๐น๐ท
oalver
2026-07-23 14:11:31
(3 days ago)
Detected by SiberKapan threat intelligence platform (siberkapan.org). Attack types: honeypot_telnet. ...
show more
Detected by SiberKapan threat intelligence platform (siberkapan.org). Attack types: honeypot_telnet. Sources: honeypot. First seen: 2026-07-23. Risk score: 90/100.
show less
Brute-Force
IoT Targeted
๐จ๐ญ
GAS
2026-07-21 16:35:29
(4 days ago)
SSH Honeypot attack.
{"duser":"root","level":"info","msg":"Telnet login attempt","password":"xc3511" ...
show more
SSH Honeypot attack.
{"duser":"root","level":"info","msg":"Telnet login attempt","password":"xc3511","src":"139.135.40.102","time":"2026-07-21T16:34:56.022420059Z"}
{"duser":"root","level":"info","msg":"Telnet login attempt","password":"jvbzd","src":"139.135.40.102","time":"2026-07-21T16:34:59.066046304Z"}
{"duser":"admin","level":"info","msg":"Telnet login attempt","password":"meinsm","src":"139.135.40.102","time":"2026-07-21T16:35:02.093872217Z"}
{"duser":"admin","level":"info","msg":"Telnet login attempt","password":"chzhdpl","src":"139.135.40.102","time":"2026-07-21T16:35:05.132338623Z"}
{"duser":"root","level":"info","msg":"Telnet login attempt","password":"666666","src":"139.135.40.102","time":"2026-07-21T16:35:08.14555092Z"}
{"duser":"root","level":"info","msg":"Telnet login attempt","password":"Pon521","src":"139.135.40.102","time":"2026-07-21T16:35:11.158610963Z"}
{"duser":"supervisor","level":"info","msg":"Telnet login attempt","password":"supervisor","src":"139.135.40.102","time":"2026-07-21T16
...
show less
Brute-Force
SSH
๐ง๐พ
sashan
2026-07-21 12:51:17
(5 days ago)
2026-07-21T15:51:16.793393+03:00 gate kernel: nftables: JAIL-TELNET IN=wan OUT= MAC= SRC=139.135.40. ...
show more
2026-07-21T15:51:16.793393+03:00 gate kernel: nftables: JAIL-TELNET IN=wan OUT= MAC= SRC=139.135.40.102 DST=xxx.xxx.xxx.xxx LEN=40 TOS=0x00 PREC=0x00 TTL=52 ID=47135 PROTO=TCP SPT=24608 DPT=23 WINDOW=37821 RES=0x00 SYN URGP=0
...
show less
Port Scan
๐ท๐บ
Agrohim
2026-07-14 09:00:03
(1 week ago)
Gate I blocked for categories:
DDoS Attack
Ping of Death
Port Scan
Hacking
Brute-Force
๐บ๐ธ
xmission.com
2026-07-13 10:07:40
(1 week ago)
Blocked by UFW (TCP on 23)
Source port: 23853
TTL: 44
Packet length: 40
TOS: 0x08
This report (for ...
show more
Blocked by UFW (TCP on 23)
Source port: 23853
TTL: 44
Packet length: 40
TOS: 0x08
This report (for 139.135.40.102) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
Hacking
Brute-Force
๐ฉ๐ช
ValtonTahiri
2026-07-12 12:21:35
(2 weeks ago)
UFW blocked a suspicious connection attempt to a closed or denied port. This activity is commonly as ...
show more
UFW blocked a suspicious connection attempt to a closed or denied port. This activity is commonly associated with port scanning, service discovery, or automated internet probing. Technical: source_ip=139.135.40.102; proto=TCP; source_port=24486; target_port=23; flags=SYN
show less
Port Scan
๐ฉ๐ช
andorin
2026-07-12 04:00:47
(2 weeks ago)
SSH/Telnet honeypot (endlessh) on habith.eu: 27 connection attempts trapped, total tarpit time 13.8m ...
show more
SSH/Telnet honeypot (endlessh) on habith.eu: 27 connection attempts trapped, total tarpit time 13.8min. Automated report.
show less
Port Scan
Brute-Force
SSH
๐ต๐ฑ
sefinek.net
2026-07-09 14:02:57
(2 weeks ago)
Honeypot hit: Brute-force attack detected on 23/TELNET
โข Credentials: root:vizxv, administrator:1234 ...
show more
Honeypot hit: Brute-force attack detected on 23/TELNET
โข Credentials: root:vizxv, administrator:1234, root:, admin:BrAhMoS@15, root:zlxx, guest:guest, user:1234, root:1111, nmgcuadmin:nmgcuadmin, admin:password, ftp:ftp, root:helpme, 888888:888888, root:bluehorse, admin:1q2w3e, supervisor:supervisor, support:support, root:25802580, admin:1234567890, e8telnet:e8telnet, gdcuadmin:gdcuadmin, guest:12345, support:1234
โข Number of login attempts: 23
โข 36 command(s) were executed during the session
Reported by: https://github.com/sefinek/T-Pot-To-AbuseIPDB
show less
Brute-Force
Hacking
๐ณ๐ฑ
VMHeaven.io
2026-07-09 10:15:44
(2 weeks ago)
Blocked by UFW [23/tcp]
Source port: 23621
TTL: 53
Packet length: 40
Port Scan
Hacking
Brute-Force
๐ฐ๐ท
2048
2026-07-07 13:13:22
(2 weeks ago)
Telnet credential brute-force observed by honeypot.
Source IP: 139.135.40.102
Targeted device: DVR
F ...
show more
Telnet credential brute-force observed by honeypot.
Source IP: 139.135.40.102
Targeted device: DVR
First seen: 07 Jul 2026 13:09:31 UTC
Last seen: 07 Jul 2026 13:13:22 UTC
Attempts: 25
Sample credentials: root:12345678, root:e2008jl, root:helpme, CMCCAdmin:CMCCAdmin, root:12345, root:123456, root:888888, admin1:password, Administrator:admin, admin:123456789
show less
Brute-Force
IoT Targeted
๐ฆ๐น
urnilxfgbez
2026-07-06 22:45:00
(2 weeks ago)
Last 24 Hours suspicious: (DPT=445|DPT=3389|DPT=22|DPT=3306|DPT=8080|DPT=23|DPT=5900|DPT=1433)
Port Scan
๐ฆ๐น
urnilxfgbez
2026-07-01 22:45:00
(3 weeks ago)
Last 24 Hours suspicious: (DPT=445|DPT=3389|DPT=22|DPT=3306|DPT=8080|DPT=23|DPT=5900|DPT=1433)
Port Scan
๐ฆ๐น
urnilxfgbez
2026-06-29 22:45:00
(3 weeks ago)
Last 24 Hours suspicious: (DPT=445|DPT=3389|DPT=22|DPT=3306|DPT=8080|DPT=23|DPT=5900|DPT=1433)
Port Scan
๐ฉ๐ช
_ArminS_
2026-06-28 17:37:31
(3 weeks ago)
SP-Scan 24844:23 detected 2026.06.28 19:37:31
blocked until 2026.08.17 12:40:18
Port Scan
๐ช๐ธ
librebit
2026-06-28 04:08:01
(4 weeks ago)
Brute force
Brute-Force