๐บ๐ธ
MPL
2026-08-26 17:56:04
(1 day ago)
tcp/443 (5 or more attempts)
Port Scan
๐ง๐ช
madeit
2026-08-25 11:01:12
(2 days ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 15:27:54
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.69.214.136 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.214.136 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 11:27:46.210816 2026] [security2:error] [pid 2747:tid 2747] [client 172.69.214.136:13217] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.barmitzvahnapkins.com"] [uri "/.git/HEAD"] [unique_id "aoxi8lhWgoxe2QEAWzLOVgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-24 11:13:18
(3 days ago)
172.69.214.136 - - [24/Aug/2026:13:13:12 +0200] "GET /%252f_next%252fstatic%252fbuild_id HTTP/1.1" 4 ...
show more
172.69.214.136 - - [24/Aug/2026:13:13:12 +0200] "GET /%252f_next%252fstatic%252fbuild_id HTTP/1.1" 403 124 "-" "curl/8.7.1"
172.69.214.136 - - [24/Aug/2026:13:13:12 +0200] "GET /%252f_next%252fstatic%252fchunks%252f%2a.map HTTP/1.1" 403 124 "-" "curl/8.7.1"
172.69.214.136 - - [24/Aug/2026:13:13:13 +0200] "GET /%252f_next%252fstatic%252fcss%252f HTTP/1.1" 403 124 "-" "curl/8.7.1"
172.69.214.136 - - [24/Aug/2026:13:13:16 +0200] "GET /%252f_next%252fwebpack-hmr HTTP/1.1" 403 124 "-" "curl/8.7.1"
172.69.214.136 - - [24/Aug/2026:13:13:16 +0200] "GET /%252f_next%252fwebpack-hmr%3fpage%3d%252f HTTP/1.1" 403 124 "-" "curl/8.7.1"
172.69.214.136 - - [24/Aug/2026:13:13:16 +0200] "GET /%252f_next%252fwebpack-hmr%3fpage%3d%252findex HTTP/1.1" 403 124 "-" "curl/8.7.1"
172.69.214.136 - - [24/Aug/2026:13:13:16 +0200] "GET /%252f_phpinfo.php HTTP/1.1" 403 124 "-" "curl/8.7.1"
172.69.214.136 - - [24/Aug/2026:13:13:16 +0200] "GET /%252f_profiler HTTP/1.1" 403 124 "-" "curl/8.7.1"
172.69.214.136 - - [24/A
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 09:24:42
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.69.214.136 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.214.136 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 05:24:37.522349 2026] [security2:error] [pid 712:tid 730] [client 172.69.214.136:13893] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.lavonnesells.com"] [uri "/.git/config"] [unique_id "aowN1d9MqzQk9dDGZXcvMQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-22 16:43:11
(5 days ago)
[Sat Aug 22 18:42:58.572814 2026] [authz_core:error] [pid 5564] [client 172.69.214.136:11438] AH0163 ...
show more
[Sat Aug 22 18:42:58.572814 2026] [authz_core:error] [pid 5564] [client 172.69.214.136:11438] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Sat Aug 22 18:43:10.995711 2026] [authz_core:error] [pid 5611] [client 172.69.214.136:11866] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Sat Aug 22 18:43:11.116482 2026] [authz_core:error] [pid 5611] [client 172.69.214.136:11866] AH01630: client denied by server configuration: /etc/httpd/htdocs
...
show less
Web App Attack
Anonymous
2026-08-22 10:29:01
(5 days ago)
[Sat Aug 22 12:29:00.167807 2026] [authz_core:error] [pid 3348] [client 172.69.214.136:12949] AH0163 ...
show more
[Sat Aug 22 12:29:00.167807 2026] [authz_core:error] [pid 3348] [client 172.69.214.136:12949] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Sat Aug 22 12:29:00.286876 2026] [authz_core:error] [pid 3348] [client 172.69.214.136:12949] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Sat Aug 22 12:29:00.406773 2026] [authz_core:error] [pid 3348] [client 172.69.214.136:12949] AH01630: client denied by server configuration: /etc/httpd/htdocs
...
show less
Web App Attack
Anonymous
2026-08-21 21:39:20
(5 days ago)
[Fri Aug 21 23:39:19.251364 2026] [authz_core:error] [pid 15550] [client 172.69.214.136:10818] AH016 ...
show more
[Fri Aug 21 23:39:19.251364 2026] [authz_core:error] [pid 15550] [client 172.69.214.136:10818] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Fri Aug 21 23:39:19.383062 2026] [authz_core:error] [pid 15550] [client 172.69.214.136:10818] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Fri Aug 21 23:39:19.515202 2026] [authz_core:error] [pid 15550] [client 172.69.214.136:10818] AH01630: client denied by server configuration: /etc/httpd/htdocs
...
show less
Web App Attack
๐ฉ๐ช
webanyone
2026-08-16 18:47:00
(1 week ago)
Apache web server attack detected by Fail2Ban in plesk-apache jail
Web App Attack
๐ง๐ช
madeit
2026-08-09 03:46:12
(2 weeks ago)
Web App Attack
๐ฉ๐ช
webanyone
2026-07-28 07:01:00
(4 weeks ago)
Apache web server attack detected by Fail2Ban in plesk-apache jail
Web App Attack
๐ฉ๐ช
webanyone
2026-06-21 00:00:56
(2 months ago)
Apache web server attack detected by Fail2Ban in plesk-apache jail
Web App Attack
๐ฌ๐ง
sandra361
2026-05-26 17:53:04
(3 months ago)
Port scan detected: 13 attempts across 1 ports (443). | Evidence: REAPER_TARPIT:IN=enp1s0f0 OUT= SRC ...
show more
Port scan detected: 13 attempts across 1 ports (443). | Evidence: REAPER_TARPIT:IN=enp1s0f0 OUT= SRC=172.69.214.136 LEN=60 TOS=0x00 PREC=0x00 TTL=54 ID=28053 DF PROTO=TCP SPT=13223 DPT=443 WINDOW=65535 RES=0x00 SYN URGP=0
show less
Port Scan
๐ฉ๐ช
acadeova
2026-04-27 17:22:41
(4 months ago)
๐จ Recon detected (nft drop)
SRC=172.69.214.136
Observed=TCP dpt=80 in=enp0s6 ttl=56
Time=recent(jour ...
show more
๐จ Recon detected (nft drop)
SRC=172.69.214.136
Observed=TCP dpt=80 in=enp0s6 ttl=56
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
๐ฉ๐ช
webanyone
2026-04-08 00:01:47
(4 months ago)
Apache web server attack detected by Fail2Ban in plesk-apache jail
Web App Attack