Anonymous
2026-03-16 10:40:04
(2 months ago)
| SQL injection attempt.
Web App Attack
Hacking
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-02-01 11:26:59
(4 months ago)
(mod_security) mod_security (id:211190) triggered by 206.206.69.63 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:211190) triggered by 206.206.69.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 01 06:26:53.831016 2026] [security2:error] [pid 16720:tid 16840] [client 206.206.69.63:45747] ModSecurity: Access denied with code 403 (phase 2). Match of "contains cpanel" against "REQUEST_URI" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "55"] [id "211190"] [rev "9"] [msg "COMODO WAF: Remote File Access Attempt||mail.kettlehill.com|F|2"] [data "Matched Data: /etc/ found within REQUEST_URI: /chat/imController/showOrDownByurl.do?dbPath=../../../../../../etc/passwd"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.kettlehill.com"] [uri "/chat/imController/showOrDownByurl.do"] [unique_id "aX84fXgN2ebRaezbXtJDlwAAAUc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-16 08:37:16
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 206.206.69.63 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 206.206.69.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jan 16 03:37:12.420650 2026] [security2:error] [pid 19177:tid 19177] [client 206.206.69.63:35969] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autoconfig.nbcnewsradio.com"] [uri "/.env.old"] [unique_id "aWn4uJ7ECS6zE6BGUUCpxAAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-01 15:17:03
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 206.206.69.63 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 206.206.69.63 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Nov 01 11:16:57.768902 2025] [security2:error] [pid 29289:tid 29299] [client 206.206.69.63:37599] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||mail.kettlehill.net|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "mail.kettlehill.net"] [uri "/wp-login.php.bak"] [unique_id "aQYkaX3ZxI0nlMe2_W5OmQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
SCHAPPY
2025-07-24 03:30:05
(10 months ago)
IP was involved in L7 DDoS attack.
DDoS Attack
๐จ๐ฟ
lp
2025-06-01 19:50:09
(1 year ago)
Unauthorized VPN login attempts: 3 attempts were recorded from 206.206.69.63
2025-06-01T20:31:51+02: ...
show more
Unauthorized VPN login attempts: 3 attempts were recorded from 206.206.69.63
2025-06-01T20:31:51+02:00 vpn Access-Reject 'muller.k' station: 206.206.69.63 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
2025-06-01T21:09:42+02:00 vpn Access-Reject 'sediva' station: 206.206.69.63 auth-type: PAP realm: vse.cz nas: <redacted> called: <redacted> => address-pool: zam_pool msg: '<redacted>'
2025-06-01T21:14:44+02:00 vpn Access-Reject 'cz.vse' station: 206.206.69.63 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
๐จ๐ฟ
lp
2025-06-01 13:49:44
(1 year ago)
Unauthorized VPN login attempts: 5 attempts were recorded from 206.206.69.63
2025-06-01T14:22:44+02: ...
show more
Unauthorized VPN login attempts: 5 attempts were recorded from 206.206.69.63
2025-06-01T14:22:44+02:00 vpn Access-Reject 'j-hudcekova' station: 206.206.69.63 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
2025-06-01T14:26:26+02:00 vpn Access-Reject 'saldovahelena' station: 206.206.69.63 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
2025-06-01T15:00:41+02:00 vpn Access-Reject 'hudcekovaj' station: 206.206.69.63 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
2025-06-01T15:03:05+02:00 vpn Access-Reject 'klara-v' station: 206.206.69.63 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
2025-06-01T15:34:33+02:00 vpn Access-Reject 'pacakova.jana' station: 206.206.69.63 auth-type: - realm
show less
Brute-Force
Web App Attack
๐จ๐ฆ
wil.com
2025-05-31 17:41:39
(1 year ago)
GlobalProtect login attempts with user teent.
VPN IP
Brute-Force
๐ฌ๐ง
Aetherweb Ark
2024-06-23 04:20:37
(1 year ago)
(mod_security) mod_security (id:220020) triggered by 206.206.69.63 (US/United States/-): N in the la ...
show more
(mod_security) mod_security (id:220020) triggered by 206.206.69.63 (US/United States/-): N in the last X secs
show less
Web App Attack