๐ฎ๐น
LTM
2026-06-09 06:20:01
(6 days ago)
WebServer - Attempts to exploit
Hacking
Brute-Force
Web App Attack
๐ฌ๐ง
consul.to
2026-06-09 02:03:14
(6 days ago)
Web attack/malicious scanning detected
Web App Attack
๐ฎ๐น
Inartis
2026-06-09 01:04:22
(6 days ago)
85.203.47.52 - - [09/Jun/2026:03:04:21 +0200] "GET /222.php HTTP/1.1" 302 393 "-" "Go-http-client/1. ...
show more
85.203.47.52 - - [09/Jun/2026:03:04:21 +0200] "GET /222.php HTTP/1.1" 302 393 "-" "Go-http-client/1.1"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
Inartis
2026-06-08 23:20:58
(6 days ago)
[Tue Jun 09 01:20:53.252347 2026] [autoindex:error] [pid 491420:tid 491420] [client 85.203.47.52:600 ...
show more
[Tue Jun 09 01:20:53.252347 2026] [autoindex:error] [pid 491420:tid 491420] [client 85.203.47.52:60097] AH01276: Cannot serve directory /home/alfonsopluchinotta.it/public_html/wp-includes/sitemaps/providers/: No matching DirectoryIndex (index.php,index.php4,index.php5,index.htm,index.html) found, and server-generated directory index forbidden by Options directive, referer: https://www.alfonsopluchinotta.it/wp-includes/sitemaps/providers/index.php
[Tue Jun 09 01:20:55.098800 2026] [autoindex:error] [pid 491420:tid 491420] [client 85.203.47.52:60097] AH01276: Cannot serve directory /home/alfonsopluchinotta.it/public_html/wp-includes/js/crop/: No matching DirectoryIndex (index.php,index.php4,index.php5,index.htm,index.html) found, and server-generated directory index forbidden by Options directive, referer: https://www.alfonsopluchinotta.it/wp-includes/js/crop/index.php
[Tue Jun 09 01:20:57.633361 2026] [autoindex:error] [pid 491420:tid 491420] [client 85.203.47.52:60097] AH01276: Cannot
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐บ
sms.ru
2026-06-07 22:24:47
(1 week ago)
/wp-admin/images/admin.php
Web App Attack
๐ซ๐ท
Octopuce
2026-06-07 17:51:34
(1 week ago)
Aggressive web search of vulnerable pages: /wp-content/plugins/pwnd/1.php /wp-content/plugins/ubh/av ...
show more
Aggressive web search of vulnerable pages: /wp-content/plugins/pwnd/1.php /wp-content/plugins/ubh/av.php /wp-content/uploads/anas.php /wp-admin ...
show less
Web App Attack
๐ฌ๐ง
consul.to
2026-06-07 16:17:17
(1 week ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
knock
2026-05-22 01:51:05
(3 weeks ago)
Knock-Knock honeypot brute-force: proto8 (1 total hits)
Brute-Force
๐บ๐ธ
nyt
2026-04-20 17:16:37
(1 month ago)
CGI Probe, Potential plugin path, could indicate scanning, Potential upload path, could indicate sca ...
show more
CGI Probe, Potential plugin path, could indicate scanning, Potential upload path, could indicate scanning
show less
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-17 21:24:08
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 85.203.47.52 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 85.203.47.52 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 17 17:23:53.736370 2026] [security2:error] [pid 391071:tid 391071] [client 85.203.47.52:48213] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.solaire-chauffe-eau.info"] [uri "/.git/execute.php"] [unique_id "aeKk6Rw8Xj9je2NrxlDWsgAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-04-17 01:05:50
(1 month ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-02-23 19:07:58
(3 months ago)
[redacted] 85.203.47.52 - - [23/Feb/2026:20:07:51 +0100] "GET /wp-admin/css/colors/blue/rk2.php HTTP ...
show more
[redacted] 85.203.47.52 - - [23/Feb/2026:20:07:51 +0100] "GET /wp-admin/css/colors/blue/rk2.php HTTP/1.1" 404 236 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.149 Safari/537.36"
[redacted] 85.203.47.52 - - [23/Feb/2026:20:07:52 +0100] "GET /wp-admin/css/colors/light/profile.php HTTP/1.1" 404 236 "-" "Mozilla/5.0 (Windows NT 6.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
[redacted] 85.203.47.52 - - [23/Feb/2026:20:07:53 +0100] "GET /wp-admin/user/wp-login.php HTTP/1.1" 404 236 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:79.0) Gecko/20100101 Firefox/79.0"
[redacted] 85.203.47.52 - - [23/Feb/2026:20:07:54 +0100] "GET /wp-content/uploads/admin.php HTTP/1.1" 404 236 "-" "Mozilla/5.0 (Windows NT 6.3; Win64; x64; rv:73.0) Gecko/20100101 Firefox/73.0"
[redacted] 85.203.47.52 - - [23/Feb/2026:20:07:54 +0100] "GET /css/admin.php HTTP/1.1" 404 236 "-"
...
show less
Hacking
Web App Attack
Anonymous
2026-02-23 17:20:49
(3 months ago)
[redacted] 85.203.47.52 - - [23/Feb/2026:18:20:44 +0100] "GET /wp-includes/js/crop/admin.php HTTP/1. ...
show more
[redacted] 85.203.47.52 - - [23/Feb/2026:18:20:44 +0100] "GET /wp-includes/js/crop/admin.php HTTP/1.1" 404 236 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:67.0) Gecko/20100101 Firefox/67.0"
[redacted] 85.203.47.52 - - [23/Feb/2026:18:20:45 +0100] "GET /wp-includes/PHPMailer/admin.php HTTP/1.1" 404 236 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/77.0.3865.90 Safari/537.36"
[redacted] 85.203.47.52 - - [23/Feb/2026:18:20:46 +0100] "GET /.well-known/pki-validation/admin.php HTTP/1.1" 404 236 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:77.0) Gecko/20100101 Firefox/77.0"
[redacted] 85.203.47.52 - - [23/Feb/2026:18:20:46 +0100] "GET /wp-includes/IXR/admin.php HTTP/1.1" 404 236 "-" "Mozilla/5.0 (Linux x86_64; rv:79.0) Gecko/20100101 Firefox/79.0"
[redacted] 85.203.47.52 - - [23/Feb/2026:18:20:46 +0100] "GET /wp-admin/js/index.php HTTP/1.1" 404 236 "-" "Mozilla/5.0 (Linux x86_64; rv:79.0) Gecko/201001
...
show less
Hacking
Web App Attack
๐ฌ๐ง
SilverZippo
2026-02-21 22:48:46
(3 months ago)
Web App Attack
Web App Attack
๐ฌ๐ง
poundawebsiteltd
2026-02-20 21:15:10
(3 months ago)
Apache 403 Forbidden Access. Evidence: [REDACTED_DOMAIN]:443 85.203.47.52 - - [20/Feb/2026:21:15:09 ...
show more
Apache 403 Forbidden Access. Evidence: [REDACTED_DOMAIN]:443 85.203.47.52 - - [20/Feb/2026:21:15:09 +0000] GET /wp-content/index.php HTTP/2.0 403 64 http://[REDACTED_DOMAIN]//wp-content/index.php Go-http-client/2.0
show less
Web App Attack