hermawan
2025-05-09 03:46:03
(2 months ago)
[Fri May 09 10:35:06.048786 2025] [security2:error] [pid 597294:tid 139687595321024] [client 13.83.1 ... show more [Fri May 09 10:35:06.048786 2025] [security2:error] [pid 597294:tid 139687595321024] [client 13.83.167.134:63622] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.14.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "206"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/profil/meteorologi/list-of-all-tags/prakiraan-awal-musim-kemarau HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/profil/meteorologi/list-of-all-tags/prakiraan-awal-musim-kemarau"] [unique_id "aB136rIT5mZKG5AbUFGpSQABIAA"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[597295] [2xX8prO5DPI] [aB136rIT5mZKG5AbUFGpSQABIAA] keep_alive=[1] [2025-05-09 10:35:06.048792] [R:aB136
... show less
Hacking
Web App Attack
Anonymous
2025-05-08 10:36:05
(2 months ago)
Action: Block, Reason: DDOS attack detected
DDoS Attack
hermawan
2025-05-08 08:41:44
(2 months ago)
[Thu May 08 15:11:37.040622 2025] [security2:error] [pid 91125:tid 140055605601984] [client 13.83.16 ... show more [Thu May 08 15:11:37.040622 2025] [security2:error] [pid 91125:tid 140055605601984] [client 13.83.167.134:9582] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.14.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "206"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /robots.txt HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/robots.txt"] [unique_id "aBxnOWR6uV8WQlDXd0oP0gABow8"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[91142] [DsAKZgO2Fww] [aBxnOWR6uV8WQlDXd0oP0gABow8] keep_alive=[1] [2025-05-08 15:11:37.040629] [R:aBxnOWR6uV8WQlDXd0oP0gABow8] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/b
... show less
Hacking
Web App Attack
SCHAPPY
2025-05-08 06:46:48
(2 months ago)
Bad bot identified by user agent
Bad Web Bot
hermawan
2025-05-08 03:26:50
(2 months ago)
[Thu May 08 10:25:54.064910 2025] [security2:error] [pid 325167:tid 140016162227904] [client 13.83.1 ... show more [Thu May 08 10:25:54.064910 2025] [security2:error] [pid 325167:tid 140016162227904] [client 13.83.167.134:46249] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.14.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "206"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/prakiraan-musim/4271-prakiraan-musim-hujan/prakiraan-curah-hujan-musim-hujan/prakiraan-curah-hujan-musim-hujan-di-propinsi-jawa-timur/prediksi-curah-hujan-musim-hujan-tahun-2024-2025-zona-musim-di-provinsi-jawa-timur HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/prakiraan-musim/4271-prakiraan-musim-hujan/prakiraan-curah-hujan-musim-hujan/prakiraan-curah-hujan-musim-hujan-di-propin
... show less
Hacking
Web App Attack
hermawan
2025-05-07 09:39:10
(2 months ago)
[Wed May 07 15:57:56.469699 2025] [security2:error] [pid 520418:tid 140672906528448] [client 13.83.1 ... show more [Wed May 07 15:57:56.469699 2025] [security2:error] [pid 520418:tid 140672906528448] [client 13.83.167.134:31164] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.14.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "206"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/profil/meteorologi/list-of-all-tags/prakiraan-bulanan-curah-hujan-di-propinsi-jawa-timur-tahun-2025 HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/profil/meteorologi/list-of-all-tags/prakiraan-bulanan-curah-hujan-di-propinsi-jawa-timur-tahun-2025"] [unique_id "aBsglEPOJ3tSSXvHQ8L9KAAA6gU"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[520424] [qn3e7d8+LZg] [aBsglEPOJ3t
... show less
Hacking
Web App Attack
Anonymous
2025-05-06 18:41:00
(2 months ago)
Action: Block, Reason: DDOS attack detected
DDoS Attack
hermawan
2025-05-06 14:32:01
(2 months ago)
[Tue May 06 21:30:30.593248 2025] [security2:error] [pid 137456:tid 140029087307456] [client 13.83.1 ... show more [Tue May 06 21:30:30.593248 2025] [security2:error] [pid 137456:tid 140029087307456] [client 13.83.167.134:60905] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.14.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "204"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /robots.txt HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/robots.txt"] [unique_id "aBodBrCssjvEGrCVseeNdgABlwE"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[137458] [xtdidaB3tfU] [aBodBrCssjvEGrCVseeNdgABlwE] keep_alive=[1] [2025-05-06 21:30:30.593255] [R:aBodBrCssjvEGrCVseeNdgABlwE] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.co
... show less
Hacking
Web App Attack
hermawan
2025-05-06 07:09:14
(2 months ago)
[Tue May 06 14:08:29.156724 2025] [security2:error] [pid 1459077:tid 139676770412224] [client 13.83. ... show more [Tue May 06 14:08:29.156724 2025] [security2:error] [pid 1459077:tid 139676770412224] [client 13.83.167.134:64033] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.13.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "204"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/analisis-iklim/analisis-bulanan/hari-hujan/555561847-analisis-bulanan-hari-hujan-bulan-februari-tahun-2025-di-provinsi-jawa-timur HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/analisis-iklim/analisis-bulanan/hari-hujan/555561847-analisis-bulanan-hari-hujan-bulan-februari-tahun-2025-di-provinsi-jawa-timur"] [unique_id "aBm1baIACAjMh9W1NTDYvgAAjR0"] [staklim-jatim.bmkg.go.id] [stak
... show less
Hacking
Web App Attack
MAGIC
2025-05-06 01:14:14
(2 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
hermawan
2025-05-05 03:08:35
(2 months ago)
[Mon May 05 09:56:18.065402 2025] [security2:error] [pid 612831:tid 139978973480640] [client 13.83.1 ... show more [Mon May 05 09:56:18.065402 2025] [security2:error] [pid 612831:tid 139978973480640] [client 13.83.167.134:28321] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.13.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "204"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /b/bulananmalangbatu.pdf HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/b/bulananmalangbatu.pdf"] [unique_id "aBgo0jPU_bAvqH5vln6JqQAAryU"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[612869] [PHHcpEIRK4A] [aBgo0jPU_bAvqH5vln6JqQAAryU] keep_alive=[1] [2025-05-05 09:56:18.065406] [R:aBgo0jPU_bAvqH5vln6JqQAAryU] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-Us
... show less
Hacking
Web App Attack
Anonymous
2025-05-04 20:10:37
(2 months ago)
Action: Block, Reason: DDOS attack detected
DDoS Attack
hermawan
2025-05-04 04:07:29
(2 months ago)
[Sun May 04 10:57:15.156756 2025] [security2:error] [pid 48300:tid 139677755459264] [client 13.83.16 ... show more [Sun May 04 10:57:15.156756 2025] [security2:error] [pid 48300:tid 139677755459264] [client 13.83.167.134:38614] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.13.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "204"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/profil/meteorologi/list-of-all-tags/gempa-terkini HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/profil/meteorologi/list-of-all-tags/gempa-terkini"] [unique_id "aBblm3igATlAMy8krhp3qgABTAo"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[48311] [n9H/YJ+J4qU] [aBblm3igATlAMy8krhp3qgABTAo] keep_alive=[1] [2025-05-04 10:57:15.156760] [R:aBblm3igATlAMy8krhp3qgABTAo] UA:'Mozi
... show less
Hacking
Web App Attack
masterguru
2025-05-03 23:56:42
(2 months ago)
BAD BOT - Detected and Blocked.. Matched phrase "ChatGPT-User" at REQUEST_HEADERS:User-Agent. (11000 ... show more BAD BOT - Detected and Blocked.. Matched phrase "ChatGPT-User" at REQUEST_HEADERS:User-Agent. (1100000-173) show less
Bad Web Bot
hermawan
2025-05-03 22:03:49
(2 months ago)
[Sun May 04 05:01:25.655989 2025] [security2:error] [pid 872903:tid 140120532588224] [client 13.83.1 ... show more [Sun May 04 05:01:25.655989 2025] [security2:error] [pid 872903:tid 140120532588224] [client 13.83.167.134:53479] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.13.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "204"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /robots.txt HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/robots.txt"] [unique_id "aBaSNabxS9PYRBoVcfR8LwAA2CU"] [staklim-malang.info] [staklim-malang.info] top=[872941] [VQN4aFrn+Q0] [aBaSNabxS9PYRBoVcfR8LwAA2CU] keep_alive=[1] [2025-05-04 05:01:25.655992] [R:aBaSNabxS9PYRBoVcfR8LwAA2CU] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot' Host:'st
... show less
Hacking
Web App Attack