hermawan
|
|
[Tue Dec 03 22:24:58.103097 2024] [security2:error] [pid 25699:tid 135276112225984] [client 36.110.1 ... show more[Tue Dec 03 22:24:58.103097 2024] [security2:error] [pid 25699:tid 135276112225984] [client 36.110.131.1:63724] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "Head" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.8.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "61"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: Head found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/117.0.5938.60 Safari/537.36 request_line = GET /TableFilter/system-v167.css HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/TableFilter/system-v167.css"] [unique_id "Z08iys7up_hmzufVKexWZQACgSY"], referer https://staklim-malang.info/index.php/profil/meteorologi/list-all-categories/4124-klimatologi/prakiraan-klimatologi/prakiraan-dasarian/prakiraan-dasarian-daerah-potensi-banjir/prakiraan-dasarian-daerah-potensi-banjir-di-provinsi-jawa-timur/prakiraan
... show less
|
Hacking
Web App Attack
|
|
hermawan
|
|
[Sun Dec 01 08:43:24.314124 2024] [security2:error] [pid 628846:tid 136153593267904] [client 36.110. ... show more[Sun Dec 01 08:43:24.314124 2024] [security2:error] [pid 628846:tid 136153593267904] [client 36.110.131.1:58627] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "Head" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.8.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "61"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: Head found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/117.0.5938.60 Safari/537.36 request_line = GET /TableFilter/system-v167.css HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/TableFilter/system-v167.css"] [unique_id "Z0u_PODoxlSKqet5IlqJwQAB0AA"], referer https://staklim-malang.info/index.php/profil/arsip-artikel?catid=488&id=653%3Aprakiraan-cuaca-daerah-malang-dan-batu-seminggu-ke-depan-berlaku-tanggal-11-17-agustus-2015&start=80 [staklim-malang.info] [staklim-malang.info] top=[628847] [XUrAjrPute4
... show less
|
Hacking
Web App Attack
|
|
hermawan
|
|
[Wed Nov 27 11:16:52.068965 2024] [security2:error] [pid 90160:tid 129555698271936] [client 36.110.1 ... show more[Wed Nov 27 11:16:52.068965 2024] [security2:error] [pid 90160:tid 129555698271936] [client 36.110.131.1:61960] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "Head" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.8.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "61"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: Head found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/117.0.5938.60 Safari/537.36 request_line = GET /TableFilter/system-v167.css HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/TableFilter/system-v167.css"] [unique_id "Z0adNA9Vd1ONYv9RQ8ikegADLQM"], referer https://staklim-malang.info/index.php/profil/arsip-artikel?catid=479&id=1274%3Aprakiraan-cuaca-daerah-malang-dan-batu-seminggu-ke-depan-berlaku-tanggal-14-19-desember-2016&start=30 [staklim-malang.info] [staklim-malang.info] top=[90164] [Q042PCUEYKw
... show less
|
Hacking
Web App Attack
|
|
hermawan
|
|
[Mon Nov 25 07:54:46.034350 2024] [security2:error] [pid 452566:tid 135557753276096] [client 36.110. ... show more[Mon Nov 25 07:54:46.034350 2024] [security2:error] [pid 452566:tid 135557753276096] [client 36.110.131.1:13828] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "Head" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.8.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "61"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: Head found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/117.0.5938.60 Safari/537.36 request_line = GET /TableFilter/system-v167.css HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/TableFilter/system-v167.css"] [unique_id "Z0PK1on7yaNGCOvvMSjkJgABWU4"], referer https://staklim-malang.info/index.php/profil/arsip-artikel?catid=473&id=1167%3Aprakiraan-cuaca-daerah-malang-dan-batu-seminggu-ke-depan-berlaku-tanggal-4-10-oktober-2016&start=80 [staklim-malang.info] [staklim-malang.info] top=[452645] [xQTDLaqO5ws
... show less
|
Hacking
Web App Attack
|
|
hermawan
|
|
[Sat Nov 16 12:47:12.300438 2024] [security2:error] [pid 927992:tid 128483940243136] [client 36.110. ... show more[Sat Nov 16 12:47:12.300438 2024] [security2:error] [pid 927992:tid 128483940243136] [client 36.110.131.1:4290] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "Head" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.7.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "60"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: Head found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/117.0.5938.60 Safari/537.36 request_line = GET /TableFilter/system-v167.css HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/TableFilter/system-v167.css"] [unique_id "Zzgx4Ebq-dyvxZ7y0xI2VAAANB4"], referer https://staklim-malang.info/index.php/profil/arsip-artikel?catid=475&id=527%3Aprakiraan-cuaca-daerah-malang-dan-batu-seminggu-ke-depan-berlaku-tanggal-5-mei-11-mei-2015&start=80 [staklim-malang.info] [staklim-malang.info] top=[928023] [0UUHN/mvKVQ]
... show less
|
Hacking
Web App Attack
|
|
backslash
|
|
|
Bad Web Bot
|
|
MAGIC
|
|
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
|
DDoS Attack
Bad Web Bot
|
|
hermawan
|
|
[Sat Nov 09 05:16:19.298170 2024] [security2:error] [pid 1172440:tid 125248431195840] [client 36.110 ... show more[Sat Nov 09 05:16:19.298170 2024] [security2:error] [pid 1172440:tid 125248431195840] [client 36.110.131.1:37871] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "Head" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.7.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "59"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: Head found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/117.0.5938.60 Safari/537.36 request_line = GET /TableFilter/system-v167.css HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/TableFilter/system-v167.css"] [unique_id "Zy6Ns_RNMxV_Wl645LNfDQABL0s"], referer https://staklim-malang.info/index.php/profil/arsip-artikel?catid=479&id=901%3Aprakiraan-cuaca-daerah-malang-dan-batu-seminggu-ke-depan-berlaku-tanggal-23-29-pebruari-2016&start=160 [staklim-malang.info] [staklim-malang.info] top=[1172516] [UbGnGdY
... show less
|
Hacking
Web App Attack
|
|
hermawan
|
|
[Wed Nov 06 16:17:19.047679 2024] [security2:error] [pid 207702:tid 123768749950656] [client 36.110. ... show more[Wed Nov 06 16:17:19.047679 2024] [security2:error] [pid 207702:tid 123768749950656] [client 36.110.131.1:38339] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "Head" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.7.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "59"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: Head found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/117.0.5938.60 Safari/537.36 request_line = GET /TableFilter/system-v167.css HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/TableFilter/system-v167.css"] [unique_id "Zys0H8WOilImaUgP6yDd7wAGngc"], referer https://staklim-malang.info/index.php/profil/arsip-artikel?catid=623&id=555555706%3Aprakiraan-cuaca-daerah-malang-dan-batu-seminggu-ke-depan-berlaku-tanggal-23-29-mei-2017&start=30 [staklim-malang.info] [staklim-malang.info] top=[207710] [yBcJ/GL3N
... show less
|
Hacking
Web App Attack
|
|
hermawan
|
|
[Sun Nov 03 17:35:55.783476 2024] [security2:error] [pid 517005:tid 134752698894016] [client 36.110. ... show more[Sun Nov 03 17:35:55.783476 2024] [security2:error] [pid 517005:tid 134752698894016] [client 36.110.131.1:59949] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "Head" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.7.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "59"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: Head found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/117.0.5938.60 Safari/537.36 request_line = GET /TableFilter/system-v167.css HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/TableFilter/system-v167.css"] [unique_id "ZydSCw4Bcn6b12574FONGQABywk"], referer https://staklim-malang.info/index.php/profil/meteorologi/list-all-categories/4217-klimatologi/prakiraan-klimatologi/prakiraan-dasarian/prakiraan-curah-hujan-dasarian/prakiraan-probabilistik-curah-hujan-dasarian/prakiraan-probabilistik-curah-hujan-d
... show less
|
Hacking
Web App Attack
|
|
hermawan
|
|
[Sun Oct 27 11:10:24.703130 2024] [security2:error] [pid 244010:tid 126867514328768] [client 36.110. ... show more[Sun Oct 27 11:10:24.703130 2024] [security2:error] [pid 244010:tid 126867514328768] [client 36.110.131.1:37397] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "Head" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.7.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "59"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: Head found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/117.0.5938.60 Safari/537.36 request_line = GET /TableFilter/system-v167.css HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/TableFilter/system-v167.css"] [unique_id "Zx29MEGseWeQ5m7eCLGaOQABpRI"], referer https://staklim-malang.info/index.php/analisis-musim/147-monitoring-awal-musim-zona-musim-zom-di-propinsi-jawa-timur/monitoring-awal-musim-hujan-zona-musim-zom-di-propinsi-jawa-timur/monitoring-awal-musim-hujan-zona-musim-zom-di-propinsi-jawa-timur
... show less
|
Hacking
Web App Attack
|
|
MAGIC
|
|
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
|
DDoS Attack
Bad Web Bot
|
|
hermawan
|
|
[Sat Oct 19 23:10:42.226403 2024] [security2:error] [pid 28515:tid 123752377484992] [client 36.110.1 ... show more[Sat Oct 19 23:10:42.226403 2024] [security2:error] [pid 28515:tid 123752377484992] [client 36.110.131.1:38575] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "Head" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.7.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "39"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: Head found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/117.0.5938.60 Safari/537.36 request_line = GET /TableFilter/system-v167.css HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/TableFilter/system-v167.css"] [unique_id "ZxPaAkwzC7is3-aCBoxZZAABTgw"], referer https://staklim-malang.info/index.php/profil/arsip-artikel?catid=474&id=1016%3Aprakiraan-cuaca-daerah-malang-dan-batu-seminggu-ke-depan-berlaku-tanggal-31-mei-6-juni-2017&start=80 [staklim-malang.info] [staklim-malang.info] top=[28528] [+/ZFqR6NGXE]
... show less
|
Hacking
Web App Attack
|
|
hermawan
|
|
[Fri Oct 18 22:18:02.653430 2024] [security2:error] [pid 405339:tid 127511371450048] [client 36.110. ... show more[Fri Oct 18 22:18:02.653430 2024] [security2:error] [pid 405339:tid 127511371450048] [client 36.110.131.1:18072] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "Head" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.7.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "39"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: Head found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/117.0.5938.60 Safari/537.36 request_line = GET /TableFilter/system-v167.css HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/TableFilter/system-v167.css"] [unique_id "ZxJ8Kg2drGek1sm79PfvTAACSyc"], referer https://staklim-malang.info/index.php/prakiraan-cuaca-daerah-malang-dan-batu-seminggu-ke-depan/3936-prakiraan-cuaca-daerah-malang-dan-batu-seminggu-ke-depan-tahun-2019/1154-prakiraan-mingguan-cuaca-daerah-malang-dan-batu-seminggu-ke-depan-berlaku-1
... show less
|
Hacking
Web App Attack
|
|
hermawan
|
|
[Mon Oct 14 06:02:01.055285 2024] [security2:error] [pid 158936:tid 131554114275008] [client 36.110. ... show more[Mon Oct 14 06:02:01.055285 2024] [security2:error] [pid 158936:tid 131554114275008] [client 36.110.131.1:2930] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "Head" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.7.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "39"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: Head found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/117.0.5938.60 Safari/537.36 request_line = GET /TableFilter/system-v167.css HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/TableFilter/system-v167.css"] [unique_id "ZwxRaTdGrnpQ7T7Qk8lPpAAAoho"], referer https://staklim-malang.info/index.php/profil/arsip-artikel?catid=473&id=1106%3Aprakiraan-cuaca-daerah-malang-dan-batu-seminggu-ke-depan-berlaku-tanggal-23-29-agustus-2016&start=130 [staklim-malang.info] [staklim-malang.info] top=[158963] [hyY0tSsTKj
... show less
|
Hacking
Web App Attack
|
|