๐ธ๐ฌ
securejdprop
2026-03-07 08:39:55
(3 months ago)
This IP was detected by CrowdSec triggering crowdsecurity/suricata-major-severity(ET CINS Active Thr ...
show more
This IP was detected by CrowdSec triggering crowdsecurity/suricata-major-severity(ET CINS Active Threat Intelligence Poor Reputation IP group 208). Ip 149.28.47.234 performed 'crowdsecurity/suricata-major-severity' (1 events over 0s) at 2026-03-07 08:39:54.676081431 +0000 UTC
show less
Hacking
Web App Attack
๐ฌ๐ง
sonot
2026-03-07 08:37:11
(3 months ago)
Blocked by UFW on tunneluk01 [9090/tcp]
Source port: 52322
TTL: 241
Packet length: 40
TOS: 0x00
Thi ...
show more
Blocked by UFW on tunneluk01 [9090/tcp]
Source port: 52322
TTL: 241
Packet length: 40
TOS: 0x00
This report was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐บ๐ธ
LotPhantom
2026-03-07 08:33:20
(3 months ago)
2026-03-07T08:32:45.109738+00:00 bridginggaps kernel: [UFW BLOCK] IN=eth0 OUT= MAC=2e:bc:64:1d:2c:e1 ...
show more
2026-03-07T08:32:45.109738+00:00 bridginggaps kernel: [UFW BLOCK] IN=eth0 OUT= MAC=2e:bc:64:1d:2c:e1:fe:00:00:00:01:01:08:00 SRC=149.28.47.234 DST=157.230.217.55 LEN=40 TOS=0x00 PREC=0x00 TTL=246 ID=33009 PROTO=TCP SPT=52322 DPT=8188 WINDOW=1024 RES=0x00 SYN URGP=0
2026-03-07T08:33:19.807201+00:00 bridginggaps kernel: [UFW BLOCK] IN=eth0 OUT= MAC=2e:bc:64:1d:2c:e1:fe:00:00:00:01:01:08:00 SRC=149.28.47.234 DST=157.230.217.55 LEN=40 TOS=0x00 PREC=0x00 TTL=246 ID=29582 PROTO=TCP SPT=52322 DPT=6333 WINDOW=1024 RES=0x00 SYN URGP=0
...
show less
Port Scan
Hacking
๐ฉ๐ช
phil2k
2026-03-07 08:32:30
(3 months ago)
fail2ban:firewall:2026-03-07T09:32:11.856387+01:00 <SRV> firewall: filter IN=<ANONYMIZED_INTERFACE> ...
show more
fail2ban:firewall:2026-03-07T09:32:11.856387+01:00 <SRV> firewall: filter IN=<ANONYMIZED_INTERFACE> OUT= MAC=<ANONYMIZED_MAC> SRC=149.28.47.234 DST=<PRIVATE_IPv4> LEN=40 TOS=0x00 PREC=0x00 TTL=244 ID=58765 PROTO=TCP SPT=52322 DPT=8501 WINDOW=1024 RES=0x00 SYN URGP=0
2026-03-07T09:32:28.503233+01:00 <SRV> firewall: filter IN=<ANONYMIZED_INTERFACE> OUT= MAC=<ANONYMIZED_MAC> SRC=149.28.47.234 DST=<ANONYMIZED_IP> LEN=40 TOS=0x00 PREC=0x00 TTL=245 ID=64424 PROTO=TCP SPT=52322 DPT=8888 WINDOW=1024 RES=0x00 SYN URGP=0
show less
DDoS Attack
Port Scan
๐ซ๐ท
oonux.net
2026-03-07 08:06:23
(3 months ago)
RouterOS: Scanning detected TCP 149.28.47.234:50772 > x.x.x.x:8080
Port Scan
Anonymous
2026-03-07 00:30:33
(3 months ago)
Triggered: repeated knocking on closed ports.
Port Scan
Anonymous
2026-03-07 00:13:54
(3 months ago)
Mar 6 19:11:06 localhost kernel: [101187754.964070] iptables_INPUT_denied: IN=eth0 OUT= MAC=f2:3c:9 ...
show more
Mar 6 19:11:06 localhost kernel: [101187754.964070] iptables_INPUT_denied: IN=eth0 OUT= MAC=f2:3c:91:84:83:95:00:00:0c:9f:f0:1e:08:00 SRC=149.28.47.234 DST=[mungedIP2] LEN=40 TOS=0x00 PREC=0x00 TTL=247 ID=8828 PROTO=TCP SPT=42221 DPT=9090 WINDOW=1024 RES=0x00 SYN URGP=0
Mar 6 19:11:06 localhost kernel: [101187754.964078] iptables_INPUT_denied: IN=eth0 OUT= MAC=f2:3c:91:84:83:95:00:00:0c:9f:f0:1e:08:00 SRC=149.28.47.234 DST=[mungedIP2] LEN=40 TOS=0x00 PREC=0x00 TTL=247 ID=8828 PROTO=TCP SPT=42221 DPT=9090 SEQ=3451281792 ACK=0 WINDOW=1024 RES=0x00 SYN URGP=0
Mar 6 19:13:52 localhost kernel: [101187921.282957] iptables_INPUT_denied: IN=eth0 OUT= MAC=f2:3c:91:84:83:95:00:00:0c:9f:f0:1e:08:00 SRC=149.28.47.234 DST=[mungedIP2] LEN=40 TOS=0x00 PREC=0x00 TTL=247 ID=16500 PROTO=TCP SPT=42221 DPT=11434 WINDOW=1024 RES=0x00 SYN URGP=0
Mar 6 19:13:52 localhost kernel: [101187921.282964] iptables_INPUT_denied: IN=eth0 OUT= MAC=f2:3c:91:84:83:95:00:00:0c:9f:f0:1e:08:00 SRC=149.28.47.234 DST=[mungedIP2] LEN=40 TOS=0x
show less
Port Scan
๐บ๐ธ
kelliwic.net
2026-03-07 00:11:56
(3 months ago)
Port scan detected (F2B)
Port Scan
๐ฏ๐ต
jay hung
2026-03-07 00:11:47
(3 months ago)
2026-03-07T00:11:43.521117+00:00 quarktech kernel: [1771074.323200] [UFW BLOCK] IN=eth0 OUT= MAC=22: ...
show more
2026-03-07T00:11:43.521117+00:00 quarktech kernel: [1771074.323200] [UFW BLOCK] IN=eth0 OUT= MAC=22:00:92:2e:84:93:fe:ff:ff:ff:ff:ff:08:00 SRC=149.28.47.234 DST=172.237.29.33 LEN=40 TOS=0x00 PREC=0x00 TTL=236 ID=3525 PROTO=TCP SPT=42221 DPT=4444 WINDOW=1024 RES=0x00 SYN URGP=0
...
show less
Port Scan
๐ซ๐ท
masterguru
2026-03-06 23:52:26
(3 months ago)
*Port Scan* detected from 149.28.47.234 (US/United States/149.28.47.234.vultrusercontent.com). 11 hi ...
show more
*Port Scan* detected from 149.28.47.234 (US/United States/149.28.47.234.vultrusercontent.com). 11 hits in the last 107 seconds (0-196)
show less
Port Scan
๐ซ๐ท
sthoyer.de
2026-03-06 23:52:01
(3 months ago)
Mar 7 00:50:16 sthoyer kernel: [IPTables-Dropped-I] IN=eth0 OUT= MAC=00:50:56:43:00:af:c0:69:11:cd: ...
show more
Mar 7 00:50:16 sthoyer kernel: [IPTables-Dropped-I] IN=eth0 OUT= MAC=00:50:56:43:00:af:c0:69:11:cd:10:f7:08:00 SRC=149.28.47.234 DST=173.212.223.67 LEN=40 TOS=0x00 PREC=0x00 TTL=245 ID=53219 PROTO=TCP SPT=41011 DPT=18789 WINDOW=1024 RES=0x00 SYN URGP=0
Mar 7 00:51:09 sthoyer kernel: [IPTables-Dropped-I] IN=eth0 OUT= MAC=00:50:56:43:00:af:c0:69:11:cd:10:f7:08:00 SRC=149.28.47.234 DST=173.212.223.67 LEN=40 TOS=0x00 PREC=0x00 TTL=245 ID=733 PROTO=TCP SPT=41011 DPT=11435 WINDOW=1024 RES=0x00 SYN URGP=0
Mar 7 00:51:10 sthoyer kernel: [IPTables-Dropped-I] IN=eth0 OUT= MAC=00:50:56:43:00:af:c0:69:11:cd:10:f7:08:00 SRC=149.28.47.234 DST=173.212.223.67 LEN=40 TOS=0x00 PREC=0x00 TTL=245 ID=18088 PROTO=TCP SPT=41011 DPT=1234 WINDOW=1024 RES=0x00 SYN URGP=0
Mar 7 00:51:26 sthoyer kernel: [IPTables-Dropped-I] IN=eth0 OUT= MAC=00:50:56:43:00:af:c0:69:11:cd:10:f7:08:00 SRC=149.28.47.234 DST=173.212.223.67 LEN=40 TOS=0x00 PREC=0x00 TTL=245 ID=55605 PROTO=TCP SPT=41011 DPT=3000 WINDOW=1024 RES=0
...
show less
Port Scan
Anonymous
2026-03-06 23:51:17
(3 months ago)
149.28.47.234 detected on srv02
Port Scan
๐ซ๐ท
Richie
2026-03-06 23:50:49
(3 months ago)
[HOST2] Port Scan detected
Port Scan
๐ซ๐ท
Petre 21_ip
2026-03-06 23:50:48
(3 months ago)
2026-03-07T00:50:26.496553+01:00 vmi2775508 kernel: [UFW BLOCK] IN=eth0 OUT= MAC=00:50:56:5c:a7:cf:c ...
show more
2026-03-07T00:50:26.496553+01:00 vmi2775508 kernel: [UFW BLOCK] IN=eth0 OUT= MAC=00:50:56:5c:a7:cf:c0:69:11:b3:85:db:08:00 SRC=149.28.47.234 DST=155.133.26.57 LEN=40 TOS=0x00 PREC=0x00 TTL=242 ID=44188 PROTO=TCP SPT=41011 DPT=1337 WINDOW=1024 RES=0x00 SYN URGP=0
2026-03-07T00:50:35.558289+01:00 vmi2775508 kernel: [UFW BLOCK] IN=eth0 OUT= MAC=00:50:56:5c:a7:cf:c0:69:11:b3:85:db:08:00 SRC=149.28.47.234 DST=155.133.26.57 LEN=40 TOS=0x00 PREC=0x00 TTL=245 ID=50258 PROTO=TCP SPT=41011 DPT=6006 WINDOW=1024 RES=0x00 SYN URGP=0
2026-03-07T00:50:47.038720+01:00 vmi2775508 kernel: [UFW BLOCK] IN=eth0 OUT= MAC=00:50:56:5c:a7:cf:c0:69:11:b3:85:db:08:00 SRC=149.28.47.234 DST=155.133.26.57 LEN=40 TOS=0x00 PREC=0x00 TTL=245 ID=9611 PROTO=TCP SPT=41011 DPT=4000 WINDOW=1024 RES=0x00 SYN URGP=0
...
show less
Port Scan
๐ซ๐ท
tavis.page
2026-03-06 23:50:38
(3 months ago)
Blocked by UFW on server [11435/tcp]
Source port: 41011
TTL: 241
Packet length: 40
TOS: 0x00
This r ...
show more
Blocked by UFW on server [11435/tcp]
Source port: 41011
TTL: 241
Packet length: 40
TOS: 0x00
This report was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan