|
๐ฌ๐ท
setupgr
|
|
(mod_security) mod_security (id:11000010) triggered by 40.77.177.5: 1 in the last 86400 secs; Ports: ...
show more
(mod_security) mod_security (id:11000010) triggered by 40.77.177.5: 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Tue Jun 16 02:57:20.931072 2026] [security2:error] [pid 1917071:tid 1917234] [remote 40.77.177.5:15371] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "103"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in asteriassantorini.com"] [severity "CRITICAL"] [hostname "asteriassantorini.com"] [uri "/wp-content/plugins/revslider/public/js/sr7.js"] [unique_id "ajCRYHbrIXpbmq-1FoWofgABAQ4"], referer: https://asteriassantorini.com/
show less
|
Port Scan
|
|
|
๐ฌ๐ท
setupgr
|
|
(mod_security) mod_security (id:11000010) triggered by 40.77.177.5: 1 in the last 86400 secs; Ports: ...
show more
(mod_security) mod_security (id:11000010) triggered by 40.77.177.5: 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Sat Jun 13 17:03:47.621302 2026] [security2:error] [pid 864871:tid 865281] [remote 40.77.177.5:9025] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "103"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in sea-sound.com"] [severity "CRITICAL"] [hostname "sea-sound.com"] [uri "/wp-content/cache/min/1/wp-content/uploads/loftloader-pro/custom-styles.css"] [unique_id "ai1jQ2z1K1AoECh-J661CgABTxo"], referer: https://sea-sound.com/
show less
|
Port Scan
|
|
|
๐ฌ๐ท
setupgr
|
|
(mod_security) mod_security (id:11000010) triggered by 40.77.177.5: 1 in the last 86400 secs; Ports: ...
show more
(mod_security) mod_security (id:11000010) triggered by 40.77.177.5: 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Fri Jun 12 19:06:51.369516 2026] [security2:error] [pid 351529:tid 387346] [remote 40.77.177.5:31300] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "103"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in ftiaxtomonosou.gr"] [severity "CRITICAL"] [hostname "ftiaxtomonosou.gr"] [uri "/wp-content/uploads/elementor/css/post-4751.css"] [unique_id "aiwum2m9gdo9fuJjoHgaWAABSyQ"], referer: https://ftiaxtomonosou.gr/%CF%84%CE%B1_%CE%B5%CE%AF%CE%B4%CE%B7_%CF%84%CE%BF%CF%85_%CE%BE%CF%8D%CE%BB%CE%BF%CF%85/%CE%B9%CF%84%CE%B9%CE%AC-2/
show less
|
Port Scan
|
|
|
๐ซ๐ฎ
YF
|
|
WordPress content enumeration
|
Web App Attack
|
|
|
Anonymous
|
|
40.77.177.5 - - [15/May/2026:19:07:15 +0000] "GET /sw.js HTTP/2.0" 444 0 "https://taiwan.suann.net/b ...
show more
40.77.177.5 - - [15/May/2026:19:07:15 +0000] "GET /sw.js HTTP/2.0" 444 0 "https://taiwan.suann.net/benchmark/970/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
40.77.177.5 - - [15/May/2026:19:07:16 +0000] "GET /workbox-835c8c05.js HTTP/2.0" 444 0 "https://taiwan.suann.net/sw.js" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
40.77.177.5 - - [15/May/2026:19:07:16 +0000] "GET /svg/moon-phase-7.svg HTTP/2.0" 444 0 "https://taiwan.suann.net/sw.js" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
...
show less
|
Bad Web Bot
Web App Attack
|
|
|
๐ฆ๐บ
Anytech
|
|
Blocked by Conn-Monitor: Automated bot activity
|
Web App Attack
|
|
|
๐ฆ๐บ
Anytech
|
|
Blocked by Conn-Monitor: Automated bot activity
|
Bad Web Bot
Web App Attack
|
|
|
๐ซ๐ฎ
as211431.net
|
|
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/2 (POST method ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/2 (POST method)
Endpoint: /cdn-cgi/zaraz/t
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/136.0.7103.49 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
|
Bad Web Bot
|
|
|
๐บ๐ธ
TheJimmo
|
|
40.77.177.5 40.77.177.5 - - [05/Mar/2026:21:52:19 +0000] "GET /index.php?app=core&module=system&cont ...
show more
40.77.177.5 40.77.177.5 - - [05/Mar/2026:21:52:19 +0000] "GET /index.php?app=core&module=system&controller=ajax&do=attachmentInfo&csrfKey=81ad5139e56e59178c4d5b5cd6d6c8a6&attachIDs%5B42942%5D=true HTTP/1.1" 403 61 "https://foreverpontiac.com/forums/topic/19836-potm-nominations-march-2025/" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm) Chrome/136.0.0.0 Safari/537.36"
40.77.177.5 40.77.177.5 - - [05/Mar/2026:21:52:19 +0000] "GET /index.php?app=core&module=system&controller=ajax&do=attachmentInfo&csrfKey=81ad5139e56e59178c4d5b5cd6d6c8a6&attachIDs%5B42943%5D=true HTTP/1.1" 403 61 "https://foreverpontiac.com/forums/topic/19836-potm-nominations-march-2025/" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm) Chrome/136.0.0.0 Safari/537.36"
40.77.177.5 40.77.177.5 - - [05/Mar/2026:21:52:19 +0000] "GET /index.php?app=core&module=system&controller=ajax&do=attachmentInfo&cs
...
show less
|
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
RLDD
|
|
WP probing -nov
|
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210730) triggered by 40.77.177.5 (msnbot-40-77-177-5.search.msn.com) ...
show more
(mod_security) mod_security (id:210730) triggered by 40.77.177.5 (msnbot-40-77-177-5.search.msn.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jan 10 19:02:54.557494 2026] [security2:error] [pid 18565:tid 18565] [client 40.77.177.5:64962] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||civilwarzone.com|F|2"] [data ".dll"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "civilwarzone.com"] [uri "/~site/Scripts_ExternalRedirect/ExternalRedirect.dll"] [unique_id "aWLortX6mUT3Mc7iyjwv7AAAABs"], referer: https://civilwarzone.com/TheMinstrelBoy.html
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
RLDD
|
|
WP probing -nov
|
Web App Attack
|
|
|
Anonymous
|
|
Blocked: Reason='Auto-block'; Requests=0
|
Hacking
|
|
|
๐ฆ๐บ
MAGIC
|
|
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
|
DDoS Attack
Bad Web Bot
|
|
|
๐บ๐ธ
RLDD
|
|
WP probing -nov
|
Web App Attack
|
|