This IP address has been reported a total of
39
times from
24 distinct
sources.
136.85.52.11 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
United States of America
with 17
reports;
Netherlands
with 4
reports;
Germany
with 3
reports.
The most common categories in these recent reports were:
Web App Attack
33
times;
Brute-Force
23
times;
Bad Web Bot
20
times;
Port Scan
3
times;
DDoS Attack
2
times;
Other
3
times.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
COMODO WAF: URL file extension is restricted by policy. Match of "pmFromFile userdata_wl_extensions" ...
show moreCOMODO WAF: URL file extension is restricted by policy. Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. (210730-185)
show less
(mod_security) mod_security (id:210730) triggered by 136.85.52.11 (11.52.85.136.bc.googleusercontent ...
show more(mod_security) mod_security (id:210730) triggered by 136.85.52.11 (11.52.85.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 23:01:19.264150 2026] [security2:error] [pid 10712:tid 10712] [client 136.85.52.11:36198] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||glentraeger.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "glentraeger.com"] [uri "/z9x8c7v6b5-debug-trigger-glentraeger.com"] [unique_id "ashY_8F9RnRnpEF3uYCaSwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
Automated report: 4 malicious HTTP request(s) blocked by WAF/IPS on public web services. Requested: ...
show moreAutomated report: 4 malicious HTTP request(s) blocked by WAF/IPS on public web services. Requested: ["/static../.env","/api/system/fileView?file=/proc/self/environ","/media../.env"
show less
[FriOct0903:17:35.2705182026][security2:error][pid3135499:tid3135583][client136.85.52.11:0]ModSecuri ...
show more[FriOct0903:17:35.2705182026][security2:error][pid3135499:tid3135583][client136.85.52.11:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Patternmatch\"\(\?:queryintrospectionquery\?\|__schema\\\\\\\\\?{\?\(\?:querytype\|types\?\)\)\?\\\\\\\\{\"atREQUEST_BODY.[file\"/etc/apache2/conf.d/modsec_rules/10_asl_rules.conf\"][line\"234\"][id\"344378\"][rev\"2\"][msg\"Atomicorp.comWAFRules:GraphQLInjectionAttackattempt\"][data\"MatchedData:__schema{types{foundwithinREQUEST_BODY:{\\\\x22query\\\\x22:\\\\x22{__schema{types{namefields{nameargs{namedefaultvalue}}}}}\\\\x22}\"][severity\"CRITICAL\"][tag\"SQLi\"][hostname\"formet.ch\"][uri\"/graphql\"][unique_id\"ashAr9fSBZUwu8OSSFvp1AAAAdQ\"]\,referer:https://formet.ch
show less