🇫🇷
Baking333
2026-09-06 16:53:35
(2 hours ago)
[redacted] 136.118.236.213 - - [06/Sep/2026:17:53:32 +0100] "GET /.github/.env HTTP/1.1" 302 1554 0/ ...
show more
[redacted] 136.118.236.213 - - [06/Sep/2026:17:53:32 +0100] "GET /.github/.env HTTP/1.1" 302 1554 0/97800 "-" "Mozilla/5.0 (compatible; Google-Extended; +http://[redacted]/[redacted])" [redacted] 136.118.236.213 - - [06/Sep/2026:17:53:34 +0100] "GET / HTTP/1.1" 200 9122 0/141090 "https://[redacted]/.github/.env" "Mozilla/5.0 (compatible; Google-Extended; +http://[redacted]/[redacted])"
show less
Bad Web Bot
Web App Attack
Anonymous
2026-09-06 15:30:07
(3 hours ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack
🇳🇱
Savvii
2026-09-06 14:54:48
(4 hours ago)
20 attempts against mh-misbehave-ban on sun
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
macrob
2026-09-06 14:44:50
(4 hours ago)
2026/09/06 14:44:48 [error] 2274825#2274825: *563250589 access forbidden by rule, client: 136.118.23 ...
show more
2026/09/06 14:44:48 [error] 2274825#2274825: *563250589 access forbidden by rule, client: 136.118.236.213, server: fastcredit.net.ua, request: "GET /static//home/user/.env HTTP/2.0", host: "fastcredit.net.ua"
2026/09/06 14:44:48 [error] 2274824#2274824: *563225995 access forbidden by rule, client: 136.118.236.213, server: fastcredit.net.ua, request: "GET /static//app/.env HTTP/2.0", host: "fastcredit.net.ua"
2026/09/06 14:44:48 [error] 2274822#2274822: *563250598 access forbidden by rule, client: 136.118.236.213, server: fastcredit.net.ua, request: "GET /.//.env HTTP/2.0", host: "fastcredit.net.ua"
...
show less
Web App Attack
🇧🇪
cmbplf
2026-09-06 13:56:13
(5 hours ago)
237 requests with url.path */@fs/*
Brute-Force
Bad Web Bot
🇫🇷
Baking333
2026-09-06 12:43:36
(6 hours ago)
[redacted] 136.118.236.213 - - [06/Sep/2026:13:43:34 +0100] "GET /.git/HEAD HTTP/1.1" 302 1549 0/447 ...
show more
[redacted] 136.118.236.213 - - [06/Sep/2026:13:43:34 +0100] "GET /.git/HEAD HTTP/1.1" 302 1549 0/44768 "-" "DuckAssistBot/1.1 (https://[redacted]/duckassistbot)" [redacted] 136.118.236.213 - - [06/Sep/2026:13:43:34 +0100] "GET /.aws/credentials HTTP/1.1" 302 6768 0/54145 "-" "Mozilla/5.0 (compatible; Hunyuan/1.0; +https://[redacted]/)"
show less
Bad Web Bot
Web App Attack
🇪🇸
el-brujo
2026-09-06 10:43:33
(8 hours ago)
136.118.236.213 - - [06/Sep/2026:12:43:32 +0200] "GET /rclone.conf HTTP/2.0" 404 15989 "-" "Mozilla/ ...
show more
136.118.236.213 - - [06/Sep/2026:12:43:32 +0200] "GET /rclone.conf HTTP/2.0" 404 15989 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36 Edg/149.0.0.0"
136.118.236.213 - - [06/Sep/2026:12:43:32 +0200] "GET /.oci/sessions/DEFAULT/token HTTP/2.0" 404 15989 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36 Edg/149.0.0.0"
136.118.236.213 - - [06/Sep/2026:12:43:32 +0200] "GET /z9x8c7v6b5-debug-trigger-www.elhacker.net HTTP/2.0" 404 15989 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36 Edg/149.0.0.0"
136.118.236.213 - - [06/Sep/2026:12:43:32 +0200] "GET /@fs/..%252f..%252f..%252f..%252f..%252fproc/self/environ?raw?? HTTP/2.0" 404 15989 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36 Edg/149.0.0.0"
...
show less
Web App Attack
Hacking
🇸🇬
Cloudkul Cloudkul
2026-09-06 10:43:11
(8 hours ago)
Attempted Not Found (404 status code) requests on our application, more than 30% of their total requ ...
show more
Attempted Not Found (404 status code) requests on our application, more than 30% of their total requests.
show less
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 10:39:31
(8 hours ago)
(mod_security) mod_security (id:949110) triggered by 136.118.236.213 (213.236.118.136.bc.googleuserc ...
show more
(mod_security) mod_security (id:949110) triggered by 136.118.236.213 (213.236.118.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 06:39:27.618945 2026] [security2:error] [pid 15474:tid 15474] [client 136.118.236.213:35856] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "advancedrentalandservice.com"] [uri "/z9x8c7v6b5-debug-trigger-advancedrentalandservice.com"] [unique_id "ap1C300blVkZRtB2tV6E4gAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Savvii
2026-09-06 10:07:19
(8 hours ago)
20 attempts against mh-misbehave-ban on ethyl
Brute-Force
Bad Web Bot
Web App Attack
🇨🇭
zynex
2026-09-06 10:07:02
(8 hours ago)
URL Probing: /.env
Web App Attack
🇩🇪
Jarda_H
2026-09-06 09:36:39
(9 hours ago)
http-probing
Web App Attack
🇩🇪
LRob
2026-09-06 09:04:35
(10 hours ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /rclone.conf (+1 more) | 2026-09-06 09:04 UTC
show less
Hacking
Web App Attack
🇫🇷
Catalin Negru
2026-09-06 09:03:07
(10 hours ago)
Recidive ban by fail2ban on server.blackbit.ro
Brute-Force
🇳🇱
Savvii
2026-09-06 08:56:42
(10 hours ago)
20 attempts against mh-misbehave-ban on soil
Brute-Force
Bad Web Bot
Web App Attack