SMS786 Senior Member Nov 24, 2021 #1 Hi all Unfortunately seems the main Suricata thread has been inactive for a while now (not open for replies), thus posting here. Any ideas on what this entry means (from a threat level pov) and how best to investigate further?
Hi all Unfortunately seems the main Suricata thread has been inactive for a while now (not open for replies), thus posting here. Any ideas on what this entry means (from a threat level pov) and how best to investigate further?
C ColinTaylor Part of the Furniture Nov 24, 2021 #2 Looks like a standard port scanner: https://www.abuseipdb.com/check/141.98.10.114 Just make sure you're not exposing any ports to the internet.
Looks like a standard port scanner: https://www.abuseipdb.com/check/141.98.10.114 Just make sure you're not exposing any ports to the internet.
SMS786 Senior Member Nov 24, 2021 #3 ColinTaylor said: Looks like a standard port scanner: https://www.abuseipdb.com/check/141.98.10.114 Just make sure you're not exposing any ports to the internet. Click to expand... I checked alienvault (https://otx.alienvault.com/indicator/ip/141.98.10.114) but couldn't garner too much. Appreciate it. Will add abuseipdb to my list.
ColinTaylor said: Looks like a standard port scanner: https://www.abuseipdb.com/check/141.98.10.114 Just make sure you're not exposing any ports to the internet. Click to expand... I checked alienvault (https://otx.alienvault.com/indicator/ip/141.98.10.114) but couldn't garner too much. Appreciate it. Will add abuseipdb to my list.