Anonymous
2026-09-24 01:42:46
(1 week ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐บ๐ธ
Sonoflet
2026-09-23 03:35:46
(1 week ago)
CrowdSec detection | scenario: http-probing
Port Scan
Web App Attack
๐บ๐ธ
dot.mg
2026-09-22 20:25:48
(1 week ago)
Scan of vulnerable files
Web App Attack
๐ฉ๐ช
todix
2026-09-22 19:22:37
(1 week ago)
Web App Attack Exploid from 45.89.242.40
Web App Attack
๐ซ๐ท
pawel
2026-09-22 16:57:07
(1 week ago)
[Tue Sep 22 18:57:05.451210 2026] [php:error] [pid 1825387] [client 45.89.242.40:40539] script '/hom ...
show more
[Tue Sep 22 18:57:05.451210 2026] [php:error] [pid 1825387] [client 45.89.242.40:40539] script '/home/pawel/public_html/ioxi-o.php' not found or unable to stat, referer: http://pogoda.wroclaw.pl/ioxi-o.php
[Tue Sep 22 18:57:05.608145 2026] [php:error] [pid 1825387] [client 45.89.242.40:40539] script '/home/pawel/public_html/txets.php' not found or unable to stat, referer: http://pogoda.wroclaw.pl/txets.php
[Tue Sep 22 18:57:06.394692 2026] [php:error] [pid 1825387] [client 45.89.242.40:40539] script '/home/pawel/public_html/goods.php' not found or unable to stat, referer: http://pogoda.wroclaw.pl/goods.php
...
show less
Bad Web Bot
Web App Attack
๐จ๐ญ
zynex
2026-09-22 10:05:18
(1 week ago)
URL Probing: /abcd.php
Web App Attack
๐บ๐ธ
Gabriel Camargo
2026-09-21 13:29:49
(1 week ago)
45.89.242.40 - - [21/Sep/2026:08:29:46 -0500] "GET /bolt.php HTTP/1.1" 301 178 "-" "Go-http-client/1 ...
show more
45.89.242.40 - - [21/Sep/2026:08:29:46 -0500] "GET /bolt.php HTTP/1.1" 301 178 "-" "Go-http-client/1.1"
45.89.242.40 - - [21/Sep/2026:08:29:48 -0500] "GET /wp-admin/css/index.php HTTP/1.1" 301 178 "-" "Go-http-client/1.1"
45.89.242.40 - - [21/Sep/2026:08:29:49 -0500] "GET /wp-admin/index.php HTTP/1.1" 301 178 "-" "Go-http-client/1.1"
...
show less
Brute-Force
SSH
๐ฌ๐ท
setupgr
2026-09-21 05:35:28
(1 week ago)
(mod_security) mod_security (id:1000001) triggered by 45.89.242.40 (GB/United Kingdom/England/London ...
show more
(mod_security) mod_security (id:1000001) triggered by 45.89.242.40 (GB/United Kingdom/England/London/-/[AS62240 Clouvider Limited]): 1 in the last 86400 secs (CF_ENABLE); Ports: *; Direction: inout; Trigger: LF_MODSEC; Logs: [Mon Sep 21 08:35:24.019573 2026] [security2:error] [pid 1025924:tid 1026115] [client 45.89.242.40:56981] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/about.php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "103"] [id "1000001"] [msg "Bad file blocked: /wp-admin/css/about.php"] [severity "CRITICAL"] [tag "security"] [hostname "gyrosplace.gr"] [uri "/wp-admin/css/about.php"] [unique_id "arDCHCIiOWL33Dvd6JXRoQAAAdY"]
show less
Port Scan
Anonymous
2026-09-21 00:42:12
(1 week ago)
Multiple, malicious web requests detected
Port Scan
Hacking
๐ฉ๐ช
Herrminator
2026-09-20 15:57:46
(1 week ago)
mini.johler.ph 45.89.242.40 - - [20/Sep/2026:17:57:37 +0200] "GET /000.php HTTP/2.0" 404 153 "http:/ ...
show more
mini.johler.ph 45.89.242.40 - - [20/Sep/2026:17:57:37 +0200] "GET /000.php HTTP/2.0" 404 153 "http://mini.johler.ph/000.php" "Go-http-client/2.0" "-"
mini.johler.ph 45.89.242.40 - - [20/Sep/2026:17:57:37 +0200] "GET /chosen.php?p= HTTP/2.0" 404 153 "http://mini.johler.ph/chosen.php?p=" "Go-http-client/2.0" "-"
mini.johler.ph 45.89.242.40 - - [20/Sep/2026:17:57:38 +0200] "GET /wp-includes/hp2.php HTTP/2.0" 404 153 "http://mini.johler.ph/wp-includes/hp2.php" "Go-http-client/2.0" "-"
mini.johler.ph 45.89.242.40 - - [20/Sep/2026:17:57:38 +0200] "GET /gifclass.php HTTP/2.0" 404 153 "http://mini.johler.ph/gifclass.php#888xyz999" "Go-http-client/2.0" "-"
mini.johler.ph 45.89.242.40 - - [20/Sep/2026:17:57:39 +0200] "GET /bless.php HTTP/2.0" 404 153 "http://mini.johler.ph/bless.php#888xyz999" "Go-http-client/2.0" "-"
mini.johler.ph 45.89.242.40 - - [20/Sep/2026:17:57:39 +0200] "GET /wp-content/goods.php HTTP/2.0" 404 153 "http://mini.johler.ph/wp-content/goods.php" "Go-http-client/2.0" "-"
mini
...
show less
Brute-Force
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-09-08 10:08:02
(3 weeks ago)
[08/Sep/2026:13:08:02 +0300] -- 45.89.242.40 Ban reason: User-Agent Go-http-client
Bad Web Bot
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-08 06:15:03
(3 weeks ago)
crowdsecurity/http-wordpress-scan
Brute-Force
Web App Attack
๐ซ๐ท
Baking333
2026-08-24 22:25:05
(1 month ago)
[redacted] 45.89.242.40 - - [24/Aug/2026:23:24:58 +0100] "GET /[redacted] HTTP/1.1" 302 6773 0/40669 ...
show more
[redacted] 45.89.242.40 - - [24/Aug/2026:23:24:58 +0100] "GET /[redacted] HTTP/1.1" 302 6773 0/40669 "-" "Mozilla/5.0" [redacted] 45.89.242.40 - - [24/Aug/2026:23:25:00 +0100] "GET /wp-admin/ HTTP/1.1" 301 612 0/4085 "-" "Mozilla/5.0"
show less
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-08-21 22:10:05
(1 month ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐บ๐ธ
technojoe99
2026-06-15 01:06:53
(3 months ago)
Exploit scan from 45.89.242.40. GET /libraries/ HTTP/1.1.
Web App Attack