๐ฉ๐ช
4server
2026-06-02 23:52:19
(1 day ago)
[WedJun0301:52:16.7790572026][security2:error][pid870159:tid870205][client52.237.118.111:0]ModSecuri ...
show more
[WedJun0301:52:16.7790572026][security2:error][pid870159:tid870205][client52.237.118.111:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Matchof\"rx/index\\\\\\\\.php\$\"against\"REQUEST_FILENAME\"required.[file\"/etc/apache2/conf.d/modsec_rules/51_asl_wordpress_extra.conf\"][line\"33\"][id\"333149\"][rev\"21\"][msg\"Atomicorp.comWAFRules:PossiblePHPwebshelldetectedandblocked\"][severity\"CRITICAL\"][hostname\"mjgold.ch\"][uri\"/wp-content/uploads/admin.php\"][unique_id\"ah9ssIN7_bx08xB7jNipoQAAABg\"]
show less
Port Scan
Brute-Force
Web App Attack
Anonymous
2026-06-02 23:16:13
(1 day ago)
52.237.118.111 - - [03/Jun/2026:01:12:34 +0200] "GET /.trash7206/index.php HTTP/1.1" 404 5068 "-" "M ...
show more
52.237.118.111 - - [03/Jun/2026:01:12:34 +0200] "GET /.trash7206/index.php HTTP/1.1" 404 5068 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
52.237.118.111 - - [03/Jun/2026:01:12:35 +0200] "GET /.well-known/logs233/index.php?p= HTTP/1.1" 404 626 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
52.237.118.111 - - [03/Jun/2026:01:12:35 +0200] "GET /wp-content/themes/haha.php HTTP/1.1" 404 564 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
52.237.118.111 - - [03/Jun/2026:01:12:35 +0200] "GET /wp-content/themes/theme/about.php HTTP/1.1" 404 564 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
52.237.118.111 - - [03/Jun/2026:01:12:35 +0200] "GET /wp-content/plugins/plugin/index.php HTTP/1.1" 404 564 "-" "Mozilla/5.0
...
show less
DDoS Attack
๐ซ๐ท
โจ
2026-06-02 23:16:10
(1 day ago)
Rule : Security
IP in black list
Port Scan
Hacking
Brute-Force
Anonymous
2026-06-02 22:52:08
(1 day ago)
...
Web App Attack
Anonymous
2026-06-02 22:48:43
(1 day ago)
52.237.118.111 - - [03/Jun/2026:00:48:18 +0200] "GET /wp-content/themes/haha.php HTTP/1.1" 404 29040 ...
show more
52.237.118.111 - - [03/Jun/2026:00:48:18 +0200] "GET /wp-content/themes/haha.php HTTP/1.1" 404 29040
52.237.118.111 - - [03/Jun/2026:00:48:20 +0200] "GET /wp-content/themes/theme/about.php HTTP/1.1" 404 29040
52.237.118.111 - - [03/Jun/2026:00:48:23 +0200] "GET /xmr.php HTTP/1.1" 404 29041
52.237.118.111 - - [03/Jun/2026:00:48:25 +0200] "GET /about.php HTTP/1.1" 404 29039
52.237.118.111 - - [03/Jun/2026:00:48:27 +0200] "GET /admin.php HTTP/1.1" 404 29040
52.237.118.111 - - [03/Jun/2026:00:48:29 +0200] "GET /adminfuns.php HTTP/1.1" 404 29041
52.237.118.111 - - [03/Jun/2026:00:48:31 +0200] "GET /as.php HTTP/1.1" 404 29041
52.237.118.111 - - [03/Jun/2026:00:48:33 +0200] "GET /bolt.php HTTP/1.1" 404 29039
52.237.118.111 - - [03/Jun/2026:00:48:35 +0200] "GET /cgi-bin/ HTTP/1.1" 404 30392
52.237.118.111 - - [03/Jun/2026:00:48:39 +0200] "GET /class-t.api.php HTTP/1.1" 404 32652
...
show less
Web Spam
Web App Attack
๐ฎ๐น
VHosting
2026-06-02 22:05:03
(1 day ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐บ๐ธ
nodepile
2026-06-02 21:22:00
(1 day ago)
Requests denied due to active blacklist hits (tenant=47 method=GET path=/.well-known/logs233/index.p ...
show more
Requests denied due to active blacklist hits (tenant=47 method=GET path=/.well-known/logs233/index.php ua='Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36')
show less
Web App Attack
Exploited Host
๐ซ๐ท
solution.it
2026-06-02 20:59:36
(1 day ago)
[Tue Jun 02 22:59:35.855002 2026] [php7:error] [pid 569156:tid 569156] [client 52.237.118.111:5202] ...
show more
[Tue Jun 02 22:59:35.855002 2026] [php7:error] [pid 569156:tid 569156] [client 52.237.118.111:5202] script '/var/www/html/blog.solution.it/wp-content/themes/haha.php' not found or unable to stat
show less
Web App Attack
๐ณ๐ด
Abuse Buster
2026-06-02 20:58:48
(1 day ago)
52.237.118.111 - [02/Jun/2026:22:58:46 +0200] "GET /.trash7206/index.php HTTP/2.0" 403 548 "-" "Mozi ...
show more
52.237.118.111 - [02/Jun/2026:22:58:46 +0200] "GET /.trash7206/index.php HTTP/2.0" 403 548 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
52.237.118.111 - [02/Jun/2026:22:58:47 +0200] "GET /wp-content/themes/haha.php HTTP/2.0" 404 36 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
52.237.118.111 - [02/Jun/2026:22:58:47 +0200] "GET /wp-content/themes/theme/about.php HTTP/2.0" 404 36 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
52.237.118.111 - [02/Jun/2026:22:58:47 +0200] "GET /wp-content/plugins/plugin/index.php HTTP/2.0" 404 36 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐บ๐ธ
rdpguard.com
2026-06-02 20:55:48
(1 day ago)
RdpGuard detected brute-force attempt on HTTP
Brute-Force
๐ซ๐ท
dynamix
2026-06-02 20:32:45
(1 day ago)
Multiple WAF Violations
Web App Attack
๐ฌ๐ง
consul.to
2026-06-02 20:15:17
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
๐ฉ๐ช
AetherFox
2026-06-02 20:10:41
(1 day ago)
AetherFox VoidGuard detected: [Tue Jun 02 20:10:40.234078 2026] [authz_core:error] [pid 2943145:tid ...
show more
AetherFox VoidGuard detected: [Tue Jun 02 20:10:40.234078 2026] [authz_core:error] [pid 2943145:tid 2943156] [client 52.237.118.111:5271] AH01630: client denied by server configuration: proxy:https://[MASKED]/.trash7206/index.php
[Tue Jun 02 20:10:40.569343 2026] [authz_core:error] [pid 2943145:tid 2943163] [client 52.237.118.111:5271] AH01630: client denied by server configuration: proxy:https://[MASKED]/.well-known/logs233/index.php
[Tue Jun 02 20:10:40.748198 2026] [authz_core:error] [pid 2943145:tid 2943158] [client 52.237.118.111:5271] AH01630: client denied by server configuration: proxy:https://[MASKED]/wp-content/themes/haha.php
[Tue Jun 02 20:10:40.916694 2026] [authz_core:error] [pid 2943145:tid 2943159] [client 52.237.118.111:5271] AH01630: client denied by server configuration: proxy:https://[MASKED]/wp-content/themes/theme/about.php
[Tue Jun 02 20:10:41.085525 2026] [authz_core:error] [pid 2943145:tid 2943164] [client 52.237.118.111:5271] AH
...
show less
Bad Web Bot
Web App Attack
Anonymous
2026-06-02 20:01:19
(1 day ago)
52.237.118.111 - - [02/Jun/2026:22:01:14 +0200] "GET /.trash7206/index.php HTTP/1.1" 404 196 "-" "Mo ...
show more
52.237.118.111 - - [02/Jun/2026:22:01:14 +0200] "GET /.trash7206/index.php HTTP/1.1" 404 196 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
52.237.118.111 - - [02/Jun/2026:22:01:15 +0200] "GET /.well-known/logs233/index.php?p= HTTP/1.1" 404 196 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
52.237.118.111 - - [02/Jun/2026:22:01:15 +0200] "GET /wp-content/themes/haha.php HTTP/1.1" 404 196 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
52.237.118.111 - - [02/Jun/2026:22:01:15 +0200] "GET /wp-content/themes/theme/about.php HTTP/1.1" 404 196 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
52.237.118.111 - - [02/Jun/2026:22:01:15 +0200] "GET /wp-content/plugins/plugin/index.php HTTP/1.1" 404 196 "-" "Mozilla/5.0
...
show less
Web App Attack
๐ฒ๐พ
Rizzy
2026-06-02 19:41:06
(1 day ago)
Multiple WAF Violations
Brute-Force
Web App Attack