๐ฉ๐ช
NoaQT
2026-04-05 22:05:26
(2 months ago)
212.108.115.79 - - [05/Apr/2026:16:38:20 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.pintere ...
show more
212.108.115.79 - - [05/Apr/2026:16:38:20 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.pinterest.com/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
212.108.115.79 - - [05/Apr/2026:16:39:20 +0200] "GET /web/login HTTP/1.1" 303 231 "https://www.youtube.com/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
212.108.115.79 - - [05/Apr/2026:16:43:43 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.google.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
212.108.115.79 - - [05/Apr/2026:16:45:22 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.bing.com/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
212.108.115.79 - - [05/Apr/2026:16:47:45 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.youtube.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x
...
show less
DDoS Attack
๐ฉ๐ช
NoaQT
2026-04-05 14:47:50
(2 months ago)
212.108.115.79 - - [05/Apr/2026:16:38:20 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.pintere ...
show more
212.108.115.79 - - [05/Apr/2026:16:38:20 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.pinterest.com/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
212.108.115.79 - - [05/Apr/2026:16:43:43 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.google.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
212.108.115.79 - - [05/Apr/2026:16:43:43 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.google.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
212.108.115.79 - - [05/Apr/2026:16:45:22 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.bing.com/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
212.108.115.79 - - [05/Apr/2026:16:45:22 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.bing.com/" "Mozilla/5.0 (X11; Linux x86_64) Ap
...
show less
DDoS Attack
๐ฎ๐น
VHosting
2026-02-24 10:34:29
(4 months ago)
Detected attack and reported by a human
Brute-Force
Web App Attack
SSH
DDoS Attack
Exploited Host
Bad Web Bot
๐ฎ๐ณ
liveaspankaj
2026-02-14 10:56:26
(4 months ago)
DDoS attack: 227 requests in 5m (GET / or repair.php).
DDoS Attack
๐บ๐ธ
COMPLEX
2026-01-26 01:07:25
(5 months ago)
Triggered Cloudflare WAF (l7ddos) from SY.
Action taken: BLOCK
ASN: undefined (undefined)
Protocol: ...
show more
Triggered Cloudflare WAF (l7ddos) from SY.
Action taken: BLOCK
ASN: undefined (undefined)
Protocol: HTTP/2 (GET method)
Endpoint: /
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:146.0) Gecko/20100101 Firefox/146.0
show less
DDoS Attack
Bad Web Bot
๐ธ๐ฌ
Fn4ticHz
2026-01-21 09:53:09
(5 months ago)
repeated ddos targeted zeroguard.id -- ZeroGuard
DDoS Attack
๐ฉ๐ช
Packets-Decreaser.NET
2026-01-01 10:44:18
(5 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
๐จ๐ฆ
1gz
2025-12-29 12:21:28
(5 months ago)
Triggered Cloudflare WAF (l7ddos) from SY.
Action taken: BLOCK
Protocol: HTTP/2 (GET method)
Endpoin ...
show more
Triggered Cloudflare WAF (l7ddos) from SY.
Action taken: BLOCK
Protocol: HTTP/2 (GET method)
Endpoint: /
UA: 05qMXpofM6JNHmz
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
DDoS Attack
Bad Web Bot
๐จ๐ญ
Modules
2025-12-26 07:04:12
(6 months ago)
Open proxy http://212.108.115.79:8080 (RT:9003ms,Loc:Syria,ASN:AS202561)
Open Proxy
๐ต๐ฆ
iphezimbra
2025-12-24 12:24:18
(6 months ago)
Fail2Ban reported IP from jail zimbra-web on <hostname>
Brute-Force
SSH
๐ฉ๐ช
John Chrys.
2025-12-23 05:41:27
(6 months ago)
212.108.115.79 - - [23/Dec/2025:07:41:24 +0200] "POST /wp-comments-post.php HTTP/1.1" 403 6594 "-" " ...
show more
212.108.115.79 - - [23/Dec/2025:07:41:24 +0200] "POST /wp-comments-post.php HTTP/1.1" 403 6594 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
212.108.115.79 - - [23/Dec/2025:07:41:25 +0200] "POST /wp-comments-post.php HTTP/1.1" 403 6594 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
212.108.115.79 - - [23/Dec/2025:07:41:25 +0200] "POST /wp-comments-post.php HTTP/1.1" 403 6594 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
212.108.115.79 - - [23/Dec/2025:07:41:25 +0200] "POST /wp-comments-post.php HTTP/1.1" 403 6594 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
212.108.115.79 - - [23/Dec/2025:07:41:26 +0200] "POST /wp-comments-post.php HTTP/1.1" 403 6594 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleW
...
show less
Brute-Force
Web App Attack
๐ซ๐ฎ
Shaik Sai Meera
2025-12-23 05:20:33
(6 months ago)
IM360 WAF: Infectors: Suspicious access attempt (webshell)
FTP Brute-Force
Open Proxy
Brute-Force
๐ง๐ท
hostseries
2025-12-23 02:44:05
(6 months ago)
Trigger: LF_DISTATTACK
Brute-Force
๐ต๐ฑ
IROK
2025-12-23 00:14:10
(6 months ago)
Malware/WebShell Scan blocked by ModSecurity
...
Hacking