๐ฉ๐ช
bescared
2026-06-17 16:11:46
(2 hours ago)
F2B - Malicious activity detected. Excessive port scans. -151302cd-
Port Scan
๐บ๐ธ
ISPLtd
2026-06-17 14:00:28
(4 hours ago)
Jun 17 08:00:27 142.93.57.3 TCP SPT=42064 DPT=2078 SYN
Jun 17 08:00:27 142.93.57.3 TCP SPT=32892 DPT ...
show more
Jun 17 08:00:27 142.93.57.3 TCP SPT=42064 DPT=2078 SYN
Jun 17 08:00:27 142.93.57.3 TCP SPT=32892 DPT=2086 SYN
Jun 17 08:00:27 142.93.57.3 TCP SPT=36186 DPT=2087
...
show less
Port Scan
๐ฉ๐ช
dispaisyenterprises
2026-06-17 13:33:50
(5 hours ago)
Honeypot [fra-de-honeypot]: Empty payload (likely service probe); 2083 [1], 2096 [1], 2077 [1], 2078 ...
show more
Honeypot [fra-de-honeypot]: Empty payload (likely service probe); 2083 [1], 2096 [1], 2077 [1], 2078 [1], 2095 [1], 2082 [1] TCP
Reported by DisPaisy Enterprises (dispaisy.systems) using: https://github.com/sefinek/T-Pot-To-AbuseIPDB
show less
Port Scan
๐บ๐ธ
MPL
2026-06-17 13:28:13
(5 hours ago)
tcp port scan (20 or more attempts)
Port Scan
๐ง๐ท
ludarkstar99
2026-06-17 12:40:05
(6 hours ago)
Blocked by os-abuseipdb; 12 hits, proto=tcp, ports=2077,2078,2082,2083,2086,2087,2095,2096,443,80
Port Scan
Hacking
Anonymous
2026-06-17 12:25:15
(6 hours ago)
Jun 17 08:25:14 localhost kernel: [110044401.769263] iptables_INPUT_denied: IN=eth0 OUT= MAC=f2:3c:9 ...
show more
Jun 17 08:25:14 localhost kernel: [110044401.769263] iptables_INPUT_denied: IN=eth0 OUT= MAC=f2:3c:91:84:83:95:00:00:0c:9f:f0:1e:08:00 SRC=142.93.57.3 DST=[mungedIP2] LEN=60 TOS=0x00 PREC=0x00 TTL=56 ID=55119 DF PROTO=TCP SPT=51296 DPT=2083 WINDOW=64240 RES=0x00 SYN URGP=0
Jun 17 08:25:14 localhost kernel: [110044401.769270] iptables_INPUT_denied: IN=eth0 OUT= MAC=f2:3c:91:84:83:95:00:00:0c:9f:f0:1e:08:00 SRC=142.93.57.3 DST=[mungedIP2] LEN=60 TOS=0x00 PREC=0x00 TTL=56 ID=26246 DF PROTO=TCP SPT=42730 DPT=2096 WINDOW=64240 RES=0x00 SYN URGP=0
Jun 17 08:25:14 localhost kernel: [110044401.769279] iptables_INPUT_denied: IN=eth0 OUT= MAC=f2:3c:91:84:83:95:00:00:0c:9f:f0:1e:08:00 SRC=142.93.57.3 DST=[mungedIP2] LEN=60 TOS=0x00 PREC=0x00 TTL=56 ID=55119 DF PROTO=TCP SPT=51296 DPT=2083 SEQ=112647184 ACK=0 WINDOW=64240 RES=0x00 SYN URGP=0 OPT (020405B40402080A031A28610000000001030307)
Jun 17 08:25:14 localhost kernel: [110044401.769283] iptables_INPUT_denied: IN=eth0 OUT= MAC=f2:3c:91:84:83:95:00:00:0c:9f:f0:1e:08:
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-06-17 09:26:44
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 142.93.57.3 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 142.93.57.3 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 17 05:26:36.731911 2026] [security2:error] [pid 22039:tid 22039] [client 142.93.57.3:39528] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.141"] [uri "/.git/HEAD"] [unique_id "ajJoTPdqZnozDIpyXcEXywAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-17 08:07:15
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 142.93.57.3 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 142.93.57.3 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 17 04:07:09.475905 2026] [security2:error] [pid 24826:tid 24826] [client 142.93.57.3:45046] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.217"] [uri "/.git/HEAD"] [unique_id "ajJVrTyMb2rptzcZUCt0sAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
FireGuard Server
2026-06-17 07:25:06
(11 hours ago)
Blocked by OPNsense firewall; 8 hits, proto=tcp, ports=2077,2078,2082,2083,2086,2087,2095,2096
Port Scan
Hacking
๐ซ๐ท
TheHoneyPotter
2026-06-17 05:36:02
(13 hours ago)
Honeypot [fc-honeypot]: Empty payload (likely service probe); 2078 [1], 2095 [1], 2082 [1], 2086 [1] ...
show more
Honeypot [fc-honeypot]: Empty payload (likely service probe); 2078 [1], 2095 [1], 2082 [1], 2086 [1], 2077 [1], 2083 [1] TCP
Reported by: https://github.com/sefinek/T-Pot-To-AbuseIPDB
show less
Port Scan
๐ซ๐ฎ
Kimmo Rieskaniemi
2026-06-17 04:44:29
(14 hours ago)
CrowdSec triggered crowdsecurity/http-probing
Web App Attack
Hacking
๐บ๐ธ
xmission.com
2026-06-17 04:20:14
(14 hours ago)
Blocked by UFW (TCP on 2078)
Source port: 55938
TTL: 50
Packet length: 60
TOS: 0x08
This report (fo ...
show more
Blocked by UFW (TCP on 2078)
Source port: 55938
TTL: 50
Packet length: 60
TOS: 0x08
This report (for 142.93.57.3) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐บ๐ธ
MPL
2026-06-17 04:18:12
(14 hours ago)
tcp port scan (8 or more attempts)
Port Scan
๐ซ๐ท
polido
2026-06-17 03:52:17
(14 hours ago)
Unauthorized connection attempt to port 443 from 142.93.57.3
Port Scan
๐ง๐ท
SOC PR
2026-06-17 03:23:25
(15 hours ago)
IPS: Web Server Enforcement Violation.
Hacking