๐ซ๐ท
MatStef132
2026-05-22 14:04:05
(2 weeks ago)
MatShield L7: blocked on mathost.eu (ua-quarantined)
Bad Web Bot
๐ฉ๐ช
FeG Deutschland
2026-05-20 13:39:36
(3 weeks ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 28
Exploited Host
Web App Attack
๐ท๐ด
Fn4ticHz
2026-05-10 13:58:45
(1 month ago)
Repeated DDoS targeted -- ZeroGuard X ManagedSRV
DDoS Attack
Exploited Host
๐บ๐ธ
Vano Ganzzz
2026-05-09 01:09:31
(1 month ago)
Triggered Cloudflare WAF (firewallCustom) from ID.
Action taken: BLOCK
ASN: 149909 (PT Panjalu Saran ...
show more
Triggered Cloudflare WAF (firewallCustom) from ID.
Action taken: BLOCK
ASN: 149909 (PT Panjalu Sarana Data Indonesia)
Protocol: HTTP/2 (GET method)
Endpoint: /
Timestamp: 2026-05-09T01:09:31Z
Ray ID: 9f8cd1b89dea6027
UA: Browser93/47.0 (Device89; FreeBSD) Engine1/20.0 (KHTML, like Gecko) Feature2/30.0
show less
Bad Web Bot
๐ช๐ธ
el-brujo
2026-05-04 02:39:22
(1 month ago)
Cloudflare WAF: Request Path: / Request Query: Host: elhacker.net userAgent: Mozilla/5.0 (Windows N ...
show more
Cloudflare WAF: Request Path: / Request Query: Host: elhacker.net userAgent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36 Action: block Source: l7ddos ASN Description: PT Panjalu Sarana Data Indonesia Country: ID Method: GET Timestamp: 2026-05-04T02:39:22Z ruleId: 9bc0d8e988e545dea9bd4843c4bef55c. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
๐ฎ๐น
A000Z
2026-04-28 07:47:47
(1 month ago)
Fail2Ban: 103.191.58.210 was banned for Aggressive Bad Bot detected by Nginx/Fail2Ban. UA: Mozilla/5 ...
show more
Fail2Ban: 103.191.58.210 was banned for Aggressive Bad Bot detected by Nginx/Fail2Ban. UA: Mozilla/5.0 (Linux; Android 8.0; Pixel 2 Build/OPD3.170816.012) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/56.0.6473.1664 Mobile Safari/537.36
show less
Bad Web Bot
Anonymous
2026-04-23 05:03:34
(1 month ago)
Automated bot traffic โ residential proxy, fake browser fingerprint. UA="Mozilla/5.0 (Windows NT 10. ...
show more
Automated bot traffic โ residential proxy, fake browser fingerprint. UA="Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/109.0.0.0 Safari/537.36"
show less
Bad Web Bot
Web App Attack
Anonymous
2026-04-14 21:10:04
(1 month ago)
| [Dangerous/Indonesia] Aggressive IP 103.191.58.210 (~30 hits). Type: DoS Defender- Web server 400 ...
show more
| [Dangerous/Indonesia] Aggressive IP 103.191.58.210 (~30 hits). Type: DoS Defender- Web server 400 error code
show less
Web App Attack
Hacking
SQL Injection
๐บ๐ธ
oncord
2026-04-07 08:33:38
(2 months ago)
Form spam
Web Spam
๐ฉ๐ช
NoaQT
2026-04-05 22:07:55
(2 months ago)
103.191.58.210 - - [05/Apr/2026:16:30:42 +0200] "GET /web/login HTTP/1.1" 303 231 "https://www.faceb ...
show more
103.191.58.210 - - [05/Apr/2026:16:30:42 +0200] "GET /web/login HTTP/1.1" 303 231 "https://www.facebook.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
103.191.58.210 - - [05/Apr/2026:16:41:36 +0200] "GET /web/login HTTP/1.1" 499 0 "https://cloud.com/about" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
103.191.58.210 - - [05/Apr/2026:16:41:36 +0200] "GET /web/login HTTP/1.1" 499 0 "https://cloud.com/about" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
103.191.58.210 - - [05/Apr/2026:17:42:08 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.google.com/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
103.191.58.210 - - [05/Apr/2026:17:42:52 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.google.com/" "Mozilla/5.0 (
...
show less
DDoS Attack
๐ฉ๐ช
NoaQT
2026-04-05 17:04:06
(2 months ago)
103.191.58.210 - - [05/Apr/2026:19:02:55 +0200] "GET /web/login HTTP/1.1" 499 0 "https://blog.ulHAQo ...
show more
103.191.58.210 - - [05/Apr/2026:19:02:55 +0200] "GET /web/login HTTP/1.1" 499 0 "https://blog.ulHAQoIq.ca/news" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
103.191.58.210 - - [05/Apr/2026:19:03:07 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.whatsapp.com/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
103.191.58.210 - - [05/Apr/2026:19:03:07 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.whatsapp.com/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
103.191.58.210 - - [05/Apr/2026:19:03:37 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.instagram.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
103.191.58.210 - - [05/Apr/2026:19:03:37 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.instagram.com/" "Mozilla/5.0
...
show less
DDoS Attack
๐ฉ๐ช
NoaQT
2026-04-05 15:55:13
(2 months ago)
103.191.58.210 - - [05/Apr/2026:17:49:14 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.youtube ...
show more
103.191.58.210 - - [05/Apr/2026:17:49:14 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.youtube.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
103.191.58.210 - - [05/Apr/2026:17:50:11 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.facebook.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
103.191.58.210 - - [05/Apr/2026:17:50:44 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.facebook.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
103.191.58.210 - - [05/Apr/2026:17:50:44 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.instagram.com/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
103.191.58.210 - - [05/Apr/2026:17:51:02 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.pinterest.com/" "
...
show less
DDoS Attack
๐ฉ๐ช
ghostwarriors
2026-04-01 00:59:30
(2 months ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
๐น๐ท
rtbh.com.tr
2026-03-29 20:12:19
(2 months ago)
list.rtbh.com.tr report: tcp/0
Brute-Force
๐น๐ท
rtbh.com.tr
2026-03-28 20:12:18
(2 months ago)
list.rtbh.com.tr report: tcp/0
Brute-Force