๐ฉ๐ช
bsoft.de
2026-10-11 01:53:22
(9 hours ago)
136.92.42.73 - - [11/Oct/2026:03:53:21 +0200] "GET /.ssh/id_rsa HTTP/1.1" 301 169 "-" "Mozilla/5.0 ( ...
show more
136.92.42.73 - - [11/Oct/2026:03:53:21 +0200] "GET /.ssh/id_rsa HTTP/1.1" 301 169 "-" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Savvii
2026-10-10 22:45:32
(12 hours ago)
20 attempts against mh-misbehave-ban on yonder-shared-dev-02
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-10-10 21:59:13
(13 hours ago)
Auto-ban: >3000 req/min op 2026-10-10
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-10-10 19:46:01
(15 hours ago)
(mod_security) mod_security (id:210730) triggered by 136.92.42.73 (73.42.92.136.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 136.92.42.73 (73.42.92.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 10 15:45:57.248559 2026] [security2:error] [pid 18576:tid 18576] [client 136.92.42.73:51892] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||mail.rodamundo.blog|F|2"] [data ".conf"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "mail.rodamundo.blog"] [uri "/rclone.conf"] [unique_id "asqV9cjHeqgu04qcB4sZnAAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-10-10 19:44:53
(15 hours ago)
[ti-01al] Excessive 404 errors (web scanning): 25 suspicious requests detected by fail2ban jail apac ...
show more
[ti-01al] Excessive 404 errors (web scanning): 25 suspicious requests detected by fail2ban jail apache-404. Example: 136.92.42.73 - - [10/Oct/2026:21:44:49 +0200] "GET /register HTTP/2.0" 404 1855 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Mobile Safari/537.36 EdgA/153.0.0.0"
136.92.42.73 - - [10/Oct/2026:21:44:49 +0200] "GET /app HTTP/2.0" 404 1855 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Mobile Safari/537.36 EdgA/153.0.0.0"
136.92.42.73 - - [10/Oct/2026:21:44:49 +0200] "GET /account HTTP/2.0" 404 1855 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Mobile Safari/537.36 EdgA/153.0.0.0"
136.92.42.73 - - [10/Oct/2026:21:44:49 +0200] "GET /signin HTTP/2.0" 404 1855 "-" "Mozilla/5.0 (Linux; Android 10; K) Apple
...
show less
Bad Web Bot
Web App Attack
Anonymous
2026-10-10 16:58:11
(18 hours ago)
Flagged as abuse by IisGuard automated detection (tier L5, score 90/100). Reasons: Reputation=1, Bad ...
show more
Flagged as abuse by IisGuard automated detection (tier L5, score 90/100). Reasons: Reputation=1, BadPath=24,9, Rate=9,7, Diversity=13,8, CanaryOverride=90.
show less
Web App Attack
DDoS Attack
Bad Web Bot
๐ง๐ช
cmbplf
2026-10-10 16:11:18
(19 hours ago)
62.829 requests in 1 hour (1w6d23h)
Brute-Force
Bad Web Bot
๐ณ๐ฑ
Alboweb B.V.
2026-10-10 16:11:03
(19 hours ago)
Bad web bot activity detected by Fail2Ban in plesk-apache-badbot jail
Bad Web Bot
๐ณ๐ฑ
Savvii
2026-10-10 15:53:12
(19 hours ago)
20 attempts against mh-misbehave-ban on orcus
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-10-10 15:52:41
(19 hours ago)
[ti-01ov] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 136 ...
show more
[ti-01ov] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 136.92.42.73 - - \[10/Oct/2026:17:52:34 +0200\] "GET /.git/HEAD HTTP/1.1" 404 7392 "-" "Mozilla/5.0 \(compatible\; GrokBot/1.0\; +https://x.ai/\)"
...
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-10-10 15:47:53
(19 hours ago)
Excessive multi-domain requests
Brute-Force
๐จ๐ญ
Sonics
2026-10-10 15:38:17
(19 hours ago)
Automated scanner: .env/.git/phpinfo scan
Web App Attack
๐ฉ๐ช
bsoft.de
2026-10-10 15:35:41
(19 hours ago)
136.92.42.73 - - [10/Oct/2026:17:35:40 +0200] "GET /@fs/../.env?raw?? HTTP/1.1" 301 169 "-" "Mozilla ...
show more
136.92.42.73 - - [10/Oct/2026:17:35:40 +0200] "GET /@fs/../.env?raw?? HTTP/1.1" 301 169 "-" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
SchorelWeb
2026-10-10 15:34:55
(19 hours ago)
Cluster member (Omitted) (FR/France/-) said, TEMPDENY 136.92.42.73, Reason:[(Suspicious404) Suspicio ...
show more
Cluster member (Omitted) (FR/France/-) said, TEMPDENY 136.92.42.73, Reason:[(Suspicious404) Suspicious activity detected 136.92.42.73 (DE/Germany/73.42.92.136.bc.googleusercontent.com): 10 in the last 3600 secs]
show less
Brute-Force
SSH
๐ณ๐ฑ
mieg
2026-10-10 15:29:23
(19 hours ago)
Web vulnerability probing
Brute-Force
Web App Attack