IP info including ISP, Usage Type, and Location provided
by IPInfo. Updated weekly.
Important Note: 172.70.153.139 is an IP address from within
our whitelist belonging to the subnet
172.64.0.0/13,
which we identify as: "Cloudflare Reverse Proxy".
Whitelisted netblocks are typically owned by trusted entities, such as Google
or Microsoft who may use them for search engine spiders. However, these same entities
sometimes also provide cloud servers and mail services which are easily abused. Pay special
attention when trusting or distrusting these IPs.
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Time ...
show moreMalicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Timestamp: 2026-02-07 06:32:06 UTC
Log evidence:
02/07/2026-06:32:05.367155 [**] [1:1000101:2] SECURITY Port Scan Detected - Multiple Unauthorized Ports [**] [Classification: Attempted Information Leak] [Priority: 1] {TCP} 172.70.153.139:16149 -> 185.127.18.66:2096
02/07/2026-06:32:06.272694 [**] [1:1000101:2] SECURITY Port Scan Detected - Multiple Unauthorized Ports [**] [Classification: Attempted Information Leak] [Priority: 1] {TCP} 172.70.153.139:59157 -> 185.127.18.66:2096
show less
Port Scan
Brute-Force
Anonymous
[Mon Jan 05 02:39:06.261617 2026] [authz_core:error] [pid 11603] [client 172.70.153.139:11296] AH016 ...
show more[Mon Jan 05 02:39:06.261617 2026] [authz_core:error] [pid 11603] [client 172.70.153.139:11296] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Mon Jan 05 02:39:06.526779 2026] [authz_core:error] [pid 11603] [client 172.70.153.139:11296] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Mon Jan 05 02:39:06.792223 2026] [authz_core:error] [pid 11603] [client 172.70.153.139:11296] AH01630: client denied by server configuration: /etc/httpd/htdocs
...
show less
Web App Attack
Anonymous
2025-07-19 14:54:59,033 fail2ban.actions [841]: NOTICE [nginx-bad-request] Ban 172.70.153.13 ...
show more2025-07-19 14:54:59,033 fail2ban.actions [841]: NOTICE [nginx-bad-request] Ban 172.70.153.139
2025-07-20 04:52:00,167 fail2ban.actions [841]: NOTICE [nginx-bad-request] Ban 172.70.153.139
...
show less
Port Scan
Brute-Force
Bad Web Bot
Showing 1 to
6
of 6 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ