add the following:
set security nat proxy-arp interface ge-0/0/0.0 address 187.72.138.193/28
set security nat destination rule-set DEST-NAT from interface ge-0/0/0.0
set applications application HTTP application-protocol http
or
why not use application junos-http instead of defining appication HTTP?
As a best practice, instead of adding host-inbound-traffic system-services all, add http and https