๐ฆ๐น
nomzamo
2025-01-21 04:07:08
(1 year ago)
Fail2Ban reported: nginx-noscript
Brute-Force
Bad Web Bot
SSH
Anonymous
2024-10-16 13:31:00
(1 year ago)
IP relacionado a webshells. URLs associadas: /wp-login.php, /wp-admin/plugin-install.php
SSH
๐บ๐ธ
insightdiabetes.com
2024-08-14 16:49:26
(2 years ago)
IP reported by Wordfence
Brute-Force
SSH
Anonymous
2024-08-14 08:27:52
(2 years ago)
[14/Aug/2024:18:27:52 +1000] "GET //wp-includes/css/dashicons.min.css HTTP/1.1" 404 196
Hacking
Web App Attack
๐บ๐ธ
woof
2024-08-13 08:38:35
(2 years ago)
This IP accessed a banned path "/vendor/phpunit/phpunit/LICENSE" with User Agent "Apache/2.4.34 (Ubu ...
show more
This IP accessed a banned path "/vendor/phpunit/phpunit/LICENSE" with User Agent "Apache/2.4.34 (Ubuntu) OpenSSL/1.1.1 (internal dummy connection)". (ListenCaddy)
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
dwmp
2024-08-11 13:06:18
(2 years ago)
[Sun Aug 11 14:21:14.553378 2024] [authz_core:error] [pid 2178994:tid 139862925637376] [client 128.1 ...
show more
[Sun Aug 11 14:21:14.553378 2024] [authz_core:error] [pid 2178994:tid 139862925637376] [client 128.199.152.116:57970] AH01630: client denied by server configuration: /var/www/vhosts/assicurazionemodena.it/httpdocs/wp-admin/setup-config.php, referer: www.google.com
[Sun Aug 11 14:27:55.493410 2024] [authz_core:error] [pid 2178971:tid 139863143716608] [client 128.199.152.116:41026] AH01630: client denied by server configuration: /var/www/vhosts/assicurazioneparma.it/httpdocs/wordpress, referer: www.google.com
[Sun Aug 11 14:27:56.318133 2024] [authz_core:error] [pid 2178994:tid 139863143716608] [client 128.199.152.116:41028] AH01630: client denied by server configuration: /var/www/vhosts/assicurazioneparma.it/httpdocs/wp-admin/setup-config.php, referer: www.google.com
[Sun Aug 11 15:06:17.450248 2024] [authz_core:error] [pid 2178971:tid 139863194072832] [client 128.199.152.116:53618] AH01630: client denied by server configuration: /var/www/vhosts/energicom.it/httpdocs/wordpress, referer:
...
show less
Brute-Force
๐ฉ๐ช
Trashware
2024-08-09 15:41:27
(2 years ago)
Unsolicited connection attempt
Hacking
Brute-Force
๐บ๐ธ
woof
2024-08-09 13:36:26
(2 years ago)
This IP accessed a banned path "//wp-includes/css/dashicons.min.css" with User Agent "Mozlila/5.0 (L ...
show more
This IP accessed a banned path "//wp-includes/css/dashicons.min.css" with User Agent "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36". (ListenCaddy)
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
MPL
2024-08-09 13:23:40
(2 years ago)
tcp/80 (12 or more attempts)
Port Scan
๐ฉ๐ช
updown.io
2024-08-09 07:57:03
(2 years ago)
{"level":"info","ts":1723188094.6995702,"logger":"http.log.access.log1","msg":"handled request","req ...
show more
{"level":"info","ts":1723188094.6995702,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"128.199.152.116","remote_port":"42032","proto":"HTTP/1.1","method":"GET","host":"status.abetterlemonadestand.com","uri":"//wp-includes/css/dashicons.min.css","headers":{"Upgrade-Insecure-Requests":["1"],"User-Agent":["Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36"],"Accept-Language":["en-US,en;q=0.9,fr;q=0.8"],"Cache-Control":["max-age=0"],"Referer":["www.google.com"],"Connection":["keep-alive"],"Accept-Encoding":["gzip, deflate"],"Accept":["text/html,application/xhtml+xml,application/xml;q=0.9,image/webp,image/apng,*/*;q=0.8"]}},"user_id":"","duration":0.000055054,"size":0,"status":308,"resp_headers":{"Location":["https://status.abetterlemonadestand.com//wp-includes/css/dashicons.min.css"],"Content-Type":[],"Server":["Caddy"],"Connection":["close"]}}
{"level":"i
...
show less
DDoS Attack
Web App Attack
๐บ๐ธ
MPL
2024-08-08 06:43:13
(2 years ago)
tcp/80 (8 or more attempts)
Port Scan
๐ฌ๐ง
Epimetheus
2024-08-08 00:58:15
(2 years ago)
Unauthorized access attempts:
From:
128.199.152.116
Method:
HTTP GET
URI Path:
//wp-content/pl ...
show more
Unauthorized access attempts:
From:
128.199.152.116
Method:
HTTP GET
URI Path:
//wp-content/plugins/woocommerce-payments/dist/index.js.LICENSE.txt
UA:
"Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36"
show less
Web App Attack
๐ซ๐ฎ
Mr-Money
2024-08-07 15:05:19
(2 years ago)
128.199.152.116 - - [07/Aug/2024:17:05:14 +0200] "GET //wordpress/wp-admin/setup-config.php?step=1 H ...
show more
128.199.152.116 - - [07/Aug/2024:17:05:14 +0200] "GET //wordpress/wp-admin/setup-config.php?step=1 HTTP/1.1" 404 506 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36"
128.199.152.116 - - [07/Aug/2024:17:05:17 +0200] "GET /wordpress/wp-admin/setup-config.php?step=1 HTTP/1.1" 404 3662 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36"
128.199.152.116 - - [07/Aug/2024:17:05:18 +0200] "GET /wordpress/wp-admin/setup-config.php?step=1 HTTP/1.1" 404 3660 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36"
...
show less
Hacking
SQL Injection
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
MPL
2024-08-07 14:42:59
(2 years ago)
tcp/80 (8 or more attempts)
Port Scan
๐ซ๐ฎ
Mr-Money
2024-08-07 08:21:14
(2 years ago)
128.199.152.116 - - [07/Aug/2024:10:21:09 +0200] "GET //wordpress/wp-admin/setup-config.php?step=1 H ...
show more
128.199.152.116 - - [07/Aug/2024:10:21:09 +0200] "GET //wordpress/wp-admin/setup-config.php?step=1 HTTP/1.1" 404 506 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36"
128.199.152.116 - - [07/Aug/2024:10:21:12 +0200] "GET /wordpress/wp-admin/setup-config.php?step=1 HTTP/1.1" 404 3663 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36"
128.199.152.116 - - [07/Aug/2024:10:21:14 +0200] "GET /wordpress/wp-admin/setup-config.php?step=1 HTTP/1.1" 404 3661 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36"
...
show less
Hacking
SQL Injection
Bad Web Bot
Exploited Host
Web App Attack