hermawan
2025-06-22 17:40:31
(1 hour ago)
[Mon Jun 23 00:38:11.447679 2025] [security2:error] [pid 221530:tid 140372469515968] [client 13.83.1 ... show more [Mon Jun 23 00:38:11.447679 2025] [security2:error] [pid 221530:tid 140372469515968] [client 13.83.167.134:6610] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.15.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "222"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET / HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/"] [unique_id "aFg_g-fFaZ10-YXZlTaG_AAAFRc"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[221554] [S3cgjyxVdFM] [aFg_g-fFaZ10-YXZlTaG_AAAFRc] keep_alive=[1] [2025-06-23 00:38:11.447683] [R:aFg_g-fFaZ10-YXZlTaG_AAAFRc] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot' Host:'staklim-
... show less
Hacking
Web App Attack
hermawan
2025-06-22 08:59:58
(9 hours ago)
[Sun Jun 22 15:59:00.164071 2025] [security2:error] [pid 33028:tid 140111271368384] [client 13.83.16 ... show more [Sun Jun 22 15:59:00.164071 2025] [security2:error] [pid 33028:tid 140111271368384] [client 13.83.167.134:30058] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.15.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "222"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/informasi-iklim/infografis-iklim/infografis-klimat-story/555561326-infografis-himbauan-waspada-suhu-panas-ekstrem HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/informasi-iklim/infografis-iklim/infografis-klimat-story/555561326-infografis-himbauan-waspada-suhu-panas-ekstrem"] [unique_id "aFfF1NSoLyrwgkl4vSlS4QAA1g8"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[33044]
... show less
Hacking
Web App Attack
MAGIC
2025-06-22 05:06:08
(13 hours ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
hermawan
2025-06-20 11:33:28
(2 days ago)
[Fri Jun 20 18:32:11.025445 2025] [security2:error] [pid 22583:tid 139673027389120] [client 13.83.16 ... show more [Fri Jun 20 18:32:11.025445 2025] [security2:error] [pid 22583:tid 139673027389120] [client 13.83.167.134:45643] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.15.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "222"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /b/bulanankediri.pdf HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/b/bulanankediri.pdf"] [unique_id "aFVGu41pEL9I_8F7NmcXwAAAxxg"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[22608] [lzuANv+E1os] [aFVGu41pEL9I_8F7NmcXwAAAxxg] keep_alive=[1] [2025-06-20 18:32:11.025448] [R:aFVGu41pEL9I_8F7NmcXwAAAxxg] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +h
... show less
Hacking
Web App Attack
hermawan
2025-06-17 18:04:40
(5 days ago)
[Wed Jun 18 01:01:09.778071 2025] [security2:error] [pid 13333:tid 140703771367104] [client 13.83.16 ... show more [Wed Jun 18 01:01:09.778071 2025] [security2:error] [pid 13333:tid 140703771367104] [client 13.83.167.134:22570] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.15.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "222"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/prakiraan-iklim/prakiraan-bulanan/prakiraan-curah-hujan-bulanan/3-bulan-ke-depan/555561625-prakiraan-bulanan-curah-hujan-bulan-januari-tahun-2025-update-dari-analisis-bulan-november-tahun-2024-di-provinsi-jawa-timur HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/index.php/prakiraan-iklim/prakiraan-bulanan/prakiraan-curah-hujan-bulanan/3-bulan-ke-depan/555561625-prakiraan-bulanan-curah-hujan-bulan-
... show less
Hacking
Web App Attack
hermawan
2025-06-17 13:07:02
(5 days ago)
[Tue Jun 17 20:06:12.502112 2025] [security2:error] [pid 58001:tid 140100794029760] [client 13.83.16 ... show more [Tue Jun 17 20:06:12.502112 2025] [security2:error] [pid 58001:tid 140100794029760] [client 13.83.167.134:29950] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.15.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "205"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/prakiraan-musim/4312-prakiraan-musim-kemarau/prakiraan-curah-hujan-musim-kemarau/prakiraan-curah-hujan-musim-kemarau-di-propinsi-jawa-timur/prediksi-6-bulanan-curah-hujan-musim-kemarau-tahun-2025-zona-musim-di-provinsi-jawa-timur/555561827-prediksi-6-bulanan-curah-hujan-musim-kemarau-tahun-2025-zona-musim-di-pro..."] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/index.php/prakiraan-musim/4312-prakiraan-musi
... show less
Hacking
Web App Attack
hermawan
2025-06-17 04:34:24
(5 days ago)
[Tue Jun 17 11:33:01.281210 2025] [security2:error] [pid 121205:tid 140031611082432] [client 13.83.1 ... show more [Tue Jun 17 11:33:01.281210 2025] [security2:error] [pid 121205:tid 140031611082432] [client 13.83.167.134:48092] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.15.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "205"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /robots.txt HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/robots.txt"] [unique_id "aFDv_W2Y7CWVlAipTp6-twAA1AY"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[121212] [voXvAWXa+P0] [aFDv_W2Y7CWVlAipTp6-twAA1AY] keep_alive=[1] [2025-06-17 11:33:01.281214] [R:aFDv_W2Y7CWVlAipTp6-twAA1AY] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.co
... show less
Hacking
Web App Attack
hermawan
2025-06-17 03:14:42
(5 days ago)
[Tue Jun 17 10:10:25.496765 2025] [security2:error] [pid 83233:tid 140031537641152] [client 13.83.16 ... show more [Tue Jun 17 10:10:25.496765 2025] [security2:error] [pid 83233:tid 140031537641152] [client 13.83.167.134:44123] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.15.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "205"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /robots.txt HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/robots.txt"] [unique_id "aFDcoVxHu1epOnWcaoUyHQAADRA"] [staklim-malang.info] [staklim-malang.info] top=[83250] [ekiM2mNDEcA] [aFDcoVxHu1epOnWcaoUyHQAADRA] keep_alive=[1] [2025-06-17 10:10:25.496772] [R:aFDcoVxHu1epOnWcaoUyHQAADRA] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot' Host:'stak
... show less
Hacking
Web App Attack
hermawan
2025-06-16 15:59:31
(6 days ago)
[Mon Jun 16 22:58:09.585635 2025] [security2:error] [pid 65496:tid 140309353617088] [client 13.83.16 ... show more [Mon Jun 16 22:58:09.585635 2025] [security2:error] [pid 65496:tid 140309353617088] [client 13.83.167.134:21645] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.15.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "205"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /robots.txt HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/robots.txt"] [unique_id "aFA_EXf8HWR5bLKmNijwmwABAho"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[65523] [Zx9Xdup0FqQ] [aFA_EXf8HWR5bLKmNijwmwABAho] keep_alive=[1] [2025-06-16 22:58:09.585639] [R:aFA_EXf8HWR5bLKmNijwmwABAho] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/
... show less
Hacking
Web App Attack
MAGIC
2025-06-15 06:09:47
(1 week ago)
VM5 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
hermawan
2025-06-14 22:10:16
(1 week ago)
[Sun Jun 15 05:09:45.614129 2025] [security2:error] [pid 100199:tid 140215468414656] [client 13.83.1 ... show more [Sun Jun 15 05:09:45.614129 2025] [security2:error] [pid 100199:tid 140215468414656] [client 13.83.167.134:41109] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.14.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "206"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /robots.txt HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/robots.txt"] [unique_id "aE3zKW7ZQfRAjuR633-XVgAAhgI"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[100202] [VUaaa9eVi48] [aE3zKW7ZQfRAjuR633-XVgAAhgI] keep_alive=[1] [2025-06-15 05:09:45.614136] [R:aE3zKW7ZQfRAjuR633-XVgAAhgI] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.co
... show less
Hacking
Web App Attack
hermawan
2025-06-13 11:13:16
(1 week ago)
[Fri Jun 13 18:11:57.593489 2025] [security2:error] [pid 159033:tid 140168269833920] [client 13.83.1 ... show more [Fri Jun 13 18:11:57.593489 2025] [security2:error] [pid 159033:tid 140168269833920] [client 13.83.167.134:6800] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.14.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "206"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /robots.txt HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/robots.txt"] [unique_id "aEwHfUcAYoMVfpFGo0G7wQAAFxU"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[159055] [nAJJHer3xMs] [aEwHfUcAYoMVfpFGo0G7wQAAFxU] keep_alive=[1] [2025-06-13 18:11:57.593496] [R:aEwHfUcAYoMVfpFGo0G7wQAAFxU] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com
... show less
Hacking
Web App Attack
hermawan
2025-06-12 15:22:01
(1 week ago)
[Thu Jun 12 22:21:59.363941 2025] [security2:error] [pid 5185:tid 139972408403648] [client 13.83.167 ... show more [Thu Jun 12 22:21:59.363941 2025] [security2:error] [pid 5185:tid 139972408403648] [client 13.83.167.134:31368] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.14.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "206"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /robots.txt HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/robots.txt"] [unique_id "aErwlytehrQGjzIBmcGD6gABAx0"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[5215] [h6KeffnSJUI] [aErwlytehrQGjzIBmcGD6gABAx0] keep_alive=[1] [2025-06-12 22:21:59.363946] [R:aErwlytehrQGjzIBmcGD6gABAx0] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bo
... show less
Hacking
Web App Attack
MAGIC
2025-06-12 00:06:33
(1 week ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
hermawan
2025-06-11 07:09:21
(1 week ago)
[Wed Jun 11 14:08:28.681193 2025] [security2:error] [pid 109170:tid 140474032502464] [client 13.83.1 ... show more [Wed Jun 11 14:08:28.681193 2025] [security2:error] [pid 109170:tid 140474032502464] [client 13.83.167.134:55185] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.14.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "206"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /robots.txt HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/robots.txt"] [unique_id "aEkrbEMhUh0M--SBUQFdLgAAURQ"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[109191] [jSLYel599/I] [aEkrbEMhUh0M--SBUQFdLgAAURQ] keep_alive=[1] [2025-06-11 14:08:28.681200] [R:aEkrbEMhUh0M--SBUQFdLgAAURQ] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.co
... show less
Hacking
Web App Attack