๐ต๐ฑ
nfsec.pl
2026-09-19 12:48:12
(22 hours ago)
212.30.33.63 - - [19/Sep/2026:12:48:07 +0000] "GET /wp-content/plugins/neoncore-themes/O/SrHD3odefau ...
show more
212.30.33.63 - - [19/Sep/2026:12:48:07 +0000] "GET /wp-content/plugins/neoncore-themes/O/SrHD3odefault.php HTTP/2.0" 404 25116 "https://nfsec.pl/wp-content/plugins/neoncore-themes/O/SrHD3odefault.php?p=" "Go-http-client/2.0"
212.30.33.63 - - [19/Sep/2026:12:48:08 +0000] "GET /wp-content/plugins/bbpress/file5.php HTTP/2.0" 404 24998 "http://nfsec.pl/wp-content/plugins/bbpress/file5.php" "Go-http-client/2.0"
212.30.33.63 - - [19/Sep/2026:12:48:09 +0000] "GET /wp-includes/core.php HTTP/2.0" 404 25138 "http://nfsec.pl/wp-includes/core.php" "Go-http-client/2.0"
212.30.33.63 - - [19/Sep/2026:12:48:10 +0000] "GET /wpx/ HTTP/2.0" 404 25011 "https://nfsec.pl/wpx/index.php" "Go-http-client/2.0"
212.30.33.63 - - [19/Sep/2026:12:48:11 +0000] "GET /wp-includes/cookie.php HTTP/2.0" 404 25084 "http://nfsec.pl/wp-includes/cookie.php" "Go-http-client/2.0"
...
show less
Web App Attack
Exploited Host
๐จ๐ญ
Origon
2026-09-14 21:34:09
(5 days ago)
http-wordpress-scan - IP: 212.30.33.63 - time="2026-09-14T23:34:09+02:00" level=info msg="(555f66b4 ...
show more
http-wordpress-scan - IP: 212.30.33.63 - time="2026-09-14T23:34:09+02:00" level=info msg="(555f66b4f6a74558bc11e3f93469658es8App0Mcc0TKEeje/crowdsec) crowdsecurity/http-wordpress-scan by ip 212.30.33.63 (ES/212238) : 4h ban on Ip 212.30.33.63" module=db
show less
Web App Attack
๐ฉ๐ช
filstal.org
2026-09-14 15:23:57
(5 days ago)
Bad bot activity detected (automated scraping/probing).
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-09-11 00:39:22
(1 week ago)
[11/Sep/2026:03:39:22 +0300] -- 212.30.33.63 Ban reason: User-Agent Go-http-client
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-07-16 21:15:03
(2 months ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-29 03:53:51
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 212.30.33.63 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 212.30.33.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 28 23:53:43.820005 2026] [security2:error] [pid 25854:tid 25854] [client 212.30.33.63:43645] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "al-hafeeztrust.net"] [uri "/.env"] [unique_id "akHsR4fZMnnCMZ9uu98FSQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
SpaceHost-Server
2026-06-14 22:29:03
(3 months ago)
Brute-Force
Web App Attack
๐ฉ๐ช
Ba-Yu
2026-06-14 05:30:50
(3 months ago)
WordPress hacking/exploits/scanning
Web Spam
Hacking
Brute-Force
Exploited Host
Web App Attack
๐ซ๐ท
SpaceHost-Server
2026-06-13 22:28:24
(3 months ago)
Brute-Force
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-06-09 02:31:02
(3 months ago)
212.30.33.63 - - [09/Jun/2026:05:31:01 +0300] "GET /wp-includes/rest-api/about.php HTTP/1.1" 404 492 ...
show more
212.30.33.63 - - [09/Jun/2026:05:31:01 +0300] "GET /wp-includes/rest-api/about.php HTTP/1.1" 404 492 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
212.30.33.63 - - [09/Jun/2026:05:31:01 +0300] "GET /wp-admin/user/wp-login.php HTTP/1.1" 404 492 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/84.0.4147.105 Safari/537.36 OPR/70.0.3728.95"
...
show less
Web App Attack
๐ท๐บ
sms.ru
2026-06-08 23:31:23
(3 months ago)
/wp-admin/css/wp-conflg.php
Web App Attack
๐ซ๐ท
Octopuce
2026-06-08 21:35:11
(3 months ago)
Aggressive web search of vulnerable pages: /wp-includes/firewall.php7 /home/O-Simple.php /wp-include ...
show more
Aggressive web search of vulnerable pages: /wp-includes/firewall.php7 /home/O-Simple.php /wp-includes/l10n/class-wp-translation-file-mo-event.p ...
show less
Web App Attack
๐ซ๐ท
masterguru
2026-05-10 04:53:58
(4 months ago)
Too much 404 requests in 1 minute. Operator GE matched 10 at IP:block_script. (46020-193)
Hacking
Anonymous
2026-05-06 16:27:31
(4 months ago)
<comment>
Web App Attack
๐ฌ๐ง
poundawebsiteltd
2026-05-06 13:42:53
(4 months ago)
Apache 403 Forbidden Access. Evidence: [REDACTED_DOMAIN]:80 212.30.33.63 - - [06/May/2026:14:42:51 + ...
show more
Apache 403 Forbidden Access. Evidence: [REDACTED_DOMAIN]:80 212.30.33.63 - - [06/May/2026:14:42:51 +0100] GET /tiny.php HTTP/1.1 403 158 - Go-http-client/1.1
show less
Web App Attack