๐บ๐ธ
TPI-Abuse
2026-08-22 11:24:40
(1 hour ago)
(mod_security) mod_security (id:243420) triggered by 149.56.160.195 (crawl-149-56-160-195.dataprovid ...
show more
(mod_security) mod_security (id:243420) triggered by 149.56.160.195 (crawl-149-56-160-195.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 07:24:31.761984 2026] [security2:error] [pid 11944:tid 11944] [client 149.56.160.195:48377] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "REQUEST_HEADERS:Accept-Encoding" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||www.oceanrich.biz|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.oceanrich.biz"] [uri "/index.htm"] [unique_id "aomG760W1f1asn3TLURaSwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
lavnet.net
2026-08-21 09:34:50
(1 day ago)
149.56.160.195 - - [21/Aug/2026:09:34:49 +0000] "GET /robots.txt HTTP/1.1" 404 2083 "-" "Mozilla/5.0 ...
show more
149.56.160.195 - - [21/Aug/2026:09:34:49 +0000] "GET /robots.txt HTTP/1.1" 404 2083 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.160.195 - - [21/Aug/2026:09:34:49 +0000] "GET /sitemap.xml HTTP/1.1" 404 2083 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.160.195 - - [21/Aug/2026:09:34:49 +0000] "GET /.well-known/ucp HTTP/1.1" 404 2083 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.160.195 - - [21/Aug/2026:09:34:49 +0000] "GET /llms.txt HTTP/1.1" 404 2083 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.160.195 - - [21/Aug/2026:09:34:49 +0000] "GET /security.txt HTTP/1.1" 404 2083 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.160.195 - - [21/Aug/2026:09:34:49 +0000] "GET /.well-known/security.txt HTTP/1.1" 404 2083 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
...
show less
Brute-Force
๐น๐ท
neron
2026-08-15 21:06:48
(6 days ago)
CrowdSec blocked: http:scan detected via OPNsense firewall
Hacking
Web App Attack
๐น๐ท
neron
2026-08-10 12:29:22
(1 week ago)
CrowdSec blocked: http:scan detected via OPNsense firewall
Hacking
Web App Attack
๐บ๐ธ
lavnet.net
2026-07-27 23:40:42
(3 weeks ago)
149.56.160.195 - - [27/Jul/2026:23:40:41 +0000] "GET /sitemap.xml HTTP/1.1" 404 2083 "-" "Mozilla/5. ...
show more
149.56.160.195 - - [27/Jul/2026:23:40:41 +0000] "GET /sitemap.xml HTTP/1.1" 404 2083 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.160.195 - - [27/Jul/2026:23:40:41 +0000] "GET /ads.txt HTTP/1.1" 404 2083 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.160.195 - - [27/Jul/2026:23:40:41 +0000] "GET /security.txt HTTP/1.1" 404 2083 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.160.195 - - [27/Jul/2026:23:40:41 +0000] "GET /.well-known/security.txt HTTP/1.1" 404 2083 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.160.195 - - [27/Jul/2026:23:40:41 +0000] "GET /llms.txt HTTP/1.1" 404 2083 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.160.195 - - [27/Jul/2026:23:40:41 +0000] "GET /humans.txt HTTP/1.1" 404 2083 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
...
show less
Brute-Force
๐ฉ๐ช
filstal.org
2026-06-22 05:41:49
(2 months ago)
Unauthorized web crawling by known aggressive crawler or data harvesting bot detected by Fail2Ban
Bad Web Bot
๐ฌ๐ง
Oakley
2026-04-05 12:46:35
(4 months ago)
(mod_security) mod_security (id:900209) triggered by 149.56.160.195 (CA/Canada/crawl-149-56-160-195. ...
show more
(mod_security) mod_security (id:900209) triggered by 149.56.160.195 (CA/Canada/crawl-149-56-160-195.dataproviderbot.com): 5 in the last 900 secs
show less
Web App Attack
Hacking
๐ซ๐ท
RootOPSOVH
2026-03-28 13:08:29
(4 months ago)
GET /contact | UA: Mozilla/5.0 (compatible; Dataprovider.com)
Web Spam
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-08 01:08:41
(5 months ago)
(mod_security) mod_security (id:210730) triggered by 149.56.160.195 (crawl-149-56-160-195.dataprovid ...
show more
(mod_security) mod_security (id:210730) triggered by 149.56.160.195 (crawl-149-56-160-195.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 07 20:08:36.570431 2026] [security2:error] [pid 22125:tid 22125] [client 149.56.160.195:41995] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.elsmithpest.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.elsmithpest.com"] [uri "/[email protected] "] [unique_id "aazMFAAqEq_eYnTs-k2eaQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-26 23:29:30
(5 months ago)
(mod_security) mod_security (id:243420) triggered by 149.56.160.195 (crawl-149-56-160-195.dataprovid ...
show more
(mod_security) mod_security (id:243420) triggered by 149.56.160.195 (crawl-149-56-160-195.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 26 18:29:23.778228 2026] [security2:error] [pid 12042:tid 12042] [client 149.56.160.195:39411] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "REQUEST_HEADERS:Accept-Encoding" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||www.balirealestateadvertiser.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.balirealestateadvertiser.com"] [uri "/listing/property199.php"] [unique_id "aaDXUz8pxjj4bH9XgRnU6QAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
CryptoYakari
2026-02-19 14:02:54
(6 months ago)
149.56.160.195 - - [19/Feb/2026:17:02:48 +0300] "GET /sitemap.xml HTTP/1.0" 404 3185 "-" "Mozilla/5. ...
show more
149.56.160.195 - - [19/Feb/2026:17:02:48 +0300] "GET /sitemap.xml HTTP/1.0" 404 3185 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.160.195 - - [19/Feb/2026:17:02:51 +0300] "GET /ads.txt HTTP/1.0" 404 3185 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.160.195 - - [19/Feb/2026:17:02:52 +0300] "GET /llms.txt HTTP/1.0" 404 3185 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.160.195 - - [19/Feb/2026:17:02:52 +0300] "GET /humans.txt HTTP/1.0" 404 3185 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.160.195 - - [19/Feb/2026:17:02:52 +0300] "GET /security.txt HTTP/1.0" 404 3185 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
...
show less
Web Spam
Blog Spam
Web App Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-12-15 08:16:26
(8 months ago)
(mod_security) mod_security (id:243420) triggered by 149.56.160.195 (crawl-149-56-160-195.dataprovid ...
show more
(mod_security) mod_security (id:243420) triggered by 149.56.160.195 (crawl-149-56-160-195.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 15 03:16:21.875999 2025] [security2:error] [pid 8203:tid 8203] [client 149.56.160.195:40343] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "REQUEST_HEADERS:Accept-Encoding" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||www.busengakko.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.busengakko.org"] [uri "/seishin-kan.org/contact.html"] [unique_id "aT_D1XYqBFg86n22PqaohgAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
iNetWorker
2025-12-02 03:40:35
(8 months ago)
trolling for resource vulnerabilities
Web App Attack
๐ณ๐ฑ
CryptoYakari
2025-11-22 22:24:31
(8 months ago)
149.56.160.195 - - [23/Nov/2025:01:24:26 +0300] "GET /sitemap.xml HTTP/1.0" 404 3185 "-" "Mozilla/5. ...
show more
149.56.160.195 - - [23/Nov/2025:01:24:26 +0300] "GET /sitemap.xml HTTP/1.0" 404 3185 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.160.195 - - [23/Nov/2025:01:24:29 +0300] "GET /llms.txt HTTP/1.0" 404 3185 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.160.195 - - [23/Nov/2025:01:24:29 +0300] "GET /humans.txt HTTP/1.0" 404 3185 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.160.195 - - [23/Nov/2025:01:24:29 +0300] "GET /ads.txt HTTP/1.0" 404 3185 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.160.195 - - [23/Nov/2025:01:24:30 +0300] "GET /security.txt HTTP/1.0" 404 3185 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
...
show less
Web Spam
Blog Spam
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2025-11-10 02:05:14
(9 months ago)
Too many Status 40X (12)
Brute-Force
Web App Attack