Anonymous
2026-06-23 21:16:24
(5 days ago)
149.56.160.213 - - [23/Jun/2026:23:16:23 +0200] "GET / HTTP/1.1" 301 169 "-" "Mozilla/5.0 (compatibl ...
show more
149.56.160.213 - - [23/Jun/2026:23:16:23 +0200] "GET / HTTP/1.1" 301 169 "-" "Mozilla/5.0 (compatible; )"
show less
Bad Web Bot
๐ช๐ธ
librebit
2026-06-20 03:26:31
(1 week ago)
Brute force
Brute-Force
๐จ๐ฑ
n33
2026-06-05 04:21:00
(3 weeks ago)
Attack detected detected by fail2ban. Service: nginx-ghost-upstream. Banned after 3 failed attempts.
Hacking
Web App Attack
๐ฉ๐ช
Viveronese
2026-06-03 09:31:22
(3 weeks ago)
HTTP vulnerability scanning
Web App Attack
๐ช๐ธ
librebit
2026-04-29 09:51:31
(2 months ago)
Brute force
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-03-27 18:15:11
(3 months ago)
(mod_security) mod_security (id:243420) triggered by 149.56.160.213 (crawl-149-56-160-213.dataprovid ...
show more
(mod_security) mod_security (id:243420) triggered by 149.56.160.213 (crawl-149-56-160-213.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 27 14:15:06.065937 2026] [security2:error] [pid 4818:tid 4818] [client 149.56.160.213:40835] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "REQUEST_HEADERS:Accept-Encoding" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||www.sangalgano.info|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.sangalgano.info"] [uri "/privacy_utilizzo_cookie_it.html"] [unique_id "acbJKm2ZI5lrC2xZ0dP-hAAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
Shaik Sai Meera
2026-03-23 12:05:12
(3 months ago)
IM360 WAF: SQL Dorks collection for SQL Injection
FTP Brute-Force
Port Scan
SSH
Anonymous
2026-03-16 20:27:48
(3 months ago)
Backdrop CMS module - malicious activity detected
Bad Web Bot
Web App Attack
๐ฉ๐ช
conseilgouz
2026-01-12 19:06:55
(5 months ago)
ece-88 : Bloc AI bots=>/(Dataprovider)
Hacking
๐ฉ๐ช
conseilgouz
2026-01-02 20:10:21
(5 months ago)
sle-88 : Bloc AI bots=>/(Dataprovider)
Hacking
Anonymous
2025-12-01 14:24:56
(6 months ago)
(apache-useragents) Failed apache-useragents trigger with match [Mozilla/5.0 (compatible; Dataprovid ...
show more
(apache-useragents) Failed apache-useragents trigger with match [Mozilla/5.0 (compatible; Dataprovider.com)] from 149.56.160.213 (NL/The Netherlands/crawl-149-56-160-213.dataproviderbot.com): 5 in the last 300 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 149.56.160.213 - - [01/Dec/2025:15:24:37 +0100] "GET / HTTP/1.1" 301 479 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.160.213 - - [01/Dec/2025:15:24:37 +0100] "GET / HTTP/1.1" 301 3442 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.160.213 - - [01/Dec/2025:15:24:42 +0100] "GET / HTTP/1.1" 200 275315 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.160.213 - - [01/Dec/2025:15:24:47 +0100] "GET /robots.txt HTTP/1.1" 200 929 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.160.213 - - [01/Dec/2025:15:24:48 +0100] "GET /sitemap.xml HTTP/1.1" 302 910 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
show less
Port Scan
Anonymous
2025-10-05 05:28:00
(8 months ago)
Unauthorized connection attempt
Brute-Force
๐บ๐ธ
TPI-Abuse
2025-09-16 05:29:50
(9 months ago)
(mod_security) mod_security (id:243420) triggered by 149.56.160.213 (crawl-149-56-160-213.dataprovid ...
show more
(mod_security) mod_security (id:243420) triggered by 149.56.160.213 (crawl-149-56-160-213.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 16 01:29:44.844199 2025] [security2:error] [pid 4763:tid 4763] [client 149.56.160.213:39949] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "REQUEST_HEADERS:Accept-Encoding" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||www.cressyvideo.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.cressyvideo.com"] [uri "/contact_us.htm"] [unique_id "aMj1yAYom_odGb04pHClCwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
ParaBug
2025-08-24 14:59:22
(10 months ago)
149.56.160.213 - - [24/Aug/2025:16:59:21 +0200] "OPTIONS / HTTP/1.1" 200 3831 "-" "Mozilla/5.0 (comp ...
show more
149.56.160.213 - - [24/Aug/2025:16:59:21 +0200] "OPTIONS / HTTP/1.1" 200 3831 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
...
show less
Phishing
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-08-18 03:13:20
(10 months ago)
(mod_security) mod_security (id:243420) triggered by 149.56.160.213 (crawl-149-56-160-213.dataprovid ...
show more
(mod_security) mod_security (id:243420) triggered by 149.56.160.213 (crawl-149-56-160-213.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 17 23:13:13.726606 2025] [security2:error] [pid 15252:tid 15268] [client 149.56.160.213:47173] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "REQUEST_HEADERS:Accept-Encoding" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||www.crowns.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.crowns.org"] [uri "/Hope_Chest"] [unique_id "aKKaSTX7h1PkgiqyEuiEjQAAAE4"]
show less
Brute-Force
Bad Web Bot
Web App Attack