๐ฉ๐ช
Packets-Decreaser.NET
2025-06-28 16:10:57
(11 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
๐จ๐ฆ
TCP FAILED
2025-06-20 17:12:27
(11 months ago)
TCP Watch Auto Report: Detected a ddos attack and suspicious activity from this IP, indicating a pot ...
show more
TCP Watch Auto Report: Detected a ddos attack and suspicious activity from this IP, indicating a potential attack
show less
DDoS Attack
Hacking
IoT Targeted
๐บ๐ธ
VSM Networks
2025-06-19 08:21:24
(11 months ago)
Credential Stuffing
Brute-Force
๐บ๐ธ
uira.live
2025-06-18 23:38:56
(11 months ago)
Malicious activity detected from 139967 YAMNET-AS-ID PT. Yasmin Amanah Media towards host uira.live ...
show more
Malicious activity detected from 139967 YAMNET-AS-ID PT. Yasmin Amanah Media towards host uira.live (GET HTTP/2) @ 2025-06-18T23:38:56Z (7 occurrences)
show less
DDoS Attack
๐ฉ๐ช
Packets-Decreaser.NET
2025-06-14 12:21:37
(1 year ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
๐ช๐ธ
domotuto.com
2025-06-13 23:10:02
(1 year ago)
Mikrotik port scanner detected. EA4GKQ
Port Scan
๐ฉ๐ช
Schnuffi
2025-06-13 19:54:23
(1 year ago)
ports, 445/24H:1/7D:1
Port Scan
๐ฉ๐ช
Packets-Decreaser.NET
2025-06-13 11:54:09
(1 year ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
๐ฎ๐ฉ
hermawan
2025-06-11 15:54:54
(1 year ago)
[Wed Jun 11 22:54:24.219753 2025] [security2:error] [pid 354604:tid 140474059818688] [client 103.183 ...
show more
[Wed Jun 11 22:54:24.219753 2025] [security2:error] [pid 354604:tid 140474059818688] [client 103.183.10.184:59460] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "myactivity.google.com" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.14.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "439"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: myactivity.google.com found within REQUEST_HEADERS:Referer: https://myactivity.google.com/ request_line = GET /images/Klimatologi/Prakiraan/04_Prakiraan_6_Bulanan/Prakiraan_Musim/Prakiraan_Musim_Kemarau/Provinsi_Jawa_Timur/2025/Prediksi_Awal_Musim_Kemarau_Tahun_2025_Zona_Musim_di_Provinsi_Jawa_Timur.webp HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/images/Klimatologi/Prakiraan/04_Prakiraan_6_Bulanan/Prakiraan_Musim/Prakiraan_Musim_Kemarau/Provinsi_Jawa_Timur/2025/Prediksi_Awal_Musim_Kemarau_Tahun_2025_Zona_Musim_di_Provinsi_Jawa_Timur.webp"] [unique_id "aEmmsPmARZybiKJRTy
...
show less
Hacking
Web App Attack
๐ฎ๐ฉ
hermawan
2025-06-11 02:22:57
(1 year ago)
[Wed Jun 11 09:22:11.246016 2025] [security2:error] [pid 354272:tid 139883195623104] [client 103.183 ...
show more
[Wed Jun 11 09:22:11.246016 2025] [security2:error] [pid 354272:tid 139883195623104] [client 103.183.10.184:40290] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "myactivity.google.com" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.14.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "439"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: myactivity.google.com found within REQUEST_HEADERS:Referer: https://myactivity.google.com/ request_line = GET /images/Klimatologi/Prakiraan/04_Prakiraan_6_Bulanan/Prakiraan_Musim/Prakiraan_Musim_Kemarau/Provinsi_Jawa_Timur/2025/Prediksi_Awal_Musim_Kemarau_Tahun_2025_Zona_Musim_di_Provinsi_Jawa_Timur.jpg HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/images/Klimatologi/Prakiraan/04_Prakiraan_6_Bulanan/Prakiraan_Musim/Prakiraan_Musim_Kemarau/Provinsi_Jawa_Timur/2025/Prediksi_Awal_Musim_Kemarau_Tahun_2025_Zona_Musim_di_Provinsi_Jawa_Timur.jpg"] [unique_id "aEjoU1BPtwqD2aN_TNt_
...
show less
Hacking
Web App Attack
๐ฎ๐ฉ
hermawan
2025-06-08 11:20:27
(1 year ago)
[Sun Jun 08 18:20:27.027901 2025] [security2:error] [pid 455462:tid 139881784223424] [client 103.183 ...
show more
[Sun Jun 08 18:20:27.027901 2025] [security2:error] [pid 455462:tid 139881784223424] [client 103.183.10.184:57574] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "myactivity.google.com" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.14.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "439"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: myactivity.google.com found within REQUEST_HEADERS:Referer: https://myactivity.google.com/ request_line = GET /images/Klimatologi/Prakiraan/04_Prakiraan_6_Bulanan/Prakiraan_Musim/Prakiraan_Musim_Kemarau/Provinsi_Jawa_Timur/2025/Prediksi_Awal_Musim_Kemarau_Tahun_2025_Zona_Musim_di_Provinsi_Jawa_Timur.jpg HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/images/Klimatologi/Prakiraan/04_Prakiraan_6_Bulanan/Prakiraan_Musim/Prakiraan_Musim_Kemarau/Provinsi_Jawa_Timur/2025/Prediksi_Awal_Musim_Kemarau_Tahun_2025_Zona_Musim_di_Provinsi_Jawa_Timur.jpg"] [unique_id "aEVx-yhFiE9chF_gCHGR
...
show less
Hacking
Web App Attack
๐ฎ๐ฉ
hermawan
2025-05-29 05:40:06
(1 year ago)
[Thu May 29 12:39:34.956304 2025] [security2:error] [pid 812355:tid 139775987144384] [client 103.183 ...
show more
[Thu May 29 12:39:34.956304 2025] [security2:error] [pid 812355:tid 139775987144384] [client 103.183.10.184:33710] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "myactivity.google.com" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.14.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "439"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: myactivity.google.com found within REQUEST_HEADERS:Referer: https://myactivity.google.com/ request_line = GET /images/Geofisika/poster_antisipasi_gempa-600.webp HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/images/Geofisika/poster_antisipasi_gempa-600.webp"] [unique_id "aDfzFlOTr63zGVj5iaOfuwAAxgE"], referer https://myactivity.google.com/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[812357] [hlf+uCfg4Eg] [aDfzFlOTr63zGVj5iaOfuwAAxgE] keep_alive=[1] [2025-05-29 12:39:34.956321] [R:aDfzFlOTr63zGVj5iaOfuwAAxgE] UA:'Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/
...
show less
Hacking
Web App Attack
๐ฎ๐ฉ
hermawan
2025-01-05 15:30:48
(1 year ago)
[Sun Jan 05 22:22:09.080208 2025] [security2:error] [pid 11726:tid 128323688363712] [client 103.183. ...
show more
[Sun Jan 05 22:22:09.080208 2025] [security2:error] [pid 11726:tid 128323688363712] [client 103.183.10.184:51328] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "myactivity.google.com" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.10.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "282"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: myactivity.google.com found within REQUEST_HEADERS:Referer: https://myactivity.google.com/ request_line = GET /images/Klimatologi/Prakiraan/03-Prakiraan-Bulanan/Prakiraan_Curah_Hujan_Bulanan/Prakiraan_Curah_Hujan_Bulanan_Provinsi_Jawa_Timur/2024/07_Juli_2024/01_Prakiraan_Curah_Hujan_Bulan_SEPTEMBER_2024_di_Provinsi_Jawa_Timur-Update_dari_Analisis_Bulan_Juli_2024.jpg HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/images/Klimatologi/Prakiraan/03-Prakiraan-Bulanan/Prakiraan_Curah_Hujan_Bulanan/Prakiraan_Curah_Hujan_Bulanan_Provinsi_Jawa_Timur/2024/07_Juli_2024/01_Prakiraan_Curah_Huj
...
show less
Hacking
Web App Attack
๐ต๐ฑ
nfsec.pl
2024-11-16 03:46:26
(1 year ago)
Detected: TCP scan on port: 445 with flags: SYN
Port Scan
Anonymous
2024-10-16 04:03:23
(1 year ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH