๐น๐ท
neron
2026-08-15 23:06:48
(2 weeks ago)
CrowdSec blocked: http:exploit detected via OPNsense firewall
Hacking
Web App Attack
๐น๐ท
neron
2026-08-04 12:29:43
(4 weeks ago)
CrowdSec blocked: http:exploit detected via OPNsense firewall
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 21:10:45
(2 months ago)
(mod_security) mod_security (id:243420) triggered by 149.56.150.147 (crawl-149-56-150-147.dataprovid ...
show more
(mod_security) mod_security (id:243420) triggered by 149.56.150.147 (crawl-149-56-150-147.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 17:10:39.197968 2026] [security2:error] [pid 25563:tid 25563] [client 149.56.150.147:46505] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "REQUEST_HEADERS:Accept-Encoding" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||www.cressyvideo.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.cressyvideo.com"] [uri "/contact_us.htm"] [unique_id "ai8Yz5kWJYgSnqx0Uh2YbgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
interbiznw.com
2026-04-07 13:53:48
(4 months ago)
wordpress-fuzzing
Hacking
Brute-Force
Exploited Host
Web App Attack
๐ธ๐ฌ
mypatricks
2026-03-23 15:12:59
(5 months ago)
149.56.150.147 | Port: 12013 | DNS: crawl-149-56-150-147.dataproviderbot.com 2026-03-23T23:12:57+08: ...
show more
149.56.150.147 | Port: 12013 | DNS: crawl-149-56-150-147.dataproviderbot.com 2026-03-23T23:12:57+08:00 America/Toronto | FETCH Sproofing Activity Detetced. | UA: Mozilla/5.0 (compatible; Dataprovider.com) HTTP/1.1 443 GET | URL: / | Ref: - | Country: CA/Canada/-06:00 IP City: Beauharnois 9e0e608c8bfe94e3-YYZ/Toronto, ON, Canada 1 hits/0 secs Robots 0
show less
Brute-Force
Web App Attack
Blog Spam
Web Spam
Exploited Host
๐บ๐ธ
TPI-Abuse
2026-03-17 11:26:53
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 149.56.150.147 (crawl-149-56-150-147.dataprovid ...
show more
(mod_security) mod_security (id:210492) triggered by 149.56.150.147 (crawl-149-56-150-147.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 17 07:26:51.131150 2026] [security2:error] [pid 28865:tid 28865] [client 149.56.150.147:33937] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htaccess" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.archief.org"] [uri "/bak.htaccess"] [unique_id "abk6e7cm6hxIb05pdt3jngAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Mendip_Defender
2026-03-10 12:37:59
(5 months ago)
149.56.150.147 - - [10/Mar/2026:12:37:54 +0000] "GET /ads.txt HTTP/1.0" 404 82612 "-" "Mozilla/5.0 ( ...
show more
149.56.150.147 - - [10/Mar/2026:12:37:54 +0000] "GET /ads.txt HTTP/1.0" 404 82612 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.150.147 - - [10/Mar/2026:12:37:55 +0000] "GET /security.txt HTTP/1.0" 404 82617 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.150.147 - - [10/Mar/2026:12:37:56 +0000] "GET /.well-known/security.txt HTTP/1.0" 404 82652 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
...
show less
Hacking
Web App Attack
๐จ๐ฟ
huginet
2026-02-28 10:22:45
(6 months ago)
149.56.150.147 - - [28/Feb/2026:11:22:42 +0100] "GET / HTTP/1.1" 403 32175 "-" "Mozilla/5.0 (compati ...
show more
149.56.150.147 - - [28/Feb/2026:11:22:42 +0100] "GET / HTTP/1.1" 403 32175 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.150.147 - - [28/Feb/2026:11:22:44 +0100] "GET / HTTP/1.1" 403 32175 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
...
show less
Web Spam
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-21 19:48:08
(9 months ago)
(mod_security) mod_security (id:243420) triggered by 149.56.150.147 (crawl-149-56-150-147.dataprovid ...
show more
(mod_security) mod_security (id:243420) triggered by 149.56.150.147 (crawl-149-56-150-147.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Nov 21 14:48:04.520630 2025] [security2:error] [pid 32239:tid 32239] [client 149.56.150.147:49847] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "REQUEST_HEADERS:Accept-Encoding" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||www.fiestadj.com.mx|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.fiestadj.com.mx"] [uri "/"] [unique_id "aSDB9Koa2sxue4GUhev2HwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Ocean Ascents
2025-10-27 16:14:16
(10 months ago)
Probe for vulnerabilities. Path attempted: /security
Web App Attack
๐ฉ๐ช
SCHAPPY
2025-10-23 01:21:20
(10 months ago)
Bad bot identified by user agent
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-10-13 19:02:53
(10 months ago)
(mod_security) mod_security (id:210730) triggered by 149.56.150.147 (crawl-149-56-150-147.dataprovid ...
show more
(mod_security) mod_security (id:210730) triggered by 149.56.150.147 (crawl-149-56-150-147.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 13 15:02:47.469970 2025] [security2:error] [pid 14796:tid 14796] [client 149.56.150.147:32947] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.borzoi-pedigree.info|F|2"] [data ".webped.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.borzoi-pedigree.info"] [uri "/www.webped.com"] [unique_id "aO1M10sInSfhZ6lJ2YikNAAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฟ
huginet
2025-09-12 07:40:35
(11 months ago)
149.56.150.147 - - [12/Sep/2025:09:40:31 +0200] "GET /wp-sitemap.xml HTTP/1.1" 404 45299 "https://ww ...
show more
149.56.150.147 - - [12/Sep/2025:09:40:31 +0200] "GET /wp-sitemap.xml HTTP/1.1" 404 45299 "https://www.huginet.cz/sitemap.xml" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.150.147 - - [12/Sep/2025:09:40:33 +0200] "GET /llms.txt HTTP/1.1" 404 45299 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
...
show less
DDoS Attack
FTP Brute-Force
Ping of Death
Phishing
Web Spam
Blog Spam
Spoofing
Brute-Force
Web App Attack
SSH
๐จ๐ญ
backslash
2025-08-03 01:35:10
(1 year ago)
block ruleset 3D3AFA921A373ECE19B6BA285C2D722163304638
Bad Web Bot
Anonymous
2025-07-25 06:33:42
(1 year ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH