๐น๐ท
neron
2026-07-24 15:30:03
(8 hours ago)
CrowdSec blocked: http:exploit detected via OPNsense firewall
Hacking
Web App Attack
Anonymous
2026-07-23 15:01:01
(1 day ago)
...
Web App Attack
Anonymous
2026-07-23 02:59:57
(1 day ago)
Multiple, malicious web requests detected
Port Scan
Hacking
๐ฉ๐ช
raph
2026-07-19 09:43:43
(5 days ago)
[Wordpress] crawler /wp-admin/*, /wp-content/*, etc.
Bad Web Bot
Web App Attack
๐บ๐ธ
ambor
2026-07-16 13:15:39
(1 week ago)
Honeypot access: WordPress installation path scan. Path: /wp-includes/
Brute-Force
Web App Attack
๐ซ๐ท
Baking333
2026-07-15 10:16:12
(1 week ago)
[redacted] 185.192.71.61 - - [15/Jul/2026:11:16:10 +0100] "GET /wp-includes/ HTTP/1.1" 301 5828 0/29 ...
show more
[redacted] 185.192.71.61 - - [15/Jul/2026:11:16:10 +0100] "GET /wp-includes/ HTTP/1.1" 301 5828 0/292 "https://[redacted]" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36" [redacted] 185.192.71.61 - - [15/Jul/2026:11:16:10 +0100] "GET /wp-includes HTTP/1.1" 302 1539 0/80911 "https://[redacted]" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36"
show less
Bad Web Bot
Web App Attack
๐ซ๐ท
Octopuce
2026-07-07 05:57:18
(2 weeks ago)
Aggressive web search of vulnerable pages: /ms-themes.php /chosen.php /file.php /flower.php /gifclas ...
show more
Aggressive web search of vulnerable pages: /ms-themes.php /chosen.php /file.php /flower.php /gifclass.php /bless.php /class-t.api.php /blurbs.p ...
show less
Web App Attack
๐ซ๐ท
masterguru
2026-07-06 09:18:42
(2 weeks ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 185.192.71.61 (GB/United Kingdom/-): ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 185.192.71.61 (GB/United Kingdom/-): 1 in the last 3600 secs (0-195)
show less
Hacking
๐ฉ๐ช
FeG Deutschland
2026-07-06 07:38:45
(2 weeks ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 127
Exploited Host
Web App Attack
๐บ๐ธ
kosada.com
2026-06-27 06:22:46
(3 weeks ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-15 17:58:17
(1 month ago)
(mod_security) mod_security (id:240000) triggered by 185.192.71.61 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240000) triggered by 185.192.71.61 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 13:58:11.993983 2026] [security2:error] [pid 9425:tid 9425] [client 185.192.71.61:45289] ModSecurity: Access denied with code 403 (phase 2). String match ".php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/24_Apps_Joomla.conf"] [line "74"] [id "240000"] [rev "1"] [msg "COMODO WAF: Protecting Joomla folder||barpubsigns.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Joomla"] [hostname "barpubsigns.com"] [uri "/images/stories/themes.php"] [unique_id "ajA9M0NwVKb5epiYf5uV-AAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Admin-Gito
2026-06-15 17:16:14
(1 month ago)
185.192.71.61 - - [15/Jun/2026:19:09:51 +0200] "GET /wp-includes/item.php HTTP/1.1" 404 290695 "-" " ...
show more
185.192.71.61 - - [15/Jun/2026:19:09:51 +0200] "GET /wp-includes/item.php HTTP/1.1" 404 290695 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729; rv:11.0) like Gecko"
185.192.71.61 - - [15/Jun/2026:19:09:58 +0200] "GET /wp-includes/assets/husky301.php HTTP/1.1" 404 290706 "-" "Mozilla/5.0 (Linux x86_64; rv:79.0) Gecko/20100101 Firefox/79.0"
185.192.71.61 - - [15/Jun/2026:19:10:09 +0200] "GET /wp-includes/classwithtostring.php HTTP/1.1" 404 290703 "-" "Mozilla/5.0 (X11; Ubuntu; Linux i686; rv:79.0) Gecko/20100101 Firefox/79.0"
185.192.71.61 - - [15/Jun/2026:19:10:31 +0200] "GET /wp-includes/style-engine/bypass.php HTTP/1.1" 404 290717 "-" "Mozilla/5.0 (Windows NT 6.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.130 Safari/537.36"
185.192.71.61 - - [15/Jun/2026:19:10:41 +0200] "GET /wp-includes/assets/about.php HTTP/1.1" 404 290710 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) App
...
show less
Web App Attack
๐ณ๐ฑ
Site.eu
2026-06-15 09:50:26
(1 month ago)
Excessive 404/403 errors
Brute-Force
๐ฉ๐ช
Admin-Gito
2026-06-15 01:54:46
(1 month ago)
185.192.71.61 - - [15/Jun/2026:03:31:24 +0200] "GET /wp-includes/images/crystal/sad.php HTTP/1.1" 40 ...
show more
185.192.71.61 - - [15/Jun/2026:03:31:24 +0200] "GET /wp-includes/images/crystal/sad.php HTTP/1.1" 404 290716 "-" "Mozilla/5.0 (X11; Fedora; Linux x86_64; rv:79.0) Gecko/20100101 Firefox/79.0"
185.192.71.61 - - [15/Jun/2026:03:31:25 +0200] "GET /wp-includes/assets/script-loader-packages.min.php HTTP/1.1" 404 290726 "-" "Mozilla/5.0 (compatible; MSIE 10.0; Windows NT 6.1; Trident/6.0)"
185.192.71.61 - - [15/Jun/2026:03:31:27 +0200] "GET /wp-includes/class-phpmailer-beta.php HTTP/1.1" 404 290711 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_12_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.3"
185.192.71.61 - - [15/Jun/2026:03:31:27 +0200] "GET /wp-includes/ms-file.php HTTP/1.1" 404 290698 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.3"
185.192.71.61 - - [15/Jun/2026:03:31:28 +0200] "GET /wp-includes/widgets/av.php HTTP/1.1" 404 290701 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:67.0)
...
show less
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-06-14 17:44:28
(1 month ago)
185.192.71.61 - - [14/Jun/2026:20:44:27 +0300] "GET /wp-content/plugins/envato-css.php HTTP/1.1" 404 ...
show more
185.192.71.61 - - [14/Jun/2026:20:44:27 +0300] "GET /wp-content/plugins/envato-css.php HTTP/1.1" 404 709 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:73.0) Gecko/20100101 Firefox/73.0"
...
show less
Web App Attack