๐ฎ๐ฉ
bps-statistics
2026-06-24 16:58:39
(4 days ago)
Remote Shell Reconnaisance: "2026-06-24T23:58:39.672+07:00" "/mgmt/shared/iapp/rpm-spec-creator" "17 ...
show more
Remote Shell Reconnaisance: "2026-06-24T23:58:39.672+07:00" "/mgmt/shared/iapp/rpm-spec-creator" "172.70.142.97" "Mozilla/5.0 (X11; Linux i686; rv:1.9.7.20) Gecko/ Firefox/3.6.20"
show less
Web App Attack
Brute-Force
๐ฎ๐ฉ
David Koswari
2026-05-20 06:20:00
(1 month ago)
REQ_BLOCKED_ACL
DDoS Attack
FTP Brute-Force
Ping of Death
Port Scan
Hacking
SQL Injection
Spoofing
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
SSH
IoT Targeted
Anonymous
2026-04-27 23:30:56
(2 months ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack
Anonymous
2026-04-23 20:13:55
(2 months ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack
๐ฎ๐ฉ
Burayot
2026-03-30 00:55:09
(2 months ago)
LF_MODSEC: (mod_security) mod_security (id:949110) triggered by 172.70.142.97 (SG/Singapore/-): 1 in ...
show more
LF_MODSEC: (mod_security) mod_security (id:949110) triggered by 172.70.142.97 (SG/Singapore/-): 1 in the last 3600 secs
show less
Web App Attack
Anonymous
2026-03-15 01:35:17
(3 months ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack
๐ฎ๐น
alph44
2025-11-29 13:31:10
(6 months ago)
(mod_security) mod_security (id:949110) triggered by 172.70.142.97 (SG/Singapore/-): 5 in the last 3 ...
show more
(mod_security) mod_security (id:949110) triggered by 172.70.142.97 (SG/Singapore/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_MODSEC; Logs:
show less
Web App Attack
๐ฎ๐ฉ
hermawan
2025-11-15 12:15:53
(7 months ago)
[Sat Nov 15 19:14:04.968341 2025] [security2:error] [pid 880952:tid 140212928669376] [client 172.70. ...
show more
[Sat Nov 15 19:14:04.968341 2025] [security2:error] [pid 880952:tid 140212928669376] [client 172.70.142.97:39689] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "CF-RAY" at REQUEST_HEADERS_NAMES:Cf-Ray. [file "/etc/modsecurity/coreruleset-4.20.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "394"] [id "440005"] [msg "BAD REQUEST_HEADERS_NAMES - Detected and Blocked"] [data "Matched Data: CF-RAY found within REQUEST_HEADERS_NAMES:Cf-Ray: Cf-Ray request_line = GET /images/Klimatologi/Infografis/Infografis-Iklim/Dasarian/2025/08_Agustus_2025/Das-I/Infografis_Dasarian_Iklim_Jawa_Timur_Update_10_Agustus_2025-600.webp HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/images/Klimatologi/Infografis/Infografis-Iklim/Dasarian/2025/08_Agustus_2025/Das-I/Infografis_Dasarian_Iklim_Jawa_Timur_Update_10_Agustus_2025-600.webp"] [unique_id "aRhujJfvTpQhiUbV9Z13DAADBxg"] [staklim-malang.info] [staklim-malang.info] top=[880977] [jv/dDCFYRiA] [aRhujJfvTpQhiUb
...
show less
Hacking
Web App Attack
๐บ๐ธ
mawan
2025-11-13 22:41:57
(7 months ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐ฎ๐ฉ
hermawan
2025-11-11 13:27:03
(7 months ago)
[Tue Nov 11 19:57:27.728170 2025] [security2:error] [pid 95430:tid 139672310150848] [client 172.70.1 ...
show more
[Tue Nov 11 19:57:27.728170 2025] [security2:error] [pid 95430:tid 139672310150848] [client 172.70.142.97:36423] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "CF-RAY" at REQUEST_HEADERS_NAMES:Cf-Ray. [file "/etc/modsecurity/coreruleset-4.20.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "394"] [id "440005"] [msg "BAD REQUEST_HEADERS_NAMES - Detected and Blocked"] [data "Matched Data: CF-RAY found within REQUEST_HEADERS_NAMES:Cf-Ray: Cf-Ray request_line = GET /images/Klimatologi/Infografis/Infografis-Iklim/Dasarian/2025/08_Agustus_2025/Das-I/Infografis_Dasarian_Iklim_Jawa_Timur_Update_10_Agustus_2025-600.webp HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/images/Klimatologi/Infografis/Infografis-Iklim/Dasarian/2025/08_Agustus_2025/Das-I/Infografis_Dasarian_Iklim_Jawa_Timur_Update_10_Agustus_2025-600.webp"] [unique_id "aRMyt7CEEkpeX_jrRl5nbQACwRg"] [staklim-malang.info] [staklim-malang.info] top=[95455] [152jMJG0Nkc] [aRMyt7CEEkpeX_jrR
...
show less
Hacking
Web App Attack
๐ฎ๐ฉ
hermawan
2025-11-10 09:25:38
(7 months ago)
[Mon Nov 10 16:04:33.295868 2025] [security2:error] [pid 2357629:tid 140042117740224] [client 172.70 ...
show more
[Mon Nov 10 16:04:33.295868 2025] [security2:error] [pid 2357629:tid 140042117740224] [client 172.70.142.97:37348] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "CF-RAY" at REQUEST_HEADERS_NAMES:Cf-Ray. [file "/etc/modsecurity/coreruleset-4.20.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "394"] [id "440005"] [msg "BAD REQUEST_HEADERS_NAMES - Detected and Blocked"] [data "Matched Data: CF-RAY found within REQUEST_HEADERS_NAMES:Cf-Ray: Cf-Ray request_line = GET /images/Klimatologi/Prakiraan/04_Prakiraan_6_Bulanan/Prakiraan_Musim/Prakiraan_Musim_Kemarau/Provinsi_Jawa_Timur/2023/Peta_Prakiraan_Puncak_Musim_Kemarau_Tahun_2023_Zona_Musim_di_Provinsi_Jawa_Timur.jpg HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/images/Klimatologi/Prakiraan/04_Prakiraan_6_Bulanan/Prakiraan_Musim/Prakiraan_Musim_Kemarau/Provinsi_Jawa_Timur/2023/Peta_Prakiraan_Puncak_Musim_Kemarau_Tahun_2023_Zona_Musim_di_Provinsi_Jawa_Timur.jpg"] [unique_id "aRGqoWtUOR5
...
show less
Hacking
Web App Attack
๐บ๐ธ
mawan
2025-11-08 07:27:34
(7 months ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐ฎ๐ฉ
hermawan
2025-11-05 07:41:13
(7 months ago)
[Wed Nov 05 14:24:49.018923 2025] [security2:error] [pid 1533087:tid 139733316388544] [client 172.70 ...
show more
[Wed Nov 05 14:24:49.018923 2025] [security2:error] [pid 1533087:tid 139733316388544] [client 172.70.142.97:48066] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "CF-RAY" at REQUEST_HEADERS_NAMES:Cf-Ray. [file "/etc/modsecurity/coreruleset-4.19.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "393"] [id "440005"] [msg "BAD REQUEST_HEADERS_NAMES - Detected and Blocked"] [data "Matched Data: CF-RAY found within REQUEST_HEADERS_NAMES:Cf-Ray: Cf-Ray request_line = GET /images/Klimatologi/Prakiraan/04_Prakiraan_6_Bulanan/Prakiraan_Musim/Prakiraan_Musim_Kemarau/Provinsi_Jawa_Timur/2023/Peta_Prakiraan_Puncak_Musim_Kemarau_Tahun_2023_Zona_Musim_di_Provinsi_Jawa_Timur.jpg HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/images/Klimatologi/Prakiraan/04_Prakiraan_6_Bulanan/Prakiraan_Musim/Prakiraan_Musim_Kemarau/Provinsi_Jawa_Timur/2023/Peta_Prakiraan_Puncak_Musim_Kemarau_Tahun_2023_Zona_Musim_di_Provinsi_Jawa_Timur.jpg"] [unique_id "aQr7wECZ3Zz
...
show less
Hacking
Web App Attack
๐ฎ๐ฉ
hermawan
2025-10-31 13:52:37
(7 months ago)
[Fri Oct 31 20:52:15.016284 2025] [security2:error] [pid 994359:tid 140357138380480] [client 172.70. ...
show more
[Fri Oct 31 20:52:15.016284 2025] [security2:error] [pid 994359:tid 140357138380480] [client 172.70.142.97:43325] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "CF-RAY" at REQUEST_HEADERS_NAMES:Cf-Ray. [file "/etc/modsecurity/coreruleset-4.19.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "374"] [id "440005"] [msg "BAD REQUEST_HEADERS_NAMES - Detected and Blocked"] [data "Matched Data: CF-RAY found within REQUEST_HEADERS_NAMES:Cf-Ray: Cf-Ray request_line = GET /images/Klimatologi/Infografis/Infografis-Iklim/Dasarian/2025/08_Agustus_2025/Das-I/Infografis_Dasarian_Iklim_Jawa_Timur_Update_10_Agustus_2025-600.webp HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/images/Klimatologi/Infografis/Infografis-Iklim/Dasarian/2025/08_Agustus_2025/Das-I/Infografis_Dasarian_Iklim_Jawa_Timur_Update_10_Agustus_2025-600.webp"] [unique_id "aQS_DxMDXaMzuCyfxnkEaAAACwE"] [staklim-malang.info] [staklim-malang.info] top=[994362] [6ulRrLQn2JE] [aQS_DxMDXaMzuCy
...
show less
Hacking
Web App Attack
๐ฎ๐น
alph44
2025-10-24 19:40:01
(8 months ago)
(mod_security) mod_security (id:949110) triggered by 172.70.142.97 (SG/Singapore/-): 5 in the last 3 ...
show more
(mod_security) mod_security (id:949110) triggered by 172.70.142.97 (SG/Singapore/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_MODSEC; Logs:
show less
Web App Attack