๐ฎ๐ฉ
soc-yk
2026-06-04 07:42:11
(41 minutes ago)
Type: web_scanning
Risk: 100
Events: 5803
Evidence:
- Automated hostile web probing detected
- Repe ...
show more
Type: web_scanning
Risk: 100
Events: 5803
Evidence:
- Automated hostile web probing detected
- Repeated web scanning activity observed
- Multi-event operational persistence identified
- Threat escalation behavior observed
show less
Web App Attack
๐ง๐ท
vfAcceloReporter
2026-06-04 07:22:08
(1 hour ago)
140.245.125.67 - - [04/Jun/2026:04:21:53 -0300] "GET /wp-admin/admin-ajax.php HTTP/1.1" 500 177 "-" ...
show more
140.245.125.67 - - [04/Jun/2026:04:21:53 -0300] "GET /wp-admin/admin-ajax.php HTTP/1.1" 500 177 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/14.1 Safari/605.1.15"
140.245.125.67 - - [04/Jun/2026:04:21:54 -0300] "GET /wp-admin/load-scripts.php HTTP/1.1" 500 177 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/14.0.3 Safari/605.1.15"
140.245.125.67 - - [04/Jun/2026:04:21:56 -0300] "GET /wp-admin/load-styles.php HTTP/1.1" 500 177 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/14.1 Safari/605.1.15"
140.245.125.67 - - [04/Jun/2026:04:22:05 -0300] "GET /wp-includes/version.php HTTP/1.1" 500 177 "-" "Mozilla/5.0 (X11; Linux x86_64; rv:91.0) Gecko/20100101 Firefox/91.0"
140.245.125.67 - - [04/Jun/2026:04:22:07 -0300] "GET /wp-includes/functions.php HTTP/1.1" 500 177 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/605.1.15 (KHT
...
show less
Brute-Force
Web App Attack
Exploited Host
๐บ๐ธ
paulo.apoloni
2026-06-04 06:35:08
(1 hour ago)
140.245.125.67 - - [04/Jun/2026:03:34:50 -0300] "GET /wp-admin/ HTTP/1.1" 404 2925 "-" "Mozilla/5.0 ...
show more
140.245.125.67 - - [04/Jun/2026:03:34:50 -0300] "GET /wp-admin/ HTTP/1.1" 404 2925 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/92.0.4515.131 Safari/537.36"
140.245.125.67 - - [04/Jun/2026:03:35:00 -0300] "GET /wp-admin/admin-ajax.php HTTP/1.1" 404 2878 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.0 Safari/605.1.15"
140.245.125.67 - - [04/Jun/2026:03:35:02 -0300] "GET /wp-admin/load-scripts.php HTTP/1.1" 404 2874 "-" "Mozilla/5.0 (Windows NT 6.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36"
140.245.125.67 - - [04/Jun/2026:03:35:04 -0300] "GET /wp-admin/load-styles.php HTTP/1.1" 404 2877 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.0 Safari/605.1.15"
140.245.125.67 - - [04/Jun/2026:03:35:06 -0300] "GET /wp-content/themes/ HTTP/1.1" 404 2877 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebK
...
show less
Web App Attack
๐ฎ๐ฉ
soc-yk
2026-06-04 01:42:11
(6 hours ago)
Type: web_scanning
Risk: 80
Events: 2614
Evidence:
- Automated hostile web probing detected
- Repea ...
show more
Type: web_scanning
Risk: 80
Events: 2614
Evidence:
- Automated hostile web probing detected
- Repeated web scanning activity observed
- Multi-event operational persistence identified
show less
Web App Attack
๐ฎ๐ฉ
soc-yk
2026-06-03 20:54:12
(11 hours ago)
Type: credential_attack
Risk: 86
Events: 691
Evidence:
- Repeated authentication attack activity de ...
show more
Type: credential_attack
Risk: 86
Events: 691
Evidence:
- Repeated authentication attack activity detected
- Credential abuse behavior observed
- Multi-event operational persistence identified
- Threat escalation behavior observed
show less
Brute-Force
SSH
๐ฆ๐น
Erpelstolz
2026-06-03 18:48:23
(13 hours ago)
VM 131: 140.245.125.67 - - [03/Jun/2026:20:48:23 +0200] "GET /wp-login.php HTTP/1.1" 404 8521
Web App Attack
๐ฌ๐ง
consul.to
2026-06-03 18:15:29
(14 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐ฎ๐ฉ
soc-yk
2026-06-03 17:54:11
(14 hours ago)
Type: suspicious_network_activity
Risk: 90
Events: 391
Evidence:
- Persistent suspicious network ac ...
show more
Type: suspicious_network_activity
Risk: 90
Events: 391
Evidence:
- Persistent suspicious network activity detected
- Repeated hostile operational behavior observed
- Multi-event operational persistence identified
- Threat escalation behavior observed
show less
Port Scan
Hacking
๐บ๐ธ
agenciahypelab.com.br
2026-06-03 17:29:51
(14 hours ago)
WordPress login brute-force detectado e bloqueado pelo CSF/LFD. Trigger: LF_TRIGGER
Brute-Force
SSH
๐ฎ๐น
VHosting
2026-06-03 17:25:08
(14 hours ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
Anonymous
2026-06-03 17:17:50
(15 hours ago)
Multiple web server 400 error codes from same source ip
Web App Attack