Anonymous
2026-09-02 00:29:18
(1 minute ago)
Web Probe / Attack NCT
Web App Attack
๐บ๐ธ
Omega Threat-ID
2026-09-02 00:27:56
(2 minutes ago)
Omega Point Threat ID honeypot sensor observed: honeypot, abuse-reported, otx-flagged
Port Scan
๐ฉ๐ช
eposs-it.de
2026-09-02 00:25:25
(5 minutes ago)
Blocked by os-abuseipdb; 5 hits, proto=tcp, ports=80
Port Scan
Hacking
๐น๐ญ
thaizone.com
2026-09-02 00:25:21
(5 minutes ago)
Brute Force Attack on a Web Resources (repeated 404) #1
DDoS Attack
Web Spam
Brute-Force
Web App Attack
๐บ๐ธ
Starburst SysOp Team
2026-09-02 00:25:08
(5 minutes ago)
Restricted File Access Attempt. Matched phrase "config.php" at REQUEST_FILENAME. (930130-mnz6-7)
Hacking
Web App Attack
๐บ๐ธ
Epimetheus
2026-09-02 00:22:03
(8 minutes ago)
Unauthorized access attempts:
[GET] /tinyfilemanager.php
[GET] /maxro.php
[GET] /gecko-litespeed.ph ...
show more
Unauthorized access attempts:
[GET] /tinyfilemanager.php
[GET] /maxro.php
[GET] /gecko-litespeed.php
[GET] /debug.php
[GET] /file21.php
[GET] /aws.php
[GET] /upload.form.php
[GET] /pouhg.php
[GET] /koiy.php
[GET] //dd.php
[GET] /test.config.php
[GET] /wp-content/plugins/hellopress/wp_filemanager.php
UA: Unknown
show less
Web App Attack
๐ซ๐ท
guillaume illien
2026-09-02 00:20:01
(10 minutes ago)
4.205.62.107 - - [02/Sep/2026:00:19:58 +0000] "GET /xda.php HTTP/1.1" 301 178 "-" "-"
4.205.62.107 - ...
show more
4.205.62.107 - - [02/Sep/2026:00:19:58 +0000] "GET /xda.php HTTP/1.1" 301 178 "-" "-"
4.205.62.107 - - [02/Sep/2026:00:19:58 +0000] "GET /aws_secret_config.php HTTP/1.1" 301 178 "-" "-"
4.205.62.107 - - [02/Sep/2026:00:19:58 +0000] "GET /public/bnn_.php.php HTTP/1.1" 301 178 "-" "-"
4.205.62.107 - - [02/Sep/2026:00:19:58 +0000] "GET /application.config.php HTTP/1.1" 301 178 "-" "-"
4.205.62.107 - - [02/Sep/2026:00:19:59 +0000] "GET /oiko6u.php HTTP/1.1" 301 178 "-" "-"
4.205.62.107 - - [02/Sep/2026:00:19:59 +0000] "GET /app_local.php HTTP/1.1" 301 178 "-" "-"
4.205.62.107 - - [02/Sep/2026:00:20:01 +0000] "GET /erty.php HTTP/1.1" 301 178 "-" "-"
...
show less
Hacking
Brute-Force
Web App Attack
SSH
๐ณ๐ฑ
Savvii
2026-09-02 00:18:47
(12 minutes ago)
15 attempts against mh-modsecurity-ban on byrd
Brute-Force
Web App Attack
๐ฉ๐ช
hchristo
2026-09-02 00:18:00
(12 minutes ago)
[Wed Sep 02 02:17:59.250157 2026] [proxy_fcgi:error] [pid 3981:tid 4275] [client 4.205.62.107:46277] ...
show more
[Wed Sep 02 02:17:59.250157 2026] [proxy_fcgi:error] [pid 3981:tid 4275] [client 4.205.62.107:46277] AH01071: Got error 'Primary script unknown'
[Wed Sep 02 02:17:59.460469 2026] [proxy_fcgi:error] [pid 3981:tid 4263] [client 4.205.62.107:46277] AH01071: Got error 'Primary script unknown'
[Wed Sep 02 02:17:59.696685 2026] [proxy_fcgi:error] [pid 3981:tid 4360] [client 4.205.62.107:46277] AH01071: Got error 'Primary script unknown'
[Wed Sep 02 02:17:59.920856 2026] [proxy_fcgi:error] [pid 3981:tid 4371] [client 4.205.62.107:46277] AH01071: Got error 'Primary script unknown'
[Wed Sep 02 02:18:00.236980 2026] [proxy_fcgi:error] [pid 3981:tid 4350] [client 4.205.62.107:46277] AH01071: Got error 'Primary script unknown'
...
show less
Brute-Force
๐ฉ๐ช
Philister11
2026-09-02 00:12:32
(18 minutes ago)
CrowdSec: crowdsecurity/http-probing (CA/AS8075)
Web App Attack
Hacking
๐บ๐ธ
mw
2026-09-02 00:00:42
(30 minutes ago)
GET /wp-admin/sc.php HTTP/1.1
Web App Attack
๐ซ๐ท
guillaume illien
2026-09-01 23:59:50
(31 minutes ago)
4.205.62.107 - - [01/Sep/2026:23:59:46 +0000] "GET /fm.php HTTP/1.1" 301 178 "-" "-"
4.205.62.107 - ...
show more
4.205.62.107 - - [01/Sep/2026:23:59:46 +0000] "GET /fm.php HTTP/1.1" 301 178 "-" "-"
4.205.62.107 - - [01/Sep/2026:23:59:48 +0000] "GET /ws62.php HTTP/1.1" 301 178 "-" "-"
4.205.62.107 - - [01/Sep/2026:23:59:48 +0000] "GET /fun.php HTTP/1.1" 301 178 "-" "-"
4.205.62.107 - - [01/Sep/2026:23:59:49 +0000] "GET /sdsa.php HTTP/1.1" 301 178 "-" "-"
4.205.62.107 - - [01/Sep/2026:23:59:49 +0000] "GET /05.php HTTP/1.1" 301 178 "-" "-"
4.205.62.107 - - [01/Sep/2026:23:59:49 +0000] "GET /pouhg.php HTTP/1.1" 301 178 "-" "-"
4.205.62.107 - - [01/Sep/2026:23:59:50 +0000] "GET /txets.php HTTP/1.1" 301 178 "-" "-"
...
show less
Hacking
Brute-Force
Web App Attack
SSH
๐ฆ๐บ
clapper
2026-09-01 23:53:10
(37 minutes ago)
(PERMBLOCK) 4.205.62.107 (CA/Canada/-) has had more than 4 temp blocks in the last 86400 secs; ID: r ...
show more
(PERMBLOCK) 4.205.62.107 (CA/Canada/-) has had more than 4 temp blocks in the last 86400 secs; ID: rub
show less
Brute-Force
Bad Web Bot
๐ฉ๐ช
TheDjRider
2026-09-01 23:51:17
(39 minutes ago)
CrowdSec detected Malicious web crawler or bad web bot. Scenario: crowdsecurity/http-crawl-non_stati ...
show more
CrowdSec detected Malicious web crawler or bad web bot. Scenario: crowdsecurity/http-crawl-non_statics. Automatic ban triggered. Detection time (UTC): 2026-09-01T23:51:08.196982177Z. Context: http_status=200
show less
Bad Web Bot
Web App Attack
Anonymous
2026-09-01 23:44:46
(46 minutes ago)
4.205.62.107 - - [01/Sep/2026:23:44:45 +0000] "GET /ws79.php HTTP/1.1" 404 15266 "-" "-" "-"
4.205.6 ...
show more
4.205.62.107 - - [01/Sep/2026:23:44:45 +0000] "GET /ws79.php HTTP/1.1" 404 15266 "-" "-" "-"
4.205.62.107 - - [01/Sep/2026:23:44:46 +0000] "GET /routes.php HTTP/1.1" 404 15270 "-" "-" "-"
4.205.62.107 - - [01/Sep/2026:23:44:46 +0000] "GET /routes.php HTTP/1.1" 404 15270 "-" "-" "-"
4.205.62.107 - - [01/Sep/2026:23:44:46 +0000] "GET /public/rip.php.php HTTP/1.1" 404 15286 "-" "-" "-"
4.205.62.107 - - [01/Sep/2026:23:44:46 +0000] "GET /public/rip.php.php HTTP/1.1" 404 15286 "-" "-" "-"
4.205.62.107 - - [01/Sep/2026:23:44:46 +0000] "GET /wsws.php HTTP/1.1" 404 15266 "-" "-" "-"
...
show less
Port Scan
Brute-Force