๐ฌ๐ท
setupgr
2026-06-21 19:34:57
(1 month ago)
(mod_security) mod_security (id:11000010) triggered by 40.77.179.56 (US/United States/Washington/Qui ...
show more
(mod_security) mod_security (id:11000010) triggered by 40.77.179.56 (US/United States/Washington/Quincy/-/[AS8075 MICROSOFT-CORP-MSN-AS-BLOCK]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Sun Jun 21 22:34:54.561697 2026] [security2:error] [pid 1109141:tid 1224641] [remote 40.77.179.56:61066] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "104"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in fashionfragonard.gr"] [severity "CRITICAL"] [hostname "fashionfragonard.gr"] [uri "/wp-content/plugins/elementor/assets/lib/animations/styles/fadeInRight.min.css"] [unique_id "ajg83iXd52GCp6daGPojlAAA1yI"], referer: https://fashionfragonard.gr/
show less
Port Scan
๐ฌ๐ท
setupgr
2026-06-20 17:30:51
(1 month ago)
(mod_security) mod_security (id:11000010) triggered by 40.77.179.56 (US/United States/Washington/Qui ...
show more
(mod_security) mod_security (id:11000010) triggered by 40.77.179.56 (US/United States/Washington/Quincy/-/[AS8075 MICROSOFT-CORP-MSN-AS-BLOCK]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Sat Jun 20 20:30:50.191213 2026] [security2:error] [pid 2277:tid 783351] [remote 40.77.179.56:65025] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "104"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in www.setworldup.com"] [severity "CRITICAL"] [hostname "www.setworldup.com"] [uri "/wp-content/cache/min/1/wp-content/uploads/elementor/google-fonts/css/robotoslab.css"] [unique_id "ajbOSlVjV5VR3hAZ4rldWAAATiI"], referer: https://setworldup.com/
show less
Port Scan
๐ฌ๐ท
setupgr
2026-06-17 06:01:21
(1 month ago)
(mod_security) mod_security (id:11000010) triggered by 40.77.179.56 (US/United States/Washington/Qui ...
show more
(mod_security) mod_security (id:11000010) triggered by 40.77.179.56 (US/United States/Washington/Quincy/-/[AS8075 MICROSOFT-CORP-MSN-AS-BLOCK]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Wed Jun 17 09:01:15.142059 2026] [security2:error] [pid 2280080:tid 2280090] [remote 40.77.179.56:26179] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "104"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in ftiaxtomonosou.gr"] [severity "CRITICAL"] [hostname "ftiaxtomonosou.gr"] [uri "/wp-content/uploads/elementor/css/custom-frontend.min.css"] [unique_id "ajI4K8sskNLCXd8cDXSdGAAACgk"], referer: https://ftiaxtomonosou.gr/%CF%84%CE%B1_%CE%B5%CE%AF%CE%B4%CE%B7_%CF%84%CE%BF%CF%85_%CE%BE%CF%8D%CE%BB%CE%BF%CF%85/%CE%B1%CE%BA%CE%B1%CE%BA%CE%B9%CE%B1/
show less
Port Scan
๐ฌ๐ท
setupgr
2026-06-15 07:07:36
(1 month ago)
(mod_security) mod_security (id:11000010) triggered by 40.77.179.56: 1 in the last 86400 secs; Ports ...
show more
(mod_security) mod_security (id:11000010) triggered by 40.77.179.56: 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Mon Jun 15 10:07:31.492606 2026] [security2:error] [pid 921871:tid 1739616] [remote 40.77.179.56:61066] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "103"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in ftiaxtomonosou.gr"] [severity "CRITICAL"] [hostname "ftiaxtomonosou.gr"] [uri "/wp-content/cache/min/1/wp-content/plugins/xt-woo-variation-swatches-pro/xt-framework/includes/modules/add-to-cart/assets/css/add-to-cart.css"] [unique_id "ai-ks-2clReoPvlJKliPiQAA1iQ"], referer: https://ftiaxtomonosou.gr/%CE%BF%CE%B9%CE%BA%CE%BF%CE%B4%CE%BF%CE%BC%CE%B9%CE%BA%CE%AE-%CE%BE%CF%85%CE%BB%CE%B5%CE%AF%CE%B1/
show less
Port Scan
๐ฌ๐ท
setupgr
2026-06-14 06:32:35
(1 month ago)
(mod_security) mod_security (id:11000010) triggered by 40.77.179.56: 1 in the last 86400 secs; Ports ...
show more
(mod_security) mod_security (id:11000010) triggered by 40.77.179.56: 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Sun Jun 14 09:32:30.858831 2026] [security2:error] [pid 921889:tid 921983] [remote 40.77.179.56:26242] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "103"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in ftiaxtomonosou.gr"] [severity "CRITICAL"] [hostname "ftiaxtomonosou.gr"] [uri "/wp-content/plugins/dynamic-content-for-elementor/assets/js/fix-background-loop.min.js"] [unique_id "ai5K_iykT1eM1OfD7bvVzAABVgA"], referer: https://ftiaxtomonosou.gr/%CE%B5%CF%80%CE%B9%CE%BA%CE%BF%CE%B9%CE%BD%CF%89%CE%BD%CE%AF%CE%B1/
show less
Port Scan
๐ญ๐บ
kranem
2026-06-04 21:00:30
(1 month ago)
Triggered Cloudflare WAF from US.
Action taken: BLOCK
ASN: 8075 (Microsoft Corporation)
Protocol: HT ...
show more
Triggered Cloudflare WAF from US.
Action taken: BLOCK
ASN: 8075 (Microsoft Corporation)
Protocol: HTTP/2 (GET method)
Endpoint: /_nuxt/BUHO-o2r.js
Timestamp: 2026-06-04T20:19:21Z
User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm) Chrome/136.0.0.0 Safari/537.36
show less
Bad Web Bot
๐ฆ๐บ
MAGIC
2026-05-31 00:03:48
(1 month ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ซ๐ฎ
YF
2026-05-21 06:04:56
(2 months ago)
WordPress content enumeration
Web App Attack
๐บ๐ธ
RLDD
2026-05-19 15:32:20
(2 months ago)
WP probing -nov
Web App Attack
Anonymous
2026-05-14 19:17:34
(2 months ago)
40.77.179.56 - - [14/May/2026:19:17:32 +0000] "GET /svg/moon-phase-7.svg HTTP/2.0" 444 0 "https://ta ...
show more
40.77.179.56 - - [14/May/2026:19:17:32 +0000] "GET /svg/moon-phase-7.svg HTTP/2.0" 444 0 "https://taiwan.suann.net/sw.js" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
40.77.179.56 - - [14/May/2026:19:17:32 +0000] "GET /svg/moon-phase-6.svg HTTP/2.0" 444 0 "https://taiwan.suann.net/sw.js" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
40.77.179.56 - - [14/May/2026:19:17:33 +0000] "GET /svg/moon-phase-5.svg HTTP/2.0" 444 0 "https://taiwan.suann.net/sw.js" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ฆ๐บ
Anytech
2026-04-05 19:54:01
(3 months ago)
Blocked by Conn-Monitor: Automated bot activity
Web App Attack
๐ฆ๐บ
Anytech
2026-04-04 00:31:06
(3 months ago)
Blocked by Conn-Monitor: Automated bot activity
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-31 05:24:40
(3 months ago)
(mod_security) mod_security (id:210730) triggered by 40.77.179.56 (msnbot-40-77-179-56.search.msn.co ...
show more
(mod_security) mod_security (id:210730) triggered by 40.77.179.56 (msnbot-40-77-179-56.search.msn.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 31 01:24:34.395808 2026] [security2:error] [pid 16981:tid 16981] [client 40.77.179.56:20864] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||globaldentalservices.com|F|2"] [data ".axd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "globaldentalservices.com"] [uri "/WebResource.axd"] [unique_id "actakorQPirKqn-mqYETVQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
as211431.net
2026-03-17 20:43:31
(4 months ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/2 (POST method ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/2 (POST method)
Endpoint: /cdn-cgi/zaraz/t
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/136.0.7103.49 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐จ๐ณ
ThreatBook.io
2026-02-28 00:40:38
(4 months ago)
ThreatBook Intelligence: Info more details on http://threatbook.io/ip/40.77.179.56
2026-02-27 18:20: ...
show more
ThreatBook Intelligence: Info more details on http://threatbook.io/ip/40.77.179.56
2026-02-27 18:20:00 /Login_files/saved_resource.html
show less
Web App Attack