๐บ๐ธ
COMPLEX
2025-04-29 17:20:15
(1 year ago)
Triggered Cloudflare WAF (l7ddos) from US.
Action taken: BLOCK
ASN: 132203 (TENCENT-NET-AP-CN Tencen ...
show more
Triggered Cloudflare WAF (l7ddos) from US.
Action taken: BLOCK
ASN: 132203 (TENCENT-NET-AP-CN Tencent Building, Kejizhongyi Avenue)
Protocol: HTTP/2 (GET method)
Timestamp: 2025-04-29T17:19:23Z
show less
Bad Web Bot
๐ฉ๐ช
Packets-Decreaser.NET
2025-04-27 04:37:58
(1 year ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
๐บ๐ธ
COMPLEX
2025-04-27 00:10:48
(1 year ago)
Triggered Cloudflare WAF (l7ddos) from US.
Action taken: BLOCK
ASN: 132203 (TENCENT-NET-AP-CN Tencen ...
show more
Triggered Cloudflare WAF (l7ddos) from US.
Action taken: BLOCK
ASN: 132203 (TENCENT-NET-AP-CN Tencent Building, Kejizhongyi Avenue)
Protocol: HTTP/2 (GET method)
Timestamp: 2025-04-26T22:11:44Z
show less
Bad Web Bot
๐ช๐ธ
el-brujo
2025-04-26 05:53:16
(1 year ago)
Cloudflare WAF: Request Path: / Request Query: Host: www.elhacker.net userAgent: Mozilla/5.0 (Windo ...
show more
Cloudflare WAF: Request Path: / Request Query: Host: www.elhacker.net userAgent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/605.1.15 (KHTML, like Gecko) Chrome/130.0.6668.59 Safari/604.1 Action: block Source: l7ddos ASN Description: TENCENT-NET-AP-CN Tencent Building, Kejizhongyi Avenue Country: US Method: GET Timestamp: 2025-04-26T05:53:16Z ruleId: bd86ad15a1d24741bd9edcc93c843b37. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
๐ฎ๐น
Samsteve169
2025-04-25 23:04:00
(1 year ago)
Received DDoS attack through Cloudflare
DDoS Attack
๐ณ๐ฑ
maxxsense
2025-04-24 02:15:08
(1 year ago)
(postfix-unknown) Failed postfix unknown login with username [redacted] from 43.153.113.33 (US/Unite ...
show more
(postfix-unknown) Failed postfix unknown login with username [redacted] from 43.153.113.33 (US/United States/-)
show less
Hacking
๐ฉ๐ช
Packets-Decreaser.NET
2025-04-22 21:02:12
(1 year ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
๐บ๐ธ
COMPLEX
2025-04-21 04:12:27
(1 year ago)
Triggered Cloudflare WAF (l7ddos) from US.
Action taken: BLOCK
ASN: 132203 (TENCENT-NET-AP-CN Tencen ...
show more
Triggered Cloudflare WAF (l7ddos) from US.
Action taken: BLOCK
ASN: 132203 (TENCENT-NET-AP-CN Tencent Building, Kejizhongyi Avenue)
Protocol: HTTP/2 (GET method)
Timestamp: 2025-04-21T04:11:13Z
show less
Bad Web Bot
๐บ๐ธ
hostseries
2025-04-21 00:07:54
(1 year ago)
Trigger: LF_DISTATTACK
Brute-Force
๐ณ๐ฑ
cheatmaster.store
2025-04-20 12:00:00
(1 year ago)
Detected as VPN or Open Proxy used for abusive activity
Brute-Force
SSH
๐บ๐ธ
COMPLEX
2025-04-19 18:07:04
(1 year ago)
Triggered Cloudflare WAF (l7ddos) from US.
Action taken: BLOCK
ASN: 132203 (TENCENT-NET-AP-CN Tencen ...
show more
Triggered Cloudflare WAF (l7ddos) from US.
Action taken: BLOCK
ASN: 132203 (TENCENT-NET-AP-CN Tencent Building, Kejizhongyi Avenue)
Protocol: HTTP/2 (GET method)
Timestamp: 2025-04-19T18:06:23Z
show less
Bad Web Bot
๐บ๐ธ
COMPLEX
2025-04-18 03:00:41
(1 year ago)
Triggered Cloudflare WAF (l7ddos) from US.
Action taken: BLOCK
ASN: 132203 (TENCENT-NET-AP-CN Tencen ...
show more
Triggered Cloudflare WAF (l7ddos) from US.
Action taken: BLOCK
ASN: 132203 (TENCENT-NET-AP-CN Tencent Building, Kejizhongyi Avenue)
Protocol: HTTP/1.1 (GET method)
Timestamp: 2025-04-18T02:48:53Z
show less
Bad Web Bot
๐ต๐ฑ
sefinek.net
2025-04-13 00:02:29
(1 year ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
ASN: 132203 (TENC ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
ASN: 132203 (TENCENT-NET-AP-CN Tencent Building, Kejizhongyi Avenue)
Protocol: HTTP/1.1 (GET method)
Timestamp: 2025-04-12T22:40:04Z
UA: Mozilla/5.0 (X11; Fedora; Linux x86_64; rv:114.0) Gecko/20100101 Firefox/114.0
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
Anonymous
2025-04-11 16:52:30
(1 year ago)
Excessive connections to http/https ports
DDoS Attack
๐บ๐ธ
TPI-Abuse
2025-04-04 18:36:43
(1 year ago)
(mod_security) mod_security (id:210831) triggered by 43.153.113.33 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210831) triggered by 43.153.113.33 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 04 14:36:36.811457 2025] [security2:error] [pid 1574777:tid 1574777] [client 43.153.113.33:60282] [client 43.153.113.33] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i:(?:^(?:microsoft url|user-Agent|www\\\\.weblogs\\\\.com|(?:jakart|vi)a|(google|i{0,1}explorer{0,1}\\\\.exe|(ms){0,1}ie( [0-9.]{1,}){0,1} {0,1}(compatible( browser){0,1}){0,1})$)|\\\\bdatacha0s\\\\b|; widows|\\\\\\\\r|a(?: href=|d(?:sarobot|vanced email extractor ..." at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "29"] [id "210831"] [rev "2"] [msg "COMODO WAF: Rogue web site crawler||backstore.com|F|4"] [data "a href="] [severity "WARNING"] [tag "CWAF"] [tag "Agents"] [hostname "backstore.com"] [uri "/usage_202504.html"] [unique_id "Z_AmtENo4yuwJcCLkG4w3gAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack