This IP address has been reported a total of
6
times from
3 distinct
sources.
177.66.209.117 was first reported on
April 3rd 2021 , and the most recent report was
2 days ago .
In the last 60 days, the only reporter location was:
United States of America
with 2
reports.
The most common categories in these recent reports were:
Web App Attack
2
times;
Bad Web Bot
2
times;
Brute-Force
2
times.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
🇺🇸
TPI-Abuse
2026-10-04 03:18:39
(2 days ago)
(mod_security) mod_security (id:210350) triggered by 177.66.209.117 (177-66-209-117.rnova.com.br): 1 ...
show more
(mod_security) mod_security (id:210350) triggered by 177.66.209.117 (177-66-209-117.rnova.com.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 03 23:18:31.496387 2026] [security2:error] [pid 32735:tid 32735] [client 177.66.209.117:27820] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||noreservationslocations.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "noreservationslocations.com"] [uri "/"] [unique_id "asHFh1c1dyKQgF-XQcCY9AAAAAU"], referer: https://generatewebsitebacklinks.shop/dir/ethical-link-building-services-149892
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-10-01 20:31:36
(4 days ago)
(mod_security) mod_security (id:210350) triggered by 177.66.209.117 (177-66-209-117.rnova.com.br): 1 ...
show more
(mod_security) mod_security (id:210350) triggered by 177.66.209.117 (177-66-209-117.rnova.com.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 16:31:30.545259 2026] [security2:error] [pid 15788:tid 15788] [client 177.66.209.117:30807] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||tt-w.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "tt-w.com"] [uri "/"] [unique_id "ar7DIiyP7r_oErqrIzdKygAAACY"], referer: https://unlimitedbacklinks.shop/dir/organic-seo-links-218913
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-18 14:34:51
(10 months ago)
scanning http requests from known botnet
Web App Attack
🇸🇰
wirecontrol
2021-04-28 16:16:09
(5 years ago)
SpamScore above: 10.0
Email Spam
🇸🇰
wirecontrol
2021-04-05 11:10:39
(5 years ago)
SpamScore above: 10.0
Email Spam
🇸🇰
wirecontrol
2021-04-03 11:48:55
(5 years ago)
SpamScore above: 10.0
Email Spam
Showing 1 to
6
of 6 reports