|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210730) triggered by 149.56.150.5 (crawl-149-56-150-5.dataproviderbo ...
show more
(mod_security) mod_security (id:210730) triggered by 149.56.150.5 (crawl-149-56-150-5.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 27 05:45:18.659541 2026] [security2:error] [pid 17684:tid 17684] [client 149.56.150.5:45179] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.techspertnet.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.techspertnet.com"] [uri "/[email protected]"] [unique_id "aha9LuOGm4ETIbHt0NhCHwAAAGI"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
9LEVEL.com.br
|
|
Blocked by Fail2ban for traefik-404 abuse
|
Web App Attack
|
|
|
๐ช๐ธ
librebit
|
|
Brute force
|
Brute-Force
|
|
|
Anonymous
|
|
149.56.150.5 - - [06/Apr/2026:13:29:39 +0000] "GET /robots.txt HTTP/1.1" 404 134 "-" "Mozilla/5.0 (c ...
show more
149.56.150.5 - - [06/Apr/2026:13:29:39 +0000] "GET /robots.txt HTTP/1.1" 404 134 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.150.5 - - [06/Apr/2026:13:29:40 +0000] "OPTIONS / HTTP/1.1" 405 166 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
...
show less
|
Web App Attack
|
|
|
๐ฉ๐ช
MarkGGN
|
|
Webexploits. 149.56.150.5 - - [09/Mar/2026:21:26:59 +0100] "GET /security.txt HTTP/1.1" 404 0 "-" "M ...
show more
Webexploits. 149.56.150.5 - - [09/Mar/2026:21:26:59 +0100] "GET /security.txt HTTP/1.1" 404 0 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.150.5 - - [09/Mar/2026:21:26:59 +0100] "GET /.well-known/security.txt HTTP/1.1" 404 0 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ฉ๐ช
kranem
|
|
Triggered Cloudflare WAF from CA.
Action taken: BLOCK
ASN: 16276 (OVH)
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF from CA.
Action taken: BLOCK
ASN: 16276 (OVH)
Protocol: HTTP/1.1 (GET method)
Endpoint: /
Timestamp: 2026-01-18T17:08:58Z
User-Agent: Mozilla/5.0 (compatible; Dataprovider.com)
show less
|
Bad Web Bot
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:243420) triggered by 149.56.150.5 (crawl-149-56-150-5.dataproviderbo ...
show more
(mod_security) mod_security (id:243420) triggered by 149.56.150.5 (crawl-149-56-150-5.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jan 11 05:31:57.939935 2026] [security2:error] [pid 29373:tid 29373] [client 149.56.150.5:48159] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "REQUEST_HEADERS:Accept-Encoding" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||www.happyjackmc.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.happyjackmc.com"] [uri "/index.html"] [unique_id "aWN8HT2My-MCILWZvmGcawAAAA0"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
Anonymous
|
|
(apache-useragents) Failed apache-useragents trigger with match [Mozilla/5.0 (compatible; Dataprovid ...
show more
(apache-useragents) Failed apache-useragents trigger with match [Mozilla/5.0 (compatible; Dataprovider.com)] from 149.56.150.5 (NL/The Netherlands/crawl-149-56-150-5.dataproviderbot.com): 5 in the last 300 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 149.56.150.5 - - [02/Jan/2026:14:41:13 +0100] "GET / HTTP/1.1" 301 346 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.150.5 - - [02/Jan/2026:14:41:17 +0100] "GET / HTTP/1.1" 200 194390 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.150.5 - - [02/Jan/2026:14:41:21 +0100] "GET /robots.txt HTTP/1.1" 200 929 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.150.5 - - [02/Jan/2026:14:41:22 +0100] "GET / HTTP/1.1" 200 191832 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.150.5 - - [02/Jan/2026:14:41:26 +0100] "GET /sitemap.xml HTTP/1.1" 302 918 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
show less
|
Port Scan
|
|
|
Anonymous
|
|
Excessive crawling/scraping
|
Hacking
Brute-Force
|
|
|
Anonymous
|
|
Excessive crawling/scraping
|
Hacking
Brute-Force
|
|
|
๐จ๐ญ
backslash
|
|
|
Bad Web Bot
|
|
|
๐ฉ๐ช
SCHAPPY
|
|
Brute-force attack to identify web exploits
|
Brute-Force
Web App Attack
|
|
|
Anonymous
|
|
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
|
Brute-Force
SSH
|
|
|
Anonymous
|
|
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
|
Brute-Force
SSH
|
|
|
Anonymous
|
|
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
|
Brute-Force
SSH
|
|