๐บ๐ธ
MPL
2026-08-19 02:05:32
(6 days ago)
tcp/18789 (2 or more attempts)
Port Scan
Anonymous
2026-08-19 01:50:27
(6 days ago)
denied traffic to a honeypot network. destination port 1912.
Port Scan
Hacking
Anonymous
2026-08-19 00:18:55
(6 days ago)
Drop from IP address 188.166.12.60 to tcp-port 60000
Port Scan
Anonymous
2026-07-15 01:25:31
(1 month ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
๐ฆ๐ฟ
scientra
2026-07-13 11:07:14
(1 month ago)
Directory or admin enumeration โ http://www.scientra.one/.env.production [detected by Bitwall WAF]
Web App Attack
๐ท๐บ
DZBOT
2026-07-13 00:51:26
(1 month ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
Anonymous
2026-07-12 13:07:02
(1 month ago)
Bot / scanning and/or hacking attempts: GET /.env.local HTTP/1.1, GET /.env HTTP/1.1, GET /.env.prod ...
show more
Bot / scanning and/or hacking attempts: GET /.env.local HTTP/1.1, GET /.env HTTP/1.1, GET /.env.production HTTP/1.1
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-12 08:35:20
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 188.166.12.60 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 188.166.12.60 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 12 04:35:13.625417 2026] [security2:error] [pid 29785:tid 29785] [client 188.166.12.60:54378] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "brewingermany.com"] [uri "/.git/HEAD"] [unique_id "alNRweXQjrQhxF-U8NfwlQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-11 18:40:56
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 188.166.12.60 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 188.166.12.60 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 11 14:40:51.803452 2026] [security2:error] [pid 566:tid 574] [client 188.166.12.60:39738] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "maletadelasheras.com"] [uri "/.git/HEAD"] [unique_id "alKOM8tYY43ANVLJin_C_wAAAIU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-11 04:32:27
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 188.166.12.60 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 188.166.12.60 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 11 00:32:22.517692 2026] [security2:error] [pid 25384:tid 25384] [client 188.166.12.60:33736] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "brodyworks.com"] [uri "/.git/HEAD"] [unique_id "alHHVnFFG9qHwob41UTy1AAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-07-08 21:59:05
(1 month ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-07-07.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
mnsf
2026-07-08 17:05:11
(1 month ago)
Scanning/Probing (13)
Brute-Force
Web App Attack
Anonymous
2026-07-08 01:07:08
(1 month ago)
2026/07/08 03:07:07 [error] 13969#13969: *135333 access forbidden by rule, client: 188.166.12.60, se ...
show more
2026/07/08 03:07:07 [error] 13969#13969: *135333 access forbidden by rule, client: 188.166.12.60, server: freeflight.org.za, request: "GET /.git/HEAD HTTP/1.1", host: "freeflight.org.za"
2026/07/08 03:07:07 [error] 13969#13969: *135333 access forbidden by rule, client: 188.166.12.60, server: freeflight.org.za, request: "GET /.git/config HTTP/1.1", host: "freeflight.org.za"
2026/07/08 03:07:08 [error] 13969#13969: *135333 access forbidden by rule, client: 188.166.12.60, server: freeflight.org.za, request: "GET /.git/HEAD HTTP/1.1", host: "freeflight.org.za"
...
show less
Hacking
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-07-07 21:59:45
(1 month ago)
Auto-ban: >3000 req/min op 2026-07-07
Web App Attack
SSH
Hacking
๐จ๐ณ
ThreatBook.io
2026-04-26 23:28:55
(3 months ago)
ThreatBook Intelligence: Spam more details on http://threatbook.io/ip/188.166.12.60
SSH