π¬π§
no1knows.com
2026-01-19 16:37:29
(7 months ago)
2026/01/19 16:37:24 [error] 3763492#3763492: *107788 FastCGI sent in stderr: "Primary script unknown ...
show more
2026/01/19 16:37:24 [error] 3763492#3763492: *107788 FastCGI sent in stderr: "Primary script unknown" while reading response header from upstream, client: 172.68.243.59, server: ldn.no1knows.com, request: "GET /wp-login.php HTTP/1.1", upstream: "fastcgi://unix:/run/php-fpm/www.sock:", host: "staging.no1knows.com"
2026/01/19 16:37:25 [error] 3763492#3763492: *107788 FastCGI sent in stderr: "Primary script unknown" while reading response header from upstream, client: 172.68.243.59, server: ldn.no1knows.com, request: "GET /wp-login.php HTTP/1.1", upstream: "fastcgi://unix:/run/php-fpm/www.sock:", host: "staging.no1knows.com"
2026/01/19 16:37:26 [error] 3763492#3763492: *107788 FastCGI sent in stderr: "Primary script unknown" while reading response header from upstream, client: 172.68.243.59, server: ldn.no1knows.com, request: "GET /wp-login.php HTTP/1.1", upstream: "fastcgi://unix:/run/php-fpm/www.sock:", host: "staging.no1knows.com"
...
show less
Brute-Force
Bad Web Bot
π¬π§
no1knows.com
2026-01-15 15:46:03
(8 months ago)
2026/01/15 15:45:51 [error] 1775046#1775046: *77617 FastCGI sent in stderr: "Primary script unknown" ...
show more
2026/01/15 15:45:51 [error] 1775046#1775046: *77617 FastCGI sent in stderr: "Primary script unknown" while reading response header from upstream, client: 172.68.243.59, server: ldn.no1knows.com, request: "GET /blog/wp-login.php HTTP/1.1", upstream: "fastcgi://unix:/run/php-fpm/www.sock:", host: "staging.no1knows.com"
2026/01/15 15:45:51 [error] 1775046#1775046: *77617 FastCGI sent in stderr: "Primary script unknown" while reading response header from upstream, client: 172.68.243.59, server: ldn.no1knows.com, request: "GET /wp-login.php HTTP/1.1", upstream: "fastcgi://unix:/run/php-fpm/www.sock:", host: "staging.no1knows.com"
2026/01/15 15:45:52 [error] 1775046#1775046: *77617 FastCGI sent in stderr: "Primary script unknown" while reading response header from upstream, client: 172.68.243.59, server: ldn.no1knows.com, request: "GET /shop/wp-login.php HTTP/1.1", upstream: "fastcgi://unix:/run/php-fpm/www.sock:", host: "staging.no1knows.com"
...
show less
Brute-Force
Bad Web Bot
πΊπΈ
Paschen J Ki
2025-08-27 20:11:37
(1 year ago)
Blocked by UFW [8008/tcp]
Source port: 25616
TTL: 47
Packet length: 60
TOS: 0x00
This report was ge ...
show more
Blocked by UFW [8008/tcp]
Source port: 25616
TTL: 47
Packet length: 60
TOS: 0x00
This report was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
π³π±
Study Bitcoin π€
2025-05-04 16:22:36
(1 year ago)
Port probe to tcp/443 (https)
[srv125]
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-05-04 15:41:27
(1 year ago)
Ports: 80,443; Direction: 1; Trigger: LF_CXS
Brute-Force
SSH
π»π³
Xuan Can
2025-05-04 14:07:32
(1 year ago)
(mod_security) mod_security (id:20000222) triggered by 172.68.243.59 (DK/Denmark/-): 1 in the last 3 ...
show more
(mod_security) mod_security (id:20000222) triggered by 172.68.243.59 (DK/Denmark/-): 1 in the last 3600 secs; Ports: 80,443; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 04 21:07:26.441198 2025] [security2:error] [pid 13099:tid 13141] [client 172.68.243.59:0] [client 172.68.243.59] ModSecurity: Access denied with connection close (phase 2). Pattern match "wp-admin" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "46"] [id "20000222"] [severity "CRITICAL"] [hostname "zura.vn"] [uri "/wp-admin/setup-config.php"] [unique_id "aBd0nnw_QjzCpr0nr9hRYwAAAA8"]
show less
Brute-Force
SSH
Anonymous
2025-05-01 17:37:37
(1 year ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
π³π±
Study Bitcoin π€
2025-04-12 10:54:38
(1 year ago)
Port probe to tcp/80 (http)
[srv125]
Port Scan
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-04-06 06:17:17
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 172.68.243.59 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.243.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 06 02:17:13.420410 2025] [security2:error] [pid 15440:tid 15440] [client 172.68.243.59:48176] [client 172.68.243.59] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.shubil.com"] [uri "/.env"] [unique_id "Z_IcaRqzueMBliBH3NIKiQAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
Study Bitcoin π€
2025-04-04 05:44:41
(1 year ago)
Port probe to tcp/443 (https)
[srv125]
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-04-02 09:26:45
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 172.68.243.59 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.243.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 02 05:26:40.731518 2025] [security2:error] [pid 26306:tid 26306] [client 172.68.243.59:38912] [client 172.68.243.59] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "virtualizecr.net"] [uri "/vendor/.env"] [unique_id "Z-0C0GTf78HEpg8AaeCVnQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
ManagedStack
2025-03-29 16:09:17
(1 year ago)
Wordpress Attack
Web App Attack
π³π±
Study Bitcoin π€
2025-03-16 00:23:02
(1 year ago)
Port probe to tcp/443 (https)
[srv125]
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-03-02 01:00:21
(1 year ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
Anonymous
2025-02-07 15:35:43
(1 year ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH