๐ช๐ธ
bohl-aiG5aef
2026-10-05 11:43:52
(1 day ago)
Suricata Alert [SID:2031502] ET INFO Request to Hidden Environment File - Inbound
Hacking
Anonymous
2026-09-04 16:30:20
(1 month ago)
Failed login attempt detected by Fail2Ban in plesk-postfix jail
Brute-Force
๐ณ๐ฑ
Mangelot Hosting
2026-09-04 07:45:19
(1 month ago)
(exim_auth_fail) srv201 Exim Login Failure 138.199.6.243 (CH/Switzerland/unn-138-199-6-243.datapacke ...
show more
(exim_auth_fail) srv201 Exim Login Failure 138.199.6.243 (CH/Switzerland/unn-138-199-6-243.datapacket.com): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐ณ๐ฑ
Mangelot Hosting
2026-09-04 06:34:46
(1 month ago)
(exim_auth_fail) srv103 Exim Login Failure 138.199.6.243 (CH/Switzerland/unn-138-199-6-243.datapacke ...
show more
(exim_auth_fail) srv103 Exim Login Failure 138.199.6.243 (CH/Switzerland/unn-138-199-6-243.datapacket.com): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐ซ๐ท
Dampen59
2026-09-04 06:27:45
(1 month ago)
(smtpauth) Failed SMTP AUTH login from 138.199.6.243 (CH/Switzerland/unn-138-199-6-243.datapacket.co ...
show more
(smtpauth) Failed SMTP AUTH login from 138.199.6.243 (CH/Switzerland/unn-138-199-6-243.datapacket.com): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_SMTPAUTH; Logs: 2026-09-04 06:27:13 dovecot_login authenticator failed for H=(AzSauKeiL) [138.199.6.243]:53607: 535 Incorrect authentication data ([email protected] )
2026-09-04 06:27:20 dovecot_login authenticator failed for H=(jyOwc1) [138.199.6.243]:45047: 535 Incorrect authentication data (set_id=contact)
2026-09-04 06:27:35 dovecot_login authenticator failed for H=(KW7q6Qg3HZ) [138.199.6.243]:41585: 535 Incorrect authentication data ([email protected] )
2026-09-04 06:27:37 dovecot_login authenticator failed for H=(QoEyxY5Fa) [138.199.6.243]:50993: 535 Incorrect authentication data (set_id=contact)
2026-09-04 06:27:43 dovecot_login authenticator failed for H=(03giCYhP) [138.199.6.243]:41799: 535 Incorrect authentication data ([email protected] )
show less
Port Scan
๐ซ๐ฎ
notelseit
2026-09-04 03:22:23
(1 month ago)
2026-09-04T05:22:16.234400+02:00 mail postfix/submission/smtpd[3603301]: warning: unknown[138.199.6. ...
show more
2026-09-04T05:22:16.234400+02:00 mail postfix/submission/smtpd[3603301]: warning: unknown[138.199.6.243]: SASL LOGIN authentication failed: (reason unavailable), [email protected]
2026-09-04T05:22:16.298922+02:00 mail postfix/submission/smtpd[3603301]: disconnect from unknown[138.199.6.243] ehlo=2 starttls=1 auth=0/1 commands=3/4
2026-09-04T05:22:23.133273+02:00 mail postfix/submission/smtpd[3603301]: warning: unknown[138.199.6.243]: SASL LOGIN authentication failed: (reason unavailable), sasl_username=info
...
show less
Brute-Force
Email Spam
๐บ๐ธ
mnogoweb
2026-09-04 03:17:42
(1 month ago)
(smtpauth) Failed SMTP AUTH login from 138.199.6.243 (CH/Switzerland/unn-138-199-6-243.datapacket.co ...
show more
(smtpauth) Failed SMTP AUTH login from 138.199.6.243 (CH/Switzerland/unn-138-199-6-243.datapacket.com): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_SMTPAUTH; Logs: 2026-09-03 20:38:40 login authenticator failed for (QmWcAIzz9G) [138.199.6.243]: 535 Incorrect authentication data ([email protected] )
2026-09-03 20:45:15 login authenticator failed for (hAtsrkxeHG) [138.199.6.243]: 535 Incorrect authentication data ([email protected] )
2026-09-03 21:17:20 login authenticator failed for (bjWTNMH) [138.199.6.243]: 535 Incorrect authentication data ([email protected] )
2026-09-03 21:17:23 login authenticator failed for (IpeHKCF) [138.199.6.243]: 535 Incorrect authentication data (set_id=ethanjackson)
2026-09-03 21:17:35 login authenticator failed for (k0BfFPqE) [138.199.6.243]: 535 Incorrect authentication data ([email protected] )
show less
Port Scan
๐ซ๐ท
Batz
2026-09-03 18:58:01
(1 month ago)
[138.199.6.243] Multiple SASL Login Attempts
Brute-Force
Hacking
Port Scan
๐ฎ๐ฉ
xveil
2026-09-03 18:31:43
(1 month ago)
2026-09-04T01:31:39.544610 mail-honeypot postfix/submission/smtpd[30512]: warning: unknown[138.199.6 ...
show more
2026-09-04T01:31:39.544610 mail-honeypot postfix/submission/smtpd[30512]: warning: unknown[138.199.6.243]: SASL LOGIN authentication failed: authentication failure
...
show less
Brute-Force
๐ฎ๐ฉ
xveil
2026-09-03 16:40:33
(1 month ago)
2026-09-03T23:40:30.741655 mail-honeypot postfix/submission/smtpd[8128]: warning: unknown[138.199.6. ...
show more
2026-09-03T23:40:30.741655 mail-honeypot postfix/submission/smtpd[8128]: warning: unknown[138.199.6.243]: SASL LOGIN authentication failed: authentication failure
...
show less
Brute-Force
๐ฎ๐ฉ
xveil
2026-09-03 15:59:50
(1 month ago)
2026-09-03T22:59:44.925790 mail-honeypot postfix/submission/smtpd[9763]: warning: unknown[138.199.6. ...
show more
2026-09-03T22:59:44.925790 mail-honeypot postfix/submission/smtpd[9763]: warning: unknown[138.199.6.243]: SASL LOGIN authentication failed: authentication failure
...
show less
Brute-Force
๐จ๐ญ
4server
2026-08-13 13:12:44
(1 month ago)
Aug1315:11:43server6kernel:Firewall:\*PortFlood\*IN=eth0OUT=MAC=00:16:3e:48:7d:e4:54:7f:ee:6c:bf:41: ...
show more
Aug1315:11:43server6kernel:Firewall:\*PortFlood\*IN=eth0OUT=MAC=00:16:3e:48:7d:e4:54:7f:ee:6c:bf:41:08:00SRC=138.199.6.243DST=81.17.25.250LEN=48TOS=0x00PREC=0x00TTL=116ID=21180DFPROTO=TCPSPT=65490DPT=2083WINDOW=64320RES=0x00SYNURGP=0Aug1315:11:44server6kernel:Firewall:\*PortFlood\*IN=eth0OUT=MAC=00:16:3e:48:7d:e4:54:7f:ee:6c:bf:41:08:00SRC=138.199.6.243DST=81.17.25.250LEN=48TOS=0x00PREC=0x00TTL=115ID=21270DFPROTO=TCPSPT=65491DPT=2083WINDOW=64320RES=0x00SYNURGP=0Aug1315:11:44server6kernel:Firewall:\*PortFlood\*IN=eth0OUT=MAC=00:16:3e:48:7d:e4:54:7f:ee:6c:bf:41:08:00SRC=138.199.6.243DST=81.17.25.250LEN=48TOS=0x00PREC=0x00TTL=116ID=21271DFPROTO=TCPSPT=65490DPT=2083WINDOW=64320RES=0x00SYNURGP=0Aug1315:11:45server6kernel:Firewall:\*PortFlood\*IN=eth0OUT=MAC=00:16:3e:48:7d:e4:54:7f:ee:6c:bf:41:08:00SRC=138.199.6.243DST=81.17.25.250LEN=48TOS=0x00PREC=0x00TTL=115ID=21272DFPROTO=TCPSPT=65491DPT=2083WINDOW=64320RES=0x00SYNURGP=0Aug1315:11:46server6kernel:Firewall:\*PortFlood\*IN=eth0OUT=MAC=00:16:3e:48:7d:e4:54:7f:ee:6
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-07 17:39:24
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 138.199.6.243 (unn-138-199-6-243.datapacket.com ...
show more
(mod_security) mod_security (id:210492) triggered by 138.199.6.243 (unn-138-199-6-243.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 07 13:39:16.369202 2026] [security2:error] [pid 2184726:tid 2184726] [client 138.199.6.243:48838] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.37"] [uri "/.env.dev"] [unique_id "anYYRPjmjHoUJ0EYRAr8BAAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
bescared
2026-08-07 15:44:44
(1 month ago)
F2B - Malicious activity detected. URL Probing. -8ff06ede-
Hacking
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-08-07 14:02:11
(1 month ago)
Multiple WAF Violations
Web App Attack