๐น๐ท
neron
2026-08-15 23:06:48
(1 week ago)
CrowdSec blocked: http:exploit detected via OPNsense firewall
Hacking
Web App Attack
๐น๐ท
neron
2026-08-10 22:29:21
(1 week ago)
CrowdSec blocked: http:exploit detected via OPNsense firewall
Hacking
Web App Attack
๐ฆ๐ฟ
scientra
2026-08-09 09:38:48
(2 weeks ago)
High-speed endpoint enumeration โ /humans.txt | evidence: 5 unrelated unknown paths in 20s: /.well-k ...
show more
High-speed endpoint enumeration โ /humans.txt | evidence: 5 unrelated unknown paths in 20s: /.well-known/security.txt, /ads.txt, /humans.txt, /llms.txt, /security.txt [detected by Bitwall WAF]
show less
Port Scan
Web App Attack
๐น๐ท
neron
2026-08-04 16:29:42
(2 weeks ago)
CrowdSec blocked: http:exploit detected via OPNsense firewall
Hacking
Web App Attack
๐น๐ท
neron
2026-07-31 23:06:19
(3 weeks ago)
CrowdSec blocked: http:exploit detected via OPNsense firewall
Hacking
Web App Attack
๐น๐ท
neron
2026-07-28 18:19:38
(3 weeks ago)
CrowdSec blocked: http:exploit detected via OPNsense firewall
Hacking
Web App Attack
๐ฉ๐ช
filstal.org
2026-06-17 11:35:09
(2 months ago)
Unauthorized web crawling by known aggressive crawler or data harvesting bot detected by Fail2Ban
Bad Web Bot
๐บ๐ธ
omc
2026-06-05 15:48:19
(2 months ago)
AH01797: Unauthorized file
Bad Web Bot
๐ฌ๐ง
Mendip_Defender
2026-05-06 08:22:53
(3 months ago)
149.56.160.230 - - [06/May/2026:09:22:51 +0100] "GET /ads.txt HTTP/1.0" 404 49043 "-" "Mozilla/5.0 ( ...
show more
149.56.160.230 - - [06/May/2026:09:22:51 +0100] "GET /ads.txt HTTP/1.0" 404 49043 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.160.230 - - [06/May/2026:09:22:51 +0100] "GET /llms.txt HTTP/1.0" 404 49021 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.160.230 - - [06/May/2026:09:22:51 +0100] "GET /humans.txt HTTP/1.0" 404 49021 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
...
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-20 08:19:48
(4 months ago)
(mod_security) mod_security (id:243420) triggered by 149.56.160.230 (crawl-149-56-160-230.dataprovid ...
show more
(mod_security) mod_security (id:243420) triggered by 149.56.160.230 (crawl-149-56-160-230.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 20 04:19:42.542530 2026] [security2:error] [pid 3046258:tid 3046258] [client 149.56.160.230:59107] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "REQUEST_HEADERS:Accept-Encoding" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||musicshowcase.us|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "musicshowcase.us"] [uri "/bandolero.htm"] [unique_id "aeXhnmZTPf07D1lKPQLv3gAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Lino Project
2026-04-09 20:41:36
(4 months ago)
149.56.160.230 - - [09/Apr/2026:22:41:35 +0200] "GET /errore-404/ HTTP/2.0" 200 57426 "https://bioma ...
show more
149.56.160.230 - - [09/Apr/2026:22:41:35 +0200] "GET /errore-404/ HTTP/2.0" 200 57426 "https://biomakeup.it/" "Mozilla/5.0 (compatible; Dataprovider.com)"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
i-turnradio.nl
2026-04-04 18:09:29
(4 months ago)
2026-04-04 @ 20:09:28 (CET) ~ Blocked for trying to access: /security.txt
Web App Attack
๐บ๐ธ
lavnet.net
2026-01-19 01:26:53
(7 months ago)
149.56.160.230 - - [19/Jan/2026:01:26:51 +0000] "GET /sitemap.xml HTTP/1.1" 404 2083 "-" "Mozilla/5. ...
show more
149.56.160.230 - - [19/Jan/2026:01:26:51 +0000] "GET /sitemap.xml HTTP/1.1" 404 2083 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.160.230 - - [19/Jan/2026:01:26:52 +0000] "GET /ads.txt HTTP/1.1" 404 2083 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.160.230 - - [19/Jan/2026:01:26:52 +0000] "GET /llms.txt HTTP/1.1" 404 2083 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.160.230 - - [19/Jan/2026:01:26:52 +0000] "GET /humans.txt HTTP/1.1" 404 2083 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.160.230 - - [19/Jan/2026:01:26:52 +0000] "GET /security.txt HTTP/1.1" 404 2083 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
149.56.160.230 - - [19/Jan/2026:01:26:52 +0000] "GET /.well-known/security.txt HTTP/1.1" 404 2083 "-" "Mozilla/5.0 (compatible; Dataprovider.com)"
...
show less
Brute-Force
๐ฎ๐น
GBS
2026-01-17 10:05:15
(7 months ago)
Probe for vulnerabilities. Path attempted: /security
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-19 08:34:27
(8 months ago)
(mod_security) mod_security (id:243420) triggered by 149.56.160.230 (crawl-149-56-160-230.dataprovid ...
show more
(mod_security) mod_security (id:243420) triggered by 149.56.160.230 (crawl-149-56-160-230.dataproviderbot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 19 03:34:20.486754 2025] [security2:error] [pid 3383:tid 3383] [client 149.56.160.230:49159] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "REQUEST_HEADERS:Accept-Encoding" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||www.disenowebprofesional.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.disenowebprofesional.com"] [uri "/contacto/"] [unique_id "aUUODLaoW7mEbrTLyq9tUQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack