Tried one malicious GET request using HTTP/1.1 and got a 301 response: 20.38.41.217 [02/Jan/2024:06: ...
show moreTried one malicious GET request using HTTP/1.1 and got a 301 response: 20.38.41.217 [02/Jan/2024:06:25:07 +0000] GET "/wp-content/themes/intense/block-css.php?mode=upload" HTTP/1.1 301
Came back 6 hours later & tried the same plus other unsuccessful and malicious GET requests including:
20.38.41.217 [02/Jan/2024:12:33:19 +0000] GET "/wp-content/themes/intense/block-css.php?mode=upload" HTTP/1.1 301
20.38.41.217 [02/Jan/2024:12:34:51 +0000] GET "/libraries/legacy/updates.php" HTTP/2.0 403
20.38.41.217 [02/Jan/2024:12:34:52 +0000] GET "/libraries/phpmailer/updates.php" HTTP/2.0 403
20.38.41.217 [02/Jan/2024:12:35:09 +0000] GET "/wp-admin/repeater.php" HTTP/2.0 403
20.38.41.217 [02/Jan/2024:12:35:16 +0000] GET "/yanz.php" HTTP/2.0 403
20.38.41.217 [02/Jan/2024:12:34:51 +0000] GET "/libraries/legacy/updates.php" HTTP/2.0 403
show less
Multiple malicious GET requests including:
128.199.99.169 [01/Jan/2024:18:14:00 +0000] GET "/admi ...
show moreMultiple malicious GET requests including:
128.199.99.169 [01/Jan/2024:18:14:00 +0000] GET "/administrator/index.php" HTTP/2.0 403
128.199.99.169 [01/Jan/2024:18:14:01 +0000] GET "/view-source:" HTTP/2.0 403
128.199.99.169 [01/Jan/2024:18:14:03 +0000] GET "/misc/ajax.js" HTTP/2.0 403
show less
146.190.89.229 [01/Jan/2024:16:04:57 +0000] GET "/ajax-actions.php" HTTP/2.0 404
146.190.89.229 ...
show more146.190.89.229 [01/Jan/2024:16:04:57 +0000] GET "/ajax-actions.php" HTTP/2.0 404
146.190.89.229 [01/Jan/2024:16:05:05 +0000] GET "/adminfuns.php7" HTTP/2.0 404
146.190.89.229 [01/Jan/2024:16:05:22 +0000] GET "/wp-admin/xmrlpc.php?p=" HTTP/2.0 404
show less
51.103.223.226 [01/Jan/2024:14:08:30 +0000] POST "/" HTTP/1.1 301
51.103.223.226 [01/Jan/2024:14: ...
show more51.103.223.226 [01/Jan/2024:14:08:30 +0000] POST "/" HTTP/1.1 301
51.103.223.226 [01/Jan/2024:14:08:28 +0000] POST "/" HTTP/1.1 301
show less
Attempt at Anonymous Fox hack:
2.58.113.194 [01/Jan/2024:13:19:17 +0000] GET "/uughwlqj.php?Fox=d ...
show moreAttempt at Anonymous Fox hack:
2.58.113.194 [01/Jan/2024:13:19:17 +0000] GET "/uughwlqj.php?Fox=d3wL7" HTTP/1.1 301
show less
103.144.170.128 [01/Jan/2024:07:35:57 +0000] GET "/sftp-config.json" HTTP/2.0 403
103.144.170.128 ...
show more103.144.170.128 [01/Jan/2024:07:35:57 +0000] GET "/sftp-config.json" HTTP/2.0 403
103.144.170.128 [01/Jan/2024:07:35:58 +0000] GET "/.vscode/sftp.json" HTTP/1.1 301
show less
Multiple malicious GET requests aimed at PHP resources including repeated attempts to secure unautho ...
show moreMultiple malicious GET requests aimed at PHP resources including repeated attempts to secure unauthorised login:
78.138.0.236 [01/Jan/2024:05:01:59 +0000] GET "/Hhhknt-an9awlbkhhh.php" HTTP/1.1 301
78.138.0.236 [01/Jan/2024:05:02:02 +0000] GET "/license.php" HTTP/1.1 301
78.138.0.236 [01/Jan/2024:05:02:04 +0000] GET "/adminer.php" HTTP/1.1 301
78.138.0.236 [01/Jan/2024:05:02:12 +0000] GET "/beence.php" HTTP/1.1 301
78.138.0.236 [01/Jan/2024:05:02:15 +0000] GET "/wp_filemanager.php" HTTP/1.1 301
78.138.0.236 [01/Jan/2024:05:02:18 +0000] GET "/wp-login.php" HTTP/1.1 301
78.138.0.236 [01/Jan/2024:05:02:41 +0000] GET "/wp-login.php" HTTP/1.1 301
78.138.0.236 [01/Jan/2024:05:03:12 +0000] GET "/wp-login.php" HTTP/1.1 301
show less
Returned to site after 10 hours & tried the same unsuccessful exploit with exactly the same resultโฆ ...
show moreReturned to site after 10 hours & tried the same unsuccessful exploit with exactly the same resultโฆ
193.32.162.17 [31/Dec/2023:19:20:51 +0000] GET "/.env" HTTP/1.1 301
show less
128.199.199.100 [31/Dec/2023:13:13:47 +0000] GET "/assets/plugins/filemanager/dialog.php" HTTP/2.0 4 ...
show more128.199.199.100 [31/Dec/2023:13:13:47 +0000] GET "/assets/plugins/filemanager/dialog.php" HTTP/2.0 404
128.199.199.100 [31/Dec/2023:13:13:48 +0000] GET "/assets/filemanager/dialog.php" HTTP/2.0 404
show less
Multiple malicious GET requests including:
146.190.98.197 [31/Dec/2023:10:58:00 +0000] GET "/admi ...
show moreMultiple malicious GET requests including:
146.190.98.197 [31/Dec/2023:10:58:00 +0000] GET "/administrator/index.php" HTTP/2.0 403
146.190.98.197 [31/Dec/2023:10:57:56 +0000] GET "/wp-includes/wlwmanifest.xml" HTTP/2.0 403
show less
Brute force attempts in the form of HEAD Flood attack comprised of over 360 malicious HEAD requests ...
show moreBrute force attempts in the form of HEAD Flood attack comprised of over 360 malicious HEAD requests within 90 seconds, including:
1.1.220.150 [30/Dec/2023:20:24:42 +0000] HEAD "/wordpress" HTTP/2.0 404
1.1.220.150 [30/Dec/2023:20:24:47 +0000] HEAD "/Old" HTTP/2.0 404
1.1.220.150 [30/Dec/2023:20:24:48 +0000] HEAD "/oldsite" HTTP/2.0 404
1.1.220.150 [30/Dec/2023:20:24:54 +0000] HEAD "/backup" HTTP/2.0 404
1.1.220.150 [30/Dec/2023:20:24:57 +0000] HEAD "/demo" HTTP/2.0 404
1.1.220.150 [30/Dec/2023:20:25:05 +0000] HEAD "/shop" HTTP/2.0 404
show less
Trying to hack a plugin that I donโt even have:
85.187.128.61 [30/Dec/2023:13:08:56 +0000] GET "/ ...
show moreTrying to hack a plugin that I donโt even have:
85.187.128.61 [30/Dec/2023:13:08:56 +0000] GET "/dup-installer/main.installer.php" HTTP/2.0 404
show less
Brute force plus malicious GET requests including:
188.166.214.84 [30/Dec/2023:09:17:33 +0000] GE ...
show moreBrute force plus malicious GET requests including:
188.166.214.84 [30/Dec/2023:09:17:33 +0000] GET "/wp-includes/wlwmanifest.xml" HTTP/2.0 403
188.166.214.84 [30/Dec/2023:09:17:49 +0000] GET "/misc/ajax.js" HTTP/2.0 403
show less
91.92.245.56 [29/Dec/2023:21:56:55 +0000] GET "/?author=1" HTTP/2.0 403
91.92.245.56 [29/Dec/2023 ...
show more91.92.245.56 [29/Dec/2023:21:56:55 +0000] GET "/?author=1" HTTP/2.0 403
91.92.245.56 [29/Dec/2023:21:56:35 +0000] GET "/wp-json/wp/v2/users/1" HTTP/2.0 403
show less
Attempts to hack PHP resources:
45.33.127.178 [29/Dec/2023:16:49:51 +0000] GET "/wp-head.php" HTT ...
show moreAttempts to hack PHP resources:
45.33.127.178 [29/Dec/2023:16:49:51 +0000] GET "/wp-head.php" HTTP/2.0 404
45.33.127.178 [29/Dec/2023:16:49:54 +0000] GET "/radio.php" HTTP/2.0 404
show less
Brute force attempts plus multiple malicious GET requests including:
41.220.18.86 [29/Dec/2023:13 ...
show moreBrute force attempts plus multiple malicious GET requests including:
41.220.18.86 [29/Dec/2023:13:32:51 +0000] GET "/phpmyadmin/" HTTP/2.0 444
41.220.18.86 [29/Dec/2023:13:32:58 +0000] GET "/admin" HTTP/2.0 444
41.220.18.86 [29/Dec/2023:13:32:59 +0000] GET "/admin/" HTTP/2.0 444
show less
Proxy VPN IP trying to exploit, via HTTP/1.1, a presumed vulnerability in Zoneminder, which I do not ...
show moreProxy VPN IP trying to exploit, via HTTP/1.1, a presumed vulnerability in Zoneminder, which I do not use (likewise the server type it usually goes with):
62.171.159.25 [29/Dec/2023:05:34:32 +0000] HEAD "/zm/index.php" HTTP/1.1 301
show less
Brute force attempts plus multiple malicious GET requests mostly targetting PHP resources including: ...
show moreBrute force attempts plus multiple malicious GET requests mostly targetting PHP resources including:
172.203.178.94 [28/Dec/2023:22:07:55 +0000] GET "/wp-content/plugins/envato-market/inc/class-envato-market-api.php" HTTP/2.0 404
172.203.178.94 [28/Dec/2023:22:07:53 +0000] GET "/wp-admin/install.php" HTTP/2.0 404
172.203.178.94 [28/Dec/2023:22:07:55 +0000] GET "/wp-content/plugins/envato-market/inc/class-envato-market-api.php" HTTP/2.0 404
show less
Multiple malicious GET requests, mostly aimed at PHP resources including:
84.46.243.202 [28/Dec/2 ...
show moreMultiple malicious GET requests, mostly aimed at PHP resources including:
84.46.243.202 [28/Dec/2023:16:49:45 +0000] GET "/wp-content/themes/intense/block-css.php?mode=upload" HTTP/2.0 404
84.46.243.202 [28/Dec/2023:16:49:46 +0000] GET "/libraries/vendor/updates.php" HTTP/2.0 404
84.46.243.202 [28/Dec/2023:16:49:49 +0000] GET "/wp-content/repeater.php" HTTP/2.0 404
84.46.243.202 [28/Dec/2023:16:49:51 +0000] GET "/about.php7" HTTP/2.0 404
show less
HackingWeb App Attack
By clicking โAccept allโ, you agree to the storing of cookies on your device to remember preferences and
analyze site usage.
Read more
- Required to log into your AbuseIPDB account, and store these cookie preferences.