๐ง๐พ
sashan
2026-10-09 10:10:54
(8 hours ago)
2026-10-09T13:10:53.411592+03:00 gate kernel: nftables: JAIL-TELNET IN=wan OUT= MAC= SRC=190.61.46.1 ...
show more
2026-10-09T13:10:53.411592+03:00 gate kernel: nftables: JAIL-TELNET IN=wan OUT= MAC= SRC=190.61.46.165 DST=xxx.xxx.xxx.xxx LEN=60 TOS=0x00 PREC=0x00 TTL=47 ID=48858 DF PROTO=TCP SPT=33168 DPT=23 WINDOW=65535 RES=0x00 SYN URGP=0
...
show less
Port Scan
๐ซ๐ท
masterguru
2026-10-09 03:20:46
(15 hours ago)
(modsec_5040) ModSec 5040: API Basic Auth blocked from 190.61.46.165 (CO/Colombia/165-46-61-190.ufin ...
show more
(modsec_5040) ModSec 5040: API Basic Auth blocked from 190.61.46.165 (CO/Colombia/165-46-61-190.ufinet.com.co): 1 in the last 3600 secs (0-195)
show less
Hacking
๐ง๐พ
sashan
2026-10-08 15:51:20
(1 day ago)
2026-10-08T18:51:19.334414+03:00 gate kernel: nftables: JAIL-TELNET IN=wan OUT= MAC= SRC=190.61.46.1 ...
show more
2026-10-08T18:51:19.334414+03:00 gate kernel: nftables: JAIL-TELNET IN=wan OUT= MAC= SRC=190.61.46.165 DST=xxx.xxx.xxx.xxx LEN=60 TOS=0x00 PREC=0x00 TTL=47 ID=39002 DF PROTO=TCP SPT=44528 DPT=23 WINDOW=65535 RES=0x00 SYN URGP=0
...
show less
Port Scan
๐ง๐พ
sashan
2026-10-08 09:19:21
(1 day ago)
2026-10-08T12:19:21.396264+03:00 gate kernel: nftables: JAIL-TELNET IN=wan OUT= MAC= SRC=190.61.46.1 ...
show more
2026-10-08T12:19:21.396264+03:00 gate kernel: nftables: JAIL-TELNET IN=wan OUT= MAC= SRC=190.61.46.165 DST=xxx.xxx.xxx.xxx LEN=60 TOS=0x00 PREC=0x00 TTL=45 ID=56892 DF PROTO=TCP SPT=56978 DPT=23 WINDOW=65535 RES=0x00 SYN URGP=0
...
show less
Port Scan
๐ง๐พ
sashan
2026-10-08 03:10:36
(1 day ago)
2026-10-08T06:10:35.964280+03:00 gate kernel: nftables: JAIL-TELNET IN=wan OUT= MAC= SRC=190.61.46.1 ...
show more
2026-10-08T06:10:35.964280+03:00 gate kernel: nftables: JAIL-TELNET IN=wan OUT= MAC= SRC=190.61.46.165 DST=xxx.xxx.xxx.xxx LEN=60 TOS=0x00 PREC=0x00 TTL=45 ID=60576 DF PROTO=TCP SPT=38762 DPT=23 WINDOW=65535 RES=0x00 SYN URGP=0
...
show less
Port Scan
๐ต๐ฑ
mkey
2026-10-06 19:25:01
(2 days ago)
Verified scan activity detected by local IDS/firewall correlation. SCAN: HIGHRISK_SINGLEPORT | PORTS ...
show more
Verified scan activity detected by local IDS/firewall correlation. SCAN: HIGHRISK_SINGLEPORT | PORTS=23 | HITS=2 | IPSET=ADD | FIRST=2026-10-06 21:23:51 | LAST=2026-10-06 21:23:51. Last seen 2026-10-06 21:23:51.
show less
Port Scan
๐ท๐ธ
Scan
2026-10-05 03:03:24
(4 days ago)
MultiHost/MultiPort Probe, Scan, Hack -
Port Scan
Hacking
๐บ๐ธ
NetVexor
2026-10-05 02:53:59
(4 days ago)
Attack source identified and submitted via NetVexor BGP Blackhole Network
Port Scan
Hacking
Brute-Force
๐ฎ๐น
RaffOne
2026-10-04 14:54:00
(5 days ago)
SSH - Attempt to login using invalid or illegal credential
Brute-Force
SSH
๐บ๐ธ
mibbsdevs
2026-10-03 21:59:13
(5 days ago)
(ric-sv) CoffeePot: Connection attempt detected on closed service bait ports (22/23/3306/3389/5432).
Port Scan
๐จ๐ฟ
Countryman
2026-10-02 00:10:01
(1 week ago)
repeated unauthorized VPN login attempt, user sweep
VPN IP
Hacking
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-10-01 05:43:27
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 190.61.46.165 (165-46-61-190.ufinet.com.co): 1 ...
show more
(mod_security) mod_security (id:210350) triggered by 190.61.46.165 (165-46-61-190.ufinet.com.co): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 01:43:22.446054 2026] [security2:error] [pid 5572:tid 5572] [client 190.61.46.165:50402] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||kalourislawfirm.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "kalourislawfirm.com"] [uri "/"] [unique_id "ar3y-rRLRNo9JEyNWvYXewAAAAg"], referer: https://adultbacklinks.website/dir/backlinks-for-traffic-110950
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 03:29:23
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 190.61.46.165 (165-46-61-190.ufinet.com.co): 1 ...
show more
(mod_security) mod_security (id:210350) triggered by 190.61.46.165 (165-46-61-190.ufinet.com.co): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 23:29:19.174670 2026] [security2:error] [pid 6857:tid 6857] [client 190.61.46.165:42800] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||personalizedfavorboxes.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "personalizedfavorboxes.com"] [uri "/"] [unique_id "ar3TjwC4MNDuvZlJWBvGbQAAAA4"], referer: https://dofollowbacklinksgenerator.online/dir/ethical-seo-backlinks-160833
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 01:29:27
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 190.61.46.165 (165-46-61-190.ufinet.com.co): 1 ...
show more
(mod_security) mod_security (id:210350) triggered by 190.61.46.165 (165-46-61-190.ufinet.com.co): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 21:29:22.146113 2026] [security2:error] [pid 20603:tid 20603] [client 190.61.46.165:57290] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||garon.us|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "garon.us"] [uri "/images2/news/1913-03-26_[4] A. Shapiro Golden Rule Baseball manager.pdf"] [unique_id "ar23cjES-xShWCYTDz5xuQAAAAo"], referer: https://garon.us/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 00:13:29
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 190.61.46.165 (165-46-61-190.ufinet.com.co): 1 ...
show more
(mod_security) mod_security (id:210350) triggered by 190.61.46.165 (165-46-61-190.ufinet.com.co): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 20:13:22.841988 2026] [security2:error] [pid 25774:tid 25774] [client 190.61.46.165:53544] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||forwardti.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "forwardti.com"] [uri "/"] [unique_id "ar2lojA3f-E1wxphk3MGiwAAABg"], referer: https://localcitations.online/dir/niche-relevant-backlinks-75518
show less
Brute-Force
Bad Web Bot
Web App Attack