hermawan
2025-07-14 04:59:55
(1 hour ago)
[Mon Jul 14 11:56:38.205489 2025] [security2:error] [pid 444140:tid 140524655670976] [client 74.7.36 ... show more [Mon Jul 14 11:56:38.205489 2025] [security2:error] [pid 444140:tid 140524655670976] [client 74.7.36.93:6576] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.16.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "228"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/prediksi-iklim/prediksi-bulanan/curah-hujan/3-bulan-ke-depan/555561952-prediksi-bulanan-curah-hujan-bulan-agustus-tahun-2025-update-dari-analisis-bulan-april-tahun-2025-di-provinsi-jawa-timur HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/prediksi-iklim/prediksi-bulanan/curah-hujan/3-bulan-ke-depan/555561952-prediksi-bulanan-curah-hujan-bulan-agustus-tahun-2025-update-dari-analisis-bul
... show less
Hacking
Web App Attack
hermawan
2025-07-13 16:24:36
(13 hours ago)
[Sun Jul 13 23:23:50.302572 2025] [security2:error] [pid 164494:tid 140524813018816] [client 74.7.36 ... show more [Sun Jul 13 23:23:50.302572 2025] [security2:error] [pid 164494:tid 140524813018816] [client 74.7.36.93:54158] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.16.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "228"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET / HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/"] [unique_id "aHPdlt1qp04mDTjJzZ6y8gAABQE"] [staklim-malang.info] [staklim-malang.info] top=[164496] [5W7i9xEFHJE] [aHPdlt1qp04mDTjJzZ6y8gAABQE] keep_alive=[1] [2025-07-13 23:23:50.302578] [R:aHPdlt1qp04mDTjJzZ6y8gAABQE] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot' Host:'staklim-malang.info' ACCE
... show less
Hacking
Web App Attack
Anonymous
2025-07-13 15:57:27
(14 hours ago)
Blocked by cpGuard/ModSecurity WAF
Web App Attack
hermawan
2025-07-12 17:43:58
(1 day ago)
[Sun Jul 13 00:42:06.109571 2025] [security2:error] [pid 53138:tid 139832740968128] [client 74.7.36. ... show more [Sun Jul 13 00:42:06.109571 2025] [security2:error] [pid 53138:tid 139832740968128] [client 74.7.36.93:40017] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.16.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "228"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/profil/meteorologi/list-of-all-tags/analisis-klimatologi?start=500 HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/profil/meteorologi/list-of-all-tags/analisis-klimatologi"] [unique_id "aHKebnW8dSzpAJGwVWPjtAAAgwM"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[53142] [Drbv8T7ZrFI] [aHKebnW8dSzpAJGwVWPjtAAAgwM] keep_alive=[1] [2025-07-13 00:42:06.109579] [R:aHKebnW8dSzpAJGw
... show less
Hacking
Web App Attack
hermawan
2025-07-12 01:54:38
(2 days ago)
[Sat Jul 12 08:35:39.037146 2025] [security2:error] [pid 81205:tid 140218159044288] [client 74.7.36. ... show more [Sat Jul 12 08:35:39.037146 2025] [security2:error] [pid 81205:tid 140218159044288] [client 74.7.36.93:60150] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.16.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "228"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET / HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/"] [unique_id "aHG764Mf2XJS0BVEQvUAtgABBgc"] [staklim-malang.info] [staklim-malang.info] top=[81213] [R1qjcfFOHC4] [aHG764Mf2XJS0BVEQvUAtgABBgc] keep_alive=[1] [2025-07-12 08:35:39.037151] [R:aHG764Mf2XJS0BVEQvUAtgABBgc] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot' Host:'staklim-malang.info' ACCEPT
... show less
Hacking
Web App Attack
hermawan
2025-07-10 16:53:32
(3 days ago)
[Thu Jul 10 23:52:37.383260 2025] [security2:error] [pid 53267:tid 140159412242112] [client 74.7.36. ... show more [Thu Jul 10 23:52:37.383260 2025] [security2:error] [pid 53267:tid 140159412242112] [client 74.7.36.93:47670] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.15.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "227"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /profil/meteorologi/list-all-categories/4035-meteorologi/prakiraan-meteorologi/index.php/analisis-iklim/analisis-musim/normal-awal-musim-hujan HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/profil/meteorologi/list-all-categories/4035-meteorologi/prakiraan-meteorologi/index.php/analisis-iklim/analisis-musim/normal-awal-musim-hujan"] [unique_id "aG_v1fB9PPU0S1_Ag4_zUgAARgA"] [staklim-jatim.bmkg.go.id] [stakl
... show less
Hacking
Web App Attack
hermawan
2025-07-10 07:20:12
(3 days ago)
[Thu Jul 10 14:19:02.685506 2025] [security2:error] [pid 286117:tid 140401304127168] [client 74.7.36 ... show more [Thu Jul 10 14:19:02.685506 2025] [security2:error] [pid 286117:tid 140401304127168] [client 74.7.36.93:23908] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.15.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "227"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/prakiraan-bulanan/4177-prakiraan-curah-hujan-bulanan/prakiraan-curah-hujan-bulanan-di-propinsi-jawa-timur/prakiraan-bulanan-curah-hujan-di-propinsi-jawa-timur-tahun-2023/555560059-prakiraan-bulanan-curah-hujan-bulan-juni-tahun-2023-update-dari-analisis-bulan-februari-tahun-2023-di-provinsi-jawa-timur HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/prakiraan-bulanan/4177-prakiraan-curah
... show less
Hacking
Web App Attack
hermawan
2025-07-10 01:16:03
(4 days ago)
[Thu Jul 10 08:15:16.915887 2025] [security2:error] [pid 152575:tid 140406150915776] [client 74.7.36 ... show more [Thu Jul 10 08:15:16.915887 2025] [security2:error] [pid 152575:tid 140406150915776] [client 74.7.36.93:5289] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.15.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "227"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/prediksi-iklim/prediksi-bulanan/curah-hujan/3-bulan-ke-depan/555561951-prediksi-bulanan-curah-hujan-bulan-juli-tahun-2025-update-dari-analisis-bulan-april-tahun-2025-di-provinsi-jawa-timur HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/index.php/prediksi-iklim/prediksi-bulanan/curah-hujan/3-bulan-ke-depan/555561951-prediksi-bulanan-curah-hujan-bulan-juli-tahun-2025-update-dari-analisis-bulan-april-ta
... show less
Hacking
Web App Attack
Step Modifications
2025-07-09 22:20:15
(4 days ago)
wiki-badbots: Fail2Ban ban
Brute-Force
hermawan
2025-07-09 03:03:12
(5 days ago)
[Wed Jul 09 10:03:11.448726 2025] [security2:error] [pid 31818:tid 140193966249664] [client 74.7.36. ... show more [Wed Jul 09 10:03:11.448726 2025] [security2:error] [pid 31818:tid 140193966249664] [client 74.7.36.93:46399] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.15.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "227"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/prakiraan-iklim/prakiraan-bulanan/prakiraan-curah-hujan-bulanan/3-bulan-ke-depan/555561086-prakiraan-bulanan-curah-hujan-bulan-oktober-tahun-2024-update-dari-analisis-bulan-juni-tahun-2024-di-provinsi-jawa-timur HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/index.php/prakiraan-iklim/prakiraan-bulanan/prakiraan-curah-hujan-bulanan/3-bulan-ke-depan/555561086-prakiraan-bulanan-curah-hujan-bulan-oktober
... show less
Hacking
Web App Attack
hermawan
2025-07-08 15:03:32
(5 days ago)
[Tue Jul 08 22:02:30.257110 2025] [security2:error] [pid 10254:tid 140189459531456] [client 74.7.36. ... show more [Tue Jul 08 22:02:30.257110 2025] [security2:error] [pid 10254:tid 140189459531456] [client 74.7.36.93:65443] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.15.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "227"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/analisis-kondisi-dinamika-atmosfer-laut-dasarian/4278-analisis-kondisi-dinamika-atmosfer-laut-dasarian-tahun-2025 HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/analisis-kondisi-dinamika-atmosfer-laut-dasarian/4278-analisis-kondisi-dinamika-atmosfer-laut-dasarian-tahun-2025"] [unique_id "aG0zBgwD0hIKmEK7WEn8_gAA0wY"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[10261] [4B
... show less
Hacking
Web App Attack
hermawan
2025-07-08 14:35:45
(5 days ago)
[Tue Jul 08 21:32:43.891821 2025] [security2:error] [pid 74379:tid 140331271050944] [client 74.7.36. ... show more [Tue Jul 08 21:32:43.891821 2025] [security2:error] [pid 74379:tid 140331271050944] [client 74.7.36.93:58961] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.15.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "227"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /index.php/profil/meteorologi/list-all-categories/113-meteorologi/prakiraan-meteorologi/555561510-prakiraan-harian-cuaca-wisata-di-jawa-timur-untuk-hari-ini-pada-pagi-siang-malam-dan-dini-hari-meliputi-gunung-arjuno-gunung-penanggungan-dan-gunung-butak HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/index.php/profil/meteorologi/list-all-categories/113-meteorologi/prakiraan-meteorologi/555561510-prakiraan-harian-
... show less
Hacking
Web App Attack
Anonymous
2025-07-08 09:35:41
(5 days ago)
Action: Block, Reason: DDOS attack detected
DDoS Attack
hermawan
2025-07-07 18:57:14
(6 days ago)
[Tue Jul 08 01:56:43.433994 2025] [security2:error] [pid 45475:tid 140478998611648] [client 74.7.36. ... show more [Tue Jul 08 01:56:43.433994 2025] [security2:error] [pid 45475:tid 140478998611648] [client 74.7.36.93:38086] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "User" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.15.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "227"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: User found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://openai.com/bot request_line = GET /b/bulananponorogo.pdf HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/b/bulananponorogo.pdf"] [unique_id "aGwYa75icLgowscJWOQv9wAAUAg"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[45486] [O2yZZ5vuPSY] [aGwYa75icLgowscJWOQv9wAAUAg] keep_alive=[1] [2025-07-08 01:56:43.433999] [R:aGwYa75icLgowscJWOQv9wAAUAg] UA:'Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +
... show less
Hacking
Web App Attack
afleventoffice.com.au
2025-07-07 11:38:29
(6 days ago)
GET /index.html HTTP/1.1
Web App Attack