๐ณ๐ฑ
Site.eu
2026-06-13 18:22:22
(17 minutes ago)
Excessive multi-domain requests
Brute-Force
๐ง๐ท
dominioz
2026-06-13 17:57:34
(42 minutes ago)
2026-06-13 17:56:31 GET /wp-content/themes/seotheme/db.php u - 46.151.182.58 HTTP/1.1 Mozlila/5.0+(L ...
show more
2026-06-13 17:56:31 GET /wp-content/themes/seotheme/db.php u - 46.151.182.58 HTTP/1.1 Mozlila/5.0+(Linux;+Android+7.0;+SM-G892A+Bulid/NRD90M;+wv)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Version/4.0+Chrome/60.0.3112.107+Moblie+Safari/537.36 www.google.com 404 1440
2026-06-13 17:56:31 POST /wp-plain.php - - 46.151.182.58 HTTP/1.1 Mozilla/5.0+(Linux;+Android+7.0;+SM-G892A+Bulid/NRD90M;+wv)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Version/4.0+Chrome/60.0.3112.107+Moblie+Safari/537.36 www.google.com 404 1440
2026-06-13 17:56:31 POST /ALFA_DATA/alfacgiapi/perl.alfa - - 46.151.182.58 HTTP/1.1 Mozlila/5.0+(Linux;+Android+7.0;+SM-G892A+Bulid/NRD90M;+wv)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Version/4.0+Chrome/60.0.3112.107+Moblie+Safari/537.36 www.google.com 404 1440
2026-06-13 17:56:31 POST /alfacgiapi/perl.alfa - - 46.151.182.58 HTTP/1.1 Mozlila/5.0+(Linux;+Android+7.0;+SM-G892A+Bulid/NRD90M;+wv)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Version/4.0+Chrome/60.0.3112.107+Moblie+Safari/537.36 www.go
...
show less
Web App Attack
๐ฎ๐ฉ
securejdprop
2026-06-13 16:18:04
(2 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/suricata-major-severity(ET DROP Spamhaus D ...
show more
This IP was detected by CrowdSec triggering crowdsecurity/suricata-major-severity(ET DROP Spamhaus DROP Listed Traffic Inbound group 8). Ip 46.151.182.58 performed 'crowdsecurity/suricata-major-severity' (1 events over 0s) at 2026-06-13 16:18:03.220712897 +0000 UTC
show less
Hacking
Web App Attack
๐ฉ๐ช
abuse-detection
2026-06-13 15:25:30
(3 hours ago)
Security detection: http-bad-user-agent
Bad Web Bot
๐ฌ๐ท
setupgr
2026-06-13 12:19:59
(6 hours ago)
(mod_security) mod_security (id:1000001) triggered by 46.151.182.58: 1 in the last 86400 secs; Ports ...
show more
(mod_security) mod_security (id:1000001) triggered by 46.151.182.58: 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Sat Jun 13 15:19:54.654071 2026] [security2:error] [pid 784556:tid 784726] [client 46.151.182.58:56957] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/db.php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "92"] [id "1000001"] [msg "Bad file blocked: /wp-content/themes/seotheme/db.php"] [severity "CRITICAL"] [tag "security"] [hostname "asteriassantorini.com"] [uri "/wp-content/themes/seotheme/db.php"] [unique_id "ai1K6s63WyfM5i32ramjwAAAAQA"], referer: www.google.com
show less
Port Scan
๐ฉ๐ช
paissangroup
2026-06-13 10:44:20
(7 hours ago)
Multiple WAF Violations
Web App Attack
๐ฉ๐ช
macrob
2026-06-13 10:05:40
(8 hours ago)
2026/06/13 10:05:38 [error] 2321703#2321703: *302491281 access forbidden by rule, client: 46.151.182 ...
show more
2026/06/13 10:05:38 [error] 2321703#2321703: *302491281 access forbidden by rule, client: 46.151.182.58, server: binixo.com.ar, request: "GET /wp-content/themes/seotheme/db.php?u HTTP/2.0", host: "binixo.com.ar", referrer: "www.google.com"
2026/06/13 10:05:38 [error] 2321703#2321703: *302491282 access forbidden by rule, client: 46.151.182.58, server: binixo.com.ar, request: "GET /wp-content/plugins/fix/up.php HTTP/2.0", host: "binixo.com.ar"
2026/06/13 10:05:38 [error] 2321703#2321703: *302491285 access forbidden by rule, client: 46.151.182.58, server: binixo.com.ar, request: "GET /wp-content/themes/seotheme/db.php?u HTTP/2.0", host: "binixo.com.ar", referrer: "www.google.com"
...
show less
Web App Attack
Anonymous
2026-06-13 09:39:25
(9 hours ago)
46.151.182.58 - - [13/Jun/2026:17:39:19 +0800] "GET /wp-content/themes/seotheme/db.php?u HTTP/1.1" 4 ...
show more
46.151.182.58 - - [13/Jun/2026:17:39:19 +0800] "GET /wp-content/themes/seotheme/db.php?u HTTP/1.1" 404 13848 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36"
46.151.182.58 - - [13/Jun/2026:17:39:19 +0800] "GET /wp-content/plugins/fix/up.php HTTP/1.1" 404 13848 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36"
46.151.182.58 - - [13/Jun/2026:17:39:19 +0800] "POST /ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 404 13849 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36"
46.151.182.58 - - [13/Jun/2026:17:39:19 +0800] "POST /wp-plain.php HTTP/1.1" 404 13849 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 C
...
show less
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-06-13 08:55:48
(9 hours ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
helios.live
2026-06-13 08:51:00
(9 hours ago)
2026/06/13 08:51:00 [error] 189718#189718: *671405 FastCGI sent in stderr: "Primary script unknown" ...
show more
2026/06/13 08:51:00 [error] 189718#189718: *671405 FastCGI sent in stderr: "Primary script unknown" while reading response header from upstream, client: 46.151.182.58, server: kocerroxy.com, request: "POST /wp-plain.php HTTP/1.1", upstream: "fastcgi://unix:/var/run/php/php8.4-fpm-betakocerroxycom.sock:", host: "kocerroxy.com", referrer: "www.google.com"
46.151.182.58 - - [13/Jun/2026:08:51:00 +0000] "POST /wp-plain.php HTTP/1.1" 404 47 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36"
2026/06/13 08:51:00 [error] 189718#189718: *671405 FastCGI sent in stderr: "Primary script unknown" while reading response header from upstream, client: 46.151.182.58, server: kocerroxy.com, request: "GET /wp-content/plugins/fix/up.php HTTP/1.1", upstream: "fastcgi://unix:/var/run/php/php8.4-fpm-betakocerroxycom.sock:", host: "kocerroxy.com"
46.151.182.58 - - [13/Jun/2026:08:51:00 +000
...
show less
Web App Attack
๐บ๐ธ
antlac1
2026-06-13 08:33:18
(10 hours ago)
crowdsecurity/http-bad-user-agent
Brute-Force
Web App Attack
๐น๐ญ
thaizone.com
2026-06-13 06:23:19
(12 hours ago)
Brute Force Attack on a Web Resources #1
DDoS Attack
Web Spam
Brute-Force
Web App Attack
Anonymous
2026-06-13 03:59:05
(14 hours ago)
Automated report (2026-06-13T03:59:05+00:00). User agent cited by various attack tools, rootkits, ba ...
show more
Automated report (2026-06-13T03:59:05+00:00). User agent cited by various attack tools, rootkits, backdoors, webshells, and malware detected.
show less
Hacking
Bad Web Bot
Exploited Host
Web App Attack
Open Proxy
๐ฉ๐ช
Skyrider
2026-06-13 03:10:43
(15 hours ago)
Nginx: HTTP 4xx probe/scan attempts. Automated fail2ban report.
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob.fr
2026-06-13 02:15:03
(16 hours ago)
Repeated 404 errors, blocked by Fail2ban in custom-404 jail
Bad Web Bot