Anonymous
2026-06-13 17:15:28
(1 hour ago)
203.25.124.18 - - [13/Jun/2026:19:15:23 +0200] "GET /wp-content/themes/alera/gecko.php HTTP/1.1" 404 ...
show more
203.25.124.18 - - [13/Jun/2026:19:15:23 +0200] "GET /wp-content/themes/alera/gecko.php HTTP/1.1" 404 55005 "-" "Go-http-client/1.1"
203.25.124.18 - - [13/Jun/2026:19:15:24 +0200] "GET /wp-content/languages/themes/admin.php HTTP/1.1" 404 55006 "-" "Go-http-client/1.1"
203.25.124.18 - - [13/Jun/2026:19:15:26 +0200] "GET /wp-content/themes/db-status.php HTTP/1.1" 404 55007 "-" "Go-http-client/1.1"
203.25.124.18 - - [13/Jun/2026:19:15:26 +0200] "GET /wp-content/languages/themes/api.php HTTP/1.1" 404 55007 "-" "Go-http-client/1.1"
203.25.124.18 - - [13/Jun/2026:19:15:27 +0200] "GET /wp-content/themes/theme/system_core.php HTTP/1.1" 404 55006 "-" "Go-http-client/1.1"
...
show less
Brute-Force
Web App Attack
πΊπΈ
antlac1
2026-06-13 16:00:09
(3 hours ago)
crowdsecurity/http-wordpress-scan
Brute-Force
Web App Attack
πΊπ¦
URAN Publishing Service
2026-06-13 14:53:36
(4 hours ago)
203.25.124.18 - - [13/Jun/2026:17:53:35 +0300] "GET /wp-includes/theme-compat/amp.php HTTP/1.1" 404 ...
show more
203.25.124.18 - - [13/Jun/2026:17:53:35 +0300] "GET /wp-includes/theme-compat/amp.php HTTP/1.1" 404 706 "-" "Go-http-client/1.1"
...
show less
Web App Attack
π«π·
AGEPCom
2026-06-13 09:14:37
(9 hours ago)
Smart-Ban: IP bannie via score AbuseIPDB
Brute-Force
Web App Attack
πΊπ¦
URAN Publishing Service
2026-06-13 09:11:41
(9 hours ago)
203.25.124.18 - - [13/Jun/2026:12:11:40 +0300] "GET /wp-includes/Text/Diff/ HTTP/1.1" 404 708 "http: ...
show more
203.25.124.18 - - [13/Jun/2026:12:11:40 +0300] "GET /wp-includes/Text/Diff/ HTTP/1.1" 404 708 "http://www.semst.onu.edu.ua/wp-includes/Text/Diff/" "Go-http-client/1.1"
...
show less
Web App Attack
π¬π§
poundawebsiteltd
2026-06-13 08:27:04
(10 hours ago)
Apache 403 Forbidden Access. Evidence: [REDACTED_DOMAIN]:80 203.25.124.18 - - [13/Jun/2026:09:27:01 ...
show more
Apache 403 Forbidden Access. Evidence: [REDACTED_DOMAIN]:80 203.25.124.18 - - [13/Jun/2026:09:27:01 +0100] GET /wp-includes/js/tinymce/langs/ HTTP/1.1 403 158 - Go-http-client/1.1
show less
Web App Attack
π¨π¦
electronico
2026-06-13 05:12:11
(13 hours ago)
203.25.124.18 - - [13/Jun/2026:16:11:57 +1100] "GET /wp-includes/sodium_compat/wp-conflg.php HTTP/1. ...
show more
203.25.124.18 - - [13/Jun/2026:16:11:57 +1100] "GET /wp-includes/sodium_compat/wp-conflg.php HTTP/1.1" 404 65473 "http://cttmd.nc/wp-includes/sodium_compat/wp-conflg.php" "Go-http-client/1.1"
203.25.124.18 - - [13/Jun/2026:16:11:59 +1100] "GET /wp-content/simple.php HTTP/1.1" 404 61659 "http://cttmd.nc/wp-content/simple.php" "Go-http-client/1.1"
203.25.124.18 - - [13/Jun/2026:16:12:00 +1100] "GET /wp-content/uploads/wp-file-manager-pro/ HTTP/1.1" 404 61659 "http://cttmd.nc/wp-content/uploads/wp-file-manager-pro/" "Go-http-client/1.1"
203.25.124.18 - - [13/Jun/2026:16:12:02 +1100] "GET /wp-content/themes/twentytwentyfive/parts/ HTTP/1.1" 404 61659 "http://cttmd.nc/wp-content/themes/twentytwentyfive/parts/" "Go-http-client/1.1"
203.25.124.18 - - [13/Jun/2026:16:12:03 +1100] "GET /wp-content/themes/about.php HTTP/1.1" 404 61659 "http://cttmd.nc/wp-content/themes/about.php" "Go-http-client/1.1"
203.25.124.18 - - [13/Jun/2026:16:12:05 +1100] "GET /xxx.php HTTP/1.1" 404 61659 "http://cttmd.n
...
show less
Brute-Force
Web App Attack
π©πͺ
FeG Deutschland
2026-06-13 02:42:56
(16 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 247
Exploited Host
Web App Attack
π©πͺ
burlacu.org
2026-06-13 02:39:02
(16 hours ago)
Nginx multi-log analysis detected: admin_probe. Evidence: Admin panel probing with 28 attempts. Bloc ...
show more
Nginx multi-log analysis detected: admin_probe. Evidence: Admin panel probing with 28 attempts. Blocked automatically.
show less
Hacking
Brute-Force
Anonymous
2026-06-13 00:59:03
(18 hours ago)
Bot / scanning and/or hacking attempts: GET /wp-login.php?redirect_to=https%3A%2F%2Fdehardewerkers.n ...
show more
Bot / scanning and/or hacking attempts: GET /wp-login.php?redirect_to=https%3A%2F%2Fdehardewerkers.nl%2, GET /wp-admin/ HTTP/2.0, GET / HTTP/1.1
show less
Hacking
Web App Attack
π©πͺ
todix
2026-06-12 20:39:09
(22 hours ago)
Web App Attack Exploid from 203.25.124.18
Web App Attack
Anonymous
2026-06-12 19:41:41
(23 hours ago)
[da.kdns.gr] httpd-suspicious-path: sites=xamogelo.edu.gr; logs=/var/log/httpd/domains/xamogelo.edu. ...
show more
[da.kdns.gr] httpd-suspicious-path: sites=xamogelo.edu.gr; logs=/var/log/httpd/domains/xamogelo.edu.gr.log; samples=/wp-includes/blocks/latest-posts/latest-posts/faq-builder.php | /wp-content/themes/covr-wpcom/assets/fonts/manrope.php | /wp-content/uploads/algovge.php
show less
Hacking
Web App Attack
πΊπ¦
URAN Publishing Service
2026-06-12 14:35:15
(1 day ago)
203.25.124.18 - - [12/Jun/2026:17:35:14 +0300] "GET /wp-content/themes/twentytwentyfour/ HTTP/1.1" 4 ...
show more
203.25.124.18 - - [12/Jun/2026:17:35:14 +0300] "GET /wp-content/themes/twentytwentyfour/ HTTP/1.1" 404 716 "http://www.visnyk-ekon.uzhnu.edu.ua/wp-content/themes/twentytwentyfour/" "Go-http-client/1.1"
203.25.124.18 - - [12/Jun/2026:17:35:14 +0300] "GET /wp-includes/rest-api/fields/ HTTP/1.1" 404 716 "http://www.visnyk-ekon.uzhnu.edu.ua/wp-includes/rest-api/fields/" "Go-http-client/1.1"
...
show less
Web App Attack
π¬π§
poundawebsiteltd
2026-06-12 13:22:08
(1 day ago)
Apache 403 Forbidden Access. Evidence: [REDACTED_DOMAIN]:80 203.25.124.18 - - [12/Jun/2026:14:22:06 ...
show more
Apache 403 Forbidden Access. Evidence: [REDACTED_DOMAIN]:80 203.25.124.18 - - [12/Jun/2026:14:22:06 +0100] GET /wp-admin/js/ HTTP/1.1 403 158 - Go-http-client/1.1
show less
Web App Attack
π³π±
BlueWire Hosting
2026-06-12 04:42:23
(1 day ago)
Probing websites for vulnerabilities
Web App Attack