๐บ๐ธ
lavnet.net
2026-09-23 19:41:40
(22 hours ago)
149.56.160.216 - - [23/Sep/2026:19:41:39 +0000] "GET /sitemap.xml HTTP/1.1" 404 2083 "-" "Mozilla/5. ...
show more
149.56.160.216 - - [23/Sep/2026:19:41:39 +0000] "GET /sitemap.xml HTTP/1.1" 404 2083 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.160.216 - - [23/Sep/2026:19:41:39 +0000] "GET /llms.txt HTTP/1.1" 404 2083 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.160.216 - - [23/Sep/2026:19:41:39 +0000] "GET /.well-known/ucp HTTP/1.1" 404 2083 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.160.216 - - [23/Sep/2026:19:41:39 +0000] "GET /security.txt HTTP/1.1" 404 2083 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.160.216 - - [23/Sep/2026:19:41:39 +0000] "GET /.well-known/security.txt HTTP/1.1" 404 2083 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.160.216 - - [23/Sep/2026:19:41:39 +0000] "GET /humans.txt HTTP/1.1" 404 2083 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
...
show less
Brute-Force
๐ฉ๐ช
LRob
2026-09-23 17:23:32
(1 day ago)
This address crawls our sites under a User-Agent that belongs to a known abusive scraper, or under a ...
show more
This address crawls our sites under a User-Agent that belongs to a known abusive scraper, or under a placeholder identity no legitimate software uses. Such crawlers load servers with automated requests nobody asked for and often harvest content or e-mail addresses; blocked. Please check what runs on this address. | ua: Mozilla/5.0 (compatible; Dataprovider.com) | path: / | 2026-09-23 17:23 UTC
show less
Bad Web Bot
๐ฉ๐ช
conseilgouz
2026-09-20 21:22:50
(3 days ago)
ece-88 : Bloc AI bots=>/(Dataprovider)
Hacking
๐ฉ๐ช
filstal.org
2026-09-15 09:30:45
(1 week ago)
Unauthorized web crawling by known aggressive crawler or data harvesting bot detected by Fail2Ban
Bad Web Bot
๐ต๐ฑ
Budyn
2026-09-01 12:01:49
(3 weeks ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: CRITICAL: ModSecurity WAF Exploit ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: CRITICAL: ModSecurity WAF Exploit Block. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: www.definitelynotahoneypot.top | URI: /backup.sql | UA: Mozilla/5.0 (compatible; Dataprovider.com) | BODY: [Empty / GET Request]
show less
Hacking
Web App Attack
๐น๐ท
neron
2026-08-15 23:06:48
(1 month ago)
CrowdSec blocked: http:exploit detected via OPNsense firewall
Hacking
Web App Attack
๐น๐ท
neron
2026-08-10 12:29:21
(1 month ago)
CrowdSec blocked: http:exploit detected via OPNsense firewall
Hacking
Web App Attack
๐ซ๐ท
Hippoline
2026-06-17 13:27:52
(3 months ago)
[Wed Jun 17 15:27:48.690779 2026] [authz_core:error] [pid 17252] [client 149.56.160.216:37371] AH016 ...
show more
[Wed Jun 17 15:27:48.690779 2026] [authz_core:error] [pid 17252] [client 149.56.160.216:37371] AH01630: client denied by server configuration: /var/www/mta-sts.brandenburger.eu/web/index.php
[Wed Jun 17 15:27:48.694710 2026] [authz_core:error] [pid 17252] [client 149.56.160.216:37371] AH01630: client denied by server configuration: /var/www/mta-sts.brandenburger.eu/web/index.php
[Wed Jun 17 15:27:50.049199 2026] [authz_core:error] [pid 23473] [client 149.56.160.216:36233] AH01630: client denied by server configuration: /var/www/mta-sts.brandenburger.eu/web/index.php
[Wed Jun 17 15:27:50.052190 2026] [authz_core:error] [pid 23473] [client 149.56.160.216:36233] AH01630: client denied by server configuration: /var/www/mta-sts.brandenburger.eu/web/index.php
[Wed Jun 17 15:27:51.405729 2026] [authz_core:error] [pid 23508] [client 149.56.160.216:44787] AH01630: client denied by server configuration: /var/www/mta-sts.brandenburger.eu/web/index.php
[Wed Jun 17 15:27:51.407625 2026] [authz_core
...
show less
Brute-Force
Web App Attack
๐ฆ๐บ
crispi
2026-06-15 06:03:34
(3 months ago)
Port scan from 149.56.160.216
Port Scan
๐บ๐ธ
TPI-Abuse
2026-05-19 19:27:51
(4 months ago)
(mod_security) mod_security (id:243420) triggered by 149.56.160.216 (crawl-149-56-160-216.dataprovid ...
show more
(mod_security) mod_security (id:243420) triggered by 149.56.160.216 (crawl-149-56-160-216.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 19 15:27:47.141260 2026] [security2:error] [pid 17960:tid 17960] [client 149.56.160.216:38641] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "REQUEST_HEADERS:Accept-Encoding" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||www.aquascapes.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.aquascapes.net"] [uri "/aboutus.htm"] [unique_id "agy5s97xtdrzCNUliELgOQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
blinx
2026-05-05 02:12:20
(4 months ago)
Suspicious activity detected by Modsecurity
Web Spam
Port Scan
Hacking
Bad Web Bot
Web App Attack
๐ฉ๐ช
Viveronese
2026-03-07 17:30:27
(6 months ago)
HTTP vulnerability scanning
Web App Attack
๐ฉ๐ช
bescared
2026-03-01 00:15:00
(6 months ago)
Malicious activity detected: High number of 429 errors in a short period of time.
Bad Web Bot
Web App Attack
๐ฉ๐ช
Viveronese
2026-02-24 14:05:08
(7 months ago)
HTTP vulnerability scanning
Web App Attack
๐ฆ๐บ
MAGIC
2026-02-04 02:03:29
(7 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot