๐ซ๐ฎ
144.31.53.73
17 May 2026
OSSEC HIDS Alert: Rule 5712 fired (level 10) - "sshd: brute force trying to get access to the system ...
show more
OSSEC HIDS Alert: Rule 5712 fired (level 10) - "sshd: brute force trying to get access to the system"
Src IP: 144.31.53.73
sshd[21366]: Failed password for invalid user www-data from 144.31.53.73 port 48219 ssh2
16/May/2026:11:29:21 +0000
show less
Brute-Force
SSH
๐ซ๐ฎ
144.31.169.162
17 May 2026
OSSEC HIDS Alert: Rule 31101 fired (level 7) - "Web server 403 error code (forbidden)"
Src IP: 144.3 ...
show more
OSSEC HIDS Alert: Rule 31101 fired (level 7) - "Web server 403 error code (forbidden)"
Src IP: 144.31.169.162
144.31.169.162 - - [16/May/2026:05:31:57 +0000] "GET /actuator/env HTTP/1.1" 404 4968 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 14_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.4 Safari/605.1.15"
show less
Web App Attack
๐ซ๐ฎ
144.31.53.244
17 May 2026
OSSEC HIDS Alert: Rule 31101 fired (level 7) - "Web server 403 error code (forbidden)"
Src IP: 144.3 ...
show more
OSSEC HIDS Alert: Rule 31101 fired (level 7) - "Web server 403 error code (forbidden)"
Src IP: 144.31.53.244
144.31.53.244 - - [15/May/2026:21:26:53 +0000] "GET /dump.sql HTTP/1.1" 403 1696 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/123.0.0.0 Safari/537.36"
show less
Web App Attack
๐ซ๐ฎ
2.26.122.209
17 May 2026
OSSEC HIDS Alert: Rule 31120 fired (level 7) - "Web scanner/vulnerability assessment detected"
Src I ...
show more
OSSEC HIDS Alert: Rule 31120 fired (level 7) - "Web scanner/vulnerability assessment detected"
Src IP: 2.26.122.209
2.26.122.209 - - [15/May/2026:18:08:36 +0000] "GET /solr/admin/info/system HTTP/1.1" 400 3121 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/123.0.0.0 Safari/537.36"
show less
Web App Attack
๐ฉ๐ช
144.31.223.229
17 May 2026
OSSEC HIDS Alert: Rule 5710 fired (level 10) - "sshd: Attempt to login using a non-existent user"
Sr ...
show more
OSSEC HIDS Alert: Rule 5710 fired (level 10) - "sshd: Attempt to login using a non-existent user"
Src IP: 144.31.223.229
sshd[19279]: Failed password for invalid user centos from 144.31.223.229 port 53101 ssh2
16/May/2026:08:15:52 +0000
show less
Brute-Force
SSH
๐ฉ๐ช
2.26.123.155
17 May 2026
OSSEC HIDS Alert: Rule 31101 fired (level 7) - "Web server 403 error code (forbidden)"
Src IP: 2.26. ...
show more
OSSEC HIDS Alert: Rule 31101 fired (level 7) - "Web server 403 error code (forbidden)"
Src IP: 2.26.123.155
2.26.123.155 - - [14/May/2026:19:01:00 +0000] "GET /config.php HTTP/1.1" 404 2380 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 14_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.4 Safari/605.1.15"
show less
Web App Attack
๐ฉ๐ช
144.31.223.234
17 May 2026
OSSEC HIDS Alert: Rule 5712 fired (level 10) - "sshd: brute force trying to get access to the system ...
show more
OSSEC HIDS Alert: Rule 5712 fired (level 10) - "sshd: brute force trying to get access to the system"
Src IP: 144.31.223.234
sshd[46248]: Failed password for invalid user tomcat from 144.31.223.234 port 43162 ssh2
14/May/2026:00:04:05 +0000
show less
Brute-Force
SSH
๐ต๐ฑ
31.76.251.8
17 May 2026
OSSEC HIDS Alert: Rule 5720 fired (level 10) - "sshd: Multiple authentication failures"
Src IP: 31.7 ...
show more
OSSEC HIDS Alert: Rule 5720 fired (level 10) - "sshd: Multiple authentication failures"
Src IP: 31.76.251.8
sshd[9949]: Failed password for invalid user redis from 31.76.251.8 port 49380 ssh2
15/May/2026:21:30:41 +0000
show less
Brute-Force
SSH
๐ฉ๐ช
144.31.223.241
17 May 2026
OSSEC HIDS Alert: Rule 5720 fired (level 10) - "sshd: Multiple authentication failures"
Src IP: 144. ...
show more
OSSEC HIDS Alert: Rule 5720 fired (level 10) - "sshd: Multiple authentication failures"
Src IP: 144.31.223.241
sshd[22950]: Failed password for invalid user gitlab from 144.31.223.241 port 37895 ssh2
16/May/2026:03:59:52 +0000
show less
Brute-Force
SSH
๐ฉ๐ช
144.31.238.189
17 May 2026
OSSEC HIDS Alert: Rule 31151 fired (level 7) - "Web server 400 error code (bad request)"
Src IP: 144 ...
show more
OSSEC HIDS Alert: Rule 31151 fired (level 7) - "Web server 400 error code (bad request)"
Src IP: 144.31.238.189
144.31.238.189 - - [14/May/2026:21:48:42 +0000] "GET /db.sql HTTP/1.1" 404 346 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 14_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.4 Safari/605.1.15"
show less
Web App Attack
๐ฉ๐ช
144.31.223.204
17 May 2026
OSSEC HIDS Alert: Rule 31101 fired (level 7) - "Web server 403 error code (forbidden)"
Src IP: 144.3 ...
show more
OSSEC HIDS Alert: Rule 31101 fired (level 7) - "Web server 403 error code (forbidden)"
Src IP: 144.31.223.204
144.31.223.204 - - [15/May/2026:11:13:39 +0000] "GET /Autodiscover/Autodiscover.xml HTTP/1.1" 403 3958 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/123.0.0.0 Safari/537.36"
show less
Web App Attack
๐ฉ๐ช
144.31.223.134
17 May 2026
OSSEC HIDS Alert: Rule 5710 fired (level 10) - "sshd: Attempt to login using a non-existent user"
Sr ...
show more
OSSEC HIDS Alert: Rule 5710 fired (level 10) - "sshd: Attempt to login using a non-existent user"
Src IP: 144.31.223.134
sshd[44541]: Failed password for invalid user postgres from 144.31.223.134 port 47005 ssh2
15/May/2026:14:18:19 +0000
show less
Brute-Force
SSH
๐ซ๐ฎ
144.31.53.175
17 May 2026
OSSEC HIDS Alert: Rule 5712 fired (level 10) - "sshd: brute force trying to get access to the system ...
show more
OSSEC HIDS Alert: Rule 5712 fired (level 10) - "sshd: brute force trying to get access to the system"
Src IP: 144.31.53.175
sshd[15228]: Failed password for invalid user git from 144.31.53.175 port 59847 ssh2
16/May/2026:10:11:17 +0000
show less
Brute-Force
SSH
๐ฉ๐ช
31.76.244.2
17 May 2026
OSSEC HIDS Alert: Rule 31151 fired (level 7) - "Web server 400 error code (bad request)"
Src IP: 31. ...
show more
OSSEC HIDS Alert: Rule 31151 fired (level 7) - "Web server 400 error code (bad request)"
Src IP: 31.76.244.2
31.76.244.2 - - [15/May/2026:00:30:09 +0000] "GET /wp-config.php~ HTTP/1.1" 403 2356 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/123.0.0.0 Safari/537.36"
show less
Web App Attack
๐ซ๐ฎ
144.31.53.211
17 May 2026
OSSEC HIDS Alert: Rule 31101 fired (level 7) - "Web server 403 error code (forbidden)"
Src IP: 144.3 ...
show more
OSSEC HIDS Alert: Rule 31101 fired (level 7) - "Web server 403 error code (forbidden)"
Src IP: 144.31.53.211
144.31.53.211 - - [16/May/2026:11:46:21 +0000] "GET /shell HTTP/1.1" 400 3006 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
show less
Web App Attack
๐ซ๐ฎ
95.85.251.193
17 May 2026
OSSEC HIDS Alert: Rule 5720 fired (level 10) - "sshd: Multiple authentication failures"
Src IP: 95.8 ...
show more
OSSEC HIDS Alert: Rule 5720 fired (level 10) - "sshd: Multiple authentication failures"
Src IP: 95.85.251.193
sshd[56042]: Failed password for invalid user ec2-user from 95.85.251.193 port 57082 ssh2
14/May/2026:18:30:04 +0000
show less
Brute-Force
SSH
๐ฉ๐ช
144.31.238.79
17 May 2026
OSSEC HIDS Alert: Rule 5720 fired (level 10) - "sshd: Multiple authentication failures"
Src IP: 144. ...
show more
OSSEC HIDS Alert: Rule 5720 fired (level 10) - "sshd: Multiple authentication failures"
Src IP: 144.31.238.79
sshd[43290]: Failed password for invalid user ubuntu from 144.31.238.79 port 60911 ssh2
14/May/2026:19:57:52 +0000
show less
Brute-Force
SSH
๐ซ๐ฎ
144.31.169.44
17 May 2026
OSSEC HIDS Alert: Rule 5712 fired (level 10) - "sshd: brute force trying to get access to the system ...
show more
OSSEC HIDS Alert: Rule 5712 fired (level 10) - "sshd: brute force trying to get access to the system"
Src IP: 144.31.169.44
sshd[38392]: Failed password for invalid user docker from 144.31.169.44 port 41212 ssh2
14/May/2026:06:13:50 +0000
show less
Brute-Force
SSH
๐ฉ๐ช
144.31.238.40
17 May 2026
OSSEC HIDS Alert: Rule 31151 fired (level 7) - "Web server 400 error code (bad request)"
Src IP: 144 ...
show more
OSSEC HIDS Alert: Rule 31151 fired (level 7) - "Web server 400 error code (bad request)"
Src IP: 144.31.238.40
144.31.238.40 - - [16/May/2026:00:31:39 +0000] "GET /backup.sql HTTP/1.1" 400 3781 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 14_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.4 Safari/605.1.15"
show less
Web App Attack
๐ซ๐ฎ
144.31.169.79
17 May 2026
OSSEC HIDS Alert: Rule 31120 fired (level 7) - "Web scanner/vulnerability assessment detected"
Src I ...
show more
OSSEC HIDS Alert: Rule 31120 fired (level 7) - "Web scanner/vulnerability assessment detected"
Src IP: 144.31.169.79
144.31.169.79 - - [15/May/2026:17:21:14 +0000] "GET /wp-config.php.bak HTTP/1.1" 400 4840 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/123.0.0.0 Safari/537.36"
show less
Web App Attack
๐ฉ๐ช
144.31.238.249
17 May 2026
OSSEC HIDS Alert: Rule 31101 fired (level 7) - "Web server 403 error code (forbidden)"
Src IP: 144.3 ...
show more
OSSEC HIDS Alert: Rule 31101 fired (level 7) - "Web server 403 error code (forbidden)"
Src IP: 144.31.238.249
144.31.238.249 - - [16/May/2026:01:22:59 +0000] "GET /shell HTTP/1.1" 400 3632 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
show less
Web App Attack
๐ซ๐ฎ
95.85.251.232
17 May 2026
OSSEC HIDS Alert: Rule 31120 fired (level 7) - "Web scanner/vulnerability assessment detected"
Src I ...
show more
OSSEC HIDS Alert: Rule 31120 fired (level 7) - "Web scanner/vulnerability assessment detected"
Src IP: 95.85.251.232
95.85.251.232 - - [16/May/2026:09:51:57 +0000] "GET /wp-cron.php HTTP/1.1" 403 2947 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:126.0) Gecko/20100101 Firefox/126.0"
show less
Web App Attack
๐ซ๐ฎ
144.31.169.144
17 May 2026
OSSEC HIDS Alert: Rule 5720 fired (level 10) - "sshd: Multiple authentication failures"
Src IP: 144. ...
show more
OSSEC HIDS Alert: Rule 5720 fired (level 10) - "sshd: Multiple authentication failures"
Src IP: 144.31.169.144
sshd[7195]: Failed password for invalid user bitbucket from 144.31.169.144 port 40742 ssh2
16/May/2026:03:07:58 +0000
show less
Brute-Force
SSH
๐ซ๐ฎ
31.76.245.117
17 May 2026
OSSEC HIDS Alert: Rule 5720 fired (level 10) - "sshd: Multiple authentication failures"
Src IP: 31.7 ...
show more
OSSEC HIDS Alert: Rule 5720 fired (level 10) - "sshd: Multiple authentication failures"
Src IP: 31.76.245.117
sshd[1114]: Failed password for invalid user tomcat from 31.76.245.117 port 51063 ssh2
16/May/2026:08:36:22 +0000
show less
Brute-Force
SSH
๐ซ๐ฎ
144.31.53.143
17 May 2026
OSSEC HIDS Alert: Rule 5710 fired (level 10) - "sshd: Attempt to login using a non-existent user"
Sr ...
show more
OSSEC HIDS Alert: Rule 5710 fired (level 10) - "sshd: Attempt to login using a non-existent user"
Src IP: 144.31.53.143
sshd[10631]: Failed password for invalid user user from 144.31.53.143 port 49487 ssh2
15/May/2026:18:21:53 +0000
show less
Brute-Force
SSH