π©πͺ
neverdown.eu
2025-11-11 17:01:43
(7 months ago)
(smtpauth) Failed SMTP AUTH login from 191.96.106.137 (US/United States/-): 5 in the last 60 secs; P ...
show more
(smtpauth) Failed SMTP AUTH login from 191.96.106.137 (US/United States/-): 5 in the last 60 secs; Ports: *; Direction: inout; Trigger: LF_SMTPAUTH; Logs: 2025-11-11 19:01:36 dovecot_login authenticator failed for (ADMIN) [191.96.106.137]:57624: 535 Incorrect authentication data ([email protected] )
2025-11-11 19:01:36 dovecot_login authenticator failed for (ADMIN) [191.96.106.137]:57614: 535 Incorrect authentication data ([email protected] )
2025-11-11 19:01:36 dovecot_login authenticator failed for (ADMIN) [191.96.106.137]:57630: 535 Incorrect authentication data ([email protected] )
2025-11-11 19:01:37 dovecot_login authenticator failed for (ADMIN) [191.96.106.137]:57634: 535 Incorrect authentication data ([email protected] )
2025-11-11 19:01:37 dovecot_login authenticator failed for (ADMIN) [191.96.106.137]:42862: 535 Incorrect authentication data ([email protected] )
show less
Port Scan
Anonymous
2025-10-31 16:05:05
(7 months ago)
wordpress-trap
Web App Attack
ππΊ
Lacika555
2025-10-25 23:57:51
(8 months ago)
RdpGuard detected brute-force attempt on SMTP
Brute-Force
π¦πΊ
MAGIC
2025-06-25 10:08:05
(1 year ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
π©πͺ
stinpriza
2025-06-19 15:30:58
(1 year ago)
(XMLRPC) xmlrpc banned 191.96.106.137 (US/United States/-): 1 in the last 3600 secs
Web App Attack
π¦πΊ
oncord
2025-05-24 13:17:55
(1 year ago)
Form spam
Web Spam
π§π¬
sanitariu
2025-04-07 08:38:53
(1 year ago)
Apr 6 16:58:05 dri postfix/smtpd[2491802]: warning: unknown[191.96.106.137]: SASL LOGIN authenticat ...
show more
Apr 6 16:58:05 dri postfix/smtpd[2491802]: warning: unknown[191.96.106.137]: SASL LOGIN authentication failed: (reason unavailable), sasl_username=nasko
Apr 6 16:58:16 dri postfix/smtpd[2491802]: wa
...
show less
Brute-Force
π§π·
hostseries
2025-04-06 23:59:42
(1 year ago)
Brute-force cPanel Services
Brute-Force
π¨πΏ
lp
2025-04-06 15:19:54
(1 year ago)
Email account brute force: 4 attempts were recorded from 191.96.106.137
2025-04-06T16:45:19+02:00 wa ...
show more
Email account brute force: 4 attempts were recorded from 191.96.106.137
2025-04-06T16:45:19+02:00 warning: unknown[191.96.106.137]: SASL LOGIN authentication failed: authentication failure, [email protected]
2025-04-06T16:45:22+02:00 warning: unknown[191.96.106.137]: SASL LOGIN authentication failed: authentication failure, [email protected]
2025-04-06T16:45:26+02:00 warning: unknown[191.96.106.137]: SASL LOGIN authentication failed: authentication failure, [email protected]
2025-04-06T16:45:29+02:00 warning: unknown[191.96.106.137]: SASL LOGIN authentication failed: authentication failure, [email protected]
show less
Brute-Force
πΊπΈ
hostseries
2025-04-03 13:11:22
(1 year ago)
Brute-force cPanel Services
Brute-Force
Anonymous
2025-04-02 16:30:19
(1 year ago)
Failed login attempt detected by Fail2Ban in plesk-postfix jail
Brute-Force
π§π·
SvrAdmin
2025-04-02 12:06:58
(1 year ago)
[101] (smtpauth) Failed SMTP AUTH login from 191.96.106.137 (US/United States/-): 5 in the last 3600 ...
show more
[101] (smtpauth) Failed SMTP AUTH login from 191.96.106.137 (US/United States/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_SMTPAUTH; Logs: 2025-04-02 09:05:15 dovecot_login authenticator failed for (ADMIN) [191.96.106.137]:39750: 535 Incorrect authentication data ([email protected] )
2025-04-02 09:05:33 dovecot_login authenticator failed for (ADMIN) [191.96.106.137]:59090: 535 Incorrect authentication data ([email protected] )
2025-04-02 09:05:51 dovecot_login authenticator failed for (ADMIN) [191.96.106.137]:53236: 535 Incorrect authentication data ([email protected] )
2025-04-02 09:06:43 dovecot_login authenticator failed for (ADMIN) [191.96.106.137]:34490: 535 Incorrect authentication data ([email protected] )
2025-04-02 09:06:56 dovecot_login authenticator failed for (ADMIN) [191.96.106.137]:59198: 535 Incorrect authentication data ([email protected] )
show less
Port Scan
Hacking
Brute-Force
Exploited Host
π΅π±
sefinek.net
2025-03-17 20:00:14
(1 year ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
ASN: 174 (COGENT- ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
ASN: 174 (COGENT-174)
Protocol: HTTP/1.1 (GET method)
Endpoint: /
Timestamp: 2025-03-17T19:45:56Z
Ray ID: 921efe567c5acf27
UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 12.5; rv:114.0) Gecko/20100101 Firefox/114.0
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
π¨πΏ
lp
2025-02-07 13:21:44
(1 year ago)
Email account brute force: 1 attempts were recorded from 191.96.106.137
2025-02-07T12:43:08+01:00 wa ...
show more
Email account brute force: 1 attempts were recorded from 191.96.106.137
2025-02-07T12:43:08+01:00 warning: unknown[191.96.106.137]: SASL LOGIN authentication failed: authentication failure, [email protected]
show less
Brute-Force
π΅π±
sefinek.net
2024-10-08 14:16:32
(1 year ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: CHALLENGE
ASN: 174 (COGENT-174)
Pro ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: CHALLENGE
ASN: 174 (COGENT-174)
Protocol: HTTP/1.1 (method GET)
Domain: sefinek.net
Endpoint: /
Timestamp: 2024-10-08T04:47:02Z
Ray ID: 8cf37d981d1a0906
Rule ID: cc5e7a6277d447eca9c1818934ba65c8
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36
Report generated by Node-Cloudflare-WAF-AbuseIPDB https://github.com/sefinek24/Node-Cloudflare-WAF-AbuseIPDB
show less
Bad Web Bot