๐ฎ๐ฉ
hermawan
2026-06-10 01:37:59
(9 hours ago)
Captured JA4H: ge11n_186438911b7e | Log: 45.172.19.101 - - [10/Jun/2026:08:37:57 +0700] "GET /index. ...
show more
Captured JA4H: ge11n_186438911b7e | Log: 45.172.19.101 - - [10/Jun/2026:08:37:57 +0700] "GET /index.php/prakiraan-iklim/prakiraan-bulanan/daerah-potensi-banjir-di-provinsi-jawa-timur/555561248-prakiraan-bulanan-daerah-potensi-banjir-di-provinsi-jawa-timur-untuk-bulan-september-tahun-2024-update-10-agustus-2025 HTTP/1.1" 200 37946 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36" ge11n_host,sec-ch-ua,sec-ch-ua-mobile,sec-ch-ua-platform,upgrade-insecure-requests,user-agent,accept,sec-fetch-site,sec-fetch-mode,sec-fetch-user,sec-fetch-dest,accept-encoding,accept-language,priority...
...
show less
Email Spam
Hacking
๐ฎ๐ฉ
hermawan
2026-06-03 19:47:54
(6 days ago)
[Thu Jun 04 02:47:53.729802 2026] [security2:error] [pid 178823:tid 140148317574848] [client 45.172. ...
show more
[Thu Jun 04 02:47:53.729802 2026] [security2:error] [pid 178823:tid 140148317574848] [client 45.172.19.101:61034] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "www.bing.go.id" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "582"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: www.bing.go.id found within REQUEST_HEADERS:Referer: https://www.bing.go.id/ request_line = GET /index.php/profil/alamat-kantor/list-all-categories/555556811-mengakses-halaman-web-https-karangploso-jatim-bmkg-go-id-secara-offline-dan-menginstallnya-di-hp-android-atau-di-komputer HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/profil/alamat-kantor/list-all-categories/555556811-mengakses-halaman-web-https-karangploso-jatim-bmkg-go-id-secara-offline-dan-menginstallnya-di-hp-android-atau-di-komputer"] [unique_id "aiCE6cYFaijIjGUM7ITXBQABiAs"], referer https://www.bing.go.id/ [
...
show less
Email Spam
Hacking
๐บ๐ธ
RAP
2026-05-23 22:11:11
(2 weeks ago)
2026-05-23 22:11:11 UTC Unauthorized activity to TCP port 23. Telnet
Port Scan
๐บ๐ธ
TPI-Abuse
2026-05-18 14:02:57
(3 weeks ago)
(mod_security) mod_security (id:217210) triggered by 45.172.19.101 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:217210) triggered by 45.172.19.101 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 18 10:02:54.683959 2026] [security2:error] [pid 12749:tid 12749] [client 45.172.19.101:60932] ModSecurity: Access denied with code 403 (phase 2). Match of "rx ^(?i:(?:[a-z]{3,10}\\\\s+(?:\\\\w{3,7}?://[\\\\w\\\\-\\\\./]*(?::\\\\d+)?)?/[^?#]*(?:\\\\?[^#\\\\s]*)?(?:#[\\\\S]*)?|connect (?:\\\\d{1,3}\\\\.){3}\\\\d{1,3}\\\\.?(?::\\\\d+)?|options \\\\*)\\\\s+[\\\\w\\\\./]+|get /[^?#]*(?:\\\\?[^#\\\\s]*)?(?:#[\\\\S]*)?)$" against "REQUEST_LINE" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "114"] [id "217210"] [rev "1"] [msg "COMODO WAF: Invalid HTTP Request Line||moon61shes.xyz|F|4"] [data "GET http://moon61shes.xyz HTTP/1.1"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "moon61shes.xyz"] [uri "/"] [unique_id "agscDr6EcAbuJrU0eGR5RQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐น
urnilxfgbez
2026-05-14 22:45:00
(3 weeks ago)
Last 24 Hours suspicious: (DPT=445|DPT=3389|DPT=22|DPT=3306|DPT=8080|DPT=23|DPT=5900|DPT=1433)
Port Scan
๐ฆ๐บ
MAGIC
2026-01-23 01:24:12
(4 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ฆ๐น
urnilxfgbez
2026-01-08 23:45:00
(5 months ago)
Last 24 Hours suspicious: (DPT=445|DPT=3389|DPT=22|DPT=3306|DPT=8080|DPT=23|DPT=5900|DPT=1433)
Port Scan
๐ฌ๐ง
spamverify.com
2026-01-08 03:04:40
(5 months ago)
Honeypot Hit: Port Scan (23) TELNET
Web Spam
Blog Spam
Bad Web Bot
Web App Attack
๐ช๐ธ
el-brujo
2025-12-18 19:15:00
(5 months ago)
DDoS Attack Layer 7 Meri Botnet
DDoS Attack
Anonymous
2025-12-03 23:46:37
(6 months ago)
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.12.03 is noted in report tim ...
show more
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.12.03 is noted in report timestamp
show less
Hacking
Brute-Force
Anonymous
2025-11-26 10:12:20
(6 months ago)
scanning http requests from known botnet
Web App Attack
๐ฉ๐ช
SMARTNET
2025-11-26 02:37:10
(6 months ago)
Aisuru(Mirai variant) DDoS
DDoS Attack
Anonymous
2025-11-19 14:30:33
(6 months ago)
scanning http requests from known botnet
Web App Attack
Anonymous
2025-11-14 11:44:58
(6 months ago)
scanning http requests from known botnet
Web App Attack
๐ฉ๐ช
botreporter
2025-07-10 11:35:12
(10 months ago)
botnet ignoring robots.txt
Bad Web Bot