Detected CC (HTTP flood) attack targeting dun.dunyun.com. The site is protected by CDN; attackers at ...
show moreDetected CC (HTTP flood) attack targeting dun.dunyun.com. The site is protected by CDN; attackers attempted to bypass cache layers and overwhelmed backend with abnormal high-frequency requests.
show less
TCP Watch Auto Report: Detected a ddos attack and suspicious activity from this IP, indicating a pot ...
show moreTCP Watch Auto Report: Detected a ddos attack and suspicious activity from this IP, indicating a potential attack
show less
2025-06-05T18:42:39.853487-04:00 elijahr sshd[3381410]: banner exchange: Connection from 157.15.66.1 ...
show more2025-06-05T18:42:39.853487-04:00 elijahr sshd[3381410]: banner exchange: Connection from 157.15.66.100 port 41514: invalid format
2025-06-05T18:44:16.956486-04:00 elijahr sshd[3383890]: banner exchange: Connection from 157.15.66.100 port 44176: invalid format
2025-06-05T18:44:29.291465-04:00 elijahr sshd[3384232]: banner exchange: Connection from 157.15.66.100 port 44592: invalid format
2025-06-05T18:44:30.957124-04:00 elijahr sshd[3384233]: banner exchange: Connection from 157.15.66.100 port 44614: invalid format
...
show less
Malicious activity detected from 152377 IDNIC-TRITAMA-AS-ID PT Trimitra Aditama Koneksindo towards h ...
show moreMalicious activity detected from 152377 IDNIC-TRITAMA-AS-ID PT Trimitra Aditama Koneksindo towards host panel.embotic.xyz (GET HTTP/2) @ 2025-05-21T17:37:42Z (1 occurrences)
show less
DDoS Attack L7 (3.01 RPS): Requests coming from known bad sources. UA: Mozilla/5.0 (X11; Linux x86_6 ...
show moreDDoS Attack L7 (3.01 RPS): Requests coming from known bad sources. UA: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36
show less
Malicious activity detected from 152377 IDNIC-TRITAMA-AS-ID PT Trimitra Aditama Koneksindo towards h ...
show moreMalicious activity detected from 152377 IDNIC-TRITAMA-AS-ID PT Trimitra Aditama Koneksindo towards host uira.live (GET HTTP/2) @ 2025-05-04T11:21:49Z (4 occurrences)
show less
Triggered Cloudflare WAF (l7ddos) from ID.
Action taken: BLOCK
ASN: 152377 (IDNIC-TRITAMA-AS-ID PT T ...
show moreTriggered Cloudflare WAF (l7ddos) from ID.
Action taken: BLOCK
ASN: 152377 (IDNIC-TRITAMA-AS-ID PT Trimitra Aditama Koneksindo)
Protocol: HTTP/2 (GET method)
Endpoint: /
Timestamp: 2025-03-24T09:52:02Z
UA: Mozilla/5.0 (iPhone; CPU iPhone OS 17_3_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.3 Mobile/15E148 Safari/604.1
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Malicious activity detected from 152377 IDNIC-TRITAMA-AS-ID PT Trimitra Aditama Koneksindo towards h ...
show moreMalicious activity detected from 152377 IDNIC-TRITAMA-AS-ID PT Trimitra Aditama Koneksindo towards host nextcloud.tannerschermerhorn.dev (GET HTTP/1.1) @ 2025-02-10T18:01:58Z
show less
Open Proxy
VPN IP
Port Scan
Hacking
SQL Injection
Bad Web Bot
Exploited Host
Web App Attack