๐ฉ๐ช
Manuel Braeuer
2026-08-22 15:59:04
(26 seconds ago)
20.151.129.194 - - [22/Aug/2026:17:59:03 +0200] "GET //wp-includes/Requests/ HTTP/1.1" 403 6282 "-" ...
show more
20.151.129.194 - - [22/Aug/2026:17:59:03 +0200] "GET //wp-includes/Requests/ HTTP/1.1" 403 6282 "-" "-"
20.151.129.194 - - [22/Aug/2026:17:59:03 +0200] "GET /wp-admin/css/colors/modern/ HTTP/1.1" 403 6282 "-" "-"
20.151.129.194 - - [22/Aug/2026:17:59:04 +0200] "GET //wp-includes/assets/ HTTP/1.1" 403 6282 "-" "-"
20.151.129.194 - - [22/Aug/2026:17:59:04 +0200] "GET /wp-admin/css/colors/sunrise/ HTTP/1.1" 403 6282 "-" "-"
20.151.129.194 - - [22/Aug/2026:17:59:04 +0200] "GET //wp-includes/l10n/ HTTP/1.1" 403 6282 "-" "-"
...
show less
Web App Attack
๐ณ๐ฑ
i-turnradio.nl
2026-08-22 15:57:34
(1 minute ago)
2026-08-22 @ 17:57:34 (CET) ~ Blocked for trying to access: /wp-content/plugins/hellopress/wp_filema ...
show more
2026-08-22 @ 17:57:34 (CET) ~ Blocked for trying to access: /wp-content/plugins/hellopress/wp_filemanager.php
show less
Web App Attack
๐บ๐ธ
xmission.com
2026-08-22 15:56:19
(3 minutes ago)
Blocked by UFW (TCP on 80)
Source port: 48596
TTL: 111
Packet length: 52
TOS: 0x00
This report (for ...
show more
Blocked by UFW (TCP on 80)
Source port: 48596
TTL: 111
Packet length: 52
TOS: 0x00
This report (for 20.151.129.194) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
Web App Attack
๐ซ๐ท
largo-it.net
2026-08-22 15:53:00
(6 minutes ago)
Aug 22 17:52:56 vps-9f3cdc33 haproxy[3223961]: 20.151.129.194:24642 [22/Aug/2026:17:52:56.577] www_f ...
show more
Aug 22 17:52:56 vps-9f3cdc33 haproxy[3223961]: 20.151.129.194:24642 [22/Aug/2026:17:52:56.577] www_frontend~ sav_largo_cluster/sav_https 0/0/11/133/144 404 7536 - - ---- 57/9/0/0/0 0/0 "GET /wp-content/plugins/hellopress/wp_filemanager.php HTTP/1.1"
Aug 22 17:52:57 vps-9f3cdc33 haproxy[3223961]: 20.151.129.194:24642 [22/Aug/2026:17:52:56.938] www_frontend~ sav_largo_cluster/sav_https 0/0/11/173/184 404 7536 - - ---- 57/9/0/0/0 0/0 "GET /this_is_a_new_hello_world.php HTTP/1.1"
Aug 22 17:52:57 vps-9f3cdc33 haproxy[3223961]: 20.151.129.194:24642 [22/Aug/2026:17:52:57.323] www_frontend~ sav_largo_cluster/sav_https 0/0/15/88/103 404 7536 - - ---- 57/9/0/0/0 0/0 "GET /5PJcpMFsD8B.php HTTP/1.1"
Aug 22 17:52:57 vps-9f3cdc33 haproxy[3223961]: 20.151.129.194:24642 [22/Aug/2026:17:52:57.622] www_frontend~ sav_largo_cluster/sav_https 0/0/11/139/150 404 7536 - - ---- 57/9/0/0/0 0/0 "GET /4PJcpMFsD8B.php HTTP/1.1"
Aug 22 17:52:58 vps-9f3cdc33 haproxy[3223961]: 20.151.129.194:24642 [22/Aug/2026:17:52
...
show less
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
WizardsToolkit
2026-08-22 15:50:20
(9 minutes ago)
attempted to access /wp-content/plugins/hellopress/wp_filemanager.php
Web App Attack
Anonymous
2026-08-22 15:49:09
(10 minutes ago)
[Drupal AbuseIPDB module] Request path is blacklisted. /wp-content/plugins/hellopress/wp_filemanager ...
show more
[Drupal AbuseIPDB module] Request path is blacklisted. /wp-content/plugins/hellopress/wp_filemanager.php
show less
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-22 15:45:26
(14 minutes ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 247
Exploited Host
Web App Attack
๐ท๐ด
iulianh
2026-08-22 15:41:46
(17 minutes ago)
80,443
Brute-Force
SSH
Anonymous
2026-08-22 15:39:50
(19 minutes ago)
20.151.129.194 - - [22/Aug/2026:17:39:49 +0200] "GET /wp-content/plugins/hellopress/wp_filemanager.p ...
show more
20.151.129.194 - - [22/Aug/2026:17:39:49 +0200] "GET /wp-content/plugins/hellopress/wp_filemanager.php HTTP/1.1" 404 164 "-" "-"
20.151.129.194 - - [22/Aug/2026:17:39:49 +0200] "GET /this_is_a_new_hello_world.php HTTP/1.1" 404 164 "-" "-"
20.151.129.194 - - [22/Aug/2026:17:39:49 +0200] "GET /domvf.php HTTP/1.1" 404 164 "-" "-"
20.151.129.194 - - [22/Aug/2026:17:39:49 +0200] "GET /wp-0.php HTTP/1.1" 404 164 "-" "-"
20.151.129.194 - - [22/Aug/2026:17:39:49 +0200] "GET /dyt8mjxc3yofbkoriukvgjaCdefault.php HTTP/1.1" 404 164 "-" "-"
20.151.129.194 - - [22/Aug/2026:17:39:49 +0200] "GET /gec.php HTTP/1.1" 404 164 "-" "-"
20.151.129.194 - - [22/Aug/2026:17:39:49 +0200] "GET /sky.php HTTP/1.1" 404 164 "-" "-"
20.151.129.194 - - [22/Aug/2026:17:39:49 +0200] "GET /sixxis.php HTTP/1.1" 404 164 "-" "-"
20.151.129.194 - - [22/Aug/2026:17:39:49 +0200] "GET /yj09.php HTTP/1.1" 404 164 "-" "-"
20.151.129.194 - - [22/Aug/2026:17:39:49 +0200] "GET /k.php HTTP/1.1" 404 164 "-" "-"
20.151.129.194 - - [22/A
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
decisionconcepts
2026-08-22 15:34:30
(25 minutes ago)
20.151.129.194 - - [22/Aug/2026:08:34:15 -0700] "GET /wp-content/plugins/hellopress/wp_filemanager.p ...
show more
20.151.129.194 - - [22/Aug/2026:08:34:15 -0700] "GET /wp-content/plugins/hellopress/wp_filemanager.php HTTP/1.1" 404 89418 "-" "-"
20.151.129.194 - - [22/Aug/2026:08:34:29 -0700] "GET /cgi-bin/index.php HTTP/1.1" 404 16 "-" "-"
show less
Brute-Force
SSH
๐ฉ๐ช
maxpower
2026-08-22 15:32:49
(26 minutes ago)
(aggressive_scanner) REGOLA 9 - Aggressive Web Scanner 20.151.129.194 (CA/Canada/-): 1 in the last 3 ...
show more
(aggressive_scanner) REGOLA 9 - Aggressive Web Scanner 20.151.129.194 (CA/Canada/-): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 20.151.129.194 - - [22/Aug/2026:17:32:47 +0200] "GET /wp-content/plugins/hellopress/wp_filemanager.php HTTP/1.1" 301 339 "-" "-" "20.151.129.194" host=ilgiardinodeiciliegi.villapardi.it
show less
Port Scan
๐บ๐ธ
chrisj
2026-08-22 15:30:12
(29 minutes ago)
[Sat Aug 22 15:30:12.109619 2026] [proxy_fcgi:error] [pid 1286687:tid 1286745] [client 20.151.129.19 ...
show more
[Sat Aug 22 15:30:12.109619 2026] [proxy_fcgi:error] [pid 1286687:tid 1286745] [client 20.151.129.194:42730] AH01071: Got error 'Primary script unknown'
[Sat Aug 22 15:30:12.173801 2026] [proxy_fcgi:error] [pid 1286687:tid 1286740] [client 20.151.129.194:42730] AH01071: Got error 'Primary script unknown'
[Sat Aug 22 15:30:12.233736 2026] [proxy_fcgi:error] [pid 1286687:tid 1286756] [client 20.151.129.194:42730] AH01071: Got error 'Primary script unknown'
...
show less
Brute-Force
๐บ๐ธ
kbeezie
2026-08-22 15:27:33
(31 minutes ago)
20.151.129.194 - - [22/Aug/2026:11:27:32 -0400] "GET /coffexium.php HTTP/1.1" 429 162 "-" "-"
20.151 ...
show more
20.151.129.194 - - [22/Aug/2026:11:27:32 -0400] "GET /coffexium.php HTTP/1.1" 429 162 "-" "-"
20.151.129.194 - - [22/Aug/2026:11:27:32 -0400] "GET ///admin.php HTTP/1.1" 429 162 "-" "-"
20.151.129.194 - - [22/Aug/2026:11:27:32 -0400] "GET /file52.php HTTP/1.1" 429 162 "-" "-"
20.151.129.194 - - [22/Aug/2026:11:27:32 -0400] "GET /geck.php HTTP/1.1" 429 162 "-" "-"
20.151.129.194 - - [22/Aug/2026:11:27:32 -0400] "GET /biufile.php HTTP/1.1" 429 162 "-" "-"
show less
Bad Web Bot
Web App Attack
๐ฎ๐น
Pietro Storniolo
2026-08-22 15:25:29
(34 minutes ago)
ZabbyIDS
Brute-Force
SSH
๐ฉ๐ช
AetherFox
2026-08-22 15:22:49
(36 minutes ago)
AetherFox VoidGuard detected: [Sat Aug 22 15:22:48.000611 2026] [authz_core:error] [pid 2784406:tid ...
show more
AetherFox VoidGuard detected: [Sat Aug 22 15:22:48.000611 2026] [authz_core:error] [pid 2784406:tid 2784438] [client 20.151.129.194:14582] AH01630: client denied by server configuration: /var/www/html/ERRORpages/403.html
[Sat Aug 22 15:22:48.206281 2026] [authz_core:error] [pid 2784406:tid 2784450] [client 20.151.129.194:15297] AH01630: client denied by server configuration: proxy:http://[MASKED]/this_is_a_new_hello_world.php
[Sat Aug 22 15:22:48.206349 2026] [authz_core:error] [pid 2784406:tid 2784450] [client 20.151.129.194:15297] AH01630: client denied by server configuration: /var/www/html/ERRORpages/403.html
[Sat Aug 22 15:22:48.322859 2026] [authz_core:error] [pid 2784406:tid 2784434] [client 20.151.129.194:15297] AH01630: client denied by server configuration: proxy:http://[MASKED]/domvf.php
[Sat Aug 22 15:22:48.322934 2026] [authz_core:error] [pid 2784406:tid 2784434] [client 20.151.129.194:15297] AH01630: client denied by server configuration: /var/ww
...
show less
Bad Web Bot
Web App Attack