๐ฎ๐ฉ
hermawan
2026-06-17 02:53:40
(17 hours ago)
[Wed Jun 17 09:53:38.039575 2026] [security2:error] [pid 1368563:tid 140641069668032] [client 141.0. ...
show more
[Wed Jun 17 09:53:38.039575 2026] [security2:error] [pid 1368563:tid 140641069668032] [client 141.0.9.208:48022] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "X-Forwarded-For" at REQUEST_HEADERS_NAMES:X-Forwarded-For. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "425"] [id "440005"] [msg "BAD REQUEST_HEADERS_NAMES - Detected and Blocked"] [data "Matched Data: X-Forwarded-For found within REQUEST_HEADERS_NAMES:X-Forwarded-For: X-Forwarded-For request_line = GET /index.php/profil/meteorologi/list-of-all-tags/kabupaten-bondowoso HTTP/1.1"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/profil/meteorologi/list-of-all-tags/kabupaten-bondowoso"] [unique_id "ajIMMiorjA6TMhEQftIcawAAAQ8"], referer https://www.google.com/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[1368637] [D6GVKuoCIs0] [ajIMMiorjA6TMhEQftIcawAAAQ8] keep_alive=[0] [2026-06-17 09:53:38.039581] [R:ajIMMiorjA6TMhEQft
...
show less
Email Spam
Hacking
๐ฎ๐ฉ
hermawan
2026-06-04 00:58:42
(1 week ago)
[Thu Jun 04 07:58:38.467399 2026] [security2:error] [pid 90948:tid 140067239507648] [client 141.0.9. ...
show more
[Thu Jun 04 07:58:38.467399 2026] [security2:error] [pid 90948:tid 140067239507648] [client 141.0.9.208:45716] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "X-Forwarded-For" at REQUEST_HEADERS_NAMES:X-Forwarded-For. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "425"] [id "440005"] [msg "BAD REQUEST_HEADERS_NAMES - Detected and Blocked"] [data "Matched Data: X-Forwarded-For found within REQUEST_HEADERS_NAMES:X-Forwarded-For: X-Forwarded-For request_line = GET /images/Klimatologi/Prakiraan/03-Prakiraan-Bulanan/Prakiraan_Curah_Hujan_Bulanan/Prakiraan_Curah_Hujan_Bulanan_Provinsi_Jawa_Timur/2026/04_April_2026/01_Prediksi_Curah_Hujan_Bulan_JUNI_2026_di_Provinsi_Jawa_Timur-Update_dari_Analisis_Bulan_April_2026.jpg HTTP/1.1"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/images/Klimatologi/Prakiraan/03-Prakiraan-Bulanan/Prakiraan_Curah_Hujan_Bulanan/Prakiraan_Curah_Hujan_Bulanan_Provinsi_Jawa_Timur/2026
...
show less
Email Spam
Hacking
๐ฎ๐ฉ
hermawan
2026-05-10 04:10:37
(1 month ago)
05/10/2026-05:11:55.671849 [Drop] [**] [1:2100000437:0] Suricata match TLS JA4 scan Uniq Zeek no 43 ...
show more
05/10/2026-05:11:55.671849 [Drop] [**] [1:2100000437:0] Suricata match TLS JA4 scan Uniq Zeek no 437 with hash_t12d140700_9531c2ab9839_35ec713b5ac7 [**] [Classification: (null)] [Priority: 3] {TCP} 141.0.9.208:41534 -> 103.166.156.58:443
...
show less
Email Spam
Hacking
๐ฎ๐ฉ
hermawan
2025-11-03 04:54:25
(7 months ago)
[Mon Nov 03 11:53:39.884175 2025] [security2:error] [pid 1614483:tid 140564247754432] [client 141.0. ...
show more
[Mon Nov 03 11:53:39.884175 2025] [security2:error] [pid 1614483:tid 140564247754432] [client 141.0.9.208:59670] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "X-Forwarded-For" at REQUEST_HEADERS_NAMES:X-Forwarded-For. [file "/etc/modsecurity/coreruleset-4.19.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "378"] [id "440005"] [msg "BAD REQUEST_HEADERS_NAMES - Detected and Blocked"] [data "Matched Data: X-Forwarded-For found within REQUEST_HEADERS_NAMES:X-Forwarded-For: X-Forwarded-For request_line = GET /index.php/prediksi-iklim/prediksi-bulanan/curah-hujan/3-bulan-ke-depan/555562275-prediksi-bulanan-curah-hujan-bulan-november-tahun-2025-update-dari-analisis-bulan-juli-tahun-2025-di-provinsi-jawa-timur HTTP/1.1"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/prediksi-iklim/prediksi-bulanan/curah-hujan/3-bulan-ke-depan/555562275-prediksi-bulanan-curah-hujan-bulan-november-tahun-2025-update-dari-analisis-bulan-juli-tahun-2025-di-pr
...
show less
Hacking
Web App Attack
๐ฎ๐ฉ
hermawan
2025-08-03 06:05:25
(10 months ago)
[Sun Aug 03 12:28:02.398558 2025] [security2:error] [pid 353816:tid 140160872208064] [client 141.0.9 ...
show more
[Sun Aug 03 12:28:02.398558 2025] [security2:error] [pid 353816:tid 140160872208064] [client 141.0.9.208:56554] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "X-Forwarded-For" at REQUEST_HEADERS_NAMES:X-Forwarded-For. [file "/etc/modsecurity/coreruleset-4.16.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "375"] [id "440005"] [msg "BAD REQUEST_HEADERS_NAMES - Detected and Blocked"] [data "Matched Data: X-Forwarded-For found within REQUEST_HEADERS_NAMES:X-Forwarded-For: X-Forwarded-For request_line = GET /images/gempa/webp/20250802112023.mmi.jpg.webp HTTP/1.1"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/images/gempa/webp/20250802112023.mmi.jpg.webp"] [unique_id "aI7zYkwEPKJUQYguTMEW_wAAAQU"], referer https://staklim-jatim.bmkg.go.id/index.php/prediksi-iklim/prediksi-bulanan/curah-hujan/3-bulan-ke-depan/555562014-prediksi-bulanan-curah-hujan-bulan-september-tahun-2025-update-dari-analisis-bulan-mei-tahun-2025-di-provinsi-jawa-timur [stakli
...
show less
Hacking
Web App Attack
๐ฎ๐ฉ
hermawan
2025-04-16 05:41:54
(1 year ago)
[Wed Apr 16 12:41:53.496315 2025] [security2:error] [pid 952081:tid 140434391152320] [client 141.0.9 ...
show more
[Wed Apr 16 12:41:53.496315 2025] [security2:error] [pid 952081:tid 140434391152320] [client 141.0.9.208:35824] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "X-Forwarded-For" at REQUEST_HEADERS_NAMES:X-Forwarded-For. [file "/etc/modsecurity/coreruleset-4.10.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "349"] [id "440005"] [msg "BAD REQUEST_HEADERS_NAMES - Detected and Blocked"] [data "Matched Data: X-Forwarded-For found within REQUEST_HEADERS_NAMES:X-Forwarded-For: X-Forwarded-For request_line = GET /index.php/prakiraan-iklim/prakiraan-bulanan/prakiraan-curah-hujan-bulanan/3-bulan-ke-depan/555561746-prakiraan-bulanan-curah-hujan-bulan-mei-tahun-2025-update-dari-analisis-bulan-januari-tahun-2025-di-provinsi-jawa-timur HTTP/1.1"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/prakiraan-iklim/prakiraan-bulanan/prakiraan-curah-hujan-bulanan/3-bulan-ke-depan/555561746-prakiraan-bulanan-curah-hujan-bulan-mei-tahun-2025-update-dari-an
...
show less
Hacking
Web App Attack
๐ฎ๐ฉ
hermawan
2025-04-07 07:08:59
(1 year ago)
[Mon Apr 07 14:07:39.520900 2025] [security2:error] [pid 56848:tid 140414728255168] [client 141.0.9. ...
show more
[Mon Apr 07 14:07:39.520900 2025] [security2:error] [pid 56848:tid 140414728255168] [client 141.0.9.208:57434] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "X-Forwarded-For" at REQUEST_HEADERS_NAMES:X-Forwarded-For. [file "/etc/modsecurity/coreruleset-4.10.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "349"] [id "440005"] [msg "BAD REQUEST_HEADERS_NAMES - Detected and Blocked"] [data "Matched Data: X-Forwarded-For found within REQUEST_HEADERS_NAMES:X-Forwarded-For: X-Forwarded-For request_line = GET /TableFilter/system-v170.css HTTP/1.1"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/TableFilter/system-v170.css"] [unique_id "Z_N5u6SlSiSv9KsyGgauWwAAAGA"], referer https://staklim-malang.info/ [staklim-malang.info] [staklim-malang.info] top=[56932] [el435PKEoPQ] [Z_N5u6SlSiSv9KsyGgauWwAAAGA] keep_alive=[0] [2025-04-07 14:07:39.520905] [R:Z_N5u6SlSiSv9KsyGgauWwAAAGA] UA:'Mozilla/5.0 (Linux; U; Android 12; V2120 Build/SP1A.210812.003; wv) AppleWe
...
show less
Hacking
Web App Attack
๐ฎ๐ฉ
hermawan
2025-03-13 06:51:03
(1 year ago)
[Thu Mar 13 06:35:29.756784 2025] [security2:error] [pid 3756:tid 140620895078080] [client 141.0.9.2 ...
show more
[Thu Mar 13 06:35:29.756784 2025] [security2:error] [pid 3756:tid 140620895078080] [client 141.0.9.208:39182] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "X-Forwarded-For" at REQUEST_HEADERS_NAMES:X-Forwarded-For. [file "/etc/modsecurity/coreruleset-4.10.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "326"] [id "440005"] [msg "BAD REQUEST_HEADERS_NAMES - Detected and Blocked"] [data "Matched Data: X-Forwarded-For found within REQUEST_HEADERS_NAMES:X-Forwarded-For: X-Forwarded-For request_line = GET /index.php/prakiraan-musim/4272-prakiraan-musim-hujan/prakiraan-puncak-musim-hujan/prediksi-puncak-hujan-musim-hujan-tahun-2024-2025-zona-musim-di-provinsi-jawa-timur HTTP/1.1"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/prakiraan-musim/4272-prakiraan-musim-hujan/prakiraan-puncak-musim-hujan/prediksi-puncak-hujan-musim-hujan-tahun-2024-2025-zona-musim-di-provinsi-jawa-timur"] [unique_id "Z9J8sYtCKBYHGvauN-2pQwAAAVo"], referer http
...
show less
Hacking
Web App Attack
๐ฎ๐ฉ
hermawan
2025-02-17 04:11:40
(1 year ago)
[Mon Feb 17 11:11:39.347081 2025] [security2:error] [pid 519933:tid 140256611378880] [client 141.0.9 ...
show more
[Mon Feb 17 11:11:39.347081 2025] [security2:error] [pid 519933:tid 140256611378880] [client 141.0.9.208:35402] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "X-Forwarded-For" at REQUEST_HEADERS_NAMES:X-Forwarded-For. [file "/etc/modsecurity/coreruleset-4.10.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "304"] [id "440005"] [msg "BAD REQUEST_HEADERS_NAMES - Detected and Blocked"] [data "Matched Data: X-Forwarded-For found within REQUEST_HEADERS_NAMES:X-Forwarded-For: X-Forwarded-For request_line = GET /index.php/profil/meteorologi/list-of-all-tags/gempa-terkini HTTP/1.1"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/profil/meteorologi/list-of-all-tags/gempa-terkini"] [unique_id "Z7K2-2mTlUnORNz4ZJhYzgAAAd0"], referer https://www.google.com/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[520042] [PPKTuOY8uw0] [Z7K2-2mTlUnORNz4ZJhYzgAAAd0] keep_alive=[0] [2025-02-17 11:11:39.347085] [R:Z7K2-2mTlUnORNz4ZJhYzgAAAd0] UA:
...
show less
Hacking
Web App Attack
๐ฎ๐ฉ
hermawan
2024-07-11 23:07:11
(1 year ago)
[Fri Jul 12 06:03:51.422194 2024] [security2:error] [pid 1264693:tid 136681963390528] [client 141.0. ...
show more
[Fri Jul 12 06:03:51.422194 2024] [security2:error] [pid 1264693:tid 136681963390528] [client 141.0.9.208:42352] [client 141.0.9.208] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "X-Forwarded-For" at REQUEST_HEADERS_NAMES:X-Forwarded-For. [file "/etc/modsecurity/coreruleset-4.3.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "163"] [id "440005"] [msg "BAD REQUEST_HEADERS_NAMES - Detected and Blocked"] [data "Matched Data: X-Forwarded-For found within REQUEST_HEADERS_NAMES:X-Forwarded-For: X-Forwarded-For request_line = GET /index.php/profil/meteorologi/list-of-all-tags/prakiraan-cuaca-lumajang HTTP/1.1"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/profil/meteorologi/list-of-all-tags/prakiraan-cuaca-lumajang"] [unique_id "ZpBk19mgX6tOI4D-x43j4QAAAQE"], referer https://www.google.com/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[1264736] [f6+1xvDAEA0] [ZpBk19mgX6tOI4D-x43j4QAAAQE] keep_alive=[0] [2024-07-12 06:03:51
...
show less
Hacking
Web App Attack
๐ฎ๐ฉ
hermawan
2024-07-10 04:20:12
(1 year ago)
[Wed Jul 10 11:20:03.497865 2024] [security2:error] [pid 1145850:tid 132402781357632] [client 141.0. ...
show more
[Wed Jul 10 11:20:03.497865 2024] [security2:error] [pid 1145850:tid 132402781357632] [client 141.0.9.208:51874] [client 141.0.9.208] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "X-Forwarded-For" at REQUEST_HEADERS_NAMES:X-Forwarded-For. [file "/etc/modsecurity/coreruleset-4.3.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "163"] [id "440005"] [msg "BAD REQUEST_HEADERS_NAMES - Detected and Blocked"] [data "Matched Data: X-Forwarded-For found within REQUEST_HEADERS_NAMES:X-Forwarded-For: X-Forwarded-For request_line = GET /images/Klimatologi/Analisis/Peta_Zona_Musim/Peta_Zona_Musim_ZOM_di_Provinsi_Jawa_Timur_Tahun_1991-2020-v1.jpg HTTP/1.1"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/images/Klimatologi/Analisis/Peta_Zona_Musim/Peta_Zona_Musim_ZOM_di_Provinsi_Jawa_Timur_Tahun_1991-2020-v1.jpg"] [unique_id "Zo4L8xh1wDBjp-TougRziQAAAI4"], referer https://www.google.com/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[1145906] [
...
show less
Hacking
Web App Attack
๐ฎ๐ฉ
hermawan
2024-07-06 00:50:41
(1 year ago)
[Sat Jul 06 07:50:34.485256 2024] [security2:error] [pid 2440838:tid 140580296328768] [client 141.0. ...
show more
[Sat Jul 06 07:50:34.485256 2024] [security2:error] [pid 2440838:tid 140580296328768] [client 141.0.9.208:34584] [client 141.0.9.208] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "X-Forwarded-For" at REQUEST_HEADERS_NAMES:X-Forwarded-For. [file "/etc/modsecurity/coreruleset-4.3.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "163"] [id "440005"] [msg "BAD REQUEST_HEADERS_NAMES - Detected and Blocked"] [data "Matched Data: X-Forwarded-For found within REQUEST_HEADERS_NAMES:X-Forwarded-For: X-Forwarded-For request_line = GET /index.php/prakiraan-musim/4193-prakiraan-musim-hujan/prakiraan-awal-musim-hujan/prakiraan-awal-musim-hujan-propinsi-jawa-timur/prakiraan-awal-musim-hujan-tahun-2023-2024-zona-musim-di-provinsi-jawa-timur/555560358-prakiraan-6-bulanan-awal-musim-hujan-tahun-2023-2024-zona-musim-di-provinsi-jawa-timur HTTP/1.1"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/prakiraan-musim/4193-prakiraan-musim-hujan/prakiraan-aw
...
show less
Hacking
Web App Attack
๐ฎ๐ฉ
hermawan
2024-06-27 02:55:10
(1 year ago)
[Thu Jun 27 09:55:07.528030 2024] [security2:error] [pid 503397:tid 136200482457152] [client 141.0.9 ...
show more
[Thu Jun 27 09:55:07.528030 2024] [security2:error] [pid 503397:tid 136200482457152] [client 141.0.9.208:59466] [client 141.0.9.208] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "X-Forwarded-For" at REQUEST_HEADERS_NAMES:X-Forwarded-For. [file "/etc/modsecurity/coreruleset-4.3.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "163"] [id "440005"] [msg "BAD REQUEST_HEADERS_NAMES - Detected and Blocked"] [data "Matched Data: X-Forwarded-For found within REQUEST_HEADERS_NAMES:X-Forwarded-For: X-Forwarded-For request_line = GET /index.php/profil/meteorologi/list-all-categories/4073-meteorologi/prakiraan-meteorologi/prakiraan-cuaca-harian-tiap-3-jam-sekali-per-kecamatan/555557863-prakiraan-cuaca-harian-tiap-3-jam-sekali-per-kecamatan-di-kota-kediri HTTP/1.1"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/index.php/profil/meteorologi/list-all-categories/4073-meteorologi/prakiraan-meteorologi/prakiraan-cuaca-harian-tiap-3-jam-sekali-per-kecamatan/555557
...
show less
Hacking
Web App Attack
๐ฎ๐ฉ
hermawan
2024-05-30 15:25:26
(2 years ago)
[Thu May 30 22:25:23.586923 2024] [security2:error] [pid 345253:tid 133932177688128] [client 141.0.9 ...
show more
[Thu May 30 22:25:23.586923 2024] [security2:error] [pid 345253:tid 133932177688128] [client 141.0.9.208:38750] [client 141.0.9.208] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "X-Forwarded-For" at REQUEST_HEADERS_NAMES:X-Forwarded-For. [file "/etc/modsecurity/coreruleset-4.0.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "128"] [id "440005"] [msg "BAD REQUEST_HEADERS_NAMES - Detected and Blocked"] [data "Matched Data: X-Forwarded-For found within REQUEST_HEADERS_NAMES:X-Forwarded-For: X-Forwarded-For request_line = GET /index.php/prakiraan-iklim/prakiraan-bulanan/prakiraan-curah-hujan-bulanan/555560932-prakiraan-bulanan-curah-hujan-bulan-juni-tahun-2024-update-dari-analisis-bulan-april-tahun-2024-di-provinsi-jawa-timur HTTP/1.1"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/prakiraan-iklim/prakiraan-bulanan/prakiraan-curah-hujan-bulanan/555560932-prakiraan-bulanan-curah-hujan-bulan-juni-tahun-2024-update-dari-analisis-bulan-a
...
show less
Hacking
Web App Attack
๐ฎ๐ฉ
hermawan
2024-04-25 11:06:47
(2 years ago)
[Thu Apr 25 18:06:42.927226 2024] [security2:error] [pid 9209:tid 140446502225472] [client 141.0.9.2 ...
show more
[Thu Apr 25 18:06:42.927226 2024] [security2:error] [pid 9209:tid 140446502225472] [client 141.0.9.208:48686] [client 141.0.9.208] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "X-Forwarded-For" at REQUEST_HEADERS_NAMES:X-Forwarded-For. [file "/etc/modsecurity/coreruleset-4.0.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "122"] [id "440005"] [msg "BAD REQUEST_HEADERS_NAMES - Detected and Blocked"] [data "Matched Data: X-Forwarded-For found within REQUEST_HEADERS_NAMES:X-Forwarded-For: X-Forwarded-For request_line = GET /index.php/profil/meteorologi/list-of-all-tags/prakiraan-cuaca-sumenep HTTP/1.1"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/profil/meteorologi/list-of-all-tags/prakiraan-cuaca-sumenep"] [unique_id "Zio5QstYDP-DquSPjbNZvQAAAQY"], referer https://www.google.com/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[9257] [iZ08yNmFV4s] [Zio5QstYDP-DquSPjbNZvQAAAQY] keep_alive=[0] [2024-04-25 18:06:42.927231]
...
show less
Hacking
Web App Attack