Anonymous
2026-06-19 06:20:21
(4 days ago)
Aggressive web scan
Web App Attack
๐บ๐ธ
mccsoft.io
2026-06-18 22:03:44
(5 days ago)
Web application attack / vulnerability scanning against our public nginx web server (TCP 80/443). So ...
show more
Web application attack / vulnerability scanning against our public nginx web server (TCP 80/443). Source matched a blocked-path security rule (jail nginx-444); server returned HTTP 444 (connection closed without response). TCP three-way handshake completed (full HTTP request received).
show less
Bad Web Bot
Web App Attack
Anonymous
2026-06-17 06:00:43
(6 days ago)
Aggressive web scan
Web App Attack
๐บ๐ธ
mnsf
2026-06-16 03:05:23
(1 week ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 19:17:50
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.69.150.219 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.150.219 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 15:17:44.564698 2026] [security2:error] [pid 27562:tid 27562] [client 172.69.150.219:13864] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "amsterdamlayovers.thinkingepic.com"] [uri "/.git/config"] [unique_id "aicVWN-QAa5BjxspQLMdqwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-02 02:05:19
(3 weeks ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐ท๐บ
DZBOT
2026-05-20 01:33:23
(1 month ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
mawan
2026-05-18 17:16:05
(1 month ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐ธ๐ฎ
administrator
2026-05-04 16:38:37
(1 month ago)
2026-04-10 01:58:52,495 fail2ban.actions [1026]: NOTICE [apache-custom] Ban 172.69.150.219
2 ...
show more
2026-04-10 01:58:52,495 fail2ban.actions [1026]: NOTICE [apache-custom] Ban 172.69.150.219
2026-04-10 01:58:52,543 fail2ban.actions [1026]: NOTICE [apache-badbots] Ban 172.69.150.219
2026-04-10 01:58:52,495 fail2ban.actions [1026]: NOTICE [apache-custom] Ban 172.69.150.219
...
show less
Bad Web Bot
Web Spam
Email Spam
Blog Spam
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-30 10:31:02
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.69.150.219 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.150.219 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 06:30:57.825718 2026] [security2:error] [pid 5534:tid 5534] [client 172.69.150.219:9718] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.cliniquecavalancia.com"] [uri "/.git/config"] [unique_id "afMvYXIpEVbN-GkBIbnttwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
acadeova
2026-04-27 17:25:38
(1 month ago)
๐จ Recon detected (nft drop)
SRC=172.69.150.219
Observed=TCP dpt=80 in=enp0s6 ttl=59
Time=recent(jour ...
show more
๐จ Recon detected (nft drop)
SRC=172.69.150.219
Observed=TCP dpt=80 in=enp0s6 ttl=59
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
Anonymous
2026-04-21 17:40:11
(2 months ago)
| Multiple SQL injection attempts from same source ip.(multiple servers)
Web App Attack
Hacking
SQL Injection
๐ซ๐ท
masterguru
2026-04-08 03:08:30
(2 months ago)
Blocked Cloudflare Worker request. Pattern match "." at REQUEST_HEADERS:cf-worker. (5025-195)
Hacking
๐บ๐ธ
TPI-Abuse
2026-04-07 08:01:05
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.150.219 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.150.219 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 07 04:00:56.552141 2026] [security2:error] [pid 1639497:tid 1639497] [client 172.69.150.219:13106] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.colodist.com"] [uri "/.git/index"] [unique_id "adS5uATsxrjZHOwwB5OteQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-05 19:13:06
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.150.219 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.150.219 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 05 15:12:45.111500 2026] [security2:error] [pid 6618:tid 6618] [client 172.69.150.219:9522] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.jonvaltmusic.com"] [uri "/app/.env"] [unique_id "adK0LThEBHsblCeyV2f-AwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack