๐บ๐ธ
etu brutus
2025-12-16 03:15:02
(7 months ago)
57.141.14.87 has been banned for [WebApp Attack]
...
Hacking
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
sockominfo
2025-12-13 06:00:59
(7 months ago)
Double URL encoding detection. Threat Score: 6.8/10 (MEDIUM). Reported by TangerangKota-CSIRT
Hacking
Web App Attack
๐ฎ๐ฉ
sockominfo
2025-12-13 05:00:59
(7 months ago)
Double URL encoding detection. Threat Score: 6.9/10 (MEDIUM). Reported by TangerangKota-CSIRT
Hacking
Web App Attack
๐ฎ๐ฉ
sockominfo
2025-12-13 04:00:59
(7 months ago)
Double URL encoding detection. Threat Score: 7/10 (MEDIUM). Reported by TangerangKota-CSIRT. Status: ...
show more
Double URL encoding detection. Threat Score: 7/10 (MEDIUM). Reported by TangerangKota-CSIRT. Status: MALICIOUS
show less
Hacking
Web App Attack
๐ฎ๐ฉ
sockominfo
2025-12-13 02:00:58
(7 months ago)
Double URL encoding detection. Threat Score: 7.1/10 (HIGH). Reported by TangerangKota-CSIRT. Status: ...
show more
Double URL encoding detection. Threat Score: 7.1/10 (HIGH). Reported by TangerangKota-CSIRT. Status: MALICIOUS
show less
Hacking
Web App Attack
๐ฎ๐ฉ
sockominfo
2025-12-12 18:59:32
(7 months ago)
[WAZUH] Double URL encoding detection
Hacking
Web App Attack
๐บ๐ธ
etu brutus
2025-12-11 03:39:28
(7 months ago)
57.141.14.87 has been banned for [WebApp Attack]
...
Hacking
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
hermawan
2025-12-08 23:18:52
(7 months ago)
[Tue Dec 09 06:18:06.642822 2025] [security2:error] [pid 6154:tid 140604011886272] [client 57.141.14 ...
show more
[Tue Dec 09 06:18:06.642822 2025] [security2:error] [pid 6154:tid 140604011886272] [client 57.141.14.87:37034] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "Agent" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.20.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "252"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: Agent found within REQUEST_HEADERS:User-Agent: meta-externalagent/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler) request_line = GET /images/Klimatologi/Prakiraan/02-Prakiraan-Dasarian/Potensi_Banjir/Provinsi_Jawa_Timur/2020/01_Januari_2020/Das-I/02-Prakiraan_Dasarian_Daerah_Potensi_Banjir_di_Provinsi_Jawa_Timur_DASARIAN-II-Bulan-JANUARI-Tahun-2020_update_1_Januari_2020.jpg HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/images/Klimatologi/Prakiraan/02-Prakiraan-Dasarian/Potensi_Banjir/Provinsi_Jawa_Timur/2020/01_Januari_2020/Das-I/02-Prakiraan_Dasarian_D
...
show less
Hacking
Web App Attack
๐ฎ๐ฉ
hermawan
2025-12-03 13:49:40
(7 months ago)
[Wed Dec 03 20:49:06.048676 2025] [security2:error] [pid 123817:tid 140198863447744] [client 57.141. ...
show more
[Wed Dec 03 20:49:06.048676 2025] [security2:error] [pid 123817:tid 140198863447744] [client 57.141.14.87:40854] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "Agent" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.20.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "252"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: Agent found within REQUEST_HEADERS:User-Agent: meta-externalagent/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler) request_line = GET /images/Klimatologi/Prakiraan/02-Prakiraan-Dasarian/Potensi_Banjir/Provinsi_Jawa_Timur/2020/01_Januari_2020/Das-I/03-Prakiraan_Dasarian_Daerah_Potensi_Banjir_di_Provinsi_Jawa_Timur_DASARIAN-III-Bulan-JANUARI-Tahun-2020_update_1_Januari_2020.jpg HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/images/Klimatologi/Prakiraan/02-Prakiraan-Dasarian/Potensi_Banjir/Provinsi_Jawa_Timur/2020/01_Januari_2020/Das-I/03-Prakiraan_Dasaria
...
show less
Hacking
Web App Attack
๐ฎ๐ฉ
hermawan
2025-12-01 22:14:20
(7 months ago)
[Tue Dec 02 05:12:47.628047 2025] [security2:error] [pid 194140:tid 140719558215360] [client 57.141. ...
show more
[Tue Dec 02 05:12:47.628047 2025] [security2:error] [pid 194140:tid 140719558215360] [client 57.141.14.87:36118] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "Agent" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.20.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "252"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: Agent found within REQUEST_HEADERS:User-Agent: meta-externalagent/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler) request_line = GET /index.php/profil/meteorologi/list-all-categories/3907-klimatologi/analisis-klimatologi/analisis-dasarian/distribusi-curah-hujan-dasarian-propinsi-jawa-timur/distribusi-curah-hujan-dasarian-propinsi-jawa-timur-tahun-2018/555556936-analisis-distribusi-curah-hujan-dasarian-iii-desember-2018-di-provinsi-jawa-timur HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/index.php/profil/meteorologi/list-all-categories/3907-klimatologi
...
show less
Hacking
Web App Attack
๐ฎ๐ฉ
hermawan
2025-11-25 14:35:23
(8 months ago)
[Tue Nov 25 21:34:53.503880 2025] [security2:error] [pid 653840:tid 139697163589312] [client 57.141. ...
show more
[Tue Nov 25 21:34:53.503880 2025] [security2:error] [pid 653840:tid 139697163589312] [client 57.141.14.87:37210] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "Agent" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.20.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "247"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: Agent found within REQUEST_HEADERS:User-Agent: meta-externalagent/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler) request_line = GET /images/Klimatologi/Analisis/02-Analisis_Dasarian/Analisis_Monitoring_Hari_Tanpa_Hujan_Berturut-Turut_Dasarian/Analisis_Monitoring_Hari_Tanpa_Hujan_Berturut-Turut_Dasarian_Provinsi_Jawa_Timur/2022/02_Februari_2022/Das-III/Peta_Analisis-Dasarian_Monitoring_Hari_Tanpa_Hujan_Berturut-Turut_di_Provinsi_Jawa_Timur_Update_28_Februari_Tahun_202..."] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/images/Klimatologi/Analisis/02-Analisis_Dasa
...
show less
Hacking
Web App Attack
๐บ๐ธ
etu brutus
2025-11-25 00:07:35
(8 months ago)
57.141.14.87 has been banned for [WebApp Attack]
...
Hacking
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
hermawan
2025-11-23 18:24:04
(8 months ago)
[Mon Nov 24 01:23:09.030146 2025] [security2:error] [pid 36063:tid 140015070783168] [client 57.141.1 ...
show more
[Mon Nov 24 01:23:09.030146 2025] [security2:error] [pid 36063:tid 140015070783168] [client 57.141.14.87:43988] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "Agent" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.20.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "247"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: Agent found within REQUEST_HEADERS:User-Agent: meta-externalagent/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler) request_line = GET /index.php/profil/meteorologi/list-all-categories/551-klimatologi/prakiraan-klimatologi/peringatan-dini HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/index.php/profil/meteorologi/list-all-categories/551-klimatologi/prakiraan-klimatologi/peringatan-dini"] [unique_id "aSNRDZyz0KPFNlPgzySWngAAQxg"] [staklim-malang.info] [staklim-malang.info] top=[36088] [Wyx6I0dJde0] [aSNRDZyz0KPFNlPgzySWngAAQxg] keep_alive=[1] [2025-11-24 0
...
show less
Hacking
Web App Attack
๐ฎ๐ฉ
hermawan
2025-11-22 00:23:08
(8 months ago)
[Sat Nov 22 07:06:36.699811 2025] [security2:error] [pid 515146:tid 139908992034496] [client 57.141. ...
show more
[Sat Nov 22 07:06:36.699811 2025] [security2:error] [pid 515146:tid 139908992034496] [client 57.141.14.87:58256] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "Agent" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.20.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "247"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: Agent found within REQUEST_HEADERS:User-Agent: meta-externalagent/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler) request_line = GET /index.php/prakiraan-iklim/prakiraan-musim/prakiraan-musim-kemarau/prakiraan-durasi-musim-kemarau HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/index.php/prakiraan-iklim/prakiraan-musim/prakiraan-musim-kemarau/prakiraan-durasi-musim-kemarau"] [unique_id "aSD-jF4B5KSlKwKas2L_XAAABAA"] [staklim-malang.info] [staklim-malang.info] top=[515148] [NB4atOOMXSI] [aSD-jF4B5KSlKwKas2L_XAAABAA] keep_alive=[1] [2025-11-22 07:06:36.69
...
show less
Hacking
Web App Attack
๐บ๐ธ
juguemosalacarioca.com
2025-11-21 22:58:49
(8 months ago)
Multiple HTTP calls attempting to GET resources using common API calls or formats on port 8080
Web App Attack