hermawan
2025-06-10 14:57:54
(1 month ago)
[Tue Jun 10 21:56:52.977003 2025] [security2:error] [pid 78339:tid 140215850792640] [client 13.83.16 ... show more [Tue Jun 10 21:56:52.977003 2025] [security2:error] [pid 78339:tid 140215850792640] [client 13.83.167.134:25846] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.14.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "206"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /robots.txt HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/robots.txt"] [unique_id "aEhHtBzAOKei09BMxqfBqAAAhAA"] [staklim-malang.info] [staklim-malang.info] top=[78340] [o0Mm6OBAWpc] [aEhHtBzAOKei09BMxqfBqAAAhAA] keep_alive=[1] [2025-06-10 21:56:52.977008] [R:aEhHtBzAOKei09BMxqfBqAAAhAA] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot' Host:'stak
... show less
Hacking
Web App Attack
hermawan
2025-06-10 03:16:38
(1 month ago)
[Tue Jun 10 09:49:01.232838 2025] [security2:error] [pid 55790:tid 139652798277312] [client 13.83.16 ... show more [Tue Jun 10 09:49:01.232838 2025] [security2:error] [pid 55790:tid 139652798277312] [client 13.83.167.134:49354] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.14.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "206"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /robots.txt HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/robots.txt"] [unique_id "aEedHfp0KK9yTDw3KC0HswABnBE"] [staklim-malang.info] [staklim-malang.info] top=[55808] [YF8cvTYiPsg] [aEedHfp0KK9yTDw3KC0HswABnBE] keep_alive=[1] [2025-06-10 09:49:01.232841] [R:aEedHfp0KK9yTDw3KC0HswABnBE] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot' Host:'stak
... show less
Hacking
Web App Attack
hermawan
2025-06-09 11:32:30
(1 month ago)
[Mon Jun 09 18:32:29.892364 2025] [security2:error] [pid 1071888:tid 139881580799680] [client 13.83. ... show more [Mon Jun 09 18:32:29.892364 2025] [security2:error] [pid 1071888:tid 139881580799680] [client 13.83.167.134:35499] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.14.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "206"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /robots.txt HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/robots.txt"] [unique_id "aEbGTVrJ-zMMjmwqoniBGQAA3Qw"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[1071901] [GxFf77mdhPY] [aEbGTVrJ-zMMjmwqoniBGQAA3Qw] keep_alive=[1] [2025-06-09 18:32:29.892368] [R:aEbGTVrJ-zMMjmwqoniBGQAA3Qw] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.
... show less
Hacking
Web App Attack
hermawan
2025-06-08 07:33:59
(1 month ago)
[Sun Jun 08 14:33:58.214844 2025] [security2:error] [pid 366671:tid 139881746446016] [client 13.83.1 ... show more [Sun Jun 08 14:33:58.214844 2025] [security2:error] [pid 366671:tid 139881746446016] [client 13.83.167.134:52671] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.14.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "206"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /robots.txt HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/robots.txt"] [unique_id "aEU85odnUqEhYapz0Y5QEQABShQ"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[366692] [V9B8fJI+0ws] [aEU85odnUqEhYapz0Y5QEQABShQ] keep_alive=[1] [2025-06-08 14:33:58.214848] [R:aEU85odnUqEhYapz0Y5QEQABShQ] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.co
... show less
Hacking
Web App Attack
hermawan
2025-06-06 05:23:06
(1 month ago)
[Fri Jun 06 12:21:57.727034 2025] [security2:error] [pid 12318:tid 140416536016576] [client 13.83.16 ... show more [Fri Jun 06 12:21:57.727034 2025] [security2:error] [pid 12318:tid 140416536016576] [client 13.83.167.134:48630] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.14.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "206"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /robots.txt HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/robots.txt"] [unique_id "aEJ69ROpapa8aJo2wEz69gAAUwI"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[12321] [/Rq1aDiQbIo] [aEJ69ROpapa8aJo2wEz69gAAUwI] keep_alive=[1] [2025-06-06 12:21:57.727037] [R:aEJ69ROpapa8aJo2wEz69gAAUwI] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/
... show less
Hacking
Web App Attack
hermawan
2025-06-05 05:54:14
(1 month ago)
[Thu Jun 05 12:52:58.410877 2025] [security2:error] [pid 125849:tid 140562965100224] [client 13.83.1 ... show more [Thu Jun 05 12:52:58.410877 2025] [security2:error] [pid 125849:tid 140562965100224] [client 13.83.167.134:53511] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.14.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "206"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /robots.txt HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/robots.txt"] [unique_id "aEEwugLSwIvHCQ_U3CeKvwABQwA"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[125850] [Ql7FuVR6SZw] [aEEwugLSwIvHCQ_U3CeKvwABQwA] keep_alive=[1] [2025-06-05 12:52:58.410882] [R:aEEwugLSwIvHCQ_U3CeKvwABQwA] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.co
... show less
Hacking
Web App Attack
hermawan
2025-06-04 03:02:02
(1 month ago)
[Wed Jun 04 09:56:21.219577 2025] [security2:error] [pid 134077:tid 139724413884096] [client 13.83.1 ... show more [Wed Jun 04 09:56:21.219577 2025] [security2:error] [pid 134077:tid 139724413884096] [client 13.83.167.134:32140] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.14.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "206"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /robots.txt HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/robots.txt"] [unique_id "aD-11ezIFqXt4QfPhbD5aAABmxo"] [staklim-malang.info] [staklim-malang.info] top=[134104] [nmtJJG5fxzs] [aD-11ezIFqXt4QfPhbD5aAABmxo] keep_alive=[1] [2025-06-04 09:56:21.219583] [R:aD-11ezIFqXt4QfPhbD5aAABmxo] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot' Host:'st
... show less
Hacking
Web App Attack
MAGIC
2025-06-04 02:14:17
(1 month ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
Anonymous
2025-06-03 21:54:42
(1 month ago)
Action: Block, Reason: DDOS attack detected
DDoS Attack
hermawan
2025-06-03 17:45:28
(1 month ago)
[Tue Jun 03 23:42:41.757009 2025] [security2:error] [pid 64197:tid 140142544119488] [client 13.83.16 ... show more [Tue Jun 03 23:42:41.757009 2025] [security2:error] [pid 64197:tid 140142544119488] [client 13.83.167.134:26088] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.14.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "206"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /robots.txt HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/robots.txt"] [unique_id "aD8mATYeDwTHYMxqJGTnVgAAWwk"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[64207] [OGWtkTU6+Js] [aD8mATYeDwTHYMxqJGTnVgAAWwk] keep_alive=[1] [2025-06-03 23:42:41.757013] [R:aD8mATYeDwTHYMxqJGTnVgAAWwk] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/
... show less
Hacking
Web App Attack
hermawan
2025-06-03 07:08:58
(1 month ago)
[Tue Jun 03 14:07:42.399298 2025] [security2:error] [pid 62569:tid 140474768635584] [client 13.83.16 ... show more [Tue Jun 03 14:07:42.399298 2025] [security2:error] [pid 62569:tid 140474768635584] [client 13.83.167.134:39674] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.14.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "206"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/prediksi-iklim/prediksi-bulanan/curah-hujan/3-bulan-ke-depan/555561857-prediksi-bulanan-curah-hujan-bulan-juni-tahun-2025-update-dari-analisis-bulan-februari-tahun-2025-di-provinsi-jawa-timur HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/prediksi-iklim/prediksi-bulanan/curah-hujan/3-bulan-ke-depan/555561857-prediksi-bulanan-curah-hujan-bulan-juni-tahun-2025-update-dari-analisis-bul
... show less
Hacking
Web App Attack
hermawan
2025-06-02 23:04:49
(1 month ago)
[Tue Jun 03 06:04:46.449920 2025] [security2:error] [pid 1691972:tid 140073643275968] [client 13.83. ... show more [Tue Jun 03 06:04:46.449920 2025] [security2:error] [pid 1691972:tid 140073643275968] [client 13.83.167.134:1507] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.14.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "206"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /robots.txt HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/robots.txt"] [unique_id "aD4uDv04sRzS_dPcnJlWkgABQgA"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[1691973] [C+tAyoaGiIU] [aD4uDv04sRzS_dPcnJlWkgABQgA] keep_alive=[1] [2025-06-03 06:04:46.449926] [R:aD4uDv04sRzS_dPcnJlWkgABQgA] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.c
... show less
Hacking
Web App Attack
hermawan
2025-06-02 06:15:23
(1 month ago)
[Mon Jun 02 13:15:23.119661 2025] [security2:error] [pid 1183990:tid 140565812221632] [client 13.83. ... show more [Mon Jun 02 13:15:23.119661 2025] [security2:error] [pid 1183990:tid 140565812221632] [client 13.83.167.134:42790] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.14.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "206"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /robots.txt HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/robots.txt"] [unique_id "aD1Bewg91Y9x8sDUOVQCcgABnR0"] [staklim-malang.info] [staklim-malang.info] top=[1184020] [b+tlsMiVRyg] [aD1Bewg91Y9x8sDUOVQCcgABnR0] keep_alive=[1] [2025-06-02 13:15:23.119664] [R:aD1Bewg91Y9x8sDUOVQCcgABnR0] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot' Host:'
... show less
Hacking
Web App Attack
hermawan
2025-05-31 17:00:45
(1 month ago)
[Sat May 31 23:58:00.896098 2025] [security2:error] [pid 76875:tid 139726186051264] [client 13.83.16 ... show more [Sat May 31 23:58:00.896098 2025] [security2:error] [pid 76875:tid 139726186051264] [client 13.83.167.134:26723] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.14.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "206"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /robots.txt HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/robots.txt"] [unique_id "aDs1GBdC0C9AoLQ3EEoD4QAA1Qs"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[76887] [EPrvbqm1eKk] [aDs1GBdC0C9AoLQ3EEoD4QAA1Qs] keep_alive=[1] [2025-05-31 23:58:00.896104] [R:aDs1GBdC0C9AoLQ3EEoD4QAA1Qs] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/
... show less
Hacking
Web App Attack
MPL
2025-05-30 04:54:45
(1 month ago)
tcp/443 (2 or more attempts)
Port Scan