IP info including ISP, Usage Type, and Location provided
by IPInfo. Updated weekly.
Important Note: 69.171.231.120 is an IP address from within
our whitelist belonging to the subnet
69.171.224.0/20,
which we identify as: "Facebook".
Whitelisted netblocks are typically owned by trusted entities, such as Google
or Microsoft who may use them for search engine spiders. However, these same entities
sometimes also provide cloud servers and mail services which are easily abused. Pay special
attention when trusting or distrusting these IPs.
This IP address has been reported a total of
115
times from
24 distinct
sources.
69.171.231.120 was first reported on
, and the most recent report was
.
Old Reports:
The most recent abuse report for this IP address is from
. It is possible that this IP is no longer involved in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
Anonymous
Ports: 20,21,25,53,80,110,143,443,465,587,993,995,2077,2078,2079,2080,2082,2083,2086,2087,2095,2096, ...
show morePorts: 20,21,25,53,80,110,143,443,465,587,993,995,2077,2078,2079,2080,2082,2083,2086,2087,2095,2096,3306,2195; Direction: 0; Trigger: LF_CUSTOMTRIGGER
show less
[Mon Apr 29 10:14:01.265352 2024] [security2:error] [pid 28718:tid 132794837632576] [client 69.171.2 ...
show more[Mon Apr 29 10:14:01.265352 2024] [security2:error] [pid 28718:tid 132794837632576] [client 69.171.231.120:45734] [client 69.171.231.120] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "Review" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.0.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "37"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: Review found within REQUEST_HEADERS:User-Agent: adreview/1.0 request_line = GET /images/Klimatologi/Prakiraan/02-Prakiraan-Dasarian/Potensi_Banjir/Provinsi_Jawa_Timur/2024/04_April_2024/Das-II/03-Prakiraan_Dasarian_Daerah_Potensi_Banjir_di_Provinsi_Jawa_Timur_DASARIAN_II_Bulan_MEI_Tahun_2024_update_20_April_2024.jpg HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/images/Klimatologi/Prakiraan/02-Prakiraan-Dasarian/Potensi_Banjir/Provinsi_Jawa_Timur/2024/04_April_2024/Das-II/03-Prakiraan_Dasarian_Daerah_Potensi_Banjir_di_Provinsi_Jawa_Timur_DASARIAN
...
show less
Hacking
Web App Attack
Anonymous
Ports: 20,21,25,53,80,110,143,443,465,587,993,995,2077,2078,2079,2080,2082,2083,2086,2087,2095,2096, ...
show morePorts: 20,21,25,53,80,110,143,443,465,587,993,995,2077,2078,2079,2080,2082,2083,2086,2087,2095,2096,3306,2195; Direction: 0; Trigger: LF_CUSTOMTRIGGER
show less
Brute-Force
SSH
Anonymous
Ports: 20,21,25,53,80,110,143,443,465,587,993,995,2077,2078,2079,2080,2082,2083,2086,2087,2095,2096, ...
show morePorts: 20,21,25,53,80,110,143,443,465,587,993,995,2077,2078,2079,2080,2082,2083,2086,2087,2095,2096,3306,2195; Direction: 0; Trigger: LF_CUSTOMTRIGGER
show less
VM5 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
Anonymous
Ports: 20,21,25,53,80,110,143,443,465,587,993,995,2077,2078,2079,2080,2082,2083,2086,2087,2095,2096, ...
show morePorts: 20,21,25,53,80,110,143,443,465,587,993,995,2077,2078,2079,2080,2082,2083,2086,2087,2095,2096,3306,2195; Direction: 0; Trigger: LF_CUSTOMTRIGGER
show less
[Sat Mar 16 11:54:16.734045 2024] [security2:error] [pid 68981:tid 140412574500416] [client 69.171.2 ...
show more[Sat Mar 16 11:54:16.734045 2024] [security2:error] [pid 68981:tid 140412574500416] [client 69.171.231.120:56184] [client 69.171.231.120] ModSecurity: Access denied with code 403 (phase 4). Match of "pmFromFile sql-errors.data" against "RESPONSE_BODY" required. [file "/etc/modsecurity/coreruleset-4.0.0/rules/RESPONSE-951-DATA-LEAKAGES-SQL.conf"] [line "46"] [id "951100"] [msg "RESPONSE_BODY FromFile sql-errors-data"] [data " Matched Data ARGS charset: - Matched Data TX.1: index.php found within Content-Type multipart form Matched Data: index.php found within RESPONSE_BODY: request_line = GET /index.php/prakiraan-iklim/prakiraan-bulanan/prakiraan-curah-hujan-bulanan/555560470-prakiraan-bulanan-curah-hujan-bulan-januari-tahun-2024-update-dari-analisis-bulan-september-tahun-2023-di-provinsi-jawa-timur HTTP/2.0"] [ver "OWASP_CRS/4.0.0"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-disclosure"] [tag "OWASP_CRS"] [tag "capec/1000/118/116/54"] [hostna
...
show less
Hacking
Web App Attack
Anonymous
Ports: 20,21,25,53,80,110,143,443,465,587,993,995,2077,2078,2079,2080,2082,2083,2086,2087,2095,2096, ...
show morePorts: 20,21,25,53,80,110,143,443,465,587,993,995,2077,2078,2079,2080,2082,2083,2086,2087,2095,2096,3306,2195; Direction: 0; Trigger: LF_CUSTOMTRIGGER
show less
Brute-Force
SSH
Showing 1 to
15
of 115 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ