๐บ๐ธ
chronos
2026-06-01 06:40:43
(2 days ago)
[AUTORAVALT][[01/06/2026 - 03:40:43 -03:00 UTC]
Attack from [Censys, Inc.]
[66.132.195.108][108.195. ...
show more
[AUTORAVALT][[01/06/2026 - 03:40:43 -03:00 UTC]
Attack from [Censys, Inc.]
[66.132.195.108][108.195.132.66.censys-scanner.com]
Action: BLocKed
Phishing -> Phishing websites and/or email.
Email Spam -> Spam email content, infected attachments, and phishing emails.
Hacking... Unauthorized attempts to access the server.
Spoofing -> Email sender spoofing.
Brute-F]
...
show less
Brute-Force
Email Spam
Spoofing
Phishing
Hacking
๐ฆ๐น
Pingger Shikkoken
2026-06-01 06:27:33
(2 days ago)
2026-06-01T06:27:33+00:00 iskariot kernel: AbuseIPDB-Blacklist-Dropped: IN=ens3 OUT= MAC=b6:ab:74:e6 ...
show more
2026-06-01T06:27:33+00:00 iskariot kernel: AbuseIPDB-Blacklist-Dropped: IN=ens3 OUT= MAC=b6:ab:74:e6:2e:14:84:03:28:62:58:1a:08:00 SRC=66.132.195.108 DST=152.53.50.28 LEN=60 TOS=0x00 PREC=0x00 TTL=55 ID=24361 DF PROTO=TCP SPT=14634 DPT=2623 WINDOW=21900 RES=0x00 SYN URGP=0 2026-06-01T06:27:34+00:00 iskariot kernel: AbuseIPDB-Blacklist-Dropped: IN=ens3 OUT= MAC=b6:ab:74:e6:2e:14:84:03:28:62:58:1a:08:00 SRC=66.132.195.108 DST=152.53.50.28 LEN=60 TOS=0x00 PREC=0x00 TTL=55 ID=24362 DF PROTO=TCP SPT=14634 DPT=2623 WINDOW=21900 RES=0x00 SYN URGP=0 2026-06-01T06:27:34+00:00 iskariot kernel: AbuseIPDB-Blacklist-Dropped: IN=ens3 OUT= MAC=b6:ab:74:e6:2e:14:84:03:28:62:58:1a:08:00 SRC=66.132.195.108 DST=152.53.50.28 LEN=60 TOS=0x00 PREC=0x00 TTL=56 ID=1145 DF PROTO=TCP SPT=14642 DPT=2623 WINDOW=21900 RES=0x00 SYN URGP=0 ...
show less
Hacking
๐ณ๐ฑ
myip.foo
2026-06-01 02:57:16
(2 days ago)
[myip.foo] 66.132.195.108 - - [01/Jun/2026:02:57:15 +0000] "PRI * HTTP/2.0" 400 150 "-" "-"
Web App Attack
๐ฉ๐ช
Trashware
2026-06-01 01:27:31
(2 days ago)
Malicious connection attempt
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
dpinse
2026-06-01 01:13:43
(2 days ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-bad-user-agent
Web App Attack
Bad Web Bot
๐บ๐ธ
antlac1
2026-05-31 22:03:55
(3 days ago)
crowdsecurity/http-bad-user-agent
Brute-Force
Web App Attack
๐บ๐ธ
sefinek.net
2026-05-31 22:00:21
(3 days ago)
Blocked by UFW on NY01 [587/tcp] | SPT: 30784 | TTL: 53 | LEN: 60 | TOS: 0x08 โข Reported by: github. ...
show more
Blocked by UFW on NY01 [587/tcp] | SPT: 30784 | TTL: 53 | LEN: 60 | TOS: 0x08 โข Reported by: github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
Email Spam
๐ฌ๐ง
Steve
2026-05-31 21:08:54
(3 days ago)
Attempts against Pop3/IMAP
Brute-Force
Anonymous
2026-05-31 19:47:26
(3 days ago)
$f2bV_matches
Brute-Force
SSH
๐จ๐ฆ
Luhte
2026-05-31 19:41:38
(3 days ago)
Unsolicited TCP connection from 66.132.195.108 to port 0 at 2026-05-31T19:41:38Z. Source IP complete ...
show more
Unsolicited TCP connection from 66.132.195.108 to port 0 at 2026-05-31T19:41:38Z. Source IP completed three-way handshake to non-public service on this host. Detected by automated intrusion monitoring.
show less
Port Scan
Hacking
๐ฉ๐ช
ITSNF
2026-05-31 19:35:05
(3 days ago)
Blocked by OPNsense firewall; 22 hits, proto=tcp, ports=443
Port Scan
Hacking
๐ฉ๐ช
acadeova
2026-05-31 18:52:13
(3 days ago)
๐จ Recon detected (nft drop)
SRC=66.132.195.108
Observed=TCP dpt=8000 in=enp0s6 ttl=59
Time=recent(jo ...
show more
๐จ Recon detected (nft drop)
SRC=66.132.195.108
Observed=TCP dpt=8000 in=enp0s6 ttl=59
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
๐ซ๐ฎ
Ticlem
2026-05-31 16:59:26
(3 days ago)
2026-05-31T18:59:23.586590+02:00 clement-turlure kernel: [1252931.837267] [UFW BLOCK] IN=enp0s31f6 O ...
show more
2026-05-31T18:59:23.586590+02:00 clement-turlure kernel: [1252931.837267] [UFW BLOCK] IN=enp0s31f6 OUT= MAC=90:1b:0e:f7:16:fb:d0:07:ca:8d:22:75:08:00 SRC=66.132.195.108 DST=95.216.21.136 LEN=60 TOS=0x00 PREC=0x00 TTL=58 ID=47653 DF PROTO=TCP SPT=37386 DPT=8000 WINDOW=21900 RES=0x00 SYN URGP=0
2026-05-31T18:59:24.585801+02:00 clement-turlure kernel: [1252932.837161] [UFW BLOCK] IN=enp0s31f6 OUT= MAC=90:1b:0e:f7:16:fb:d0:07:ca:8d:22:75:08:00 SRC=66.132.195.108 DST=95.216.21.136 LEN=60 TOS=0x00 PREC=0x00 TTL=58 ID=28523 DF PROTO=TCP SPT=37402 DPT=8000 WINDOW=21900 RES=0x00 SYN URGP=0
2026-05-31T18:59:25.586116+02:00 clement-turlure kernel: [1252933.837470] [UFW BLOCK] IN=enp0s31f6 OUT= MAC=90:1b:0e:f7:16:fb:d0:07:ca:8d:22:75:08:00 SRC=66.132.195.108 DST=95.216.21.136 LEN=60 TOS=0x00 PREC=0x00 TTL=58 ID=16899 DF PROTO=TCP SPT=37414 DPT=8000 WINDOW=21900 RES=0x00 SYN URGP=0
...
show less
Port Scan
๐บ๐ธ
drewf.ink
2026-05-31 16:42:57
(3 days ago)
[16:42] Port scanning. Port(s) scanned: TCP/11211
Port Scan
๐ณ๐ฑ
Yachiyo Runami
2026-05-31 16:38:48
(3 days ago)
Port Scan on Honeypot | Ports: 22/SSH | Proto: TCP(1) | Flags: all SYN | TTL: 52 | Len: 60B | Win: 2 ...
show more
Port Scan on Honeypot | Ports: 22/SSH | Proto: TCP(1) | Flags: all SYN | TTL: 52 | Len: 60B | Win: 21900(1) | rDNS: 108.195.132.66.censys-scanner.com | F2B/ufw-honeypot@2026-05-31T16:38:48Z
show less
Port Scan
Hacking