๐ท๐ด
Fn4ticHz
2026-05-09 14:14:16
(1 month ago)
Repeated DDoS targeted -- ZeroGuard X ManagedSRV
DDoS Attack
Exploited Host
๐ฎ๐ฉ
hermawan
2026-04-27 12:36:10
(1 month ago)
[Mon Apr 27 19:12:33.831558 2026] [security2:error] [pid 5038:tid 140327275939520] [client 103.188.1 ...
show more
[Mon Apr 27 19:12:33.831558 2026] [security2:error] [pid 5038:tid 140327275939520] [client 103.188.169.202:51275] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "CDN-Loop" at REQUEST_HEADERS_NAMES:Cdn-Loop. [file "/etc/modsecurity/coreruleset-4.25.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "466"] [id "440005"] [msg "BAD REQUEST_HEADERS_NAMES - Detected and Blocked"] [data "Matched Data: CDN-Loop found within REQUEST_HEADERS_NAMES:Cdn-Loop: Cdn-Loop request_line = GET / HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/"] [unique_id "ae9SsZFwqhd4CgBNNS34ugAAxg8"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[5055] [fmF8B3DZQ6A] [ae9SsZFwqhd4CgBNNS34ugAAxg8] keep_alive=[1] [2026-04-27 19:12:33.831561] [R:ae9SsZFwqhd4CgBNNS34ugAAxg8] UA:'Mozilla/5.0 (iPhone; CPU iPhone OS 17_0 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) EdgiOS/129.0.0.0 Mobile/15E148 Safari/605.1.15' Host:'staklim-jatim.bmkg.go.id' COOKIE:'c
...
show less
Email Spam
Hacking
๐ซ๐ฎ
Shaik Sai Meera
2026-04-06 23:40:12
(2 months ago)
IM360 WAF: SQL Dorks collection for SQL Injection
FTP Brute-Force
Port Scan
SSH
๐ฉ๐ช
NoaQT
2026-04-05 22:09:31
(2 months ago)
103.188.169.202 - - [05/Apr/2026:16:37:35 +0200] "GET /web/login HTTP/1.1" 499 0 "https://news.globa ...
show more
103.188.169.202 - - [05/Apr/2026:16:37:35 +0200] "GET /web/login HTTP/1.1" 499 0 "https://news.globalsite.io/products" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
103.188.169.202 - - [05/Apr/2026:17:40:41 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.twitter.com/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
103.188.169.202 - - [05/Apr/2026:17:44:51 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.wikipedia.org/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
103.188.169.202 - - [05/Apr/2026:17:45:04 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.google.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
103.188.169.202 - - [05/Apr/2026:17:46:25 +0200] "GET /web/login HTTP/1.1" 499 0 "https://shop.social.ca/sea
...
show less
DDoS Attack
๐ฉ๐ช
NoaQT
2026-04-05 15:46:26
(2 months ago)
103.188.169.202 - - [05/Apr/2026:17:40:41 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.twitte ...
show more
103.188.169.202 - - [05/Apr/2026:17:40:41 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.twitter.com/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
103.188.169.202 - - [05/Apr/2026:17:44:51 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.wikipedia.org/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
103.188.169.202 - - [05/Apr/2026:17:44:51 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.wikipedia.org/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
103.188.169.202 - - [05/Apr/2026:17:45:04 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.google.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
103.188.169.202 - - [05/Apr/2026:17:45:04 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.google.com/" "Mozilla/5.0 (Macintosh; I
...
show less
DDoS Attack
๐บ๐ธ
COMPLEX
2026-03-17 18:26:58
(3 months ago)
Triggered Cloudflare WAF (l7ddos) from ID.
Action taken: MANAGED_CHALLENGE
ASN: undefined (undefined ...
show more
Triggered Cloudflare WAF (l7ddos) from ID.
Action taken: MANAGED_CHALLENGE
ASN: undefined (undefined)
Protocol: HTTP/2 (GET method)
Endpoint: /
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:143.0) Gecko/20100101 Firefox/143.0
show less
DDoS Attack
Bad Web Bot
Anonymous
2026-03-02 16:40:11
(3 months ago)
| [Dangerous/Indonesia] Agressive IP 103.188.169.202 (~30 hits). Type: DoS Defender- Web server 400 ...
show more
| [Dangerous/Indonesia] Agressive IP 103.188.169.202 (~30 hits). Type: DoS Defender- Web server 400 error code
show less
Web App Attack
Hacking
SQL Injection
๐ฎ๐น
VHosting
2025-12-30 13:28:22
(5 months ago)
Detected attack and reported by a human
DDoS Attack
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
SSH
๐ธ๐ฌ
Vano Ganzzz
2025-12-10 09:17:08
(6 months ago)
Triggered Cloudflare WAF (l7ddos) from ID.
Action taken: BLOCK
ASN: 58821 (IDNIC-LJN-AS-ID PT Lintas ...
show more
Triggered Cloudflare WAF (l7ddos) from ID.
Action taken: BLOCK
ASN: 58821 (IDNIC-LJN-AS-ID PT Lintas Jaringan Nusantara)
Protocol: HTTP/2 (GET method)
Endpoint: /
Timestamp: 2025-12-10T09:17:08Z
Ray ID: 9abba5c19dbcdaa5
UA: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 Safari/537.36
show less
DDoS Attack
Bad Web Bot
๐บ๐ธ
COMPLEX
2025-12-09 18:19:32
(6 months ago)
Triggered Cloudflare WAF (l7ddos) from ID.
Action taken: BLOCK
ASN: 58821 (IDNIC-LJN-AS-ID PT Lintas ...
show more
Triggered Cloudflare WAF (l7ddos) from ID.
Action taken: BLOCK
ASN: 58821 (IDNIC-LJN-AS-ID PT Lintas Jaringan Nusantara)
Protocol: HTTP/2 (GET method)
Endpoint: /
show less
DDoS Attack
Bad Web Bot
๐ต๐น
PTnet
2025-12-07 06:20:20
(6 months ago)
DDoS Attack (jail:haproxy-https-flood)
DDoS Attack
Exploited Host
๐ต๐น
PTnet
2025-12-06 11:57:51
(6 months ago)
DDoS Attack (jail:haproxy-https-flood)
DDoS Attack
Exploited Host
๐ต๐น
PTnet
2025-12-04 20:00:12
(6 months ago)
DDoS Attack (jail:haproxy-https-flood)
DDoS Attack
Exploited Host
Anonymous
2025-12-04 07:20:22
(6 months ago)
botnet
DDoS Attack
๐ฉ๐ช
Szymekk
2025-12-02 14:03:11
(6 months ago)
Fail2Ban: SSH brute force attempt [srv01]
Brute-Force
SSH