πΊπΈ
34.136.131.195
58 seconds ago
(wp_fingerprint) REGOLA 6 - WP Exploit Attempt xmlrpc 34.136.131.195 (US/United States/195.131.136.3 ...
show more
(wp_fingerprint) REGOLA 6 - WP Exploit Attempt xmlrpc 34.136.131.195 (US/United States/195.131.136.34.bc.googleusercontent.com): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 34.136.131.195 - - [20/Jul/2026:09:33:10 +0200] "GET //wp-json/wp/v2/users/ HTTP/2.0" 500 711 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" "34.136.131.195" host=digiampaolosrl.it
show less
Port Scan
π¬π§
45.86.203.124
13 minutes ago
(backdoor_scan) REGOLA 7 - Backdoor Scan Attempt 45.86.203.124 (GB/United Kingdom/-): 1 in the last ...
show more
(backdoor_scan) REGOLA 7 - Backdoor Scan Attempt 45.86.203.124 (GB/United Kingdom/-): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 45.86.203.124 - - [20/Jul/2026:09:20:38 +0200] "GET /bless.php HTTP/2.0" 301 0 "http://marialauracaselli.com/bless.php#888xyz999" "Go-http-client/2.0" "45.86.203.124" host=marialauracaselli.com
show less
Port Scan
π¬π§
45.86.203.10
13 minutes ago
(backdoor_scan) REGOLA 7 - Backdoor Scan Attempt 45.86.203.10 (GB/United Kingdom/-): 1 in the last 3 ...
show more
(backdoor_scan) REGOLA 7 - Backdoor Scan Attempt 45.86.203.10 (GB/United Kingdom/-): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 45.86.203.10 - - [20/Jul/2026:09:20:38 +0200] "GET /bless.php HTTP/2.0" 404 5377 "https://marialauracaselli.com/bless.php" "Go-http-client/2.0" "45.86.203.10" host=www.marialauracaselli.com
show less
Port Scan
πΊπΈ
216.244.66.196
14 minutes ago
(junkbot) REGOLA 8 - Junk Bot Blocked 216.244.66.196 (US/United States/-): 1 in the last 3600 secs; ...
show more
(junkbot) REGOLA 8 - Junk Bot Blocked 216.244.66.196 (US/United States/-): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 216.244.66.196 - - [20/Jul/2026:09:19:53 +0200] "GET /wp-content/uploads/2020/01/POLITICA-AZIENDALE-COIET-2020.pdf HTTP/1.1" 301 329 "-" "Mozilla/5.0 (compatible; DotBot/1.2; +https://opensiteexplorer.org/dotbot; [email protected] )" "216.244.66.196" host=www.coiet.it
show less
Port Scan
π©πͺ
147.90.209.88
22 minutes ago
(backdoor_scan) REGOLA 7 - Backdoor Scan Attempt 147.90.209.88 (DE/Germany/-): 1 in the last 3600 se ...
show more
(backdoor_scan) REGOLA 7 - Backdoor Scan Attempt 147.90.209.88 (DE/Germany/-): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 147.90.209.88 - - [20/Jul/2026:09:11:13 +0200] "GET /wp-content/themes/seotheme/db.php?u HTTP/2.0" 404 17494 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" "147.90.209.88" host=olscitaly.com
show less
Port Scan
π¨π¦
20.151.105.107
24 minutes ago
(aggressive_scanner) REGOLA 9 - Aggressive Web Scanner 20.151.105.107 (CA/Canada/-): 1 in the last 3 ...
show more
(aggressive_scanner) REGOLA 9 - Aggressive Web Scanner 20.151.105.107 (CA/Canada/-): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 20.151.105.107 - - [20/Jul/2026:09:09:13 +0200] "GET /wp-content/plugins/hellopress/wp_filemanager.php HTTP/1.1" 301 324 "-" "-" "-" host=mediaqualitylab.com
show less
Port Scan
πΊπΈ
216.244.66.194
27 minutes ago
(junkbot) REGOLA 8 - Junk Bot Blocked 216.244.66.194 (US/United States/-): 1 in the last 3600 secs; ...
show more
(junkbot) REGOLA 8 - Junk Bot Blocked 216.244.66.194 (US/United States/-): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 216.244.66.194 - - [20/Jul/2026:09:07:09 +0200] "GET / HTTP/2.0" 200 267 "-" "Mozilla/5.0 (compatible; DotBot/1.2; +https://opensiteexplorer.org/dotbot; [email protected] )" "216.244.66.194" host=archivio.liverpoolitalia.it
show less
Port Scan
π¨π¦
4.204.201.85
27 minutes ago
(aggressive_scanner) REGOLA 9 - Aggressive Web Scanner 4.204.201.85 (CA/Canada/-): 1 in the last 360 ...
show more
(aggressive_scanner) REGOLA 9 - Aggressive Web Scanner 4.204.201.85 (CA/Canada/-): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 4.204.201.85 - - [20/Jul/2026:09:07:08 +0200] "GET /wp-content/plugins/hellopress/wp_filemanager.php HTTP/1.1" 404 149818 "-" "-" "-" host=blogdigiovanni.it
show less
Port Scan
πΊπΈ
216.244.66.249
27 minutes ago
(junkbot) REGOLA 8 - Junk Bot Blocked 216.244.66.249 (US/United States/-): 1 in the last 3600 secs; ...
show more
(junkbot) REGOLA 8 - Junk Bot Blocked 216.244.66.249 (US/United States/-): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 216.244.66.249 - - [20/Jul/2026:09:06:27 +0200] "GET /2026/04/10/per-orgoglio-e-classifica/ HTTP/2.0" 200 26380 "-" "Mozilla/5.0 (compatible; DotBot/1.2; +https://opensiteexplorer.org/dotbot; [email protected] )" "216.244.66.249" host=olscitaly.com
show less
Port Scan
π©πͺ
64.89.163.68
31 minutes ago
(backdoor_scan) REGOLA 7 - Backdoor Scan Attempt 64.89.163.68 (US/United States/-): 1 in the last 36 ...
show more
(backdoor_scan) REGOLA 7 - Backdoor Scan Attempt 64.89.163.68 (US/United States/-): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 64.89.163.68 - - [20/Jul/2026:09:02:49 +0200] "GET /wp-content/themes/seotheme/db.php?u HTTP/2.0" 404 10047 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" "64.89.163.68" host=notaiopanella.it
show less
Port Scan
π©πͺ
185.242.3.25
33 minutes ago
(backdoor_scan) REGOLA 7 - Backdoor Scan Attempt 185.242.3.25 (-): 1 in the last 3600 secs; Ports: * ...
show more
(backdoor_scan) REGOLA 7 - Backdoor Scan Attempt 185.242.3.25 (-): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 185.242.3.25 - - [20/Jul/2026:09:00:55 +0200] "GET /wp-content/themes/seotheme/db.php?u HTTP/1.1" 301 313 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" "185.242.3.25" host=lasfiziosapizzeria.it
show less
Port Scan
πΊπΈ
64.225.23.86
34 minutes ago
(wp_login) REGOLA 1 - WP Login Attack 64.225.23.86 (US/United States/-): 5 in the last 3600 secs; Po ...
show more
(wp_login) REGOLA 1 - WP Login Attack 64.225.23.86 (US/United States/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 64.225.23.86 - - [20/Jul/2026:08:04:04 +0200] "POST /wp-login.php HTTP/1.1" 200 9240 "-" "Mozilla/5.0" "-" host=accademiam.com
64.225.23.86 - - [20/Jul/2026:08:17:13 +0200] "POST /wp-login.php HTTP/1.1" 200 9240 "-" "Mozilla/5.0" "-" host=accademiam.com
64.225.23.86 - - [20/Jul/2026:08:31:15 +0200] "POST /wp-login.php HTTP/1.1" 200 9240 "-" "Mozilla/5.0" "-" host=accademiam.com
64.225.23.86 - - [20/Jul/2026:08:45:22 +0200] "POST /wp-login.php HTTP/1.1" 200 9240 "-" "Mozilla/5.0" "-" host=accademiam.com
64.225.23.86 - - [20/Jul/2026:08:59:23 +0200] "POST /wp-login.php HTTP/1.1" 200 9240 "-" "Mozilla/5.0" "-" host=accademiam.com
show less
Port Scan
πͺπΈ
158.173.210.111
38 minutes ago
(backdoor_scan) REGOLA 7 - Backdoor Scan Attempt 158.173.210.111 (ES/Spain/-): 1 in the last 3600 se ...
show more
(backdoor_scan) REGOLA 7 - Backdoor Scan Attempt 158.173.210.111 (ES/Spain/-): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 158.173.210.111 - - [20/Jul/2026:08:55:13 +0200] "GET /wp-content/themes/pridmag/db.php?u HTTP/1.1" 404 53086 "http://confartigianato.pe.it/wp-content/themes/pridmag/db.php?u" "Go-http-client/1.1" "-" host=www.confartigianato.pe.it
show less
Port Scan
πͺπΈ
158.173.210.248
38 minutes ago
(backdoor_scan) REGOLA 7 - Backdoor Scan Attempt 158.173.210.248 (ES/Spain/-): 1 in the last 3600 se ...
show more
(backdoor_scan) REGOLA 7 - Backdoor Scan Attempt 158.173.210.248 (ES/Spain/-): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 158.173.210.248 - - [20/Jul/2026:08:55:12 +0200] "GET /wp-content/themes/pridmag/db.php?u HTTP/1.1" 301 0 "-" "Go-http-client/1.1" "-" host=confartigianato.pe.it
show less
Port Scan
πΈπ¬
4.194.24.143
39 minutes ago
(backdoor_scan) REGOLA 7 - Backdoor Scan Attempt 4.194.24.143 (SG/Singapore/-): 1 in the last 3600 s ...
show more
(backdoor_scan) REGOLA 7 - Backdoor Scan Attempt 4.194.24.143 (SG/Singapore/-): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 4.194.24.143 - - [20/Jul/2026:08:54:15 +0200] "GET /shell.php HTTP/2.0" 404 14582 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36" "4.194.24.143" host=villapardi.it
show less
Port Scan
π©πͺ
185.242.3.189
40 minutes ago
(backdoor_scan) REGOLA 7 - Backdoor Scan Attempt 185.242.3.189 (-): 1 in the last 3600 secs; Ports: ...
show more
(backdoor_scan) REGOLA 7 - Backdoor Scan Attempt 185.242.3.189 (-): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 185.242.3.189 - - [20/Jul/2026:08:53:59 +0200] "GET /wp-content/themes/seotheme/db.php?u HTTP/2.0" 404 10048 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" "185.242.3.189" host=notaiopanella.it
show less
Port Scan
π©πͺ
138.68.76.28
42 minutes ago
(wp_login) REGOLA 1 - WP Login Attack 138.68.76.28 (DE/Germany/-): 5 in the last 3600 secs; Ports: * ...
show more
(wp_login) REGOLA 1 - WP Login Attack 138.68.76.28 (DE/Germany/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 138.68.76.28 - - [20/Jul/2026:08:19:34 +0200] "POST /wp-login.php HTTP/1.1" 200 10007 "-" "Mozilla/5.0" "-" host=sensationart.it.accademiam.com
138.68.76.28 - - [20/Jul/2026:08:27:24 +0200] "POST /wp-login.php HTTP/1.1" 200 10007 "-" "Mozilla/5.0" "-" host=sensationart.it.accademiam.com
138.68.76.28 - - [20/Jul/2026:08:35:20 +0200] "POST /wp-login.php HTTP/1.1" 200 10007 "-" "Mozilla/5.0" "-" host=sensationart.it.accademiam.com
138.68.76.28 - - [20/Jul/2026:08:43:39 +0200] "POST /wp-login.php HTTP/1.1" 200 10007 "-" "Mozilla/5.0" "-" host=sensationart.it.accademiam.com
138.68.76.28 - - [20/Jul/2026:08:52:06 +0200] "POST /wp-login.php HTTP/1.1" 200 10007 "-" "Mozilla/5.0" "-" host=sensationart.it.accademiam.com
show less
Port Scan
π¨π¦
4.204.201.85
45 minutes ago
(aggressive_scanner) REGOLA 9 - Aggressive Web Scanner 4.204.201.85 (CA/Canada/-): 1 in the last 360 ...
show more
(aggressive_scanner) REGOLA 9 - Aggressive Web Scanner 4.204.201.85 (CA/Canada/-): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 4.204.201.85 - - [20/Jul/2026:08:48:33 +0200] "GET /wp-content/plugins/hellopress/wp_filemanager.php HTTP/1.1" 301 321 "-" "-" "-" host=mail.gessoart.it
show less
Port Scan
π³π±
183.81.169.76
45 minutes ago
(backdoor_scan) REGOLA 7 - Backdoor Scan Attempt 183.81.169.76 (-): 1 in the last 3600 secs; Ports: ...
show more
(backdoor_scan) REGOLA 7 - Backdoor Scan Attempt 183.81.169.76 (-): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 183.81.169.76 - - [20/Jul/2026:08:48:11 +0200] "GET /installer-backup.php HTTP/2.0" 301 0 "-" "Mozilla/5.0 (X11; Fedora; Linux x86_64; rv:148.0) Gecko/20100101 Firefox/148.0" "183.81.169.76" host=marialauracaselli.com
show less
Port Scan
π©πͺ
43.228.157.75
49 minutes ago
(backdoor_scan) REGOLA 7 - Backdoor Scan Attempt 43.228.157.75 (PK/Pakistan/-): 1 in the last 3600 s ...
show more
(backdoor_scan) REGOLA 7 - Backdoor Scan Attempt 43.228.157.75 (PK/Pakistan/-): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 43.228.157.75 - - [20/Jul/2026:08:44:19 +0200] "GET /wp-content/themes/seotheme/db.php?u HTTP/2.0" 404 8259 "www.google.com" "Mozlila/5.0 (Linux; Android 7.0; SM-G892A Bulid/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Moblie Safari/537.36" "43.228.157.75" host=www.francescadandrea.com
show less
Port Scan
πΊπΈ
216.73.216.110
50 minutes ago
(junkbot) REGOLA 8 - Junk Bot Blocked 216.73.216.110 (US/United States/-): 1 in the last 3600 secs; ...
show more
(junkbot) REGOLA 8 - Junk Bot Blocked 216.73.216.110 (US/United States/-): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 216.73.216.110 - - [20/Jul/2026:08:44:06 +0200] "GET /sitemap.xml HTTP/2.0" 200 1232 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; [email protected] )" "216.73.216.110" host=www.insegnesolution.it
show less
Port Scan
π¬π§
35.197.195.186
51 minutes ago
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 35.197.195.186 (GB/United Kingdom/186.19 ...
show more
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 35.197.195.186 (GB/United Kingdom/186.195.197.35.bc.googleusercontent.com): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 35.197.195.186 - - [20/Jul/2026:08:42:36 +0200] "GET /.aws/credentials HTTP/2.0" 404 7583 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; MistralAI-User/1.0" "35.197.195.186" host=abruzzotour.it
show less
Port Scan
πΈπ¬
101.47.13.192
52 minutes ago
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 101.47.13.192 (SG/Singapore/-): 1 in the ...
show more
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 101.47.13.192 (SG/Singapore/-): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 101.47.13.192 - - [20/Jul/2026:08:42:06 +0200] "GET /secrets.json HTTP/2.0" 404 10912 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 Chrome/120.0.0.0 Safari/537.36" "101.47.13.192" host=www.consorzioaet.it
show less
Port Scan
πΊπΈ
34.139.13.95
57 minutes ago
(nginx_hardened) REGOLA 3 - Nginx Hardening Triggered 34.139.13.95 (US/United States/95.13.139.34.bc ...
show more
(nginx_hardened) REGOLA 3 - Nginx Hardening Triggered 34.139.13.95 (US/United States/95.13.139.34.bc.googleusercontent.com): 3 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 34.139.13.95 - - [20/Jul/2026:08:02:34 +0200] "GET //xmlrpc.php?rsd HTTP/1.1" 403 548 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36" "-" host=emmeccipubblicita.it
34.139.13.95 - - [20/Jul/2026:08:02:35 +0200] "GET //xmlrpc.php?rsd HTTP/1.1" 403 548 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36" "-" host=emmeccisolution.it
2026/07/20 08:36:48 [error] 3987268#3987268: *838264 access forbidden by rule, client: 34.139.13.95, server: etag.it, request: "GET //xmlrpc.php?rsd HTTP/1.1", host: "etag.it"
show less
Port Scan
π©πͺ
64.226.124.225
58 minutes ago
(wp_login) REGOLA 1 - WP Login Attack 64.226.124.225 (DE/Germany/-): 5 in the last 3600 secs; Ports: ...
show more
(wp_login) REGOLA 1 - WP Login Attack 64.226.124.225 (DE/Germany/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 64.226.124.225 - - [20/Jul/2026:07:58:39 +0200] "POST /wp-login.php HTTP/1.1" 200 9992 "-" "Mozilla/5.0" "-" host=sensationart.it
64.226.124.225 - - [20/Jul/2026:08:07:52 +0200] "POST /wp-login.php HTTP/1.1" 200 9992 "-" "Mozilla/5.0" "-" host=sensationart.it
64.226.124.225 - - [20/Jul/2026:08:17:06 +0200] "POST /wp-login.php HTTP/1.1" 200 9992 "-" "Mozilla/5.0" "-" host=sensationart.it
64.226.124.225 - - [20/Jul/2026:08:26:26 +0200] "POST /wp-login.php HTTP/1.1" 200 9992 "-" "Mozilla/5.0" "-" host=sensationart.it
64.226.124.225 - - [20/Jul/2026:08:36:09 +0200] "POST /wp-login.php HTTP/1.1" 200 9992 "-" "Mozilla/5.0" "-" host=sensationart.it
show less
Port Scan