๐ต๐ฑ
sefinek.net
2026-07-04 01:16:42
(6 hours ago)
Triggered Cloudflare WAF (firewallCustom) from NL.
Action: MANAGED_CHALLENGE | Protocol: HTTP/1.1 (G ...
show more
Triggered Cloudflare WAF (firewallCustom) from NL.
Action: MANAGED_CHALLENGE | Protocol: HTTP/1.1 (GET) | Endpoint: /index.php | UA: Mozilla/5.0 (X11; CrOS x86_64 14541.0.0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0.0.0 Safari/537.36 โข Generated by: github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฎ๐ณ
dineshskt4all
2026-07-04 00:32:13
(6 hours ago)
98.159.36.5 - - [04/Jul/2026:00:32:08 +0000] "POST /user-register/ HTTP/1.1" 302 5999 "https://www.b ...
show more
98.159.36.5 - - [04/Jul/2026:00:32:08 +0000] "POST /user-register/ HTTP/1.1" 302 5999 "https://www.broadwaysinnmanali.com/2025/07/18/bansko-casino-bonus-codes-2026/register.php?mlvl=-1" "Mozilla/5.0 (Windows NT 6.3; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 Safari/537.36"
...
show less
IoT Targeted
๐บ๐ธ
deskpass.com
2026-07-03 22:14:21
(9 hours ago)
GET /signup
Web App Attack
๐ช๐ธ
el-brujo
2026-07-03 21:42:38
(9 hours ago)
[Fri Jul 03 23:42:37.387680 2026] [proxy_fcgi:error] [pid 2218064:tid 2218094] [remote 98.159.36.5:0 ...
show more
[Fri Jul 03 23:42:37.387680 2026] [proxy_fcgi:error] [pid 2218064:tid 2218094] [remote 98.159.36.5:0] AH01071: Got error 'Primary script unknown\n', referer: https://www.elhacker.net/
[Fri Jul 03 23:42:38.106275 2026] [proxy_fcgi:error] [pid 2218064:tid 2218068] [remote 98.159.36.5:0] AH01071: Got error 'Primary script unknown\n', referer: https://www.elhacker.net/
...
show less
Hacking
Web App Attack
๐ซ๐ท
matthieul.dev
2026-06-22 18:50:23
(1 week ago)
Blocked by os-abuseipdb; 7 hits, proto=tcp,udp, ports=27279
Port Scan
Brute-Force
๐บ๐ธ
OceanTreasure
2026-05-30 07:30:28
(1 month ago)
tcp/8686; Multiple SYN connections to closed port (โฅ10 in 10 min) (R18) @ 2026-05-30T07:27:13Z
Brute-Force
Anonymous
2026-05-30 07:01:01
(1 month ago)
May 30 03:00:58 localhost kernel: [108469781.509644] iptables_INPUT_denied: IN=eth0 OUT= MAC=f2:3c:9 ...
show more
May 30 03:00:58 localhost kernel: [108469781.509644] iptables_INPUT_denied: IN=eth0 OUT= MAC=f2:3c:91:84:83:95:00:00:0c:9f:f0:1e:08:00 SRC=98.159.36.5 DST=[mungedIP2] LEN=60 TOS=0x00 PREC=0x60 TTL=51 ID=0 DF PROTO=TCP SPT=42030 DPT=9443 WINDOW=65535 RES=0x00 SYN URGP=0
May 30 03:00:58 localhost kernel: [108469781.509667] iptables_INPUT_denied: IN=eth0 OUT= MAC=f2:3c:91:84:83:95:00:00:0c:9f:f0:1e:08:00 SRC=98.159.36.5 DST=[mungedIP2] LEN=60 TOS=0x00 PREC=0x60 TTL=51 ID=0 DF PROTO=TCP SPT=42030 DPT=9443 SEQ=1817190956 ACK=0 WINDOW=65535 RES=0x00 SYN URGP=0 OPT (020405B40402080A69FD34270000000001030307)
May 30 03:00:59 localhost kernel: [108469781.515700] iptables_INPUT_denied: IN=eth0 OUT= MAC=f2:3c:91:84:83:95:00:00:0c:9f:f0:1e:08:00 SRC=98.159.36.5 DST=[mungedIP2] LEN=60 TOS=0x00 PREC=0x60 TTL=43 ID=0 DF PROTO=TCP SPT=40915 DPT=9091 WINDOW=65535 RES=0x00 SYN URGP=0
May 30 03:00:59 localhost kernel: [108469781.517691] iptables_INPUT_denied: IN=eth0 OUT= MAC=f2:3c:91:84:83:95:00:00:0c:9f:f0:1e:08:00 SRC=98.1
show less
Port Scan
๐ฌ๐ง
ISPLtd
2026-05-30 03:02:02
(1 month ago)
May 30 00:02:01 98.159.36.5 TCP SPT=58470 DPT=5900 SYN
May 30 00:02:01 98.159.36.5 TCP SPT=38278 DPT ...
show more
May 30 00:02:01 98.159.36.5 TCP SPT=58470 DPT=5900 SYN
May 30 00:02:01 98.159.36.5 TCP SPT=38278 DPT=6667 SYN
May 30 00:02:01 98.159.36.5 TCP SPT=40558 DPT=9090 SYN
...
show less
Port Scan
๐จ๐ณ
pengpeng
2026-05-21 12:24:43
(1 month ago)
monitor: on VM-0-7-ubuntu | port: 5803 | ttl: 251 script: github.com/sefinek/UFW-AbuseIPDB-Reporter
Port Scan
๐ฆ๐น
urnilxfgbez
2026-05-14 22:45:00
(1 month ago)
Last 24 Hours suspicious: (DPT=445|DPT=3389|DPT=22|DPT=3306|DPT=8080|DPT=23|DPT=5900|DPT=1433)
Port Scan
๐ฉ๐ช
SiyCah
2026-01-24 04:00:01
(5 months ago)
98.159.36.5 fell into Endlessh tarpit; 0/1 total connections are currently still open. Total time wa ...
show more
98.159.36.5 fell into Endlessh tarpit; 0/1 total connections are currently still open. Total time wasted: 3s. Total bytes sent by tarpit: 159B. Report generated by Endlessh Report Generator v1.2.3
show less
Port Scan
Hacking
Brute-Force
SSH
๐ฉ๐ช
SiyCah
2026-01-22 04:00:01
(5 months ago)
98.159.36.5 fell into Endlessh tarpit; 0/1 total connections are currently still open. Total time wa ...
show more
98.159.36.5 fell into Endlessh tarpit; 0/1 total connections are currently still open. Total time wasted: 3s. Total bytes sent by tarpit: 159B. Report generated by Endlessh Report Generator v1.2.3
show less
Port Scan
Hacking
Brute-Force
SSH
๐บ๐ธ
OceanTreasure
2025-12-16 16:10:09
(6 months ago)
tcp/49153; Multiple SYN connections to closed port (โฅ10 in 10 min) (R18) @ 2025-12-16T16:01:25Z
Brute-Force
๐ต๐ฑ
nfsec.pl
2025-12-16 15:59:43
(6 months ago)
Detected: TCP scan on port: 3389 with flags: SYN
Port Scan
๐ฉ๐ช
F242
2025-12-15 03:26:20
(6 months ago)
Wordpress Login or XMLRPC abuse
Web App Attack