๐บ๐ธ
kosada.com
2026-09-20 02:54:38
(14 hours ago)
Repeated requests for suspicious nonexistent URLs, for example: /wp-content/goods.php (HTTP/2.0 port ...
show more
Repeated requests for suspicious nonexistent URLs, for example: /wp-content/goods.php (HTTP/2.0 port 443, user agent: "Go-http-client/2.0")
show less
Web App Attack
๐ซ๐ฎ
YF
2026-09-20 02:31:13
(15 hours ago)
Distributed subnet attack โ coordinated scanning from multiple IPs in the same /24
DDoS Attack
Web App Attack
๐ฉ๐ช
hchristo
2026-09-19 23:47:17
(18 hours ago)
[Sun Sep 20 01:47:10.706767 2026] [proxy_fcgi:error] [pid 23343:tid 23550] [remote 85.203.36.242:331 ...
show more
[Sun Sep 20 01:47:10.706767 2026] [proxy_fcgi:error] [pid 23343:tid 23550] [remote 85.203.36.242:33191] AH01071: Got error 'Primary script unknown', referer: http://analytics.hchristo.de/000.php
[Sun Sep 20 01:47:11.862188 2026] [proxy_fcgi:error] [pid 23343:tid 23496] [remote 85.203.36.242:33191] AH01071: Got error 'Primary script unknown', referer: http://analytics.hchristo.de/chosen.php?p=
[Sun Sep 20 01:47:14.378077 2026] [proxy_fcgi:error] [pid 23343:tid 23531] [remote 85.203.36.242:33191] AH01071: Got error 'Primary script unknown', referer: http://analytics.hchristo.de/gifclass.php#888xyz999
[Sun Sep 20 01:47:15.444138 2026] [proxy_fcgi:error] [pid 23343:tid 23519] [remote 85.203.36.242:33191] AH01071: Got error 'Primary script unknown', referer: http://analytics.hchristo.de/bless.php#888xyz999
[Sun Sep 20 01:47:16.570452 2026] [proxy_fcgi:error] [pid 23343:tid 23469] [remote 85.203.36.242:33191] AH01071: Got error 'Primary script unknown', referer: http://analytics.hchristo.de/
...
show less
Brute-Force
๐ฉ๐ช
jasperedv.de
2026-09-19 11:23:21
(1 day ago)
Apache Login - Brutforcing
Web App Attack
Brute-Force
๐ฉ๐ช
todix
2026-09-19 04:50:13
(1 day ago)
Web App Attack Exploid from 85.203.36.242
Web App Attack
๐บ๐ธ
omc
2026-09-19 03:09:48
(1 day ago)
AH01797: Unauthorized file.
Bad Web Bot
๐บ๐ธ
omc
2026-09-19 03:09:46
(1 day ago)
GET /000.php [Q4]. Botnet attack totaled 62 hits [BR].
Bad Web Bot
DDoS Attack
๐ฎ๐น
VHosting
2026-09-18 14:35:04
(2 days ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ฌ๐ง
consul.to
2026-06-10 05:02:37
(3 months ago)
Web attack/malicious scanning detected
Web App Attack
๐ซ๐ท
Octopuce
2026-06-10 04:37:59
(3 months ago)
Aggressive web search of vulnerable pages: /bless.php /O-Simple.php /lock360.php /zwso.php /chosen.p ...
show more
Aggressive web search of vulnerable pages: /bless.php /O-Simple.php /lock360.php /zwso.php /chosen.php /about.php /admin.php /mah.php /.wp/wso. ...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-12 17:53:10
(4 months ago)
(mod_security) mod_security (id:240000) triggered by 85.203.36.242 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240000) triggered by 85.203.36.242 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 12 13:53:06.736556 2026] [security2:error] [pid 22693:tid 22693] [client 85.203.36.242:54693] ModSecurity: Access denied with code 403 (phase 2). String match ".php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/24_Apps_Joomla.conf"] [line "74"] [id "240000"] [rev "1"] [msg "COMODO WAF: Protecting Joomla folder||james.ahlstrom.name|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Joomla"] [hostname "james.ahlstrom.name"] [uri "/images/stories/themes.php"] [unique_id "agNpAqVmmkAjbg29NqVHMQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-05-06 22:05:56
(4 months ago)
Too many Status 40X (17)
Brute-Force
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-05-06 02:42:45
(4 months ago)
Bad bot ignoring robot.txt
Bad Web Bot
๐บ๐ธ
mnsf
2026-05-05 21:05:40
(4 months ago)
Too many Status 40X (12)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-20 13:14:48
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 85.203.36.242 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 85.203.36.242 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 20 09:14:41.133199 2026] [security2:error] [pid 3292239:tid 3292239] [client 85.203.36.242:49237] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bobrossi.gregorii.com"] [uri "/.git/execute.php"] [unique_id "aeYmwaXTJq2JJ2Oznsz_YAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack