๐ฉ๐ช
NoaQT
2026-04-05 22:08:23
(2 months ago)
119.47.93.126 - - [05/Apr/2026:17:03:26 +0200] "GET /web/login HTTP/1.1" 499 0 "https://app.mega45.c ...
show more
119.47.93.126 - - [05/Apr/2026:17:03:26 +0200] "GET /web/login HTTP/1.1" 499 0 "https://app.mega45.ca/news" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
119.47.93.126 - - [05/Apr/2026:17:38:05 +0200] "GET /web/login HTTP/1.1" 499 0 "https://news.mega-tech.biz/blog" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
119.47.93.126 - - [05/Apr/2026:17:41:14 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.google.com/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
119.47.93.126 - - [05/Apr/2026:17:50:26 +0200] "GET /web/login HTTP/1.1" 499 0 "https://news.digital.uk/about" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
119.47.93.126 - - [05/Apr/2026:17:50:47 +0200] "GET /web/login HTTP/1.1" 499 0 "https://qvtzxL.net/home" "Mozilla/5
...
show less
DDoS Attack
๐ฉ๐ช
NoaQT
2026-04-05 15:52:18
(2 months ago)
119.47.93.126 - - [05/Apr/2026:17:50:26 +0200] "GET /web/login HTTP/1.1" 499 0 "https://news.digital ...
show more
119.47.93.126 - - [05/Apr/2026:17:50:26 +0200] "GET /web/login HTTP/1.1" 499 0 "https://news.digital.uk/about" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
119.47.93.126 - - [05/Apr/2026:17:50:47 +0200] "GET /web/login HTTP/1.1" 499 0 "https://qvtzxL.net/home" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
119.47.93.126 - - [05/Apr/2026:17:50:47 +0200] "GET /web/login HTTP/1.1" 499 0 "https://qvtzxL.net/home" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
119.47.93.126 - - [05/Apr/2026:17:50:52 +0200] "GET /web/login HTTP/1.1" 499 0 "https://blog.KyKLac.info/blog" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
119.47.93.126 - - [05/Apr/2026:17:50:52 +0200] "GET /web/login HTTP/1.1" 499 0 "https://blog.KyKLac.info/blog" "Mozilla/
...
show less
DDoS Attack
๐จ๐ญ
backslash
2026-01-06 01:05:18
(5 months ago)
block ruleset 1E8A9918B1655D0828F2EEF05553DD2681055C9A
Web Spam
๐ฎ๐น
VHosting
2025-12-30 13:28:22
(5 months ago)
Detected attack and reported by a human
DDoS Attack
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
SSH
๐จ๐ญ
Modules
2025-12-26 19:49:48
(5 months ago)
Open proxy http://119.47.93.126:8085 (RT:4051ms,Loc:Indonesia,ASN:AS150204)
Open Proxy
๐ฌ๐ง
Silly Development
2025-12-25 21:03:45
(5 months ago)
Malicious activity detected from 150204 IDNIC-FASTLINKONEKSI-AS-ID PT Fastlink Koneksi Indonesia tow ...
show more
Malicious activity detected from 150204 IDNIC-FASTLINKONEKSI-AS-ID PT Fastlink Koneksi Indonesia towards host sillydev.co.uk (GET HTTP/2) @ 2025-12-25T21:03:45Z (4 occurrences)
show less
DDoS Attack
Exploited Host
๐ธ๐ฌ
Fn4ticHz
2025-12-12 00:14:15
(6 months ago)
repeated ddos targeted just.zpriv.cc -- ZeroGuard
DDoS Attack
Anonymous
2025-12-04 07:20:22
(6 months ago)
botnet
DDoS Attack
๐ฆ๐บ
GreyWatch - Honeypot Intelligence
2025-11-08 14:55:57
(7 months ago)
ASN: 150204 (IDNIC-FASTLINKONEKSI-AS-ID PT Fastlink Koneksi Indonesia)
Botnet Zombie: This IP has be ...
show more
ASN: 150204 (IDNIC-FASTLINKONEKSI-AS-ID PT Fastlink Koneksi Indonesia)
Botnet Zombie: This IP has been detected as a botnet zombie | Outbound DDoS attack source | Malicious
show less
DDoS Attack
Bad Web Bot
๐ธ๐ฌ
Vano Ganzzz
2025-11-03 08:16:36
(7 months ago)
Triggered Cloudflare WAF (l7ddos) from ID.
Action taken: BLOCK
ASN: 150204 (IDNIC-FASTLINKONEKSI-AS- ...
show more
Triggered Cloudflare WAF (l7ddos) from ID.
Action taken: BLOCK
ASN: 150204 (IDNIC-FASTLINKONEKSI-AS-ID PT Fastlink Koneksi Indonesia)
Protocol: HTTP/2 (GET method)
Endpoint: /
Timestamp: 2025-11-03T08:16:36Z
Ray ID: 998a6e316a17fc0c
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/113.0.0.0 Safari/537.36
show less
DDoS Attack
Bad Web Bot
๐บ๐ธ
SuperEvilLuke
2025-10-07 23:55:38
(8 months ago)
Malicious activity detected from 150204 IDNIC-FASTLINKONEKSI-AS-ID PT Fastlink Koneksi Indonesia tow ...
show more
Malicious activity detected from 150204 IDNIC-FASTLINKONEKSI-AS-ID PT Fastlink Koneksi Indonesia towards host dash.embotic.xyz (GET HTTP/1.1) @ 2025-10-07T23:55:38Z (2 occurrences)
show less
DDoS Attack
Exploited Host
๐บ๐ธ
skycodee
2025-10-05 12:49:12
(8 months ago)
Repeated TLS handshake abuse against Pterodactyl Wings (port 8080)
DDoS Attack
๐ฌ๐ง
Silly Development
2025-09-29 20:52:21
(8 months ago)
Malicious activity detected from 150204 IDNIC-FASTLINKONEKSI-AS-ID PT Fastlink Koneksi Indonesia tow ...
show more
Malicious activity detected from 150204 IDNIC-FASTLINKONEKSI-AS-ID PT Fastlink Koneksi Indonesia towards host sillydev.co.uk (GET HTTP/2) @ 2025-09-29T20:52:21Z (4 occurrences)
show less
DDoS Attack
Exploited Host
๐ฉ๐ช
1gz
2025-09-16 11:12:24
(8 months ago)
Triggered Cloudflare WAF (firewallCustom) from ID.
Action taken: BLOCK
Protocol: HTTP/2 (GET method) ...
show more
Triggered Cloudflare WAF (firewallCustom) from ID.
Action taken: BLOCK
Protocol: HTTP/2 (GET method)
Endpoint: /
UA: Mozilla/5.0 (Windows; U; Windows NT 5.2; en-US) AppleWebKit/525.13 (KHTML, like Gecko) Chrome/0.2.149.6 Safari/525.13
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฉ๐ช
CommanderRoot
2025-08-26 18:52:26
(9 months ago)
HTTP request flood
DDoS Attack
Web Spam