๐ณ๐ฑ
homeshowdomain.nl
2026-06-02 22:00:25
(3 weeks ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-01.
show less
Web App Attack
SSH
Hacking
๐ง๐ช
cmbplf
2026-06-01 17:05:58
(3 weeks ago)
73.665 requests in 1 hour (2mos2w4d)
Brute-Force
Bad Web Bot
๐ณ๐ฑ
Savvii
2026-06-01 16:33:13
(3 weeks ago)
10 attempts against mh_ha-misc-ban on mist
Brute-Force
Web App Attack
๐ง๐ช
voormedia
2026-06-01 16:32:16
(3 weeks ago)
Accessed trap at '/.git/config'
Web App Attack
๐บ๐ธ
agenciahypelab.com.br
2026-05-31 10:20:26
(3 weeks ago)
WordPress login brute-force detectado e bloqueado pelo CSF/LFD. Trigger: LF_TRIGGER
Brute-Force
SSH
๐ง๐ท
vfAcceloReporter
2026-05-31 02:59:53
(3 weeks ago)
143.198.42.140 - - [30/May/2026:23:59:52 -0300] "GET /.git/config HTTP/1.1" 404 124 "-" "Mozilla/5.0 ...
show more
143.198.42.140 - - [30/May/2026:23:59:52 -0300] "GET /.git/config HTTP/1.1" 404 124 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36"
143.198.42.140 - - [30/May/2026:23:59:52 -0300] "GET /.git/config HTTP/1.1" 404 124 "http://hydro.vieirafilho.com.br/.git/config" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36"
143.198.42.140 - - [30/May/2026:23:59:52 -0300] "GET //assets/plugins/jquery.filer/php/readme.txt HTTP/1.1" 400 90 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36"
143.198.42.140 - - [30/May/2026:23:59:52 -0300] "GET //jquery.filer/php/readme.txt HTTP/1.1" 400 90 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36"
143.198.42.140 - - [30/May/2026:23:59:52 -0300] "GET //plugins/jquery.filer/php/readme.txt HTTP/1.1" 40
...
show less
Brute-Force
Web App Attack
Exploited Host
๐ง๐ท
dominioz
2026-05-31 02:41:51
(3 weeks ago)
2026-05-31 02:41:04 GET /.git/config - - 143.198.42.140 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64 ...
show more
2026-05-31 02:41:04 GET /.git/config - - 143.198.42.140 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/132.0.0.0+Safari/537.36 - 404 1440
2026-05-31 02:41:09 GET /static/lib/jquery-file-upload/server/php/ - - 143.198.42.140 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/132.0.0.0+Safari/537.36 - 404 1440
2026-05-31 02:41:09 GET /assets/plugins/jQuery-File-Upload/server/php/ - - 143.198.42.140 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/132.0.0.0+Safari/537.36 - 404 1440
2026-05-31 02:41:09 POST /alfacgiapi/perl.alfa - - 143.198.42.140 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/132.0.0.0+Safari/537.36 - 404 1440
...
show less
Web App Attack
๐ง๐ท
vfAcceloReporter
2026-05-31 00:35:19
(3 weeks ago)
143.198.42.140 - - [30/May/2026:21:35:15 -0300] "GET / HTTP/1.1" 502 559 "http://grafana.vieirafilho ...
show more
143.198.42.140 - - [30/May/2026:21:35:15 -0300] "GET / HTTP/1.1" 502 559 "http://grafana.vieirafilho.com.br/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36"
143.198.42.140 - - [30/May/2026:21:35:16 -0300] "GET / HTTP/1.1" 502 559 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36"
143.198.42.140 - - [30/May/2026:21:35:18 -0300] "GET / HTTP/1.1" 502 559 "http://grafana.vieirafilho.com.br/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36"
143.198.42.140 - - [30/May/2026:21:35:18 -0300] "GET /.git/config HTTP/1.1" 502 559 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36"
143.198.42.140 - - [30/May/2026:21:35:18 -0300] "GET /.git/config HTTP/1.1" 502 559 "http://grafana.vieirafilho.com.br/.git/config" "Mozilla/5.0 (Windows NT 10
...
show less
Brute-Force
Web App Attack
Exploited Host
๐ง๐ท
vfAcceloReporter
2026-05-31 00:03:06
(3 weeks ago)
143.198.42.140 - - [30/May/2026:21:03:05 -0300] "GET /.git/config HTTP/1.1" 404 11 "-" "Mozilla/5.0 ...
show more
143.198.42.140 - - [30/May/2026:21:03:05 -0300] "GET /.git/config HTTP/1.1" 404 11 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36"
143.198.42.140 - - [30/May/2026:21:03:05 -0300] "GET /.git/config HTTP/1.1" 404 11 "http://git.accelo.ind.br/.git/config" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36"
143.198.42.140 - - [30/May/2026:21:03:05 -0300] "GET //jquery.filer/php/readme.txt HTTP/1.1" 404 11 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36"
143.198.42.140 - - [30/May/2026:21:03:05 -0300] "GET //file-manager/initialize HTTP/1.1" 404 11 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36"
143.198.42.140 - - [30/May/2026:21:03:06 -0300] "GET //assets/plugins/jQuery-File-Upload/server/php/ HTTP/1.1" 404 0 "-" "Mozilla/5
...
show less
Brute-Force
Web App Attack
Exploited Host
๐ซ๐ฎ
agaesteves
2026-05-30 23:51:16
(3 weeks ago)
[SISHIPISMO 360] TipoAtaque.PATH_PROBE | Acesso a path suspeito: //assets/vendor/jquery.filer/php/re ...
show more
[SISHIPISMO 360] TipoAtaque.PATH_PROBE | Acesso a path suspeito: //assets/vendor/jquery.filer/php/readme.txt | Paths: //assets/vendor/jquery.filer/php/readme.txt | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Sa
show less
Web App Attack
Anonymous
2026-05-30 19:47:43
(3 weeks ago)
143.198.42.140 - - [30/May/2026:16:47:42 -0300] "GET /.git/config HTTP/1.1" 403 874 "-" "Mozilla/5.0 ...
show more
143.198.42.140 - - [30/May/2026:16:47:42 -0300] "GET /.git/config HTTP/1.1" 403 874 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36"
143.198.42.140 - - [30/May/2026:16:47:42 -0300] "GET /.git/config HTTP/1.1" 403 874 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36"
...
show less
Port Scan
๐ช๐ธ
pipeline.es
2026-05-30 18:45:36
(3 weeks ago)
Web scanning / probing for vulnerable paths | URL: //plugins/kcfinder/upload.php | Evidence: escalat ...
show more
Web scanning / probing for vulnerable paths | URL: //plugins/kcfinder/upload.php | Evidence: escalaturismo.com.br 143.198.42.140 - - [30/May/2026:20:43:53 +0200] \"GET //plugins/kcfinder/upload.php HTTP/1.1\" 404 19231 \"-\" \"Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36\" GEOIP_COUNTRY_CODE=CA | ASN: DIGITALOCEAN-ASN | Country: CA
show less
Port Scan
Web App Attack
๐ง๐ท
dominioz
2026-05-30 17:13:22
(3 weeks ago)
2026-05-30 16:29:17 GET /.git/config - - 143.198.42.140 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64 ...
show more
2026-05-30 16:29:17 GET /.git/config - - 143.198.42.140 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/132.0.0.0+Safari/537.36 - 301 465
2026-05-30 16:29:17 GET /.git/config - - 143.198.42.140 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/132.0.0.0+Safari/537.36 - 301 566
2026-05-30 16:29:17 GET /.git/config - - 143.198.42.140 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/132.0.0.0+Safari/537.36 http://dynadesk.com.br/.git/config 301 566
2026-05-30 16:29:17 GET /err/ 404;https://dynadesk.com.br:443/.git/config - 143.198.42.140 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/132.0.0.0+Safari/537.36 https://dynadesk.com.br//.git/config 302 707
...
show less
Web App Attack
Anonymous
2026-05-30 16:32:13
(3 weeks ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
Anonymous
2026-05-30 16:31:00
(3 weeks ago)
[redacted] 143.198.42.140 - - [30/May/2026:18:30:58 +0200] "GET //assets/admin/bower_components/jque ...
show more
[redacted] 143.198.42.140 - - [30/May/2026:18:30:58 +0200] "GET //assets/admin/bower_components/jquery.filer/php/readme.txt HTTP/1.1" 404 196 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36"
[redacted] 143.198.42.140 - - [30/May/2026:18:30:58 +0200] "GET //admin/jquery-file-upload/server/php/ HTTP/1.1" 404 196 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36"
[redacted] 143.198.42.140 - - [30/May/2026:18:30:58 +0200] "GET //admin/server/php/ HTTP/1.1" 404 196 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36"
[redacted] 143.198.42.140 - - [30/May/2026:18:30:58 +0200] "GET //admin/galerie/server/php/ HTTP/1.1" 404 196 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36"
[redacted] 143.198.42.140 - - [30/May/2026:18:30:58 +0200]
...
show less
Hacking
Web App Attack