๐ซ๐ท
tecnoacquisti.com
2026-06-05 02:59:59
(1 week ago)
PrestaShop Security Module: Calls WordPress paths probing known vulnerabilities
Web App Attack
๐ซ๐ท
guillaume illien
2026-06-04 17:14:44
(2 weeks ago)
178.128.210.224 - - [04/Jun/2026:17:14:34 +0000] "GET /ms-controller.php HTTP/1.1" 301 178 "-" "Mozi ...
show more
178.128.210.224 - - [04/Jun/2026:17:14:34 +0000] "GET /ms-controller.php HTTP/1.1" 301 178 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/92.0.4515.131 Safari/537.36 Edg/92.0.902.67"
178.128.210.224 - - [04/Jun/2026:17:14:36 +0000] "GET /new.php HTTP/1.1" 301 178 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/92.0.4515.131 Safari/537.36 Edg/92.0.902.67"
178.128.210.224 - - [04/Jun/2026:17:14:38 +0000] "GET /offline.php HTTP/1.1" 301 178 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/92.0.4515.131 Safari/537.36 Edg/92.0.902.67"
178.128.210.224 - - [04/Jun/2026:17:14:39 +0000] "GET /pdf.php HTTP/1.1" 301 178 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/92.0.4515.131 Safari/537.36 Edg/92.0.902.67"
178.128.210.224 - - [04/Jun/2026:17:14:40 +0000] "GET /plugins.php HTTP/1.1" 301 178 "-" "Mozilla/5.0 (Macinto
...
show less
Hacking
Brute-Force
Web App Attack
SSH
๐ซ๐ท
guillaume illien
2026-06-04 16:54:24
(2 weeks ago)
178.128.210.224 - - [04/Jun/2026:16:54:13 +0000] "GET /mini.php HTTP/1.1" 301 178 "-" "Mozilla/5.0 ( ...
show more
178.128.210.224 - - [04/Jun/2026:16:54:13 +0000] "GET /mini.php HTTP/1.1" 301 178 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/57.0.2987.133 Safari/537.36"
178.128.210.224 - - [04/Jun/2026:16:54:15 +0000] "GET /shells.php HTTP/1.1" 301 178 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 14_6 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/14.0 Mobile/15E148 Safari/604.1"
178.128.210.224 - - [04/Jun/2026:16:54:17 +0000] "GET /tiny HTTP/1.1" 301 178 "-" "Mozilla/5.0 (Linux; Android 7.1.1; SM-J730F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/68.0.3440.91 Mobile Safari/537.36"
178.128.210.224 - - [04/Jun/2026:16:54:19 +0000] "GET /alfa.php HTTP/1.1" 301 178 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_14_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/89.0.4389.82 Safari/537.36"
178.128.210.224 - - [04/Jun/2026:16:54:20 +0000] "GET /alfanew.php HTTP/1.1" 301 178 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; AS; rv:11.0) like
...
show less
Hacking
Brute-Force
Web App Attack
SSH
๐ฎ๐ฉ
sockominfo
2026-06-04 11:00:47
(2 weeks ago)
Reported by TangerangKota-CSIRT. Status: MALICIOUS
Hacking
Email Spam
๐ซ๐ท
dynamix
2026-06-04 04:44:16
(2 weeks ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-06-04 00:10:37
(2 weeks ago)
alfa-rex.php
Hacking
Brute-Force
Web App Attack
Anonymous
2026-06-03 15:47:39
(2 weeks ago)
[osotir.org] httpd-404: sites=osotir.org; logs=/var/log/httpd/domains/osotir.org.log; samples=/mini. ...
show more
[osotir.org] httpd-404: sites=osotir.org; logs=/var/log/httpd/domains/osotir.org.log; samples=/mini.php | /shells.php | /tiny
show less
Web App Attack
๐ง๐ท
SOC PR
2026-06-03 04:08:23
(2 weeks ago)
IPS: WordPress HTTP Brute Force Login Attempt.
Brute-Force
๐ซ๐ฎ
as211431.net
2026-06-03 00:10:38
(2 weeks ago)
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1. ...
show more
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /404.php
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:91.0) Gecko/20100101 Firefox/91.0
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
Anonymous
2026-06-02 12:05:01
(2 weeks ago)
Brute-Force
Bad Web Bot
Web App Attack