๐ฎ๐ฉ
hermawan
2026-06-12 08:02:05
(1 hour ago)
[Fri Jun 12 15:02:00.690374 2026] [security2:error] [pid 2343879:tid 140114441266880] [client 82.22. ...
show more
[Fri Jun 12 15:02:00.690374 2026] [security2:error] [pid 2343879:tid 140114441266880] [client 82.22.41.218:60546] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "300" at REQUEST_HEADERS:Keep-Alive. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "348"] [id "440004"] [msg "Keep Alive Header"] [data "Matched Data: 300 found within REQUEST_HEADERS:Keep-Alive: 300 request_line = GET / HTTP/1.1"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/"] [unique_id "aiu8-KISyi5HHpX4LamysAAAAEU"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[2343911] [fp055AmQoQM] [aiu8-KISyi5HHpX4LamysAAAAEU] keep_alive=[0] [2026-06-12 15:02:00.690379] [R:aiu8-KISyi5HHpX4LamysAAAAEU] UA:'Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/88.0.4240.193 Safari/537.36' Host:'staklim-jatim.bmkg.go.id' ACCEPT:'text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8' Accept-Languag
...
show less
Email Spam
Hacking
๐ฉ๐ช
abdubhai
2026-06-12 07:52:25
(1 hour ago)
82.22.41.218 - - [12/Jun/2026:12
...
Brute-Force
๐ฉ๐ช
abdubhai
2026-06-12 06:44:13
(2 hours ago)
82.22.41.218 - - [12/Jun/2026:11
...
Brute-Force
๐ฉ๐ช
abdubhai
2026-06-12 04:44:10
(4 hours ago)
82.22.41.218 - - [12/Jun/2026:09
...
Brute-Force
๐ฉ๐ช
abdubhai
2026-06-12 03:12:52
(6 hours ago)
82.22.41.218 - - [12/Jun/2026:08
...
Brute-Force
๐ฉ๐ช
abdubhai
2026-06-12 02:11:33
(7 hours ago)
82.22.41.218 - - [12/Jun/2026:07
...
Brute-Force
๐ฉ๐ช
ecs.ge
2026-06-11 21:55:51
(11 hours ago)
Automatic Fail2Ban report from jail plesk-modsecurity: multiple matching events detected.
Web App Attack
Hacking
๐บ๐ฆ
URAN Publishing Service
2026-06-11 21:42:35
(11 hours ago)
82.22.41.218 - - [12/Jun/2026:00:42:34 +0300] "GET //xmlrpc.php?rsd HTTP/1.1" 404 712 "-" "Mozilla/5 ...
show more
82.22.41.218 - - [12/Jun/2026:00:42:34 +0300] "GET //xmlrpc.php?rsd HTTP/1.1" 404 712 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/88.0.4240.193 Safari/537.36"
...
show less
Web App Attack
๐ง๐ช
cmbplf
2026-06-11 18:46:45
(14 hours ago)
622 requests with url.path */wp-includes/wlwmanifest.xml
Brute-Force
Bad Web Bot
๐บ๐ฆ
URAN Publishing Service
2026-06-11 13:10:00
(20 hours ago)
82.22.41.218 - - [11/Jun/2026:16:09:59 +0300] "GET //xmlrpc.php?rsd HTTP/1.1" 404 712 "-" "Mozilla/5 ...
show more
82.22.41.218 - - [11/Jun/2026:16:09:59 +0300] "GET //xmlrpc.php?rsd HTTP/1.1" 404 712 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/88.0.4240.193 Safari/537.36"
...
show less
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-06-11 08:28:37
(1 day ago)
82.22.41.218 - - [11/Jun/2026:11:28:36 +0300] "GET //xmlrpc.php?rsd HTTP/1.1" 404 712 "-" "Mozilla/5 ...
show more
82.22.41.218 - - [11/Jun/2026:11:28:36 +0300] "GET //xmlrpc.php?rsd HTTP/1.1" 404 712 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/88.0.4240.193 Safari/537.36"
...
show less
Web App Attack
๐ฎ๐ฑ
Dolphi
2026-06-11 08:20:03
(1 day ago)
POST //xmlrpc.php
Brute-Force
Web App Attack
๐บ๐ธ
kosada.com
2026-06-11 08:08:43
(1 day ago)
Web vulnerability probing: //wordpress/wp-includes/wlwmanifest.xml
Web App Attack
๐ฉ๐ช
abdubhai
2026-06-11 07:40:46
(1 day ago)
82.22.41.218 - - [11/Jun/2026:12
...
Brute-Force
๐ฎ๐ฉ
hermawan
2026-06-11 06:46:32
(1 day ago)
[Thu Jun 11 13:46:27.094024 2026] [security2:error] [pid 1444454:tid 139768453109440] [client 82.22. ...
show more
[Thu Jun 11 13:46:27.094024 2026] [security2:error] [pid 1444454:tid 139768453109440] [client 82.22.41.218:60826] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "300" at REQUEST_HEADERS:Keep-Alive. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "348"] [id "440004"] [msg "Keep Alive Header"] [data "Matched Data: 300 found within REQUEST_HEADERS:Keep-Alive: 300 request_line = GET / HTTP/1.1"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/"] [unique_id "aipZw0P8pTXkmuQK1pqw9QAAAMc"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[1444554] [uhwpuHTGcI4] [aipZw0P8pTXkmuQK1pqw9QAAAMc] keep_alive=[0] [2026-06-11 13:46:27.094030] [R:aipZw0P8pTXkmuQK1pqw9QAAAMc] UA:'Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/88.0.4240.193 Safari/537.36' Host:'staklim-jatim.bmkg.go.id' ACCEPT:'text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8' Accept-Languag
...
show less
Email Spam
Hacking