Anonymous
2026-07-18 18:52:31
(2 months ago)
Probing for known exploit paths (.env, .git, wp-admin, shell files, etc.). Single-strike ban policy ...
show more
Probing for known exploit paths (.env, .git, wp-admin, shell files, etc.). Single-strike ban policy โ zero tolerance for exploit scanning. Banned Jul 18, 18:52 UTC. Origin: United States, Moses Lake.
show less
Hacking
Bad Web Bot
Web App Attack
๐ฌ๐ท
setupgr
2026-06-20 06:21:02
(3 months ago)
(mod_security) mod_security (id:11000010) triggered by 40.77.177.250 (US/United States/Washington/Qu ...
show more
(mod_security) mod_security (id:11000010) triggered by 40.77.177.250 (US/United States/Washington/Quincy/-/[AS8075 MICROSOFT-CORP-MSN-AS-BLOCK]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Sat Jun 20 09:21:01.201138 2026] [security2:error] [pid 554249:tid 554268] [remote 40.77.177.250:1103] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "104"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in ftiaxtomonosou.gr"] [severity "CRITICAL"] [hostname "ftiaxtomonosou.gr"] [uri "/wp-content/cache/min/1/wp-content/plugins/xt-woo-variation-swatches-pro/xt-framework/includes/customizer/controls/xt_icons/css/xt-icons.css"] [unique_id "ajYxTe6odY7VUE--6THniwAAxRA"], referer: https://ftiaxtomonosou.gr/%ce%b4%cf%89%ce%bc%ce%ac%cf%84%ce%b9%ce%bf/
show less
Port Scan
๐ฌ๐ท
setupgr
2026-06-14 04:11:48
(3 months ago)
(mod_security) mod_security (id:11000010) triggered by 40.77.177.250: 1 in the last 86400 secs; Port ...
show more
(mod_security) mod_security (id:11000010) triggered by 40.77.177.250: 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Sun Jun 14 07:11:44.192809 2026] [security2:error] [pid 921869:tid 921883] [remote 40.77.177.250:1088] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "103"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in tavernadimitris.com"] [severity "CRITICAL"] [hostname "tavernadimitris.com"] [uri "/wp-content/cache/min/1/wp-content/plugins/elementor/assets/lib/font-awesome/css/regular.min.css"] [unique_id "ai4qAF7fuOvzHSXykmyAHwAAAAs"], referer: https://tavernadimitris.com/
show less
Port Scan
๐ฌ๐ท
setupgr
2026-06-13 14:03:48
(3 months ago)
(mod_security) mod_security (id:11000010) triggered by 40.77.177.250: 1 in the last 86400 secs; Port ...
show more
(mod_security) mod_security (id:11000010) triggered by 40.77.177.250: 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Sat Jun 13 17:03:47.417885 2026] [security2:error] [pid 864826:tid 864916] [remote 40.77.177.250:1092] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "103"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in sea-sound.com"] [severity "CRITICAL"] [hostname "sea-sound.com"] [uri "/wp-content/cache/min/1/wp-content/uploads/elementor/google-fonts/css/roboto.css"] [unique_id "ai1jQ50UcUnfA8M7RbWvEgAA0w0"], referer: https://sea-sound.com/
show less
Port Scan
Anonymous
2026-05-14 17:40:32
(4 months ago)
40.77.177.250 - - [14/May/2026:17:40:28 +0000] "GET /sw.js HTTP/2.0" 444 0 "https://taiwan.suann.net ...
show more
40.77.177.250 - - [14/May/2026:17:40:28 +0000] "GET /sw.js HTTP/2.0" 444 0 "https://taiwan.suann.net/benchmark/1766/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
40.77.177.250 - - [14/May/2026:17:40:28 +0000] "GET /svg/moon-phase-5.svg HTTP/2.0" 444 0 "https://taiwan.suann.net/sw.js" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
40.77.177.250 - - [14/May/2026:17:40:29 +0000] "GET /sass/tailwind.scss HTTP/2.0" 444 0 "https://taiwan.suann.net/sw.js" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
www.nomadomia.com
2026-04-15 14:08:01
(5 months ago)
Unauthorised API scanning
Port Scan
Hacking
Bad Web Bot
Web App Attack
๐ฆ๐บ
Anytech
2026-04-06 02:07:17
(5 months ago)
Blocked by Conn-Monitor: Automated bot activity
Web App Attack
๐ฆ๐บ
Anytech
2026-04-03 03:19:24
(5 months ago)
Blocked by Conn-Monitor: Automated bot activity
Web App Attack
๐บ๐ธ
interbiznw.com
2026-03-20 11:29:17
(6 months ago)
wordpress-fuzzing
Hacking
Brute-Force
Exploited Host
Web App Attack
๐บ๐ธ
fortypoundhead
2026-03-04 22:25:18
(6 months ago)
Banned IP Address
Hacking
Web App Attack
๐ฎ๐ฉ
hermawan
2025-11-29 01:33:33
(9 months ago)
[Sat Nov 29 08:32:19.759932 2025] [security2:error] [pid 696110:tid 139718302803648] [client 40.77.1 ...
show more
[Sat Nov 29 08:32:19.759932 2025] [security2:error] [pid 696110:tid 139718302803648] [client 40.77.177.250:1089] ModSecurity: Access denied with code 403 (phase 1). Match of "pm googlebot " against "REQUEST_HEADERS:From" required. [file "/etc/modsecurity/coreruleset-4.20.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "117"] [id "448105"] [msg "BAD REQUEST Header From "] [data "Matched Data: found within REQUEST_HEADERS:From: bingbot(at)microsoft.com request_line = GET /disquss-v2.js HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/disquss-v2.js"] [unique_id "aSpNI7e600AB0AmQRcqPRAACAxg"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[696135] [j856t3F4GNo] [aSpNI7e600AB0AmQRcqPRAACAxg] keep_alive=[1] [2025-11-29 08:32:19.759950] [R:aSpNI7e600AB0AmQRcqPRAACAxg] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm) Chrome/100.0.4896.127 Safari/537.36' Host:'staklim-jatim.bmkg.go.id'
...
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-21 21:59:43
(11 months ago)
(mod_security) mod_security (id:225170) triggered by 40.77.177.250 (msnbot-40-77-177-250.search.msn. ...
show more
(mod_security) mod_security (id:225170) triggered by 40.77.177.250 (msnbot-40-77-177-250.search.msn.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 21 17:59:38.896599 2025] [security2:error] [pid 5759:tid 5759] [client 40.77.177.250:56960] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.kengarysp.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.kengarysp.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aPgCSs6aPA9JY1bg0JeG7AAAACU"], referer: https://www.kengarysp.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ณ
ThreatBook.io
2025-10-17 23:24:57
(11 months ago)
ThreatBook Intelligence: Whitelist,Info more details on https://threatbook.io/ip/40.77.177.250
2025- ...
show more
ThreatBook Intelligence: Whitelist,Info more details on https://threatbook.io/ip/40.77.177.250
2025-10-17 01:30:00 /theme/theme_v=582537319&__theme_rnd=582537319.css
show less
Web App Attack
๐ฎ๐ฉ
hermawan
2025-09-14 18:01:40
(1 year ago)
[Mon Sep 15 01:01:09.183479 2025] [security2:error] [pid 2496166:tid 140266850715328] [client 40.77. ...
show more
[Mon Sep 15 01:01:09.183479 2025] [security2:error] [pid 2496166:tid 140266850715328] [client 40.77.177.250:36811] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "Head" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.16.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "228"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: Head found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/136.0.7103.49 Safari/537.36 request_line = GET /OneSignalSDKWorker.js HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/OneSignalSDKWorker.js"] [unique_id "aMcC5QhpNW8szKbb78t-NAADDQY"], referer https://staklim-jatim.bmkg.go.id/index.php/prakiraan-iklim/prakiraan-bulanan/prakiraan-bulanan-tingkat-ketersediaan-air-bagi-tanaman/555557215-prakiraan-bulanan-tingkat-ketersediaan-air-bagi-tanaman-di-provinsi-jawa-timur-bulan-maret-tahun-2
...
show less
Hacking
Web App Attack
๐ฎ๐ฉ
hermawan
2025-09-08 01:15:21
(1 year ago)
[Mon Sep 08 08:14:49.639166 2025] [security2:error] [pid 1308630:tid 139919021287104] [client 40.77. ...
show more
[Mon Sep 08 08:14:49.639166 2025] [security2:error] [pid 1308630:tid 139919021287104] [client 40.77.177.250:61962] ModSecurity: Access denied with code 403 (phase 1). Match of "pm googlebot " against "REQUEST_HEADERS:From" required. [file "/etc/modsecurity/coreruleset-4.16.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "98"] [id "448105"] [msg "BAD REQUEST Header From "] [data "Matched Data: found within REQUEST_HEADERS:From: bingbot(at)microsoft.com request_line = GET /index.php/buku/479-buku-edisi-setiap-1-bulan-sekali/555558921-e-buletin-prakiraan-sifat-dan-curah-hujan-di-kabupaten-bojonegoro HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/buku/479-buku-edisi-setiap-1-bulan-sekali/555558921-e-buletin-prakiraan-sifat-dan-curah-hujan-di-kabupaten-bojonegoro"] [unique_id "aL4uCXqb5WlhCurttA19nwAAUwQ"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[1308635] [Pbnv6T9Oa6o] [aL4uCXqb5WlhCurttA19nwAAUwQ] keep_alive=[1] [2025-09-08 08
...
show less
Hacking
Web App Attack