๐ฉ๐ช
ghostwarriors
2026-06-19 08:20:35
(3 hours ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
poundawebsiteltd
2026-06-18 19:07:44
(16 hours ago)
Apache 403 Forbidden Access. Evidence: [REDACTED_DOMAIN]:80 203.25.124.64 - - [18/Jun/2026:20:07:42 ...
show more
Apache 403 Forbidden Access. Evidence: [REDACTED_DOMAIN]:80 203.25.124.64 - - [18/Jun/2026:20:07:42 +0100] GET /wp-includes/SimplePie/XML/config.php HTTP/1.1 403 158 - Go-http-client/1.1
show less
Web App Attack
๐ฉ๐ช
paissangroup
2026-06-18 18:27:39
(17 hours ago)
Multiple WAF Violations
Web App Attack
๐ณ๐ฑ
Site.eu
2026-06-18 02:05:45
(1 day ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ฆ
URAN Publishing Service
2026-06-18 00:06:11
(1 day ago)
203.25.124.64 - - [18/Jun/2026:03:06:03 +0300] "GET /wp-content/users.php HTTP/1.1" 404 707 "-" "Moz ...
show more
203.25.124.64 - - [18/Jun/2026:03:06:03 +0300] "GET /wp-content/users.php HTTP/1.1" 404 707 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.3"
203.25.124.64 - - [18/Jun/2026:03:06:08 +0300] "GET /wp-content/wp-activate.php HTTP/1.1" 404 707 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.3"
...
show less
Web App Attack
Anonymous
2026-06-17 22:57:34
(1 day ago)
Banned by Fail2Ban on server
Web App Attack
๐ฆ๐บ
paulshipley.com.au
2026-06-17 18:19:59
(1 day ago)
paulshipley.com.au:443 203.25.124.64 - - [18/Jun/2026:04:19:23 +1000] "GET /wp-admin/images/ HTTP/1. ...
show more
paulshipley.com.au:443 203.25.124.64 - - [18/Jun/2026:04:19:23 +1000] "GET /wp-admin/images/ HTTP/1.1" 403 4991 "http://paulshipley.com.au/wp-admin/images/" "Go-http-client/1.1"
paulshipley.com.au:443 203.25.124.64 - - [18/Jun/2026:04:19:24 +1000] "GET /wp-content/edit-wolf.php HTTP/1.1" 404 76118 "http://paulshipley.com.au/wp-content/edit-wolf.php" "Go-http-client/1.1"
paulshipley.com.au:443 203.25.124.64 - - [18/Jun/2026:04:19:26 +1000] "GET /wp-includes/js/codemirror/ HTTP/1.1" 403 721 "http://paulshipley.com.au/wp-includes/js/codemirror/" "Go-http-client/1.1"
paulshipley.com.au:443 203.25.124.64 - - [18/Jun/2026:04:19:26 +1000] "GET /m.php HTTP/1.1" 404 76078 "http://paulshipley.com.au/m.php" "Go-http-client/1.1"
paulshipley.com.au:443 203.25.124.64 - - [18/Jun/2026:04:19:27 +1000] "GET /wp-includes/header.php HTTP/1.1" 404 76114 "http://paulshipley.com.au/wp-includes/header.php" "Go-http-client/1.1"
paulshipley.com.au:443 203.25.124.64 - - [18/Jun/2026:04:19:29 +1000] "GET /wp-con
...
show less
Web App Attack
๐ฆ๐บ
2000cn.com.au
2026-06-17 18:18:59
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-admin-interface-probing
Web App Attack
Hacking
๐ฌ๐ง
consul.to
2026-06-17 16:44:59
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
๐ฌ๐ท
setupgr
2026-06-17 08:28:52
(2 days ago)
(mod_security) mod_security (id:1000001) triggered by 203.25.124.64 (JP/Japan/Osaka/Osaka/-/[AS13740 ...
show more
(mod_security) mod_security (id:1000001) triggered by 203.25.124.64 (JP/Japan/Osaka/Osaka/-/[AS137409 GSLNETWORKS-AS-AP GSL Networks Pty LTD]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Wed Jun 17 11:28:47.907716 2026] [security2:error] [pid 2210294:tid 2210388] [client 203.25.124.64:55751] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/wp-load.php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "93"] [id "1000001"] [msg "Bad file blocked: /wp-content/uploads/wp-load.php"] [severity "CRITICAL"] [tag "security"] [hostname "mail.fashionfragonard.gr"] [uri "/wp-content/uploads/wp-load.php"] [unique_id "ajJav7hY-m9nTIYxKGTfVQAAAYU"]
show less
Port Scan
๐บ๐ฆ
URAN Publishing Service
2026-06-16 05:43:07
(3 days ago)
203.25.124.64 - - [16/Jun/2026:08:43:06 +0300] "GET /wp-admin/ HTTP/1.1" 404 708 "-" "Mozilla/5.0 (W ...
show more
203.25.124.64 - - [16/Jun/2026:08:43:06 +0300] "GET /wp-admin/ HTTP/1.1" 404 708 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.3"
...
show less
Web App Attack
๐ซ๐ท
masterguru
2026-06-16 04:24:20
(3 days ago)
BAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (110 ...
show more
BAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (1100000-197)
show less
Bad Web Bot
๐บ๐ฆ
URAN Publishing Service
2026-06-16 00:35:57
(3 days ago)
203.25.124.64 - - [16/Jun/2026:03:35:56 +0300] "GET /wp-content/users.php HTTP/1.1" 404 707 "-" "Moz ...
show more
203.25.124.64 - - [16/Jun/2026:03:35:56 +0300] "GET /wp-content/users.php HTTP/1.1" 404 707 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.3"
...
show less
Web App Attack
๐ฉ๐ช
Lino Project
2026-06-15 22:00:22
(3 days ago)
203.25.124.64 - - [16/Jun/2026:00:00:19 +0200] "GET /wp-content/themes/404.php HTTP/2.0" 404 49571 " ...
show more
203.25.124.64 - - [16/Jun/2026:00:00:19 +0200] "GET /wp-content/themes/404.php HTTP/2.0" 404 49571 "http://millelibriperbambini.it/wp-content/themes/404.php" "Go-http-client/2.0"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-06-15 20:11:38
(3 days ago)
203.25.124.64 - - [15/Jun/2026:23:11:36 +0300] "GET /wp-includes/blocks/archives/ HTTP/1.1" 404 708 ...
show more
203.25.124.64 - - [15/Jun/2026:23:11:36 +0300] "GET /wp-includes/blocks/archives/ HTTP/1.1" 404 708 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.3"
203.25.124.64 - - [15/Jun/2026:23:11:37 +0300] "GET /wp-includes/blocks/code/ HTTP/1.1" 404 708 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.3"
...
show less
Web App Attack