Sent around 85 unsuccessful malicious GET requests in 2m:53s via HTTP/1.1, including:
103.102.228 ...
show moreSent around 85 unsuccessful malicious GET requests in 2m:53s via HTTP/1.1, including:
103.102.228.216 [09/Jan/2024:20:40:43 +0000] GET "/about.php" HTTP/1.1 301
103.102.228.216 [09/Jan/2024:20:41:19 +0000] GET "/wp-content/upload.php" HTTP/1.1 301
103.102.228.216 [09/Jan/2024:20:41:21 +0000] GET "/wp-admin/includes/about.php" HTTP/1.1 301
103.102.228.216 [09/Jan/2024:20:41:45 +0000] GET "/wp-content/up.php" HTTP/1.1 301
103.102.228.216 [09/Jan/2024:20:42:53 +0000] GET "/Admin/uploads/" HTTP/1.1 301
103.102.228.216 [09/Jan/2024:20:43:38 +0000] GET "/wp-content/plugins/zaen/includes/" HTTP/1.1 301
show less
Proxy VPN IP making HEAD request via HTTP/1.1:
62.171.159.25 [29/Dec/2023:05:34:32 +0000] HEAD "/ ...
show moreProxy VPN IP making HEAD request via HTTP/1.1:
62.171.159.25 [29/Dec/2023:05:34:32 +0000] HEAD "/zm/index.php" HTTP/1.1 301
show less
Mass attack from script kiddie trying practically everything in the book, without success. Over 1500 ...
show moreMass attack from script kiddie trying practically everything in the book, without success. Over 1500 malicious GET requests plus brute force attacks.
show less
DDoS AttackHackingSQL InjectionBrute-ForceBad Web BotWeb App Attack
167.86.126.238 [08/Jan/2024:03:43:14 +0000] HEAD "/cmd.php?cmd=uname" HTTP/2.0 404
167.86.126.238 ...
show more167.86.126.238 [08/Jan/2024:03:43:14 +0000] HEAD "/cmd.php?cmd=uname" HTTP/2.0 404
167.86.126.238 [08/Jan/2024:03:43:16 +0000] HEAD "/uploads/cmd.php?cmd=which+bash" HTTP/2.0 404
show less
20.235.108.163 [07/Jan/2024:20:00:22 +0000] GET "/wp-content/themes/signify/firkon.php" HTTP/2.0 403 ...
show more20.235.108.163 [07/Jan/2024:20:00:22 +0000] GET "/wp-content/themes/signify/firkon.php" HTTP/2.0 403
20.235.108.163 [07/Jan/2024:20:00:23 +0000] GET "/wp-content/themes/mero-megazines/ws.php" HTTP/2.0 403
20.235.108.163 [07/Jan/2024:20:00:24 +0000] GET "/wp-content/plugins/envato-market/inc/class-envato-market-api.php" HTTP/2.0 403
20.235.108.163 [07/Jan/2024:20:00:26 +0000] GET "/radio.php" HTTP/2.0 403
show less
Proxy VPN IP which has once again sent my site several malicious GET requests via HTTP/1.1 which wer ...
show moreProxy VPN IP which has once again sent my site several malicious GET requests via HTTP/1.1 which were redirected to HTTP/2.0, including:
143.198.94.71 [07/Jan/2024:10:32:00 +0000] GET "/wp-includes/wlwmanifest.xml" HTTP/2.0 403
143.198.94.71 [07/Jan/2024:10:32:02 +0000] GET "/administrator/index.php" HTTP/2.0 403
143.198.94.71 [07/Jan/2024:10:32:04 +0000] GET "/view-source:" HTTP/2.0 403
show less
Multiple malicious GET requests including:
152.228.221.99 [06/Jan/2024:18:30:33 +0000] GET "/wp-j ...
show moreMultiple malicious GET requests including:
152.228.221.99 [06/Jan/2024:18:30:33 +0000] GET "/wp-json" HTTP/2.0 403
152.228.221.99 [06/Jan/2024:18:30:36 +0000] GET "/index.php?rest_route=/tdw" HTTP/2.0 404
152.228.221.99 [06/Jan/2024:18:30:36 +0000] GET "/wp-json/wpgmza/v1/markers" HTTP/2.0 403
152.228.221.99 [06/Jan/2024:18:30:37 +0000] GET "/?p=99" HTTP/2.0 404
show less
Brute force attempts plus multiple malicious GET requests including:
146.70.178.252 [06/Jan/2024: ...
show moreBrute force attempts plus multiple malicious GET requests including:
146.70.178.252 [06/Jan/2024:22:23:30 +0000] GET "/edit-comments.php" HTTP/1.1 301
146.70.178.252 [06/Jan/2024:22:23:31 +0000] GET "/upload.php" HTTP/1.1 301
146.70.178.252 [06/Jan/2024:22:23:32 +0000] GET "/wp-admin/users.php" HTTP/1.1 301
146.70.178.252 [06/Jan/2024:22:23:32 +0000] GET "/payout.php" HTTP/1.1 301
146.70.178.252 [06/Jan/2024:22:23:35 +0000] GET "/wp-admin/setup-config.php" HTTP/1.1 301
146.70.178.252 [06/Jan/2024:22:23:35 +0000] GET "/wp-l0gin.php" HTTP/1.1 301
146.70.178.252 [06/Jan/2024:22:23:38 +0000] GET "/Simple.php" HTTP/1.1 301
146.70.178.252 [06/Jan/2024:22:23:50 +0000] GET "/.well-known/pki-validation/ssl.php?xsec=blocker" HTTP/1.1 301
146.70.178.252 [06/Jan/2024:22:24:03 +0000] GET "/up/.well-known/" HTTP/1.1 301
show less
45.76.55.52 [06/Jan/2024:19:30:13 +0000] GET "/wp-login.php" HTTP/1.1 301
45.76.55.52 [06/Jan/202 ...
show more45.76.55.52 [06/Jan/2024:19:30:13 +0000] GET "/wp-login.php" HTTP/1.1 301
45.76.55.52 [06/Jan/2024:19:30:14 +0000] GET "/wp-login.php" HTTP/2.0 503
show less
Various unsuccessful attacks via HTTP/1.1 and HTTP/2.0 by GET and POST methods including:
5.250.1 ...
show moreVarious unsuccessful attacks via HTTP/1.1 and HTTP/2.0 by GET and POST methods including:
5.250.178.227 [06/Jan/2024:09:13:14 +0000] GET "/.env" HTTP/1.1 301
5.250.178.227 [06/Jan/2024:09:13:25 +0000] POST "/" HTTP/1.1 301
5.250.178.227 [06/Jan/2024:09:14:22 +0000] GET "/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php" HTTP/2.0 403
5.250.178.227 [06/Jan/2024:09:14:22 +0000] GET "/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php" HTTP/2.0 403
show less
Several malicious GET requests including:
179.61.219.65 [06/Jan/2024:05:51:27 +0000] GET "/wp-jso ...
show moreSeveral malicious GET requests including:
179.61.219.65 [06/Jan/2024:05:51:27 +0000] GET "/wp-json" HTTP/2.0 403
179.61.219.65 [06/Jan/2024:05:51:28 +0000] GET "/wp-json/wpgmza/v1/markers" HTTP/2.0 403
179.61.219.65 [06/Jan/2024:05:51:29 +0000] GET "/wp-json/wp/v2/posts" HTTP/2.0 403
179.61.219.65 [06/Jan/2024:05:51:30 +0000] GET "/?p=99" HTTP/2.0 404
show less
65.109.6.198 [05/Jan/2024:21:17:26 +0000] GET "/wp-content/plugins/backup-backup/readme.txt" HTTP/2. ...
show more65.109.6.198 [05/Jan/2024:21:17:26 +0000] GET "/wp-content/plugins/backup-backup/readme.txt" HTTP/2.0 404
show less
172.203.2.152 [05/Jan/2024:21:05:32 +0000] GET "/wp-admin/css/" HTTP/1.1 301
172.203.2.152 [05/Ja ...
show more172.203.2.152 [05/Jan/2024:21:05:32 +0000] GET "/wp-admin/css/" HTTP/1.1 301
172.203.2.152 [05/Jan/2024:21:05:41 +0000] GET "/wp-admin/css/" HTTP/2.0 403
show less
Brute force attacks plus around 300 malicious GET requests within 30 seconds including:
13.79.4.6 ...
show moreBrute force attacks plus around 300 malicious GET requests within 30 seconds including:
13.79.4.61 [05/Jan/2024:19:00:51 +0000] GET "/ovatools.php" HTTP/1.1 301
13.79.4.61 [05/Jan/2024:19:01:15 +0000] GET "/wp-includes/wp-includes/" HTTP/1.1 301
13.79.4.61 [05/Jan/2024:19:01:15 +0000] GET "/wp-includes/images/smilies/" HTTP/1.1 301
13.79.4.61 [05/Jan/2024:19:01:17 +0000] GET "/wp-content/plugins/zaen/includes/" HTTP/1.1 301
13.79.4.61 [05/Jan/2024:19:01:18 +0000] GET "/up/.well-known/" HTTP/1.1 301
show less
Multiple malicious GET requests, including:
38.60.191.202 [05/Jan/2024:15:48:48 +0000] GET "/.wel ...
show moreMultiple malicious GET requests, including:
38.60.191.202 [05/Jan/2024:15:48:48 +0000] GET "/.well-known/pki-validation/xmrlpc.php?p=" HTTP/2.0 404
38.60.191.202 [05/Jan/2024:15:48:47 +0000] GET "/wp-content/themes/pridmag/db.php?u" HTTP/2.0 404
38.60.191.202 [05/Jan/2024:15:48:45 +0000] GET "/alfa-rex2.php7" HTTP/2.0 404
38.60.191.202 [05/Jan/2024:15:48:42 +0000] GET "/ebs.php7" HTTP/2.0 404
show less
89.248.174.182 [05/Jan/2024:11:00:30 +0000] GET "/wp-content/plugins/td-composer/license.txt" HTTP/2 ...
show more89.248.174.182 [05/Jan/2024:11:00:30 +0000] GET "/wp-content/plugins/td-composer/license.txt" HTTP/2.0 404
show less
Attempt at unauthorised login:
93.47.117.143 [05/Jan/2024:08:53:10 +0000] GET "/wp-login.php" HTT ...
show moreAttempt at unauthorised login:
93.47.117.143 [05/Jan/2024:08:53:10 +0000] GET "/wp-login.php" HTTP/2.0 503
show less
Unsuccessful attempt at unauthorised login:
87.250.153.190 [05/Jan/2024:05:30:07 +0000] GET "/wp- ...
show moreUnsuccessful attempt at unauthorised login:
87.250.153.190 [05/Jan/2024:05:30:07 +0000] GET "/wp-login.php" HTTP/2.0 503
show less