🇧🇪
cmbplf
2026-09-12 21:10:07
(2 hours ago)
4.221 requests from abuseipdb.com blacklisted IP (3mos4w1d)
Brute-Force
Bad Web Bot
🇦🇹
penguin-solutions.at
2026-09-12 20:55:34
(2 hours ago)
Excessive 403/404 errors
...
Brute-Force
Web App Attack
🇬🇧
consul.to
2026-09-12 20:25:59
(3 hours ago)
Web attack/malicious scanning detected
Web App Attack
🇺🇸
slay3r9903
2026-09-12 19:14:11
(4 hours ago)
IP address blocked by Cloudflare security rules due to suspicious activity and security violations.
Hacking
Bad Web Bot
🇺🇸
slay3r9903
2026-09-12 18:58:27
(4 hours ago)
Wazuh rule 100308: NPM sensitive-path storm: rule 100304 ≥5 times in 10s from same IP
Brute-Force
Port Scan
🇩🇪
itsolon
2026-09-12 18:57:29
(4 hours ago)
[12/Sep/2026:20:57:28 +0200] 178923944882.653764 136.107.223.93 46222 217.154.7.177 443
[12/Sep/2026 ...
show more
[12/Sep/2026:20:57:28 +0200] 178923944882.653764 136.107.223.93 46222 217.154.7.177 443
[12/Sep/2026:20:57:28 +0200] 178923944825.632099 136.107.223.93 46222 217.154.7.177 443
[12/Sep/2026:20:57:28 +0200] 178923944870.953829 136.107.223.93 46222 217.154.7.177 443
[12/Sep/2026:20:57:28 +0200] 178923944850.621517 136.107.223.93 46222 217.154.7.177 443
[12/Sep/2026:20:57:29 +0200] 178923944924.304097 136.107.223.93 46222 217.154.7.177 443
...
show less
Port Scan
Hacking
Brute-Force
Web App Attack
🇳🇱
ConsulHosting
2026-09-12 07:07:09
(16 hours ago)
Excessive failed CAPTCHA attempts (CAPTCHA DoS)
Web App Attack
🇩🇪
ghostwarriors
2026-09-11 18:50:07
(1 day ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-11 18:27:53
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 136.107.223.93 (93.223.107.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.107.223.93 (93.223.107.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 14:27:46.861034 2026] [security2:error] [pid 27504:tid 27504] [client 136.107.223.93:36928] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sporttaekwondo.net"] [uri "/assets../.env"] [unique_id "aqRIItavVaovkNWXMGVArwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
yitzhaq
2026-09-11 18:24:49
(1 day ago)
136.107.223.93 - - [11/Sep/2026:20:24:46 +0200] "GET /wp-config.php.bak HTTP/2.0" 404 292 "-" "Mozil ...
show more
136.107.223.93 - - [11/Sep/2026:20:24:46 +0200] "GET /wp-config.php.bak HTTP/2.0" 404 292 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; [email])"
136.107.223.93 - - [11/Sep/2026:20:24:46 +0200] "GET /wp-config.php.old HTTP/2.0" 404 292 "-" "CCBot/2.0 (https://commoncrawl.org/faq/)"
136.107.223.93 - - [11/Sep/2026:20:24:46 +0200] "GET /wp-config.php~ HTTP/2.0" 404 292 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; OAI-SearchBot/1.0; +https://openai.com/searchbot)"
136.107.223.93 - - [11/Sep/2026:20:24:46 +0200] "GET /config/storage.yml HTTP/2.0" 404 292 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Perplexity-User/1.0; +https://perplexity.ai/perplexitybot)"
136.107.223.93 - - [11/Sep/2026:20:24:46 +0200] "GET /config/master.key HTTP/2.0" 404 292 "-" "Mozilla/5.0 (compatible; ChatGLM-Spider/1.0; +https://zhipuai.cn/)"
136.107.223.93 - - [11/Sep/2026:20:24:46 +0200] "GET /settings.py HTTP/2.0" 404 292 "-" "Moz
show less
Web App Attack
Brute-Force
🇦🇹
penguin-solutions.at
2026-09-11 18:16:30
(1 day ago)
Excessive 403/404 errors
...
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-11 18:02:36
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 136.107.223.93 (93.223.107.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.107.223.93 (93.223.107.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 14:02:31.494324 2026] [security2:error] [pid 31551:tid 31551] [client 136.107.223.93:49472] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "soundtrax.net"] [uri "/.git/config"] [unique_id "aqRCNx_xqUdu5wMm7-1XxQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇨🇭
zynex
2026-09-11 17:53:27
(1 day ago)
URL Probing: /.env
Web App Attack
🇺🇸
solantex
2026-09-11 17:47:03
(1 day ago)
Non-HTTP protocol probe against web port (SOCKS5 greeting / binary handshake / empty request) (fail2 ...
show more
Non-HTTP protocol probe against web port (SOCKS5 greeting / binary handshake / empty request) (fail2ban)
show less
Port Scan
🇩🇪
Viveronese
2026-09-11 17:44:56
(1 day ago)
HTTP vulnerability scanning
Web App Attack