๐จ๐ฟ
Prcek
2026-09-29 11:33:10
(23 hours ago)
PortScan:HOST=172.68.245.121,DPORTS=80
Port Scan
๐ง๐ช
madeit
2026-09-26 07:46:53
(4 days ago)
Web App Attack
๐ง๐ช
madeit
2026-09-08 10:24:43
(3 weeks ago)
Web App Attack
๐ฏ๐ต
S.O.B.A. Dev.
2026-08-27 16:14:17
(1 month ago)
Persistent port scanning or vulnerability scanning
Port Scan
๐ฎ๐ฉ
securejdprop
2026-08-21 10:02:17
(1 month ago)
This IP was detected by CrowdSec triggering custom/vpatch-bad-cloudflare.
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-17 14:20:24
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.68.245.121 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.245.121 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 10:20:18.272570 2026] [security2:error] [pid 15112:tid 15112] [client 172.68.245.121:12905] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.stoneybluff.com"] [uri "/.git/HEAD"] [unique_id "aoMYonyoK9b0kwiqrhvA6QAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 05:02:51
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.68.245.121 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.245.121 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 01:02:45.473502 2026] [security2:error] [pid 912:tid 912] [client 172.68.245.121:13407] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "computerservicesofflorida.com"] [uri "/.git/config"] [unique_id "aoKV9eKnGLsW4aIiAtdLhQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 02:53:38
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.68.245.121 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.245.121 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 15 22:53:34.512851 2026] [security2:error] [pid 5478:tid 5478] [client 172.68.245.121:13540] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.chefsuepong.com"] [uri "/.git/config"] [unique_id "aoEmLtrn-3bFfPorZZ4lewAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-14 14:29:08
(1 month ago)
Web scanner: GET /.git/config
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-05-15 07:48:51
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.68.245.121 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.245.121 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 15 03:48:45.053701 2026] [security2:error] [pid 7783:tid 7783] [client 172.68.245.121:13179] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.metaluz.com.sv.mpservice.com.sv"] [uri "/.env.development"] [unique_id "agbP3Wn9qasiGsBYGMPNwAAAAAE"], referer: https://www.google.com/search?q=www.metaluz.com.sv.mpservice.com.sv
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-04-08 01:05:35
(5 months ago)
Scanning/Probing (14)
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-04-05 09:07:00
(5 months ago)
Scanning/Probing (12)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-31 07:09:24
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.68.245.121 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.245.121 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 31 03:09:18.482061 2026] [security2:error] [pid 2193:tid 2193] [client 172.68.245.121:12161] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.alexthepunk.com"] [uri "/.env.production.local"] [unique_id "actzHnUsC-53V17V923uNwAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-31 01:10:41
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.68.245.121 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.245.121 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 21:10:35.830490 2026] [security2:error] [pid 16429:tid 16429] [client 172.68.245.121:12059] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "redlitephotos.com"] [uri "/.env.development"] [unique_id "acsfC193Sg6VxofGTKkaKgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-30 18:31:08
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.68.245.121 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.245.121 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 14:30:58.341335 2026] [security2:error] [pid 13022:tid 13022] [client 172.68.245.121:13819] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.prosucomexico.com"] [uri "/.env.prod"] [unique_id "acrBYmzSpuTM0L546j2iCAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack