๐ฌ๐ง
thetomtaylor.co.uk
2026-09-08 23:08:01
(2 weeks ago)
Fail2Ban - [WAF]ModSecurity OWASP CRS rule violation on nginx-modsecurity ... [ice01,ice02,wa01]
Hacking
SQL Injection
Web App Attack
๐ฌ๐ง
thetomtaylor.co.uk
2026-09-08 22:07:01
(2 weeks ago)
Fail2Ban - [WAF]ModSecurity OWASP CRS rule violation on nginx-modsecurity ... [wa02]
Hacking
SQL Injection
Web App Attack
๐ฌ๐ท
setupgr
2026-06-20 17:30:52
(3 months ago)
(mod_security) mod_security (id:11000010) triggered by 40.77.179.119 (US/United States/Washington/Qu ...
show more
(mod_security) mod_security (id:11000010) triggered by 40.77.179.119 (US/United States/Washington/Quincy/-/[AS8075 MICROSOFT-CORP-MSN-AS-BLOCK]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Sat Jun 20 20:30:50.150282 2026] [security2:error] [pid 2277:tid 2294] [remote 40.77.179.119:63884] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "104"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in www.setworldup.com"] [severity "CRITICAL"] [hostname "www.setworldup.com"] [uri "/wp-content/plugins/elementor/assets/js/webpack.runtime.min.js"] [unique_id "ajbOSlVjV5VR3hAZ4rldVwAAUAI"], referer: https://setworldup.com/
show less
Port Scan
๐ฌ๐ท
setupgr
2026-06-17 08:30:32
(3 months ago)
(mod_security) mod_security (id:11000010) triggered by 40.77.179.119 (US/United States/Washington/Qu ...
show more
(mod_security) mod_security (id:11000010) triggered by 40.77.179.119 (US/United States/Washington/Quincy/-/[AS8075 MICROSOFT-CORP-MSN-AS-BLOCK]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Wed Jun 17 11:30:27.524514 2026] [security2:error] [pid 2210175:tid 2210196] [remote 40.77.179.119:13696] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "104"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in cpanagiotou.gr"] [severity "CRITICAL"] [hostname "cpanagiotou.gr"] [uri "/wp-content/plugins/premium-addons-for-elementor/assets/frontend/min-css/button-line.min.css"] [unique_id "ajJbI39oGssBgNwsPFtQzgAAUBM"], referer: https://cpanagiotou.gr/
show less
Port Scan
๐ฌ๐ท
setupgr
2026-06-16 22:24:26
(3 months ago)
(mod_security) mod_security (id:11000010) triggered by 40.77.179.119: 1 in the last 86400 secs; Port ...
show more
(mod_security) mod_security (id:11000010) triggered by 40.77.179.119: 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Wed Jun 17 01:24:24.157566 2026] [security2:error] [pid 2210295:tid 2210333] [remote 40.77.179.119:36874] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "104"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in ftiaxtomonosou.gr"] [severity "CRITICAL"] [hostname "ftiaxtomonosou.gr"] [uri "/wp-content/uploads/elementor/css/post-21047.css"] [unique_id "ajHNGIHi3fYqxwKQHNb7JQAB0AA"], referer: https://ftiaxtomonosou.gr/%CE%AD%CF%80%CE%B9%CF%80%CE%BB%CE%B1/%ce%b3%ce%ad%cf%81%ce%b1%ce%ba%ce%b1%cf%82/
show less
Port Scan
๐ฌ๐ท
setupgr
2026-06-14 10:27:16
(3 months ago)
(mod_security) mod_security (id:11000010) triggered by 40.77.179.119: 1 in the last 86400 secs; Port ...
show more
(mod_security) mod_security (id:11000010) triggered by 40.77.179.119: 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Sun Jun 14 13:27:15.102787 2026] [security2:error] [pid 921889:tid 922028] [remote 40.77.179.119:46469] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "103"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in cpanagiotou.gr"] [severity "CRITICAL"] [hostname "cpanagiotou.gr"] [uri "/wp-content/plugins/premium-addons-for-elementor/assets/frontend/min-js/lottie.min.js"] [unique_id "ai6CAyykT1eM1OfD7bvj1QABSxM"], referer: https://cpanagiotou.gr/en/contact
show less
Port Scan
Anonymous
2026-05-13 10:09:51
(4 months ago)
40.77.179.119 - - [13/May/2026:10:09:48 +0000] "GET /sw.js HTTP/2.0" 444 0 "https://taiwan.suann.net ...
show more
40.77.179.119 - - [13/May/2026:10:09:48 +0000] "GET /sw.js HTTP/2.0" 444 0 "https://taiwan.suann.net/benchmark/1209/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
40.77.179.119 - - [13/May/2026:10:09:48 +0000] "GET /workbox-1d305bb8.js HTTP/2.0" 444 0 "https://taiwan.suann.net/sw.js" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
40.77.179.119 - - [13/May/2026:10:09:49 +0000] "GET /sass/tailwind.scss HTTP/2.0" 444 0 "https://taiwan.suann.net/sw.js" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
interbiznw.com
2026-03-15 22:20:39
(6 months ago)
wordpress-fuzzing
Hacking
Brute-Force
Exploited Host
Web App Attack
๐จ๐ณ
ThreatBook.io
2026-01-12 23:08:13
(8 months ago)
ThreatBook Intelligence: Info more details on http://threatbook.io/ip/40.77.179.119
2026-01-12 11:55 ...
show more
ThreatBook Intelligence: Info more details on http://threatbook.io/ip/40.77.179.119
2026-01-12 11:55:59 /styles/vendor.css
show less
Web App Attack
๐บ๐ธ
RLDD
2026-01-02 20:29:58
(8 months ago)
WP probing -nov
Web App Attack
๐ฆ๐บ
MAGIC
2025-12-27 01:08:08
(8 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ฆ๐บ
MAGIC
2025-12-04 02:04:42
(9 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ฎ๐ฉ
hermawan
2025-11-28 15:25:06
(9 months ago)
[Fri Nov 28 22:04:36.476012 2025] [security2:error] [pid 304049:tid 140466461206208] [client 40.77.1 ...
show more
[Fri Nov 28 22:04:36.476012 2025] [security2:error] [pid 304049:tid 140466461206208] [client 40.77.179.119:58435] ModSecurity: Access denied with code 403 (phase 1). Match of "pm googlebot " against "REQUEST_HEADERS:From" required. [file "/etc/modsecurity/coreruleset-4.20.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "117"] [id "448105"] [msg "BAD REQUEST Header From "] [data "Matched Data: found within REQUEST_HEADERS:From: bingbot(at)microsoft.com request_line = GET /script-v180.js HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/script-v180.js"] [unique_id "aSm6BGqZuEY-U53hS25lawADigA"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[304050] [+Eqh8qhBaRE] [aSm6BGqZuEY-U53hS25lawADigA] keep_alive=[1] [2025-11-28 22:04:36.476015] [R:aSm6BGqZuEY-U53hS25lawADigA] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm) Chrome/100.0.4896.127 Safari/537.36' Host:'staklim-jatim.bmkg.go.i
...
show less
Hacking
Web App Attack
๐ฆ๐บ
MAGIC
2025-11-08 03:13:36
(10 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-10-29 10:00:21
(10 months ago)
(mod_security) mod_security (id:210730) triggered by 40.77.179.119 (msnbot-40-77-179-119.search.msn. ...
show more
(mod_security) mod_security (id:210730) triggered by 40.77.179.119 (msnbot-40-77-179-119.search.msn.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 29 06:00:09.791233 2025] [security2:error] [pid 12774:tid 12774] [client 40.77.179.119:53508] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||civilwarzone.com|F|2"] [data ".dll"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "civilwarzone.com"] [uri "/~site/Scripts_ExternalRedirect/ExternalRedirect.dll"] [unique_id "aQHlqSt8ZiHN5JTu-wfd4gAAAAQ"], referer: https://civilwarzone.com/SCormanyDiary.html
show less
Brute-Force
Bad Web Bot
Web App Attack