This IP address has been reported a total of
18
times from
15 distinct
sources.
136.117.1.193 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
WordPress poking using a SONY ERICSSON Z800... YEAH RIGHT!
136.117.1.193 443 - [10/Jun/2026:20:05:5 ...
show moreWordPress poking using a SONY ERICSSON Z800... YEAH RIGHT!
136.117.1.193 443 - [10/Jun/2026:20:05:55 +0000] "GET /wp-json/gravitysmtp/v1/settings HTTP/1.1" 404 5969 "-" "Mozilla/5.0 (iPad; CPU OS 12_0 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/12.0 Mobile/15E148 Safari/604.1"
136.117.1.193 443 - [10/Jun/2026:20:05:55 +0000] "GET /wp-json/gravitysmtp/v1/config HTTP/1.1" 404 5969 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_12_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3770.100 Safari/537.36"
136.117.1.193 443 - [10/Jun/2026:20:05:55 +0000] "GET /wp-json/gravitysmtp/v1/tests/mock-data HTTP/1.1" 404 5969 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_13_3) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.100 Safari/537.36"
136.117.1.193 443 - [10/Jun/2026:20:05:55 +0000] "GET /wp-json/wp/v2/settings HTTP/1.1" 404 5969 "-" "SonyEricssonZ800/R1Y Browser/SEMC-Browser/4.1 Profile/MIDP-2.0 Configuration/CLDC-1.1 UP.Link/6.3.0.0.0"
show less
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 136.117.1.193 (US/United States/193.1 ...
show more(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 136.117.1.193 (US/United States/193.1.117.136.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
[TueJun0923:12:05.9778772026][security2:error][pid3513372:tid3513418][client136.117.1.193:0]ModSecur ...
show more[TueJun0923:12:05.9778772026][security2:error][pid3513372:tid3513418][client136.117.1.193:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"assmra.org\"][uri\"/wp-json/gravitysmtp/v1/tests/mock-data\"][unique_id\"aiiBpcl5-0Uiv77dW3a-NwAAABQ\"]
show less
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 136.117.1.193 (US/Un ...
show more(apache-useragents) Failed apache-useragents trigger with match [redacted] from 136.117.1.193 (US/United States/193.1.117.136.bc.googleusercontent.com)
show less
[MonJun0819:29:57.1847392026][security2:error][pid1590354:tid1590524][client136.117.1.193:0]ModSecur ...
show more[MonJun0819:29:57.1847392026][security2:error][pid1590354:tid1590524][client136.117.1.193:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"event4pro.ch.136-243-54-122.cpanel.site\"][uri\"/wp-json/gravitysmtp/v1/tests/mock-data\"][unique_id\"aib8FVNm6lAbKsBcOEplhAAAAMk\"]
show less