AbuseIPDB » 40.77.178.18
40.77.178.18 was found in our database!
This IP was reported 7 times. Confidence of
Abuse
is 11%: ?
| ISP |
Microsoft Corporation
|
| Usage Type |
Data Center/Web Hosting/Transit
|
| ASN |
AS8075
|
| Hostname(s) |
msnbot-40-77-178-18.search.msn.com
|
| Domain Name |
microsoft.com
|
| Country |
๐บ๐ธ
United States of America
|
| City |
Moses Lake, Washington
|
IP info including ISP, Usage Type, and Location provided
by IPInfo. Updated weekly.
IP Abuse Reports for 40.77.178.18:
This IP address has been reported a total of
7
times from
4 distinct
sources.
40.77.178.18 was first reported on
, and the most recent report was
.
Old Reports:
The most recent abuse report for this IP address is from
. It is possible that this IP is no longer involved in abusive activities.
| Reporter |
IoA Timestamp (UTC)
|
Comment |
Categories |
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:243420) triggered by 40.77.178.18 (msnbot-40-77-178-18.search.msn.co ...
show more
(mod_security) mod_security (id:243420) triggered by 40.77.178.18 (msnbot-40-77-178-18.search.msn.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 14 20:33:39.682510 2026] [security2:error] [pid 12632:tid 12632] [client 40.77.178.18:42756] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "REQUEST_HEADERS:Accept-Encoding" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||www.seabreezeculvert.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.seabreezeculvert.com"] [uri "/wp-admin/admin-ajax.php"] [unique_id "albVUrPFS5z2GjwZXIo2UQAAAAA"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
Anonymous
|
|
40.77.178.18 - - [14/Jun/2026:21:09:21 +0000] "GET /sw.js HTTP/2.0" 444 0 "https://taiwan.suann.net/ ...
show more
40.77.178.18 - - [14/Jun/2026:21:09:21 +0000] "GET /sw.js HTTP/2.0" 444 0 "https://taiwan.suann.net/sunrise/?name=%E7%89%9B%E7%9B%B8%E5%B1%B1&lat=23.96545189&lng=120.92938831&date=2026-01-30&loaded=1" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
40.77.178.18 - - [14/Jun/2026:21:09:21 +0000] "GET /workbox-835c8c05.js HTTP/2.0" 444 0 "https://taiwan.suann.net/sw.js" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
40.77.178.18 - - [14/Jun/2026:21:09:21 +0000] "GET /svg/moon-phase-7.svg HTTP/2.0" 444 0 "https://taiwan.suann.net/sw.js" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
...
show less
|
Bad Web Bot
Web App Attack
|
|
|
๐ฉ๐ช
FeG Deutschland
|
|
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 28
|
Exploited Host
Web App Attack
|
|
|
๐ฆ๐บ
MAGIC
|
|
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
|
DDoS Attack
Bad Web Bot
|
|
|
๐ฆ๐บ
MAGIC
|
|
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
|
DDoS Attack
Bad Web Bot
|
|
|
๐ฉ๐ช
FeG Deutschland
|
|
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 24
|
Exploited Host
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210730) triggered by 40.77.178.18 (msnbot-40-77-178-18.search.msn.co ...
show more
(mod_security) mod_security (id:210730) triggered by 40.77.178.18 (msnbot-40-77-178-18.search.msn.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 29 09:17:22.689871 2025] [security2:error] [pid 74577:tid 74577] [client 40.77.178.18:52480] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||civilwarzone.com|F|2"] [data ".dll"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "civilwarzone.com"] [uri "/~site/Scripts_ExternalRedirect/ExternalRedirect.dll"] [unique_id "aGE84tq_5Fz4D4V2t-ctWgAAAAM"], referer: http://civilwarzone.com/WeAreMarchingOntoRichmond.html
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
Showing 1 to
7
of 7 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: