Malware host detected by rbl.malware.expert. RBL lookup of 54.121.128.121.rbl.malware.expert succeed ...
show moreMalware host detected by rbl.malware.expert. RBL lookup of 54.121.128.121.rbl.malware.expert succeeded at REMOTE_ADDR. (400010-mnz6-1)
show less
Triggered Cloudflare WAF from KR.
Action taken: BLOCK
ASN: 4766 (KIXS-AS-KR Korea Telecom)
Protocol: ...
show moreTriggered Cloudflare WAF from KR.
Action taken: BLOCK
ASN: 4766 (KIXS-AS-KR Korea Telecom)
Protocol: HTTP/2 (GET method)
Endpoint: /
Timestamp: 2026-02-26T19:49:42Z
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/122.0.0.0 Safari/537.36
show less
Automated report: This IP address has been identified as an active public open proxy.
Classification ...
show moreAutomated report: This IP address has been identified as an active public open proxy.
Classification: Open Proxy | Spoofing | VPN/Anonymizer | Bad Web Bot.
Country: South Korea
Threat level: High. This host is listed across multiple public proxy databases and poses a risk of abuse, credential stuffing, scraping, and spoofed traffic.
Reported by automated threat intelligence pipeline. Do not whitelist without manual verification.
show less
Triggered Cloudflare WAF (l7ddos) from KR.
Action taken: BLOCK
Protocol: HTTP/2 (GET method)
Endpoin ...
show moreTriggered Cloudflare WAF (l7ddos) from KR.
Action taken: BLOCK
Protocol: HTTP/2 (GET method)
Endpoint: /
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:118.0) Gecko/20100101 Firefox/118.0
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
DDoS Attack
Bad Web Bot
Showing 1 to
8
of 8 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ