๐ซ๐ท
SpaceHost-Server
2026-10-06 22:15:12
(12 minutes ago)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-06 20:33:27
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 136.90.51.138 (138.51.90.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.90.51.138 (138.51.90.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 16:33:19.534270 2026] [security2:error] [pid 13429:tid 13429] [client 136.90.51.138:41866] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htpasswd" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.xarq.es"] [uri "/.htpasswd"] [unique_id "asVbD04iJ41WwqqgeDCZ5QAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-10-06 20:11:00
(2 hours ago)
BAD BOT - Detected and Blocked.. Matched phrase "bytespider" at REQUEST_HEADERS:User-Agent. (1100000 ...
show more
BAD BOT - Detected and Blocked.. Matched phrase "bytespider" at REQUEST_HEADERS:User-Agent. (1100000-131)
show less
Bad Web Bot
๐ช๐ธ
robotstxt
2026-10-06 17:14:49
(5 hours ago)
136.90.51.138 - - [06/Oct/2026:17:13:51 +0000] "-" 400 193 "-" "-" "-" edge="136.90.51.138"
136.90.5 ...
show more
136.90.51.138 - - [06/Oct/2026:17:13:51 +0000] "-" 400 193 "-" "-" "-" edge="136.90.51.138"
136.90.51.138 - - [06/Oct/2026:17:13:51 +0000] "-" 400 193 "-" "-" "-" edge="136.90.51.138"
136.90.51.138 - - [06/Oct/2026:17:13:52 +0000] "-" 400 193 "-" "-" "-" edge="136.90.51.138"
136.90.51.138 - - [06/Oct/2026:17:13:52 +0000] "-" 400 193 "-" "-" "-" edge="136.90.51.138"
136.90.51.138 - - [06/Oct/2026:17:13:52 +0000] "-" 400 193 "-" "-" "-" edge="136.90.51.138"
...
show less
Web Spam
Web App Attack
๐ช๐ธ
robotstxt
2026-10-06 16:27:58
(5 hours ago)
136.90.51.138 - - [06/Oct/2026:16:27:55 +0000] "GET /%2e%2e/%2e%2e/%2e%2e/%2e%2e/proc/self/environ H ...
show more
136.90.51.138 - - [06/Oct/2026:16:27:55 +0000] "GET /%2e%2e/%2e%2e/%2e%2e/%2e%2e/proc/self/environ HTTP/1.1" 400 193 "-" "-" "-" edge="136.90.51.138"
136.90.51.138 - - [06/Oct/2026:16:27:55 +0000] "GET /public/plugins/alertlist/../../../../../../../../proc/self/environ HTTP/1.1" 400 193 "-" "-" "-" edge="136.90.51.138"
136.90.51.138 - - [06/Oct/2026:16:27:55 +0000] "GET /public/plugins/alertlist/../../../../../../../../proc/self/environ HTTP/1.1" 400 193 "-" "-" "-" edge="136.90.51.138"
136.90.51.138 - - [06/Oct/2026:16:27:55 +0000] "GET /public/plugins/grafana-clock-panel/../../../../../../../../proc/self/environ HTTP/1.1" 400 193 "-" "-" "-" edge="136.90.51.138"
136.90.51.138 - - [06/Oct/2026:16:27:55 +0000] "GET /public/plugins/grafana-clock-panel/../../../../../../../../proc/self/environ HTTP/1.1" 400 193 "-" "-" "-" edge="136.90.51.138"
...
show less
Web Spam
Web App Attack
๐ช๐ธ
robotstxt
2026-10-06 12:20:27
(10 hours ago)
136.90.51.138 - - [06/Oct/2026:12:19:33 +0000] "-" 400 193 "-" "-" "-" edge="136.90.51.138"
136.90.5 ...
show more
136.90.51.138 - - [06/Oct/2026:12:19:33 +0000] "-" 400 193 "-" "-" "-" edge="136.90.51.138"
136.90.51.138 - - [06/Oct/2026:12:19:33 +0000] "-" 400 193 "-" "-" "-" edge="136.90.51.138"
136.90.51.138 - - [06/Oct/2026:12:19:33 +0000] "-" 400 193 "-" "-" "-" edge="136.90.51.138"
136.90.51.138 - - [06/Oct/2026:12:19:33 +0000] "-" 400 193 "-" "-" "-" edge="136.90.51.138"
136.90.51.138 - - [06/Oct/2026:12:19:33 +0000] "-" 400 193 "-" "-" "-" edge="136.90.51.138"
...
show less
Web Spam
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-06 11:53:28
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.90.51.138 (138.51.90.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.90.51.138 (138.51.90.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 07:53:22.856329 2026] [security2:error] [pid 19117:tid 19117] [client 136.90.51.138:38674] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.husman.es"] [uri "/static//.env"] [unique_id "asThMojpZOzJnnI3Dzd0zAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-06 11:36:46
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.90.51.138 (138.51.90.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.90.51.138 (138.51.90.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 07:36:40.612062 2026] [security2:error] [pid 19691:tid 19691] [client 136.90.51.138:42502] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htpasswd" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.aycart.es"] [uri "/.htpasswd"] [unique_id "asTdSHBZvDZ2RpWf7OwkoQAAAFk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
robotstxt
2026-10-06 11:25:32
(11 hours ago)
136.90.51.138 - - [06/Oct/2026:11:24:43 +0000] "-" 400 193 "-" "-" "-"
136.90.51.138 - - [06/Oct/202 ...
show more
136.90.51.138 - - [06/Oct/2026:11:24:43 +0000] "-" 400 193 "-" "-" "-"
136.90.51.138 - - [06/Oct/2026:11:24:48 +0000] "-" 400 193 "-" "-" "-"
136.90.51.138 - - [06/Oct/2026:11:24:48 +0000] "-" 400 193 "-" "-" "-"
136.90.51.138 - - [06/Oct/2026:11:24:41 +0000] "-" 400 193 "-" "-" "-"
136.90.51.138 - - [06/Oct/2026:11:24:48 +0000] "-" 400 193 "-" "-" "-"
...
show less
Web Spam
Web App Attack
๐ช๐ธ
robotstxt
2026-10-06 10:37:52
(11 hours ago)
136.90.51.138 - - [06/Oct/2026:10:36:50 +0000] "GET /sign-in HTTP/2.0" 403 165 "-" "Mozilla/5.0 (Win ...
show more
136.90.51.138 - - [06/Oct/2026:10:36:50 +0000] "GET /sign-in HTTP/2.0" 403 165 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36" "-" edge="136.90.51.138"
136.90.51.138 - - [06/Oct/2026:10:36:50 +0000] "GET /secure HTTP/2.0" 403 165 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36" "-" edge="136.90.51.138"
136.90.51.138 - - [06/Oct/2026:10:36:50 +0000] "GET /auth HTTP/2.0" 403 165 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36" "-" edge="136.90.51.138"
136.90.51.138 - - [06/Oct/2026:10:36:50 +0000] "GET /login HTTP/2.0" 403 165 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36" "-" edge="136.90.51.138"
136.90.51.138 - - [06/Oct/2026:10:36:50 +0000] "GET /users/login HTTP/2.0" 403 165 "-" "Mozilla/5.0 (Windows NT 10.0;
...
show less
Web App Attack
๐ช๐ธ
robotstxt
2026-10-06 09:53:58
(12 hours ago)
136.90.51.138 - - [06/Oct/2026:09:53:54 +0000] "GET /%2e%2e/%2e%2e/%2e%2e/%2e%2e/proc/self/environ H ...
show more
136.90.51.138 - - [06/Oct/2026:09:53:54 +0000] "GET /%2e%2e/%2e%2e/%2e%2e/%2e%2e/proc/self/environ HTTP/1.1" 400 193 "-" "-" "-" edge="136.90.51.138"
136.90.51.138 - - [06/Oct/2026:09:53:55 +0000] "GET /api/uploads/%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f.env HTTP/1.1" 400 193 "-" "-" "-" edge="136.90.51.138"
136.90.51.138 - - [06/Oct/2026:09:53:55 +0000] "GET /public/plugins/alertlist/../../../../../../../../proc/self/environ HTTP/1.1" 400 193 "-" "-" "-" edge="136.90.51.138"
136.90.51.138 - - [06/Oct/2026:09:53:55 +0000] "GET /public/plugins/grafana-clock-panel/../../../../../../../../proc/self/environ HTTP/1.1" 400 193 "-" "-" "-" edge="136.90.51.138"
136.90.51.138 - - [06/Oct/2026:09:53:56 +0000] "GET /uploads/%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f.env HTTP/1.1" 400 193 "-" "-" "-" edge="136.90.51.138"
...
show less
Web Spam
Web App Attack
๐ช๐ธ
masterguru
2026-10-06 09:43:31
(12 hours ago)
Inbound Anomaly Score Exceeded (Total Score: 5). Operator GE matched 5 at TX:anomaly_score. (949110- ...
show more
Inbound Anomaly Score Exceeded (Total Score: 5). Operator GE matched 5 at TX:anomaly_score. (949110-122)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-10-06 09:39:51
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.90.51.138 (138.51.90.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.90.51.138 (138.51.90.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 05:39:44.395840 2026] [security2:error] [pid 25003:tid 25003] [client 136.90.51.138:46982] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htpasswd" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.cederberg.es"] [uri "/.htpasswd"] [unique_id "asTB4FsUzfEQzTvvWbsiRgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ช
tarlabs
2026-10-06 09:16:11
(13 hours ago)
IP banned by Fail2Ban (traefik-404 jail)
Web App Attack
๐ช๐ธ
robotstxt
2026-10-06 09:11:39
(13 hours ago)
136.90.51.138 - - [06/Oct/2026:09:11:20 +0000] "-" 400 193 "-" "-" "-"
136.90.51.138 - - [06/Oct/202 ...
show more
136.90.51.138 - - [06/Oct/2026:09:11:20 +0000] "-" 400 193 "-" "-" "-"
136.90.51.138 - - [06/Oct/2026:09:11:20 +0000] "-" 400 193 "-" "-" "-"
136.90.51.138 - - [06/Oct/2026:09:11:20 +0000] "-" 400 193 "-" "-" "-"
136.90.51.138 - - [06/Oct/2026:09:11:21 +0000] "-" 400 193 "-" "-" "-"
136.90.51.138 - - [06/Oct/2026:09:11:21 +0000] "-" 400 193 "-" "-" "-"
...
show less
Web Spam
Web App Attack