hermawan
2025-04-21 05:24:04
(1 day ago)
[Mon Apr 21 11:09:54.317763 2025] [security2:error] [pid 79872:tid 140599070013120] [client 20.161.7 ... show more [Mon Apr 21 11:09:54.317763 2025] [security2:error] [pid 79872:tid 140599070013120] [client 20.161.75.222:49251] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.10.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "204"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/profil/meteorologi/list-of-all-tags/infografis-bulanan-iklim-ekstrim-tahun-2024 HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/profil/meteorologi/list-of-all-tags/infografis-bulanan-iklim-ekstrim-tahun-2024"] [unique_id "aAXFEkT2XXO2GIIFd8sIFQAAJAU"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[79879] [K8ZOClrFqjk] [aAXFEkT2XXO2GIIFd8sIFQAAJAU] keep_alive=[1] [2025-04-
... show less
Hacking
Web App Attack
hermawan
2025-04-20 16:51:30
(1 day ago)
[Sun Apr 20 23:29:14.595261 2025] [security2:error] [pid 21899:tid 140648229349056] [client 20.161.7 ... show more [Sun Apr 20 23:29:14.595261 2025] [security2:error] [pid 21899:tid 140648229349056] [client 20.161.75.222:58416] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.10.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "204"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/prakiraan-iklim/prakiraan-bulanan/prakiraan-curah-hujan-bulanan/3-bulan-ke-depan/555561026-prakiraan-bulanan-curah-hujan-bulan-juli-tahun-2024-update-dari-analisis-bulan-mei-tahun-2024-di-provinsi-jawa-timur HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/prakiraan-iklim/prakiraan-bulanan/prakiraan-curah-hujan-bulanan/3-bulan-ke-depan/555561026-prakiraan-bulanan-curah-hujan-bulan-jul
... show less
Hacking
Web App Attack
hermawan
2025-04-19 05:46:12
(3 days ago)
[Sat Apr 19 12:45:17.728928 2025] [security2:error] [pid 1221045:tid 139682144663232] [client 20.161 ... show more [Sat Apr 19 12:45:17.728928 2025] [security2:error] [pid 1221045:tid 139682144663232] [client 20.161.75.222:8540] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.10.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "204"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/prakiraan-iklim/prakiraan-bulanan/prakiraan-curah-hujan-bulanan/3-bulan-ke-depan/555561702-prakiraan-bulanan-curah-hujan-bulan-april-tahun-2025-update-dari-analisis-bulan-desember-tahun-2024-di-provinsi-jawa-timur HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/prakiraan-iklim/prakiraan-bulanan/prakiraan-curah-hujan-bulanan/3-bulan-ke-depan/555561702-prakiraan-bulanan-curah-hujan-bu
... show less
Hacking
Web App Attack
Anonymous
2025-04-17 18:26:02
(4 days ago)
Action: Block, Reason: DDOS attack detected
DDoS Attack
hermawan
2025-04-17 04:38:49
(5 days ago)
[Thu Apr 17 11:32:40.232314 2025] [security2:error] [pid 9585:tid 139913087358656] [client 20.161.75 ... show more [Thu Apr 17 11:32:40.232314 2025] [security2:error] [pid 9585:tid 139913087358656] [client 20.161.75.222:41825] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.10.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "204"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/analisis-musim/4316-perbandingan-klimatologi/perbandingan-prakiraan-awal-musim-kemarau-dengan-normalnya-zona-musim-di-propinsi-jawa-timur/analisis-6-bulanan-perbandingan-prediksi-awal-musim-kemarau-tahun-2025-dengan-normalnya-1991-2020-zona-musim-di-provinsi-jawa-timur HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/analisis-musim/4316-perbandingan-klimatologi/perbandingan-prakiraan-a
... show less
Hacking
Web App Attack
Anonymous
2025-04-16 21:24:00
(5 days ago)
"Excessive,undesired traffic against library service"
Bad Web Bot
hermawan
2025-04-16 03:02:03
(6 days ago)
[Wed Apr 16 09:08:15.692451 2025] [security2:error] [pid 856544:tid 140436526466752] [client 20.161. ... show more [Wed Apr 16 09:08:15.692451 2025] [security2:error] [pid 856544:tid 140436526466752] [client 20.161.75.222:30424] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.10.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "204"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/prakiraan-iklim/prakiraan-bulanan/prakiraan-sifat-hujan-bulanan/prakiraan-sifat-hujan-untuk-6-bulan-ke-depan/555561197-prakiraan-bulanan-sifat-hujan-di-kabupaten-sampang-untuk-6-bulan-ke-depan-2 HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/index.php/prakiraan-iklim/prakiraan-bulanan/prakiraan-sifat-hujan-bulanan/prakiraan-sifat-hujan-untuk-6-bulan-ke-depan/555561197-prakiraan-bulanan-sifat-huja
... show less
Hacking
Web App Attack
MAGIC
2025-04-16 00:14:41
(6 days ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
hermawan
2025-04-14 14:57:47
(1 week ago)
[Mon Apr 14 21:34:47.483368 2025] [security2:error] [pid 47806:tid 140617565689536] [client 20.161.7 ... show more [Mon Apr 14 21:34:47.483368 2025] [security2:error] [pid 47806:tid 140617565689536] [client 20.161.75.222:60151] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.10.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "204"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET / HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/"] [unique_id "Z_0dB7vVOzh_VdV9NlmXdAAAEQs"] [staklim-malang.info] [staklim-malang.info] top=[47818] [up4v9KVvc7s] [Z_0dB7vVOzh_VdV9NlmXdAAAEQs] keep_alive=[1] [2025-04-14 21:34:47.483375] [R:Z_0dB7vVOzh_VdV9NlmXdAAAEQs] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot' Host:'staklim-malang.info' ACC
... show less
Hacking
Web App Attack
hermawan
2025-04-14 11:47:01
(1 week ago)
[Mon Apr 14 16:22:32.766771 2025] [security2:error] [pid 671791:tid 139644641351360] [client 20.161. ... show more [Mon Apr 14 16:22:32.766771 2025] [security2:error] [pid 671791:tid 139644641351360] [client 20.161.75.222:38857] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.10.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "204"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/profil/meteorologi/list-of-all-tags/gempa-terkini HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/profil/meteorologi/list-of-all-tags/gempa-terkini"] [unique_id "Z_zT2K6KcUpd2ZOImgspwQAA7xw"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[671820] [N3GClyF3hPE] [Z_zT2K6KcUpd2ZOImgspwQAA7xw] keep_alive=[1] [2025-04-14 16:22:32.766777] [R:Z_zT2K6KcUpd2ZOImgspwQAA7xw] UA:'Mo
... show less
Hacking
Web App Attack
hermawan
2025-04-13 09:06:44
(1 week ago)
[Sun Apr 13 16:05:02.072853 2025] [security2:error] [pid 80205:tid 139664548148928] [client 20.161.7 ... show more [Sun Apr 13 16:05:02.072853 2025] [security2:error] [pid 80205:tid 139664548148928] [client 20.161.75.222:22053] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.10.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "204"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/profil/meteorologi/list-of-all-tags/prediksi-6-bulanan-puncak-musim-kemarau-tahun-2025-zona-musim-di-provinsi-jawa-timur HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/profil/meteorologi/list-of-all-tags/prediksi-6-bulanan-puncak-musim-kemarau-tahun-2025-zona-musim-di-provinsi-jawa-timur"] [unique_id "Z_t-Pqxas58-4kgqVMgOgAABAwE"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id
... show less
Hacking
Web App Attack
hermawan
2025-04-12 15:10:32
(1 week ago)
[Sat Apr 12 22:08:25.368489 2025] [security2:error] [pid 205460:tid 139838627940032] [client 20.161. ... show more [Sat Apr 12 22:08:25.368489 2025] [security2:error] [pid 205460:tid 139838627940032] [client 20.161.75.222:53113] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.10.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "204"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/prakiraan-iklim/prakiraan-bulanan/prakiraan-curah-hujan-bulanan/3-bulan-ke-depan/555561702-prakiraan-bulanan-curah-hujan-bulan-april-tahun-2025-update-dari-analisis-bulan-desember-tahun-2024-di-provinsi-jawa-timur HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/prakiraan-iklim/prakiraan-bulanan/prakiraan-curah-hujan-bulanan/3-bulan-ke-depan/555561702-prakiraan-bulanan-curah-hujan-bu
... show less
Hacking
Web App Attack
librebit
2025-04-12 02:51:31
(1 week ago)
Brute force
Brute-Force
hermawan
2025-04-11 14:43:24
(1 week ago)
[Fri Apr 11 21:35:08.007060 2025] [security2:error] [pid 148451:tid 139892647061184] [client 20.161. ... show more [Fri Apr 11 21:35:08.007060 2025] [security2:error] [pid 148451:tid 139892647061184] [client 20.161.75.222:10373] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.10.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "204"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET / HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/"] [unique_id "Z_konC7zf1xk5KaO5lcWaQAAsS4"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[148498] [FLfim7mswMg] [Z_konC7zf1xk5KaO5lcWaQAAsS4] keep_alive=[1] [2025-04-11 21:35:08.007068] [R:Z_konC7zf1xk5KaO5lcWaQAAsS4] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot' Host:'staklim
... show less
Hacking
Web App Attack
RocketEmi
2025-04-10 20:28:26
(1 week ago)
Intento de hackeo
Brute-Force