{"level":"info","ts":1779454158.9973066,"logger":"http.log.access.log1","msg":"handled request","req ...
show more{"level":"info","ts":1779454158.9973066,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"138.68.86.97","remote_port":"60394","client_ip":"138.68.86.97","proto":"HTTP/1.1","method":"GET","host":"status.majorcadailybulletin.com","uri":"/panel","headers":{"User-Agent":["Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/123.0.0.0 Safari/537.36"],"Accept":["text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7"],"Accept-Encoding":["gzip"]},"tls":{"resumed":false,"version":772,"cipher_suite":4865,"proto":"","server_name":"status.majorcadailybulletin.com"}},"bytes_read":0,"user_id":"","duration":0.000523125,"size":0,"status":429,"resp_headers":{"Server":["Caddy"],"Alt-Svc":["h3=\":443\"; ma=2592000"],"Retry-After":["1"]}}
{"level":"info","ts":1779454159.0024514,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"138.68.86.97",
...
show less
DDoS Attack
Web App Attack
Anonymous
Bot / seems abusive / Apache connections: 117
DDoS Attack
Web Spam
Bad Web Bot
Web App Attack
Anonymous
138.68.86.97 - - [21/May/2026:05:16:57 +0200] "GET /uploads/uploads/uploads/uploads/uploads/uploads/ ...
show more138.68.86.97 - - [21/May/2026:05:16:57 +0200] "GET /uploads/uploads/uploads/uploads/uploads/uploads/uploads/uploads/uploads HTTP/1.1" 404 7626 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/143.0.0.0 Safari/537.36"
138.68.86.97 - - [21/May/2026:05:16:57 +0200] "GET /app/xxx HTTP/1.1" 404 15629 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/143.0.0.0 Safari/537.36"
138.68.86.97 - - [21/May/2026:05:16:57 +0200] "GET /admin/pages/page HTTP/1.1" 404 15632 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/143.0.0.0 Safari/537.36"
138.68.86.97 - - [21/May/2026:05:16:57 +0200] "GET /user/editor.js HTTP/1.1" 404 15631 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/143.0.0.0 Safari/537.36"
138.68.86.97 - - [21/May/2026:05:16:57 +0200] "GET /adminsaassasa.js HTTP/1.1" 404 15646 "-" "Mozilla/5.0 (Windows NT 10.0; Win64
...
show less
CrowdSec wazuh-web-scan | Wazuh rule 31151 | Multiple web server 400 error codes from same source ip ...
show moreCrowdSec wazuh-web-scan | Wazuh rule 31151 | Multiple web server 400 error codes from same source ip. | URL: /wp-includes/assets/application | Log: 138.68.86.97 - - [20/May/2026:13:46:17 +0200] \"GET /wp-includes/assets/application HTTP/1.1\" 404 196 \"-\" \"Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/143.0.0.0 Safari/537.36\" GEOIP_COUNTRY_CODE=DE
show less
CrowdSec wazuh-web-scan | Wazuh rule 31151 | Multiple web server 400 error codes from same source ip ...
show moreCrowdSec wazuh-web-scan | Wazuh rule 31151 | Multiple web server 400 error codes from same source ip. | URL: /wp-includes/js/js | Log: 138.68.86.97 - - [20/May/2026:13:46:17 +0200] \"GET /wp-includes/js/js HTTP/1.1\" 404 196 \"-\" \"Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/143.0.0.0 Safari/537.36\" GEOIP_COUNTRY_CODE=DE
show less