๐ช๐ธ
Francisco Vallejo
2026-06-19 18:45:26
(1 week ago)
[Fri Jun 19 20:45:25.575247 2026] [core:info] [pid 1787146:tid 137198435301056] [client 144.217.135. ...
show more
[Fri Jun 19 20:45:25.575247 2026] [core:info] [pid 1787146:tid 137198435301056] [client 144.217.135.191:52125] AH00128: File does not exist: /var/www/barluna/ads.txt
[Fri Jun 19 20:45:25.801857 2026] [core:info] [pid 1787146:tid 137198418515648] [client 144.217.135.191:52125] AH00128: File does not exist: /var/www/barluna/llms.txt
[Fri Jun 19 20:45:25.911095 2026] [core:info] [pid 1787146:tid 137197822928576] [client 144.217.135.191:52125] AH00128: File does not exist: /var/www/barluna/security.txt
[Fri Jun 19 20:45:26.026501 2026] [core:info] [pid 1787146:tid 137197160232640] [client 144.217.135.191:52125] AH00128: File does not exist: /var/www/barluna/.well-known/security.txt
[Fri Jun 19 20:45:26.136342 2026] [core:info] [pid 1787146:tid 137198410122944] [client 144.217.135.191:52125] AH00128: File does not exist: /var/www/barluna/humans.txt
...
show less
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2026-05-18 16:37:39
(1 month ago)
(mod_security) mod_security (id:243420) triggered by 144.217.135.191 (crawl-144-217-135-191.dataprov ...
show more
(mod_security) mod_security (id:243420) triggered by 144.217.135.191 (crawl-144-217-135-191.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 18 12:37:33.260442 2026] [security2:error] [pid 22183:tid 22183] [client 144.217.135.191:44609] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "REQUEST_HEADERS:Accept-Encoding" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||www.wallpaperpro.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.wallpaperpro.com"] [uri "/new/index.html"] [unique_id "agtATcyvOypvgbOeZ_uUFgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-16 03:12:49
(1 month ago)
(mod_security) mod_security (id:243420) triggered by 144.217.135.191 (crawl-144-217-135-191.dataprov ...
show more
(mod_security) mod_security (id:243420) triggered by 144.217.135.191 (crawl-144-217-135-191.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 15 23:12:45.486119 2026] [security2:error] [pid 24006:tid 24006] [client 144.217.135.191:54799] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "REQUEST_HEADERS:Accept-Encoding" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||www.billdavidow.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.billdavidow.com"] [uri "/previous.html"] [unique_id "agfgrXMERI39xKyZiPLvHQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Hary74656
2026-05-08 17:39:31
(1 month ago)
[Fri May 08 19:39:23.229412 2026] [core:info] [pid 145925:tid 146010] [client 144.217.135.191:44289] ...
show more
[Fri May 08 19:39:23.229412 2026] [core:info] [pid 145925:tid 146010] [client 144.217.135.191:44289] AH00128: File does not exist: /home/harald/www/default_host/ads.txt
...
show less
Bad Web Bot
๐ฉ๐ช
hbrks
2026-01-16 06:21:33
(5 months ago)
1 attack(s) detected, such as these: {"event":"web_block","ip":"144.217.135.191","host":"www.paganos ...
show more
1 attack(s) detected, such as these: {"event":"web_block","ip":"144.217.135.191","host":"www.paganos.de","request":"GET / HTTP/1.1","user_agent":"Mozilla/5.0 (compatible; Dataprovider.com)","reason":"service:unknow","timestamp":"2026-01-16T06:21:33 00:00","logentry":"www.paganos.de 144.217.135.191 - - [16/Jan/2026:06:21:33 0000] GET / HTTP/1.1 444 0 - Mozilla/5.0 (compatible; Dataprovider.com) - matched:service:unknow"} * Report Details *: https://p4u.xyz/ZHLI9BYK00N/1* IP Details *: https://p4u.xyz/ZHLI9BYK00N/2
show less
Web Spam
Hacking
Bad Web Bot
๐ฉ๐ฐ
SaltySoftworks
2025-11-15 00:12:23
(7 months ago)
User agent spoofing
Spoofing
๐บ๐ธ
TPI-Abuse
2025-11-14 01:43:41
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 144.217.135.191 (crawl-144-217-135-191.dataprov ...
show more
(mod_security) mod_security (id:210730) triggered by 144.217.135.191 (crawl-144-217-135-191.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Nov 13 20:43:37.571862 2025] [security2:error] [pid 29580:tid 29580] [client 144.217.135.191:43399] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||www.fractalsky.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.fractalsky.com"] [uri "/blackhorrormovie.com"] [unique_id "aRaJSabU2C0ZF_BStMIoSwAAAB4"], referer: http://www.furythedvd.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-10-31 07:35:10
(7 months ago)
Excessive crawling/scraping
Hacking
Brute-Force
Anonymous
2025-10-05 05:40:00
(8 months ago)
Unauthorized connection attempt
Brute-Force
๐บ๐ธ
TPI-Abuse
2025-08-19 01:15:29
(10 months ago)
(mod_security) mod_security (id:243420) triggered by 144.217.135.191 (crawl-144-217-135-191.dataprov ...
show more
(mod_security) mod_security (id:243420) triggered by 144.217.135.191 (crawl-144-217-135-191.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 18 21:15:24.881862 2025] [security2:error] [pid 26200:tid 26200] [client 144.217.135.191:53855] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "REQUEST_HEADERS:Accept-Encoding" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||www.firstlovedevotions.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.firstlovedevotions.com"] [uri "/Patrick_McIntyre.html"] [unique_id "aKPQLOr6e8UeSyLQrRhV0gAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-08-15 23:55:28
(10 months ago)
Excessive crawling/scraping
Hacking
Brute-Force
Anonymous
2025-07-30 02:57:14
(10 months ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
Anonymous
2025-07-26 03:06:20
(11 months ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐ซ๐ท
โจ
2025-03-31 15:41:03
(1 year ago)
Domain : comunicados-cgt.es
Rule : config
2025-03-31 15:40:13 152.53.103.155 GET /.well-known/securi ...
show more
Domain : comunicados-cgt.es
Rule : config
2025-03-31 15:40:13 152.53.103.155 GET /.well-known/security.txt - 443 - 144.217.135.191 HTTP/1.1 Mozilla/5.0 (compatible; Dataprovider.com) - www.comunicados-cgt.es 404 0 2 5502 272 113 - -
show less
Hacking
SQL Injection
๐ฉ๐ช
conseilgouz
2025-03-30 05:58:19
(1 year ago)
avw-(visforms) : try to access forms...
Hacking