๐ซ๐ท
vtchost.com
2026-05-20 21:35:50
(2 weeks ago)
requested honeypot page - ignored robots.txt - scraping botnet or virus
...
Bad Web Bot
Exploited Host
๐ช๐ธ
el-brujo
2026-05-04 02:39:22
(1 month ago)
Cloudflare WAF: Request Path: / Request Query: Host: elhacker.net userAgent: Mozilla/5.0 (Macintosh ...
show more
Cloudflare WAF: Request Path: / Request Query: Host: elhacker.net userAgent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36 Action: block Source: l7ddos ASN Description: Vodafone Data Country: EG Method: GET Timestamp: 2026-05-04T02:39:22Z ruleId: 9bc0d8e988e545dea9bd4843c4bef55c. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
๐ช๐ธ
el-brujo
2026-05-04 02:39:22
(1 month ago)
Cloudflare WAF: Request Path: / Request Query: Host: elhacker.net userAgent: Mozilla/5.0 (Windows N ...
show more
Cloudflare WAF: Request Path: / Request Query: Host: elhacker.net userAgent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36 Action: block Source: l7ddos ASN Description: Vodafone Data Country: EG Method: GET Timestamp: 2026-05-04T02:39:22Z ruleId: 9bc0d8e988e545dea9bd4843c4bef55c. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
๐จ๐ญ
rt
2026-01-16 06:04:17
(4 months ago)
Backdrop CMS module - malicious activity detected
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2025-11-26 08:01:07
(6 months ago)
612 limiting connections by zone (12m59s)
DDoS Attack
Anonymous
2025-11-25 17:07:52
(6 months ago)
scanning http requests from known botnet
Web App Attack
๐ฌ๐ง
Silly Development
2025-11-01 13:11:43
(7 months ago)
Malicious activity detected from 24835 RAYA-AS towards host panel.sillydev.co.uk (GET HTTP/2) @ 2025 ...
show more
Malicious activity detected from 24835 RAYA-AS towards host panel.sillydev.co.uk (GET HTTP/2) @ 2025-11-01T13:11:43Z (2 occurrences)
show less
DDoS Attack
Exploited Host
๐บ๐ธ
bigscoots.com
2025-09-02 15:39:35
(9 months ago)
82.129.233.6 (EG/Egypt/-), 5 distributed sshd attacks on account [root] in the last 3600 secs; Ports ...
show more
82.129.233.6 (EG/Egypt/-), 5 distributed sshd attacks on account [root] in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_DISTATTACK; Logs: Sep 2 09:41:34 16240 sshd[6613]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=14.63.196.175 user=root
Sep 2 09:41:35 16240 sshd[6613]: Failed password for root from 14.63.196.175 port 60738 ssh2
Sep 2 09:51:21 16240 sshd[7356]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=14.63.196.175 user=root
Sep 2 09:51:23 16240 sshd[7356]: Failed password for root from 14.63.196.175 port 51668 ssh2
Sep 2 10:39:22 16240 sshd[11787]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=82.129.233.6 user=root
IP Addresses Blocked:
14.63.196.175 (KR/South Korea/-)
show less
Brute-Force
SSH
๐ฉ๐ช
1gz
2025-08-27 16:02:23
(9 months ago)
Triggered Cloudflare WAF (l7ddos) from EG.
Action taken: BLOCK
Protocol: HTTP/2 (GET method)
Endpoin ...
show more
Triggered Cloudflare WAF (l7ddos) from EG.
Action taken: BLOCK
Protocol: HTTP/2 (GET method)
Endpoint: /
UA: Mozilla/5.0 (compatible; MSIE 8.0; Windows NT 6.0; Trident/4.0; InfoPath.1; SV1; .NET CLR 3.8.36217; WOW64; en-US)
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
DDoS Attack
Bad Web Bot
๐ช๐ธ
10dencehispahard SL
2025-08-19 17:08:34
(9 months ago)
WP probing for vulnerabilities
Hacking
Exploited Host
๐ฉ๐ช
Packets-Decreaser.NET
2025-08-19 13:15:59
(9 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
Anonymous
2025-08-18 23:10:29
(9 months ago)
Ports: 80,443; Direction: 0; Trigger: LF_APACHE_403
Brute-Force
SSH
๐ฌ๐ง
Silly Development
2025-08-03 17:44:37
(10 months ago)
Malicious activity detected from 24835 RAYA-AS towards host sillydev.co.uk (GET HTTP/2) @ 2025-08-03 ...
show more
Malicious activity detected from 24835 RAYA-AS towards host sillydev.co.uk (GET HTTP/2) @ 2025-08-03T17:44:37Z (8 occurrences)
show less
DDoS Attack
Exploited Host
๐ซ๐ท
แดสแด
2025-07-23 17:30:27
(10 months ago)
Triggered Cloudflare WAF (l7ddos) from EG.
ASN: 24835 (RAYA-AS)
Protocol: HTTP/2 (GET method)
UA: Mo ...
show more
Triggered Cloudflare WAF (l7ddos) from EG.
ASN: 24835 (RAYA-AS)
Protocol: HTTP/2 (GET method)
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
DDoS Attack
Bad Web Bot
๐บ๐ธ
Psycho Solutions LLC
2024-12-16 07:16:20
(1 year ago)
Detected Wordpress Scanning. - Request Method: GET - Target: {PC} wp-login.php - User Agent: N ...
show more
Detected Wordpress Scanning. - Request Method: GET - Target: {PC} wp-login.php - User Agent: N/A - Timestamp: 12/16/2024 7:16 am (UTC-6)
show less
Web Spam
Hacking
Bad Web Bot
Web App Attack