🇨🇦
Anytech
2026-08-27 21:21:41
(3 weeks ago)
Blocked by Conn-Monitor: http-bad-user-agent
Web App Attack
Bad Web Bot
Anonymous
2026-08-22 19:02:09
(3 weeks ago)
Probing for known exploit paths (.env, .git, wp-admin, shell files, etc.). Single-strike ban policy ...
show more
Probing for known exploit paths (.env, .git, wp-admin, shell files, etc.). Single-strike ban policy — zero tolerance for exploit scanning. Banned Aug 22, 19:02 UTC. Origin: United States, Moses Lake.
show less
Hacking
Bad Web Bot
Web App Attack
🇨🇭
AlainR
2026-08-21 17:37:01
(4 weeks ago)
are-Wrong key : url__ =>/matomo/matomo.php?action_name=%C3%89glise%20ouverte%20%C3%A0%20Echallens&am ...
show more
are-Wrong key : url__ =>/matomo/matomo.php?action_name=%C3%89glise%20ouverte%20%C3%A0%20Echallens&idsite=3&rec=1&r=309834&h=10&m=36&s=55&url=https%3A%2F%2Fegliseouverteechallens.ch%2F&_id=33aefabcbe0331fc&_idn=1&send_image=0&_refts=0&pv_id=NUzFjI&pf_net=0&pf_srv=24&am...
show less
Hacking
🇺🇸
TPI-Abuse
2026-06-26 16:17:26
(2 months ago)
(mod_security) mod_security (id:211700) triggered by 40.77.179.34 (msnbot-40-77-179-34.search.msn.co ...
show more
(mod_security) mod_security (id:211700) triggered by 40.77.179.34 (msnbot-40-77-179-34.search.msn.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 26 12:17:18.543060 2026] [security2:error] [pid 1526:tid 1526] [client 40.77.179.34:46545] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i:[ ()]case ?\\\\(|\\\\) ?like ?\\\\(|\\\\bhaving ?[^\\\\s]+ ?[^\\\\w ]|\\\\bif ?\\\\([\\\\d\\\\w] ?[=<>~])" at MATCHED_VAR. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/22_SQL_SQLi.conf"] [line "33"] [id "211700"] [rev "8"] [msg "COMODO WAF: Detects conditional SQL injection attempts||15tobefit.starrmail.net|F|2"] [data "Matched Data: having found within MATCHED_VAR: live-blog-14373147-2026-06-26-dear-men-i-know-that-feeling-of-having-your-successes-taken-for-granted-but-your"] [severity "CRITICAL"] [tag "CWAF"] [tag "SQLi"] [hostname "15tobefit.starrmail.net"] [uri "/"] [unique_id "aj6mDkc9bPWdOnJGeIB_cwAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇷
setupgr
2026-06-20 08:51:22
(2 months ago)
(mod_security) mod_security (id:11000010) triggered by 40.77.179.34 (US/United States/Washington/Qui ...
show more
(mod_security) mod_security (id:11000010) triggered by 40.77.179.34 (US/United States/Washington/Quincy/-/[AS8075 MICROSOFT-CORP-MSN-AS-BLOCK]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Sat Jun 20 11:51:20.270404 2026] [security2:error] [pid 579778:tid 579782] [remote 40.77.179.34:34636] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "104"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in ftiaxtomonosou.gr"] [severity "CRITICAL"] [hostname "ftiaxtomonosou.gr"] [uri "/wp-content/cache/min/1/wp-content/uploads/astra-addon/astra-addon-6a20a87a31fd78-15232167.css"] [unique_id "ajZUiHz2f_B-MiyFXhvhIQAAkwM"], referer: https://ftiaxtomonosou.gr/%CF%80%CE%B1%CF%84%CF%8E%CE%BC%CE%B1%CF%84%CE%B1/
show less
Port Scan
🇬🇷
setupgr
2026-06-18 20:16:24
(3 months ago)
(mod_security) mod_security (id:11000010) triggered by 40.77.179.34 (US/United States/Washington/Qui ...
show more
(mod_security) mod_security (id:11000010) triggered by 40.77.179.34 (US/United States/Washington/Quincy/-/[AS8075 MICROSOFT-CORP-MSN-AS-BLOCK]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Thu Jun 18 23:16:18.423645 2026] [security2:error] [pid 3299839:tid 3299866] [remote 40.77.179.34:54880] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "104"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in ftiaxtomonosou.gr"] [severity "CRITICAL"] [hostname "ftiaxtomonosou.gr"] [uri "/wp-content/uploads/elementor/css/post-24443.css"] [unique_id "ajRSErVo5z2-J_irJdJWGAAA0hM"], referer: https://ftiaxtomonosou.gr/%CF%84%CF%8D%CF%80%CE%BF%CF%82_%CE%BD%CE%AD%CE%BF%CF%85/%CE%BA%CE%BF%CF%80%CE%AE-%CE%BE%CF%85%CE%BB%CE%B5%CE%AF%CE%B1%CF%82/
show less
Port Scan
🇬🇷
setupgr
2026-06-18 04:34:32
(3 months ago)
(mod_security) mod_security (id:11000010) triggered by 40.77.179.34 (US/United States/Washington/Qui ...
show more
(mod_security) mod_security (id:11000010) triggered by 40.77.179.34 (US/United States/Washington/Quincy/-/[AS8075 MICROSOFT-CORP-MSN-AS-BLOCK]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Thu Jun 18 07:34:28.036394 2026] [security2:error] [pid 2280080:tid 2280099] [remote 40.77.179.34:18887] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "104"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in ftiaxtomonosou.gr"] [severity "CRITICAL"] [hostname "ftiaxtomonosou.gr"] [uri "/wp-content/cache/min/1/wp-content/plugins/jet-menu/integration/themes/astra/assets/js/script.js"] [unique_id "ajN1VMsskNLCXd8cDXTmTQAAChI"], referer: https://ftiaxtomonosou.gr/shop
show less
Port Scan
🇬🇷
setupgr
2026-06-17 08:30:32
(3 months ago)
(mod_security) mod_security (id:11000010) triggered by 40.77.179.34 (US/United States/Washington/Qui ...
show more
(mod_security) mod_security (id:11000010) triggered by 40.77.179.34 (US/United States/Washington/Quincy/-/[AS8075 MICROSOFT-CORP-MSN-AS-BLOCK]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Wed Jun 17 11:30:28.570969 2026] [security2:error] [pid 2210293:tid 2210300] [remote 40.77.179.34:54857] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "104"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in cpanagiotou.gr"] [severity "CRITICAL"] [hostname "cpanagiotou.gr"] [uri "/wp-content/plugins/elementor/assets/css/widget-social-icons.min.css"] [unique_id "ajJbJNMtn8QwdXQy9m7IUAABVgQ"], referer: https://cpanagiotou.gr/
show less
Port Scan
🇬🇷
setupgr
2026-06-12 12:31:01
(3 months ago)
(mod_security) mod_security (id:11000010) triggered by 40.77.179.34: 1 in the last 86400 secs; Ports ...
show more
(mod_security) mod_security (id:11000010) triggered by 40.77.179.34: 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Fri Jun 12 15:30:51.094257 2026] [security2:error] [pid 295411:tid 295424] [remote 40.77.179.34:63887] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "103"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in ftiaxtomonosou.gr"] [severity "CRITICAL"] [hostname "ftiaxtomonosou.gr"] [uri "/wp-includes/js/jquery/ui/core.min.js"] [unique_id "aiv7-1PDvd2Vn-7vAMbj-QAARQA"], referer: https://ftiaxtomonosou.gr/%CF%80%CE%B1%CF%84%CF%8E%CE%BC%CE%B1%CF%84%CE%B1/
show less
Port Scan
Anonymous
2026-05-13 08:29:24
(4 months ago)
40.77.179.34 - - [13/May/2026:08:29:19 +0000] "GET /svg/moon-phase-5.svg HTTP/2.0" 444 0 "https://ta ...
show more
40.77.179.34 - - [13/May/2026:08:29:19 +0000] "GET /svg/moon-phase-5.svg HTTP/2.0" 444 0 "https://taiwan.suann.net/sw.js" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
40.77.179.34 - - [13/May/2026:08:29:20 +0000] "GET /svg/moon-phase-4.svg HTTP/2.0" 444 0 "https://taiwan.suann.net/sw.js" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
40.77.179.34 - - [13/May/2026:08:29:20 +0000] "GET /svg/moon-phase-2.svg HTTP/2.0" 444 0 "https://taiwan.suann.net/sw.js" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
🇺🇸
www.nomadomia.com
2026-04-09 20:29:52
(5 months ago)
Unauthorised API scanning
Port Scan
Hacking
Web App Attack
🇦🇺
Anytech
2026-04-03 02:38:10
(5 months ago)
Blocked by Conn-Monitor: Automated bot activity
Web App Attack
🇺🇸
RLDD
2026-01-01 21:43:37
(8 months ago)
WP probing -nov
Web App Attack
🇦🇺
MAGIC
2025-11-20 03:27:09
(9 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
🇺🇸
TPI-Abuse
2025-11-13 19:22:53
(10 months ago)
(mod_security) mod_security (id:225170) triggered by 40.77.179.34 (msnbot-40-77-179-34.search.msn.co ...
show more
(mod_security) mod_security (id:225170) triggered by 40.77.179.34 (msnbot-40-77-179-34.search.msn.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Nov 13 14:22:46.556653 2025] [security2:error] [pid 9647:tid 9647] [client 40.77.179.34:8769] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.rkhindustries.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.rkhindustries.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aRYwBpT7KbFOettJjFmzhAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack