๐บ๐ธ
TheJimmo
2026-07-21 19:26:12
(20 hours ago)
40.77.177.142 40.77.177.142 - - [21/Jul/2026:19:26:11 +0000] "GET /index.php?app=core&module=system& ...
show more
40.77.177.142 40.77.177.142 - - [21/Jul/2026:19:26:11 +0000] "GET /index.php?app=core&module=system&controller=ajax&do=attachmentInfo&csrfKey=db4873c3d4a1c963540048da3646c24c&attachIDs%5B49966%5D=true HTTP/1.1" 403 61 "https://foreverpontiac.com/forums/topic/23600-potm-nominations-april-2026" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm) Chrome/136.0.0.0 Safari/537.36"
40.77.177.142 40.77.177.142 - - [21/Jul/2026:19:26:11 +0000] "GET /index.php?app=core&module=system&controller=ajax&do=attachmentInfo&csrfKey=db4873c3d4a1c963540048da3646c24c&attachIDs%5B51150%5D=true HTTP/1.1" 403 61 "https://foreverpontiac.com/forums/topic/23600-potm-nominations-april-2026" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm) Chrome/136.0.0.0 Safari/537.36"
40.77.177.142 40.77.177.142 - - [21/Jul/2026:19:26:11 +0000] "GET /index.php?app=core&module=system&controller=ajax&do=attachm
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
raph
2026-07-14 03:48:47
(1 week ago)
[SQL INJECTION] f2b match %{+Q}r for ^.*haproxy\[[0-9]+\]: <HOST>:.* (GET |POST ).*\?.*(%20AND%20|%2 ...
show more
[SQL INJECTION] f2b match %{+Q}r for ^.*haproxy\[[0-9]+\]: <HOST>:.* (GET |POST ).*\?.*(%20AND%20|%20and%20|%20OR%20|%20or%20).* HTTP/1.1$
show less
SQL Injection
๐ญ๐บ
kranem
2026-07-08 21:00:09
(1 week ago)
Triggered Cloudflare WAF from US.
Action taken: BLOCK
ASN: 8075 (Microsoft Corporation)
Protocol: HT ...
show more
Triggered Cloudflare WAF from US.
Action taken: BLOCK
ASN: 8075 (Microsoft Corporation)
Protocol: HTTP/2 (GET method)
Endpoint: /_nuxt/CgwfNqNK.js
Timestamp: 2026-07-08T20:56:11Z
User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm) Chrome/136.0.0.0 Safari/537.36
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-25 02:18:28
(3 weeks ago)
(mod_security) mod_security (id:211700) triggered by 40.77.177.142 (msnbot-40-77-177-142.search.msn. ...
show more
(mod_security) mod_security (id:211700) triggered by 40.77.177.142 (msnbot-40-77-177-142.search.msn.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 24 22:18:21.599040 2026] [security2:error] [pid 1997:tid 1997] [client 40.77.177.142:1041] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i:[ ()]case ?\\\\(|\\\\) ?like ?\\\\(|\\\\bhaving ?[^\\\\s]+ ?[^\\\\w ]|\\\\bif ?\\\\([\\\\d\\\\w] ?[=<>~])" at MATCHED_VAR. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/22_SQL_SQLi.conf"] [line "33"] [id "211700"] [rev "8"] [msg "COMODO WAF: Detects conditional SQL injection attempts||15tobefit.starrmail.net|F|2"] [data "Matched Data: having found within MATCHED_VAR: live-blog-14100248-2026-06-25-in-recent-decades-everything-having-to-do-with-the-teenage-mutant-ninja-turtles-"] [severity "CRITICAL"] [tag "CWAF"] [tag "SQLi"] [hostname "15tobefit.starrmail.net"] [uri "/"] [unique_id "ajyP7fQatLB_FojxSnlqfgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ท
setupgr
2026-06-16 22:38:42
(1 month ago)
(mod_security) mod_security (id:11000010) triggered by 40.77.177.142: 1 in the last 86400 secs; Port ...
show more
(mod_security) mod_security (id:11000010) triggered by 40.77.177.142: 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Wed Jun 17 01:38:37.598938 2026] [security2:error] [pid 2210293:tid 2210299] [remote 40.77.177.142:47757] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "104"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in ftiaxtomonosou.gr"] [severity "CRITICAL"] [hostname "ftiaxtomonosou.gr"] [uri "/wp-content/uploads/elementor/css/post-109.css"] [unique_id "ajHQbdMtn8QwdXQy9m6cJQABTQM"], referer: https://ftiaxtomonosou.gr/
show less
Port Scan
๐ฌ๐ท
setupgr
2026-06-14 09:54:36
(1 month ago)
(mod_security) mod_security (id:11000010) triggered by 40.77.177.142: 1 in the last 86400 secs; Port ...
show more
(mod_security) mod_security (id:11000010) triggered by 40.77.177.142: 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Sun Jun 14 12:54:31.477442 2026] [security2:error] [pid 921871:tid 1290056] [remote 40.77.177.142:5059] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "103"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in ftiaxtomonosou.gr"] [severity "CRITICAL"] [hostname "ftiaxtomonosou.gr"] [uri "/wp-content/plugins/gravityforms/legacy/css/browsers.min.css"] [unique_id "ai56V-2clReoPvlJKlj4nwAAxB8"], referer: https://ftiaxtomonosou.gr/%CE%BF%CE%B9-%CE%B5%CE%B3%CE%BA%CE%B1%CF%84%CE%B1%CF%83%CF%84%CE%AC%CF%83%CE%B5%CE%B9%CF%82-%CE%BC%CE%B1%CF%82/
show less
Port Scan
๐ฌ๐ท
setupgr
2026-06-14 04:11:52
(1 month ago)
(mod_security) mod_security (id:11000010) triggered by 40.77.177.142: 1 in the last 86400 secs; Port ...
show more
(mod_security) mod_security (id:11000010) triggered by 40.77.177.142: 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Sun Jun 14 07:11:50.396838 2026] [security2:error] [pid 921870:tid 1169338] [remote 40.77.177.142:58500] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "103"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in tavernadimitris.com"] [severity "CRITICAL"] [hostname "tavernadimitris.com"] [uri "/wp-content/themes/oceanwp/assets/js/scroll-top.min.js"] [unique_id "ai4qBiiyK_EXlfCi56fToQAATiE"], referer: https://tavernadimitris.com/
show less
Port Scan
Anonymous
2026-05-15 19:59:45
(2 months ago)
40.77.177.142 - - [15/May/2026:19:59:42 +0000] "GET /sw.js HTTP/2.0" 444 0 "https://taiwan.suann.net ...
show more
40.77.177.142 - - [15/May/2026:19:59:42 +0000] "GET /sw.js HTTP/2.0" 444 0 "https://taiwan.suann.net/benchmark/12853" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
40.77.177.142 - - [15/May/2026:19:59:42 +0000] "GET /workbox-835c8c05.js HTTP/2.0" 444 0 "https://taiwan.suann.net/sw.js" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
40.77.177.142 - - [15/May/2026:19:59:43 +0000] "GET /svg/moon-phase-7.svg HTTP/2.0" 444 0 "https://taiwan.suann.net/sw.js" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ฆ๐บ
Anytech
2026-04-04 04:54:35
(3 months ago)
Blocked by Conn-Monitor: Automated bot activity
Web App Attack
๐ฆ๐บ
Anytech
2026-04-02 15:43:11
(3 months ago)
Blocked by Conn-Monitor: Automated bot activity
Web App Attack
๐ฎ๐ฉ
hermawan
2025-11-10 01:58:14
(8 months ago)
[Mon Nov 10 08:56:53.554175 2025] [security2:error] [pid 1862950:tid 140440440362688] [client 40.77. ...
show more
[Mon Nov 10 08:56:53.554175 2025] [security2:error] [pid 1862950:tid 140440440362688] [client 40.77.177.142:46595] ModSecurity: Access denied with code 403 (phase 1). Match of "pm googlebot " against "REQUEST_HEADERS:From" required. [file "/etc/modsecurity/coreruleset-4.20.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "112"] [id "448105"] [msg "BAD REQUEST Header From "] [data "Matched Data: mobile found within REQUEST_HEADERS:From: bingbot(at)microsoft.com request_line = POST /matomo.php?ping=1&idsite=1&rec=1&r=739111&h=17&m=56&s=42&url=https%3A%2F%2Fstaklim-jatim.bmkg.go.id%2Findex.php%2Finformasi-iklim%2Finfografis-iklim%2Finfografis-harian%2Fsuhu-maksimum%2F555562458-suhu-maksimum-harian-di-jawa-timur-tanggal-15-oktober-tahun-2025&_id=e772a94b84fcd8ea&_idn=0&send_image=0&_refts=0&dimension2=&dimension3=&dimension12=&dimension13=&dimension14=&dimension16=&dimension17=&dimens..."] [severity "NOTICE"] [hostname "matomo.staklim-malang.info"] [uri "/matomo.php"] [unique_id "aRFG
...
show less
Hacking
Web App Attack