🔥 IPS 威脅報告與惡意 IP 監控

本報告彙整了 2ns.org 監測節點偵測到的即時攻擊行為。包含 SQL InjectionXSS 跨站腳本 以及非法檔案存取嘗試。提供管理者作為防火牆黑名單設定參考。

最後更新:2026-08-01 23:22:51   📥 下載完整報告

時間攻擊名稱來源 IP (下載威脅IP清單)動作
-Multiple.Routers.GPON.formLogin.Remote.Command.Injection94.154.43.210dropped
-Apache.HTTP.Server.cgi-bin.Path.Traversal34.23.186.31dropped
-HTTP.URI.SQL.Injection34.23.186.31dropped
-HTTP.URI.SQL.Injection34.23.186.31dropped
-HTTP.URI.SQL.Injection34.23.186.31dropped
-Spring.Boot.Actuator.Unauthorized.Access34.23.186.31dropped
-Gh0st.Rat.Botnet66.240.205.34dropped
-Apache.HTTP.Server.cgi-bin.Path.Traversal34.26.36.243dropped
-HTTP.URI.SQL.Injection34.26.36.243dropped
-HTTP.URI.SQL.Injection34.26.36.243dropped
-HTTP.URI.SQL.Injection34.26.36.243dropped
-Spring.Boot.Actuator.Unauthorized.Access34.26.36.243dropped
-Apache.HTTP.Server.cgi-bin.Path.Traversal35.240.59.95dropped
-HTTP.URI.SQL.Injection35.240.59.95dropped
-HTTP.URI.SQL.Injection35.240.59.95dropped
-HTTP.URI.SQL.Injection35.240.59.95dropped
-Spring.Boot.Actuator.Unauthorized.Access35.240.59.95dropped
-Apache.HTTP.Server.cgi-bin.Path.Traversal89.126.211.166dropped
-Web.Server.Password.File.Access5.61.209.224dropped
-ALFA.TEaM.Web.Shell142.93.223.31dropped
-Cross.Site.Scripting187.124.46.249detected
-Web.Server.Password.File.Access187.124.46.249dropped
-ThinkPHP.Controller.Parameter.Remote.Code.Execution70.39.202.96dropped
-ThinkPHP.Controller.Parameter.Remote.Code.Execution70.39.202.96dropped
-ThinkPHP.Controller.Parameter.Remote.Code.Execution70.39.202.96dropped
-Web.Server.Password.File.Access65.109.100.164dropped
-Web.Server.Password.File.Access65.109.100.164dropped
-Web.Server.Password.File.Access65.109.100.164dropped
-Cross.Site.Scripting65.109.100.164detected
-Cross.Site.Scripting65.109.100.164detected
-Cross.Site.Scripting65.109.100.164detected
-Web.Server.Password.File.Access65.109.100.164dropped
-Apache.HTTP.Server.cgi-bin.Path.Traversal168.144.35.118dropped
-HTPasswd.Access172.182.253.37dropped
-Telerik.Web.UI.RadAsyncUpload.Handling.Arbitrary.File.Upload109.105.210.87dropped
-Web.Server.Password.File.Access183.81.168.186dropped
-Apache.HTTP.Server.cgi-bin.Path.Traversal45.156.128.177dropped
-Apache.HTTP.Server.cgi-bin.Path.Traversal45.156.128.176dropped
-Telerik.Web.UI.RadAsyncUpload.Handling.Arbitrary.File.Upload45.156.128.179dropped
-PHP.CGI.Argument.Injection176.123.1.163dropped
-Spring.Boot.Actuator.Unauthorized.Access45.194.92.75dropped
-Spring.Boot.Actuator.Unauthorized.Access45.194.92.75dropped
-HTTP.URI.SQL.Injection38.255.57.105dropped
-HTTP.URI.SQL.Injection38.255.57.105dropped
-Spring.Boot.Actuator.Unauthorized.Access45.194.92.53dropped
-Spring.Boot.Actuator.Unauthorized.Access45.194.92.53dropped
-HTTP.URI.SQL.Injection8.216.88.236dropped
-HTTP.URI.SQL.Injection8.216.88.236dropped
-HTTP.URI.SQL.Injection8.216.88.236dropped
-HTTP.URI.SQL.Injection8.216.88.236dropped
IPS 網路威脅即時報告與惡意 IP 監控 - 2ns.org

🔥 IPS 威脅報告與惡意 IP 監控

本報告彙整了 2ns.org 監測節點偵測到的即時攻擊行為。包含 SQL InjectionXSS 跨站腳本 以及非法檔案存取嘗試。提供管理者作為防火牆黑名單設定參考。

最後更新:2026-08-01 23:22:51   📥 下載完整報告

時間攻擊名稱來源 IP (下載威脅IP清單)動作
-Multiple.Routers.GPON.formLogin.Remote.Command.Injection94.154.43.210dropped
-Apache.HTTP.Server.cgi-bin.Path.Traversal34.23.186.31dropped
-HTTP.URI.SQL.Injection34.23.186.31dropped
-HTTP.URI.SQL.Injection34.23.186.31dropped
-HTTP.URI.SQL.Injection34.23.186.31dropped
-Spring.Boot.Actuator.Unauthorized.Access34.23.186.31dropped
-Gh0st.Rat.Botnet66.240.205.34dropped
-Apache.HTTP.Server.cgi-bin.Path.Traversal34.26.36.243dropped
-HTTP.URI.SQL.Injection34.26.36.243dropped
-HTTP.URI.SQL.Injection34.26.36.243dropped
-HTTP.URI.SQL.Injection34.26.36.243dropped
-Spring.Boot.Actuator.Unauthorized.Access34.26.36.243dropped
-Apache.HTTP.Server.cgi-bin.Path.Traversal35.240.59.95dropped
-HTTP.URI.SQL.Injection35.240.59.95dropped
-HTTP.URI.SQL.Injection35.240.59.95dropped
-HTTP.URI.SQL.Injection35.240.59.95dropped
-Spring.Boot.Actuator.Unauthorized.Access35.240.59.95dropped
-Apache.HTTP.Server.cgi-bin.Path.Traversal89.126.211.166dropped
-Web.Server.Password.File.Access5.61.209.224dropped
-ALFA.TEaM.Web.Shell142.93.223.31dropped
-Cross.Site.Scripting187.124.46.249detected
-Web.Server.Password.File.Access187.124.46.249dropped
-ThinkPHP.Controller.Parameter.Remote.Code.Execution70.39.202.96dropped
-ThinkPHP.Controller.Parameter.Remote.Code.Execution70.39.202.96dropped
-ThinkPHP.Controller.Parameter.Remote.Code.Execution70.39.202.96dropped
-Web.Server.Password.File.Access65.109.100.164dropped
-Web.Server.Password.File.Access65.109.100.164dropped
-Web.Server.Password.File.Access65.109.100.164dropped
-Cross.Site.Scripting65.109.100.164detected
-Cross.Site.Scripting65.109.100.164detected
-Cross.Site.Scripting65.109.100.164detected
-Web.Server.Password.File.Access65.109.100.164dropped
-Apache.HTTP.Server.cgi-bin.Path.Traversal168.144.35.118dropped
-HTPasswd.Access172.182.253.37dropped
-Telerik.Web.UI.RadAsyncUpload.Handling.Arbitrary.File.Upload109.105.210.87dropped
-Web.Server.Password.File.Access183.81.168.186dropped
-Apache.HTTP.Server.cgi-bin.Path.Traversal45.156.128.177dropped
-Apache.HTTP.Server.cgi-bin.Path.Traversal45.156.128.176dropped
-Telerik.Web.UI.RadAsyncUpload.Handling.Arbitrary.File.Upload45.156.128.179dropped
-PHP.CGI.Argument.Injection176.123.1.163dropped
-Spring.Boot.Actuator.Unauthorized.Access45.194.92.75dropped
-Spring.Boot.Actuator.Unauthorized.Access45.194.92.75dropped
-HTTP.URI.SQL.Injection38.255.57.105dropped
-HTTP.URI.SQL.Injection38.255.57.105dropped
-Spring.Boot.Actuator.Unauthorized.Access45.194.92.53dropped
-Spring.Boot.Actuator.Unauthorized.Access45.194.92.53dropped
-HTTP.URI.SQL.Injection8.216.88.236dropped
-HTTP.URI.SQL.Injection8.216.88.236dropped
-HTTP.URI.SQL.Injection8.216.88.236dropped
-HTTP.URI.SQL.Injection8.216.88.236dropped