MAGIC
2023-12-10 09:06:48
(1 hour ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
maximonline.co.za
2023-12-08 17:58:03
(1 day ago)
Brute Force SMTP AUTH Attack
Brute-Force
Anonymous
2023-12-08 11:42:23
(1 day ago)
Dec 8 12:42:23 gollum postfix/smtpd[3431663]: NOQUEUE: reject: RCPT from unknown[102.219.208.66]: 5 ... show more Dec 8 12:42:23 gollum postfix/smtpd[3431663]: NOQUEUE: reject: RCPT from unknown[102.219.208.66]: 554 5.7.1 Service unavailable; Client host [102.219.208.66] blocked using zen.spamhaus.org; https://www.spamhaus.org/sbl/query/SBLCSS / https://www.spamhaus.org/query/ip/102.219.208.66; from=<[email protected] > to=<[email protected] > proto=ESMTP helo=<[102.219.208.66]>
... show less
Email Spam
wlt-blocker
2023-12-07 09:27:08
(3 days ago)
Spam with a high level and/or caught by honeypot detected
Email Spam
syokadmin
2023-12-03 17:00:35
(6 days ago)
(smtpauth) Failed SMTP AUTH login from 102.219.208.66 (KE/Kenya/-): 2 in the last 3600 secs
Brute-Force
SvrAdmin
2023-12-03 17:00:24
(6 days ago)
[293] (smtpauth) Failed SMTP AUTH login from 102.219.208.66 (KE/Kenya/-): 5 in the last 3600 secs; P ... show more [293] (smtpauth) Failed SMTP AUTH login from 102.219.208.66 (KE/Kenya/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_SMTPAUTH; Logs: Dec 3 13:59:46 cwp01 postfix/smtpd[9964]: warning: unknown[102.219.208.66]: SASL LOGIN authentication failed: UGFzc3dvcmQ6
Dec 3 13:59:56 cwp01 postfix/smtpd[9964]: warning: unknown[102.219.208.66]: SASL LOGIN authentication failed: UGFzc3dvcmQ6
Dec 3 14:00:10 cwp01 postfix/smtpd[9964]: warning: unknown[102.219.208.66]: SASL LOGIN authentication failed: UGFzc3dvcmQ6
Dec 3 14:00:16 cwp01 postfix/smtpd[9964]: warning: unknown[102.219.208.66]: SASL LOGIN authentication failed: UGFzc3dvcmQ6
Dec 3 14:00:22 cwp01 postfix/smtpd[9964]: warning: unknown[102.219.208.66]: SASL LOGIN authentication failed: UGFzc3dvcmQ6 show less
Port Scan
Hacking
Brute-Force
Exploited Host
SEL
2023-11-28 08:40:00
(1 week ago)
SEXTORTION
Phishing
Email Spam
Spoofing
MakselPr
2023-11-28 01:13:15
(1 week ago)
Nov 28 03:13:23 mail postfix/smtpd[372836]: warning: unknown[102.219.208.66]: SASL LOGIN authenticat ... show more Nov 28 03:13:23 mail postfix/smtpd[372836]: warning: unknown[102.219.208.66]: SASL LOGIN authentication failed: UGFzc3dvcmQ6
Nov 28 03:13:31 mail postfix/smtpd[372836]: warning: unknown[102.219.208.66]: SASL LOGIN authentication failed: UGFzc3dvcmQ6
... show less
Brute-Force
strefapi_com
2023-11-27 02:11:57
(1 week ago)
Brute-force or trying open relay
...
Brute-Force
Web App Attack
Gateway_NOC
2023-11-23 19:28:28
(2 weeks ago)
postfix brute force sasl attack
Brute-Force
Justin Catello
2023-11-23 16:54:36
(2 weeks ago)
(smtpauth) Failed SMTP AUTH login from 102.219.208.66 (KE/Kenya/-): 5 in the last 3600 secs; Ports: ... show more (smtpauth) Failed SMTP AUTH login from 102.219.208.66 (KE/Kenya/-): 5 in the last 3600 secs; Ports: 25,465,587; Direction: 0; Trigger: LF_SMTPAUTH; Logs: 2023-11-23 11:54:00 dovecot_login authenticator failed for (Oyrjjjp) [102.219.208.66]:11210: 535 Incorrect authentication data ([email protected] )
2023-11-23 11:54:08 dovecot_login authenticator failed for (qskUOpyNRP) [102.219.208.66]:12057: 535 Incorrect authentication data (set_id=marissa)
2023-11-23 11:54:21 dovecot_login authenticator failed for (IZZx3hPMG) [102.219.208.66]:12963: 535 Incorrect authentication data ([email protected] )
2023-11-23 11:54:26 dovecot_login authenticator failed for (1GqFbVZ4M) [102.219.208.66]:14265: 535 Incorrect authentication data (set_id=marissa)
2023-11-23 11:54:31 dovecot_login authenticator failed for (TvzfS5Hx) [102.219.208.66]:14733: 535 Incorrect authentication data ([email protected] ) show less
Brute-Force
SSH
stinpriza
2023-11-21 09:16:16
(2 weeks ago)
Email spam (rbl positive)
Email Spam
syokadmin
2023-11-20 18:02:21
(2 weeks ago)
(smtpauth) Failed SMTP AUTH login from 102.219.208.66 (KE/Kenya/-): 2 in the last 3600 secs
Brute-Force
rnl
2023-11-16 00:35:55
(3 weeks ago)
postfix (unknown user, SPF fail or relay access denied)
Brute-Force
rnl
2023-11-16 00:01:03
(3 weeks ago)
postfix
Email Spam
Brute-Force