πΏπ¦
conure.sh
2026-10-09 12:00:07
(5 hours ago)
csagent: score 16.6: 404 noise floor x21, secrets grab x1, php 404 x1; 1 domain(s) in 10s
Web App Attack
π¬π§
Aetherweb Ark
2026-10-09 06:00:07
(11 hours ago)
(mod_security) mod_security (id:949110) triggered by 136.66.124.191 (US/United States/191.124.66.136 ...
show more
(mod_security) mod_security (id:949110) triggered by 136.66.124.191 (US/United States/191.124.66.136.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
π©πͺ
Holger
2026-10-09 06:00:05
(11 hours ago)
Bruteforce WebAttack
Brute-Force
Web App Attack
π§π¬
HighWay
2026-10-09 05:35:34
(12 hours ago)
136.66.124.191 - - [09/Oct/2026:05:35:30 +0000] "POST /graphql HTTP/1.1" 404 770 "https://vhelectron ...
show more
136.66.124.191 - - [09/Oct/2026:05:35:30 +0000] "POST /graphql HTTP/1.1" 404 770 "https://vhelectronics.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36"
136.66.124.191 - - [09/Oct/2026:05:35:30 +0000] "GET /kz5gq47l5mn4y4q6hu88 HTTP/1.1" 404 4758 "-" "Mozilla/5.0 (compatible; DeepSeekBot/1.0; +https://www.deepseek.com/)"
136.66.124.191 - - [09/Oct/2026:05:35:30 +0000] "GET /o20bn4naaz9wqtr53rc8 HTTP/1.1" 404 4758 "-" "Mozilla/5.0 (compatible; Qwenbot/1.0; +https://qwen.alibaba.com/)"
136.66.124.191 - - [09/Oct/2026:05:35:30 +0000] "POST /lib/terminal-xhr.php HTTP/1.1" 404 4759 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot"
136.66.124.191 - - [09/Oct/2026:05:35:31 +0000] "POST /api/graphql HTTP/1.1" 404 770 "https://vhelectronics.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36"
136.66.
...
show less
Bad Web Bot
Web App Attack
π³π±
thedreamer.nl
2026-10-09 05:20:35
(12 hours ago)
136.66.124.191 - - [09/Oct/2026:07:18:12 +0200] "GET /webpack-stats.json HTTP/2.0" 404 170 "-" "Mozi ...
show more
136.66.124.191 - - [09/Oct/2026:07:18:12 +0200] "GET /webpack-stats.json HTTP/2.0" 404 170 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36 Edg/153.0.0.0" "US" "The Dalles" "45.59990" "-121.18710"
136.66.124.191 - - [09/Oct/2026:07:18:12 +0200] "GET /z9x8c7v6b5-debug-trigger-thedreamer.nl HTTP/2.0" 404 107 "-" "Mozilla/5.0 (compatible; YouBot/1.0; +https://you.com/bot)" "US" "The Dalles" "45.59990" "-121.18710"
136.66.124.191 - - [09/Oct/2026:07:18:12 +0200] "GET /dist/manifest.json HTTP/2.0" 404 170 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36 Edg/153.0.0.0" "US" "The Dalles" "45.59990" "-121.18710"
136.66.124.191 - - [09/Oct/2026:07:18:12 +0200] "GET /login HTTP/2.0" 404 170 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36 Edg/153.0.0.0" "US" "The Dalles" "45.59
...
show less
Brute-Force
Bad Web Bot
π¬π§
openstrike.co.uk
2026-10-09 05:15:40
(12 hours ago)
124 attacks on env grabbing URLs (type 2), password/key grabbing URLs, directory traversals, PHP URL ...
show more
124 attacks on env grabbing URLs (type 2), password/key grabbing URLs, directory traversals, PHP URLs, config grabbing URLs (type 2), shell probes, env grabbing URLs:
GET /userfiles/x?path=../../../../proc/self/environ HTTP/1.1
GET /__vite_rsc_findSourceMapURL?filename=file:///root/.ssh/id_rsa&environmentName=rsc HTTP/1.1
GET /..%2f..%2f.env HTTP/1.1
POST /index.php?-d+allow_url_include%3don+-d+auto_prepend_file%3dphp://input HTTP/1.1
GET /config/firebase-admin.json HTTP/1.1
POST /cgi-bin/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/bin/sh HTTP/1.1
GET /.env.old HTTP/1.1
show less
Hacking
Web App Attack
Anonymous
2026-10-09 05:05:06
(12 hours ago)
IP matched detection query Detection of too many failed responses.
Brute-Force
Bad Web Bot
Hacking
πΊπΈ
TPI-Abuse
2026-10-09 05:00:24
(12 hours ago)
(mod_security) mod_security (id:210730) triggered by 136.66.124.191 (191.124.66.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 136.66.124.191 (191.124.66.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 09 01:00:08.084562 2026] [security2:error] [pid 27658:tid 27658] [client 136.66.124.191:46290] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||shannonmatter.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "shannonmatter.com"] [uri "/z9x8c7v6b5-debug-trigger-shannonmatter.com"] [unique_id "ash02ACcm4Kl61nON42IZgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-09 04:49:30
(13 hours ago)
Blocked by fail2ban on a public web server.
Web App Attack
π³π±
Savvii
2026-10-09 04:23:45
(13 hours ago)
20 attempts against mh-misbehave-ban on ethyl
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
EGP Abuse Dept
2026-10-09 04:17:29
(13 hours ago)
Scanning for web/db/file exploits on www.plompinstallatietechniek.nl
SQL Injection
Bad Web Bot
Web App Attack
π©πͺ
ger-stg-sifi1
2026-10-09 04:13:18
(13 hours ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
πΊπΈ
mnsf
2026-10-09 04:05:27
(13 hours ago)
Too many Status 40X (16)
Brute-Force
Web App Attack
π©πͺ
lolyay
2026-10-09 03:57:16
(13 hours ago)
136.66.124.191 - - [09/Oct/2026:03:57:15 +0000] "GET /dist/.vite/manifest.json HTTP/1.1" 403 195 "-" ...
show more
136.66.124.191 - - [09/Oct/2026:03:57:15 +0000] "GET /dist/.vite/manifest.json HTTP/1.1" 403 195 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36"
136.66.124.191 - - [09/Oct/2026:03:57:15 +0000] "GET /.vite/manifest.json HTTP/1.1" 403 195 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36"
...
show less
Web App Attack
Bad Web Bot
π«π·
masterguru
2026-10-09 03:53:57
(14 hours ago)
Too much 404 requests in 1 minute. Operator GE matched 10 at IP:block_script. (46020-193)
Hacking