๐จ๐ฟ
ptlab
2026-07-20 14:45:30
(1 hour ago)
Detected env_leak attack from WP-host.
Hacking
Web App Attack
Anonymous
2026-07-20 13:35:06
(2 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 136.66.36.40 (US/United States/40.36.66 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 136.66.36.40 (US/United States/40.36.66.136.bc.googleusercontent.com)
show less
SQL Injection
๐ฉ๐ช
rh24
2026-07-20 13:30:03
(2 hours ago)
Blacklisted for CAPTCHA_DOS_ALERT after 101 captcha requests
DDoS Attack
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-07-20 11:51:37
(4 hours ago)
136.66.36.40 - - [20/Jul/2026:14:51:35 +0300] "GET /.env HTTP/1.1" 404 650 "-" "CCBot/2.0 (https://c ...
show more
136.66.36.40 - - [20/Jul/2026:14:51:35 +0300] "GET /.env HTTP/1.1" 404 650 "-" "CCBot/2.0 (https://commoncrawl.org/faq/)"
136.66.36.40 - - [20/Jul/2026:14:51:36 +0300] "GET /api/.env HTTP/1.1" 404 702 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; Claude-SearchBot/1.0; +mailto:[email protected] "
...
show less
Web App Attack
Anonymous
2026-07-20 11:44:47
(4 hours ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
zam
2026-07-20 10:22:35
(5 hours ago)
136.66.36.40 - - [20/Jul/2026:10:22:28 +0000] "GET /.gitlab-ci.yml HTTP/1.1" 404 81186
136.66.36.40 ...
show more
136.66.36.40 - - [20/Jul/2026:10:22:28 +0000] "GET /.gitlab-ci.yml HTTP/1.1" 404 81186
136.66.36.40 - - [20/Jul/2026:10:22:29 +0000] "GET /.aws/config HTTP/1.1" 404 81186
136.66.36.40 - - [20/Jul/2026:10:22:29 +0000] "GET /.git-credentials HTTP/1.1" 404 81186
136.66.36.40 - - [20/Jul/2026:10:22:29 +0000] "GET /.git/config HTTP/1.1" 404 81186
136.66.36.40 - - [20/Jul/2026:10:22:29 +0000] "GET /.aws/credentials HTTP/1.1" 404 81186
{"log":"136.66.36.40 - - [20/Jul/2026:10:22:29 +0000] "GET /.env HTTP/1.1" 404 81186\n","st
show less
Web App Attack
๐บ๐ธ
Matthew Ping
2026-07-20 09:45:01
(6 hours ago)
ModSecurity rule 949110 triggered on dedicated. Web application attack blocked by CSF/LFD.
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-20 09:38:23
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.66.36.40 (40.36.66.136.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 136.66.36.40 (40.36.66.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 05:38:19.800734 2026] [security2:error] [pid 7331:tid 7331] [client 136.66.36.40:43228] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jolankagroup.com"] [uri "/.git/config"] [unique_id "al3si2hZ2oqejGST61dXTwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Savvii
2026-07-20 09:23:33
(6 hours ago)
20 attempts against mh-misbehave-ban on ozone
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
IRISIO
2026-07-20 09:08:14
(7 hours ago)
scans/SQL injection/spam posts : 143 queries
Web App Attack
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-07-20 08:23:15
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.66.36.40 (40.36.66.136.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 136.66.36.40 (40.36.66.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 04:23:10.892102 2026] [security2:error] [pid 953010:tid 953010] [client 136.66.36.40:36948] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.keysenterprise.com"] [uri "/.env.example"] [unique_id "al3a7uMGiMAjwNDH9mDyewAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
Dunham Support
2026-07-20 08:11:46
(8 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 136.66.36.40 (US/United States/40.36.66 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 136.66.36.40 (US/United States/40.36.66.136.bc.googleusercontent.com)
show less
SQL Injection
๐ฎ๐ฉ
Burayot
2026-07-20 07:51:14
(8 hours ago)
LF_MODSEC: (mod_security) mod_security (id:949110) triggered by 136.66.36.40 (US/United States/40.36 ...
show more
LF_MODSEC: (mod_security) mod_security (id:949110) triggered by 136.66.36.40 (US/United States/40.36.66.136.bc.googleusercontent.com): 1 in the last 3600 secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-20 07:33:11
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.66.36.40 (40.36.66.136.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 136.66.36.40 (40.36.66.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 03:33:05.611813 2026] [security2:error] [pid 30221:tid 30221] [client 136.66.36.40:45028] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.cameronwv.com"] [uri "/.git/config"] [unique_id "al3PMSaSW69TlaU86BZahAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Matthew Ping
2026-07-20 07:30:02
(8 hours ago)
ModSecurity rule 949110 triggered on dedicated4785. Web application attack blocked by CSF/LFD.
Web App Attack
Hacking