๐ฉ๐ช
NoaQT
2026-04-05 22:02:10
(2 months ago)
185.241.5.57 - - [05/Apr/2026:16:32:32 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.facebook. ...
show more
185.241.5.57 - - [05/Apr/2026:16:32:32 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.facebook.com/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
185.241.5.57 - - [05/Apr/2026:16:32:33 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.twitter.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
185.241.5.57 - - [05/Apr/2026:16:32:34 +0200] "GET /web/login HTTP/1.1" 303 231 "https://blog.app.io/blog" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
185.241.5.57 - - [05/Apr/2026:16:32:34 +0200] "GET /web/login HTTP/1.1" 303 231 "https://www.linkedin.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
185.241.5.57 - - [05/Apr/2026:16:32:35 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.pinterest.com/" "Mozilla/
...
show less
DDoS Attack
๐ฉ๐ช
NoaQT
2026-04-05 14:35:25
(2 months ago)
185.241.5.57 - - [05/Apr/2026:16:32:32 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.facebook. ...
show more
185.241.5.57 - - [05/Apr/2026:16:32:32 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.facebook.com/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
185.241.5.57 - - [05/Apr/2026:16:32:33 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.twitter.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
185.241.5.57 - - [05/Apr/2026:16:32:35 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.pinterest.com/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
185.241.5.57 - - [05/Apr/2026:16:32:36 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.twitter.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
185.241.5.57 - - [05/Apr/2026:16:34:47 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.prime84.co/search" "Mozilla/5.0 (X11; Linux
...
show less
DDoS Attack
๐ฎ๐น
IRT@Unisi
2026-03-28 03:48:59
(2 months ago)
anomaly:tcp_dst_session,1001>threshold1000,repeats6338timessincelastlog
DDoS Attack
๐ท๐ด
CB_X2_Jun
2026-03-28 02:59:00
(2 months ago)
Open Proxy
๐ซ๐ฎ
Shaik Sai Meera
2026-03-26 23:35:12
(2 months ago)
IM360 WAF: Request indicates a Headless browser
Brute-Force
Web App Attack
๐จ๐ญ
backslash
2026-03-22 15:03:35
(2 months ago)
DDoS Attack
๐บ๐ธ
COMPLEX
2026-03-07 23:41:27
(3 months ago)
Triggered Cloudflare WAF (l7ddos) from IL.
Action taken: MANAGED_CHALLENGE
ASN: undefined (undefined ...
show more
Triggered Cloudflare WAF (l7ddos) from IL.
Action taken: MANAGED_CHALLENGE
ASN: undefined (undefined)
Protocol: HTTP/2 (GET method)
Endpoint: /
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:146.0) Gecko/20100101 Firefox/146.0
show less
DDoS Attack
Bad Web Bot
๐ฎ๐ณ
Bharat Datacenter
2026-03-05 16:58:02
(3 months ago)
2: date=2026-03-05 time=22:25:46 eventtime=1772729746942727520 tz="+0530" logid="0720018432" type="u ...
show more
2: date=2026-03-05 time=22:25:46 eventtime=1772729746942727520 tz="+0530" logid="0720018432" type="utm" subtype="anomaly" eventtype="anomaly" level="alert" vd="root" severity="critical" srcip=185.241.5.57 srccountry="Israel" dstip=157.10.99.34 dstcountry="India" srcintf="x2" srcintfrole="wan" sessionid=0 action="clear_session" proto=6 service="HTTPS" count=101495 attack="tcp_syn_flood" srcport=38898 dstport=443 attackid=100663396 policyid=1 policytype="DoS-policy" ref="http://www.fortinet.com/ids/VID100663396" msg="anomaly: tcp_syn_flood, 3139 > threshold 2000, repeats 101495 times since last log, pps 3170 of prior second" crscore=50 craction=4096 crlevel="critical"
show less
Brute-Force
๐ฎ๐ณ
liveaspankaj
2026-02-26 22:36:31
(3 months ago)
DDoS attack: 116 requests in 5m (GET / or repair.php).
DDoS Attack
๐ต๐ฑ
sefinek.net
2026-02-23 01:09:11
(3 months ago)
Triggered Cloudflare WAF (firewallCustom) from IL.
Action: MANAGED_CHALLENGE | Protocol: HTTP/1.1 (G ...
show more
Triggered Cloudflare WAF (firewallCustom) from IL.
Action: MANAGED_CHALLENGE | Protocol: HTTP/1.1 (GET) | Endpoint: /genshin-stella-mod | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36 Vivaldi/5.3.2679.68 โข Generated by: github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฉ๐ช
kranem
2026-01-28 21:00:17
(4 months ago)
Triggered Cloudflare WAF from IL.
Action taken: BLOCK
ASN: 44709 (CLOUDWEBMANAGE-)
Protocol: HTTP/1. ...
show more
Triggered Cloudflare WAF from IL.
Action taken: BLOCK
ASN: 44709 (CLOUDWEBMANAGE-)
Protocol: HTTP/1.1 (GET method)
Endpoint: /
Timestamp: 2026-01-28T20:07:44Z
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36
show less
Bad Web Bot
๐จ๐ฆ
SuperEvilLuke
2026-01-24 19:58:45
(4 months ago)
Malicious activity detected from 44709 CLOUDWEBMANAGE- towards host embotic.xyz (GET HTTP/2) @ 2026- ...
show more
Malicious activity detected from 44709 CLOUDWEBMANAGE- towards host embotic.xyz (GET HTTP/2) @ 2026-01-24T19:58:45Z (1 occurrences)
show less
DDoS Attack
Exploited Host
๐ฌ๐ง
[email protected]
2026-01-24 04:29:12
(4 months ago)
185.241.5.57 - - [24/Jan/2026:04:29:08 +0000] "GET / HTTP/1.1" 303 1511 "-" "Mozilla/5.0 (Windows NT ...
show more
185.241.5.57 - - [24/Jan/2026:04:29:08 +0000] "GET / HTTP/1.1" 303 1511 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36"
185.241.5.57 - - [24/Jan/2026:04:29:10 +0000] "GET / HTTP/1.1" 303 1511 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36"
185.241.5.57 - - [24/Jan/2026:04:29:08 +0000] "GET / HTTP/1.1" 303 1511 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐ฌ๐ง
[email protected]
2026-01-23 19:11:00
(4 months ago)
185.241.5.57 - - [23/Jan/2026:19:10:59 +0000] "GET / HTTP/1.1" 303 1511 "-" "Mozilla/5.0 (Windows NT ...
show more
185.241.5.57 - - [23/Jan/2026:19:10:59 +0000] "GET / HTTP/1.1" 303 1511 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36"
185.241.5.57 - - [23/Jan/2026:19:11:00 +0000] "GET / HTTP/1.1" 303 1511 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36"
185.241.5.57 - - [23/Jan/2026:19:10:59 +0000] "GET / HTTP/1.1" 303 1511 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐ธ๐ฌ
Fn4ticHz
2026-01-21 09:07:35
(4 months ago)
repeated ddos targeted zeroguard.id -- ZeroGuard
DDoS Attack