Anonymous
2026-04-28 19:47:15
(1 month ago)
(apache-useragents) Failed apache-useragents trigger with match [Mozilla/5.0 (compatible; Dataprovid ...
show more
(apache-useragents) Failed apache-useragents trigger with match [Mozilla/5.0 (compatible; Dataprovider.com)] from 149.56.150.2 (NL/The Netherlands/crawl-149-56-150-2.dataproviderbot.com): 5 in the last 300 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 149.56.150.2 - - [28/Apr/2026:21:47:00 +0200] "GET / HTTP/1.1" 301 531 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.150.2 - - [28/Apr/2026:21:47:00 +0200] "GET / HTTP/2.0" 301 127 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.150.2 - - [28/Apr/2026:21:47:04 +0200] "GET / HTTP/2.0" 200 202768 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.150.2 - - [28/Apr/2026:21:47:08 +0200] "GET /robots.txt HTTP/2.0" 200 141 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.150.2 - - [28/Apr/2026:21:47:10 +0200] "GET / HTTP/1.1" 200 207735 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
show less
Port Scan
๐ฉ๐ช
JCG
2026-04-20 08:07:00
(1 month ago)
user agent spoofing
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-02-18 05:18:45
(3 months ago)
(mod_security) mod_security (id:243420) triggered by 149.56.150.2 (crawl-149-56-150-2.dataproviderbo ...
show more
(mod_security) mod_security (id:243420) triggered by 149.56.150.2 (crawl-149-56-150-2.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 00:18:41.228332 2026] [security2:error] [pid 6561:tid 6561] [client 149.56.150.2:58249] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "REQUEST_HEADERS:Accept-Encoding" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||www.fiestadj.com.mx|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.fiestadj.com.mx"] [uri "/"] [unique_id "aZVLsV_kfWh9Q76vIp_TPAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Mendip_Defender
2026-01-27 02:51:55
(4 months ago)
149.56.150.2 - - [27/Jan/2026:02:51:53 +0000] "GET /ads.txt HTTP/1.0" 404 4971 "-" "Mozilla/5.0 (com ...
show more
149.56.150.2 - - [27/Jan/2026:02:51:53 +0000] "GET /ads.txt HTTP/1.0" 404 4971 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.150.2 - - [27/Jan/2026:02:51:53 +0000] "GET /llms.txt HTTP/1.0" 404 4971 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.150.2 - - [27/Jan/2026:02:51:53 +0000] "GET /humans.txt HTTP/1.0" 404 4971 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
...
show less
Hacking
Web App Attack
Anonymous
2026-01-18 13:41:52
(4 months ago)
149.56.150.2 - - [18/Jan/2026:14:41:52 +0100] "GET / HTTP/1.1" 301 169 "-" "Mozilla/5.0 (compatible; ...
show more
149.56.150.2 - - [18/Jan/2026:14:41:52 +0100] "GET / HTTP/1.1" 301 169 "-" "Mozilla/5.0 (compatible; )"
show less
Bad Web Bot
Anonymous
2025-12-30 14:10:23
(5 months ago)
(apache-useragents) Failed apache-useragents trigger with match [Mozilla/5.0 (compatible; Dataprovid ...
show more
(apache-useragents) Failed apache-useragents trigger with match [Mozilla/5.0 (compatible; Dataprovider.com)] from 149.56.150.2 (NL/The Netherlands/crawl-149-56-150-2.dataproviderbot.com): 5 in the last 300 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 149.56.150.2 - - [30/Dec/2025:15:10:07 +0100] "GET / HTTP/1.1" 301 535 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.150.2 - - [30/Dec/2025:15:10:07 +0100] "GET / HTTP/1.1" 301 3474 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.150.2 - - [30/Dec/2025:15:10:11 +0100] "GET / HTTP/1.1" 200 415546 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.150.2 - - [30/Dec/2025:15:10:15 +0100] "GET /robots.txt HTTP/1.1" 200 929 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.150.2 - - [30/Dec/2025:15:10:17 +0100] "GET /sitemap.xml HTTP/1.1" 302 918 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2025-12-03 19:30:36
(6 months ago)
(mod_security) mod_security (id:243420) triggered by 149.56.150.2 (crawl-149-56-150-2.dataproviderbo ...
show more
(mod_security) mod_security (id:243420) triggered by 149.56.150.2 (crawl-149-56-150-2.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Dec 03 14:30:31.987814 2025] [security2:error] [pid 8126:tid 8126] [client 149.56.150.2:39593] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "REQUEST_HEADERS:Accept-Encoding" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||www.todi.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.todi.org"] [uri "/privacy_utilizzo_cookie_it.html"] [unique_id "aTCP1-zoJyliVXHPrqyO7gAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
iNetWorker
2025-11-07 14:11:39
(7 months ago)
trolling for resource vulnerabilities
Web App Attack
๐จ๐ญ
backslash
2025-11-01 18:50:16
(7 months ago)
block ruleset 3D3AFA921A373ECE19B6BA285C2D722163304638
Bad Web Bot
๐ต๐ฑ
sefinek.net
2025-10-11 02:05:19
(8 months ago)
Triggered Cloudflare WAF (firewallCustom) from CA.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1. ...
show more
Triggered Cloudflare WAF (firewallCustom) from CA.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /
UA: Mozilla/5.0 (Linux; Android 10; SM-G981B) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.162 Mobile Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฉ๐ช
Kreapptivo
2025-08-30 19:51:57
(9 months ago)
[30/Aug/2025:21:51:55 +0200] Web-Request: "GET /", User-Agent: "Mozilla/5.0 (compatible; Dataprovide ...
show more
[30/Aug/2025:21:51:55 +0200] Web-Request: "GET /", User-Agent: "Mozilla/5.0 (compatible; Dataprovider.com)"
[30/Aug/2025:21:51:55 +0200] Web-Request: "GET /", User-Agent: "Mozilla/5.0 (compatible; Dataprovider.com)"
show less
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2025-08-03 00:15:13
(10 months ago)
block ruleset 3D3AFA921A373ECE19B6BA285C2D722163304638
Bad Web Bot
Anonymous
2025-07-23 19:13:11
(10 months ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐ฎ๐น
Progetto1
2025-07-18 02:52:02
(10 months ago)
Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
Anonymous
2025-07-02 00:32:08
(11 months ago)
Excessive crawling/scraping
Hacking
Brute-Force