๐ฎ๐น
[email protected]
2026-06-02 12:39:23
(1 day ago)
[Tue Jun 02 14:39:22.585248 2026] [authz_core:error] [pid 1780993:tid 1781055] [remote 144.217.135.2 ...
show more
[Tue Jun 02 14:39:22.585248 2026] [authz_core:error] [pid 1780993:tid 1781055] [remote 144.217.135.219:45005] AH01630: client denied by server configuration: /var/www/html/MyWeb/Public_www/.well-known
show less
Brute-Force
Web App Attack
๐บ๐ธ
lavnet.net
2026-05-27 18:43:14
(1 week ago)
144.217.135.219 - - [27/May/2026:18:43:13 +0000] "GET /robots.txt HTTP/1.1" 404 2083 "-" "Mozilla/5. ...
show more
144.217.135.219 - - [27/May/2026:18:43:13 +0000] "GET /robots.txt HTTP/1.1" 404 2083 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
144.217.135.219 - - [27/May/2026:18:43:13 +0000] "GET /sitemap.xml HTTP/1.1" 404 2083 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
144.217.135.219 - - [27/May/2026:18:43:13 +0000] "GET /ads.txt HTTP/1.1" 404 2083 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
144.217.135.219 - - [27/May/2026:18:43:13 +0000] "GET /llms.txt HTTP/1.1" 404 2083 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
144.217.135.219 - - [27/May/2026:18:43:14 +0000] "GET /security.txt HTTP/1.1" 404 2083 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
144.217.135.219 - - [27/May/2026:18:43:14 +0000] "GET /.well-known/security.txt HTTP/1.1" 404 2083 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
...
show less
Brute-Force
๐ช๐ธ
Francisco Vallejo
2026-01-21 10:21:58
(4 months ago)
[Wed Jan 21 11:21:51.060658 2026] [core:info] [pid 3945372:tid 132458821424832] [client 144.217.135. ...
show more
[Wed Jan 21 11:21:51.060658 2026] [core:info] [pid 3945372:tid 132458821424832] [client 144.217.135.219:48095] AH00128: File does not exist: /var/www/barluna/ads.txt
[Wed Jan 21 11:21:51.483493 2026] [core:info] [pid 3945372:tid 132458829817536] [client 144.217.135.219:54039] AH00128: File does not exist: /var/www/barluna/llms.txt
[Wed Jan 21 11:21:51.816085 2026] [core:info] [pid 3945372:tid 132459458975424] [client 144.217.135.219:52935] AH00128: File does not exist: /var/www/barluna/humans.txt
[Wed Jan 21 11:21:52.177262 2026] [core:info] [pid 3945372:tid 132458838210240] [client 144.217.135.219:41509] AH00128: File does not exist: /var/www/barluna/security.txt
[Wed Jan 21 11:21:52.520109 2026] [core:info] [pid 3945372:tid 132459450582720] [client 144.217.135.219:60203] AH00128: File does not exist: /var/www/barluna/.well-known/security.txt
...
show less
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2026-01-17 06:13:36
(4 months ago)
(mod_security) mod_security (id:243420) triggered by 144.217.135.219 (crawl-144-217-135-219.dataprov ...
show more
(mod_security) mod_security (id:243420) triggered by 144.217.135.219 (crawl-144-217-135-219.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jan 17 01:13:32.772252 2026] [security2:error] [pid 66646:tid 66748] [client 144.217.135.219:51639] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "REQUEST_HEADERS:Accept-Encoding" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||www.quetzalcoatl2012.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.quetzalcoatl2012.net"] [uri "/quetzalcoatweet"] [unique_id "aWsojG9MRXKGrYfAFBK7XAAAAMo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2025-11-01 22:35:09
(7 months ago)
block ruleset 3D3AFA921A373ECE19B6BA285C2D722163304638
Bad Web Bot
Anonymous
2025-10-16 21:22:00
(7 months ago)
Unauthorized connection attempt
Brute-Force
๐บ๐ธ
lavnet.net
2025-09-24 07:02:05
(8 months ago)
[Wed Sep 24 07:02:03.730183 2025] [authz_core:error] [pid 1181:tid 1236] [client 144.217.135.219:360 ...
show more
[Wed Sep 24 07:02:03.730183 2025] [authz_core:error] [pid 1181:tid 1236] [client 144.217.135.219:36063] AH01630: client denied by server configuration: /var/www/thejunkymonkey.com/web/index.php
[Wed Sep 24 07:02:03.730607 2025] [authz_core:error] [pid 1181:tid 1236] [client 144.217.135.219:36063] AH01630: client denied by server configuration: /var/www/thejunkymonkey.com/web/index.php
[Wed Sep 24 07:02:04.787812 2025] [authz_core:error] [pid 1182:tid 1302] [client 144.217.135.219:33481] AH01630: client denied by server configuration: /var/www/thejunkymonkey.com/web/index.php
...
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2025-09-19 05:26:06
(8 months ago)
(mod_security) mod_security (id:243420) triggered by 144.217.135.219 (crawl-144-217-135-219.dataprov ...
show more
(mod_security) mod_security (id:243420) triggered by 144.217.135.219 (crawl-144-217-135-219.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 19 01:26:02.855154 2025] [security2:error] [pid 6972:tid 6972] [client 144.217.135.219:57717] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "REQUEST_HEADERS:Accept-Encoding" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||www.fitzcosound.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.fitzcosound.com"] [uri "/lrates.html"] [unique_id "aMzpaqy2ycMAK3sEU010JgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
sefinek.net
2025-09-10 10:26:11
(8 months ago)
Triggered Cloudflare WAF (firewallCustom) from CA.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1. ...
show more
Triggered Cloudflare WAF (firewallCustom) from CA.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /
UA: Mozilla/5.0 (Linux; Android 10; SM-G981B) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.162 Mobile Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-09-06 18:39:08
(8 months ago)
(mod_security) mod_security (id:210730) triggered by 144.217.135.219 (crawl-144-217-135-219.dataprov ...
show more
(mod_security) mod_security (id:210730) triggered by 144.217.135.219 (crawl-144-217-135-219.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 06 14:39:03.393543 2025] [security2:error] [pid 27899:tid 27899] [client 144.217.135.219:53025] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.technesa.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.technesa.com"] [uri "/blog_techne/[email protected] "] [unique_id "aLx_x4bghIVV7LYHhI6M4QAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-08-22 01:50:12
(9 months ago)
Excessive crawling/scraping
Hacking
Brute-Force
๐จ๐ญ
backslash
2025-08-03 16:50:20
(10 months ago)
block ruleset 3D3AFA921A373ECE19B6BA285C2D722163304638
Bad Web Bot
Anonymous
2025-07-30 15:04:57
(10 months ago)
(apache-useragents) Failed apache-useragents trigger with match [Mozilla/5.0 (compatible; Dataprovid ...
show more
(apache-useragents) Failed apache-useragents trigger with match [Mozilla/5.0 (compatible; Dataprovider.com)] from 144.217.135.219 (NL/The Netherlands/crawl-144-217-135-219.dataproviderbot.com): 5 in the last 300 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 144.217.135.219 - - [30/Jul/2025:17:04:40 +0200] "GET / HTTP/1.1" 301 491 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
144.217.135.219 - - [30/Jul/2025:17:04:40 +0200] "GET / HTTP/1.1" 301 3496 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
144.217.135.219 - - [30/Jul/2025:17:04:44 +0200] "GET / HTTP/1.1" 200 207738 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
144.217.135.219 - - [30/Jul/2025:17:04:48 +0200] "GET /robots.txt HTTP/1.1" 200 929 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
144.217.135.219 - - [30/Jul/2025:17:04:49 +0200] "GET / HTTP/1.1" 200 205157 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
show less
Port Scan
Anonymous
2025-07-25 04:35:23
(10 months ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
Anonymous
2025-07-17 16:48:11
(10 months ago)
Excessive crawling/scraping
Hacking
Brute-Force