๐บ๐ธ
JCB
2026-09-22 07:09:00
(2 weeks ago)
[Mon Sep 21 19:57:26 2026] [info] [client 40.77.179.223:6595] AH01382: Request header read timeout
Web App Attack
Hacking
Anonymous
2026-09-10 08:25:32
(4 weeks ago)
WEB attack
Brute-Force
๐จ๐ฆ
Anytech
2026-08-28 06:19:39
(1 month ago)
Blocked by Conn-Monitor: http-bad-user-agent
Web App Attack
Bad Web Bot
๐ฎ๐ฉ
sockominfo
2026-07-28 15:00:53
(2 months ago)
Double URL encoding detection. Threat Score: 7.9/10 (HIGH). Confidence: 60%. CVSS v3.1: 7.3/10 (High ...
show more
Double URL encoding detection. Threat Score: 7.9/10 (HIGH). Confidence: 60%. CVSS v3.1: 7.3/10 (High). CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L. Bayesian Probability: 87%. MITRE ATT&CK: T1110 (Brute Force). Tactic: TA0001. Freshness: Fresh. Source Reputation: UNKNOWN. Methodology: CVSS 3.1 + Bayesian + Temporal + Environmental + MITRE ATT&CK + OWASP. Standards: ISO/IEC 27065:2022, NIST SP 800-30, IEEE S&P 2020. Reported by TangerangKota-CSIRT. Status: MALICIOUS
show less
Hacking
Web App Attack
๐ฎ๐ฉ
sockominfo
2026-07-28 14:00:09
(2 months ago)
Double URL encoding detection. Threat Score: 6.8/10 (MEDIUM). Reported by TangerangKota-CSIRT
Hacking
Web App Attack
๐ฎ๐ฉ
sockominfo
2026-07-28 13:00:09
(2 months ago)
Double URL encoding detection. Threat Score: 6.9/10 (MEDIUM). Reported by TangerangKota-CSIRT
Hacking
Web App Attack
๐บ๐ธ
TheJimmo
2026-06-21 03:15:03
(3 months ago)
40.77.179.223 40.77.179.223 - - [21/Jun/2026:03:15:02 +0000] "GET /index.php?app=core&module=system& ...
show more
40.77.179.223 40.77.179.223 - - [21/Jun/2026:03:15:02 +0000] "GET /index.php?app=core&module=system&controller=ajax&do=attachmentInfo&csrfKey=0a01c4923b2581b8cfd8b51939cb049f&attachIDs%5B40979%5D=true HTTP/1.1" 403 61 "https://foreverpontiac.com/forums/topic/19727-new-zealand-trip-2" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm) Chrome/136.0.0.0 Safari/537.36"
40.77.179.223 40.77.179.223 - - [21/Jun/2026:03:15:02 +0000] "GET /index.php?app=core&module=system&controller=ajax&do=attachmentInfo&csrfKey=0a01c4923b2581b8cfd8b51939cb049f&attachIDs%5B41284%5D=true&attachIDs%5B41285%5D=true&attachIDs%5B41286%5D=true&attachIDs%5B41287%5D=true HTTP/1.1" 403 61 "https://foreverpontiac.com/forums/topic/19727-new-zealand-trip-2" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm) Chrome/136.0.0.0 Safari/537.36"
40.77.179.223 40.77.179.223 - - [21/Jun/2026:03:15:02 +0000] "GET
...
show less
Bad Web Bot
Web App Attack
๐ฌ๐ท
setupgr
2026-06-20 15:31:05
(3 months ago)
(mod_security) mod_security (id:11000010) triggered by 40.77.179.223 (US/United States/Washington/Qu ...
show more
(mod_security) mod_security (id:11000010) triggered by 40.77.179.223 (US/United States/Washington/Quincy/-/[AS8075 MICROSOFT-CORP-MSN-AS-BLOCK]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Sat Jun 20 18:31:03.410772 2026] [security2:error] [pid 2276:tid 2317] [remote 40.77.179.223:41736] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "104"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in ftiaxtomonosou.gr"] [severity "CRITICAL"] [hostname "ftiaxtomonosou.gr"] [uri "/wp-content/uploads/elementor/css/post-9354.css"] [unique_id "ajayN_FOzdhEIc8u07cpYwAADBY"], referer: https://ftiaxtomonosou.gr/
show less
Port Scan
๐ฌ๐ท
setupgr
2026-06-13 14:47:26
(3 months ago)
(mod_security) mod_security (id:11000010) triggered by 40.77.179.223: 1 in the last 86400 secs; Port ...
show more
(mod_security) mod_security (id:11000010) triggered by 40.77.179.223: 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Sat Jun 13 17:47:24.218133 2026] [security2:error] [pid 864871:tid 865034] [remote 40.77.179.223:64961] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "103"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in fashionfragonard.gr"] [severity "CRITICAL"] [hostname "fashionfragonard.gr"] [uri "/wp-content/plugins/woocommerce/assets/js/js-cookie/js.cookie.min.js"] [unique_id "ai1tfGz1K1AoECh-J669VAABRhU"], referer: https://fashionfragonard.gr/
show less
Port Scan
๐ฌ๐ท
setupgr
2026-06-12 12:31:01
(3 months ago)
(mod_security) mod_security (id:11000010) triggered by 40.77.179.223: 1 in the last 86400 secs; Port ...
show more
(mod_security) mod_security (id:11000010) triggered by 40.77.179.223: 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Fri Jun 12 15:30:48.916473 2026] [security2:error] [pid 295448:tid 295575] [remote 40.77.179.223:20740] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "103"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in ftiaxtomonosou.gr"] [severity "CRITICAL"] [hostname "ftiaxtomonosou.gr"] [uri "/wp-content/cache/min/1/wp-content/plugins/jet-menu/assets/public/css/public.css"] [unique_id "aiv7-McwKSx66h482SeI-QABDAU"], referer: https://ftiaxtomonosou.gr/%CF%80%CE%B1%CF%84%CF%8E%CE%BC%CE%B1%CF%84%CE%B1/
show less
Port Scan
๐ฌ๐ท
setupgr
2026-06-11 07:21:07
(3 months ago)
(mod_security) mod_security (id:11000010) triggered by 40.77.179.223: 1 in the last 86400 secs; Port ...
show more
(mod_security) mod_security (id:11000010) triggered by 40.77.179.223: 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Thu Jun 11 10:21:05.377227 2026] [security2:error] [pid 2066467:tid 2099274] [remote 40.77.179.223:3590] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "103"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in sea-sound.com"] [severity "CRITICAL"] [hostname "sea-sound.com"] [uri "/wp-content/cache/min/1/wp-content/uploads/elementor/google-fonts/css/nothingyoucoulddo.css"] [unique_id "aiph4XN0xdA8CUhjxYD89QABTR4"], referer: https://sea-sound.com/
show less
Port Scan
๐ฆ๐บ
MAGIC
2026-06-04 01:27:34
(4 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ซ๐ฎ
inlink.ltd
2026-05-17 09:28:04
(4 months ago)
WAF PoW failure, possible botnet behavior, IP mismatch, POST request made by 40.77.179.223 was not I ...
show more
WAF PoW failure, possible botnet behavior, IP mismatch, POST request made by 40.77.179.223 was not IP who made PoW GET request earlier
show less
DDoS Attack
Exploited Host
Anonymous
2026-05-16 10:29:41
(4 months ago)
40.77.179.223 - - [16/May/2026:10:29:37 +0000] "GET /workbox-835c8c05.js HTTP/2.0" 444 0 "https://ta ...
show more
40.77.179.223 - - [16/May/2026:10:29:37 +0000] "GET /workbox-835c8c05.js HTTP/2.0" 444 0 "https://taiwan.suann.net/sw.js" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
40.77.179.223 - - [16/May/2026:10:29:39 +0000] "GET /svg/moon-phase-0.svg HTTP/2.0" 444 0 "https://taiwan.suann.net/sw.js" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
40.77.179.223 - - [16/May/2026:10:29:39 +0000] "GET /sass/tailwind.scss HTTP/2.0" 444 0 "https://taiwan.suann.net/sw.js" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ซ๐ท
pocketpark
2026-05-04 21:06:48
(5 months ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action: JSCHALLENGE | Protocol: HTTP/2 (GET) | En ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action: JSCHALLENGE | Protocol: HTTP/2 (GET) | Endpoint: /_next/static/chunks/7254-1788eb37ed0987f1.js | UA: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm) Chrome/136.0.0.0 Safari/537.36 โข Generated by: github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot