🇮🇳
evicky2002
2026-09-09 00:01:20
(3 hours ago)
Confirmed malicious by STILWaters CTI platform (score=100, sources=1)
Hacking
Brute-Force
SSH
🇫🇷
SpaceHost-Server
2026-09-08 22:14:58
(5 hours ago)
Brute-Force
Web App Attack
🇳🇱
homeshowdomain.nl
2026-09-08 22:00:21
(5 hours ago)
Auto-ban: >3000 req/min op 2026-09-08
Web App Attack
SSH
Hacking
🇨🇭
backslash
2026-09-08 11:36:01
(16 hours ago)
block ruleset WAF detection and high score on abuseIPDB 149EB1B42C242111FADBBC2EF8F90219570691E1
Bad Web Bot
🇳🇱
Site.eu
2026-09-08 11:08:51
(16 hours ago)
Excessive multi-domain requests
Brute-Force
Anonymous
2026-09-08 10:53:12
(17 hours ago)
Bot / seems abusive / Apache connections: 63
DDoS Attack
Web Spam
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 10:07:17
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.110.88.7 (7.88.110.136.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 136.110.88.7 (7.88.110.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 06:07:13.615712 2026] [security2:error] [pid 23506:tid 23506] [client 136.110.88.7:38270] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fruitsaladyummy.robtown.com"] [uri "/@fs/app/.env"] [unique_id "ap_eUQxo_33CBEq1SR_BBgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-08 09:37:46
(18 hours ago)
136.110.88.7 - - [08/Sep/2026:11:37:12 +0200] "GET HTTP/1.1" 403 734 "-" "Mozilla/5.0 AppleWebKit/5 ...
show more
136.110.88.7 - - [08/Sep/2026:11:37:12 +0200] "GET HTTP/1.1" 403 734 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ChatGPT-User/1.0; +https://openai.com/bot)"
show less
Web Spam
Blog Spam
Brute-Force
Web App Attack
🇫🇷
masterguru
2026-09-08 09:15:30
(18 hours ago)
Restricted File Access Attempt. Matched phrase ".env" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 09:12:29
(18 hours ago)
(mod_security) mod_security (id:243420) triggered by 136.110.88.7 (7.88.110.136.bc.googleusercontent ...
show more
(mod_security) mod_security (id:243420) triggered by 136.110.88.7 (7.88.110.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 05:12:22.450635 2026] [security2:error] [pid 32516:tid 32516] [client 136.110.88.7:54284] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "ARGS:raw??" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||api.chinookdrivingschoolcalgary.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "api.chinookdrivingschoolcalgary.com"] [uri "/.env"] [unique_id "ap_RdujSSIUWeG8I6fa17wAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 08:49:52
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.110.88.7 (7.88.110.136.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 136.110.88.7 (7.88.110.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 04:49:45.541149 2026] [security2:error] [pid 15549:tid 15549] [client 136.110.88.7:48000] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.bonvivantorganics.com"] [uri "/@fs/.env"] [unique_id "ap_MKQfl4S0W_A79tb556QAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
javierin
2026-09-08 08:05:31
(19 hours ago)
136.110.88.7 - regalo-para-perro.es - - [08/Sep/2026:08:05:30 +0000] "GET /@fs/etc/passwd?raw?? HTTP ...
show more
136.110.88.7 - regalo-para-perro.es - - [08/Sep/2026:08:05:30 +0000] "GET /@fs/etc/passwd?raw?? HTTP/1.1" 404 178 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko; compatible; PerplexityBot/1.0; +https://perplexity.ai/perplexitybot) Chrome/114.0.5458.6 Safari/537.36"
136.110.88.7 - regalo-para-perro.es - - [08/Sep/2026:08:05:30 +0000] "GET /@fs/..%252f..%252f..%252f..%252f..%252fproc/self/environ?raw?? HTTP/1.1" 404 117 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; Perplexity-User/1.0; +https://perplexity.ai/perplexity-user"
...
show less
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-08 07:58:24
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.110.88.7 (7.88.110.136.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 136.110.88.7 (7.88.110.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 03:58:16.543268 2026] [security2:error] [pid 3195808:tid 3195808] [client 136.110.88.7:31442] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.johnprimerano.com"] [uri "/@fs/app/.env"] [unique_id "ap_AGE4lz1RFkRGvYqpdqgAAAC8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 06:31:08
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.110.88.7 (7.88.110.136.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 136.110.88.7 (7.88.110.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 02:31:00.716562 2026] [security2:error] [pid 19238:tid 19238] [client 136.110.88.7:61726] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.theledman.rotarymagnetics.com"] [uri "/@fs/src/.env"] [unique_id "ap-rpB_Re96M2x9R-WZFnQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
macrob
2026-09-08 06:11:50
(21 hours ago)
2026/09/08 06:11:49 [error] 3640630#3640630: *569516693 access forbidden by rule, client: 136.110.88 ...
show more
2026/09/08 06:11:49 [error] 3640630#3640630: *569516693 access forbidden by rule, client: 136.110.88.7, server: fn.binixo.es, request: "GET /@fs/home/ec2-user/.aws/credentials?raw?? HTTP/2.0", host: "boostika.org"
2026/09/08 06:11:49 [error] 3640631#3640631: *569516980 access forbidden by rule, client: 136.110.88.7, server: fn.binixo.es, request: "GET /@fs/.env.development?raw?? HTTP/2.0", host: "boostika.org"
2026/09/08 06:11:49 [error] 3640631#3640631: *569516982 access forbidden by rule, client: 136.110.88.7, server: fn.binixo.es, request: "GET /@fs/home/ubuntu/.aws/credentials?raw?? HTTP/2.0", host: "boostika.org"
...
show less
Web App Attack