Anonymous
2026-01-29 15:39:45
(4 months ago)
Distributed web crawl botnet attack (like Mellowtel), likely illicit scraping of AI training data to ...
show more
Distributed web crawl botnet attack (like Mellowtel), likely illicit scraping of AI training data to bypass firewall/robots.txt restrictions in printer-friendly.asp
show less
Bad Web Bot
Exploited Host
๐ซ๐ท
conseilgouz
2026-01-13 22:02:11
(5 months ago)
upe-12 : Block return, carriage return, ... characters=>/index.php?catid=8&id=58&option=com_ ...
show more
upe-12 : Block return, carriage return, ... characters=>/index.php?catid=8&id=58&option=com_content&view=article%27(')
show less
Hacking
๐ฌ๐ง
GM
2025-12-01 15:41:00
(6 months ago)
DDoS Attack
Bad Web Bot
๐ง๐ช
DrLex0
2025-11-30 17:53:27
(6 months ago)
Probing for alfacgiapi exploits
143.198.94.18 80 - [30/Nov/2025:17:53:26 +0000] "POST /alfacgiapi/b ...
show more
Probing for alfacgiapi exploits
143.198.94.18 80 - [30/Nov/2025:17:53:26 +0000] "POST /alfacgiapi/bash.alfa HTTP/1.1" 400 487 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36"
143.198.94.18 80 - [30/Nov/2025:17:53:26 +0000] "POST /alfacgiapi/bash.alfa HTTP/1.1" 400 487 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36"
143.198.94.18 80 - [30/Nov/2025:17:53:27 +0000] "POST /alfacgiapi/py.alfa HTTP/1.1" 400 487 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36"
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ช
KIDOS
2025-11-30 11:06:19
(6 months ago)
CrowdSec detected malicious activity
DDoS Attack
๐ช๐ธ
robotstxt
2025-11-29 20:39:23
(6 months ago)
143.198.94.18 - - [29/Nov/2025:20:38:58 +0000] "GET /cgi-bin/alfacgiapi/perl.alfa HTTP/1.1" 404 4722 ...
show more
143.198.94.18 - - [29/Nov/2025:20:38:58 +0000] "GET /cgi-bin/alfacgiapi/perl.alfa HTTP/1.1" 404 47225 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" "-"
143.198.94.18 - - [29/Nov/2025:20:38:59 +0000] "GET /cgi-bin/alfacgiapi/perl.alfa HTTP/1.1" 404 47225 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" "-"
143.198.94.18 - - [29/Nov/2025:20:39:00 +0000] "GET /cgi-bin/alfacgiapi/bash.alfa HTTP/1.1" 404 47225 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" "-"
143.198.94.18 - - [29/Nov/2025:20:39:04 +0000] "GET /cgi-bin/alfacgiapi/bash.alfa HTTP/1.1" 404 47225 "-" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro B
...
show less
Bad Web Bot
๐ง๐ช
cmbplf
2025-11-29 20:04:15
(6 months ago)
318 requests with url.path *.alfa
Brute-Force
Bad Web Bot
๐ฎ๐ฉ
BPS-StatisticsIndonesia
2025-11-29 12:03:06
(6 months ago)
WP Admin Scan Activities
Web App Attack
๐ช๐ธ
el-brujo
2025-11-29 08:11:32
(6 months ago)
Cloudflare WAF: Request Path: /wp_backup.php Request Query: Host: elhacker.net userAgent: Mozlila/5 ...
show more
Cloudflare WAF: Request Path: /wp_backup.php Request Query: Host: elhacker.net userAgent: Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force Action: block Source: firewallManaged ASN Description: DIGITALOCEAN-ASN Country: SG Method: GET Timestamp: 2025-11-29T08:11:32Z ruleId: 0242110ae62e44028a13bf4834780914. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
๐ช๐ธ
el-brujo
2025-11-29 07:59:40
(6 months ago)
Cloudflare WAF: Request Path: /wp-includes/Text/about.php Request Query: Host: elhacker.net userAge ...
show more
Cloudflare WAF: Request Path: /wp-includes/Text/about.php Request Query: Host: elhacker.net userAgent: Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force Action: block Source: firewallManaged ASN Description: DIGITALOCEAN-ASN Country: SG Method: GET Timestamp: 2025-11-29T07:59:40Z ruleId: 0242110ae62e44028a13bf4834780914. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
๐ช๐ธ
el-brujo
2025-11-29 07:38:16
(6 months ago)
Cloudflare WAF: Request Path: /modules/autoupgrade/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.ph ...
show more
Cloudflare WAF: Request Path: /modules/autoupgrade/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php Request Query: Host: elhacker.net userAgent: python-requests/2.32.5 Action: block Source: firewallManaged ASN Description: DIGITALOCEAN-ASN Country: SG Method: GET Timestamp: 2025-11-29T07:38:16Z ruleId: db1f213645904ab9b16b227b4a6a7b3a. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
๐บ๐ธ
oralunal
2025-11-28 12:54:49
(6 months ago)
IP banned by Fail2Ban in jail ah-suss access.log mvfnds
...
Bad Web Bot
Web App Attack
๐ช๐ธ
el-brujo
2025-11-27 08:14:44
(7 months ago)
[Thu Nov 27 09:14:40.823456 2025] [proxy_fcgi:error] [pid 1808657:tid 1809493] [remote 143.198.94.18 ...
show more
[Thu Nov 27 09:14:40.823456 2025] [proxy_fcgi:error] [pid 1808657:tid 1809493] [remote 143.198.94.18:0] AH01071: Got error 'Primary script unknown\n'
[Thu Nov 27 09:14:44.376890 2025] [proxy_fcgi:error] [pid 1808622:tid 1809072] [remote 143.198.94.18:0] AH01071: Got error 'Primary script unknown\n'
...
show less
Hacking
Web App Attack
๐ช๐ธ
robotstxt
2025-11-27 07:52:18
(7 months ago)
143.198.94.18 - - [27/Nov/2025:07:51:38 +0000] "GET /cgi-bin/alfacgiapi/perl.alfa HTTP/1.1" 404 4722 ...
show more
143.198.94.18 - - [27/Nov/2025:07:51:38 +0000] "GET /cgi-bin/alfacgiapi/perl.alfa HTTP/1.1" 404 47221 "-" rt="0.339" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" "-" h="economipedia.com" sn="economipedia.com" ru="/cgi-bin/alfacgiapi/perl.alfa" u="/index.php" ucs="-" ua="unix:/var/run/php/economipedia83.sock" us="404" uct="0.000" urt="0.339"
143.198.94.18 - - [27/Nov/2025:07:51:39 +0000] "GET /cgi-bin/alfacgiapi/perl.alfa HTTP/1.1" 404 47222 "-" rt="0.320" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" "-" h="economipedia.com" sn="economipedia.com" ru="/cgi-bin/alfacgiapi/perl.alfa" u="/index.php" ucs="-" ua="unix:/var/run/php/economipedia83.sock" us="404" uct="0.000" urt="0.320"
143.198.94.18 - - [27/Nov/2025:07:51:40 +0000] "GET /cgi-bin/a
...
show less
Bad Web Bot
๐ช๐ธ
robotstxt
2025-11-25 10:29:27
(7 months ago)
143.198.94.18 - - [25/Nov/2025:10:19:23 +0000] "GET /wp-admin.php HTTP/1.1" 404 47222 "-" rt="0.394" ...
show more
143.198.94.18 - - [25/Nov/2025:10:19:23 +0000] "GET /wp-admin.php HTTP/1.1" 404 47222 "-" rt="0.394" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" "-" h="economipedia.com" sn="economipedia.com" ru="/wp-admin.php" u="/index.php" ucs="-" ua="unix:/var/run/php/economipedia83.sock" us="404" uct="0.000" urt="0.394"
143.198.94.18 - - [25/Nov/2025:10:19:23 +0000] "GET /wp-admin.php HTTP/1.1" 404 47222 "-" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36Team Anon Force" "-"
143.198.94.18 - - [25/Nov/2025:10:28:35 +0000] "GET /cgi-bin/alfacgiapi/perl.alfa HTTP/1.1" 404 47221 "-" rt="0.364" "Mozilla/5.0 (Linux; Android 11; Redmi Note 9 Pro Build/RKQ1.200826.002; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/90.0.4430.210 Mobile Safari/537.36" "-" h="econo
...
show less
Bad Web Bot