๐ง๐ท
noconex
2026-09-26 00:41:07
(1 day ago)
Wazuh Alert | Rule ID: 100199 | Desc: Suricata: (ET SCAN Potential SSH Scan) detectado de 190.55.123 ...
show more
Wazuh Alert | Rule ID: 100199 | Desc: Suricata: (ET SCAN Potential SSH Scan) detectado de 190.55.123.245
show less
Port Scan
Brute-Force
SSH
Anonymous
2026-09-25 16:32:34
(1 day ago)
suricata IPS/IDS detection, ruleset ET SCAN Potential SSH Scan
Port Scan
๐ซ๐ท
security.rdmc.fr
2026-09-24 09:23:58
(2 days ago)
Port Scan Attack proto:TCP src:56342 dst:23
Port Scan
๐ง๐ท
noconex
2026-09-24 02:51:10
(3 days ago)
Wazuh Alert | Rule ID: 100199 | Desc: Suricata: (ET SCAN Potential SSH Scan) detectado de 190.55.123 ...
show more
Wazuh Alert | Rule ID: 100199 | Desc: Suricata: (ET SCAN Potential SSH Scan) detectado de 190.55.123.245
show less
Port Scan
Brute-Force
SSH
๐ง๐ท
noconex
2026-09-22 01:00:15
(5 days ago)
Wazuh Alert | Rule ID: 100199 | Desc: Suricata: (ET SCAN Potential SSH Scan) detectado de 190.55.123 ...
show more
Wazuh Alert | Rule ID: 100199 | Desc: Suricata: (ET SCAN Potential SSH Scan) detectado de 190.55.123.245
show less
Port Scan
Brute-Force
SSH
Anonymous
2026-09-21 02:28:45
(6 days ago)
Unauthorized connection
Port Scan
Hacking
๐ช๐ช
Tsumugi Kotobuki
2026-09-19 01:00:16
(1 week ago)
Port Scan on Honeypot | Ports: 22/SSH | Proto: TCP(1) | Flags: all SYN | TTL: 50 | Len: 60B | Win: 6 ...
show more
Port Scan on Honeypot | Ports: 22/SSH | Proto: TCP(1) | Flags: all SYN | TTL: 50 | Len: 60B | Win: 65535(1) | rDNS: cpe-190-55-123-245.telecentro-reversos.com.ar | F2B/ufw-honeypot@2026-09-19T01:00:16Z
show less
Port Scan
Hacking
๐ฉ๐ช
DasDuo
2026-09-18 23:38:39
(1 week ago)
Attempt on port 23 (Telnet) - potential remote access / brute-force attempt. Blocked by firewall (un ...
show more
Attempt on port 23 (Telnet) - potential remote access / brute-force attempt. Blocked by firewall (unsolicited inbound, no prior outbound connection).
show less
Port Scan
Hacking
Brute-Force
๐ฉ๐ช
Ilop
2026-09-17 14:25:02
(1 week ago)
[v7-22] Blocked by os-abuseipdb; 4 hits, proto=tcp, ports=22,23, src_ip=190.55.123.245
Port Scan
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-17 00:14:45
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 190.55.123.245 (cpe-190-55-123-245.telecentro-r ...
show more
(mod_security) mod_security (id:210350) triggered by 190.55.123.245 (cpe-190-55-123-245.telecentro-reversos.com.ar): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 20:14:39.680665 2026] [security2:error] [pid 32756:tid 32756] [client 190.55.123.245:31216] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||intrialconsultants.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "intrialconsultants.com"] [uri "/"] [unique_id "aqsw7-VwUSmloIU3aX6gYAAAAAc"], referer: https://backlinklookup.site/dir/expert-link-building-services-102053
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
HamSammich
2026-09-15 01:50:24
(1 week ago)
Automated sensor: 2 SSH connection/probe attempts over the last 24h (latest 2026-09-15T01:50Z).
Brute-Force
SSH
๐ง๐ท
noconex
2026-09-15 01:03:06
(1 week ago)
Wazuh Alert | Rule ID: 100199 | Desc: Suricata: (ET SCAN Potential SSH Scan) detectado de 190.55.123 ...
show more
Wazuh Alert | Rule ID: 100199 | Desc: Suricata: (ET SCAN Potential SSH Scan) detectado de 190.55.123.245
show less
Port Scan
Brute-Force
SSH
๐ฉ๐ช
Jochen Pretli
2026-09-14 23:18:44
(1 week ago)
connection to honeypot
Email Spam
Port Scan
๐บ๐ธ
TPI-Abuse
2026-09-14 13:12:19
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 190.55.123.245 (cpe-190-55-123-245.telecentro-r ...
show more
(mod_security) mod_security (id:210350) triggered by 190.55.123.245 (cpe-190-55-123-245.telecentro-reversos.com.ar): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 14 09:12:14.528334 2026] [security2:error] [pid 8227:tid 8227] [client 190.55.123.245:34370] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||bostonlog.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "bostonlog.com"] [uri "/"] [unique_id "aqfyroEWYrtyNb-IOnfO1AAAAAk"], referer: https://bostonlog.blogspot.com/2014/09/todays-featured-story-april-15-2013-why.html
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ท
noconex
2026-09-13 23:43:04
(1 week ago)
Wazuh Alert | Rule ID: 100199 | Desc: Suricata: (ET SCAN Potential SSH Scan) detectado de 190.55.123 ...
show more
Wazuh Alert | Rule ID: 100199 | Desc: Suricata: (ET SCAN Potential SSH Scan) detectado de 190.55.123.245
show less
Port Scan
Brute-Force
SSH