๐ช๐ธ
el-brujo
2026-05-04 02:39:22
(1 month ago)
Cloudflare WAF: Request Path: / Request Query: Host: elhacker.net userAgent: Mozilla/5.0 (Macintosh ...
show more
Cloudflare WAF: Request Path: / Request Query: Host: elhacker.net userAgent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36 Action: block Source: l7ddos ASN Description: General Post and Telecommunication Company (GPTC) Country: LY Method: GET Timestamp: 2026-05-04T02:39:22Z ruleId: 9bc0d8e988e545dea9bd4843c4bef55c. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
๐ฉ๐ช
NoaQT
2026-04-05 22:05:29
(2 months ago)
41.254.48.192 - - [05/Apr/2026:16:37:26 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.facebook ...
show more
41.254.48.192 - - [05/Apr/2026:16:37:26 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.facebook.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
41.254.48.192 - - [05/Apr/2026:16:39:42 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.twitter.com/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
41.254.48.192 - - [05/Apr/2026:16:40:51 +0200] "GET /web/login HTTP/1.1" 499 0 "https://news.social-future.ca/blog" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
41.254.48.192 - - [05/Apr/2026:16:39:42 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.twitter.com/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
...
show less
DDoS Attack
๐ฉ๐ช
NoaQT
2026-04-05 15:55:02
(2 months ago)
41.254.48.192 - - [05/Apr/2026:17:50:21 +0200] "GET /web/login HTTP/1.1" 499 0 "https://shop.modern7 ...
show more
41.254.48.192 - - [05/Apr/2026:17:50:21 +0200] "GET /web/login HTTP/1.1" 499 0 "https://shop.modern77.co/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
41.254.48.192 - - [05/Apr/2026:17:50:57 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.HuNOl.biz/blog" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
41.254.48.192 - - [05/Apr/2026:17:50:57 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.HuNOl.biz/blog" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
41.254.48.192 - - [05/Apr/2026:17:52:28 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.linkedin.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
41.254.48.192 - - [05/Apr/2026:17:52:28 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.linkedin.com/" "Mozilla/5.0 (Win
...
show less
DDoS Attack
๐ฎ๐ณ
liveaspankaj
2026-02-20 23:24:36
(3 months ago)
DDoS attack: 124 requests in 5m (GET / or repair.php).
DDoS Attack
๐ณ๐ฑ
ConsulHosting
2026-02-15 15:26:01
(3 months ago)
Part of an HTTP Flood DDoS attack and had sent at least 43 requests.
DDoS Attack
Exploited Host
๐บ๐ธ
COMPLEX
2026-01-26 01:07:23
(4 months ago)
Triggered Cloudflare WAF (l7ddos) from LY.
Action taken: BLOCK
ASN: undefined (undefined)
Protocol: ...
show more
Triggered Cloudflare WAF (l7ddos) from LY.
Action taken: BLOCK
ASN: undefined (undefined)
Protocol: HTTP/2 (GET method)
Endpoint: /
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:146.0) Gecko/20100101 Firefox/146.0
show less
DDoS Attack
Bad Web Bot
๐ฎ๐น
VHosting
2025-12-30 13:28:20
(5 months ago)
Detected attack and reported by a human
DDoS Attack
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
SSH
๐จ๐ญ
backslash
2025-12-30 01:05:18
(5 months ago)
block ruleset 1E8A9918B1655D0828F2EEF05553DD2681055C9A
Web Spam
๐จ๐ญ
Modules
2025-12-21 06:47:13
(5 months ago)
Open proxy http://41.254.48.192:1978 (RT:7938ms,Loc:Libya,ASN:AS21003)
Open Proxy
๐จ๐ญ
Modules
2025-12-21 01:03:02
(5 months ago)
Open proxy http://41.254.48.192:1976 (RT:13041ms,Loc:Libya,ASN:AS21003)
Open Proxy
๐ธ๐ฌ
Fn4ticHz
2025-12-15 18:21:16
(5 months ago)
repeated ddos targeted load.rapidreset.net -- ZeroGuard
DDoS Attack
๐บ๐ธ
SuperEvilLuke
2025-12-14 13:36:47
(5 months ago)
Malicious activity detected from 21003 GPTC-AS towards host panel.embotic.xyz (GET HTTP/2) @ 2025-12 ...
show more
Malicious activity detected from 21003 GPTC-AS towards host panel.embotic.xyz (GET HTTP/2) @ 2025-12-14T13:36:47Z (21 occurrences)
show less
DDoS Attack
Exploited Host
๐จ๐ฆ
1gz
2025-12-11 21:38:09
(5 months ago)
Triggered Cloudflare WAF (l7ddos) from LY.
Action taken: BLOCK
Protocol: HTTP/2 (GET method)
Endpoin ...
show more
Triggered Cloudflare WAF (l7ddos) from LY.
Action taken: BLOCK
Protocol: HTTP/2 (GET method)
Endpoint: /auth/login
UA: k7fK8XXnCwNRKlN
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
DDoS Attack
Bad Web Bot
๐ต๐น
PTnet
2025-12-07 06:25:46
(6 months ago)
DDoS Attack (jail:haproxy-https-flood)
DDoS Attack
Exploited Host
๐ต๐น
PTnet
2025-12-06 22:43:46
(6 months ago)
DDoS Attack (jail:haproxy-https-flood)
DDoS Attack
Exploited Host