๐ฎ๐ณ
evicky2002
2026-09-23 06:00:01
(17 hours ago)
Confirmed malicious by STILWaters CTI platform (score=100, sources=1)
Hacking
Brute-Force
SSH
Anonymous
2026-09-23 03:13:46
(19 hours ago)
136.66.175.131 - - [23/Sep/2026:05:13:45 +0200] "GET /p0t1dv0f2clglsifco7a HTTP/2.0" 403 133 "-" "Mo ...
show more
136.66.175.131 - - [23/Sep/2026:05:13:45 +0200] "GET /p0t1dv0f2clglsifco7a HTTP/2.0" 403 133 "-" "Mozilla/5.0 (compatible; KimiBot/1.0; +https://kimi.ai/)"
136.66.175.131 - - [23/Sep/2026:05:13:45 +0200] "GET /au8ix49iwcn5fh9ie306 HTTP/2.0" 403 121 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot"
136.66.175.131 - - [23/Sep/2026:05:13:45 +0200] "GET /z9x8c7v6b5-debug-trigger-www.media.dornberger.it HTTP/2.0" 403 125 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.0 Safari/605.1.15 (Applebot/0.1)"
136.66.175.131 - - [23/Sep/2026:05:13:45 +0200] "POST / HTTP/2.0" 404 121 "-" "DuckAssistBot/1.1 (https://duckduckgo.com/duckassistbot)"
136.66.175.131 - - [23/Sep/2026:05:13:45 +0200] "POST /graphql HTTP/2.0" 403 194 "https://www.media.dornberger.it" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36 Edg/153.0.0.0"
...
show less
Brute-Force
SSH
๐ซ๐ท
Delta-shop
2026-09-23 02:44:51
(20 hours ago)
PrestaShop Security Module: Suspicious path detected (/.env)
Web App Attack
๐ฉ๐ช
ut-addicted.com
2026-09-23 02:26:32
(20 hours ago)
\[Wed Sep 23 04:26:29.920834 2026\] \[:error\] \[pid 28216:tid 140352461670144\] \[client 136.66.175 ...
show more
\[Wed Sep 23 04:26:29.920834 2026\] \[:error\] \[pid 28216:tid 140352461670144\] \[client 136.66.175.131:53908\] \[client 136.66.175.131\] ModSecurity: Access denied with code 403 \(phase 2\). Operator GE matched 5 at TX:anomaly_score. \[file "/usr/local/apache/modsecurity-owasp-latest/rules/REQUEST-949-BLOCKING-EVALUATION.conf"\] \[line "57"\] \[id "949110"\] \[msg "Inbound Anomaly Score Exceeded \(Total Score: 15\)"\] \[severity "CRITICAL"\] \[tag "application-multi"\] \[tag "language-multi"\] \[tag "platform-multi"\] \[tag "attack-generic"\] \[hostname "www.crx.it"\] \[uri "/"\] \[unique_id "arM41QNc0UjIWWcUnHigZAAAAJA"\]
show less
Brute-Force
Web App Attack
๐ฉ๐ช
maxpower
2026-09-23 01:57:51
(21 hours ago)
(junkbot) REGOLA 8 - Junk Bot Blocked 136.66.175.131 (US/United States/131.175.66.136.bc.googleuserc ...
show more
(junkbot) REGOLA 8 - Junk Bot Blocked 136.66.175.131 (US/United States/131.175.66.136.bc.googleusercontent.com): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 136.66.175.131 - - [23/Sep/2026:03:57:49 +0200] "GET /usm7s9pdyia5elsniwc2 HTTP/2.0" 404 6023 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; PerplexityBot/1.0; +https://perplexity.ai/perplexitybot)" "136.66.175.131" host=www.coiet.it
show less
Port Scan
๐ซ๐ท
Zundapper
2026-09-23 00:52:19
(22 hours ago)
136.66.175.131 - - [23/Sep/2026:02:52:18 +0200] "GET /signup HTTP/2.0" 404 167 "https://www.butterfl ...
show more
136.66.175.131 - - [23/Sep/2026:02:52:18 +0200] "GET /signup HTTP/2.0" 404 167 "https://www.butterflyz.it/signup" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36"
136.66.175.131 - - [23/Sep/2026:02:52:18 +0200] "GET /forgot-password HTTP/2.0" 404 167 "https://www.butterflyz.it/forgot-password" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36"
136.66.175.131 - - [23/Sep/2026:02:52:18 +0200] "GET /register HTTP/2.0" 404 167 "https://www.butterflyz.it/register" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36"
...
show less
Web App Attack
Port Scan
๐ณ๐ฑ
Savvii
2026-09-23 00:49:31
(22 hours ago)
20 attempts against mh-misbehave-ban on lunar
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Brict IT
2026-09-23 00:46:06
(22 hours ago)
Bad Web Bot
Web App Attack
๐ซ๐ท
[email protected]
2026-09-23 00:00:26
(23 hours ago)
PrestaShop Security Module: AbuseIPDB high confidence score AND local web-app-attack detected (Abuse ...
show more
PrestaShop Security Module: AbuseIPDB high confidence score AND local web-app-attack detected (AbuseIPDB score: 100% (cached))
show less
Web App Attack
๐ฉ๐ช
Lino Project
2026-09-22 22:41:43
(1 day ago)
136.66.175.131 - - [23/Sep/2026:00:41:39 +0200] "GET /build/manifest.json HTTP/2.0" 301 144 "-" "Moz ...
show more
136.66.175.131 - - [23/Sep/2026:00:41:39 +0200] "GET /build/manifest.json HTTP/2.0" 301 144 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36 Edg/153.0.0.0"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ฌ
naveeddaros
2026-09-22 21:44:03
(1 day ago)
HTTP Flood DDoS attack detected
Brute-Force
Bad Web Bot
๐ซ๐ท
dwmp
2026-09-22 21:31:27
(1 day ago)
[22/Sep/2026:23:31:26.886975 +0200] arLzrkkYDK-LzY2X2T0u8QAAAEY 136.66.175.131 36146 38.242.227.117 ...
show more
[22/Sep/2026:23:31:26.886975 +0200] arLzrkkYDK-LzY2X2T0u8QAAAEY 136.66.175.131 36146 38.242.227.117 7081
[22/Sep/2026:23:31:26.938067 +0200] arLzrkkYDK-LzY2X2T0u8wAAAEc 136.66.175.131 36174 38.242.227.117 7081
[22/Sep/2026:23:31:26.939838 +0200] arLzrkkYDK-LzY2X2T0u9AAAAE4 136.66.175.131 36178 38.242.227.117 7081
...
show less
Brute-Force
SSH
๐ฉ๐ช
maxpower
2026-09-22 21:26:33
(1 day ago)
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 136.66.175.131 (US/United States/131.175 ...
show more
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 136.66.175.131 (US/United States/131.175.66.136.bc.googleusercontent.com): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 136.66.175.131 - - [22/Sep/2026:23:26:26 +0200] "GET /@fs/home/ec2-user/.aws/credentials?raw?? HTTP/2.0" 429 41 "-" "Mozilla/5.0 (compatible; Amazonbot/0.1; +https://developer.amazon.com/support/amazonbot)" "136.66.175.131" host=www.abruzzotour.it
show less
Port Scan
๐ฎ๐น
Inartis
2026-09-22 21:22:31
(1 day ago)
136.66.175.131 - - [22/Sep/2026:23:22:31 +0200] "GET /admin%2F.env HTTP/2.0" 404 224 "-" "Mozilla/5. ...
show more
136.66.175.131 - - [22/Sep/2026:23:22:31 +0200] "GET /admin%2F.env HTTP/2.0" 404 224 "-" "Mozilla/5.0 (compatible; YiBot/1.0; +https://01.ai/)"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
maxpower
2026-09-22 21:01:40
(1 day ago)
(junkbot) REGOLA 8 - Junk Bot Blocked 136.66.175.131 (US/United States/131.175.66.136.bc.googleuserc ...
show more
(junkbot) REGOLA 8 - Junk Bot Blocked 136.66.175.131 (US/United States/131.175.66.136.bc.googleusercontent.com): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 136.66.175.131 - - [22/Sep/2026:23:01:37 +0200] "GET /asl51821234t6pdds8rz HTTP/2.0" 200 4814 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; PerplexityBot/1.0; +https://perplexity.ai/perplexitybot)" "136.66.175.131" host=abruzzotour.it
show less
Port Scan