๐ช๐ธ
robotstxt
2026-09-30 16:47:20
(22 minutes ago)
136.111.19.251 - - [30/Sep/2026:16:46:18 +0000] "-" 400 193 "-" "-" "-" edge="136.111.19.251"
136.11 ...
show more
136.111.19.251 - - [30/Sep/2026:16:46:18 +0000] "-" 400 193 "-" "-" "-" edge="136.111.19.251"
136.111.19.251 - - [30/Sep/2026:16:46:19 +0000] "-" 400 193 "-" "-" "-" edge="136.111.19.251"
136.111.19.251 - - [30/Sep/2026:16:46:19 +0000] "-" 400 193 "-" "-" "-" edge="136.111.19.251"
136.111.19.251 - - [30/Sep/2026:16:46:19 +0000] "-" 400 193 "-" "-" "-" edge="136.111.19.251"
136.111.19.251 - - [30/Sep/2026:16:46:19 +0000] "-" 400 193 "-" "-" "-" edge="136.111.19.251"
...
show less
Web Spam
Web App Attack
๐ฉ๐ช
Dominik Lysiak
2026-09-30 16:45:11
(24 minutes ago)
136.111.19.251 - - [30/Sep/2026:18:45:09 +0200] "GET / HTTP/2.0" 401 574 "-" "Mozilla/5.0 (Windows N ...
show more
136.111.19.251 - - [30/Sep/2026:18:45:09 +0200] "GET / HTTP/2.0" 401 574 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36"
136.111.19.251 - - [30/Sep/2026:18:45:09 +0200] "GET /5jo9r6vqawyp0fb7slth HTTP/2.0" 401 172 "-" "Mozilla/5.0 (compatible; ChatGLM-Spider/1.0; +https://zhipuai.cn/)"
136.111.19.251 - - [30/Sep/2026:18:45:09 +0200] "GET /y8ld3opk5fiqnxa8uvq4 HTTP/2.0" 401 172 "-" "Mozilla/5.0 (compatible; cohere-ai; +https://cohere.com/crawler)"
136.111.19.251 - - [30/Sep/2026:18:45:09 +0200] "GET /z9x8c7v6b5-debug-trigger-docker.campertrader.org HTTP/2.0" 401 172 "-" "DuckAssistBot/1.1 (https://duckduckgo.com/duckassistbot)"
136.111.19.251 - - [30/Sep/2026:18:45:09 +0200] "POST / HTTP/2.0" 401 172 "-" "Mozilla/5.0 (compatible; Bytespider; [email protected] ) AppleWebKit/537.36"
136.111.19.251 - - [30/Sep/2026:18:45:09 +0200] "GET /model/info HTTP/2.0" 401 172 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, l
...
show less
Web App Attack
๐ฌ๐ง
Comberton
2026-09-30 16:01:34
(1 hour ago)
Ban via by F2B interproj-org-access jail
Brute-Force
๐ฉ๐ช
macrob
2026-09-30 15:44:46
(1 hour ago)
2026/09/30 15:44:45 [error] 1318204#1318204: *1683700 access forbidden by rule, client: 136.111.19.2 ...
show more
2026/09/30 15:44:45 [error] 1318204#1318204: *1683700 access forbidden by rule, client: 136.111.19.251, server: fn.binixo.es, request: "GET /dist/.vite/manifest.json HTTP/2.0", host: "careers.wynspire.org"
2026/09/30 15:44:45 [error] 1318205#1318205: *1683716 access forbidden by rule, client: 136.111.19.251, server: fn.binixo.es, request: "GET /config/env/aws_credentials.env HTTP/2.0", host: "careers.wynspire.org"
2026/09/30 15:44:45 [error] 1318205#1318205: *1683702 access forbidden by rule, client: 136.111.19.251, server: fn.binixo.es, request: "GET /.env.development?raw HTTP/2.0", host: "careers.wynspire.org"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 14:46:44
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.111.19.251 (251.19.111.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.111.19.251 (251.19.111.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 10:46:36.412448 2026] [security2:error] [pid 24421:tid 24421] [client 136.111.19.251:44036] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "flicra140.org"] [uri "/assets../.env"] [unique_id "ar0gzPUsdaXypbWqtzGddAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 14:13:06
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.111.19.251 (251.19.111.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.111.19.251 (251.19.111.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 10:13:03.279575 2026] [security2:error] [pid 17377:tid 17377] [client 136.111.19.251:43802] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.danzadance.org"] [uri "/api/system/fileView"] [unique_id "ar0Y79MG9lYCSCmsFFiFhAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-30 14:03:13
(3 hours ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-30 13:32:49
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.111.19.251 (251.19.111.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.111.19.251 (251.19.111.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 09:32:42.910261 2026] [security2:error] [pid 28345:tid 28345] [client 136.111.19.251:49068] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fccemetery.org"] [uri "/media../.env"] [unique_id "ar0Pem5pbcU6jspmO5EyGAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Blexyel
2026-09-30 12:55:35
(4 hours ago)
136.111.19.251 - - [30/Sep/2026:14:55:35 +0200] "GET /.git/config HTTP/1.1" 403 10 "-" "DuckAssistBo ...
show more
136.111.19.251 - - [30/Sep/2026:14:55:35 +0200] "GET /.git/config HTTP/1.1" 403 10 "-" "DuckAssistBot/1.1 (https://duckduckgo.com/duckassistbot)" "dedi.pingusmc.org"
...
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 12:45:53
(4 hours ago)
(mod_security) mod_security (id:949110) triggered by 136.111.19.251 (251.19.111.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:949110) triggered by 136.111.19.251 (251.19.111.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 08:45:49.684958 2026] [security2:error] [pid 12049:tid 12049] [client 136.111.19.251:33622] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "www.freedrm.org"] [uri "/@fs/src/.env"] [unique_id "ar0EfSxf2dGRShVp2d78jgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Octopuce
2026-09-30 11:26:50
(5 hours ago)
Aggressive web search of vulnerable pages: /uploads../.env /build../.env /images../.env /img../.env ...
show more
Aggressive web search of vulnerable pages: /uploads../.env /build../.env /images../.env /img../.env /assets../.env ...
show less
Web App Attack
Anonymous
2026-09-30 11:20:08
(5 hours ago)
| Multiple common web attacks from same source ip. (multiple servers)
Web App Attack
Hacking
SQL Injection
๐ฉ๐ช
updown.io
2026-09-30 11:02:16
(6 hours ago)
{"level":"info","ts":1790766132.8297887,"logger":"http.log.access.log1","msg":"handled request","req ...
show more
{"level":"info","ts":1790766132.8297887,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"136.111.19.251","remote_port":"38990","client_ip":"136.111.19.251","proto":"HTTP/2.0","method":"GET","host":"edu.status.ntpu.org","uri":"/server.key","headers":{"User-Agent":["Mozilla/5.0 (compatible; Baiduspider/2.0; +http://www.baidu.com/search/spider.html)"],"Accept":["*/*"],"Cookie":["REDACTED"],"Accept-Encoding":["gzip"],"X-Middleware-Subrequest":["src/middleware:nowaf:src/middleware:src/middleware:src/middleware:src/middleware:middleware:middleware:nowaf:middleware:middleware:middleware:pages/_middleware"],"X-Nextjs-Data":["1"]},"tls":{"resumed":false,"version":772,"cipher_suite":4865,"proto":"h2","server_name":"edu.status.ntpu.org","ech":false}},"bytes_read":0,"user_id":"","duration":0.000651463,"size":0,"status":429,"resp_headers":{"Server":["Caddy"],"Alt-Svc":["h3=\":443\"; ma=2592000"],"Retry-After":["1"]}}
{"level":"info","ts":1790766132.8300724,"logger":"h
...
show less
DDoS Attack
Web App Attack
๐ณ๐ฑ
melroy89
2026-09-30 11:01:18
(6 hours ago)
136.111.19.251 - - [30/Sep/2026:13:01:07 +0200] "GET /assets/manifest.json HTTP/2.0" 403 64 "-" "Mo ...
show more
136.111.19.251 - - [30/Sep/2026:13:01:07 +0200] "GET /assets/manifest.json HTTP/2.0" 403 64 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36 Edg/153.0.0.0" "melroy.org" 0.000
136.111.19.251 - - [30/Sep/2026:13:01:07 +0200] "GET /model/info HTTP/2.0" 403 93 "-" "DuckAssistBot/1.1 (https://duckduckgo.com/duckassistbot)" "melroy.org" 0.000
136.111.19.251 - - [30/Sep/2026:13:01:07 +0200] "GET /manifest.json HTTP/2.0" 404 196 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36 Edg/153.0.0.0" "melroy.org" 0.000
136.111.19.251 - - [30/Sep/2026:13:01:07 +0200] "GET /z9x8c7v6b5-debug-trigger-melroy.org HTTP/2.0" 403 93 "-" "Mozilla/5.0 (compatible; Bravebot/1.0; +https://brave.com/search/)" "melroy.org" 0.001
136.111.19.251 - - [30/Sep/2026:13:01:07 +0200] "GET /fbrtacaot1fa19ntkror HTTP/2.0" 403 93 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWe
...
show less
Web App Attack
๐ซ๐ท
dynamix
2026-09-30 10:34:44
(6 hours ago)
Multiple WAF Violations
Web App Attack