๐ฉ๐ช
ghostwarriors
2026-07-26 19:20:05
(1 month ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
๐ฉ๐ช
yitzhaq
2026-07-26 18:57:02
(1 month ago)
45.89.242.163 - - [26/Jul/2026:20:56:56 +0200] "GET //zwso.php HTTP/1.1" 301 531 "-" "Go-http-client ...
show more
45.89.242.163 - - [26/Jul/2026:20:56:56 +0200] "GET //zwso.php HTTP/1.1" 301 531 "-" "Go-http-client/1.1"
45.89.242.163 - - [26/Jul/2026:20:56:56 +0200] "GET /wp-content/plugins/hellopress/wp_mna.php HTTP/1.1" 301 595 "-" "Go-http-client/1.1"
45.89.242.163 - - [26/Jul/2026:20:56:57 +0200] "GET /bolt.php HTTP/1.1" 301 531 "-" "Go-http-client/1.1"
45.89.242.163 - - [26/Jul/2026:20:56:57 +0200] "GET /cjfuns.php HTTP/1.1" 301 535 "-" "Go-http-client/1.1"
45.89.242.163 - - [26/Jul/2026:20:56:57 +0200] "GET /wp-admin/css/index.php HTTP/1.1" 301 559 "-" "Go-http-client/1.1"
45.89.242.163 - - [26/Jul/2026:20:56:58 +0200] "GET /wp-content/plugins/index.php HTTP/1.1" 301 571 "-" "Go-http-client/1.1"
45.89.242.163 - - [26/Jul/2026:20:56:58 +0200] "GET /wp-content/index.php HTTP/1.1" 301 555 "-" "Go-http-client/1.1"
45.89.242.163 - - [26/Jul/2026:20:56:59 +0200] "GET /ioxi-o.php HTTP/1.1" 301 535 "-" "Go-http-client/1.1"
45.89.242.163 - - [26/Jul/2026:20:56:59 +0200] "GET /insc.php HTTP/1.1" 301 5
show less
Web App Attack
Brute-Force
๐ฉ๐ช
igerman
2026-07-19 10:06:20
(1 month ago)
caddy probes: web: GET //zwso.php(DROP), GET /abcd.php(DROP), GET /akcc.php(DROP), GET /bless.php(DR ...
show more
caddy probes: web: GET //zwso.php(DROP), GET /abcd.php(DROP), GET /akcc.php(DROP), GET /bless.php(DROP), GET /blurbs.php(DROP), GET /bolt.php(DROP), GET /chosen.php?p=(DROP), GET /cjfuns.php(DROP), GET /class-t.api.php(DROP), GET /classwithtostring.php(DROP), GET /cord.php(DROP), GET /dex.php(DROP), GET /file.php(DROP), GET /flower.php(DROP), GET /gifclass.php(DROP), GET /insc.php(DROP), GET /ioxi-o.php(DROP), GET /ms-themes.php(DROP), GET /shelp.php(DROP), GET /txets.php(DROP) | wordpress: GET /wp-admin/admin-ajax.php(DROP), GET /wp-admin/css/index.php(DROP), GET /wp-content/index.php(DROP), GET /wp-content/plugins/hellopress/wp_mna.php(DROP), GET /wp-content/plugins/index.php(DROP)
show less
Web App Attack
๐ฎ๐น
VHosting
2026-07-18 09:55:03
(1 month ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐ซ๐ท
SpaceHost-Server
2026-07-12 22:30:56
(1 month ago)
Brute-Force
Web App Attack
๐ซ๐ท
SpaceHost-Server
2026-07-11 22:29:54
(1 month ago)
Brute-Force
Web App Attack
Anonymous
2026-07-11 19:35:19
(1 month ago)
Unauthorized connection attempt
Port Scan
Hacking
Exploited Host
๐ฉ๐ช
macrob
2026-07-11 04:22:23
(1 month ago)
2026/07/11 04:22:21 [error] 2702086#2702086: *366896511 access forbidden by rule, client: 45.89.242. ...
show more
2026/07/11 04:22:21 [error] 2702086#2702086: *366896511 access forbidden by rule, client: 45.89.242.163, server: binixo.com.ar, request: "GET /wp-admin/css/index.php HTTP/2.0", host: "binixo.com.ar", referrer: "http://binixo.com.ar/wp-admin/css/index.php"
2026/07/11 04:22:22 [error] 2702088#2702088: *366896521 access forbidden by rule, client: 45.89.242.163, server: binixo.com.ar, request: "GET /wp-content/plugins/index.php HTTP/2.0", host: "binixo.com.ar", referrer: "http://binixo.com.ar/wp-content/plugins/index.php"
2026/07/11 04:22:22 [error] 2702088#2702088: *366896529 access forbidden by rule, client: 45.89.242.163, server: binixo.com.ar, request: "GET /wp-content/index.php HTTP/2.0", host: "binixo.com.ar", referrer: "http://binixo.com.ar/wp-content/index.php"
...
show less
Web App Attack
๐ฆ๐บ
afleventoffice.com.au
2026-07-11 04:10:03
(1 month ago)
GET /wp-admin/css/index.php HTTP/1.1
Web App Attack
๐จ๐ญ
backslash
2026-04-16 16:21:01
(4 months ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
๐ฎ๐น
VHosting
2026-03-03 21:45:10
(5 months ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-03-03 20:05:25
(5 months ago)
Too many Status 40X (12)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-19 02:07:34
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.89.242.163 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.89.242.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 21:07:28.902214 2026] [security2:error] [pid 13285:tid 13285] [client 45.89.242.163:22019] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/sftp-config.json" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bwill.dev"] [uri "/backup/sftp-config.json"] [unique_id "aZZwYO9xBQCqebCNPGFyaQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐พ
Rizzy
2026-01-09 11:41:34
(7 months ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐ซ๐ท
dynamix
2025-11-23 14:51:31
(9 months ago)
Multiple WAF Violations
Web App Attack