π©πͺ
conseilgouz
2026-07-23 00:41:28
(1 day ago)
ave-Joomla Admin : try to force the door...
Hacking
π©πͺ
netclix.gr
2026-07-22 23:50:58
(1 day ago)
(PERMBLOCK) 13.220.161.21 (US/United States/ec2-13-220-161-21.compute-1.amazonaws.com) has had more ...
show more
(PERMBLOCK) 13.220.161.21 (US/United States/ec2-13-220-161-21.compute-1.amazonaws.com) has had more than 2 temp blocks in the last 604800 secs; Ports: *; Direction: inout; Trigger: LF_PERMBLOCK_COUNT; Logs:
show less
Port Scan
π³π±
Savvii
2026-07-22 11:18:01
(2 days ago)
20 attempts against mh-misbehave-ban on burne
Brute-Force
Bad Web Bot
Web App Attack
π³π±
Site.eu
2026-07-22 07:57:38
(2 days ago)
Excessive multi-domain requests
Brute-Force
π©πͺ
netclix.gr
2026-07-22 04:04:33
(2 days ago)
(aggressive_scan) Aggressive Web Exploit Scan 13.220.161.21 (US/United States/ec2-13-220-161-21.comp ...
show more
(aggressive_scan) Aggressive Web Exploit Scan 13.220.161.21 (US/United States/ec2-13-220-161-21.compute-1.amazonaws.com): 5 in the last 4600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 13.220.161.21 - - [22/Jul/2026:07:03:59 +0300] "GET /wp-config.php HTTP/2.0" 404 370 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
13.220.161.21 - - [22/Jul/2026:07:04:17 +0300] "GET /sites/default/settings.php HTTP/2.0" 404 370 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
13.220.161.21 - - [22/Jul/2026:07:04:20 +0300] "GET /sites/default/settings.local.php HTTP/2.0" 404 370 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
13.220.161.21 - - [22/Jul/2026:07:04:24 +0300] "GET /configuration.php HTTP/2.0" 404 370 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
13.220.161.21 - - [22/Jul/2026:07:04:29 +0300] "GET /app/etc/env.php HTTP/2.0" 404 370 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
show less
Port Scan
π³π±
Site.eu
2026-07-22 00:06:51
(2 days ago)
Excessive 404/403 errors
Brute-Force
π³π±
WeCloudit-Anti-Abuse
2026-07-21 23:57:16
(2 days ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
π³π±
Savvii
2026-07-21 23:32:18
(2 days ago)
20 attempts against mh-misbehave-ban on frost
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
netclix.gr
2026-07-21 16:36:35
(2 days ago)
(mod_security) mod_security triggered on hostname [redacted] 13.220.161.21 (US/United States/ec2-13- ...
show more
(mod_security) mod_security triggered on hostname [redacted] 13.220.161.21 (US/United States/ec2-13-220-161-21.compute-1.amazonaws.com): (CF_ENABLE)
show less
SQL Injection
πΊπΈ
gerensat
2026-07-21 14:25:25
(2 days ago)
2026-07-21 11:25:25 | / | [] | Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36
Web App Attack
πΊπΈ
kbeezie
2026-07-21 13:41:37
(2 days ago)
13.220.161.21 - - [21/Jul/2026:09:41:35 -0400] "GET /backup.sql HTTP/1.1" 429 162 "-" "Mozilla/5.0 ( ...
show more
13.220.161.21 - - [21/Jul/2026:09:41:35 -0400] "GET /backup.sql HTTP/1.1" 429 162 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
13.220.161.21 - - [21/Jul/2026:09:41:36 -0400] "GET /database.sql HTTP/1.1" 429 162 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
13.220.161.21 - - [21/Jul/2026:09:41:36 -0400] "GET /db.sql HTTP/1.1" 429 162 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
13.220.161.21 - - [21/Jul/2026:09:41:36 -0400] "GET /db.sqlite3 HTTP/1.1" 429 162 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
13.220.161.21 - - [21/Jul/2026:09:41:37 -0400] "GET /www.zip HTTP/1.1" 429 162 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
show less
Bad Web Bot
Web App Attack
π©πͺ
netclix.gr
2026-07-21 10:16:55
(3 days ago)
(aggressive_scan) Aggressive Web Exploit Scan 13.220.161.21 (US/United States/ec2-13-220-161-21.comp ...
show more
(aggressive_scan) Aggressive Web Exploit Scan 13.220.161.21 (US/United States/ec2-13-220-161-21.compute-1.amazonaws.com): 5 in the last 4600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 13.220.161.21 - - [21/Jul/2026:13:15:50 +0300] "GET /wp-config.php HTTP/2.0" 403 371 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
13.220.161.21 - - [21/Jul/2026:13:15:50 +0300] "GET /wp-config.php.bak HTTP/2.0" 403 371 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
13.220.161.21 - - [21/Jul/2026:13:15:50 +0300] "GET /wp-config.php.old HTTP/2.0" 403 371 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
13.220.161.21 - - [21/Jul/2026:13:15:50 +0300] "GET /wp-config.php.txt HTTP/2.0" 403 371 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
13.220.161.21 - - [21/Jul/2026:13:15:51 +0300] "GET /wp-config.php.save HTTP/2.0" 403 371 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
show less
Port Scan
π©πͺ
LRob
2026-07-21 09:11:41
(3 days ago)
CrowdSec: crowdsecurity/http-probing | req: /debug | 11 distinct paths | UA: Mozilla/5.0 (Windows NT ...
show more
CrowdSec: crowdsecurity/http-probing | req: /debug | 11 distinct paths | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36
show less
Port Scan
Web App Attack
π³π±
Savvii
2026-07-20 21:23:07
(3 days ago)
20 attempts against mh-misbehave-ban on redirect
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
n2nguyenn2nguyen
2026-07-20 20:25:13
(3 days ago)
Blocked by YFC Security on https://fencingforward.com β type: directory_scan_attempts
Web App Attack