๐ง๐ช
sid3windr
2026-10-01 07:51:05
(6 hours ago)
GET /wp-content/plugins/seo-by-rank-math/readme.txt (Tarpitted for 1d15h8m28s, wasted 8.06MB)
Web App Attack
๐ต๐ฑ
dzpk
2026-10-01 04:38:13
(10 hours ago)
45.153.34.11 - - [30/Sep/2026:14:32:21 +0200] "GET /wp-content/plugins/improveseo/readme.txt HTTP/1. ...
show more
45.153.34.11 - - [30/Sep/2026:14:32:21 +0200] "GET /wp-content/plugins/improveseo/readme.txt HTTP/1.1" 404 848 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/154.0 Safari/537.36"
show less
Bad Web Bot
Web App Attack
๐ง๐ช
Ivo Vynckier
2026-09-30 14:12:00
(1 day ago)
45.153.34.11 - - [29/Sep/2026:23:46:43 +0200] "GET /wp-content/plugins/seo-by-rank-math/readme.txt H ...
show more
45.153.34.11 - - [29/Sep/2026:23:46:43 +0200] "GET /wp-content/plugins/seo-by-rank-math/readme.txt HTTP/1.1" 404 2155 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/154.0 Safari/537.36"
45.153.34.11 - - [29/Sep/2026:23:46:43 +0200] "GET /wp-content/plugins/seo-by-rank-math/README.txt HTTP/1.1" 404 2155 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/154.0 Safari/537.36
show less
Web App Attack
๐ฉ๐ช
roxyapi
2026-09-30 12:13:58
(1 day ago)
Honeypot: automated vulnerability scan / web app attack. Last probe: GET /wp-content/plugins/improve ...
show more
Honeypot: automated vulnerability scan / web app attack. Last probe: GET /wp-content/plugins/improveseo/README.txt
show less
Web App Attack
Bad Web Bot
๐บ๐ธ
Penny Packer
2026-09-30 10:25:09
(1 day ago)
Fail2Ban apache-tripwires
Web App Attack
๐ซ๐ท
Zundapper
2026-09-30 09:37:37
(1 day ago)
45.153.34.11 - - [30/Sep/2026:11:37:36 +0200] "GET /wp-content/plugins/seo-by-rank-math/readme.txt H ...
show more
45.153.34.11 - - [30/Sep/2026:11:37:36 +0200] "GET /wp-content/plugins/seo-by-rank-math/readme.txt HTTP/1.1" 404 178 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/154.0 Safari/537.36"
45.153.34.11 - - [30/Sep/2026:11:37:36 +0200] "GET /wp-content/plugins/seo-by-rank-math/README.txt HTTP/1.1" 404 178 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/154.0 Safari/537.36"
45.153.34.11 - - [30/Sep/2026:11:37:36 +0200] "GET /wp-content/plugins/seo-by-rank-math/changelog.txt HTTP/1.1" 404 178 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/154.0 Safari/537.36"
45.153.34.11 - - [30/Sep/2026:11:37:36 +0200] "GET /wp-content/plugins/seo-by-rank-math/CHANGELOG.txt HTTP/1.1" 404 178 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/154.0 Safari/537.36"
45.153.34.11 - - [30/Sep/2026:11:37:37 +0200] "GET /wp-content/plugins
...
show less
Web App Attack
Port Scan
๐ฉ๐ช
Nevermind
2026-09-30 09:34:00
(1 day ago)
45.153.34.11 - - [30/Sep/2026:11:33:59 +0200] "GET /wp-content/plugins/sigmaforms-pro/readme.txt HTT ...
show more
45.153.34.11 - - [30/Sep/2026:11:33:59 +0200] "GET /wp-content/plugins/sigmaforms-pro/readme.txt HTTP/1.1" 404 6285 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/154.0 Safari/537.36"
45.153.34.11 - - [30/Sep/2026:11:33:59 +0200] "GET /wp-content/plugins/sigmaforms-pro/README.txt HTTP/1.1" 404 6285 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/154.0 Safari/537.36"
45.153.34.11 - - [30/Sep/2026:11:33:59 +0200] "GET /wp-content/plugins/sigmaforms-pro/changelog.txt HTTP/1.1" 404 6285 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/154.0 Safari/537.36"
45.153.34.11 - - [30/Sep/2026:11:33:59 +0200] "GET /wp-content/plugins/sigmaforms-pro/CHANGELOG.txt HTTP/1.1" 404 6285 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/154.0 Safari/537.36"
...
show less
Web App Attack
Anonymous
2026-09-30 09:18:09
(1 day ago)
FortiWeb WAF: 656 attacks detected. Threat Score: 83000. Types: Client Management(328), Block IP Lis ...
show more
FortiWeb WAF: 656 attacks detected. Threat Score: 83000. Types: Client Management(328), Block IP List(328). Origin: Netherlands.
show less
Web App Attack
๐ฉ๐ช
barbarella
2026-09-30 08:45:04
(1 day ago)
Multiple (16) times attack on https port 443: unauthorized access to Wordpress files (GET /wp-conten ...
show more
Multiple (16) times attack on https port 443: unauthorized access to Wordpress files (GET /wp-content/plugins/sigmaforms-pro/readme.txt)
10:45:04 unauthorized access to Wordpress files (GET /wp-content/plugins/give/readme.txt)
10:45:04 unauthorized access to Wordpress files (GET /wp-content/plugins/jet-engine/readme.txt)
10:45:04 unauthorized access to Wordpress files (GET /wp-content/plugins/tutor/readme.txt)
10:45:05 unauthorized access to Wordpress files (GET /wp-content/plugins/sigmaforms-pro/README.txt)
10:45:05 unauthorized access to Wordpress files (GET /wp-content/plugins/jet-engine/README.txt)
10:45:05 unauthorized access to Wordpress files (GET /wp-content/plugins/give/README.txt)
10:45:05 unauthorized access to Wordpress files (GET /wp-content/plugins/tutor/README.txt)
10:45:05 unauthorized access to Wordpress files (GET /wp-content/plugins/jet-engine/changelog.txt)
show less
Hacking
Web App Attack
๐ฉ๐ช
svr
2026-09-30 08:35:13
(1 day ago)
Abusive Automated Web Scanner
Web App Attack
๐ณ๐ฑ
ConsulHosting
2026-09-30 07:59:45
(1 day ago)
Excessive failed CAPTCHA attempts (CAPTCHA DoS)
Web App Attack
๐ฉ๐ช
patrisei
2026-09-30 07:37:17
(1 day ago)
You are now banned for 10 years by Schiffdorf-West Patrol. Trigger: crowdsecurity/http-wordpress-sca ...
show more
You are now banned for 10 years by Schiffdorf-West Patrol. Trigger: crowdsecurity/http-wordpress-scan
show less
Port Scan
Web App Attack
๐ฉ๐ช
AetherFox
2026-09-30 05:58:01
(1 day ago)
AetherFox VoidGuard detected: [Wed Sep 30 05:58:00.048278 2026] [security2:error] [pid 626047:tid 62 ...
show more
AetherFox VoidGuard detected: [Wed Sep 30 05:58:00.048278 2026] [security2:error] [pid 626047:tid 626056] [client 45.153.34.11:50159] [client 45.153.34.11] ModSecurity: Access denied with code 403 (phase 1). Match of "ipMatch 23.88.112.221" against "REMOTE_ADDR" required. [file "/etc/modsecurity/AetherFox.conf"] [line "28"] [id "100051"] [msg "wp-content access blocked by AetherFox VoidGuard"] [hostname "draconigen.net"] [uri "/wp-content/plugins/give/readme.txt"] [unique_id "aryk6KES66WsSDCP_vmjywAAAEU"]
[Wed Sep 30 05:58:00.139771 2026] [security2:error] [pid 626048:tid 626101] [client 45.153.34.11:52526] [client 45.153.34.11] ModSecurity: Access denied with code 403 (phase 1). Match of "ipMatch 23.88.112.221" against "REMOTE_ADDR" required. [file "/etc/modsecurity/AetherFox.conf"] [line "28"] [id "100051"] [msg "wp-content access blocked by AetherFox VoidGuard"] [hostname "draconigen.net"] [uri "/wp-content/plugins/give/README.txt"] [unique_id "aryk6Olon8ONN-vwkP
...
show less
Hacking
Bad Web Bot
๐ง๐ช
taivas.nl
2026-09-30 04:32:51
(1 day ago)
Many_bad_calls
Web App Attack
๐ฉ๐ช
NewGastroline
2026-09-30 03:38:28
(1 day ago)
Malicious request blocked by CrowdSec on gastro-prod1.boreus.de
Bad Web Bot
Web App Attack