Anonymous
2026-10-04 22:30:04
(15 hours ago)
CrowdSec decision: crowdsecurity/http-path-traversal-probing (origin: crowdsec)
Port Scan
๐ณ๐ฑ
GabrielJST
2026-10-04 21:46:42
(16 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 136.66.12.129 (US/United States/129.12. ...
show more
(mod_security) mod_security triggered on hostname [redacted] 136.66.12.129 (US/United States/129.12.66.136.bc.googleusercontent.com): (CF_ENABLE)
show less
SQL Injection
๐ฉ๐ช
LRob
2026-10-04 21:42:00
(16 hours ago)
Crawler ignoring refusals | ua: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Claud ...
show more
Crawler ignoring refusals | ua: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Claude-User/1.0; [email protected] ), Mozilla/5.0 (compatible; MistralAI-User/1.0; +https://mistral.ai/), Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36 (+12 more) | path: /.htpasswd, /lib/terminal-xhr.php, /build/manifest.json (+17 more)
show less
Bad Web Bot
Anonymous
2026-10-04 21:36:25
(16 hours ago)
136.66.12.129 - - [04/Oct/2026:23:36:16 +0200] "GET /z9x8c7v6b5-debug-trigger-crypcool.com HTTP/1.1" ...
show more
136.66.12.129 - - [04/Oct/2026:23:36:16 +0200] "GET /z9x8c7v6b5-debug-trigger-crypcool.com HTTP/1.1" 404 30024
136.66.12.129 - - [04/Oct/2026:23:36:17 +0200] "POST /lib/terminal-xhr.php HTTP/1.1" 404 29386
136.66.12.129 - - [04/Oct/2026:23:36:16 +0200] "GET /1lke9h32als7k5hy75tr HTTP/1.1" 404 30024
136.66.12.129 - - [04/Oct/2026:23:36:17 +0200] "GET /dist/manifest.json HTTP/1.1" 404 30024
136.66.12.129 - - [04/Oct/2026:23:36:17 +0200] "GET /dist/.vite/manifest.json HTTP/1.1" 404 30024
136.66.12.129 - - [04/Oct/2026:23:36:17 +0200] "GET /build/manifest.json HTTP/1.1" 404 30024
136.66.12.129 - - [04/Oct/2026:23:36:17 +0200] "GET /wq7p2blekz2zg82j3w3z HTTP/1.1" 404 30024
136.66.12.129 - - [04/Oct/2026:23:36:19 +0200] "POST /graphql HTTP/1.1" 404 29386
136.66.12.129 - - [04/Oct/2026:23:36:21 +0200] "POST /api/graphql HTTP/1.1" 404 27846
136.66.12.129 - - [04/Oct/2026:23:36:22 +0200] "GET /@fs/home/ubuntu/.aws/credentials?raw?? HTTP/1.1" 404 27846
...
show less
Web Spam
Web App Attack
๐ช๐ธ
robotstxt
2026-10-04 21:02:31
(17 hours ago)
136.66.12.129 - - [04/Oct/2026:21:01:30 +0000] "GET /wp-content/cache/autoptimize/js/autoptimize_ef9 ...
show more
136.66.12.129 - - [04/Oct/2026:21:01:30 +0000] "GET /wp-content/cache/autoptimize/js/autoptimize_ef9e7d371c10cd56929782c27cd5ffaa.js HTTP/2.0" 403 165 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36" "-" edge="136.66.12.129"
136.66.12.129 - - [04/Oct/2026:21:01:30 +0000] "GET /wp-includes/js/jquery/jquery.min.js HTTP/2.0" 403 7739 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36" "-" edge="136.66.12.129"
136.66.12.129 - - [04/Oct/2026:21:01:31 +0000] "GET /wp-content/plugins/autoptimize/classes/external/js/lazysizes.min.js HTTP/2.0" 403 7739 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36" "-" edge="136.66.12.129"
136.66.12.129 - - [04/Oct/2026:21:01:32 +0000] "GET /?51ca58=b9b890d5ef.js& HTTP/2.0" 403 2 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like G
...
show less
Web App Attack
๐บ๐ธ
mad-abuseip
2026-10-04 21:01:59
(17 hours ago)
SCORE:99 REASON:suspicious-score:103 | "POST /api/v1/node-load-method/customMCP HTTP/1.1" SCORE:99 ...
show more
SCORE:99 REASON:suspicious-score:103 | "POST /api/v1/node-load-method/customMCP HTTP/1.1" SCORE:99 REASON:suspicious-score:103 - "Mozilla/5.0 (compatible; Google-Extended; +http://www.google.com/bot.html)"
show less
Web App Attack
๐ซ๐ท
COMAITE
2026-10-04 20:52:03
(17 hours ago)
Common web attack from 136.66.12.129.
Web App Attack
๐ฌ๐ง
noise.agency
2026-10-04 20:40:18
(17 hours ago)
136.66.12.129 (US/United States/129.12.66.136.bc.googleusercontent.com), more than 30 Apache 404 hit ...
show more
136.66.12.129 (US/United States/129.12.66.136.bc.googleusercontent.com), more than 30 Apache 404 hits
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-10-04 20:37:36
(17 hours ago)
(mod_security) mod_security (id:210730) triggered by 136.66.12.129 (129.12.66.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 136.66.12.129 (129.12.66.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 16:37:29.133327 2026] [security2:error] [pid 3106903:tid 3106921] [client 136.66.12.129:32784] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||antidote-it.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "antidote-it.com"] [uri "/z9x8c7v6b5-debug-trigger-antidote-it.com"] [unique_id "asK5CebbZxYop7zoejZCawAAAQ8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-04 20:26:22
(17 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐ฎ๐น
VHosting
2026-10-04 20:25:03
(17 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ซ๐ท
dynamix
2026-10-04 20:19:05
(17 hours ago)
Multiple WAF Violations
Web App Attack