๐ฌ๐ท
setupgr
2026-06-20 19:59:59
(4 weeks ago)
(mod_security) mod_security (id:11000010) triggered by 40.77.178.207 (US/United States/Washington/Qu ...
show more
(mod_security) mod_security (id:11000010) triggered by 40.77.178.207 (US/United States/Washington/Quincy/-/[AS8075 MICROSOFT-CORP-MSN-AS-BLOCK]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Sat Jun 20 22:59:55.244120 2026] [security2:error] [pid 785068:tid 785080] [remote 40.77.178.207:24468] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "104"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in ftiaxtomonosou.gr"] [severity "CRITICAL"] [hostname "ftiaxtomonosou.gr"] [uri "/wp-content/cache/min/1/wp-content/plugins/woocommerce/assets/client/blocks/wc-blocks.css"] [unique_id "ajbxOxGXBK2iHtemAo_x4gABCQs"], referer: https://ftiaxtomonosou.gr/%CE%BF%CE%B9%CE%BA%CE%BF%CE%B4%CE%BF%CE%BC%CE%B9%CE%BA%CE%AE-%CE%BE%CF%85%CE%BB%CE%B5%CE%AF%CE%B1/
show less
Port Scan
๐ฌ๐ท
setupgr
2026-06-17 19:59:33
(1 month ago)
(mod_security) mod_security (id:11000010) triggered by 40.77.178.207 (US/United States/Washington/Qu ...
show more
(mod_security) mod_security (id:11000010) triggered by 40.77.178.207 (US/United States/Washington/Quincy/-/[AS8075 MICROSOFT-CORP-MSN-AS-BLOCK]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Wed Jun 17 22:59:28.946639 2026] [security2:error] [pid 2210294:tid 2951781] [remote 40.77.178.207:57675] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "104"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in tavernadimitris.com"] [severity "CRITICAL"] [hostname "tavernadimitris.com"] [uri "/wp-content/cache/min/1/wp-content/plugins/all-in-one-seo-pack-pro/dist/Pro/assets/css/table-of-contents/global.e90f6d47.css"] [unique_id "ajL8oLhY-m9nTIYxKGQ-jgABgSE"], referer: https://tavernadimitris.com/
show less
Port Scan
๐ซ๐ฎ
inlink.ltd
2026-05-20 15:28:23
(1 month ago)
WAF PoW failure, possible botnet behavior, IP mismatch, POST request made by 40.77.178.207 was not I ...
show more
WAF PoW failure, possible botnet behavior, IP mismatch, POST request made by 40.77.178.207 was not IP who made PoW GET request earlier
show less
DDoS Attack
Exploited Host
Anonymous
2026-05-13 12:56:24
(2 months ago)
40.77.178.207 - - [13/May/2026:12:56:20 +0000] "GET /svg/moon-phase-6.svg HTTP/2.0" 444 0 "https://t ...
show more
40.77.178.207 - - [13/May/2026:12:56:20 +0000] "GET /svg/moon-phase-6.svg HTTP/2.0" 444 0 "https://taiwan.suann.net/sw.js" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
40.77.178.207 - - [13/May/2026:12:56:21 +0000] "GET /svg/moon-phase-5.svg HTTP/2.0" 444 0 "https://taiwan.suann.net/sw.js" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
40.77.178.207 - - [13/May/2026:12:56:21 +0000] "GET /svg/moon-phase-4.svg HTTP/2.0" 444 0 "https://taiwan.suann.net/sw.js" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ฆ๐บ
Anytech
2026-04-05 16:56:45
(3 months ago)
Blocked by Conn-Monitor: Automated bot activity
Web App Attack
๐ฎ๐ฉ
hermawan
2025-11-06 19:55:30
(8 months ago)
[Fri Nov 07 01:13:11.365486 2025] [security2:error] [pid 1065884:tid 140567116768960] [client 40.77. ...
show more
[Fri Nov 07 01:13:11.365486 2025] [security2:error] [pid 1065884:tid 140567116768960] [client 40.77.178.207:5251] ModSecurity: Access denied with code 403 (phase 1). Match of "pm googlebot " against "REQUEST_HEADERS:From" required. [file "/etc/modsecurity/coreruleset-4.19.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "111"] [id "448105"] [msg "BAD REQUEST Header From "] [data "Matched Data: found within REQUEST_HEADERS:From: bingbot(at)microsoft.com request_line = GET /disquss-v5.js HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/disquss-v5.js"] [unique_id "aQzlNy0KwSSG7pakLYhSOwADlQA"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[1065885] [ArGIBHFI2Wk] [aQzlNy0KwSSG7pakLYhSOwADlQA] keep_alive=[1] [2025-11-07 01:13:11.365492] [R:aQzlNy0KwSSG7pakLYhSOwADlQA] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm) Chrome/100.0.4896.127 Safari/537.36' Host:'staklim-jatim.bmkg.go.id
...
show less
Hacking
Web App Attack
๐ซ๐ท
tr1n
2025-09-23 13:54:44
(9 months ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/2 ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/2 (GET method)
Endpoint: /_next/static/chunks/main-app-3c9d99db3efcf2f6.js
UA: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm) Chrome/100.0.4896.127 Safari/537.36
show less
Bad Web Bot
๐ฎ๐ฉ
hermawan
2025-08-27 07:27:56
(10 months ago)
[Wed Aug 27 14:27:10.997458 2025] [security2:error] [pid 1080970:tid 140651694909120] [client 40.77. ...
show more
[Wed Aug 27 14:27:10.997458 2025] [security2:error] [pid 1080970:tid 140651694909120] [client 40.77.178.207:48641] ModSecurity: Access denied with code 403 (phase 1). Match of "pm googlebot " against "REQUEST_HEADERS:From" required. [file "/etc/modsecurity/coreruleset-4.16.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "98"] [id "448105"] [msg "BAD REQUEST Header From "] [data "Matched Data: found within REQUEST_HEADERS:From: bingbot(at)microsoft.com request_line = GET /TableFilter/system-v170.css HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/TableFilter/system-v170.css"] [unique_id "aK6zTttTimWYoSEzKnj4PQADwgA"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[1080971] [09N9t5NW9zM] [aK6zTttTimWYoSEzKnj4PQADwgA] keep_alive=[1] [2025-08-27 14:27:10.997465] [R:aK6zTttTimWYoSEzKnj4PQADwgA] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm) Chrome/100.0.4896.127 Safari/537.36' Ho
...
show less
Hacking
Web App Attack
๐จ๐ณ
ThreatBook.io
2025-08-21 23:17:37
(10 months ago)
ThreatBook Intelligence: Whitelist,Info more details on https://threatbook.io/ip/40.77.178.207
2025- ...
show more
ThreatBook Intelligence: Whitelist,Info more details on https://threatbook.io/ip/40.77.178.207
2025-08-21 21:13:33 /fonts/fontawesome-webfont.ttf?v=4.7.0
show less
Web App Attack
๐จ๐ณ
ThreatBook.io
2025-08-11 23:14:00
(11 months ago)
ThreatBook Intelligence: Whitelist,Info more details on https://threatbook.io/ip/40.77.178.207
2025- ...
show more
ThreatBook Intelligence: Whitelist,Info more details on https://threatbook.io/ip/40.77.178.207
2025-08-11 20:14:43 /static/now-ui-kit.css
2025-08-11 20:14:43 /static/iconfont.css
2025-08-11 20:14:43 /static/jquery.min.js
2025-08-11 20:14:43 /static/bootstrap.min-01.css
2025-08-11 20:14:43 /static/layer.css
2025-08-11 20:14:43 /static/now-ui-kit.js
2025-08-11 20:14:43 /static/popper.min.js
2025-08-11 20:14:43 /static/font-awesome.min.css
2025-08-11 20:14:43 /static/jquery.validate.util.js
show less
Web App Attack
๐จ๐ด
j458rjqwi348fhjq46
2025-08-10 04:48:28
(11 months ago)
Malicious IP detected by WAF with anomaly score 10.0. Attack types: Timestamp deviates by 1.8 hours, ...
show more
Malicious IP detected by WAF with anomaly score 10.0. Attack types: Timestamp deviates by 1.8 hours, Timestamp deviates by 13.7 hours, Timestamp deviates by 2.9 hours (+7 more). Activity: 1787 requests to 50 URLs. Period: 2025-08-09 21:21:15 - 2025-08-09 21:21:15 (America/Bogota). Origin: US. Source: Automated WAF log analysis.
show less
Hacking
Web App Attack
๐ฎ๐ฉ
hermawan
2025-08-01 22:13:57
(11 months ago)
[Sat Aug 02 05:12:53.111963 2025] [security2:error] [pid 282432:tid 140286310201024] [client 40.77.1 ...
show more
[Sat Aug 02 05:12:53.111963 2025] [security2:error] [pid 282432:tid 140286310201024] [client 40.77.178.207:41104] ModSecurity: Access denied with code 403 (phase 1). Match of "pm googlebot " against "REQUEST_HEADERS:From" required. [file "/etc/modsecurity/coreruleset-4.16.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "98"] [id "448105"] [msg "BAD REQUEST Header From "] [data "Matched Data: found within REQUEST_HEADERS:From: bingbot(at)microsoft.com request_line = GET /system-v41.css HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/system-v41.css"] [unique_id "aI075K3D6rRuysRtez5biwAAEgQ"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[282437] [vmIkD5VOPAY] [aI075K3D6rRuysRtez5biwAAEgQ] keep_alive=[1] [2025-08-02 05:12:53.111976] [R:aI075K3D6rRuysRtez5biwAAEgQ] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm) Chrome/100.0.4896.127 Safari/537.36' Host:'staklim-jatim.bmkg.go.id
...
show less
Hacking
Web App Attack