๐ฉ๐ช
KPS
2026-07-30 10:56:30
(5 hours ago)
PortscanN
Port Scan
๐น๐ท
SeczarSecureOps
2026-07-30 06:56:42
(9 hours ago)
Auto-blocked by Seczar SecureOps โ Port Scan Detection (22 events in 10min) at 2026-07-30 06:56
Port Scan
๐ง๐ท
diego
2026-07-29 04:42:48
(1 day ago)
[rede-164-29] *Port Scan* detected from 195.254.165.224 (IR/Iran/-). 11 hits in the last 155 seconds ...
show more
[rede-164-29] *Port Scan* detected from 195.254.165.224 (IR/Iran/-). 11 hits in the last 155 seconds; Ports: *; Direction: in; Trigger: PS_LIMIT; Logs: Jul 29 01:41:35 kernel: [14494743.354055] Firewall: *TCP_IN Blocked* IN=ethX OUT= MAC=xx:xx:xx:xx:xx:xx:xx:xx:xx:xx:xx:xx:xx:xx:xx00 SRC=195.254.165.224 DST=0.0.0.x LEN=44 TOS=0x00 PREC=0x00 TTL=235 ID=3958 PROTO=TCP SPT=61000 DPT=10001 WINDOW=1025 RES=0x00 SYN URGP=0
Jul 29 01:41:44 kernel: [14494751.814377] Firewall: *TCP_IN Blocked* IN=ethX OUT= MAC=xx:xx:xx:xx:xx:xx:xx:xx:xx:xx:xx:xx:xx:xx:xx00 SRC=195.254.165.224 DST=143.0.19.46 LEN=44 TOS=0x00 PREC=0x00 TTL=234 ID=60935 PROTO=TCP SPT=6100
show less
Port Scan
๐ช๐ธ
diegocr
2026-07-29 03:49:33
(1 day ago)
Port sweep. 5 failures on 10 minutes
Port Scan
๐ง๐ท
diego
2026-07-29 03:41:24
(1 day ago)
[rede-164-29] *Port Scan* detected from 195.254.165.224 (IR/Iran/-). 11 hits in the last 75 seconds; ...
show more
[rede-164-29] *Port Scan* detected from 195.254.165.224 (IR/Iran/-). 11 hits in the last 75 seconds; Ports: *; Direction: in; Trigger: PS_LIMIT; Logs: Jul 29 00:40:26 kernel: [14491074.344641] Firewall: *TCP_IN Blocked* IN=ethX OUT= MAC=xx:xx:xx:xx:xx:xx:xx:xx:xx:xx:xx:xx:xx:xx:xx00 SRC=195.254.165.224 DST=0.0.0.x LEN=44 TOS=0x00 PREC=0x00 TTL=234 ID=35047 PROTO=TCP SPT=61000 DPT=5936 WINDOW=1025 RES=0x00 SYN URGP=0
Jul 29 00:40:38 kernel: [14491085.808289] Firewall: *TCP_IN Blocked* IN=ethX OUT= MAC=xx:xx:xx:xx:xx:xx:xx:xx:xx:xx:xx:xx:xx:xx:xx00 SRC=195.254.165.224 DST=143.0.19.47 LEN=44 TOS=0x00 PREC=0x00 TTL=235 ID=43099 PROTO=TCP SPT=6100
show less
Port Scan
๐ฉ๐ช
marcel-knorr.de
2026-07-29 02:10:49
(1 day ago)
[easydock-cluster-rebuild] Blocked by UFW
Port Scan
๐ฉ๐ช
ValtonTahiri
2026-07-29 01:54:51
(1 day ago)
UFW blocked a suspicious connection attempt to a closed or denied port. This activity is commonly as ...
show more
UFW blocked a suspicious connection attempt to a closed or denied port. This activity is commonly associated with port scanning, service discovery, or automated internet probing. Technical: source_ip=195.254.165.224; proto=TCP; source_port=61000; target_port=5990; flags=SYN
show less
Port Scan
๐ซ๐ท
Quarks Solutions
2026-07-28 23:26:41
(1 day ago)
crowdsecurity/iptables-scan-multi_ports
Port Scan
๐ซ๐ท
Coco Bongo
2026-07-28 22:07:41
(1 day ago)
1785276461 - 07/29/2026 00:07:41 Host: 195.254.165.224/195.254.165.224 Port: 6667 TCP Blocked
...
Port Scan
๐ณ๐ฑ
DrLex0
2026-07-28 19:01:56
(1 day ago)
2026-07-28T18:48:41.764319+00:00 [host] portsentry[703]: attackalert: TCP SYN/Normal scan from host: ...
show more
2026-07-28T18:48:41.764319+00:00 [host] portsentry[703]: attackalert: TCP SYN/Normal scan from host: 195.254.165.224/195.254.165.224 to TCP port: 6000
2026-07-28T18:59:52.805219+00:00 [host] portsentry[703]: attackalert: TCP SYN/Normal scan from host: 195.254.165.224/195.254.165.224 to TCP port: 6667
2026-07-28T19:01:56.478139+00:00 [host] portsentry[703]: attackalert: TCP SYN/Normal scan from host: 195.254.165.224/195.254.165.224 to TCP port: 5985
show less
Port Scan
๐ฒ๐ฟ
delsio
2026-07-28 15:39:10
(2 days ago)
AS37697 ntopng observed inbound attack; alert=Live Flow High Score; source=195.254.165.224; destinat ...
show more
AS37697 ntopng observed inbound attack; alert=Live Flow High Score; source=195.254.165.224; destination=169.255.135.169; destination_port=5959; score=110; action=bgp_blackhole_and_flowspec_discard; block_duration=18000s; reason=high-confidence ntopng_blacklisted alert=Live Flow High Score dst=169.255.135.169 port=5959
show less
Port Scan
๐บ๐ธ
sefinek.net
2026-07-28 15:14:46
(2 days ago)
Blocked by UFW on NY01 [5957/tcp] | SPT: 61000 | TTL: 248 | LEN: 44 | TOS: 0x00 โข Reported by: githu ...
show more
Blocked by UFW on NY01 [5957/tcp] | SPT: 61000 | TTL: 248 | LEN: 44 | TOS: 0x00 โข Reported by: github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
Anonymous
2026-07-28 13:22:15
(2 days ago)
Jul 28 09:21:55 localhost kernel: [113590120.880975] iptables_INPUT_denied: IN=eth0 OUT= MAC=f2:3c:9 ...
show more
Jul 28 09:21:55 localhost kernel: [113590120.880975] iptables_INPUT_denied: IN=eth0 OUT= MAC=f2:3c:91:84:83:95:00:00:0c:9f:f0:1e:08:00 SRC=195.254.165.224 DST=[mungedIP2] LEN=44 TOS=0x00 PREC=0x00 TTL=244 ID=34786 PROTO=TCP SPT=61000 DPT=6667 WINDOW=1025 RES=0x00 SYN URGP=0
Jul 28 09:21:55 localhost kernel: [113590120.880994] iptables_INPUT_denied: IN=eth0 OUT= MAC=f2:3c:91:84:83:95:00:00:0c:9f:f0:1e:08:00 SRC=195.254.165.224 DST=[mungedIP2] LEN=44 TOS=0x00 PREC=0x00 TTL=244 ID=34786 PROTO=TCP SPT=61000 DPT=6667 SEQ=4025351575 ACK=0 WINDOW=1025 RES=0x00 SYN URGP=0 OPT (020405B4)
Jul 28 09:22:15 localhost kernel: [113590140.465699] iptables_INPUT_denied: IN=eth0 OUT= MAC=f2:3c:91:84:83:95:00:00:0c:9f:f0:1e:08:00 SRC=195.254.165.224 DST=[mungedIP2] LEN=44 TOS=0x00 PREC=0x00 TTL=244 ID=25613 PROTO=TCP SPT=61000 DPT=5915 WINDOW=1025 RES=0x00 SYN URGP=0
Jul 28 09:22:15 localhost kernel: [113590140.465722] iptables_INPUT_denied: IN=eth0 OUT= MAC=f2:3c:91:84:83:95:00:00:0c:9f:f0:1e:08:00 SRC=195.254.165.224 DST=[
show less
Port Scan
๐ฌ๐ง
openstrike.co.uk
2026-07-26 11:36:04
(4 days ago)
20 packets to ports 5900 5906 5907 5909 5911 5919 5923 5929 5934 5939 5951 5954 5959 5975 5977 5981 ...
show more
20 packets to ports 5900 5906 5907 5909 5911 5919 5923 5929 5934 5939 5951 5954 5959 5975 5977 5981 5987 5988 5991 5999
show less
Port Scan
๐ฎ๐ฑ
spd.co.il
2026-07-26 02:02:14
(4 days ago)
Port scan detected on multiple ports
Port Scan