๐ต๐ฑ
MatStef132
2026-08-29 13:53:28
(2 weeks ago)
MatShield L7: blocked on api.klovy.chat (ua-quarantined)
Bad Web Bot
๐ง๐ช
madeit
2026-08-16 23:35:36
(1 month ago)
Web App Attack
Anonymous
2026-08-03 00:07:31
(1 month ago)
Aggressive web scan
Web App Attack
๐จ๐ฟ
Prcek
2026-07-23 05:34:01
(1 month ago)
PortScan:HOST=172.69.214.119,DPORTS=443
Port Scan
๐ป๐ช
LUISE
2026-07-17 00:26:35
(2 months ago)
Vulnerability scanning for Web/phpMyAdmin files on ULA server 72-23.
Hacking
Bad Web Bot
๐บ๐ธ
rodt
2026-07-13 22:33:03
(2 months ago)
Attack category: ET INFO | Signature: A network intrusion attempt from 172.69.214.119 to 7a:ee:f1:d9 ...
show more
Attack category: ET INFO | Signature: A network intrusion attempt from 172.69.214.119 to 7a:ee:f1:d9:38:b7 has been detected and blocked. | Target port: 80/TCP | Detected by Anti-Trust (UDR7 IDS/IPS monitor).
show less
Port Scan
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-08 18:07:13
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 172.69.214.119 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 172.69.214.119 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 08 14:07:07.197451 2026] [security2:error] [pid 14157:tid 14157] [client 172.69.214.119:10054] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||autodiscover.riccardiagency.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "autodiscover.riccardiagency.com"] [uri "/autodiscover/autodiscover.json/v1.0/[email protected] "] [unique_id "ak6Ry9Bot6eQLzZ-bLggHgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐น๐ท
Detmach
2026-07-05 10:31:32
(2 months ago)
Security attack detected. Multiple failed attempts from 172.69.214.119. IP banned for 1440 minutes a ...
show more
Security attack detected. Multiple failed attempts from 172.69.214.119. IP banned for 1440 minutes at 05.07.2026 13:31:32. Failed attempts: 1
show less
Brute-Force
๐ฉ๐ช
acadeova
2026-05-21 08:26:36
(3 months ago)
๐จ Recon detected (nft drop)
SRC=172.69.214.119
Observed=TCP dpt=80 in=enp0s6 ttl=56
Time=recent(jour ...
show more
๐จ Recon detected (nft drop)
SRC=172.69.214.119
Observed=TCP dpt=80 in=enp0s6 ttl=56
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-05-19 05:30:24
(3 months ago)
(mod_security) mod_security (id:210730) triggered by 172.69.214.119 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 172.69.214.119 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 19 01:30:17.106110 2026] [security2:error] [pid 11083:tid 11083] [client 172.69.214.119:10251] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||autodiscover.fabandco.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "autodiscover.fabandco.com"] [uri "/autodiscover/autodiscover.json/v1.0/[email protected] "] [unique_id "agv1aWG037KLKrE0dR9YLAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-12 03:09:24
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.214.119 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.214.119 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 11 23:09:15.188648 2026] [security2:error] [pid 8805:tid 8826] [client 172.69.214.119:13730] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "chaoticperception.com"] [uri "/.env.production"] [unique_id "agKZ2t61Doa7Vj4SH9-xuQAAAIw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-05 17:34:14
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.214.119 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.214.119 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 05 13:34:06.615257 2026] [security2:error] [pid 11694:tid 11694] [client 172.69.214.119:13546] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "summithost.com"] [uri "/.env.backup"] [unique_id "adKdDhgAvkiiEv31RcWQlwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-05 07:42:47
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.214.119 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.214.119 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 05 03:42:39.101706 2026] [security2:error] [pid 25667:tid 25667] [client 172.69.214.119:10784] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.zmgmt.com"] [uri "/config/.env.local"] [unique_id "adISb_UcSf9mRum6L8w_fQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-04-05 05:59:41
(5 months ago)
Aggressive web scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 22:13:48
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.214.119 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.214.119 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 18:13:41.699522 2026] [security2:error] [pid 7985:tid 7985] [client 172.69.214.119:14174] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.tekbit.com"] [uri "/.env.old"] [unique_id "adGNFbaKaG_BN_Fh9u4VyQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack