Csaba Gáspár
2024-11-14 05:37:00
(1 month ago)
ALFA.TEaM.Web.Shell
Hacking
polycoda
2024-11-13 20:07:40
(1 month ago)
📄 Probes for tons of inexistent files and PHP scripts
Hacking
Web App Attack
london2038.com
2024-11-13 18:58:58
(1 month ago)
Probing for exploits
69.167.7.35 - - [13/Nov/2024:19:58:54 +0100] "POST /ALFA_DATA/alfacgiapi/ ... show more Probing for exploits
69.167.7.35 - - [13/Nov/2024:19:58:54 +0100] "POST /ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 422 0 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36"
69.167.7.35 - - [13/Nov/2024:19:58:54 +0100] "POST /wp-plain.php HTTP/1.1" 204 0 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" show less
Hacking
Web App Attack
URAN Publishing Service
2024-11-13 11:58:27
(1 month ago)
69.167.7.35 - - [13/Nov/2024:13:58:26 +0200] "GET /wp-content/themes/seotheme/db.php?u HTTP/1.1" 404 ... show more 69.167.7.35 - - [13/Nov/2024:13:58:26 +0200] "GET /wp-content/themes/seotheme/db.php?u HTTP/1.1" 404 284 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36"
... show less
Web App Attack
URAN Publishing Service
2024-11-13 09:25:42
(1 month ago)
69.167.7.35 - - [13/Nov/2024:11:25:41 +0200] "GET /wp-content/themes/seotheme/db.php?u HTTP/1.1" 404 ... show more 69.167.7.35 - - [13/Nov/2024:11:25:41 +0200] "GET /wp-content/themes/seotheme/db.php?u HTTP/1.1" 404 274 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36"
... show less
Web App Attack
yukon.ca
2024-11-13 07:23:57
(1 month ago)
Web Server Enforcement Violation: HTTP Headers Remote Code Execution
Port:80
Hacking
Exploited Host
URAN Publishing Service
2024-11-13 06:39:24
(1 month ago)
69.167.7.35 - - [13/Nov/2024:08:39:23 +0200] "GET /wp-content/plugins/dzs-zoomsounds/savepng.php?loc ... show more 69.167.7.35 - - [13/Nov/2024:08:39:23 +0200] "GET /wp-content/plugins/dzs-zoomsounds/savepng.php?location=1877.php HTTP/1.1" 404 273 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/85.0.4183.102 Safari/537.36"
69.167.7.35 - - [13/Nov/2024:08:39:23 +0200] "GET /wp-content/themes/seotheme/db.php?u HTTP/1.1" 404 273 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36"
... show less
Web App Attack
Anonymous
2024-11-13 06:22:09
(1 month ago)
wordpress-trap
Web App Attack
Anonymous
2024-11-13 05:40:03
(1 month ago)
Malicious activity detected
Hacking
Web App Attack
cmbplf
2024-11-13 05:33:14
(1 month ago)
101 requests to */wp-plain.php
Brute-Force
Bad Web Bot
paissangroup
2024-11-13 03:48:31
(1 month ago)
Multiple WAF Violations
Web App Attack
MarkGGN
2024-11-13 02:43:35
(1 month ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-bad-user-agent
Bad Web Bot
Web App Attack
penjaga BRIN
2024-10-15 20:13:59
(1 month ago)
nginx-alfa-95
Web App Attack
Burayot
2024-10-15 18:00:06
(1 month ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 69.167.7.35 (US/United States/-): 2 ... show more LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 69.167.7.35 (US/United States/-): 2 in the last 3600 secs show less
Web App Attack
statistics indonesia
2024-10-15 16:27:25
(1 month ago)
WP Admin Scan Activities
Web App Attack