๐ท๐ด
Fn4ticHz
2026-05-29 02:44:49
(1 week ago)
DDoS blocked via ZeroGuard.ID
DDoS Attack
Exploited Host
๐ซ๐ท
MatStef132
2026-05-22 14:04:09
(1 week ago)
MatShield L7: blocked on mathost.eu (ua-quarantined)
Bad Web Bot
๐ณ๐ฑ
ByeByte API
2026-05-19 06:02:50
(2 weeks ago)
byebyte.space auth: Rate-limit escalation at 2026-05-19T06:02:50Z: 5 rejections in 300s. Firewall au ...
show more
byebyte.space auth: Rate-limit escalation at 2026-05-19T06:02:50Z: 5 rejections in 300s. Firewall auto-banned IP for 900s. UA: 'Mozilla/5.0 (Linux; Android 14; Pixel 8 Pro) AppleWebKit/605.1.15 (KHTML, like Gecko) Chrome/133.0.0.0 Mobile Safari/18.0'. Accept-Language: 'en,es;q=0.9,zh-CN;q=0.8,zh;q=0.7,pt;q=0.6'. Accept-Encoding: 'gzip, br'. Sec-Ch-Ua: '"Google Chrome";v="133", "Chromium";v="133", "Not.A/Brand";v="24"'. Platform: "Android" (mobile=?1). Referer: 'https://google.com/'. Country (CF): ES. TLS info: {"scheme":"https"}.
show less
Web App Attack
DDoS Attack
๐ท๐ด
Fn4ticHz
2026-05-09 14:23:53
(3 weeks ago)
Repeated DDoS targeted -- ZeroGuard X ManagedSRV
DDoS Attack
Exploited Host
๐ฑ๐ป
garmtech.com
2026-04-20 08:48:10
(1 month ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 11-48.80.78.128.94.web-spammer ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 11-48.80.78.128.94.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack
๐ฉ๐ช
NoaQT
2026-04-05 22:10:24
(1 month ago)
80.78.128.94 - - [05/Apr/2026:17:41:46 +0200] "GET /web/login HTTP/1.1" 499 0 "https://shop.digitals ...
show more
80.78.128.94 - - [05/Apr/2026:17:41:46 +0200] "GET /web/login HTTP/1.1" 499 0 "https://shop.digitalsite.org/blog" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
80.78.128.94 - - [05/Apr/2026:17:51:48 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.twitter.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
80.78.128.94 - - [05/Apr/2026:17:51:57 +0200] "GET /web/login HTTP/1.1" 499 0 "https://shop.medianext.co/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
80.78.128.94 - - [05/Apr/2026:17:58:44 +0200] "GET /web/login HTTP/1.1" 499 0 "https://app.newsweb.io/blog" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
80.78.128.94 - - [05/Apr/2026:18:00:29 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.yahoo.com/" "Mozi
...
show less
DDoS Attack
๐ฉ๐ช
NoaQT
2026-04-05 16:00:30
(1 month ago)
80.78.128.94 - - [05/Apr/2026:17:51:48 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.twitter.c ...
show more
80.78.128.94 - - [05/Apr/2026:17:51:48 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.twitter.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
80.78.128.94 - - [05/Apr/2026:17:51:57 +0200] "GET /web/login HTTP/1.1" 499 0 "https://shop.medianext.co/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
80.78.128.94 - - [05/Apr/2026:17:51:57 +0200] "GET /web/login HTTP/1.1" 499 0 "https://shop.medianext.co/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
80.78.128.94 - - [05/Apr/2026:17:58:44 +0200] "GET /web/login HTTP/1.1" 499 0 "https://app.newsweb.io/blog" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
80.78.128.94 - - [05/Apr/2026:17:58:44 +0200] "GET /web/login HTTP/1.1" 499 0 "https://app.newsweb.io/blog" "Mozilla/5.0 (Macintosh
...
show less
DDoS Attack
๐ง๐ช
cmbplf
2026-02-23 01:20:56
(3 months ago)
564 limiting connections by zone (1h39m59s)
DDoS Attack
๐ง๐ช
cmbplf
2026-02-22 17:20:05
(3 months ago)
1238 limiting connections by zone (14m59s)
DDoS Attack
๐ท๐บ
ago.su
2026-02-19 18:05:58
(3 months ago)
F2B blocked nginx activity control ddos v1 [otd]
DDoS Attack
๐ท๐บ
ago.su
2026-02-17 19:04:38
(3 months ago)
F2B blocked nginx activity control ddos v2 [otd]
DDoS Attack
๐บ๐ธ
COMPLEX
2026-01-26 01:07:18
(4 months ago)
Triggered Cloudflare WAF (l7ddos) from ES.
Action taken: BLOCK
ASN: undefined (undefined)
Protocol: ...
show more
Triggered Cloudflare WAF (l7ddos) from ES.
Action taken: BLOCK
ASN: undefined (undefined)
Protocol: HTTP/2 (GET method)
Endpoint: /
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:146.0) Gecko/20100101 Firefox/146.0
show less
DDoS Attack
Bad Web Bot
๐ฎ๐น
VHosting
2025-12-30 13:28:18
(5 months ago)
Detected attack and reported by a human
DDoS Attack
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
SSH
๐จ๐ฆ
1gz
2025-12-29 11:44:32
(5 months ago)
Triggered Cloudflare WAF (l7ddos) from ES.
Action taken: BLOCK
Protocol: HTTP/2 (GET method)
Endpoin ...
show more
Triggered Cloudflare WAF (l7ddos) from ES.
Action taken: BLOCK
Protocol: HTTP/2 (GET method)
Endpoint: /
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
DDoS Attack
Bad Web Bot
๐จ๐ญ
Modules
2025-12-17 01:06:58
(5 months ago)
Open proxy http://80.78.128.94:8080 (RT:13050ms,Loc:Spain,ASN:AS202913)
Open Proxy