.196 - - ...
show more
160.177.3.196 - - [07/Oct/2026:23:43:30 +0200] "GET /.env HTTP/1.1" 444 0 "-" "-"
160.177.3.196 - - [07/Oct/2026:23:43:32 +0200] "GET /.env HTTP/1.1" 444 0 "-" "-"
...
show less
Web App Attack
๐ฉ๐ช
147.45.112.16
07 Oct 2026
Oct 7 23:29:24 balder kernel: ROGUE IN=eth0 OUT= MAC=00:50:56:be:d4:61:00:11:bc:85:3e:80:08:00 ...
show more
Oct 7 23:29:24 balder kernel: ROGUE IN=eth0 OUT= MAC=00:50:56:be:d4:61:00:11:bc:85:3e:80:08:00 SRC=147.45.112.16 DST=94.177.250.148 LEN=40 TOS=0x08 PREC=0x20 TTL=248 ID=30196 PROTO=TCP SPT=58925 DPT=6769 WINDOW=1024 RES=0x00 SYN URGP=0
Oct 7 23:29:30 balder kernel: ROGUE IN=eth0 OUT= MAC=00:50:56:be:d4:61:00:11:bc:85:3e:80:08:00 SRC=147.45.112.16 DST=94.177.250.148 LEN=40 TOS=0x08 PREC=0x20 TTL=247 ID=49428 PROTO=TCP SPT=58925 DPT=37461 WINDOW=1024 RES=0x00 SYN URGP=0
Oct 7 23:29:35 balder kernel: ROGUE IN=eth0 OUT= MAC=00:50:56:be:d4:61:00:11:bc:85:3e:80:08:00 SRC=147.45.112.16 DST=94.177.250.148 LEN=40 TOS=0x08 PREC=0x20 TTL=248 ID=31759 PROTO=TCP SPT=58925 DPT=37429 WINDOW=1024 RES=0x00 SYN URGP=0
Oct 7 23:29:37 balder kernel: ROGUE IN=eth0 OUT= MAC=00:50:56:be:d4:61:00:11:bc:85:3e:80:08:00 SRC=147.45.112.16 DST=94.177.250.148 LEN=40 TOS=0x08 PREC=0x20 TTL=247 ID=15353 PROTO=TCP SPT=58925 DPT=34352 WINDOW=1024 RES=0x00 SYN URGP=0
Oct 7 23:29:38 balder ke
...
show less
DDoS Attack
๐บ๐ธ
66.132.186.203
07 Oct 2026
66.132.186.203 - - [07/Oct/2026:23:04:56 +0200] "\x16\x03\x01\x00\xEE\x01\x00\x00\xEA\x03\x03\x93" 4 ...
show more
66.132.186.203 - - [07/Oct/2026:23:04:56 +0200] "\x16\x03\x01\x00\xEE\x01\x00\x00\xEA\x03\x03\x93" 400 150 "-" "-"
...
show less
Web App Attack
๐ฏ๐ต
40.74.77.37
07 Oct 2026
40.74.77.37 - [07/Oct/2026:23:03:27 +0200] "GET /.tmb/5cpladen8gccmmra756oCdefault.php HTTP/2.0" 403 ...
show more
40.74.77.37 - [07/Oct/2026:23:03:27 +0200] "GET /.tmb/5cpladen8gccmmra756oCdefault.php HTTP/2.0" 403 146 "-" "-" Connecting ip: 40.74.77.37 Forwared for: 40.74.77.37
40.74.77.37 - [07/Oct/2026:23:03:39 +0200] "GET /.tmb/1n7poyu7hb5tauljvolhCdefault.php HTTP/2.0" 403 146 "-" "-" Connecting ip: 40.74.77.37 Forwared for: 40.74.77.37
40.74.77.37 - [07/Oct/2026:23:03:41 +0200] "GET /.tmb/flame.php HTTP/2.0" 403 146 "-" "-" Connecting ip: 40.74.77.37 Forwared for: 40.74.77.37
...
show less
Web App Attack
๐ฐ๐ท
20.194.96.114
07 Oct 2026
20.194.96.114 - - [07/Oct/2026:22:48:16 +0200] "GET /wp-admin/maint/index.php HTTP/2.0" 404 22 "-" " ...
show more
20.194.96.114 - - [07/Oct/2026:22:48:16 +0200] "GET /wp-admin/maint/index.php HTTP/2.0" 404 22 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
20.194.96.114 - - [07/Oct/2026:22:48:17 +0200] "GET /wp-content/uploads/min.php HTTP/2.0" 404 22 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
20.194.96.114 - - [07/Oct/2026:22:48:17 +0200] "GET /zoom1.php HTTP/2.0" 404 22 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
...
show less
Web App Attack