๐ฉ๐ช
Viveronese
2026-08-08 06:03:13
(3 weeks ago)
HTTP vulnerability scanning
Web App Attack
๐ฉ๐ช
Viveronese
2026-07-25 01:55:54
(1 month ago)
HTTP vulnerability scanning
Web App Attack
Anonymous
2026-07-08 04:42:46
(1 month ago)
Automated report (2026-07-08T00:42:46-04:00). Scraper detected.
Bad Web Bot
Open Proxy
Anonymous
2026-05-24 15:10:48
(3 months ago)
scanning for potential vulnerable apps (wordpress etc.) and database accesses (GHR). Requested URI: ...
show more
scanning for potential vulnerable apps (wordpress etc.) and database accesses (GHR). Requested URI: /security.txt
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-24 07:02:18
(3 months ago)
(mod_security) mod_security (id:210730) triggered by 149.56.150.160 (crawl-149-56-150-160.dataprovid ...
show more
(mod_security) mod_security (id:210730) triggered by 149.56.150.160 (crawl-149-56-150-160.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 24 03:02:11.095110 2026] [security2:error] [pid 3496:tid 3496] [client 149.56.150.160:58981] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||www.ilikeabe.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.ilikeabe.com"] [uri "/michleencollins.com"] [unique_id "ahKic7SQT5PQSaLo3-TaowAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Viveronese
2026-05-04 18:42:38
(3 months ago)
HTTP vulnerability scanning
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-03 17:21:55
(3 months ago)
(mod_security) mod_security (id:243420) triggered by 149.56.150.160 (crawl-149-56-150-160.dataprovid ...
show more
(mod_security) mod_security (id:243420) triggered by 149.56.150.160 (crawl-149-56-150-160.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 03 13:21:49.293505 2026] [security2:error] [pid 9251:tid 9251] [client 149.56.150.160:49433] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "REQUEST_HEADERS:Accept-Encoding" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||www.allieleejieun.click|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.allieleejieun.click"] [uri "/index.html"] [unique_id "afeELcwNeWEX_I-G0NzRBQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-22 17:04:52
(5 months ago)
(mod_security) mod_security (id:210730) triggered by 149.56.150.160 (crawl-149-56-150-160.dataprovid ...
show more
(mod_security) mod_security (id:210730) triggered by 149.56.150.160 (crawl-149-56-150-160.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 22 13:04:45.282978 2026] [security2:error] [pid 12430:tid 12444] [client 149.56.150.160:44223] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.barstowstationtoo.com|F|2"] [data ".barstow-station.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.barstowstationtoo.com"] [uri "/www.barstow-station.com"] [unique_id "acAhLW6rQF9GvXfT-dKw9wAAAMw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Viveronese
2026-03-21 12:06:29
(5 months ago)
HTTP vulnerability scanning
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-19 13:45:11
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 149.56.150.160 (crawl-149-56-150-160.dataprovid ...
show more
(mod_security) mod_security (id:210730) triggered by 149.56.150.160 (crawl-149-56-150-160.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jan 19 08:45:06.182527 2026] [security2:error] [pid 1557:tid 1557] [client 149.56.150.160:35231] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.technologymoods.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.technologymoods.com"] [uri "/[email protected] "] [unique_id "aW41YgS1FHidPayG_bGGCwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Viveronese
2026-01-14 03:02:20
(7 months ago)
HTTP vulnerability scanning
Web App Attack
๐ฉ๐ช
David Ferneding
2025-12-11 08:30:13
(8 months ago)
Blocked by UFW (TCP on 80)
Source port: 38345
TTL: 54
Packet length: 60
TOS: 0x00
This report (for ...
show more
Blocked by UFW (TCP on 80)
Source port: 38345
TTL: 54
Packet length: 60
TOS: 0x00
This report (for 149.56.150.160) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
Web App Attack
๐ซ๐ท
IRISIO
2025-09-11 15:41:36
(11 months ago)
scans/SQL injection/spam posts : 1 queries
SQL Injection
Web App Attack
๐ฎ๐น
Progetto1
2025-09-06 17:49:02
(11 months ago)
Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐ซ๐ท
conseilgouz
2025-09-02 09:55:41
(11 months ago)
siw-Joomla User : try to access forms...
Hacking