๐ฉ๐ช
LRob.fr
2026-06-12 11:00:19
(34 minutes ago)
Repeated 403 errors, blocked by Fail2ban in custom-403 jail
Bad Web Bot
๐ท๐บ
Deynekin.com
2026-06-12 09:02:17
(2 hours ago)
This IP address has been identified as part of a botnet infrastructure used by threat actors, indica ...
show more
This IP address has been identified as part of a botnet infrastructure used by threat actors, indicating automated and malicious activity.
show less
Fraud Orders
Web App Attack
SSH
Web Spam
FTP Brute-Force
Phishing
Email Spam
Port Scan
Brute-Force
Exploited Host
Hacking
SQL Injection
Anonymous
2026-06-12 08:27:21
(3 hours ago)
64.89.162.188 - - [12/Jun/2026:10:27:19 +0200] "GET /wp-content/plugins/fix/up.php HTTP/1.1" 404 123 ...
show more
64.89.162.188 - - [12/Jun/2026:10:27:19 +0200] "GET /wp-content/plugins/fix/up.php HTTP/1.1" 404 123274 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36"
64.89.162.188 - - [12/Jun/2026:10:27:18 +0200] "GET /wp-content/plugins/fix/up.php HTTP/1.1" 404 123487 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36"
64.89.162.188 - - [12/Jun/2026:10:27:18 +0200] "GET /wp-content/themes/seotheme/db.php?u HTTP/1.1" 404 123534 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36"
64.89.162.188 - - [12/Jun/2026:10:27:19 +0200] "GET /wp-content/themes/seotheme/db.php?u HTTP/1.1" 404 123321 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie
...
show less
Brute-Force
Web App Attack
Anonymous
2026-06-12 08:25:08
(3 hours ago)
64.89.162.188 - - [12/Jun/2026:16:25:07 +0800] "GET /wp-content/plugins/fix/up.php HTTP/1.1" 404 138 ...
show more
64.89.162.188 - - [12/Jun/2026:16:25:07 +0800] "GET /wp-content/plugins/fix/up.php HTTP/1.1" 404 13849 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36"
64.89.162.188 - - [12/Jun/2026:16:25:07 +0800] "GET /wp-content/themes/seotheme/db.php?u HTTP/1.1" 404 13849 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36"
64.89.162.188 - - [12/Jun/2026:16:25:07 +0800] "GET /wp-content/themes/seotheme/db.php?u HTTP/1.1" 404 13849 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36"
64.89.162.188 - - [12/Jun/2026:16:25:07 +0800] "POST /wp-plain.php HTTP/1.1" 404 13850 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
iNetWorker
2026-06-12 07:28:44
(4 hours ago)
trolling for resource vulnerabilities
Web App Attack
๐ซ๐ท
Version Net
2026-06-12 04:40:39
(6 hours ago)
IPS Detection: ALFA.TEaM.Web.Shell
Hacking
๐ฉ๐ช
LRob.fr
2026-06-12 04:15:07
(7 hours ago)
Repeated 404 errors, blocked by Fail2ban in custom-404 jail
Bad Web Bot
๐ฌ๐ง
andypiper
2026-06-12 01:02:16
(10 hours ago)
CrowdSec ban for AbuseIPDB Top List
Brute-Force
Web App Attack
๐ซ๐ท
dynamix
2026-06-12 00:12:33
(11 hours ago)
Multiple WAF Violations
Web App Attack
๐ฑ๐ป
garmtech.com
2026-06-11 18:54:13
(16 hours ago)
IM360 WAF: Block .suspected files MV:/plugins/content/apismtp/apismtp.php.suspected
Web App Attack
๐ฑ๐ป
garmtech.com
2026-06-11 18:54:12
(16 hours ago)
IM360 WAF: Interaction with fake plugin MV:/wp-content/plugins/apikey/apikey.php?test=hello
Web App Attack
๐ท๐บ
DZBOT
2026-06-11 18:39:06
(16 hours ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐ฆ๐บ
clapper
2026-06-11 18:05:38
(17 hours ago)
(mod_security) mod_security (id:980001) triggered by 64.89.162.188 (US/United States/-): 3 in the la ...
show more
(mod_security) mod_security (id:980001) triggered by 64.89.162.188 (US/United States/-): 3 in the last 3600 secs; ID: LUC
show less
Brute-Force
Bad Web Bot
๐ณ๐ฑ
CryptoYakari
2026-06-11 18:00:09
(17 hours ago)
64.89.162.188 - - [11/Jun/2026:21:00:02 +0300] "POST /ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.0" 404 6 ...
show more
64.89.162.188 - - [11/Jun/2026:21:00:02 +0300] "POST /ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.0" 404 6989 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36"
64.89.162.188 - - [11/Jun/2026:21:00:02 +0300] "GET /wp-content/plugins/fix/up.php HTTP/1.0" 404 6989 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36"
64.89.162.188 - - [11/Jun/2026:21:00:02 +0300] "GET /wp-content/themes/seotheme/db.php?u HTTP/1.0" 404 3515 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36"
64.89.162.188 - - [11/Jun/2026:21:00:02 +0300] "POST /wp-plain.php HTTP/1.0" 404 4005 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrom
...
show less
Web Spam
Blog Spam
Web App Attack
Bad Web Bot
Anonymous
2026-06-11 17:01:15
(18 hours ago)
64.89.162.188 - - [12/Jun/2026:01:01:09 +0800] "GET /wp-content/plugins/fix/up.php HTTP/1.1" 404 138 ...
show more
64.89.162.188 - - [12/Jun/2026:01:01:09 +0800] "GET /wp-content/plugins/fix/up.php HTTP/1.1" 404 13847 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36"
64.89.162.188 - - [12/Jun/2026:01:01:09 +0800] "GET /wp-content/themes/seotheme/db.php?u HTTP/1.1" 404 13846 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36"
64.89.162.188 - - [12/Jun/2026:01:01:09 +0800] "POST /wp-plain.php HTTP/1.1" 404 13847 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36"
64.89.162.188 - - [12/Jun/2026:01:01:09 +0800] "POST /ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 404 13847 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 C
...
show less
Bad Web Bot
Web App Attack