๐บ๐ธ
TPI-Abuse
2026-08-09 03:05:45
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 68.154.37.66 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 68.154.37.66 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 08 23:05:36.918067 2026] [security2:error] [pid 1395872:tid 1395872] [client 68.154.37.66:14397] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.159"] [uri "/.git/HEAD"] [unique_id "anfugBZZVtkcqHVB1q9wKgAAACc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
v1nc
2026-08-09 02:49:14
(1 week ago)
68.154.37.66 - - [09/Aug/2026:02:49:14 +0000] "GET /wp-config.php HTTP/1.1" 301 162 "-" "Mozilla/5.0 ...
show more
68.154.37.66 - - [09/Aug/2026:02:49:14 +0000] "GET /wp-config.php HTTP/1.1" 301 162 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
...
show less
Hacking
๐ณ๐ฑ
Bouncer
2026-08-09 02:39:49
(1 week ago)
(mod_security) mod_security (id:930130) triggered by 68.154.37.66 (US/United States/-): 5 in the las ...
show more
(mod_security) mod_security (id:930130) triggered by 68.154.37.66 (US/United States/-): 5 in the last 60 secs
show less
Brute-Force
๐ช๐ธ
yvoictra
2026-08-09 02:33:19
(1 week ago)
68.154.37.66 - - [09/Aug/2026:04:32:53 +0200] "GET /.git/refs/heads/main HTTP/1.1" 404 197 "-" "Mozi ...
show more
68.154.37.66 - - [09/Aug/2026:04:32:53 +0200] "GET /.git/refs/heads/main HTTP/1.1" 404 197 "-" "Mozilla/5.0 (Linux; Android 14; Pixel 8) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Mobile Safari/537.36"
68.154.37.66 - - [09/Aug/2026:04:33:04 +0200] "GET /.env.save HTTP/1.1" 404 134 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 14.4; rv:125.0) Gecko/20100101 Firefox/125.0"
68.154.37.66 - - [09/Aug/2026:04:33:09 +0200] "GET /.env.old HTTP/1.1" 404 197 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
68.154.37.66 - - [09/Aug/2026:04:33:15 +0200] "GET /.env_production HTTP/1.1" 404 134 "-" "Mozilla/5.0 (X11; Linux x86_64; rv:125.0) Gecko/20100101 Firefox/125.0"
68.154.37.66 - - [09/Aug/2026:04:33:18 +0200] "GET /.env.development HTTP/1.1" 404 197 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/123.0.0.0 Safari/537.36"
...
show less
Brute-Force
Web App Attack
๐บ๐ธ
Axel
2026-08-09 02:25:26
(1 week ago)
Blocked by UFW on LAXHH [80/tcp] | SPT: 13912 | TTL: 109 | LEN: 40 | TOS: 0x00 โข Reported by: github ...
show more
Blocked by UFW on LAXHH [80/tcp] | SPT: 13912 | TTL: 109 | LEN: 40 | TOS: 0x00 โข Reported by: github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐น๐ญ
Sawasdee
2026-08-09 02:24:11
(1 week ago)
Unwanted checking 80 or 443 port
...
Bad Web Bot
๐ง๐พ
lns.bz
2026-08-09 01:41:06
(1 week ago)
Too many 404 requests [BY]
Web App Attack
๐ฌ๐ง
cg-design.co.uk
2026-08-09 01:18:02
(1 week ago)
(mod_security) mod_security triggered on hostname [redacted] 68.154.37.66 (US/United States/-)
SQL Injection
Anonymous
2026-08-06 09:39:48
(2 weeks ago)
Shorewall log file match.
Port Scan
๐ฉ๐ช
Admins@FBN
2026-08-06 08:22:15
(2 weeks ago)
FW-PortScan: Traffic Blocked srcport=49674 dstport=80
Port Scan
๐ฉ๐ช
dpsbs
2026-08-06 07:39:08
(2 weeks ago)
multiple ips intrustions detected
Hacking
๐ฉ๐ช
palla89
2026-08-06 06:13:42
(2 weeks ago)
(mod_security) mod_security triggered on hostname [redacted] 68.154.37.66 (US/United States/-)
SQL Injection
๐ซ๐ท
GabrielJST
2026-08-06 06:09:35
(2 weeks ago)
*Port Scan* detected from 68.154.37.66 (US/United States/-).
Port Scan
๐บ๐ธ
TPI-Abuse
2026-08-06 06:07:57
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 68.154.37.66 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 68.154.37.66 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 06 02:07:49.622345 2026] [security2:error] [pid 476731:tid 476739] [client 68.154.37.66:48207] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.127"] [uri "/.git/HEAD"] [unique_id "anQktSdLyG9qZSb1eWvKewAAAUY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
OptimusGO
2026-08-02 10:33:04
(2 weeks ago)
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Time ...
show more
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Timestamp: 2026-08-02 11:33:04 UTC
Log evidence:
08/02/2026-11:33:03.188420 [**] [1:1000101:2] SECURITY Port Scan Detected - Multiple Unauthorized Ports [**] [Classification: Attempted Information Leak] [Priority: 1] {TCP} 68.154.37.66:42375 -> 185.127.18.66:2096
08/02/2026-11:33:03.185020 [**] [1:1000101:2] SECURITY Port Scan Detected - Multiple Unauthorized Ports [**] [Classification: Attempted Information Leak] [Priority: 1] {TCP} 68.154.37.66:42371 -> 185.127.18.66:2083
show less
Port Scan
Brute-Force