SCARD

Suspicious activity by IP address 20.74.212.144

Below is a list of the last 500 suspicious interactions with this IP.

Last observed Tue, 14 Apr 2026 03:49:22 (Australia/Brisbane)

Back to main list

Summary of suspicious activity by IP address 20.74.212.144

Description Count
SURICATA HTTP Host header invalid 72
ET HUNTING Suspicious Chmod Usage in URI (Inbound) 39
ET WEB_SPECIFIC_APPS Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway - Default Credentials 30
ET WEB_SERVER WebShell Generic - wget http - POST 26
ET INFO F5 BIG-IP - Command Execution via util/bash 11
ET EXPLOIT F5 BIG-IP iControl REST Authentication Bypass Attempt (CVE-2022-1388) M3 11

Detailed activity by IP address 20.74.212.144

Timestamp Description Protocol Destination Port
2026-04-14 03:49:22 ET WEB_SPECIFIC_APPS Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway - Default Credentials TCP 80
2026-04-14 03:49:22 SURICATA HTTP Host header invalid TCP 80
2026-04-14 03:49:22 ET WEB_SERVER WebShell Generic - wget http - POST TCP 80
2026-04-14 03:49:22 ET WEB_SPECIFIC_APPS Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway - Default Credentials TCP 80
2026-04-14 03:49:22 SURICATA HTTP Host header invalid TCP 80
2026-04-14 03:49:22 ET WEB_SERVER WebShell Generic - wget http - POST TCP 80
2026-04-13 19:21:26 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80
2026-04-13 19:21:26 SURICATA HTTP Host header invalid TCP 80
2026-04-13 19:21:26 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80
2026-04-13 19:21:26 SURICATA HTTP Host header invalid TCP 80
2026-04-12 22:46:02 SURICATA HTTP Host header invalid TCP 80
2026-04-12 22:46:02 SURICATA HTTP Host header invalid TCP 80
2026-04-12 22:46:02 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80
2026-04-12 22:46:02 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80
2026-04-12 22:12:18 ET WEB_SPECIFIC_APPS Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway - Default Credentials TCP 80
2026-04-12 22:12:18 SURICATA HTTP Host header invalid TCP 80
2026-04-12 22:12:18 ET WEB_SPECIFIC_APPS Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway - Default Credentials TCP 80
2026-04-12 22:12:18 SURICATA HTTP Host header invalid TCP 80
2026-04-12 09:15:30 ET WEB_SERVER WebShell Generic - wget http - POST TCP 80
2026-04-12 09:15:30 ET WEB_SERVER WebShell Generic - wget http - POST TCP 80
2026-04-12 09:15:30 SURICATA HTTP Host header invalid TCP 80
2026-04-12 09:15:30 SURICATA HTTP Host header invalid TCP 80
2026-04-12 05:44:47 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80
2026-04-12 05:44:47 ET WEB_SPECIFIC_APPS Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway - Default Credentials TCP 80
2026-04-12 05:44:47 SURICATA HTTP Host header invalid TCP 80
2026-04-12 05:44:47 ET WEB_SPECIFIC_APPS Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway - Default Credentials TCP 80
2026-04-12 05:44:47 SURICATA HTTP Host header invalid TCP 80
2026-04-12 05:44:47 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80
2026-04-12 02:45:29 ET WEB_SPECIFIC_APPS Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway - Default Credentials TCP 80
2026-04-12 02:45:29 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80
2026-04-12 02:45:29 SURICATA HTTP Host header invalid TCP 80
2026-04-12 02:45:29 SURICATA HTTP Host header invalid TCP 80
2026-04-12 02:45:29 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80
2026-04-12 02:45:29 ET WEB_SPECIFIC_APPS Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway - Default Credentials TCP 80
2026-04-11 20:23:34 SURICATA HTTP Host header invalid TCP 80
2026-04-11 20:23:34 ET WEB_SPECIFIC_APPS Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway - Default Credentials TCP 80
2026-04-11 20:23:34 ET WEB_SPECIFIC_APPS Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway - Default Credentials TCP 80
2026-04-11 20:23:34 SURICATA HTTP Host header invalid TCP 80
2026-04-11 20:23:34 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80
2026-04-11 20:23:34 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80
2026-04-11 13:35:11 SURICATA HTTP Host header invalid TCP 80
2026-04-11 13:35:11 ET WEB_SERVER WebShell Generic - wget http - POST TCP 80
2026-04-11 13:35:11 ET WEB_SERVER WebShell Generic - wget http - POST TCP 80
2026-04-11 13:35:11 SURICATA HTTP Host header invalid TCP 80
2026-04-10 17:56:53 SURICATA HTTP Host header invalid TCP 80
2026-04-10 17:56:53 SURICATA HTTP Host header invalid TCP 80
2026-04-10 17:56:53 ET WEB_SPECIFIC_APPS Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway - Default Credentials TCP 80
2026-04-10 17:56:53 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80
2026-04-10 17:56:53 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80
2026-04-10 17:56:53 ET WEB_SPECIFIC_APPS Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway - Default Credentials TCP 80
2026-04-07 08:35:02 ET WEB_SPECIFIC_APPS Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway - Default Credentials TCP 80
2026-04-07 06:41:08 ET WEB_SPECIFIC_APPS Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway - Default Credentials TCP 80
2026-04-07 06:41:08 ET WEB_SPECIFIC_APPS Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway - Default Credentials TCP 80
2026-04-07 06:41:08 SURICATA HTTP Host header invalid TCP 80
2026-04-07 06:41:08 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80
2026-04-07 06:41:08 SURICATA HTTP Host header invalid TCP 80
2026-04-07 06:41:08 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80
2026-04-07 04:49:20 SURICATA HTTP Host header invalid TCP 80
2026-04-07 04:49:20 SURICATA HTTP Host header invalid TCP 80
2026-04-06 13:16:56 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80
2026-04-06 09:18:44 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80
2026-04-06 08:02:08 ET WEB_SPECIFIC_APPS Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway - Default Credentials TCP 80
2026-04-06 08:02:08 SURICATA HTTP Host header invalid TCP 80
2026-04-06 08:02:08 ET WEB_SPECIFIC_APPS Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway - Default Credentials TCP 80
2026-04-06 08:02:08 SURICATA HTTP Host header invalid TCP 80
2026-04-05 17:37:36 ET WEB_SPECIFIC_APPS Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway - Default Credentials TCP 80
2026-04-05 16:44:08 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80
2026-04-05 16:44:08 SURICATA HTTP Host header invalid TCP 80
2026-04-05 16:44:08 SURICATA HTTP Host header invalid TCP 80
2026-04-05 16:44:08 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80
2026-04-05 14:15:46 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80
2026-04-05 14:15:46 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80
2026-04-05 14:15:46 SURICATA HTTP Host header invalid TCP 80
2026-04-05 14:15:46 SURICATA HTTP Host header invalid TCP 80
2026-04-05 13:01:24 SURICATA HTTP Host header invalid TCP 80
2026-04-05 13:01:24 SURICATA HTTP Host header invalid TCP 80
2026-04-05 13:01:24 ET WEB_SERVER WebShell Generic - wget http - POST TCP 80
2026-04-05 13:01:24 ET WEB_SERVER WebShell Generic - wget http - POST TCP 80
2026-04-05 02:24:56 ET WEB_SPECIFIC_APPS Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway - Default Credentials TCP 80
2026-04-05 02:24:56 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80
2026-04-04 17:44:41 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80
2026-04-04 17:44:41 ET WEB_SPECIFIC_APPS Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway - Default Credentials TCP 80
2026-04-04 16:43:17 SURICATA HTTP Host header invalid TCP 80
2026-04-04 16:43:17 ET WEB_SPECIFIC_APPS Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway - Default Credentials TCP 80
2026-04-04 16:43:17 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80
2026-04-04 16:43:17 SURICATA HTTP Host header invalid TCP 80
2026-04-04 16:43:17 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80
2026-04-04 16:43:17 ET WEB_SPECIFIC_APPS Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway - Default Credentials TCP 80
2026-04-04 06:48:03 SURICATA HTTP Host header invalid TCP 80
2026-04-04 06:48:03 SURICATA HTTP Host header invalid TCP 80
2026-04-04 06:48:03 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80
2026-04-04 06:48:03 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80
2026-04-03 23:31:14 SURICATA HTTP Host header invalid TCP 80
2026-04-03 23:31:14 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80
2026-04-03 23:31:14 SURICATA HTTP Host header invalid TCP 80
2026-04-03 23:31:14 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80
2026-04-02 21:53:22 SURICATA HTTP Host header invalid TCP 80
2026-04-02 21:53:22 SURICATA HTTP Host header invalid TCP 80
2026-04-02 18:00:36 SURICATA HTTP Host header invalid TCP 443
2026-04-02 18:00:36 ET EXPLOIT F5 BIG-IP iControl REST Authentication Bypass Attempt (CVE-2022-1388) M3 TCP 443
2026-04-02 18:00:36 ET EXPLOIT F5 BIG-IP iControl REST Authentication Bypass Attempt (CVE-2022-1388) M3 TCP 443
2026-04-02 18:00:36 ET WEB_SERVER WebShell Generic - wget http - POST TCP 443
2026-04-02 18:00:36 SURICATA HTTP Host header invalid TCP 443
2026-04-02 18:00:36 ET WEB_SERVER WebShell Generic - wget http - POST TCP 443
2026-04-02 18:00:36 ET INFO F5 BIG-IP - Command Execution via util/bash TCP 443
2026-04-02 18:00:36 ET INFO F5 BIG-IP - Command Execution via util/bash TCP 443
2026-04-02 15:00:55 SURICATA HTTP Host header invalid TCP 80
2026-04-02 15:00:55 ET WEB_SPECIFIC_APPS Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway - Default Credentials TCP 80
2026-04-02 15:00:55 SURICATA HTTP Host header invalid TCP 80
2026-04-02 15:00:55 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80
2026-04-02 15:00:55 ET WEB_SPECIFIC_APPS Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway - Default Credentials TCP 80
2026-04-02 15:00:55 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80
2026-04-02 10:50:59 SURICATA HTTP Host header invalid TCP 443
2026-04-02 10:50:59 ET INFO F5 BIG-IP - Command Execution via util/bash TCP 443
2026-04-02 10:50:59 ET EXPLOIT F5 BIG-IP iControl REST Authentication Bypass Attempt (CVE-2022-1388) M3 TCP 443
2026-04-02 10:50:59 SURICATA HTTP Host header invalid TCP 443
2026-04-02 10:50:59 ET EXPLOIT F5 BIG-IP iControl REST Authentication Bypass Attempt (CVE-2022-1388) M3 TCP 443
2026-04-02 10:50:59 ET WEB_SERVER WebShell Generic - wget http - POST TCP 443
2026-04-02 10:50:59 ET INFO F5 BIG-IP - Command Execution via util/bash TCP 443
2026-04-02 10:50:59 ET WEB_SERVER WebShell Generic - wget http - POST TCP 443
2026-04-02 09:30:18 ET INFO F5 BIG-IP - Command Execution via util/bash TCP 443
2026-04-02 09:30:18 ET EXPLOIT F5 BIG-IP iControl REST Authentication Bypass Attempt (CVE-2022-1388) M3 TCP 443
2026-04-02 05:03:37 SURICATA HTTP Host header invalid TCP 80
2026-04-02 05:03:37 SURICATA HTTP Host header invalid TCP 80
2026-04-02 05:03:37 ET WEB_SPECIFIC_APPS Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway - Default Credentials TCP 80
2026-04-02 05:03:37 ET WEB_SPECIFIC_APPS Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway - Default Credentials TCP 80
2026-04-01 04:29:50 ET WEB_SERVER WebShell Generic - wget http - POST TCP 80
2026-04-01 04:29:50 SURICATA HTTP Host header invalid TCP 80
2026-04-01 04:29:50 ET WEB_SERVER WebShell Generic - wget http - POST TCP 80
2026-04-01 04:29:50 SURICATA HTTP Host header invalid TCP 80
2026-04-01 03:22:50 SURICATA HTTP Host header invalid TCP 80
2026-04-01 03:22:50 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80
2026-04-01 03:22:50 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80
2026-04-01 03:22:50 SURICATA HTTP Host header invalid TCP 80
2026-04-01 02:31:33 ET WEB_SERVER WebShell Generic - wget http - POST TCP 443
2026-04-01 02:31:33 ET WEB_SERVER WebShell Generic - wget http - POST TCP 443
2026-04-01 02:31:33 ET INFO F5 BIG-IP - Command Execution via util/bash TCP 443
2026-04-01 02:31:33 SURICATA HTTP Host header invalid TCP 443
2026-04-01 02:31:33 ET EXPLOIT F5 BIG-IP iControl REST Authentication Bypass Attempt (CVE-2022-1388) M3 TCP 443
2026-04-01 02:31:33 SURICATA HTTP Host header invalid TCP 443
2026-04-01 02:31:33 ET EXPLOIT F5 BIG-IP iControl REST Authentication Bypass Attempt (CVE-2022-1388) M3 TCP 443
2026-04-01 02:31:33 ET INFO F5 BIG-IP - Command Execution via util/bash TCP 443
2026-04-01 01:15:09 SURICATA HTTP Host header invalid TCP 80
2026-04-01 01:15:09 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80
2026-04-01 01:15:09 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80
2026-04-01 01:15:09 SURICATA HTTP Host header invalid TCP 80
2026-03-31 07:01:38 SURICATA HTTP Host header invalid TCP 80
2026-03-31 07:01:38 ET WEB_SPECIFIC_APPS Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway - Default Credentials TCP 80
2026-03-31 07:01:38 ET WEB_SERVER WebShell Generic - wget http - POST TCP 80
2026-03-31 07:01:38 ET WEB_SPECIFIC_APPS Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway - Default Credentials TCP 80
2026-03-31 07:01:38 SURICATA HTTP Host header invalid TCP 80
2026-03-31 07:01:38 ET WEB_SERVER WebShell Generic - wget http - POST TCP 80
2026-03-30 15:14:14 SURICATA HTTP Host header invalid TCP 80
2026-03-30 15:14:14 SURICATA HTTP Host header invalid TCP 80
2026-03-30 13:54:16 SURICATA HTTP Host header invalid TCP 443
2026-03-30 13:54:16 ET EXPLOIT F5 BIG-IP iControl REST Authentication Bypass Attempt (CVE-2022-1388) M3 TCP 443
2026-03-30 13:54:16 ET EXPLOIT F5 BIG-IP iControl REST Authentication Bypass Attempt (CVE-2022-1388) M3 TCP 443
2026-03-30 13:54:16 SURICATA HTTP Host header invalid TCP 443
2026-03-30 13:54:16 ET INFO F5 BIG-IP - Command Execution via util/bash TCP 443
2026-03-30 13:54:16 ET WEB_SERVER WebShell Generic - wget http - POST TCP 443
2026-03-30 13:54:16 ET INFO F5 BIG-IP - Command Execution via util/bash TCP 443
2026-03-30 13:54:16 ET WEB_SERVER WebShell Generic - wget http - POST TCP 443
2026-03-29 17:04:17 ET WEB_SERVER WebShell Generic - wget http - POST TCP 80
2026-03-29 17:04:17 SURICATA HTTP Host header invalid TCP 80
2026-03-29 17:04:17 ET WEB_SERVER WebShell Generic - wget http - POST TCP 80
2026-03-29 17:04:17 SURICATA HTTP Host header invalid TCP 80
2026-03-28 16:23:52 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80
2026-03-28 16:23:52 SURICATA HTTP Host header invalid TCP 80
2026-03-28 16:23:52 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80
2026-03-28 16:23:52 SURICATA HTTP Host header invalid TCP 80
2026-03-28 12:03:36 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80
2026-03-28 12:03:36 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80
2026-03-28 12:03:36 SURICATA HTTP Host header invalid TCP 80
2026-03-28 12:03:36 SURICATA HTTP Host header invalid TCP 80
2026-03-28 05:48:27 ET INFO F5 BIG-IP - Command Execution via util/bash TCP 443
2026-03-28 05:48:27 ET EXPLOIT F5 BIG-IP iControl REST Authentication Bypass Attempt (CVE-2022-1388) M3 TCP 443
2026-03-28 05:48:27 SURICATA HTTP Host header invalid TCP 443
2026-03-28 05:48:27 ET INFO F5 BIG-IP - Command Execution via util/bash TCP 443
2026-03-28 05:48:27 ET WEB_SERVER WebShell Generic - wget http - POST TCP 443
2026-03-28 05:48:27 SURICATA HTTP Host header invalid TCP 443
2026-03-28 05:48:27 ET WEB_SERVER WebShell Generic - wget http - POST TCP 443
2026-03-28 05:48:27 ET EXPLOIT F5 BIG-IP iControl REST Authentication Bypass Attempt (CVE-2022-1388) M3 TCP 443
2026-03-28 01:42:41 ET WEB_SPECIFIC_APPS Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway - Default Credentials TCP 80
2026-03-28 01:42:41 ET WEB_SERVER WebShell Generic - wget http - POST TCP 80
2026-03-28 01:42:41 ET WEB_SPECIFIC_APPS Microhard Systems 3G/4G Cellular Ethernet and Serial Gateway - Default Credentials TCP 80
2026-03-28 01:42:41 ET WEB_SERVER WebShell Generic - wget http - POST TCP 80
2026-03-28 01:42:41 SURICATA HTTP Host header invalid TCP 80
2026-03-28 01:42:41 SURICATA HTTP Host header invalid TCP 80
2026-03-26 11:35:50 ET HUNTING Suspicious Chmod Usage in URI (Inbound) TCP 80

 

Back to top