hermawan
2025-07-16 02:51:26
(6 hours ago)
[Wed Jul 16 09:51:21.096728 2025] [security2:error] [pid 243054:tid 140015238604480] [client 74.7.35 ... show more [Wed Jul 16 09:51:21.096728 2025] [security2:error] [pid 243054:tid 140015238604480] [client 74.7.35.48:45073] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.16.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "228"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/informasi-iklim/infografis-iklim/infografis-harian/monitoring-kualitas-udara HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/informasi-iklim/infografis-iklim/infografis-harian/monitoring-kualitas-udara"] [unique_id "aHcTqYc5l9c-TJq9-TeG8gAA0wo"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[243065] [Yyy794IyRiw] [aHcTqYc5l9c-TJq9-TeG8gAA0wo] keep_alive=[1] [2025-07-16 09:5
... show less
Hacking
Web App Attack
MaxSmartCode
2025-07-15 22:17:30
(11 hours ago)
Credential brute-force attacks on webpage.
Brute-Force
SSH
hermawan
2025-07-15 04:50:55
(1 day ago)
[Tue Jul 15 11:50:24.700454 2025] [security2:error] [pid 29888:tid 139681795573440] [client 74.7.35. ... show more [Tue Jul 15 11:50:24.700454 2025] [security2:error] [pid 29888:tid 139681795573440] [client 74.7.35.48:61496] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.16.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "228"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/profil/meteorologi/list-of-all-tags/klimatologi HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/profil/meteorologi/list-of-all-tags/klimatologi"] [unique_id "aHXeELJHjviJMWrfRTEViwAAgBg"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[29913] [qWiugzCYmVY] [aHXeELJHjviJMWrfRTEViwAAgBg] keep_alive=[1] [2025-07-15 11:50:24.700460] [R:aHXeELJHjviJMWrfRTEViwAAgBg] UA:'Mozilla/5.0
... show less
Hacking
Web App Attack
Anonymous
2025-07-14 04:41:59
(2 days ago)
Action: Block, Reason: DDOS attack detected
DDoS Attack
hermawan
2025-07-14 02:56:06
(2 days ago)
[Mon Jul 14 09:55:32.945733 2025] [security2:error] [pid 404607:tid 140524781561536] [client 74.7.35 ... show more [Mon Jul 14 09:55:32.945733 2025] [security2:error] [pid 404607:tid 140524781561536] [client 74.7.35.48:6889] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.16.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "228"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/profil/meteorologi/list-of-all-tags/prakiraan-awal-musim-kemarau HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/profil/meteorologi/list-of-all-tags/prakiraan-awal-musim-kemarau"] [unique_id "aHRxpB0sEDVIy6V5uOEv8QAAxgE"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[404609] [ph8Py9plu84] [aHRxpB0sEDVIy6V5uOEv8QAAxgE] keep_alive=[1] [2025-07-14 09:55:32.945742] [R:aHRxpB0sE
... show less
Hacking
Web App Attack
unph
2025-07-14 00:58:33
(2 days ago)
Intento de acceso sospechoso en el login de WordPress
Brute-Force
masterguru
2025-07-13 16:04:25
(2 days ago)
BAD BOT - Detected and Blocked.. Matched phrase "ChatGPT-User" at REQUEST_HEADERS:user-agent. (11000 ... show more BAD BOT - Detected and Blocked.. Matched phrase "ChatGPT-User" at REQUEST_HEADERS:user-agent. (1100000-173) show less
Bad Web Bot
Anonymous
2025-07-13 15:57:09
(2 days ago)
Blocked by cpGuard/ModSecurity WAF
Web App Attack
hermawan
2025-07-12 22:55:07
(3 days ago)
[Sun Jul 13 05:55:01.263111 2025] [security2:error] [pid 173574:tid 139832429897408] [client 74.7.35 ... show more [Sun Jul 13 05:55:01.263111 2025] [security2:error] [pid 173574:tid 139832429897408] [client 74.7.35.48:58074] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.16.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "228"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET / HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/"] [unique_id "aHLnxWRqtEo6hpaF0tNSUgAAjAI"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[173577] [RtkFUUN7mmM] [aHLnxWRqtEo6hpaF0tNSUgAAjAI] keep_alive=[1] [2025-07-13 05:55:01.263123] [R:aHLnxWRqtEo6hpaF0tNSUgAAjAI] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot' Host:'staklim-ja
... show less
Hacking
Web App Attack
hermawan
2025-07-12 09:52:56
(3 days ago)
[Sat Jul 12 16:52:09.939283 2025] [security2:error] [pid 229258:tid 139653131769536] [client 74.7.35 ... show more [Sat Jul 12 16:52:09.939283 2025] [security2:error] [pid 229258:tid 139653131769536] [client 74.7.35.48:50016] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.16.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "228"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/prakiraan-iklim/prakiraan-bulanan/prakiraan-sifat-hujan-bulanan/prakiraan-sifat-hujan-untuk-6-bulan-ke-depan/555561207-prakiraan-bulanan-sifat-hujan-di-kabupaten-trenggalek-untuk-6-bulan-ke-depan-2 HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/prakiraan-iklim/prakiraan-bulanan/prakiraan-sifat-hujan-bulanan/prakiraan-sifat-hujan-untuk-6-bulan-ke-depan/555561207-prakiraan-bulanan-sifat
... show less
Hacking
Web App Attack
hermawan
2025-07-11 16:12:23
(4 days ago)
[Fri Jul 11 23:12:20.857639 2025] [security2:error] [pid 103772:tid 140300988151488] [client 74.7.35 ... show more [Fri Jul 11 23:12:20.857639 2025] [security2:error] [pid 103772:tid 140300988151488] [client 74.7.35.48:54586] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.16.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "228"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/prakiraan-bulanan/4262-prakiraan-bulanan-untuk-6-bulan-ke-depan-di-provinsi-jawa-timur/prakiraan-bulanan-sifat-hujan-untuk-6-bulan-ke-depan-di-provinsi-jawa-timur/555561211-prakiraan-bulanan-sifat-hujan-di-kabupaten-tulungagung-untuk-6-bulan-ke-depan-2 HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/index.php/prakiraan-bulanan/4262-prakiraan-bulanan-untuk-6-bulan-ke-depan-di-provinsi-jawa-timur/praki
... show less
Hacking
Web App Attack
hermawan
2025-07-11 08:58:24
(5 days ago)
[Fri Jul 11 15:57:07.730388 2025] [security2:error] [pid 10593:tid 139659414853312] [client 74.7.35. ... show more [Fri Jul 11 15:57:07.730388 2025] [security2:error] [pid 10593:tid 139659414853312] [client 74.7.35.48:55142] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.16.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "228"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/profil/meteorologi/list-of-all-tags/437?start=500 HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/profil/meteorologi/list-of-all-tags/437"] [unique_id "aHDR40--zdIZzIvRAAOTDgAACAU"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[10599] [EEulfmMLv1c] [aHDR40--zdIZzIvRAAOTDgAACAU] keep_alive=[1] [2025-07-11 15:57:07.730394] [R:aHDR40--zdIZzIvRAAOTDgAACAU] UA:'Mozilla/5.0 Apple
... show less
Hacking
Web App Attack
hermawan
2025-07-10 17:22:27
(5 days ago)
[Fri Jul 11 00:20:56.742707 2025] [security2:error] [pid 70383:tid 140159067596480] [client 74.7.35. ... show more [Fri Jul 11 00:20:56.742707 2025] [security2:error] [pid 70383:tid 140159067596480] [client 74.7.35.48:5116] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.15.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "227"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET / HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/"] [unique_id "aG_2eDWmui_Uvpp5raUTkAAAEwU"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[70389] [LveXalbQoZo] [aG_2eDWmui_Uvpp5raUTkAAAEwU] keep_alive=[1] [2025-07-11 00:20:56.742712] [R:aG_2eDWmui_Uvpp5raUTkAAAEwU] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot' Host:'staklim-jatim
... show less
Hacking
Web App Attack
hermawan
2025-07-10 04:35:46
(6 days ago)
[Thu Jul 10 11:34:09.040203 2025] [security2:error] [pid 223059:tid 140400946816704] [client 74.7.35 ... show more [Thu Jul 10 11:34:09.040203 2025] [security2:error] [pid 223059:tid 140400946816704] [client 74.7.35.48:33962] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.15.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "227"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/prediksi-iklim/prediksi-musim-tiap-6-bulan-sekali/prediksi-musim-kemarau/prediksi-awal-musim-kemarau HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/prediksi-iklim/prediksi-musim-tiap-6-bulan-sekali/prediksi-musim-kemarau/prediksi-awal-musim-kemarau"] [unique_id "aG9Cwe4dbQnBhvK9aw-B2gABlwY"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[223066] [uPRRtIu9keQ] [aG9Cwe4dbQnB
... show less
Hacking
Web App Attack
hermawan
2025-07-10 00:28:13
(6 days ago)
[Thu Jul 10 07:24:01.009936 2025] [security2:error] [pid 132021:tid 140405728306880] [client 74.7.35 ... show more [Thu Jul 10 07:24:01.009936 2025] [security2:error] [pid 132021:tid 140405728306880] [client 74.7.35.48:31438] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.15.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "227"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /b/bulanansidoarjo.pdf HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/b/bulanansidoarjo.pdf"] [unique_id "aG8IITlzy35f8bQLJ3kqrQAASww"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[132034] [6dfFNch4idw] [aG8IITlzy35f8bQLJ3kqrQAASww] keep_alive=[1] [2025-07-10 07:24:01.009940] [R:aG8IITlzy35f8bQLJ3kqrQAASww] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0;
... show less
Hacking
Web App Attack