๐บ๐ธ
TPI-Abuse
2026-09-23 09:00:26
(1 week ago)
(mod_security) mod_security (id:210730) triggered by 144.217.135.234 (crawl-144-217-135-234.dataprov ...
show more
(mod_security) mod_security (id:210730) triggered by 144.217.135.234 (crawl-144-217-135-234.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 05:00:22.022183 2026] [security2:error] [pid 8275:tid 8275] [client 144.217.135.234:37815] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||www.idodat.com|F|2"] [data ".php.old"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.idodat.com"] [uri "/index.php.OLD"] [unique_id "arOVJiRfPVvvlZcU_IstEQAAACY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-09-18 23:06:10
(2 weeks ago)
Abusive crawler: User-Agent on the known-bad list or claiming a placeholder identity | ua: Mozilla/5 ...
show more
Abusive crawler: User-Agent on the known-bad list or claiming a placeholder identity | ua: Mozilla/5.0 (compatible; Dataprovider.com) | path: / | 2026-09-18 23:06 UTC
show less
Bad Web Bot
๐น๐ท
neron
2026-08-08 04:29:22
(1 month ago)
CrowdSec blocked: http:scan detected via OPNsense firewall
Hacking
Web App Attack
๐น๐ท
neron
2026-07-28 04:19:39
(2 months ago)
CrowdSec blocked: http:scan detected via OPNsense firewall
Hacking
Web App Attack
Anonymous
2026-07-15 08:54:29
(2 months ago)
Backdrop CMS module - malicious activity detected
Bad Web Bot
Web App Attack
๐ฉ๐ช
filstal.org
2026-06-22 04:13:40
(3 months ago)
Unauthorized web crawling by known aggressive crawler or data harvesting bot detected by Fail2Ban
Bad Web Bot
๐ฌ๐ง
Oakley
2026-06-06 10:21:47
(3 months ago)
(antiscrape_rule) Web application abuse detected 144.217.135.234 (CA/Canada/crawl-144-217-135-234.da ...
show more
(antiscrape_rule) Web application abuse detected 144.217.135.234 (CA/Canada/crawl-144-217-135-234.dataproviderbot.com): 5 in the last 900 secs
show less
Hacking
๐ฉ๐ช
Lino Project
2026-04-13 00:21:40
(5 months ago)
144.217.135.234 - - [13/Apr/2026:02:21:38 +0200] "GET /ads.txt HTTP/1.1" 404 39040 "-" "Mozilla/5.0 ...
show more
144.217.135.234 - - [13/Apr/2026:02:21:38 +0200] "GET /ads.txt HTTP/1.1" 404 39040 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Carsten
2026-04-04 06:43:20
(6 months ago)
Bad web bot [Mozilla/5.0 (compatible; Dataprovider.com)]
Bad Web Bot
๐ฉ๐ช
Viveronese
2026-02-23 17:41:53
(7 months ago)
HTTP vulnerability scanning
Web App Attack
๐ฉ๐ช
Carsten
2026-02-16 19:31:27
(7 months ago)
Bad web bot [Mozilla/5.0 (compatible; Dataprovider.com)]
Bad Web Bot
๐จ๐ญ
myguns.ch
2026-01-30 06:20:20
(8 months ago)
Searching for vulnerable scripts: /.well-known/security.txt
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-16 06:30:10
(8 months ago)
(mod_security) mod_security (id:243420) triggered by 144.217.135.234 (crawl-144-217-135-234.dataprov ...
show more
(mod_security) mod_security (id:243420) triggered by 144.217.135.234 (crawl-144-217-135-234.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jan 16 01:30:04.091318 2026] [security2:error] [pid 30030:tid 30030] [client 144.217.135.234:36683] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "REQUEST_HEADERS:Accept-Encoding" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||www.30daysout.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.30daysout.com"] [uri "/links/index.html"] [unique_id "aWna7AzfTTqltwO4MA1EzQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-01-02 21:20:11
(9 months ago)
Fuzzing/Looking for credentials files.
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-26 11:02:30
(9 months ago)
(mod_security) mod_security (id:243420) triggered by 144.217.135.234 (crawl-144-217-135-234.dataprov ...
show more
(mod_security) mod_security (id:243420) triggered by 144.217.135.234 (crawl-144-217-135-234.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 26 06:02:27.194761 2025] [security2:error] [pid 16918:tid 16918] [client 144.217.135.234:42591] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "REQUEST_HEADERS:Accept-Encoding" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6649"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||www.abakada.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.abakada.net"] [uri "/index.htm"] [unique_id "aU5rQ8nwGkyqnCU46nR6UAAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack