๐ช๐ธ
el-brujo
2026-08-13 16:23:00
(1 week ago)
HTTP DDoS Attack Layer 7
DDoS Attack
๐ต๐ฑ
stareradia.pl
2026-08-09 17:41:07
(2 weeks ago)
[Sun Aug 09 19:40:38.806756 2026] [php:error] [pid 2646451:tid 2646451] [client 101.89.150.168:0] sc ...
show more
[Sun Aug 09 19:40:38.806756 2026] [php:error] [pid 2646451:tid 2646451] [client 101.89.150.168:0] script '/var/www/html/profile.php' not found or unable to stat, referer: https://forum-trioda.pl/
[Sun Aug 09 19:40:48.500855 2026] [php:error] [pid 2646683:tid 2646683] [client 101.89.150.168:0] script '/var/www/html/profile.php' not found or unable to stat, referer: https://forum-trioda.pl/
[Sun Aug 09 19:40:58.245482 2026] [php:error] [pid 2643627:tid 2643627] [client 101.89.150.168:0] script '/var/www/html/login.php' not found or unable to stat, referer: https://forum-trioda.pl/
[Sun Aug 09 19:41:07.083938 2026] [php:error] [pid 2646080:tid 2646080] [client 101.89.150.168:0] script '/var/www/html/profile.php' not found or unable to stat, referer: https://forum-trioda.pl/viewtopic.php?t=35735
...
show less
Web App Attack
๐บ๐ธ
Vano Ganzzz
2026-07-30 23:51:50
(3 weeks ago)
Triggered Cloudflare WAF (l7ddos) from CN.
Action taken: BLOCK
ASN: 4811 (China Telecom (Group))
Pro ...
show more
Triggered Cloudflare WAF (l7ddos) from CN.
Action taken: BLOCK
ASN: 4811 (China Telecom (Group))
Protocol: HTTP/2 (POST method)
Endpoint: /
Timestamp: 2026-07-30T23:51:50Z
Ray ID: a238460fbfe2fe3c
UA: Mozilla/5.0 (Linux; Android 14; SM-G998B) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/140.0.0.0 Mobile Safari/537.36
show less
DDoS Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-07-29 09:05:34
(3 weeks ago)
(mod_security) mod_security (id:217200) triggered by 101.89.150.168 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:217200) triggered by 101.89.150.168 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 29 05:05:25.702582 2026] [security2:error] [pid 954707:tid 954707] [client 101.89.150.168:59572] ModSecurity: Access denied with code 403 (phase 1). Match of "endsWith /wp-cron.php" against "REQUEST_FILENAME" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "103"] [id "217200"] [rev "2"] [msg "COMODO WAF: HTTP/1.1 POST request missing Content-Length Header||www.benissan.com|F|2"] [data "/contactformulier/files/mailer.php"] [severity "CRITICAL"] [tag "CWAF"] [tag "Protocol"] [hostname "www.benissan.com"] [uri "/contactformulier/files/mailer.php"] [unique_id "amnCVct2itjnWczzbkr6CQAAAAk"], referer: https://www.benissan.com/contactformulier/index.php
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Vano Ganzzz
2026-07-28 18:37:18
(3 weeks ago)
Triggered Cloudflare WAF (firewallCustom) from CN.
Action taken: BLOCK
ASN: 4811 (China Telecom (Gro ...
show more
Triggered Cloudflare WAF (firewallCustom) from CN.
Action taken: BLOCK
ASN: 4811 (China Telecom (Group))
Protocol: HTTP/2 (GET method)
Endpoint: /
Timestamp: 2026-07-28T18:37:18Z
Ray ID: a225fe8cbbec0d28
UA: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.8733.0 Safari/537.36
show less
Bad Web Bot
๐ต๐ฑ
mscode.pl
2026-07-20 16:11:16
(1 month ago)
Triggered Cloudflare WAF (l7ddos) from CN.
Action taken: MANAGED_CHALLENGE
ASN: 4811 (China Telecom ...
show more
Triggered Cloudflare WAF (l7ddos) from CN.
Action taken: MANAGED_CHALLENGE
ASN: 4811 (China Telecom (Group))
Protocol: HTTP/2 (GET method)
Zone: mscode.pl
Endpoint: /services
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/143.0.0.0 Safari/537.36
show less
DDoS Attack
Bad Web Bot
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-07-18 07:15:44
(1 month ago)
HTTP flood against /retreat-corp on Apache webserver
Brute-Force
Anonymous
2026-07-01 18:20:24
(1 month ago)
| [Dangerous/China] Aggressive IP 101.89.150.168 (~30 hits). Type: DoS Defender- Web server 400 erro ...
show more
| [Dangerous/China] Aggressive IP 101.89.150.168 (~30 hits). Type: DoS Defender- Web server 400 error code
show less
Web App Attack
Hacking
SQL Injection
๐ซ๐ท
fastwarp
2026-06-29 12:01:22
(1 month ago)
DDoS / HTTP flood to hosting server from nginx access logs
DDoS Attack
๐ช๐ธ
el-brujo
2026-04-18 10:59:21
(4 months ago)
Cloudflare WAF: Request Path: /hh123 Request Query: Host: elhacker.net userAgent: Mozilla/5.0 (X11; ...
show more
Cloudflare WAF: Request Path: /hh123 Request Query: Host: elhacker.net userAgent: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Action: block Source: l7ddos ASN Description: CHINANET-SHANGHAI-MAN China Telecom Group Country: CN Method: GET Timestamp: 2026-04-18T10:59:21Z ruleId: 6e3ccc23900c428e8ec0fb8a3a679c52. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
๐ช๐ธ
el-brujo
2026-04-03 18:53:24
(4 months ago)
Cloudflare WAF: Request Path: / Request Query: Host: elhacker.net userAgent: Mozilla/5.0 (Windows N ...
show more
Cloudflare WAF: Request Path: / Request Query: Host: elhacker.net userAgent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36 Action: block Source: l7ddos ASN Description: CHINANET-SHANGHAI-MAN China Telecom Group Country: CN Method: GET Timestamp: 2026-04-03T18:53:24Z ruleId: 6e3ccc23900c428e8ec0fb8a3a679c52. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
๐ณ๐ฑ
Cloud86 B.V.
2026-03-26 09:13:05
(4 months ago)
categories: DDoS Attack
DDoS Attack
๐ง๐ช
cmbplf
2026-03-23 23:20:17
(5 months ago)
800 limiting connections by zone (2w5d21h)
DDoS Attack
๐ง๐ช
cmbplf
2026-03-18 07:10:18
(5 months ago)
514 limiting connections by zone (1d21h43m)
DDoS Attack
๐จ๐ฆ
1gz
2026-03-02 23:16:21
(5 months ago)
Triggered Cloudflare WAF (l7ddos) from CN.
Action taken: BLOCK
Protocol: HTTP/2 (GET method)
Endpoin ...
show more
Triggered Cloudflare WAF (l7ddos) from CN.
Action taken: BLOCK
Protocol: HTTP/2 (GET method)
Endpoint: /
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/143.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
DDoS Attack
Bad Web Bot