๐ฉ๐ช
ghostwarriors
2026-07-27 02:20:29
(3 days ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
๐ฉ๐ช
yitzhaq
2026-07-27 02:16:43
(3 days ago)
91.124.88.103 - - [27/Jul/2026:04:16:36 +0200] "GET /wp-content/uploads/autodiagnosis.php HTTP/1.1" ...
show more
91.124.88.103 - - [27/Jul/2026:04:16:36 +0200] "GET /wp-content/uploads/autodiagnosis.php HTTP/1.1" 301 581 "-" "Mozilla/5.0 (Windows NT 6.3; Win64; x64; rv:73.0) Gecko/20100101 Firefox/73.0"
91.124.88.103 - - [27/Jul/2026:04:16:36 +0200] "GET /wp-content/plugins/all-in-one-wp-security-and-firewall/templates/wp.php HTTP/1.1" 301 651 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/84.0.4147.105 Safari/537.36"
91.124.88.103 - - [27/Jul/2026:04:16:36 +0200] "GET /wp-includes/nav-menu.php HTTP/1.1" 301 557 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3770.100 Safari/537.36"
91.124.88.103 - - [27/Jul/2026:04:16:37 +0200] "GET /wp-includes/css/dist/user.php HTTP/1.1" 301 567 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:72.0) Gecko/20100101 Firefox/72.0"
91.124.88.103 - - [27/Jul/2026:04:16:37 +0200] "GET /wp-content/plugins/pwnd/file-js.php HTTP/1.1" 301 579 "-" "Mozilla/5.0 (Windows
show less
Web App Attack
Brute-Force
๐น๐ท
neron
2026-07-25 06:27:07
(5 days ago)
CrowdSec blocked: http:exploit detected via OPNsense firewall
Hacking
Web App Attack
๐ซ๐ท
Octopuce
2026-07-23 19:46:24
(6 days ago)
Aggressive web search of vulnerable pages: /wp-content/languages/index.php /wp-includes/js/dist/defa ...
show more
Aggressive web search of vulnerable pages: /wp-content/languages/index.php /wp-includes/js/dist/default.php /wp-admin/css/colors/tfileman.php / ...
show less
Web App Attack
๐บ๐ธ
IndigoRidge
2026-07-21 00:27:51
(1 week ago)
91.124.88.103 - - [20/Jul/2026:20:26:32 -0400] "GET /test.php HTTP/1.1" 301 162 "-" "Go-http-client/ ...
show more
91.124.88.103 - - [20/Jul/2026:20:26:32 -0400] "GET /test.php HTTP/1.1" 301 162 "-" "Go-http-client/1.1"
91.124.88.103 - - [20/Jul/2026:20:26:39 -0400] "GET /wso.php HTTP/1.1" 301 162 "-" "Go-http-client/1.1"
91.124.88.103 - - [20/Jul/2026:20:27:51 -0400] "GET /info.php HTTP/1.1" 301 162 "-" "Go-http-client/1.1"
...
show less
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-07-18 04:18:38
(1 week ago)
Wordpress malicious attack:[octaflood]
Web App Attack
๐ซ๐ท
Octopuce
2026-07-07 12:11:47
(3 weeks ago)
Aggressive web search of vulnerable pages: /wp-content/themes/theme-check/main.php /alfa.php /templa ...
show more
Aggressive web search of vulnerable pages: /wp-content/themes/theme-check/main.php /alfa.php /templates/cassiopeia/error.php /wp-admin/includes ...
show less
Web App Attack
๐ฉ๐ช
Vegascosmetics
2026-06-24 08:22:06
(1 month ago)
(Kingcopy.org-AI-IDS-Report):IP automatically blocked after attack pattern. Vegas Security
Hacking
Web App Attack
๐ช๐ธ
masterguru
2026-06-24 07:57:48
(1 month ago)
BAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (110 ...
show more
BAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (1100000-122)
show less
Bad Web Bot
๐บ๐ฆ
URAN Publishing Service
2026-05-04 15:33:33
(2 months ago)
91.124.88.103 - - [04/May/2026:18:33:32 +0300] "GET /wp-content/plugins/elementor/wp-wjvngrh.php HTT ...
show more
91.124.88.103 - - [04/May/2026:18:33:32 +0300] "GET /wp-content/plugins/elementor/wp-wjvngrh.php HTTP/1.1" 404 706 "-" "Mozilla/5.0 (X11; Linux i686; rv:79.0) Gecko/20100101 Firefox/79.0"
91.124.88.103 - - [04/May/2026:18:33:33 +0300] "GET /wp-includes/IXR/fix.php7 HTTP/1.1" 404 706 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/77.0.3865.90 Safari/537.36"
...
show less
Web App Attack
๐บ๐ธ
mnsf
2026-04-26 14:05:06
(3 months ago)
Too many Status 40X (11)
Brute-Force
Web App Attack
๐จ๐ฟ
ddw
2026-04-26 10:09:47
(3 months ago)
Access Violation Attempts - Multiple 403 Forbidden responses.
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
mw
2026-04-25 00:01:04
(3 months ago)
GET /wp-admin/shell20211028.php HTTP/1.1
Web App Attack
๐ซ๐ท
dynamix
2026-04-24 17:28:19
(3 months ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-19 17:15:14
(3 months ago)
(mod_security) mod_security (id:240000) triggered by 91.124.88.103 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240000) triggered by 91.124.88.103 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 19 13:15:09.871925 2026] [security2:error] [pid 525114:tid 525114] [client 91.124.88.103:62929] ModSecurity: Access denied with code 403 (phase 2). String match ".php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/24_Apps_Joomla.conf"] [line "74"] [id "240000"] [rev "1"] [msg "COMODO WAF: Protecting Joomla folder||desertvacationvillas.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Joomla"] [hostname "desertvacationvillas.com"] [uri "/images/stories/themes.php"] [unique_id "aeUNnUdOP4xkMpCT4eT49QAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack