Anonymous
2026-09-08 03:18:52
(2 days ago)
[Tue Sep 08 05:18:51.187084 2026] [access_compat:error] [pid 174081:tid 174081] [client 149.56.150.6 ...
show more
[Tue Sep 08 05:18:51.187084 2026] [access_compat:error] [pid 174081:tid 174081] [client 149.56.150.60:0] AH01797: client denied by server configuration: /var/www/wordpress/loretlargent.info/llms.txt
[Tue Sep 08 05:18:51.302470 2026] [access_compat:error] [pid 174081:tid 174081] [client 149.56.150.60:0] AH01797: client denied by server configuration: /var/www/wordpress/loretlargent.info/security.txt
[Tue Sep 08 05:18:51.417696 2026] [access_compat:error] [pid 174081:tid 174081] [client 149.56.150.60:0] AH01797: client denied by server configuration: /var/www/wordpress/loretlargent.info/.well-known/security.txt
[Tue Sep 08 05:18:51.532761 2026] [access_compat:error] [pid 174081:tid 174081] [client 149.56.150.60:0] AH01797: client denied by server configuration: /var/www/wordpress/loretlargent.info/humans.txt
[Tue Sep 08 05:18:51.646950 2026] [access_compat:error] [pid 174081:tid 174081] [client 149.56.150.60:0] AH01797: client denied by server configuration: /var/www/wordpress/loretlarge
...
show less
Web Spam
Web App Attack
🇬🇧
kie
2026-08-31 12:10:01
(1 week ago)
31-08-2026:12:09:13UTC [Nginx Web Server] Suspicious web request: path:/.well-known/ (2 request(s)).
Bad Web Bot
Web App Attack
🇪🇸
librebit
2026-08-27 14:01:37
(2 weeks ago)
Brute force
Brute-Force
🇪🇸
librebit
2026-08-15 14:42:58
(3 weeks ago)
Brute force
Brute-Force
🇺🇸
TIScore
2026-08-13 09:58:09
(4 weeks ago)
Automated web attack / probing. Signals: Unexpected path; Admin-panel scan. Last path: /ads.txt
Web App Attack
🇩🇪
iNetWorker
2026-08-12 21:22:28
(4 weeks ago)
trolling for resource vulnerabilities
Web App Attack
🇪🇸
librebit
2026-08-02 13:04:08
(1 month ago)
Brute force
Brute-Force
🇺🇸
TPI-Abuse
2026-07-29 01:08:00
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 149.56.150.60 (crawl-149-56-150-60.dataprovider ...
show more
(mod_security) mod_security (id:210730) triggered by 149.56.150.60 (crawl-149-56-150-60.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 28 21:07:56.577845 2026] [security2:error] [pid 1825911:tid 1825911] [client 149.56.150.60:34627] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.keystroke.info|F|2"] [data ".php.backup"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.keystroke.info"] [uri "/LocalSettings.php.backup"] [unique_id "amlSbDg2E7ZB-NsY9c5TwQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
MarkGGN
2026-07-06 17:41:48
(2 months ago)
Web attack. 149.56.150.60 - - [06/Jul/2026:19:41:47 +0200] "GET /security.txt HTTP/2.0" 404 49 "-" " ...
show more
Web attack. 149.56.150.60 - - [06/Jul/2026:19:41:47 +0200] "GET /security.txt HTTP/2.0" 404 49 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.150.60 - - [06/Jul/2026:19:41:47 +0200] "GET /.well-known/security.txt HTTP/2.0" 404 146 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
show less
Web App Attack
🇪🇸
librebit
2026-05-29 00:42:02
(3 months ago)
Brute force
Brute-Force
🇺🇸
TPI-Abuse
2026-05-21 14:03:27
(3 months ago)
(mod_security) mod_security (id:210730) triggered by 149.56.150.60 (crawl-149-56-150-60.dataprovider ...
show more
(mod_security) mod_security (id:210730) triggered by 149.56.150.60 (crawl-149-56-150-60.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 21 10:03:21.024073 2026] [security2:error] [pid 30027:tid 30027] [client 149.56.150.60:41791] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.chicagowca.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.chicagowca.com"] [uri "/[email protected] "] [unique_id "ag8QqYt1yA8TCygfaIKOzwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
Oakley
2026-05-05 05:38:55
(4 months ago)
(mod_security) mod_security (id:900209) triggered by 149.56.150.60 (CA/Canada/crawl-149-56-150-60.da ...
show more
(mod_security) mod_security (id:900209) triggered by 149.56.150.60 (CA/Canada/crawl-149-56-150-60.dataproviderbot.com): 5 in the last 900 secs
show less
Web App Attack
Hacking
🇺🇸
apislytics
2026-04-30 05:32:41
(4 months ago)
Automatic hard ban after repeated rate-limit abuse
Brute-Force
🇷🇺
OK
2026-04-23 01:10:04
(4 months ago)
HTTP/HTTPS
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-04-18 09:39:57
(4 months ago)
(mod_security) mod_security (id:243420) triggered by 149.56.150.60 (crawl-149-56-150-60.dataprovider ...
show more
(mod_security) mod_security (id:243420) triggered by 149.56.150.60 (crawl-149-56-150-60.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 18 05:39:50.119531 2026] [security2:error] [pid 1515276:tid 1515276] [client 149.56.150.60:45445] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "REQUEST_HEADERS:Accept-Encoding" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||www.busengakko.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.busengakko.org"] [uri "/seishin-kan.org/contact.html"] [unique_id "aeNRZg7RPrUH2BRWa0impQAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack