๐ฎ๐น
abuseiphack
2026-09-25 04:20:13
(1 day ago)
Automatic report for brute force attack
Bad Web Bot
๐จ๐ญ
backslash
2026-09-17 19:12:00
(1 week ago)
block ruleset 3D3AFA921A373ECE19B6BA285C2D722163304638
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-01 05:02:41
(3 weeks ago)
(mod_security) mod_security (id:243420) triggered by 149.56.150.248 (crawl-149-56-150-248.dataprovid ...
show more
(mod_security) mod_security (id:243420) triggered by 149.56.150.248 (crawl-149-56-150-248.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 01:02:34.283066 2026] [security2:error] [pid 4865:tid 4865] [client 149.56.150.248:54263] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "REQUEST_HEADERS:Accept-Encoding" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||www.dollybambi.click|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.dollybambi.click"] [uri "/makeup/"] [unique_id "apZcavfGINK6mvt06CvZYAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
tecnicorioja
2026-08-28 22:00:55
(4 weeks ago)
wp-login attack [28/Aug/2026:21:07:09
Brute-Force
Web App Attack
๐บ๐ธ
Charlesiv
2026-08-19 02:19:13
(1 month ago)
Triggered Cloudflare WAF (firewallCustom) from CA.
Action taken: BLOCK
ASN: 16276 (OVH SAS)
Protocol ...
show more
Triggered Cloudflare WAF (firewallCustom) from CA.
Action taken: BLOCK
ASN: 16276 (OVH SAS)
Protocol: HTTP/1.1 (GET method)
Endpoint: /
Timestamp: 2026-08-19T01:19:05Z
Ray ID: a2d553fb3c5f36c1
UA: Mozilla/5.0 (compatible; Dataprovider.com)
show less
Bad Web Bot
๐ซ๐ท
giulio gorobey
2026-08-19 01:04:40
(1 month ago)
[Drupal AbuseIPDB module] Request path is blacklisted. /.well-known/ucp
Web App Attack
๐น๐ท
neron
2026-08-15 23:06:48
(1 month ago)
CrowdSec blocked: http:exploit detected via OPNsense firewall
Hacking
Web App Attack
๐น๐ท
neron
2026-08-01 03:06:26
(1 month ago)
CrowdSec blocked: http:exploit detected via OPNsense firewall
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-23 13:31:32
(2 months ago)
(mod_security) mod_security (id:243420) triggered by 149.56.150.248 (crawl-149-56-150-248.dataprovid ...
show more
(mod_security) mod_security (id:243420) triggered by 149.56.150.248 (crawl-149-56-150-248.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 09:31:26.173596 2026] [security2:error] [pid 2474860:tid 2474860] [client 149.56.150.248:39701] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "REQUEST_HEADERS:Accept-Encoding" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||www.milajarecords.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.milajarecords.com"] [uri "/BIOGRAPHY.html"] [unique_id "amIXrpTyySgs3OCEtHlaVAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ช
vaia.cloud
2026-07-19 18:27:18
(2 months ago)
http:scan
Brute-Force
Web App Attack
๐ฉ๐ช
Viveronese
2026-06-25 11:12:37
(3 months ago)
HTTP vulnerability scanning
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-22 16:36:39
(4 months ago)
(mod_security) mod_security (id:243420) triggered by 149.56.150.248 (crawl-149-56-150-248.dataprovid ...
show more
(mod_security) mod_security (id:243420) triggered by 149.56.150.248 (crawl-149-56-150-248.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 12:36:34.730119 2026] [security2:error] [pid 23415:tid 23415] [client 149.56.150.248:58409] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "REQUEST_HEADERS:Accept-Encoding" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6649"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||www.garagemensministry.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.garagemensministry.org"] [uri "/index.html"] [unique_id "ahCGEt6Qob-0f57cCLsCXQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฐ
sbk97 (https://sayor.net)
2026-04-23 11:15:48
(5 months ago)
HTTP attacks observed: GET / HTTP/1.1 | status=301 || GET / HTTP/2.0 | status=200 || GET /complete_P ...
show more
HTTP attacks observed: GET / HTTP/1.1 | status=301 || GET / HTTP/2.0 | status=200 || GET /complete_POSTrequests.json HTTP/2.0 | status=200 || GET / HTTP/1.1 | status=301 || GET / HTTP/1.1 | status=200 || GET /robots.txt HTTP/1.1 | status=301 || GET /robots.txt HTTP/1.1 | status=200 || OPTIONS / HTTP/1.1 | status=200
show less
Port Scan
Bad Web Bot
๐ต๐ฐ
sbk97 (https://sayor.net)
2026-04-23 11:15:35
(5 months ago)
HTTP attack observed: GET / HTTP/1.1 | status=301 | response_size=226
Port Scan
Anonymous
2026-03-17 20:28:31
(6 months ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH