This IP address has been reported a total of
24
times from
24 distinct
sources.
136.118.219.35 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
http-probing - IP: 136.118.219.35 - time="2026-09-23T18:40:59+02:00" level=info msg="(555f66b4f6a74 ...
show morehttp-probing - IP: 136.118.219.35 - time="2026-09-23T18:40:59+02:00" level=info msg="(555f66b4f6a74558bc11e3f93469658es8App0Mcc0TKEeje/crowdsec) crowdsecurity/http-probing by ip 136.118.219.35 (US/396982) : 4h ban on Ip 136.118.219.35" module=db
show less
[23/Sep/2026:19:35:14 +0300] -- 136.118.219.35 Ban reason: Scanner [SENSITIVE_FILES] | Request: GET ...
show more[23/Sep/2026:19:35:14 +0300] -- 136.118.219.35 Ban reason: Scanner [SENSITIVE_FILES] | Request: GET /webpack-stats.json HTTP/1.1
show less
Honeypot interaction [EXFIL]: llm_data_extraction on /v1/graphql. MITRE: T1552.001 (Credentials In F ...
show moreHoneypot interaction [EXFIL]: llm_data_extraction on /v1/graphql. MITRE: T1552.001 (Credentials In Files). UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36. Observed on sectrace.org honeypot surface โ automated scanner/attacker activity.
show less
Repeated exploit attempts, for example: /.env.php.bak /.env (HTTP/2.0 port 443, user agent: "Mozilla ...
show moreRepeated exploit attempts, for example: /.env.php.bak /.env (HTTP/2.0 port 443, user agent: "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36; compatible; OAI-SearchBot/1.4; +https://openai.com/searchbot")
show less