This IP was detected by CrowdSec triggering crowdsecurity/suricata-major-severity(๐พ - ๐จ Network ๐ต sc ...
show moreThis IP was detected by CrowdSec triggering crowdsecurity/suricata-major-severity(๐พ - ๐จ Network ๐ต scan ๐ฉ Nuclei ๐จโ๐ป). Ip 157.15.62.99 performed 'crowdsecurity/suricata-major-severity' (1 events over 0s) at 2026-01-17 19:54:05.61602758 +0000 UTC
show less
[Sun May 04 21:38:14.331780 2025] [security2:error] [pid 328251:tid 139982238316224] [client 157.15. ...
show more[Sun May 04 21:38:14.331780 2025] [security2:error] [pid 328251:tid 139982238316224] [client 157.15.62.99:57041] ModSecurity: Access denied with code 403 (phase 1). Match of "pm www.office.com powerpoint.officeapps.live.com /offline-service-worker-19-02-2025.js /offline-service-worker-27-01-2024-v5-0-1.js /offline-service-worker-01-08-2023-v4-5-1.js /OneSignalSDKWorker.js /worker-analytic-helper-27-11-2022.js/ /worker-analyti ..." against "REQUEST_HEADERS:Referer" required. [file "/etc/modsecurity/coreruleset-4.13.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "433"] [id "440067"] [msg "BAD Referer"] [data "Matched Data: staklim-jatim.bmkg.go.id found within REQUEST_HEADERS:Referer: request_line = GET /b/bulananmalangbatu.pdf HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/b/bulananmalangbatu.pdf"] [unique_id "aBd71RS6N5aMLJnG3iaK_AAAnAs"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[328263] [6cIMVQhaGpQ] [aBd71RS6N5aMLJnG3iaK_AAAnAs]
...
show less
Hacking
Web App Attack
Anonymous
(CT) IP 157.15.62.99 (ID/Indonesia/-) found to have 102 connections; Ports: 27960; SRV: 2; Action: 0 ...
show more(CT) IP 157.15.62.99 (ID/Indonesia/-) found to have 102 connections; Ports: 27960; SRV: 2; Action: 0; Trigger: CT_LIMIT
show less