byebyte.space auth: Rate-limit escalation at 2026-05-18T17:54:11Z: 5 rejections in 300s. Firewall au ...
show morebyebyte.space auth: Rate-limit escalation at 2026-05-18T17:54:11Z: 5 rejections in 300s. Firewall auto-banned IP for 21600s. UA: 'Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/605.1.15 (KHTML, like Gecko) Chrome/128.0.0.0 Safari/17.4'. Accept-Language: 'en,es;q=0.9,zh-CN;q=0.8,zh;q=0.7,pt;q=0.6'. Accept-Encoding: 'gzip, br'. Sec-Ch-Ua: '"Google Chrome";v="128", "Chromium";v="128", "Not.A/Brand";v="24"'. Platform: "Windows" (mobile=?0). Referer: 'https://google.com/'. Country (CF): ID. TLS info: {"scheme":"https"}.
show less
byebyte.space auth: Rate-limit escalation at 2026-05-18T11:37:30Z: 5 rejections in 300s. Firewall au ...
show morebyebyte.space auth: Rate-limit escalation at 2026-05-18T11:37:30Z: 5 rejections in 300s. Firewall auto-banned IP for 900s. UA: 'Mozilla/5.0 (Macintosh; Intel Mac OS X 15_0) AppleWebKit/605.1.15 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/17.5'. Accept-Language: 'en,es;q=0.9,zh-CN;q=0.8,zh;q=0.7,pt;q=0.6'. Accept-Encoding: 'gzip, br'. Sec-Ch-Ua: '"Google Chrome";v="125", "Chromium";v="125", "Not.A/Brand";v="24"'. Platform: "macOS" (mobile=?0). Referer: 'https://google.com/'. Country (CF): ID. TLS info: {"scheme":"https"}.
show less
Triggered Cloudflare WAF (l7ddos) from ID.
Action taken: BLOCK
ASN: 142352 (IDNIC-TAHTA-ID PT. PRATA ...
show moreTriggered Cloudflare WAF (l7ddos) from ID.
Action taken: BLOCK
ASN: 142352 (IDNIC-TAHTA-ID PT. PRATAMA HASTA UTAMA SOLUSINDO)
Protocol: HTTP/2 (GET method)
Endpoint: /
Timestamp: 2025-12-10T09:17:11Z
Ray ID: 9abba5d1df7df8de
UA: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/113.0.0.0 Safari/537.36
show less
DDoS Attack
Bad Web Bot
Anonymous
Distributed web crawl botnet attack (like Mellowtel), likely illicit scraping of AI training data to ...
show moreDistributed web crawl botnet attack (like Mellowtel), likely illicit scraping of AI training data to bypass firewall/robots.txt restrictions in thread-post.asp
show less
Malicious activity detected from 142352 IDNIC-TAHTA-ID PT. PRATAMA HASTA UTAMA SOLUSINDO towards hos ...
show moreMalicious activity detected from 142352 IDNIC-TAHTA-ID PT. PRATAMA HASTA UTAMA SOLUSINDO towards host dash.embotic.xyz (GET HTTP/2) @ 2025-11-04T17:42:16Z (2 occurrences)
show less
Triggered Cloudflare WAF (l7ddos) from ID.
ASN: 142352 (IDNIC-TAHTA-ID PT. PRATAMA HASTA UTAMA SOLUS ...
show moreTriggered Cloudflare WAF (l7ddos) from ID.
ASN: 142352 (IDNIC-TAHTA-ID PT. PRATAMA HASTA UTAMA SOLUSINDO)
Protocol: HTTP/2 (GET method)
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/122.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Malicious activity detected from 142352 IDNIC-TAHTA-ID PT. PRATAMA HASTA UTAMA SOLUSINDO towards hos ...
show moreMalicious activity detected from 142352 IDNIC-TAHTA-ID PT. PRATAMA HASTA UTAMA SOLUSINDO towards host panel.embotic.xyz (GET HTTP/2) @ 2025-07-01T13:22:31Z (2 occurrences)
show less
ILShield Appliance Alert: The following IPv4 address has been identified with potential malicious ac ...
show moreILShield Appliance Alert: The following IPv4 address has been identified with potential malicious activities, including Internet Scanning, Denial of Service (DoS) Attacks, Participation in Distributed Denial of Service (DDoS) Attacks, Transmission of Invalid Packets, Potential IP Spoofing.
show less
DNS Compromise
DNS Poisoning
DDoS Attack
FTP Brute-Force
Ping of Death
SQL Injection
Brute-Force
Exploited Host
Web App Attack
SSH
IoT Targeted
Showing 1 to
15
of 24 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ