102.66.183.158
| ISP | Herotel |
|---|---|
| Usage Type | Fixed Line ISP |
| ASN | AS328471 |
| Domain Name | herotel.com |
| Country | ๐ฟ๐ฆ South Africa |
| City | Johannesburg, Gauteng |
ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
IP Abuse Reports for 102.66.183.158
This IP address has been reported a total of 15 times from 14 distinct sources. 102.66.183.158 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: United States of America with 4 reports; France with 2 reports; Germany with 1 report. The most common categories in these recent reports were: DDoS Attack 4 times; Bad Web Bot 3 times; Port Scan 2 times; Exploited Host 1 time; Web App Attack 1 time.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| ๐ซ๐ท security.rdmc.fr |
Port Scan Attack proto:TCP src:51264 dst:23
|
Port Scan | ||
| ๐บ๐ธ RAP |
2026-09-20 14:05:17 UTC Unauthorized activity to TCP port 23. Telnet
|
Port Scan | ||
| ๐บ๐ธ kosada.com |
|
DDoS Attack Bad Web Bot | ||
| ๐บ๐ธ ้ฌผๅฝฑ233 |
|
Bad Web Bot | ||
| ๐ซ๐ท Zkillu |
|
DDoS Attack Exploited Host | ||
| ๐บ๐ธ kosada.com |
Web bot: denial-of-service flood
|
DDoS Attack Bad Web Bot | ||
| ๐ฉ๐ช LRob |
|
DDoS Attack Web App Attack | ||
| ๐ฉ๐ช SMARTNET |
Aisuru(Mirai variant) DDoS | Incident ID: 6ed80dcf-192e-41b9-b3cf-8e7356812aa9
|
DDoS Attack | ||
| ๐ฆ๐บ MAGIC |
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
|
DDoS Attack Bad Web Bot | ||
| ๐ฌ๐ง PeravixGroup |
|
IoT Targeted Brute-Force | ||
| ๐จ๐ฆ polycoda |
๐ฅถ Part of massive botnet scraping campaign that nearly turned into a DDoS on 2025-11-27
|
DDoS Attack | ||
| ๐ช๐ธ el-brujo |
|
Hacking SQL Injection Web App Attack | ||
| ๐ง๐ช sauron-le-noir |
scan port : 23 from Afrique du Sud at Wed Jan 14 17:29:50 2026
|
Port Scan | ||
| ๐ฎ๐น VHosting |
Detected attack and reported by a human
|
DDoS Attack Brute-Force Bad Web Bot Exploited Host Web App Attack SSH | ||
| Anonymous |
scanning http requests from known botnet
|
Web App Attack |
Showing 1 to 15 of 15 reports
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐ฉ