Anonymous
2026-08-21 14:58:32
(1 day ago)
hie-12 : Block return, carriage return, ... characters=>/matomo0424/matomo.php?action_name=Animierte ...
show more
hie-12 : Block return, carriage return, ... characters=>/matomo0424/matomo.php?action_name=Animiertes%20Spin-off%20bei%20Netflix%3A%20%E2%80%9EStranger%20Things%3A%20Tales%20From%20%2785%E2%80%9C%20entf%C3%BChrt%20wieder%20nach%20Hawkins&idsite=1&rec=1&r=225278&h=7&m=58&s=30&url=https%3A%2F%2Fwww.hitchecker.de%2Ftv-film%2Fneui...(')
show less
Hacking
๐ฌ๐ท
setupgr
2026-06-17 09:29:05
(2 months ago)
(mod_security) mod_security (id:11000010) triggered by 40.77.178.4 (US/United States/Washington/Quin ...
show more
(mod_security) mod_security (id:11000010) triggered by 40.77.178.4 (US/United States/Washington/Quincy/-/[AS8075 MICROSOFT-CORP-MSN-AS-BLOCK]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Wed Jun 17 12:29:01.985903 2026] [security2:error] [pid 2210294:tid 2210355] [remote 40.77.178.4:62208] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "104"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in asteriassantorini.com"] [severity "CRITICAL"] [hostname "asteriassantorini.com"] [uri "/wp-content/themes/oceanwp/assets/js/vendors/magnific-popup.min.js"] [unique_id "ajJo3bhY-m9nTIYxKGTjKQABiRY"], referer: https://asteriassantorini.com/
show less
Port Scan
๐ฌ๐ท
setupgr
2026-06-16 22:24:31
(2 months ago)
(mod_security) mod_security (id:11000010) triggered by 40.77.178.4: 1 in the last 86400 secs; Ports: ...
show more
(mod_security) mod_security (id:11000010) triggered by 40.77.178.4: 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Wed Jun 17 01:24:29.530246 2026] [security2:error] [pid 2210293:tid 2210298] [remote 40.77.178.4:39874] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "104"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in ftiaxtomonosou.gr"] [severity "CRITICAL"] [hostname "ftiaxtomonosou.gr"] [uri "/wp-content/uploads/elementor/css/post-4744.css"] [unique_id "ajHNHdMtn8QwdXQy9m6b6QABQAI"], referer: https://ftiaxtomonosou.gr/%CE%AD%CF%80%CE%B9%CF%80%CE%BB%CE%B1/%ce%b3%ce%ad%cf%81%ce%b1%ce%ba%ce%b1%cf%82/
show less
Port Scan
๐ฌ๐ท
setupgr
2026-06-15 21:10:28
(2 months ago)
(mod_security) mod_security (id:11000010) triggered by 40.77.178.4: 1 in the last 86400 secs; Ports: ...
show more
(mod_security) mod_security (id:11000010) triggered by 40.77.178.4: 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Tue Jun 16 00:10:22.647263 2026] [security2:error] [pid 1917013:tid 1917075] [remote 40.77.178.4:6019] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "103"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in ftiaxtomonosou.gr"] [severity "CRITICAL"] [hostname "ftiaxtomonosou.gr"] [uri "/wp-content/plugins/premium-addons-for-elementor/assets/frontend/min-js/elements-handler.min.js"] [unique_id "ajBqPkEA9pRZS3vlJ2u5YgAAmAc"], referer: https://ftiaxtomonosou.gr/%CF%84%CE%B1_%CE%B5%CE%AF%CE%B4%CE%B7_%CF%84%CE%BF%CF%85_%CE%BE%CF%8D%CE%BB%CE%BF%CF%85/%ce%b4%ce%b5%cf%83%cf%80%ce%bf%cf%84%ce%ac%ce%ba%ce%b9-%ce%b5%cf%85%cf%81%cf%8e%cf%80%ce%b7%cf%82/
show less
Port Scan
Anonymous
2026-05-15 19:06:38
(3 months ago)
40.77.178.4 - - [15/May/2026:19:06:35 +0000] "GET /sw.js HTTP/2.0" 444 0 "https://taiwan.suann.net/b ...
show more
40.77.178.4 - - [15/May/2026:19:06:35 +0000] "GET /sw.js HTTP/2.0" 444 0 "https://taiwan.suann.net/benchmark/1413" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
40.77.178.4 - - [15/May/2026:19:06:36 +0000] "GET /workbox-835c8c05.js HTTP/2.0" 444 0 "https://taiwan.suann.net/sw.js" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
40.77.178.4 - - [15/May/2026:19:06:36 +0000] "GET /svg/moon-phase-7.svg HTTP/2.0" 444 0 "https://taiwan.suann.net/sw.js" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ซ๐ฎ
as211431.net
2026-04-06 00:42:25
(4 months ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/2 (POST method ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/2 (POST method)
Endpoint: /cdn-cgi/zaraz/t
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/136.0.7103.49 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฆ๐บ
Anytech
2026-04-05 02:58:38
(4 months ago)
Blocked by Conn-Monitor: Automated bot activity
Web App Attack
๐ฆ๐บ
Anytech
2026-04-03 21:54:33
(4 months ago)
Blocked by Conn-Monitor: Automated bot activity
Web App Attack
๐ฆ๐บ
Anytech
2026-04-02 09:39:31
(4 months ago)
Blocked by Conn-Monitor: Automated bot activity
Bad Web Bot
Web App Attack
Anonymous
2025-10-23 01:17:00
(9 months ago)
"Undesired, excess traffic against library/education infrastructure"
Brute-Force
๐ฎ๐ฉ
hermawan
2025-10-13 20:26:49
(10 months ago)
[Tue Oct 14 03:24:49.227746 2025] [security2:error] [pid 1092585:tid 140350703240896] [client 40.77. ...
show more
[Tue Oct 14 03:24:49.227746 2025] [security2:error] [pid 1092585:tid 140350703240896] [client 40.77.178.4:62210] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "Head" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.16.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "228"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: Head found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/136.0.7103.49 Safari/537.36 request_line = GET /OneSignalSDKWorker.js HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/OneSignalSDKWorker.js"] [unique_id "aO1gEbm9h0L7DG0N34kceQACiQY"], referer https://staklim-jatim.bmkg.go.id/index.php/prakiraan-musim/4103-prakiraan-musim-kemarau/prakiraan-curah-hujan-musim-kemarau/prakiraan-curah-hujan-musim-kemarau-di-propinsi-jawa-timur/prakiraan-curah-hujan-musim-kemarau-tahun-2021-zona-musim-di
...
show less
Hacking
Web App Attack