Unauthorized access attempts:
From:
43.153.38.12
Method:
HTTPS GET
URI Path:
/wp-admin/css/
U ...
show moreUnauthorized access attempts:
From:
43.153.38.12
Method:
HTTPS GET
URI Path:
/wp-admin/css/
UA:
"Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36"
show less
Cluster member 102.219.84.8 (ZA/South Africa/john.vehost.co.za) said, TEMPDENY 43.153.38.12, Reason: ...
show moreCluster member 102.219.84.8 (ZA/South Africa/john.vehost.co.za) said, TEMPDENY 43.153.38.12, Reason:[(CT) IP 43.153.38.12 (US/United States/-) found to have 876 connections]; Ports: *; Direction: 0; Trigger: LF_CLUSTER;
show less
urls tried are "/wp-admin/css/", "/defend.php", "/sites/default/files/", "/admin/controller/extensio ...
show moreurls tried are "/wp-admin/css/", "/defend.php", "/sites/default/files/", "/admin/controller/extension/extension/", "/uploads/"
show less
GET /files/ HTTP/1.1
GET /images/ HTTP/1.1
GET /.well-known/ HTTP/1.1
GET /sites/default/files/ HTTP ...
show moreGET /files/ HTTP/1.1
GET /images/ HTTP/1.1
GET /.well-known/ HTTP/1.1
GET /sites/default/files/ HTTP/1.1
GET /uploads/ HTTP/1.1
GET /admin/controller/extension/extension/ HTTP/1.1
GET /wp-admin/css/ HTTP/1.1
show less
[[03/02/2023 - 00:32:04 -03:00 UTC]
Attack from [43.153.38.12] Action: BLocKed
Hacking... Unauthori ...
show more[[03/02/2023 - 00:32:04 -03:00 UTC]
Attack from [43.153.38.12] Action: BLocKed
Hacking... Unauthorized attempts to access the server.
Web App Attack -> Attempts to probe for or exploit installed web applications such as a CMS like WordPress/Drupal, e-commerce solutions, forum software, phpMyAdmin and various other software plugins/solutions.
]
...
show less
Hacking
Web App Attack
Anonymous
scanning for potential vulnerable apps (wordpress etc.) and database accesses (GHR). Requested URI: ...
show morescanning for potential vulnerable apps (wordpress etc.) and database accesses (GHR). Requested URI: /wp-admin/css/
show less