๐น๐ญ
thaizone.com
2026-08-28 15:53:53
(11 hours ago)
Brute Force Attack on a Web Resources #2
DDoS Attack
Web Spam
Brute-Force
Web App Attack
๐ฉ๐ช
LRob
2026-08-28 14:05:53
(13 hours ago)
Abusive crawler: User-Agent on the known-bad list or claiming a placeholder identity | ua: Mozlila/5 ...
show more
Abusive crawler: User-Agent on the known-bad list or claiming a placeholder identity | ua: Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112. | path: /wp-content/plugins/shell/about.php (+1 more) | 2026-08-28 14:05 UTC
show less
Bad Web Bot
๐น๐ญ
thaizone.com
2026-08-28 13:34:24
(13 hours ago)
Brute Force Attack on a Web Resources #1
DDoS Attack
Web Spam
Brute-Force
Web App Attack
๐ฎ๐น
VHosting
2026-08-28 13:15:03
(13 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ช๐ธ
el-brujo
2026-08-28 10:57:42
(16 hours ago)
Cloudflare WAF: Request Path: /wp-content/themes/jaida/lang.php Request Query: Host: hwagm.elhacker ...
show more
Cloudflare WAF: Request Path: /wp-content/themes/jaida/lang.php Request Query: Host: hwagm.elhacker.net userAgent: Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36 Action: block Source: firewallManaged ASN Description: Contabo GmbH Country: FR Method: GET Timestamp: 2026-08-28T10:57:42Z ruleId: 0242110ae62e44028a13bf4834780914. Report generated by Cloudflare-WAF-to-AbuseIPDB.
show less
Hacking
SQL Injection
Web App Attack
๐ธ๐ช
vaia.cloud
2026-08-28 10:50:03
(16 hours ago)
crowdsecurity/http-wordpress-scan
Brute-Force
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-08-28 10:35:23
(16 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-bad-user-agent
Web App Attack
Bad Web Bot
๐ช๐ธ
el-brujo
2026-08-28 08:58:51
(18 hours ago)
Cloudflare WAF: Request Path: /wp-content/plugins/root-file-manager/wp-file.php Request Query: Host ...
show more
Cloudflare WAF: Request Path: /wp-content/plugins/root-file-manager/wp-file.php Request Query: Host: hwagm.elhacker.net userAgent: Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36 Action: block Source: firewallManaged ASN Description: Contabo GmbH Country: FR Method: GET Timestamp: 2026-08-28T08:58:51Z ruleId: 0242110ae62e44028a13bf4834780914. Report generated by Cloudflare-WAF-to-AbuseIPDB.
show less
Hacking
SQL Injection
Web App Attack
๐ฌ๐ง
Mendip_Defender
2026-08-28 08:56:00
(18 hours ago)
169.58.198.0 - - [28/Aug/2026:09:55:49 +0100] "GET /wp-content/plugins/shell/about.php HTTP/1.1" 404 ...
show more
169.58.198.0 - - [28/Aug/2026:09:55:49 +0100] "GET /wp-content/plugins/shell/about.php HTTP/1.1" 404 6371 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36"
169.58.198.0 - - [28/Aug/2026:09:55:58 +0100] "GET /wp-content/plugins/pwnd/pwnd.php HTTP/1.1" 404 6355 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36"
169.58.198.0 - - [28/Aug/2026:09:56:09 +0100] "GET /wp-content/plugins/fix/up.php HTTP/1.1" 404 6355 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36"
...
show less
Hacking
Web App Attack
Anonymous
2026-08-28 05:27:56
(21 hours ago)
๐ฅ Web application attack detected. Vulnerability scanning and exploitation attempts identified.
Web App Attack
๐ฌ๐ท
setupgr
2026-08-28 05:27:14
(21 hours ago)
(mod_security) mod_security (id:1000001) triggered by 169.58.198.0 (DE/Germany/Bavaria/Munich (Au-Ha ...
show more
(mod_security) mod_security (id:1000001) triggered by 169.58.198.0 (DE/Germany/Bavaria/Munich (Au-Haidhausen)/-/[AS51167 CONTABO]): 1 in the last 86400 secs (CF_ENABLE); Ports: *; Direction: inout; Trigger: LF_MODSEC; Logs: [Fri Aug 28 08:27:09.424724 2026] [security2:error] [pid 156933:tid 157034] [client 169.58.198.0:58536] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/about.php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "103"] [id "1000001"] [msg "Bad file blocked: /wp-content/plugins/shell/about.php"] [severity "CRITICAL"] [tag "security"] [hostname "pankoskal.gr"] [uri "/wp-content/plugins/shell/about.php"] [unique_id "apEcLWMbKS5N-PGyxj57CwAAAIc"], referer: www.google.com
show less
Port Scan
๐ซ๐ท
dynamix
2026-08-27 22:26:55
(1 day ago)
Multiple WAF Violations
Web App Attack
๐ต๐ฑ
strefapi_com
2026-08-27 20:28:04
(1 day ago)
Brute-force, web
...
Hacking
Brute-Force
Web App Attack
๐บ๐ธ
Starburst SysOp Team
2026-08-27 16:31:48
(1 day ago)
Found User-Agent associated with security scanner. Matched phrase "Mozlila" at REQUEST_HEADERS:User- ...
show more
Found User-Agent associated with security scanner. Matched phrase "Mozlila" at REQUEST_HEADERS:User-Agent. (913100-mnz6-1)
show less
Hacking
Bad Web Bot
๐ซ๐ท
Catalin Negru
2026-08-27 16:01:54
(1 day ago)
Recidive ban by fail2ban on server.blackbit.ro
Brute-Force