๐บ๐ธ
TPI-Abuse
2026-10-08 19:39:08
(2 minutes ago)
(mod_security) mod_security (id:210492) triggered by 136.85.40.71 (71.40.85.136.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 136.85.40.71 (71.40.85.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 15:39:02.007753 2026] [security2:error] [pid 775:tid 775] [client 136.85.40.71:32848] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dd214chronicle.org"] [uri "/%2E%2E/%2E%2E/%2E%2E/%2E%2E/.env"] [unique_id "asfxViZLmoafuFa4tOQLpQAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
IndigoRidge
2026-10-08 19:37:53
(3 minutes ago)
136.85.40.71 - - [08/Oct/2026:15:37:50 -0400] "GET /.ssh/id_rsa HTTP/1.1" 404 38274 "-" "Mozilla/5.0 ...
show more
136.85.40.71 - - [08/Oct/2026:15:37:50 -0400] "GET /.ssh/id_rsa HTTP/1.1" 404 38274 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot"
136.85.40.71 - - [08/Oct/2026:15:37:52 -0400] "GET /@fs/app/.env?raw?? HTTP/1.1" 403 5477 "-" "Mozilla/5.0 (compatible; DeepSeekBot/1.0; +https://www.deepseek.com/)"
136.85.40.71 - - [08/Oct/2026:15:37:52 -0400] "GET /@fs/src/.env?raw?? HTTP/1.1" 403 5477 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot"
...
show less
Web App Attack
Anonymous
2026-10-08 19:35:01
(6 minutes ago)
suspicious request in access.log
Web App Attack
๐ซ๐ท
ACE-INFORMATIQUE.NC
2026-10-08 19:00:11
(41 minutes ago)
Web App Attack blocked by Fail2ban
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-10-08 18:57:15
(44 minutes ago)
This IP was detected by CrowdSec triggering crowdsecurity/grafana-cve-2021-43798
Web App Attack
Hacking
๐ฉ๐ช
big-cloud.nl
2026-10-08 18:50:10
(51 minutes ago)
Try to access /public../.env
Web App Attack
๐ณ๐ฑ
debestelapp
2026-10-08 18:50:07
(51 minutes ago)
Web App Attack
๐ฌ๐ง
venus.launch.bz
2026-10-08 18:46:53
(54 minutes ago)
(mod_security) mod_security triggered on hostname [redacted] 136.85.40.71 (SG/Singapore/71.40.85.136 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 136.85.40.71 (SG/Singapore/71.40.85.136.bc.googleusercontent.com)
show less
SQL Injection
๐ฉ๐ช
BlueWire Hosting
2026-10-08 18:46:02
(55 minutes ago)
Aggressive scanning resulting into 404
Bad Web Bot
๐ณ๐ฑ
Savvii
2026-10-08 18:45:18
(55 minutes ago)
20 attempts against mh-misbehave-ban on nobletest
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
mail.avx.gr
2026-10-08 18:27:04
(1 hour ago)
(ai-bots) AI crawler AI agent detected from 136.85.40.71 (SG/Singapore/-/Singapore/71.40.85.136.bc. ...
show more
(ai-bots) AI crawler AI agent detected from 136.85.40.71 (SG/Singapore/-/Singapore/71.40.85.136.bc.googleusercontent.com)
show less
Hacking
๐ฆ๐บ
aranguren.org
2026-10-08 18:16:38
(1 hour ago)
136.85.40.71 - - [09/Oct/2026:05:16:38 +1100] "GET /static/manifest.json HTTP/2.0" 404 985 "-" "Mozi ...
show more
136.85.40.71 - - [09/Oct/2026:05:16:38 +1100] "GET /static/manifest.json HTTP/2.0" 404 985 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/151.0.0.0 Mobile Safari/537.36"
136.85.40.71 - - [09/Oct/2026:05:16:38 +1100] "GET /webpack-stats.json HTTP/2.0" 404 985 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/151.0.0.0 Mobile Safari/537.36"
136.85.40.71 - - [09/Oct/2026:05:16:38 +1100] "GET /r7u4upqurxzlgpusq9sn HTTP/2.0" 404 985 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; GPTBot/1.4; +https://openai.com/gptbot"
...
show less
Bad Web Bot
๐ณ๐ฑ
e.fierstra
2026-10-08 18:13:37
(1 hour ago)
excessive HTTP 404 errors
Bad Web Bot
๐ซ๐ท
dynamix
2026-10-08 18:13:10
(1 hour ago)
Multiple WAF Violations
Web App Attack
๐ซ๐ฎ
as211431.net
2026-10-08 18:12:02
(1 hour ago)
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/2 (POST method ...
show more
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/2 (POST method)
Endpoint: /index.php
UA: Mozilla/5.0 (compatible; xAI-Grok/1.0; +https://x.ai/)
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot