MAGIC
2025-03-28 12:13:36
(4 hours ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
hermawan
2025-03-28 04:19:51
(12 hours ago)
[Fri Mar 28 11:19:00.028069 2025] [security2:error] [pid 23895:tid 140515655718592] [client 13.83.16 ... show more [Fri Mar 28 11:19:00.028069 2025] [security2:error] [pid 23895:tid 140515655718592] [client 13.83.167.131:58643] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.10.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "187"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/prakiraan-iklim/prakiraan-bulanan/prakiraan-curah-hujan-bulanan/3-bulan-ke-depan/555561744-prakiraan-bulanan-curah-hujan-bulan-maret-tahun-2025-update-dari-analisis-bulan-januari-tahun-2025-di-provinsi-jawa-timur HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/index.php/prakiraan-iklim/prakiraan-bulanan/prakiraan-curah-hujan-bulanan/3-bulan-ke-depan/555561744-prakiraan-bulanan-curah-hujan-bulan-mar
... show less
Hacking
Web App Attack
Anonymous
2025-03-27 16:36:53
(23 hours ago)
Action: Block, Reason: DDOS attack detected
DDoS Attack
hermawan
2025-03-26 11:17:53
(2 days ago)
[Wed Mar 26 18:17:53.331615 2025] [security2:error] [pid 177295:tid 140394838640320] [client 13.83.1 ... show more [Wed Mar 26 18:17:53.331615 2025] [security2:error] [pid 177295:tid 140394838640320] [client 13.83.167.131:4662] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.10.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "187"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/prakiraan-iklim/prakiraan-bulanan/daerah-potensi-banjir-di-provinsi-jawa-timur/555561716-prakiraan-bulanan-daerah-potensi-banjir-di-provinsi-jawa-timur-untuk-bulan-maret-tahun-2025-update-10-februari-2025 HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/prakiraan-iklim/prakiraan-bulanan/daerah-potensi-banjir-di-provinsi-jawa-timur/555561716-prakiraan-bulanan-daerah-potensi-banjir-di-p
... show less
Hacking
Web App Attack
Anonymous
2025-03-26 07:48:59
(2 days ago)
Action: Block, Reason: DDOS attack detected
DDoS Attack
hermawan
2025-03-26 04:32:16
(2 days ago)
[Wed Mar 26 11:31:01.071443 2025] [security2:error] [pid 254047:tid 140530582742720] [client 13.83.1 ... show more [Wed Mar 26 11:31:01.071443 2025] [security2:error] [pid 254047:tid 140530582742720] [client 13.83.167.131:55133] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.10.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "187"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /b/musiman.pdf HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/b/musiman.pdf"] [unique_id "Z-ODBcJRzyp0qRgCdxG7ZgAAGgE"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[254049] [4bnwTZ/yVhs] [Z-ODBcJRzyp0qRgCdxG7ZgAAGgE] keep_alive=[1] [2025-03-26 11:31:01.071446] [R:Z-ODBcJRzyp0qRgCdxG7ZgAAGgE] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://ope
... show less
Hacking
Web App Attack
hermawan
2025-03-25 16:17:45
(3 days ago)
[Tue Mar 25 23:16:59.891256 2025] [security2:error] [pid 98824:tid 140160641267392] [client 13.83.16 ... show more [Tue Mar 25 23:16:59.891256 2025] [security2:error] [pid 98824:tid 140160641267392] [client 13.83.167.131:12812] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.10.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "187"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/prakiraan-iklim/prakiraan-bulanan/prakiraan-curah-hujan-bulanan/3-bulan-ke-depan/555561304-prakiraan-bulanan-curah-hujan-bulan-november-tahun-2024-update-dari-analisis-bulan-juli-tahun-2024-di-provinsi-jawa-timur HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/index.php/prakiraan-iklim/prakiraan-bulanan/prakiraan-curah-hujan-bulanan/3-bulan-ke-depan/555561304-prakiraan-bulanan-curah-hujan-bulan-nov
... show less
Hacking
Web App Attack
MAGIC
2025-03-25 13:06:12
(3 days ago)
VM5 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
JuicyJ
2025-03-25 08:00:42
(3 days ago)
Excessive crawling/scraping
Web App Attack
hermawan
2025-03-25 02:35:22
(3 days ago)
[Tue Mar 25 09:30:54.630320 2025] [security2:error] [pid 129122:tid 140119046514368] [client 13.83.1 ... show more [Tue Mar 25 09:30:54.630320 2025] [security2:error] [pid 129122:tid 140119046514368] [client 13.83.167.131:32049] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.10.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "187"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/profil/meteorologi/list-of-all-tags/analisis-distribusi-curah-hujan-malang-bulanan HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/profil/meteorologi/list-of-all-tags/analisis-distribusi-curah-hujan-malang-bulanan"] [unique_id "Z-IVXrVRLPMZwDFxJGOoTQAByxk"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[129148] [GjmQgknJZEk] [Z-IVXrVRLPMZwDFxJGOoTQAByxk] keep_alive=[1] [
... show less
Hacking
Web App Attack
Anonymous
2025-03-24 18:13:45
(3 days ago)
Action: Block, Reason: DDOS attack detected
DDoS Attack
hermawan
2025-03-24 13:07:45
(4 days ago)
[Mon Mar 24 20:06:57.400554 2025] [security2:error] [pid 211611:tid 140633398863552] [client 13.83.1 ... show more [Mon Mar 24 20:06:57.400554 2025] [security2:error] [pid 211611:tid 140633398863552] [client 13.83.167.131:60885] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.10.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "187"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/informasi-iklim/infografis-iklim/infografis-klimat-story/555561581-mengenal-fenomena-la-nina-si-pembawa-hujan HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/informasi-iklim/infografis-iklim/infografis-klimat-story/555561581-mengenal-fenomena-la-nina-si-pembawa-hujan"] [unique_id "Z-FY8Q-J75amWl6rgMCeFgACbTM"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[211663] [0FlmR
... show less
Hacking
Web App Attack
MAGIC
2025-03-23 22:12:43
(4 days ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
Anonymous
2025-03-23 14:30:32
(5 days ago)
Action: Block, Reason: DDOS attack detected
DDoS Attack
hermawan
2025-03-22 14:08:41
(6 days ago)
[Sat Mar 22 21:08:10.776829 2025] [security2:error] [pid 212907:tid 140432022968000] [client 13.83.1 ... show more [Sat Mar 22 21:08:10.776829 2025] [security2:error] [pid 212907:tid 140432022968000] [client 13.83.167.131:61532] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.10.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "187"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/profil/meteorologi/list-all-categories/4282-klimatologi/prakiraan-klimatologi/prakiraan-dasarian/prakiraan-curah-hujan-dasarian/prakiraan-probabilistik-curah-hujan-dasarian/prakiraan-probabilistik-curah-hujan-dasarian-provinsi-jawa-timur/prakiraan-dasarian-probabilistik-curah-hujan-provinsi-jawa-timur-tahun-2025..."] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/profil/meteorologi/list-all-c
... show less
Hacking
Web App Attack