๐จ๐ญ
blinx
2026-03-08 19:20:24
(3 months ago)
2026-03-08T21:20:23.788661+02:00 blinx-rpi4 endlessh[359]: 2026-03-08T19:20:23.788Z CLOSE host=::fff ...
show more
2026-03-08T21:20:23.788661+02:00 blinx-rpi4 endlessh[359]: 2026-03-08T19:20:23.788Z CLOSE host=::ffff:143.198.229.249 port=36812 fd=4 time=20.013 bytes=27
...
show less
Brute-Force
SSH
๐บ๐ธ
mnsf
2026-01-14 11:05:18
(5 months ago)
Too many Status 40X (29)
Request Overload (134)
Brute-Force
Web App Attack
๐ณ๐ฑ
Mangelot Hosting
2026-01-13 11:17:54
(5 months ago)
(PERMBLOCK) 143.198.229.249 (US/United States/-) has had more than 4 temp blocks in the last 86400 s ...
show more
(PERMBLOCK) 143.198.229.249 (US/United States/-) has had more than 4 temp blocks in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_PERMBLOCK_COUNT; Logs:
show less
Port Scan
๐ฉ๐ช
kernel-error.de
2026-01-13 07:56:55
(5 months ago)
143.198.229.249 - - [13/Jan/2026:08:56:53 +0100] "GET /example/upload.php/files/327Uecgs.php HTTP/1. ...
show more
143.198.229.249 - - [13/Jan/2026:08:56:53 +0100] "GET /example/upload.php/files/327Uecgs.php HTTP/1.1" 404 146 "-" "Mozilla/5.0 (Mac OS X 13_2) AppleWebKit/537.36 (KHTML, like Gecko) Edge/102.0 Safari/537.36" www.kernel-error.de HTTP/1.1 https 0.000 - - - TLSv1.3 TLS_CHACHA20_POLY1305_SHA256
143.198.229.249 - - [13/Jan/2026:08:56:53 +0100] "GET /php/index.php/files/327Uecgs.php HTTP/1.1" 404 146 "-" "Mozilla/5.0 (Mac OS X 13_2) AppleWebKit/537.36 (KHTML, like Gecko) Edge/108.0 Safari/537.36" www.kernel-error.de HTTP/1.1 https 0.000 - - - TLSv1.3 TLS_CHACHA20_POLY1305_SHA256
143.198.229.249 - - [13/Jan/2026:08:56:53 +0100] "GET /files/327Uecgs.php HTTP/1.1" 404 548 "-" "Mozilla/5.0 (Debian; Linux i686) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/118.0.0.0 Safari/537.36" www.kernel-error.de HTTP/1.1 https 0.000 - - - TLSv1.3 TLS_CHACHA20_POLY1305_SHA256
143.198.229.249 - - [13/Jan/2026:08:56:53 +0100] "GET /files/327Uecgs.php HTTP/1.1" 404 146 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS
...
show less
Web App Attack
๐ณ๐ฑ
Mangelot Hosting
2026-01-13 06:34:01
(5 months ago)
(modsecurity) srv202 ModSecurity 143.198.229.249 (US/United States/-): 5 in the last 3600 secs; Port ...
show more
(modsecurity) srv202 ModSecurity 143.198.229.249 (US/United States/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐บ๐ธ
mnsf
2026-01-12 04:05:02
(5 months ago)
Too many Status 40X (12)
Brute-Force
Web App Attack
๐ช๐ธ
robotstxt
2026-01-06 10:02:25
(5 months ago)
143.198.229.249 - - [06/Jan/2026:09:33:48 +0000] "GET /cgi-bin/status/status.cgi HTTP/1.1" 404 20339 ...
show more
143.198.229.249 - - [06/Jan/2026:09:33:48 +0000] "GET /cgi-bin/status/status.cgi HTTP/1.1" 404 20339 "() { ignored; }; echo Content-Type: text/html; echo ; /bin/cat /etc/passwd" rt="0.296" "Mozilla/5.0 (ZZ; Linux x86_64; rv:131.0) Gecko/20100101 Firefox/131.0" "-" h="productos.aegon.es" sn="productos.aegon.es" ru="/cgi-bin/status/status.cgi" u="/index.php" ucs="-" ua="unix:/var/run/php/productos82.sock" us="404" uct="0.000" urt="0.296"
143.198.229.249 - - [06/Jan/2026:09:33:48 +0000] "GET /cgi-bin/test.cgi HTTP/1.1" 404 20404 "() { ignored; }; echo Content-Type: text/html; echo ; /bin/cat /etc/passwd" rt="0.317" "Mozilla/5.0 (CentOS; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/123.0.0.0 Safari/537.36" "-" h="productos.aegon.es" sn="productos.aegon.es" ru="/cgi-bin/test.cgi" u="/index.php" ucs="-" ua="unix:/var/run/php/productos82.sock" us="404" uct="0.000" urt="0.317"
143.198.229.249 - - [06/Jan/2026:09:33:48 +0000] "GET /cgi-bin/status/status.cgi HTTP/1.1" 404 20339 "(
...
show less
Bad Web Bot
๐บ๐ธ
mnsf
2026-01-05 11:06:31
(5 months ago)
Too many Status 50X (15)
Brute-Force
Web App Attack
Anonymous
2026-01-05 10:30:01
(5 months ago)
| Shellshock attack attempt
Hacking
SQL Injection
Web App Attack
๐ง๐ช
cmbplf
2026-01-04 21:06:47
(5 months ago)
68 requests with url.path *.dll
Brute-Force
Bad Web Bot
๐ฌ๐ง
Apache
2026-01-04 12:10:17
(5 months ago)
(mod_security) mod_security (id:20000010) triggered by 143.198.229.249 (US/United States/-): 5 in th ...
show more
(mod_security) mod_security (id:20000010) triggered by 143.198.229.249 (US/United States/-): 5 in the last 300 secs
show less
Email Spam
Brute-Force
Web App Attack
๐ง๐ช
cmbplf
2025-12-23 13:30:24
(5 months ago)
24 requests with url.path *.dll
Brute-Force
Bad Web Bot
๐ญ๐บ
szasa
2025-12-22 11:04:19
(5 months ago)
2025/12/22 11:37:31 [error] 2509976#2509976: *2552253 access forbidden by rule, client: 143.198.229. ...
show more
2025/12/22 11:37:31 [error] 2509976#2509976: *2552253 access forbidden by rule, client: 143.198.229.249, server: datamentor.hu, request: "GET /wp-content/uploads/hstmp/glyoZe.php HTTP/1.1", host: "www.beszerzokozpont.hu"
2025/12/22 11:39:09 [error] 2509976#2509976: *2552355 access forbidden by rule, client: 143.198.229.249, server: datamentor.hu, request: "GET /wp-content/uploads/kaswara/fonts_icon/aaplrc/qk.php HTTP/1.1", host: "www.beszerzokozpont.hu"
2025/12/22 11:41:13 [error] 2509976#2509976: *2552492 access forbidden by rule, client: 143.198.229.249, server: datamentor.hu, request: "GET /wp-content/uploads/workreap-temp/37C17kGxvJ49TwukPbhM5zRGnD8.php HTTP/1.1", host: "www.beszerzokozpont.hu"
2025/12/22 12:04:18 [error] 2509976#2509976: *2554226 access forbidden by rule, client: 143.198.229.249, server: datamentor.hu, request: "GET /wp-content/uploads/pp-files/jljjt.php HTTP/1.1", host: "www.beszerzokozpont.hu"
...
show less
Web App Attack
๐ง๐ช
cmbplf
2025-12-18 22:08:46
(6 months ago)
35 requests with url.path *.dll
Brute-Force
Bad Web Bot
๐ง๐ช
cmbplf
2025-12-15 20:39:13
(6 months ago)
15 requests with url.path *.dll
Brute-Force
Bad Web Bot