๐ฉ๐ช
Holger
2026-10-02 08:30:17
(15 hours ago)
Bruteforce WebAttack
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-02 06:36:08
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.110.64.236 (236.64.110.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.110.64.236 (236.64.110.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 02:36:02.548559 2026] [security2:error] [pid 16556:tid 16556] [client 136.110.64.236:43870] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.jazziientertainment.com"] [uri "/.env.js"] [unique_id "ar9Q0n-208T-jJ7pk1bIAwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-02 05:54:41
(17 hours ago)
136.110.64.236 - - [02/Oct/2026:07:54:33 +0200] "GET /4x8ob3pmtq5jdsnhk1z2 HTTP/1.1" 404 30018
136.1 ...
show more
136.110.64.236 - - [02/Oct/2026:07:54:33 +0200] "GET /4x8ob3pmtq5jdsnhk1z2 HTTP/1.1" 404 30018
136.110.64.236 - - [02/Oct/2026:07:54:33 +0200] "GET /model/info HTTP/1.1" 404 30018
136.110.64.236 - - [02/Oct/2026:07:54:33 +0200] "GET /build/manifest.json HTTP/1.1" 404 30018
136.110.64.236 - - [02/Oct/2026:07:54:33 +0200] "GET /z9x8c7v6b5-debug-trigger-www.crypcool.com HTTP/1.1" 404 30018
136.110.64.236 - - [02/Oct/2026:07:54:33 +0200] "GET /dist/.vite/manifest.json HTTP/1.1" 404 30018
136.110.64.236 - - [02/Oct/2026:07:54:33 +0200] "GET /dist/manifest.json HTTP/1.1" 404 30018
136.110.64.236 - - [02/Oct/2026:07:54:33 +0200] "GET /mbxy9gceqhwbao74fob6 HTTP/1.1" 404 30018
136.110.64.236 - - [02/Oct/2026:07:54:33 +0200] "GET /lib/terminal-xhr.php HTTP/1.1" 404 29380
136.110.64.236 - - [02/Oct/2026:07:54:35 +0200] "GET /model/info HTTP/1.1" 404 28478
136.110.64.236 - - [02/Oct/2026:07:54:37 +0200] "GET /graphql HTTP/1.1" 404 30018
...
show less
Web Spam
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-02 01:07:09
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.110.64.236 (236.64.110.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.110.64.236 (236.64.110.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 21:07:04.200772 2026] [security2:error] [pid 20518:tid 20518] [client 136.110.64.236:42452] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.ianmagarzo.com"] [uri "/media../.env"] [unique_id "ar8DuNX4JCpVmx3qpQ18gQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2026-10-02 01:04:57
(22 hours ago)
2.300 requests from abuseipdb.com blacklisted IP (10mos2w5d)
Brute-Force
Bad Web Bot
๐ฉ๐ช
rh24
2026-10-02 01:00:05
(22 hours ago)
Blacklisted for CAPTCHA_DOS_ALERT after 101 captcha requests
DDoS Attack
Web App Attack
๐บ๐ธ
1gz
2026-10-02 00:52:04
(22 hours ago)
Triggered Cloudflare WAF (firewallCustom) from JP.
Action taken: CHALLENGE
Protocol: HTTP/2 (POST me ...
show more
Triggered Cloudflare WAF (firewallCustom) from JP.
Action taken: CHALLENGE
Protocol: HTTP/2 (POST method)
Endpoint: /read-document
UA: Mozilla/5.0 (compatible; MoonshotBot/1.0; +https://kimi.ai/)
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
Anonymous
2026-10-02 00:52:01
(22 hours ago)
Malicious activity detected
Hacking
Web App Attack
๐ง๐ท
radardatelecom
2026-10-01 22:26:04
(1 day ago)
Blocked by Radar da Telecom firewall โ abuseipdb
Bad Web Bot
Web App Attack
Anonymous
2026-10-01 21:30:03
(1 day ago)
| Multiple common web attacks from same source ip. (multiple servers)
Web App Attack
Hacking
SQL Injection
๐บ๐ธ
paulo.apoloni
2026-10-01 19:02:36
(1 day ago)
136.110.64.236 - - [01/Oct/2026:16:02:35 -0300] "GET /images../.env HTTP/1.1" 444 0 "-" "Mozilla/5.0 ...
show more
136.110.64.236 - - [01/Oct/2026:16:02:35 -0300] "GET /images../.env HTTP/1.1" 444 0 "-" "Mozilla/5.0 (compatible; cohere-ai; +https://cohere.com/crawler)"
136.110.64.236 - - [01/Oct/2026:16:02:35 -0300] "GET /build../.env HTTP/1.1" 444 0 "-" "Mozilla/5.0 (compatible; DeepSeekBot/1.0; +https://www.deepseek.com/)"
136.110.64.236 - - [01/Oct/2026:16:02:35 -0300] "GET /images../.env HTTP/1.1" 444 0 "-" "Mozilla/5.0 (compatible; cohere-ai; +https://cohere.com/crawler)"
136.110.64.236 - - [01/Oct/2026:16:02:35 -0300] "GET /build../.env HTTP/1.1" 444 0 "-" "Mozilla/5.0 (compatible; DeepSeekBot/1.0; +https://www.deepseek.com/)"
136.110.64.236 - - [01/Oct/2026:16:02:35 -0300] "GET /images../.env HTTP/1.1" 444 0 "-" "Mozilla/5.0 (compatible; cohere-ai; +https://cohere.com/crawler)"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
ArturShelby
2026-10-01 18:17:31
(1 day ago)
Suspicious path access: /auth
Web App Attack
๐จ๐ฆ
Mediashaker
2026-10-01 18:07:07
(1 day ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 136.110.64.236 (JP/J ...
show more
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 136.110.64.236 (JP/Japan/236.64.110.136.bc.googleusercontent.com)
show less
Bad Web Bot
๐ฉ๐ช
updown.io
2026-10-01 15:57:00
(1 day ago)
{"level":"info","ts":1790870213.7612133,"logger":"http.log.access.log1","msg":"handled request","req ...
show more
{"level":"info","ts":1790870213.7612133,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"136.110.64.236","remote_port":"45592","client_ip":"136.110.64.236","proto":"HTTP/2.0","method":"GET","host":"status.ilerno.com","uri":"/assets/manifest.json","headers":{"Accept":["*/*"],"Sec-Fetch-Dest":["script"],"X-Middleware-Subrequest":["src/middleware:nowaf:src/middleware:src/middleware:src/middleware:src/middleware:middleware:middleware:nowaf:middleware:middleware:middleware:pages/_middleware"],"Sec-Ch-Ua-Mobile":["?0"],"Sec-Ch-Ua-Platform":["\"Windows\""],"Accept-Encoding":["gzip, deflate, br, zstd"],"X-Nextjs-Data":["1"],"Accept-Language":["en-US,en;q=0.9"],"Priority":["u=1"],"Sec-Ch-Ua":["\"Chromium\";v=\"152\", \"Not?A_Brand\";v=\"24\", \"Microsoft Edge\";v=\"152\""],"Sec-Fetch-Site":["same-origin"],"User-Agent":["Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36 Edg/152.0.0.0"],"Sec-Fetch-Mode":[
...
show less
DDoS Attack
Web App Attack
๐ณ๐ฑ
Site.eu
2026-10-01 15:08:51
(1 day ago)
Excessive multi-domain requests
Brute-Force