๐ฌ๐ท
setupgr
2026-06-17 06:17:51
(2 months ago)
(mod_security) mod_security (id:11000010) triggered by 40.77.179.17 (US/United States/Washington/Qui ...
show more
(mod_security) mod_security (id:11000010) triggered by 40.77.179.17 (US/United States/Washington/Quincy/-/[AS8075 MICROSOFT-CORP-MSN-AS-BLOCK]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Wed Jun 17 09:17:48.500821 2026] [security2:error] [pid 2210175:tid 2210196] [remote 40.77.179.17:37830] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "104"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in ftiaxtomonosou.gr"] [severity "CRITICAL"] [hostname "ftiaxtomonosou.gr"] [uri "/wp-content/cache/min/1/wp-content/plugins/jet-engine/includes/modules/maps-listings/assets/js/public/map-sync.js"] [unique_id "ajI8DH9oGssBgNwsPFs62AAASRM"], referer: https://ftiaxtomonosou.gr/%CE%BD%CE%AD%CE%B1/%cf%84%ce%b9-%ce%b5%ce%af%ce%bd%ce%b1%ce%b9-%cf%84%ce%bf-o-s-b/
show less
Port Scan
๐ฌ๐ท
setupgr
2026-06-15 21:10:27
(3 months ago)
(mod_security) mod_security (id:11000010) triggered by 40.77.179.17: 1 in the last 86400 secs; Ports ...
show more
(mod_security) mod_security (id:11000010) triggered by 40.77.179.17: 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Tue Jun 16 00:10:20.011361 2026] [security2:error] [pid 1917021:tid 1917164] [remote 40.77.179.17:26565] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "103"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in ftiaxtomonosou.gr"] [severity "CRITICAL"] [hostname "ftiaxtomonosou.gr"] [uri "/wp-content/uploads/elementor/css/post-21047.css"] [unique_id "ajBqPA799xbSHUG5HIroywAAxQ4"], referer: https://ftiaxtomonosou.gr/%CF%84%CE%B1_%CE%B5%CE%AF%CE%B4%CE%B7_%CF%84%CE%BF%CF%85_%CE%BE%CF%8D%CE%BB%CE%BF%CF%85/%ce%b4%ce%b5%cf%83%cf%80%ce%bf%cf%84%ce%ac%ce%ba%ce%b9-%ce%b5%cf%85%cf%81%cf%8e%cf%80%ce%b7%cf%82/
show less
Port Scan
๐ฌ๐ท
setupgr
2026-06-13 14:47:26
(3 months ago)
(mod_security) mod_security (id:11000010) triggered by 40.77.179.17: 1 in the last 86400 secs; Ports ...
show more
(mod_security) mod_security (id:11000010) triggered by 40.77.179.17: 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Sat Jun 13 17:47:23.948842 2026] [security2:error] [pid 864871:tid 877155] [remote 40.77.179.17:60228] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "103"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in fashionfragonard.gr"] [severity "CRITICAL"] [hostname "fashionfragonard.gr"] [uri "/wp-content/cache/min/1/wp-content/plugins/shopengine/modules/quick-view/assets/js/script.js"] [unique_id "ai1te2z1K1AoECh-J669TQABQh8"], referer: https://fashionfragonard.gr/
show less
Port Scan
Anonymous
2026-05-17 12:06:41
(3 months ago)
40.77.179.17 - - [17/May/2026:12:05:57 +0000] "GET /svg/moon-phase-4.svg HTTP/2.0" 444 0 "https://ta ...
show more
40.77.179.17 - - [17/May/2026:12:05:57 +0000] "GET /svg/moon-phase-4.svg HTTP/2.0" 444 0 "https://taiwan.suann.net/sw.js" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
40.77.179.17 - - [17/May/2026:12:06:17 +0000] "GET /svg/moon-phase-2.svg HTTP/2.0" 444 0 "https://taiwan.suann.net/sw.js" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
40.77.179.17 - - [17/May/2026:12:06:38 +0000] "GET /sass/tailwind.scss HTTP/2.0" 444 0 "https://taiwan.suann.net/sw.js" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ฆ๐บ
Anytech
2026-04-05 02:06:27
(5 months ago)
Blocked by Conn-Monitor: Automated bot activity
Web App Attack
๐ฆ๐บ
Anytech
2026-04-03 09:09:53
(5 months ago)
Blocked by Conn-Monitor: Automated bot activity
Web App Attack
๐ท๐ช
hodi.host
2026-01-22 21:40:10
(7 months ago)
(CT) IP 40.77.179.17 (US/United States/msnbot-40-77-179-17.search.msn.com) found to have 2 connectio ...
show more
(CT) IP 40.77.179.17 (US/United States/msnbot-40-77-179-17.search.msn.com) found to have 2 connections; Ports: *; Direction: inout; Trigger: CT_LIMIT; Logs: tcp: 40.77.179.17:49029 -> 192.168.161.12:443 (TIME_WAIT)
tcp: 40.77.179.17:49028 -> 192.168.161.12:443 (ESTABLISHED)
show less
Port Scan
๐ฉ๐ช
FeG Deutschland
2025-11-21 19:27:53
(9 months ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 24
Exploited Host
Web App Attack
Anonymous
2025-10-18 18:20:03
(10 months ago)
Spoofing detected - pretending to be BingBot
Hacking
Web App Attack
๐จ๐ณ
ThreatBook.io
2025-10-18 00:53:27
(10 months ago)
ThreatBook Intelligence: Info more details on http://threatbook.io/ip/40.77.179.17
2025-10-17 16:20: ...
show more
ThreatBook Intelligence: Info more details on http://threatbook.io/ip/40.77.179.17
2025-10-17 16:20:29 /assets/custom.cdn.css
show less
Web App Attack
๐ฆ๐บ
MAGIC
2025-10-01 01:08:46
(11 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ฉ๐ช
neckaralb-admin.de
2025-09-27 02:30:01
(11 months ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐จ๐ณ
ThreatBook.io
2025-09-20 00:14:03
(11 months ago)
ThreatBook Intelligence: Info more details on http://threatbook.io/ip/40.77.179.17
2025-09-19 14:06: ...
show more
ThreatBook Intelligence: Info more details on http://threatbook.io/ip/40.77.179.17
2025-09-19 14:06:28 /docs/images/fonts/fonts.css
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-09-10 15:19:33
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 40.77.179.17 (msnbot-40-77-179-17.search.msn.co ...
show more
(mod_security) mod_security (id:210730) triggered by 40.77.179.17 (msnbot-40-77-179-17.search.msn.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 10 11:19:26.674737 2025] [security2:error] [pid 18076:tid 18076] [client 40.77.179.17:54658] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.civilwarzone.com|F|2"] [data ".dll"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.civilwarzone.com"] [uri "/~site/Scripts_ExternalRedirect/ExternalRedirect.dll"] [unique_id "aMGW_rlTlqE2W14Dq9U6zgAAAAA"], referer: https://www.civilwarzone.com/GettysburgAddress.html
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2025-09-09 20:15:14
(1 year ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 2
Exploited Host
Web App Attack