Anonymous
2026-10-11 08:39:26
(18 minutes ago)
136.107.187.83 - - [11/Oct/2026:16:39:25 +0800] "GET /dist/manifest.json HTTP/1.1" 404 196 "-" "Mozi ...
show more
136.107.187.83 - - [11/Oct/2026:16:39:25 +0800] "GET /dist/manifest.json HTTP/1.1" 404 196 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Mobile Safari/537.36"
136.107.187.83 - - [11/Oct/2026:16:39:25 +0800] "GET /build/manifest.json HTTP/1.1" 404 196 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Mobile Safari/537.36"
136.107.187.83 - - [11/Oct/2026:16:39:25 +0800] "GET /build/manifest.json HTTP/1.1" 404 196 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Mobile Safari/537.36"
136.107.187.83 - - [11/Oct/2026:16:39:25 +0800] "GET /.vite/manifest.json HTTP/1.1" 404 196 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Mobile Safari/537.36"
136.107.187.83 - - [11/Oct/2026:16:39:25 +0800] "GET /.vite/manifest.json HTTP/1.1" 404 196 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, li
...
show less
Bad Web Bot
Web App Attack
π©πͺ
Gwyneth Llewelyn
2026-10-11 08:05:20
(52 minutes ago)
2026/10/11 09:05:17 [error] 4060693#4060693: *2105620 access forbidden by rule, client: 136.107.187. ...
show more
2026/10/11 09:05:17 [error] 4060693#4060693: *2105620 access forbidden by rule, client: 136.107.187.83, server: [redacted], request: "GET /cache/original/%2e%2e/%2e%2e/.env HTTP/2.0", host: "web.betatechnologies.info"
2026/10/11 09:05:18 [error] 4060693#4060693: *2105620 access forbidden by rule, client: 136.107.187.83, server: [redacted], request: "GET /.env HTTP/2.0", host: "web.betatechnologies.info"
136.107.187.83 - - [11/Oct/2026:09:05:18 +0100] "GET /.env HTTP/2.0" 403 1045 "-" "Mozilla/5.0 (compatible; Bravebot/1.0; +https://brave.com/search/)"
show less
Brute-Force
Web App Attack
π©πͺ
updown.io
2026-10-11 06:55:56
(2 hours ago)
{"level":"info","ts":1791701755.0700002,"logger":"http.log.access.log1","msg":"handled request","req ...
show more
{"level":"info","ts":1791701755.0700002,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"136.107.187.83","remote_port":"40546","client_ip":"136.107.187.83","proto":"HTTP/2.0","method":"GET","host":"status.menorca.info","uri":"/.next/.env","headers":{"X-Middleware-Subrequest":["src/middleware:nowaf:src/middleware:src/middleware:src/middleware:src/middleware:middleware:middleware:nowaf:middleware:middleware:middleware:pages/_middleware"],"X-Nextjs-Data":["1"],"User-Agent":["Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.0 Safari/605.1.15 (Applebot/0.1; +http://www.apple.com/go/applebot)"],"Accept":["*/*"],"Accept-Encoding":["gzip"]},"tls":{"resumed":false,"version":772,"cipher_suite":4865,"proto":"h2","server_name":"status.menorca.info","ech":false}},"bytes_read":0,"user_id":"","duration":0.000165476,"size":0,"status":429,"resp_headers":{"Server":["Caddy"],"Alt-Svc":["h3=\":443\"; ma=2592000"],"Retry-Afte
...
show less
DDoS Attack
Web App Attack
π±πΉ
damorfati
2026-10-11 05:41:19
(3 hours ago)
ANNA automated report (scanning) | hacking - agent:Mozilla/5.0 (compatible; KimiBot/1.0; +https://ki ...
show more
ANNA automated report (scanning) | hacking - agent:Mozilla/5.0 (compatible; KimiBot/1.0; +https://kimi.ai/), body: null, method: GET, url: /z9x8c7v6b5-debug-trigger-api.anna2.info
show less
Web App Attack
Hacking
π©πͺ
Gwyneth Llewelyn
2026-10-11 04:31:19
(4 hours ago)
2026/10/11 05:31:17 [error] 4060693#4060693: *2055559 access forbidden by rule, client: 136.107.187. ...
show more
2026/10/11 05:31:17 [error] 4060693#4060693: *2055559 access forbidden by rule, client: 136.107.187.83, server: projects.betatechnologies.info, request: "GET /media../.env HTTP/2.0", host: "projects.betatechnologies.info"
2026/10/11 05:31:17 [error] 4060693#4060693: *2055532 access forbidden by rule, client: 136.107.187.83, server: projects.betatechnologies.info, request: "GET /.//.env HTTP/2.0", host: "projects.betatechnologies.info"
2026/10/11 05:31:17 [error] 4060694#4060694: *2055558 access forbidden by rule, client: 136.107.187.83, server: projects.betatechnologies.info, request: "GET /images../.env HTTP/2.0", host: "projects.betatechnologies.info"
show less
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-10 19:18:30
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.107.187.83 (83.187.107.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.107.187.83 (83.187.107.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 10 15:18:23.659039 2026] [security2:error] [pid 27065:tid 27065] [client 136.107.187.83:41380] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.amybeam.info"] [uri "/js../.env"] [unique_id "asqPf_O6uxbYerL-JtvK_AAAACs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
n2nguyenn2nguyen
2026-10-10 18:19:13
(14 hours ago)
Blocked by YFC Security on https://1904.brixzly.com β type: directory_scan_attempts
Web App Attack
π«π·
Octopuce
2026-10-10 18:12:03
(14 hours ago)
Aggressive web search of vulnerable pages: /_nuxt/../.env /client/.env /packages/.env /api/v1/.env / ...
show more
Aggressive web search of vulnerable pages: /_nuxt/../.env /client/.env /packages/.env /api/v1/.env /apps/.env ...
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-10 17:48:12
(15 hours ago)
(mod_security) mod_security (id:210730) triggered by 136.107.187.83 (83.187.107.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 136.107.187.83 (83.187.107.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 10 13:48:05.967578 2026] [security2:error] [pid 12174:tid 12174] [client 136.107.187.83:39742] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||vfflag.info|F|2"] [data ".conf"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vfflag.info"] [uri "/rclone.conf"] [unique_id "asp6VWaTjs8-F8h7411LoQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-10 17:22:54
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.107.187.83 (83.187.107.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.107.187.83 (83.187.107.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 10 13:22:49.799699 2026] [security2:error] [pid 7101:tid 7101] [client 136.107.187.83:56966] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "personalizedchristmascards.info"] [uri "/static//app/.env"] [unique_id "asp0afgOtMXnqB24K_CqNAAAADs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
Site.eu
2026-10-10 17:10:40
(15 hours ago)
Excessive multi-domain requests
Brute-Force
π©πͺ
netman
2026-10-10 17:10:05
(15 hours ago)
136.107.187.83 lfs.hk - [10/Oct/2026:17:08:45 +0000] "GET / HTTP/2.0" 200 15131 "-" "Mozilla/5.0 (Li ...
show more
136.107.187.83 lfs.hk - [10/Oct/2026:17:08:45 +0000] "GET / HTTP/2.0" 200 15131 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Mobile Safari/537.36 EdgA/152.0.0.0"
136.107.187.83 lfs.hk - [10/Oct/2026:17:08:45 +0000] "GET /z4n2k7u6efh1uo6cu8n8 HTTP/2.0" 404 158 "-" "Mozilla/5.0 (compatible; Meta-ExternalAgent/1.0; +https://developers.facebook.com/docs/sharing/webmasters/crawler)"
136.107.187.83 lfs.hk - [10/Oct/2026:17:08:45 +0000] "GET /assets/manifest.json HTTP/2.0" 404 158 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Mobile Safari/537.36 EdgA/152.0.0.0"
136.107.187.83 lfs.hk - [10/Oct/2026:17:08:45 +0000] "GET /asset-manifest.json HTTP/2.0" 404 158 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Mobile Safari/537.36 EdgA/152.0.0.0"
136.107.187.83 lfs.hk - [10/Oct/2026:17:08:45 +0000] "GET /dist/manifest.json HTTP/2.0" 404 158 "-" "Mozill
...
show less
DDoS Attack
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-10 17:06:11
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.107.187.83 (83.187.107.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.107.187.83 (83.187.107.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 10 13:06:04.349055 2026] [security2:error] [pid 17397:tid 17397] [client 136.107.187.83:46846] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "khodel.info"] [uri "/@fs/var/task/.env"] [unique_id "aspwfC2CQMnN7xysmxRBhwAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
ghostwarriors
2026-10-10 16:50:08
(16 hours ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
π΅π±
TaKeN
2026-10-10 16:50:05
(16 hours ago)
Automated Wazuh observation. Wazuh rule 31151 lvl=10 detected repeated HTTP web application probing ...
show more
Automated Wazuh observation. Wazuh rule 31151 lvl=10 detected repeated HTTP web application probing from this source IP. Observed 2 matching Wazuh alert(s) between 2026-10-10T18:50:05+02:00 and 2026-10-10T18:50:05+02:00.
show less
Web App Attack
Hacking