|
π·π΄
Fn4ticHz
|
|
DDoS blocked via ZeroGuard.ID
|
DDoS Attack
Exploited Host
|
|
|
π«π·
MatStef132
|
|
MatShield L7: blocked on mathost.eu (ua-quarantined)
|
Bad Web Bot
|
|
|
π·π΄
Fn4ticHz
|
|
Repeated DDoS targeted -- ZeroGuard X ManagedSRV
|
DDoS Attack
Exploited Host
|
|
|
πͺπΈ
el-brujo
|
|
Cloudflare WAF: Request Path: / Request Query: Host: elhacker.net userAgent: Mozilla/5.0 (X11; Linu ...
show more
Cloudflare WAF: Request Path: / Request Query: Host: elhacker.net userAgent: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36 Action: block Source: l7ddos ASN Description: Philippine Long Distance Telephone Company Country: PH Method: GET Timestamp: 2026-05-04T02:39:22Z ruleId: 9bc0d8e988e545dea9bd4843c4bef55c. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
|
Hacking
SQL Injection
Web App Attack
|
|
|
π©πͺ
NoaQT
|
|
58.69.250.43 - - [05/Apr/2026:16:32:23 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.google.co ...
show more
58.69.250.43 - - [05/Apr/2026:16:32:23 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.google.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
58.69.250.43 - - [05/Apr/2026:16:41:45 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.pinterest.com/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
58.69.250.43 - - [05/Apr/2026:16:41:53 +0200] "GET /web/login HTTP/1.1" 499 0 "https://shop.shop-shop.us/blog" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
58.69.250.43 - - [05/Apr/2026:16:43:31 +0200] "GET /web/login HTTP/1.1" 303 231 "https://www.secure34.net/search" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
58.69.250.43 - - [05/Apr/2026:16:48:18 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.bing.com/" "Mozilla/5.0 (Wi
...
show less
|
DDoS Attack
|
|
|
π©πͺ
NoaQT
|
|
58.69.250.43 - - [05/Apr/2026:16:32:23 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.google.co ...
show more
58.69.250.43 - - [05/Apr/2026:16:32:23 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.google.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
58.69.250.43 - - [05/Apr/2026:16:41:45 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.pinterest.com/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
58.69.250.43 - - [05/Apr/2026:16:41:45 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.pinterest.com/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
58.69.250.43 - - [05/Apr/2026:16:41:53 +0200] "GET /web/login HTTP/1.1" 499 0 "https://shop.shop-shop.us/blog" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
58.69.250.43 - - [05/Apr/2026:16:41:53 +0200] "GET /web/login HTTP/1.1" 499 0 "https://shop.shop-shop.us/blog" "Mozilla/5.0 (Windows NT
...
show less
|
DDoS Attack
|
|
|
πΊπΈ
COMPLEX
|
|
Triggered Cloudflare WAF (l7ddos) from PH.
Action taken: MANAGED_CHALLENGE
ASN: undefined (undefined ...
show more
Triggered Cloudflare WAF (l7ddos) from PH.
Action taken: MANAGED_CHALLENGE
ASN: undefined (undefined)
Protocol: HTTP/2 (GET method)
Endpoint: /
UA: Mozilla/5.0 (Android 12; Mobile; rv:146.0) Gecko/146.0 Firefox/146.0
show less
|
DDoS Attack
Bad Web Bot
|
|
|
πΊπΈ
RAP
|
|
2026-01-16 09:35:49 UTC Unauthorized activity to TCP port 23. Telnet
|
Port Scan
|
|
|
πͺπΈ
cuscusero (FlexBacks, FlexChar, FlexAve, FlexCDNM, FlexTudy, ColdHosting SL)
|
|
[CPD ESP-BCN02-FW11-394] Suspicious connection detected on port 8080. DDoS detected
|
DDoS Attack
Port Scan
Brute-Force
|
|
|
π¨π
Modules
|
|
Open proxy http://58.69.250.43:8082 (RT:38205ms,Loc:Philippines,ASN:AS9299)
|
Open Proxy
|
|
|
π΅πΉ
PTnet
|
|
DDoS Attack (jail:haproxy-https-flood)
|
DDoS Attack
Exploited Host
|
|
|
π΅πΉ
PTnet
|
|
DDoS Attack (jail:haproxy-https-flood)
|
DDoS Attack
Exploited Host
|
|
|
π΅πΉ
PTnet
|
|
DDoS Attack (jail:haproxy-https-flood)
|
DDoS Attack
Exploited Host
|
|
|
π©πͺ
Szymekk
|
|
Fail2Ban: SSH brute force attempt [srv01]
|
Brute-Force
SSH
|
|
|
πΊπΈ
COMPLEX
|
|
Triggered Cloudflare WAF (l7ddos) from PH.
Action taken: BLOCK
ASN: 9299 (IPG-AS-AP Philippine Long ...
show more
Triggered Cloudflare WAF (l7ddos) from PH.
Action taken: BLOCK
ASN: 9299 (IPG-AS-AP Philippine Long Distance Telephone Company)
Protocol: HTTP/2 (GET method)
Endpoint: /diddy
show less
|
DDoS Attack
Bad Web Bot
|
|