๐ธ๐ฌ
ipidentify
2026-09-03 00:26:55
(1 hour ago)
2026-09-03T00:26:55Z GET /wp-admin/css/
2026-09-03T00:27:56Z GET /wp-admin/css/
Web App Attack
๐ฉ๐ช
spam.must.die
2026-09-02 22:37:23
(2 hours ago)
Fail2Ban jail [apache-auth]: Web App Attack - [Wed Sep 02 22:37:16.378288 2026] [access_compat:error ...
show more
Fail2Ban jail [apache-auth]: Web App Attack - [Wed Sep 02 22:37:16.378288 2026] [access_compat:error] [pid 462873:tid 462873] [client 202.51.199.2:0] AH01797: client denied by server configuration: /var/www/html/wordpress/wp-content/uploads/2026/08/index.php, referer: binance.com[Wed Sep 02 22:37:22.814506 2026] [access_compat:error] [pid 462815:tid 462815] [client 202.51.199.2:0] AH01797: client denied by server configuration: /var/www/html/wordpress/wp-content/uploads/2026/07/index.php, referer: binance.com
show less
Web App Attack
๐น๐ท
ferique
2026-09-02 20:58:27
(4 hours ago)
Real-time Intercept: DNN_AUTH attack. Reference: 2026-09-02 23:58:19.4639 Login failure: 202.51.199 ...
show more
Real-time Intercept: DNN_AUTH attack. Reference: 2026-09-02 23:58:19.4639 Login failure: 202.51.199.2 DNN_AUTH
show less
Web App Attack
Bad Web Bot
๐ง๐ท
Peregrine
2026-09-02 19:22:32
(6 hours ago)
Fail2Ban ct101 Jail: tomcat-honeypot | Evidence: 202.51.199.2 104.23.175.226 - - [30/Aug/2026:22:34: ...
show more
Fail2Ban ct101 Jail: tomcat-honeypot | Evidence: 202.51.199.2 104.23.175.226 - - [30/Aug/2026:22:34:29 -0300] "GET /wp-admin/css/ HTTP/1.1" 404 18193
show less
Bad Web Bot
๐บ๐ธ
solantex
2026-09-02 16:11:52
(9 hours ago)
Requested a path that does not exist in this application (backup/source artifact or foreign software ...
show more
Requested a path that does not exist in this application (backup/source artifact or foreign software path). Refused at nginx with 444.
show less
Web App Attack
๐ฉ๐ช
kkwemi
2026-09-02 15:31:44
(10 hours ago)
Blocked by block-exploit-paths on /wp-admin/css
Bad Web Bot
๐ฌ๐ง
neo101
2026-09-02 14:49:48
(10 hours ago)
Automated Threat Probe: Host probed endpoint '/wp-admin/css' using WP Brute-Forcer. Malicious intent ...
show more
Automated Threat Probe: Host probed endpoint '/wp-admin/css' using WP Brute-Forcer. Malicious intent confirmed. Served Fake AWS Keys counter-measure.
show less
Hacking
Web App Attack
๐ฌ๐ง
Mendip_Defender
2026-09-02 14:29:43
(11 hours ago)
202.51.199.2 - - [02/Sep/2026:15:28:37 +0100] "GET /wp-admin/css/ HTTP/1.1" 404 6420 "binance.com" " ...
show more
202.51.199.2 - - [02/Sep/2026:15:28:37 +0100] "GET /wp-admin/css/ HTTP/1.1" 404 6420 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36"
202.51.199.2 - - [02/Sep/2026:15:28:53 +0100] "GET /sites/default/files/ HTTP/1.1" 404 6420 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36"
202.51.199.2 - - [02/Sep/2026:15:29:54 +0100] "GET /files/ HTTP/1.1" 404 6420 "binance.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36"
...
show less
Hacking
Web App Attack
๐บ๐ธ
9LEVEL.com.br
2026-09-02 12:49:43
(12 hours ago)
Blocked by Fail2ban for traefik-404 abuse
Web App Attack
๐บ๐ธ
Epimetheus
2026-09-02 10:36:07
(14 hours ago)
Unauthorized access attempts:
[GET] /wp-admin/css/
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) A ...
show more
Unauthorized access attempts:
[GET] /wp-admin/css/
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36
show less
Web App Attack
๐ซ๐ท
Baking333
2026-09-02 04:13:43
(21 hours ago)
[redacted] 202.51.199.2 - - [02/Sep/2026:05:13:41 +0100] "GET /wp-admin/css/ HTTP/1.1" 301 5827 0/29 ...
show more
[redacted] 202.51.199.2 - - [02/Sep/2026:05:13:41 +0100] "GET /wp-admin/css/ HTTP/1.1" 301 5827 0/296 "[redacted]" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36" [redacted] 202.51.199.2 - - [02/Sep/2026:05:13:41 +0100] "GET /wp-admin/css HTTP/1.1" 302 6753 0/48544 "[redacted]" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36"
show less
Bad Web Bot
Web App Attack
๐ต๐ฑ
sefinek.net
2026-09-01 18:54:48
(1 day ago)
Triggered Cloudflare WAF (firewallCustom) from ID.
Action: BLOCK | Protocol: HTTP/1.1 (GET) | Endpoi ...
show more
Triggered Cloudflare WAF (firewallCustom) from ID.
Action: BLOCK | Protocol: HTTP/1.1 (GET) | Endpoint: /wp-admin/css/ | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36 โข Generated by: github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ต๐ฑ
Budyn
2026-09-01 18:00:33
(1 day ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicio ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: budyn.ovh | URI: /wp-admin/css/ | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐น๐ท
ferique
2026-09-01 17:19:28
(1 day ago)
Real-time Intercept: DNN_AUTH attack. Reference: 2026-09-01 20:19:23.5905 Login failure: 202.51.199 ...
show more
Real-time Intercept: DNN_AUTH attack. Reference: 2026-09-01 20:19:23.5905 Login failure: 202.51.199.2 DNN_AUTH
show less
Web App Attack
Bad Web Bot
๐ฟ๐ฆ
vanderhost
2026-09-01 17:07:08
(1 day ago)
[Laravel HoneypotPlus] Automated report - Honeypot access detected on path: /wp-admin/css via rule: ...
show more
[Laravel HoneypotPlus] Automated report - Honeypot access detected on path: /wp-admin/css via rule: /wp-admin
show less
Web App Attack
Bad Web Bot