This IP address has been reported a total of
7
times from
6 distinct
sources.
131.221.14.168 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
United States of America
with 3
reports;
Germany
with 1
report.
The most common categories in these recent reports were:
Brute-Force
3
times;
Bad Web Bot
3
times;
Web App Attack
2
times;
Port Scan
1
time.
Old Reports
The most recent abuse report for this IP address is from
. It is possible that this IP is no
longer involved in abusive activities.
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/150.0. ...
show moreMozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/150.0.0.0 Safari/537.36
show less
(mod_security) mod_security (id:210730) triggered by 131.221.14.168 (131-221-14-168.triway.net.br): ...
show more(mod_security) mod_security (id:210730) triggered by 131.221.14.168 (131-221-14-168.triway.net.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 14 21:26:22.214794 2026] [security2:error] [pid 28717:tid 28717] [client 131.221.14.168:57774] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||kanata.ws|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "kanata.ws"] [uri "/dev/drupal.sql"] [unique_id "aqievimqcvUa1CTDQslg_wAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
denied Telnet access attempt. destination port 23.
Port Scan
Brute-Force
Anonymous
Distributed web crawl botnet attack (like Mellowtel), likely illicit scraping of AI training data to ...
show moreDistributed web crawl botnet attack (like Mellowtel), likely illicit scraping of AI training data to bypass firewall/robots.txt restrictions in thread-post.asp
show less