Anonymous
2026-09-11 08:18:25
(34 seconds ago)
"GET /wp-content/plugins/hellopress/wp_filemanager.php HTTP/1.1"
Hacking
Web App Attack
🇩🇪
reznekcs
2026-09-11 08:16:07
(2 minutes ago)
F2B apache-noscript ban. Logs: [Fri Sep 11 10:16:05.729623 2026] [proxy_fcgi:error] [pid 1926430] [c ...
show more
F2B apache-noscript ban. Logs: [Fri Sep 11 10:16:05.729623 2026] [proxy_fcgi:error] [pid 1926430] [client 52.141.45.117:0] AH01071: Got error 'Primary script unknown'
[Fri Sep 11 10:16:06.325750 2026] [proxy_fcgi:error] [pid 1929455] [client 52.141.45.117:0] AH01071: Got error 'Primary script unknown'
[Fri Sep 11 10:16:06.624895 2026] [proxy_fcgi:error] [pid 1926430] [client 52.141.45.117:0] AH01071: Got error 'Primary script unknown'
show less
Web App Attack
Anonymous
2026-09-11 08:12:57
(6 minutes ago)
fail2ban: apache-php-scan jail (1 hits in 2419200s) on skipper
Web App Attack
Hacking
🇺🇸
superflea2828
2026-09-11 08:09:10
(9 minutes ago)
52.141.45.117 - - [11/Sep/2026:08:09:08 +0000] "GET /wp-content/plugins/hellopress/wp_filemanager.ph ...
show more
52.141.45.117 - - [11/Sep/2026:08:09:08 +0000] "GET /wp-content/plugins/hellopress/wp_filemanager.php HTTP/1.1" 404 501 "-" "-"
...
show less
Web App Attack
🇫🇷
spot
2026-09-11 08:08:54
(10 minutes ago)
52.141.45.117 - - [11/Sep/2026:09:08:54 +0100] "GET /wp-content/plugins/hellopress/wp_filemanager.ph ...
show more
52.141.45.117 - - [11/Sep/2026:09:08:54 +0100] "GET /wp-content/plugins/hellopress/wp_filemanager.php HTTP/1.1" 301 624 "-" "-"
...
show less
Web App Attack
Hacking
🇬🇧
Mendip_Defender
2026-09-11 08:05:39
(13 minutes ago)
52.141.45.117 - - [11/Sep/2026:09:05:51 +0100] "GET /wp-content/plugins/hellopress/wp_filemanager.ph ...
show more
52.141.45.117 - - [11/Sep/2026:09:05:51 +0100] "GET /wp-content/plugins/hellopress/wp_filemanager.php HTTP/1.1" 301 162 "-" "-"
52.141.45.117 - - [11/Sep/2026:09:05:52 +0100] "GET /wp-content/plugins/hellopress/wp_filemanager.php HTTP/1.1" 403 6471 "-" "-"
52.141.45.117 - - [11/Sep/2026:09:05:52 +0100] "GET /this_is_a_new_hello_world.php HTTP/1.1" 301 162 "-" "-"
...
show less
Hacking
Web App Attack
Anonymous
2026-09-11 08:05:08
(13 minutes ago)
PHP file probing detected by Fail2Ban
Web App Attack
🇺🇸
cwytech
2026-09-11 08:04:15
(14 minutes ago)
Fleet-wide ban from the Ghostfleet 👻. Triggered by scenario: crowdsecurity/http-probing.
Bad Web Bot
Web App Attack
🇺🇸
k3rn3l109
2026-09-11 08:03:18
(15 minutes ago)
Sentinel honeypot: cf-waf-auto hit on requests.emby-media.com
Hacking
Anonymous
2026-09-11 08:03:15
(15 minutes ago)
52.141.45.117 - - [11/Sep/2026:04:01:08 -0400] "GET /wp-content/plugins/hellopress/wp_filemanager.ph ...
show more
52.141.45.117 - - [11/Sep/2026:04:01:08 -0400] "GET /wp-content/plugins/hellopress/wp_filemanager.php HTTP/1.0" 404 53931 "-" "-"
52.141.45.117 - - [11/Sep/2026:04:01:10 -0400] "GET /this_is_a_new_hello_world.php HTTP/1.0" 404 53931 "-" "-"
52.141.45.117 - - [11/Sep/2026:04:01:14 -0400] "GET /deals1.php HTTP/1.0" 404 53931 "-" "-"
52.141.45.117 - - [11/Sep/2026:04:01:17 -0400] "GET /alfa.php HTTP/1.0" 404 53931 "-" "-"
52.141.45.117 - - [11/Sep/2026:04:01:19 -0400] "GET /222.php HTTP/1.0" 404 53931 "-" "-"
52.141.45.117 - - [11/Sep/2026:04:01:21 -0400] "GET /3PJcpMFsD8B.php HTTP/1.0" 404 53931 "-" "-"
52.141.45.117 - - [11/Sep/2026:04:01:24 -0400] "GET /images.php HTTP/1.0" 404 53931 "-" "-"
52.141.45.117 - - [11/Sep/2026:04:01:26 -0400] "GET /goods.php HTTP/1.0" 404 53931 "-" "-"
52.141.45.117 - - [11/Sep/2026:04:01:31 -0400] "GET /k.php HTTP/1.0" 404 53931 "-" "-"
52.141.45.117 - - [11/Sep/2026:04:01:35 -0400] "GET /k2.php HTTP/1.0" 404 53931 "-" "-"
52.141.45.117 - - [11/Sep/2026:04
...
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-11 08:00:16
(18 minutes ago)
fail2ban jail apache-scanner: 52.141.45.117 - - [11/Sep/2026:01:00:10 -0700] "GET /wp-content/plugin ...
show more
fail2ban jail apache-scanner: 52.141.45.117 - - [11/Sep/2026:01:00:10 -0700] "GET /wp-content/plugins/hellopress/wp_filemanager.php HTTP/1.1" 403 4403 "-" "-" 52.141.45.117 - - [11/Sep/2026:01:00:10 -0700] "GET /this_is_a_new_hello_world.php HTTP/1.1" 403 465 "-" "-" 52.141.45.117 - - [11/Sep/2026:01:00:11 -0700] "GET /f35.php HTTP/1.1" 403 465 "-" "-" 52.141.45.117 - - [11/Sep/2026:01:00:11 -0700] "GET /adminfuns.php HTTP/1.1" 403 465 "-" "-" 52.141.45.117 - - [11/Sep/2026:01:00:11 -0700] "GET /3PJcpMFsD8B.php HTTP/1.1" 403 465 "-" "-" 52.141.45.117 - - [11/Sep/2026:01:00:11 -0700] "GET /4PJcpMFsD8B.php HTTP/1.1" 403 465 "-" "-" 52.141.45.117 - - [11/Sep/2026:01:00:12 -0700] "GET /av.php HTTP/1.1" 403 465 "-" "-" 52.141.45.117 - - [11/Sep/2026:01:00:12 -0700] "GET /av.php HTTP/1.1" 403 465 "-" "-" 52.141.45.117 - - [11/Sep/2026:01:00:12 -0700] "GET /dex.php HTTP/1.1" 403 465 "-" "-" 52.141.45.117 - - [11/Sep/2026:01
show less
Web App Attack
Port Scan
Anonymous
2026-09-11 07:59:50
(19 minutes ago)
52.141.45.117 detected on srv01
Brute-Force
🇩🇪
klaus_ph
2026-09-11 07:59:29
(19 minutes ago)
[Fri Sep 11 09:59:17.421785 2026] [php:error] [pid 1391747] [client 52.141.45.117:26179] script '/va ...
show more
[Fri Sep 11 09:59:17.421785 2026] [php:error] [pid 1391747] [client 52.141.45.117:26179] script '/var/www/html/this_is_a_new_hello_world.php' not found or unable to stat
...
show less
Brute-Force
🇩🇪
BlueWire Hosting
2026-09-11 07:53:54
(25 minutes ago)
Suspicious HTTP(s) activity without a user agent provided
Bad Web Bot
🇩🇪
bescared
2026-09-11 07:51:00
(27 minutes ago)
WAF (2)
Bad Web Bot
Web App Attack