๐บ๐ธ
avgsmoe
2026-09-19 13:00:46
(2 days ago)
CROWDSEC offender. Observed 1 times.
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-20 15:59:05
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 149.56.150.6 (crawl-149-56-150-6.dataproviderbo ...
show more
(mod_security) mod_security (id:210730) triggered by 149.56.150.6 (crawl-149-56-150-6.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 20 11:58:58.499326 2026] [security2:error] [pid 9769:tid 9769] [client 149.56.150.6:45871] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.brookspowell.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.brookspowell.com"] [uri "/mail to: [email protected] "] [unique_id "aockQjIIwIbL0JtBvTsYcAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-19 03:31:00
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 149.56.150.6 (crawl-149-56-150-6.dataproviderbo ...
show more
(mod_security) mod_security (id:210730) triggered by 149.56.150.6 (crawl-149-56-150-6.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 23:30:54.472820 2026] [security2:error] [pid 20546:tid 20546] [client 149.56.150.6:34999] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.citystreetsalon.com|F|2"] [data ".fionnardesign.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.citystreetsalon.com"] [uri "/www.fionnardesign.com"] [unique_id "aoUjbmiW_G9hVsatkHb8OAAAAEA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐น๐ท
neron
2026-08-15 23:06:48
(1 month ago)
CrowdSec blocked: http:exploit detected via OPNsense firewall
Hacking
Web App Attack
๐ฉ๐ช
Viveronese
2026-08-10 18:37:59
(1 month ago)
HTTP vulnerability scanning
Web App Attack
๐น๐ท
neron
2026-08-05 18:29:43
(1 month ago)
CrowdSec blocked: http:exploit detected via OPNsense firewall
Hacking
Web App Attack
๐น๐ท
neron
2026-07-31 11:06:18
(1 month ago)
CrowdSec blocked: http:exploit detected via OPNsense firewall
Hacking
Web App Attack
๐น๐ท
neron
2026-07-27 18:19:38
(1 month ago)
CrowdSec blocked: http:exploit detected via OPNsense firewall
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-07 22:25:43
(2 months ago)
(mod_security) mod_security (id:243420) triggered by 149.56.150.6 (crawl-149-56-150-6.dataproviderbo ...
show more
(mod_security) mod_security (id:243420) triggered by 149.56.150.6 (crawl-149-56-150-6.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 07 18:25:36.062309 2026] [security2:error] [pid 21266:tid 21266] [client 149.56.150.6:40967] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "REQUEST_HEADERS:Accept-Encoding" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||www.firstlovedevotions.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.firstlovedevotions.com"] [uri "/Patrick_McIntyre.html"] [unique_id "ak184G8pYcVasn6yepp_RgAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
conseilgouz
2026-07-02 08:35:39
(2 months ago)
dow-Joomla User : try to access forms...
Hacking
๐ท๐ธ
Smel
2026-05-18 11:22:03
(4 months ago)
HTTP/80/443/8080 Unauthorized Probe, Hack -
Hacking
Web App Attack
๐ฌ๐ง
Mendip_Defender
2026-02-03 02:23:56
(7 months ago)
149.56.150.6 - - [03/Feb/2026:02:23:43 +0000] "GET /robots.txt HTTP/1.0" 404 4862 "-" "Mozilla/5.0 ( ...
show more
149.56.150.6 - - [03/Feb/2026:02:23:43 +0000] "GET /robots.txt HTTP/1.0" 404 4862 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.150.6 - - [03/Feb/2026:02:23:52 +0000] "GET /ads.txt HTTP/1.0" 404 4862 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.150.6 - - [03/Feb/2026:02:23:52 +0000] "GET /llms.txt HTTP/1.0" 404 4862 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
...
show less
Hacking
Web App Attack
๐ท๐บ
OK
2026-01-23 21:07:03
(7 months ago)
HTTP/HTTPS
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-10 00:15:28
(9 months ago)
(mod_security) mod_security (id:243420) triggered by 149.56.150.6 (crawl-149-56-150-6.dataproviderbo ...
show more
(mod_security) mod_security (id:243420) triggered by 149.56.150.6 (crawl-149-56-150-6.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 09 19:15:22.756605 2025] [security2:error] [pid 31945:tid 31945] [client 149.56.150.6:60107] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "REQUEST_HEADERS:Accept-Encoding" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||www.monteriggioni.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.monteriggioni.net"] [uri "/privacy_utilizzo_cookie_it.html"] [unique_id "aTi7moCxIh5v-8xjPD9ncgAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-16 15:21:04
(11 months ago)
(mod_security) mod_security (id:243420) triggered by 149.56.150.6 (crawl-149-56-150-6.dataproviderbo ...
show more
(mod_security) mod_security (id:243420) triggered by 149.56.150.6 (crawl-149-56-150-6.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 16 11:21:01.320355 2025] [security2:error] [pid 5295:tid 5295] [client 149.56.150.6:56467] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "REQUEST_HEADERS:Accept-Encoding" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||www.billdavidow.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.billdavidow.com"] [uri "/previous.html"] [unique_id "aPENXXyv2YdeeiNkRzYRuwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack