๐ช๐ธ
librebit
2026-07-06 04:18:57
(2 weeks ago)
Brute force
Brute-Force
๐ธ๐ช
teskedsgumman.se
2026-06-22 07:03:00
(1 month ago)
content stealer
Bad Web Bot
Hacking
๐ช๐ธ
librebit
2026-06-16 06:33:16
(1 month ago)
Brute force
Brute-Force
๐บ๐ธ
SodaAudit.app
2026-06-01 14:47:08
(1 month ago)
[sodaaudit.app] Web app attack. Timestamp: 2026-06-01T09:30:44.000Z. 4 probe events, 4 distinct path ...
show more
[sodaaudit.app] Web app attack. Timestamp: 2026-06-01T09:30:44.000Z. 4 probe events, 4 distinct path(s). Paths (payload): /uploads/old, /temp/backup, /api/v0/test, /trap-bot
show less
Web App Attack
๐ฉ๐ช
Skyrider
2026-05-21 16:10:06
(2 months ago)
149.56.150.238 - - [21/May/2026:18:10:04 +0200] "GET /ads.txt HTTP/2.0" 404 113 "-" "Mozilla/5.0 (co ...
show more
149.56.150.238 - - [21/May/2026:18:10:04 +0200] "GET /ads.txt HTTP/2.0" 404 113 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.150.238 - - [21/May/2026:18:10:04 +0200] "GET /llms.txt HTTP/2.0" 404 113 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.150.238 - - [21/May/2026:18:10:04 +0200] "GET /security.txt HTTP/2.0" 404 113 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.150.238 - - [21/May/2026:18:10:05 +0200] "GET /.well-known/security.txt HTTP/2.0" 404 113 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.150.238 - - [21/May/2026:18:10:05 +0200] "GET /humans.txt HTTP/2.0" 404 113 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
YF
2026-05-13 11:10:14
(2 months ago)
WordPress directory enumeration
Web App Attack
๐บ๐ธ
chronos
2026-05-12 03:18:28
(2 months ago)
[AUTORAVALT][[12/05/2026 - 00:18:28 -03:00 UTC]
Attack from [OVH Hosting, Inc.]
[149.56.150.238][cra ...
show more
[AUTORAVALT][[12/05/2026 - 00:18:28 -03:00 UTC]
Attack from [OVH Hosting, Inc.]
[149.56.150.238][crawl-149-56-150-238.dataproviderbot.com]
Action: BLocKed
Hacking... Unauthorized attempts to access the server.
Web App Attack -> Attempts to probe for or exploit installed web applications such as a CMS like WordPress/Drupal, e-commerce solutions, forum software]
...
show less
Hacking
Web App Attack
๐ต๐ฑ
sefinek.net
2026-05-10 08:08:11
(2 months ago)
Triggered Cloudflare WAF (firewallCustom) from CA.
Action: MANAGED_CHALLENGE | Protocol: HTTP/2 (GET ...
show more
Triggered Cloudflare WAF (firewallCustom) from CA.
Action: MANAGED_CHALLENGE | Protocol: HTTP/2 (GET) | Endpoint: / | UA: Mozilla/5.0 (Linux; Android 10; SM-G981B) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/80.0.3987.162 Mobile Safari/537.36 โข Generated by: github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ช๐ธ
librebit
2026-04-05 10:49:49
(3 months ago)
Brute force
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-03-23 08:35:41
(4 months ago)
(mod_security) mod_security (id:243420) triggered by 149.56.150.238 (crawl-149-56-150-238.dataprovid ...
show more
(mod_security) mod_security (id:243420) triggered by 149.56.150.238 (crawl-149-56-150-238.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 23 04:35:36.528392 2026] [security2:error] [pid 450:tid 450] [client 149.56.150.238:55225] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "REQUEST_HEADERS:Accept-Encoding" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6649"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||www.garagemensministry.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.garagemensministry.org"] [uri "/index.html"] [unique_id "acD7WIy2LdbcnT6IuDHgnQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
sverson
2026-03-13 13:55:31
(4 months ago)
Abusive use detected / Mutliple unauthorized attempts to access web resources
Hacking
Web App Attack
Anonymous
2026-03-08 17:37:03
(4 months ago)
[Sun Mar 08 18:37:00.071554 2026] [access_compat:error] [pid 1893642:tid 1893642] [client 149.56.150 ...
show more
[Sun Mar 08 18:37:00.071554 2026] [access_compat:error] [pid 1893642:tid 1893642] [client 149.56.150.238:0] AH01797: client denied by server configuration: /var/www/wordpress/loretlargent.info/ads.txt
[Sun Mar 08 18:37:00.449363 2026] [access_compat:error] [pid 1891362:tid 1891362] [client 149.56.150.238:0] AH01797: client denied by server configuration: /var/www/wordpress/loretlargent.info/security.txt
[Sun Mar 08 18:37:00.595932 2026] [access_compat:error] [pid 1893642:tid 1893642] [client 149.56.150.238:0] AH01797: client denied by server configuration: /var/www/wordpress/loretlargent.info/.well-known/security.txt
[Sun Mar 08 18:37:00.739598 2026] [access_compat:error] [pid 1893642:tid 1893642] [client 149.56.150.238:0] AH01797: client denied by server configuration: /var/www/wordpress/loretlargent.info/llms.txt
[Sun Mar 08 18:37:00.883928 2026] [access_compat:error] [pid 1893642:tid 1893642] [client 149.56.150.238:0] AH01797: client denied by server configuration: /var/www/wordpres
...
show less
Web Spam
Web App Attack
๐ฌ๐ง
gurnip
2025-12-13 18:16:43
(7 months ago)
Vulnerability probe of page /.well-known/security.txt, not found on server.
Brute-Force
Web App Attack
๐บ๐ธ
bazter.pro
2025-12-12 14:31:30
(7 months ago)
Auto-Ban [2025-12-08T03:48:18.309200]: Suspicious Datacenter (B.V., Dataprovider); DC: B.V., Datapro ...
show more
Auto-Ban [2025-12-08T03:48:18.309200]: Suspicious Datacenter (B.V., Dataprovider); DC: B.V., Dataprovider [Paths: 12]
show less
Web App Attack
๐บ๐ธ
bazter.pro
2025-12-08 01:48:18
(7 months ago)
Suspicious Datacenter (B.V., Dataprovider); DC: B.V., Dataprovider [Paths: 12]
Web App Attack