hermawan
2025-05-04 03:50:11
(2 months ago)
[Sun May 04 10:49:40.539956 2025] [security2:error] [pid 45684:tid 139677688309440] [client 40.116.7 ... show more [Sun May 04 10:49:40.539956 2025] [security2:error] [pid 45684:tid 139677688309440] [client 40.116.73.217:33087] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.13.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "204"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/prediksi-iklim/prediksi-bulanan/sifat-hujan/3-bulan-ke-depan/555561853-prediksi-bulanan-sifat-hujan-bulan-mei-tahun-2025-update-dari-analisis-bulan-februari-tahun-2025-di-provinsi-jawa-timur HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/prediksi-iklim/prediksi-bulanan/sifat-hujan/3-bulan-ke-depan/555561853-prediksi-bulanan-sifat-hujan-bulan-mei-tahun-2025-update-dari-analisis-bulan
... show less
Hacking
Web App Attack
hermawan
2025-05-03 22:56:57
(2 months ago)
[Sun May 04 05:53:30.535490 2025] [security2:error] [pid 890619:tid 140121759762112] [client 40.116. ... show more [Sun May 04 05:53:30.535490 2025] [security2:error] [pid 890619:tid 140121759762112] [client 40.116.73.217:23493] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.13.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "204"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/component/tags/tag/182 HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/component/tags/tag/182"] [unique_id "aBaeahynxfBsPObMTp7bVwAAzgo"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[890630] [vYu5IhtN3wA] [aBaeahynxfBsPObMTp7bVwAAzgo] keep_alive=[1] [2025-05-04 05:53:30.535495] [R:aBaeahynxfBsPObMTp7bVwAAzgo] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); comp
... show less
Hacking
Web App Attack
Anonymous
2025-05-03 16:14:03
(2 months ago)
Action: Block, Reason: DDOS attack detected
DDoS Attack
hermawan
2025-05-03 15:42:25
(2 months ago)
[Sat May 03 20:59:33.695365 2025] [security2:error] [pid 666762:tid 140079315371712] [client 40.116. ... show more [Sat May 03 20:59:33.695365 2025] [security2:error] [pid 666762:tid 140079315371712] [client 40.116.73.217:37808] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.13.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "204"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/profil/meteorologi/list-of-all-tags/analisis-hari-tanpa-hujan-berturut-turut-maksimum-di-propinsi-jawa-timur HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/profil/meteorologi/list-of-all-tags/analisis-hari-tanpa-hujan-berturut-turut-maksimum-di-propinsi-jawa-timur"] [unique_id "aBYhRbhjk28Kx2-cbK2YgQAAwyI"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[666797] [LDourSP
... show less
Hacking
Web App Attack
hermawan
2025-05-03 14:52:04
(2 months ago)
[Sat May 03 20:15:49.594814 2025] [security2:error] [pid 646893:tid 140080316376768] [client 40.116. ... show more [Sat May 03 20:15:49.594814 2025] [security2:error] [pid 646893:tid 140080316376768] [client 40.116.73.217:17436] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.13.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "204"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/profil/meteorologi/list-of-all-tags/prakiraan-curah-hujan-musim-hujan-di-propinsi-jawa-timur HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/profil/meteorologi/list-of-all-tags/prakiraan-curah-hujan-musim-hujan-di-propinsi-jawa-timur"] [unique_id "aBYXBaB0hT4CYmdVD38DXQAA2Ak"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[646903] [c4fEEKNbCns] [aBYXBaB0hT4CYmdVD38DXQAA2
... show less
Hacking
Web App Attack
construct.net
2025-05-03 14:42:48
(2 months ago)
Triggered rate limiter
Bad Web Bot
hermawan
2025-05-03 11:24:24
(2 months ago)
[Sat May 03 18:01:34.326246 2025] [security2:error] [pid 576668:tid 140685564892864] [client 40.116. ... show more [Sat May 03 18:01:34.326246 2025] [security2:error] [pid 576668:tid 140685564892864] [client 40.116.73.217:49553] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.13.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "204"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/prakiraan-iklim/prakiraan-bulanan/prakiraan-sifat-hujan-bulanan/3-bulan-ke-depan/555561743-prakiraan-bulanan-sifat-hujan-bulan-mei-tahun-2025-update-dari-analisis-bulan-januari-tahun-2025-di-provinsi-jawa-timur HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/prakiraan-iklim/prakiraan-bulanan/prakiraan-sifat-hujan-bulanan/3-bulan-ke-depan/555561743-prakiraan-bulanan-sifat-hujan-bulan
... show less
Hacking
Web App Attack
masterguru
2025-05-03 07:07:09
(2 months ago)
BAD BOT - Detected and Blocked.. Matched phrase "ChatGPT-User" at REQUEST_HEADERS:user-agent. (11000 ... show more BAD BOT - Detected and Blocked.. Matched phrase "ChatGPT-User" at REQUEST_HEADERS:user-agent. (1100000-124) show less
Bad Web Bot
hermawan
2025-05-03 03:21:49
(2 months ago)
[Sat May 03 09:31:15.874267 2025] [security2:error] [pid 338304:tid 140330231764672] [client 40.116. ... show more [Sat May 03 09:31:15.874267 2025] [security2:error] [pid 338304:tid 140330231764672] [client 40.116.73.217:20017] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.13.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "204"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /robots.txt HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/robots.txt"] [unique_id "aBV_8xTsirVHQn2RxY8BAgACoiY"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[338343] [v4qiDwoqiKs] [aBV_8xTsirVHQn2RxY8BAgACoiY] keep_alive=[1] [2025-05-03 09:31:15.874274] [R:aBV_8xTsirVHQn2RxY8BAgACoiY] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.co
... show less
Hacking
Web App Attack
hermawan
2025-05-03 01:59:59
(2 months ago)
[Sat May 03 08:58:00.574409 2025] [security2:error] [pid 304394:tid 140276584642240] [client 40.116. ... show more [Sat May 03 08:58:00.574409 2025] [security2:error] [pid 304394:tid 140276584642240] [client 40.116.73.217:50874] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.13.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "204"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/prakiraan-iklim/prakiraan-bulanan/prakiraan-curah-hujan-bulanan/3-bulan-ke-depan/555561464-prakiraan-bulanan-curah-hujan-bulan-januari-tahun-2025-update-dari-analisis-bulan-september-tahun-2024-di-provinsi-jawa-timur HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/prakiraan-iklim/prakiraan-bulanan/prakiraan-curah-hujan-bulanan/3-bulan-ke-depan/555561464-prakiraan-bulanan-curah-hujan
... show less
Hacking
Web App Attack
Anonymous
2025-05-02 16:46:16
(2 months ago)
Action: Block, Reason: DDOS attack detected
DDoS Attack
hermawan
2025-05-02 10:39:50
(2 months ago)
[Fri May 02 17:34:23.420636 2025] [security2:error] [pid 12084:tid 140286286726848] [client 40.116.7 ... show more [Fri May 02 17:34:23.420636 2025] [security2:error] [pid 12084:tid 140286286726848] [client 40.116.73.217:64342] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.13.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "204"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /Prakicu_Harian_Kota_Batu-v2.html HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/Prakicu_Harian_Kota_Batu-v2.html"] [unique_id "aBSfr82F0Ui5coaSlzGnBQAA4gg"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[12093] [ePmWsXyXWi0] [aBSfr82F0Ui5coaSlzGnBQAA4gg] keep_alive=[1] [2025-05-02 17:34:23.420639] [R:aBSfr82F0Ui5coaSlzGnBQAA4gg] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compat
... show less
Hacking
Web App Attack
masterguru
2025-05-02 05:43:21
(2 months ago)
BAD BOT - Detected and Blocked.. Matched phrase "ChatGPT-User" at REQUEST_HEADERS:user-agent. (11000 ... show more BAD BOT - Detected and Blocked.. Matched phrase "ChatGPT-User" at REQUEST_HEADERS:user-agent. (1100000-124) show less
Bad Web Bot
hermawan
2025-05-02 04:15:01
(2 months ago)
[Fri May 02 10:45:34.642897 2025] [security2:error] [pid 151235:tid 139828370699968] [client 40.116. ... show more [Fri May 02 10:45:34.642897 2025] [security2:error] [pid 151235:tid 139828370699968] [client 40.116.73.217:1561] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.13.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "204"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/prediksi-iklim/prediksi-bulanan/curah-hujan/3-bulan-ke-depan/555561856-prediksi-bulanan-curah-hujan-bulan-mei-tahun-2025-update-dari-analisis-bulan-februari-tahun-2025-di-provinsi-jawa-timur HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/prediksi-iklim/prediksi-bulanan/curah-hujan/3-bulan-ke-depan/555561856-prediksi-bulanan-curah-hujan-bulan-mei-tahun-2025-update-dari-analisis-bulan
... show less
Hacking
Web App Attack
hermawan
2025-05-01 20:35:07
(2 months ago)
[Fri May 02 03:35:01.119672 2025] [security2:error] [pid 44338:tid 139772011980480] [client 40.116.7 ... show more [Fri May 02 03:35:01.119672 2025] [security2:error] [pid 44338:tid 139772011980480] [client 40.116.73.217:25864] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.13.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "204"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/prakiraan-iklim/prakiraan-bulanan/prakiraan-curah-hujan-bulanan/3-bulan-ke-depan/555561746-prakiraan-bulanan-curah-hujan-bulan-mei-tahun-2025-update-dari-analisis-bulan-januari-tahun-2025-di-provinsi-jawa-timur HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/prakiraan-iklim/prakiraan-bulanan/prakiraan-curah-hujan-bulanan/3-bulan-ke-depan/555561746-prakiraan-bulanan-curah-hujan-bulan-
... show less
Hacking
Web App Attack