๐น๐ท
neron
2026-08-15 15:06:48
(5 days ago)
CrowdSec blocked: http:exploit detected via OPNsense firewall
Hacking
Web App Attack
Anonymous
2026-07-13 12:18:43
(1 month ago)
[osotir.org] httpd-suspicious-path: sites=www.logosparakliseos.gr; logs=/var/log/httpd/domains/logos ...
show more
[osotir.org] httpd-suspicious-path: sites=www.logosparakliseos.gr; logs=/var/log/httpd/domains/logosparakliseos.gr.log; samples=/wp-content/themes/fukasawa/inc/classes/403.php | /wp-content/plugins/hello-plus/classes/ehp-sarang.php | /wp-content/plugins/so-pinyin-slugs/inc/main_json.php
show less
Hacking
Web App Attack
๐ฌ๐ท
setupgr
2026-07-13 09:21:50
(1 month ago)
(mod_security) mod_security (id:1000001) triggered by 45.91.23.90 (CA/Canada/Quebec/Mascouche/-/[AS2 ...
show more
(mod_security) mod_security (id:1000001) triggered by 45.91.23.90 (CA/Canada/Quebec/Mascouche/-/[AS212238 CDNEXT]): 1 in the last 86400 secs (CF_ENABLE); Ports: *; Direction: inout; Trigger: LF_MODSEC; Logs: [Mon Jul 13 12:21:47.014703 2026] [security2:error] [pid 3028:tid 3188] [client 45.91.23.90:22877] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/db.php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "103"] [id "1000001"] [msg "Bad file blocked: /wp-content/themes/pridmag/db.php"] [severity "CRITICAL"] [tag "security"] [hostname "sea-sound.com"] [uri "/wp-content/themes/pridmag/db.php"] [unique_id "alSuK2zIjd68k1ygCGrKmgAAA1c"]
show less
Port Scan
๐ฉ๐ช
FeG Deutschland
2026-07-13 06:26:25
(1 month ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 127
Exploited Host
Web App Attack
๐ฉ๐ช
IVski
2026-07-13 05:09:24
(1 month ago)
IVski WAF | WordPress scanner detected - probing wp-content, xmlrpc or wp-login
Port Scan
Brute-Force
Web App Attack
๐ฉ๐ช
filstal.org
2026-07-13 02:34:39
(1 month ago)
Web reconnaissance detected: automated probing for sensitive files, backup archives, admin panels an ...
show more
Web reconnaissance detected: automated probing for sensitive files, backup archives, admin panels and known vulnerability paths.
show less
Hacking
Brute-Force
Web App Attack
Anonymous
2026-06-23 07:26:22
(1 month ago)
45.91.23.90 - - [23/Jun/2026:07:26:21 +0000] "GET /wp-content/plugins/StylePlugin/up.php HTTP/1.1" 4 ...
show more
45.91.23.90 - - [23/Jun/2026:07:26:21 +0000] "GET /wp-content/plugins/StylePlugin/up.php HTTP/1.1" 404 2767 "http://alien.net.au/wp-content/plugins/StylePlugin/up.php" "Go-http-client/1.1"
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
Vegascosmetics
2026-06-23 06:57:16
(1 month ago)
(Kingcopy.org-AI-IDS-Report):IP automatically blocked after PHP/webshell probe. Vegas Security
DDoS Attack
Hacking
Exploited Host
๐ซ๐ท
rellik
2026-06-18 20:50:00
(2 months ago)
Mass Scanning Critical Files, Potential Part of BotNet
Hacking
DDoS Attack
Brute-Force
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-06-18 20:12:21
(2 months ago)
45.91.23.90 - - [18/Jun/2026:23:12:19 +0300] "GET /wp-content/plugins/so-pinyin-slugs/inc/main_json. ...
show more
45.91.23.90 - - [18/Jun/2026:23:12:19 +0300] "GET /wp-content/plugins/so-pinyin-slugs/inc/main_json.php HTTP/1.1" 404 712 "-" "Go-http-client/1.1"
45.91.23.90 - - [18/Jun/2026:23:12:20 +0300] "GET /wp-content/plugins/filester/assets/css/404.php HTTP/1.1" 404 712 "-" "Go-http-client/1.1"
...
show less
Web App Attack
๐ฆ๐บ
aranguren.org
2026-06-05 05:48:58
(2 months ago)
45.91.23.90 - - [05/Jun/2026:15:48:56 +1000] "GET /wp-content/plugins/admin.php HTTP/1.1" 404 995 "- ...
show more
45.91.23.90 - - [05/Jun/2026:15:48:56 +1000] "GET /wp-content/plugins/admin.php HTTP/1.1" 404 995 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_12_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.3"
45.91.23.90 - - [05/Jun/2026:15:48:57 +1000] "GET /wp-includes/blocks/table/int/tmpl/index.php HTTP/1.1" 404 995 "-" "Mozilla/5.0 (X11; Linux i686; rv:79.0) Gecko/20100101 Firefox/79.0"
45.91.23.90 - - [05/Jun/2026:15:48:57 +1000] "GET /wp-l0gin.php HTTP/1.1" 404 16 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:71.0) Gecko/20100101 Firefox/71.0"
45.91.23.90 - - [05/Jun/2026:15:48:57 +1000] "GET /wp-includes/js/jquery/suggest.php HTTP/1.1" 404 995 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:79.0) Gecko/20100101 Firefox/79.0"
45.91.23.90 - - [05/Jun/2026:15:48:58 +1000] "GET /new.php HTTP/1.1" 404 16 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/84.0.4147.105 Safari/537.36 OPR/70.0.3728.95"
45.91.23.90 - -
...
show less
Bad Web Bot
Anonymous
2026-06-02 19:48:32
(2 months ago)
Multiple, malicious web requests detected
Port Scan
Hacking
๐บ๐ธ
Major Hostility
2026-06-01 15:45:52
(2 months ago)
"GET /aa.php HTTP/1.1" 404
"GET /index2.php HTTP/1.1" 404
"GET /wp-content/themes/hello-element/foot ...
show more
"GET /aa.php HTTP/1.1" 404
"GET /index2.php HTTP/1.1" 404
"GET /wp-content/themes/hello-element/footer.php HTTP/1.1" 404
"GET /wp-admin/network/admin.php HTTP/1.1" 404
"GET /.well-known/pki-validation/2index.php HTTP/1.1" 404
"GET /wp-content/languages/plugins.php HTTP/1.1" 404
"GET /shell.php HTTP/1.1" 404
"GET /.well-known/content.php HTTP/1.1" 404
"GET /wp-includes/Text/about.php HTTP/1.1" 404
"GET /wp-admin/network/atomlib.php HTTP/1.1" 404
"GET /.well-known/install.php HTTP/1.1" 404
"GET /hehe.php HTTP/1.1" 404
"GET /wp-includes/fonts/autoload_classmap.php HTTP/1.1" 404
"GET /css/slider.php HTTP/1.1" 404
"GET /dir.php HTTP/1.1" 404
"GET /wp-includes/css/atomlib.php HTTP/1.1" 404
"GET %2
show less
Web App Attack
๐ซ๐ท
masterguru
2026-06-01 12:41:29
(2 months ago)
Too much 404 requests in 1 minute. Operator GE matched 10 at IP:block_script. (46020-193)
Hacking
๐ซ๐ท
dynamix
2026-05-23 14:57:39
(2 months ago)
Multiple WAF Violations
Web App Attack