Tha_14
2024-12-12 07:32:08
(10 hours ago)
Multiple erroneous requests
Web App Attack
openstrike.co.uk
2024-12-11 06:12:34
(1 day ago)
3 attacks on Alfa URLs, PHP URLs:
POST /alfacgiapi/perl.alfa HTTP/1.1
POST /wp-plain.php ... show more 3 attacks on Alfa URLs, PHP URLs:
POST /alfacgiapi/perl.alfa HTTP/1.1
POST /wp-plain.php HTTP/1.1 show less
Hacking
Web App Attack
jasperedv.de
2024-12-10 22:19:57
(1 day ago)
Apache Login - Brutforcing
Brute-Force
Web App Attack
spyra.rocks
2024-12-10 22:01:34
(1 day ago)
WordPress
Web App Attack
Swiptly
2024-12-10 19:24:17
(1 day ago)
Multiple critical ModSecurity events
...
Web Spam
Bad Web Bot
insightdiabetes.com
2024-12-10 16:49:34
(2 days ago)
IP reported by Wordfence
Brute-Force
SSH
RLDD
2024-12-10 16:13:27
(2 days ago)
WP probing -fro
Web App Attack
LRob.fr
2024-12-10 11:45:07
(2 days ago)
Repeated 403 errors, blocked by Fail2ban in custom-403 jail
Bad Web Bot
paulshipley.com.au
2024-12-10 11:12:54
(2 days ago)
levellapromotions.com.au:443 87.120.126.42 - - [10/Dec/2024:22:12:42 +1100] "GET /wp-content/themes/ ... show more levellapromotions.com.au:443 87.120.126.42 - - [10/Dec/2024:22:12:42 +1100] "GET /wp-content/themes/seotheme/db.php?u HTTP/1.1" 403 4677 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36"
levellapromotions.com.au:443 87.120.126.42 - - [10/Dec/2024:22:12:42 +1100] "POST /wp-plain.php HTTP/1.1" 404 145666 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36"
levellapromotions.com.au:443 87.120.126.42 - - [10/Dec/2024:22:12:42 +1100] "POST /ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 404 146357 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36"
levellapromotions.com.au:443 87.120.126.42 - - [10/Dec/2024:22:12:44 +1100] "GET /wp-content/pl
... show less
Web App Attack
Anonymous
2024-12-10 10:48:38
(2 days ago)
Scenario: crowdsecurity/http-bad-user-agent
Bad Web Bot
Rizzy
2024-12-10 10:37:48
(2 days ago)
Multiple WAF Violations
Brute-Force
Web App Attack
psauxit
2024-12-10 08:38:24
(2 days ago)
Fail2Ban - NGINX heavily bad-bot, possible vulnerability scanning and excessive crawling/scraping
Web Spam
Hacking
Bad Web Bot
Web App Attack
Ba-Yu
2024-12-10 07:56:30
(2 days ago)
General hacking/exploits/scanning
Web Spam
Hacking
Brute-Force
Exploited Host
Web App Attack
clapper
2024-12-10 06:13:02
(2 days ago)
(mod_security) mod_security (id:980001) triggered by 87.120.126.42 (BG/Bulgaria/-): 5 in the last 36 ... show more (mod_security) mod_security (id:980001) triggered by 87.120.126.42 (BG/Bulgaria/-): 5 in the last 3600 secs; ID: rub show less
Brute-Force
Bad Web Bot
paulshipley.com.au
2024-12-10 05:16:28
(2 days ago)
iaki.com.au:443 87.120.126.42 - - [10/Dec/2024:16:16:14 +1100] "GET /wp-content/themes/seotheme/db.p ... show more iaki.com.au:443 87.120.126.42 - - [10/Dec/2024:16:16:14 +1100] "GET /wp-content/themes/seotheme/db.php?u HTTP/1.1" 404 55776 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36"
iaki.com.au:443 87.120.126.42 - - [10/Dec/2024:16:16:14 +1100] "POST /wp-plain.php HTTP/1.1" 404 55661 "www.google.com" "Mozilla/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36"
iaki.com.au:443 87.120.126.42 - - [10/Dec/2024:16:16:14 +1100] "POST /ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 404 55704 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36"
iaki.com.au:443 87.120.126.42 - - [10/Dec/2024:16:16:15 +1100] "GET /wp-content/plugins/apikey/apikey.php?test=hello HTTP/1.1" 404 5172
... show less
Web App Attack