Mendip_Defender
2025-03-19 19:30:06
(1 week ago)
47.128.19.25 - - [19/Mar/2025:19:30:02 +0000] "GET /?%3Fs=bccef16bf94f6db30d004822cd9a505e HTTP/1.0" ... show more 47.128.19.25 - - [19/Mar/2025:19:30:02 +0000] "GET /?%3Fs=bccef16bf94f6db30d004822cd9a505e HTTP/1.0" 301 850 "-" "Mozilla/5.0 (Linux; Android 5.0) AppleWebKit/537.36 (KHTML, like Gecko) Mobile Safari/537.36 (compatible; Bytespider; [email protected] )"
... show less
Bad Web Bot
hermawan
2025-03-15 18:40:50
(1 week ago)
[Sun Mar 16 01:40:20.269813 2025] [security2:error] [pid 530897:tid 139972690486976] [client 47.128. ... show more [Sun Mar 16 01:40:20.269813 2025] [security2:error] [pid 530897:tid 139972690486976] [client 47.128.19.25:28948] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "Feed" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.10.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "187"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: Feed found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 (Linux; Android 5.0) AppleWebKit/537.36 (KHTML, like Gecko) Mobile Safari/537.36 (compatible; Bytespider; [email protected] ) request_line = GET /index.php/profil/meteorologi/list-all-categories/4217-klimatologi/prakiraan-klimatologi/prakiraan-dasarian/prakiraan-curah-hujan-dasarian/prakiraan-probabilistik-curah-hujan-dasarian/prakiraan-probabilistik-curah-hujan-dasarian-provinsi-jawa-timur/prakiraan-dasarian-probabilistik..."] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/index.php/profil/meteorologi/list-all-categor
... show less
Hacking
Web App Attack
Mendip_Defender
2025-03-12 21:54:47
(1 week ago)
47.128.19.25 - - [12/Mar/2025:21:54:45 +0000] "GET /robots.txt HTTP/1.0" 404 1607 "-" "Mozilla/5.0 ( ... show more 47.128.19.25 - - [12/Mar/2025:21:54:45 +0000] "GET /robots.txt HTTP/1.0" 404 1607 "-" "Mozilla/5.0 (Linux; Android 5.0) AppleWebKit/537.36 (KHTML, like Gecko) Mobile Safari/537.36 (compatible; Bytespider; [email protected] )"
... show less
Bad Web Bot
Anonymous
2025-03-07 15:14:49
(2 weeks ago)
Excessive crawling/scraping
Hacking
Brute-Force
backslash
2025-02-26 12:20:12
(1 month ago)
block ruleset 3D3AFA921A373ECE19B6BA285C2D722163304638
Bad Web Bot
Anonymous
2025-02-23 04:25:38
(1 month ago)
Action: Block, Reason: DDOS attack detected
DDoS Attack
Séfora Srl
2025-02-22 18:00:19
(1 month ago)
Bad user agents ignoring web crawling rules. Draing bandwidth - detected by Fail2Ban in plesk-apache ... show more Bad user agents ignoring web crawling rules. Draing bandwidth - detected by Fail2Ban in plesk-apache-badbot jail show less
Bad Web Bot
MAGIC
2025-02-19 03:07:21
(1 month ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
librebit
2025-02-17 10:29:57
(1 month ago)
Brute force
Brute-Force
Mangelot Hosting
2025-02-15 02:57:22
(1 month ago)
(BADBOT) ModSecurity BAD BOT Detected 47.128.19.25 (SG/Singapore/ec2-47-128-19-25.ap-southeast-1.com ... show more (BADBOT) ModSecurity BAD BOT Detected 47.128.19.25 (SG/Singapore/ec2-47-128-19-25.ap-southeast-1.compute.amazonaws.com): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: show less
Web App Attack
hermawan
2025-02-13 10:16:52
(1 month ago)
[Thu Feb 13 17:16:52.073653 2025] [security2:error] [pid 133081:tid 140430914016960] [client 47.128. ... show more [Thu Feb 13 17:16:52.073653 2025] [security2:error] [pid 133081:tid 140430914016960] [client 47.128.19.25:14992] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "Feed" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.10.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "165"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: Feed found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 (Linux; Android 5.0) AppleWebKit/537.36 (KHTML, like Gecko) Mobile Safari/537.36 (compatible; Bytespider; [email protected] ) request_line = GET /index.php/informasi-iklim/infografis-iklim/infografis-bulanan/infografis-bulanan-iklim-ekstrim/555561727-infografis-bulanan-iklim-suhu-udara-maksimum-bulan-januari-tahun-2025-di-provinsi-jawa-timur HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/informasi-iklim/infografis-iklim/infografis-bulanan/infografis-bulanan-iklim-ekstrim/555561727-infografis-b
... show less
Hacking
Web App Attack
Séfora Srl
2025-02-11 10:25:56
(1 month ago)
Bad user agents ignoring web crawling rules. Draing bandwidth - detected by Fail2Ban in plesk-apache ... show more Bad user agents ignoring web crawling rules. Draing bandwidth - detected by Fail2Ban in plesk-apache-badbot jail show less
Bad Web Bot
Anonymous
2025-02-10 15:47:56
(1 month ago)
Ports: 80,443; Direction: 1; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
Anonymous
2025-02-08 18:19:43
(1 month ago)
Ports: 80,443; Direction: 1; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
Anonymous
2025-02-07 10:16:57
(1 month ago)
Ports: 80,443; Direction: 1; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH