๐ฎ๐ฉ
hermawan
2026-06-16 05:18:25
(16 minutes ago)
[Tue Jun 16 12:18:24.874800 2026] [security2:error] [pid 577567:tid 139771463579328] [client 103.93. ...
show more
[Tue Jun 16 12:18:24.874800 2026] [security2:error] [pid 577567:tid 139771463579328] [client 103.93.93.106:60518] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "www.yandex.go.id" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "582"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: www.yandex.go.id found within REQUEST_HEADERS:Referer: https://www.yandex.go.id/ request_line = GET /index.php/e-buletin-untuk-kota-dan-kabupaten-di-provinsi-jawa-timur HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/e-buletin-untuk-kota-dan-kabupaten-di-provinsi-jawa-timur"] [unique_id "ajDcoAtKRF04YyUT-aG3aAABTgU"], referer https://www.yandex.go.id/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[577590] [xfCAElh+ZCI] [ajDcoAtKRF04YyUT-aG3aAABTgU] keep_alive=[1] [2026-06-16 12:18:24.874806] [R:ajDcoAtKRF04YyUT-aG3aAABTgU] UA:'Mozilla/5.0 (Linux; Android 10;
...
show less
Email Spam
Hacking
๐ฉ๐ช
Vegascosmetics
2026-06-15 11:58:43
(17 hours ago)
(Kingcopy.org-AI-IDS-Report):IP automatically blocked after obfuscated redirect. Vegas Security
DDoS Attack
Hacking
Exploited Host
๐ซ๐ฎ
6kilowatti
2026-06-08 12:06:58
(1 week ago)
2026-06-08T15:06:56.892429+03:00 oh6ah kernel: [UFW BLOCK] IN=enp2s0 OUT= MAC=00:26:18:a8:d6:75:2e:2 ...
show more
2026-06-08T15:06:56.892429+03:00 oh6ah kernel: [UFW BLOCK] IN=enp2s0 OUT= MAC=00:26:18:a8:d6:75:2e:2d:5e:71:aa:73:08:00 SRC=103.93.93.106 DST=192.168.0.102 LEN=48 TOS=0x00 PREC=0x20 TTL=112 ID=26705 DF PROTO=TCP SPT=63586 DPT=1433 WINDOW=8192 RES=0x00 SYN URGP=0
...
show less
Port Scan
๐ฎ๐ฉ
hermawan
2026-06-07 03:46:16
(1 week ago)
[Sun Jun 07 10:46:13.550796 2026] [security2:error] [pid 601612:tid 140593972893376] [client 103.93. ...
show more
[Sun Jun 07 10:46:13.550796 2026] [security2:error] [pid 601612:tid 140593972893376] [client 103.93.93.106:48820] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "www.yandex.go.id" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "582"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: www.yandex.go.id found within REQUEST_HEADERS:Referer: https://www.yandex.go.id/ request_line = GET /images/banners/Banner_Web_2024_Shelina-v3.webp HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/images/banners/Banner_Web_2024_Shelina-v3.webp"] [unique_id "aiTphRwWJ-M3RLfclXmzGQAABAE"], referer https://www.yandex.go.id/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[601614] [hUk9vCEtub8] [aiTphRwWJ-M3RLfclXmzGQAABAE] keep_alive=[1] [2026-06-07 10:46:13.550801] [R:aiTphRwWJ-M3RLfclXmzGQAABAE] UA:'Mozilla/5.0 (Linux; Android 14; Pixel 6 Pro) AppleWebKit/537.36 (KHTML, li
...
show less
Email Spam
Hacking
Anonymous
2026-05-31 09:04:03
(2 weeks ago)
SMTP brute force - auth failed
Brute-Force
Exploited Host
๐ฎ๐น
VHosting
2026-05-30 12:45:24
(2 weeks ago)
Detected mail brute force attack from 4 different servers
Brute-Force
๐ฎ๐ฉ
hermawan
2026-05-26 12:28:05
(2 weeks ago)
05/26/2026-19:28:04.808587 [Drop] [**] [1:2210044:2] SURICATA STREAM Packet with invalid timestamp ...
show more
05/26/2026-19:28:04.808587 [Drop] [**] [1:2210044:2] SURICATA STREAM Packet with invalid timestamp [**] [Classification: Generic Protocol Command Decode] [Priority: 3] {TCP} 103.93.93.106:52295 -> 103.166.156.58:443
...
show less
Email Spam
Hacking
๐ธ๐ฐ
GOVCERT
2026-04-28 23:02:39
(1 month ago)
SMB Port Scan
Port Scan
Anonymous
2026-04-28 03:44:36
(1 month ago)
Unauthorized connection attempt on Port 23
Port Scan
Hacking
Exploited Host
๐บ๐ธ
sumnone
2026-04-28 02:17:08
(1 month ago)
Port probing on unauthorized port 23
Port Scan
Hacking
Exploited Host
๐ซ๐ท
Sklurk
2026-04-28 01:16:36
(1 month ago)
Web App Attack
Web App Attack
๐น๐ท
Threat.live
2026-04-19 17:05:04
(1 month ago)
Suspicious Connection Attempts
Brute-Force
๐ฉ๐ช
arc21
2026-04-07 14:03:29
(2 months ago)
2026-04-07T14:03:29.213233+00:00 ptero-wings-dev kernel: [10149020.204975] [UFW BLOCK] IN=ens3 OUT= ...
show more
2026-04-07T14:03:29.213233+00:00 ptero-wings-dev kernel: [10149020.204975] [UFW BLOCK] IN=ens3 OUT= MAC=00:fd:d1:ae:c2:18:88:30:37:33:03:65:08:00 SRC=103.93.93.106 DST=95.156.226.215 LEN=52 TOS=0x00 PREC=0x00 TTL=117 ID=11319 DF PROTO=TCP SPT=54730 DPT=1433 WINDOW=8192 RES=0x00 SYN URGP=0
...
show less
Port Scan