๐บ๐ธ
baltic-lab.com
2026-08-01 08:05:15
(8 hours ago)
2026-08-01T10:02:09.062920+02:00 us kernel: [UFW BLOCK] IN=eth0 OUT= MAC=00:50:56:57:66:9b:c8:08:8b: ...
show more
2026-08-01T10:02:09.062920+02:00 us kernel: [UFW BLOCK] IN=eth0 OUT= MAC=00:50:56:57:66:9b:c8:08:8b:ff:ce:a1:08:00 SRC=47.98.180.144 DST=89.117.22.226 LEN=40 TOS=0x00 PREC=0x00 TTL=240 ID=60650 PROTO=TCP SPT=51328 DPT=58082 WINDOW=1024 RES=0x00 SYN URGP=0
2026-08-01T10:02:26.053759+02:00 us kernel: [UFW BLOCK] IN=eth0 OUT= MAC=00:50:56:57:66:9b:c8:08:8b:ff:ce:a1:08:00 SRC=47.98.180.144 DST=89.117.22.226 LEN=40 TOS=0x00 PREC=0x00 TTL=240 ID=27753 PROTO=TCP SPT=51328 DPT=9203 WINDOW=1024 RES=0x00 SYN URGP=0
2026-08-01T10:02:46.237767+02:00 us kernel: [UFW BLOCK] IN=eth0 OUT= MAC=00:50:56:57:66:9b:c8:08:8b:ff:ce:a1:08:00 SRC=47.98.180.144 DST=89.117.22.226 LEN=40 TOS=0x00 PREC=0x00 TTL=240 ID=52641 PROTO=TCP SPT=51328 DPT=8311 WINDOW=1024 RES=0x00 SYN URGP=0
2026-08-01T10:03:24.546054+02:00 us kernel: [UFW BLOCK] IN=eth0 OUT= MAC=00:50:56:57:66:9b:c8:08:8b:ff:ce:a1:08:00 SRC=47.98.180.144 DST=89.117.22.226 LEN=40 TOS=0x00 PREC=0x00 TTL=240 ID=27138 PROTO=TCP SPT=51328 DPT=58400 WINDOW=
...
show less
Brute-Force
Hacking
๐ฉ๐ช
wlt-blocker
2026-07-31 12:54:20
(1 day ago)
Illegal port scans
Port Scan
๐ณ๐ฑ
GabrielJST
2026-07-31 12:10:02
(1 day ago)
*Port Scan* detected from 47.98.180.144 (CN/China/-).
Port Scan
๐บ๐ธ
schematics.cc
2026-07-31 11:51:41
(1 day ago)
Blocked by on honeypot2 [8011/tcp] | SPT: 58695 | TTL: 238 | LEN: 40 | TOS: 0x00 โข Reported by: abus ...
show more
Blocked by on honeypot2 [8011/tcp] | SPT: 58695 | TTL: 238 | LEN: 40 | TOS: 0x00 โข Reported by: abuse.terraforge.fun
show less
Port Scan
๐ฏ๐ต
jay hung
2026-07-31 06:49:58
(1 day ago)
2026-07-31T06:49:57.403025+00:00 quarktech kernel: [238772.745989] [UFW BLOCK] IN=eth0 OUT= MAC=22:0 ...
show more
2026-07-31T06:49:57.403025+00:00 quarktech kernel: [238772.745989] [UFW BLOCK] IN=eth0 OUT= MAC=22:00:92:2e:84:93:fe:ff:ff:ff:ff:ff:08:00 SRC=47.98.180.144 DST=172.237.20.248 LEN=40 TOS=0x00 PREC=0x00 TTL=230 ID=42508 PROTO=TCP SPT=40595 DPT=1081 WINDOW=1024 RES=0x00 SYN URGP=0
...
show less
Port Scan
๐จ๐ฆ
alexbfr
2026-07-18 00:43:19
(2 weeks ago)
Fail2Ban Report, custom-honeypot jail: Automated honeypot detection.
Port Scan
๐ช๐ธ
gnom4ik
2026-07-15 02:16:09
(2 weeks ago)
ban-reviewer auto report; ip=47.98.180.144; scenario=ssh:bruteforce; scenario_context=ssh:bruteforce ...
show more
ban-reviewer auto report; ip=47.98.180.144; scenario=ssh:bruteforce; scenario_context=ssh:bruteforce,firehol_greensnow; verdict=valid_ban; confidence=0.92; categories=18,22; active_decisions=2; lookback_decisions=2; nginx_requests=0; appsec_matches=0; auth_events=0; kernel_events=0; signals=ip_decision_count_high
show less
Brute-Force
SSH
๐บ๐ธ
micropedro
2026-07-01 21:30:40
(4 weeks ago)
4 incidents: malicious activity. First: 2026-06-24 16:30, Last: 2026-07-01 17:30 UTC. Triggers: ufw- ...
show more
4 incidents: malicious activity. First: 2026-06-24 16:30, Last: 2026-07-01 17:30 UTC. Triggers: ufw-repeater.
show less
Port Scan
๐บ๐ธ
micropedro
2026-07-01 21:30:19
(4 weeks ago)
3 incidents: malicious activity. First: 2026-06-17 15:30, Last: 2026-07-01 17:30 UTC. Triggers: ufw- ...
show more
3 incidents: malicious activity. First: 2026-06-17 15:30, Last: 2026-07-01 17:30 UTC. Triggers: ufw-repeater.
show less
Port Scan
๐ฉ๐ช
anycast_ac
2026-06-21 16:56:07
(1 month ago)
[mirai-detector honeypot] Inbound attack against our honeypot on tcp/11211 (memcached).
Commands cap ...
show more
[mirai-detector honeypot] Inbound attack against our honeypot on tcp/11211 (memcached).
Commands captured:
$ HEAD / HTTP/1.1
$ Host: 87.120.93.156:11211
$ Accept-Encoding: identity
show less
DDoS Attack
IoT Targeted
Brute-Force
๐ฉ๐ช
anycast_ac
2026-06-21 16:37:06
(1 month ago)
[mirai-detector honeypot] Inbound attack against our honeypot on tcp/11211 (memcached).
DDoS Attack
IoT Targeted
Brute-Force
๐บ๐ธ
micropedro
2026-06-17 19:31:00
(1 month ago)
4 incidents: malicious activity. First: 2026-06-10 14:30, Last: 2026-06-17 15:31 UTC. Triggers: ufw- ...
show more
4 incidents: malicious activity. First: 2026-06-10 14:30, Last: 2026-06-17 15:31 UTC. Triggers: ufw-repeater.
show less
Port Scan
๐บ๐ธ
micropedro
2026-06-10 18:30:21
(1 month ago)
3 incidents: malicious activity. First: 2026-05-27 12:30, Last: 2026-06-10 14:30 UTC. Triggers: ufw- ...
show more
3 incidents: malicious activity. First: 2026-05-27 12:30, Last: 2026-06-10 14:30 UTC. Triggers: ufw-repeater.
show less
Port Scan
๐ฌ๐ง
PeravixGroup
2026-06-07 11:15:28
(1 month ago)
Honeypot detection: Web application scanning / reconnaissance attempt on port 8080. Severity: LOW. A ...
show more
Honeypot detection: Web application scanning / reconnaissance attempt on port 8080. Severity: LOW. Aaran.cloud
show less
Port Scan
Bad Web Bot
๐ฌ๐ง
PeravixGroup
2026-06-05 20:41:05
(1 month ago)
Honeypot detection: Kubernetes API unauthorized access / cluster abuse attempt on port 6443. Severit ...
show more
Honeypot detection: Kubernetes API unauthorized access / cluster abuse attempt on port 6443. Severity: MEDIUM. Aaran.cloud
show less
Hacking
Exploited Host