FortiWeb Report
FortiWeb Report
FortiWeb Report
Company Name: Fujitsu
Report Title: dd
Generated on: Sat Jan 14 16:07:12 2023
Period: 2023-01-07 00:00 - 2023-01-13 23:59
Filters: None
Scheduled at: Every day at 11:15
dd - 1
f
Table of Contents
PCI ......................................................................................................................................
Attack by Time ...............................................................................................................................................
Top Attack Types by Date .............................................................................................................................
Top Attack Types by Month ..........................................................................................................................
Top Attack Types by Day of Week ...............................................................................................................
Top Attack Types by Hour of Day ................................................................................................................
Traffic .................................................................................................................................
Top Traffic Summary ....................................................................................................................................
Top Policies .....................................................................................................................................................
Top Services ....................................................................................................................................................
Top Sources ....................................................................................................................................................
Top Destinations ............................................................................................................................................
Top Destinations By Top Source ...................................................................................................................
Top Sources By Top Destination ...................................................................................................................
Top Source Countries ....................................................................................................................................
Top Http Host .................................................................................................................................................
Top User Name ...............................................................................................................................................
Top Http Referer ............................................................................................................................................
Top Http Version ............................................................................................................................................
Top Client Device ID .....................................................................................................................................
By Time ...........................................................................................................................................................
Top Destinations By Date ..............................................................................................................................
Top Destinations By Hour of Day .................................................................................................................
Top Destinations By Day of Week ................................................................................................................
Top Destinations By Month ..........................................................................................................................
Top Sources By Date ......................................................................................................................................
Top Sources By Hour of Day ........................................................................................................................
Top Sources By Day of Week ........................................................................................................................
Top Sources By Month ..................................................................................................................................
Attack .................................................................................................................................
Attack by Time ...............................................................................................................................................
Top Attack Types by Date .............................................................................................................................
Top Attack Types by Month ..........................................................................................................................
Top Attack Types by Day of Week ...............................................................................................................
Top Attack Types by Hour of Day ................................................................................................................
Attacks By Date .............................................................................................................................................
Top Attack Severity by Date .........................................................................................................................
Top Attack Severity by Month .....................................................................................................................
Top Attack Severity by Day of Week ...........................................................................................................
Top Attack Severity by Hour of Day ............................................................................................................
Top Attacks Summary ...................................................................................................................................
Top Attack Sources ........................................................................................................................................
Top Attacked Destinations ............................................................................................................................
Top Attack Types ...........................................................................................................................................
dd - 2
f
dd - 3
f
dd - 4
f
PCI
Attack by Time
dd - 5
f
dd - 6
f
dd - 7
f
dd - 8
f
dd - 9
f
dd - 10
f
dd - 11
f
Traffic
Top Policies
Top Services
dd - 12
f
Top Sources
dd - 13
f
Top Destinations
dd - 14
f
The destinations with the most traffic events over the reporting period, broken down by
source.
Top Destinations By Top Source
Source Destination Events Percent
10.128.128.30 10.17.210.12 149718 55.51%
10.17.210.29 118569 43.96%
10.17.210.40 1068 0.40%
Other(3) 380 0.14%
Subtotal(6) 269735 1.74%
10.151.68.10 10.17.210.12 120271 54.28%
10.17.210.29 100406 45.31%
10.17.210.40 891 0.40%
Other(1) 6 0.00%
Subtotal(4) 221574 1.43%
10.252.193.94 10.17.210.12 66982 50.96%
10.17.210.29 63973 48.67%
10.17.210.40 474 0.36%
Subtotal(3) 131429 0.85%
10.16.70.52 10.17.210.29 117551 95.84%
10.17.210.12 3389 2.76%
10.17.210.94 1712 1.40%
Subtotal(3) 122652 0.79%
185.161.117.124 10.17.210.65 101568 96.68%
10.17.210.12 3490 3.32%
dd - 15
f
The sources with the most traffic events over the reporting period, broken down by
destination.
Top Sources By Top Destination
Destination Source Events Percent
10.17.210.65 185.161.117.124 101568 1.42%
188.244.80.248 55143 0.77%
83.247.136.75 40535 0.57%
Other(35817) 6950244 97.24%
Subtotal(35820) 7147490 46.08%
10.17.210.12 10.128.128.30 149718 2.22%
10.151.68.10 120271 1.79%
195.57.52.2 74974 1.11%
dd - 16
f
dd - 17
f
dd - 18
f
dd - 19
f
dd - 20
f
expinterweb.mites.gob.
es/regcon/css/
formularios.css
Other(135252) 11786908 75.99%
Total(135259) 15511871 100.00%
dd - 21
f
dd - 22
f
By Time
The daily breakdown of the traffic destination over the reporting period.
Top Destinations By Date
Date Destination Events Percent
2023-01-07 10.17.210.65 190089 55.46%
10.17.210.12 78127 22.79%
10.17.210.29 42223 12.32%
Other(6) 32303 9.42%
Subtotal(9) 342742 2.21%
2023-01-08 10.17.210.65 305140 65.00%
10.17.210.12 82873 17.65%
10.17.210.29 45747 9.75%
Other(6) 35655 7.60%
Subtotal(9) 469415 3.03%
2023-01-09 10.17.210.12 1389399 45.95%
10.17.210.65 1369580 45.29%
10.17.210.29 182341 6.03%
Other(7) 82395 2.72%
Subtotal(10) 3023715 19.49%
2023-01-10 10.17.210.65 1387461 45.64%
10.17.210.12 1356958 44.64%
10.17.210.29 213709 7.03%
dd - 23
f
The hourly breakdown of the traffic destination over the reporting period.
Top Destinations By Hour of Day
Hour Destination Events Percent
00:00 - 01:00 10.17.210.65 102236 72.03%
10.17.210.12 15377 10.83%
dd - 24
f
dd - 25
f
The daily breakdown of the traffic destination over the reporting period.
Top Destinations By Day of Week
Day of Week Destination Events Percent
MON 10.17.210.12 1389399 45.95%
10.17.210.65 1369580 45.29%
10.17.210.29 182341 6.03%
Other(7) 82395 2.72%
Subtotal(10) 3023715 19.49%
TUE 10.17.210.65 1387461 45.64%
10.17.210.12 1356958 44.64%
10.17.210.29 213709 7.03%
Other(7) 81805 2.69%
Subtotal(10) 3039933 19.60%
WED 10.17.210.12 1385293 45.71%
10.17.210.65 1375424 45.38%
10.17.210.29 194400 6.41%
Other(7) 75673 2.50%
Subtotal(10) 3030790 19.54%
THU 10.17.210.65 1381336 45.40%
10.17.210.12 1334979 43.88%
10.17.210.29 237376 7.80%
Other(6) 88580 2.91%
Subtotal(9) 3042271 19.61%
FRI 10.17.210.65 1138460 44.42%
dd - 26
f
The monthly breakdown of the traffic destination over the reporting period.
Top Destinations By Month
Month Destination Events Percent
2023-jan 10.17.210.65 7147490 46.08%
10.17.210.12 6729852 43.39%
10.17.210.29 1111998 7.17%
Other(7) 522531 3.37%
Subtotal(10) 15511871 100.00%
dd - 27
f
The daily breakdown of the traffic source over the reporting period.
Top Sources By Date
Date Source Events Percent
2023-01-07 10.16.70.52 20859 6.09%
188.78.58.68 6398 1.87%
92.178.233.83 5189 1.51%
Other(3864) 310296 90.53%
Subtotal(3867) 342742 2.21%
2023-01-08 10.16.70.52 20833 4.44%
10.16.80.86 6151 1.31%
10.16.80.21 6134 1.31%
Other(4326) 436297 92.94%
Subtotal(4329) 469415 3.03%
2023-01-09 10.128.128.30 52977 1.75%
10.151.68.10 50267 1.66%
10.252.193.94 24586 0.81%
Other(14701) 2895885 95.77%
Subtotal(14704) 3023715 19.49%
2023-01-10 10.151.68.10 48935 1.61%
10.128.128.30 43996 1.45%
10.252.99.25 26416 0.87%
Other(14946) 2920586 96.07%
dd - 28
f
The hourly breakdown of the traffic source over the reporting period.
Top Sources By Hour of Day
Hour Source Events Percent
00:00 - 01:00 88.3.112.2 15011 10.58%
88.1.85.60 9576 6.75%
10.16.70.52 6077 4.28%
Other(4233) 111265 78.39%
Subtotal(4236) 141929 0.91%
01:00 - 02:00 10.16.70.52 6075 7.66%
88.15.145.131 2160 2.72%
145.1.252.159 2144 2.70%
Other(4759) 68926 86.91%
Subtotal(4762) 79305 0.51%
02:00 - 03:00 10.16.70.52 6079 13.05%
158.172.138.59 1725 3.70%
46.222.52.215 1463 3.14%
Other(4521) 37299 80.10%
Subtotal(4524) 46566 0.30%
03:00 - 04:00 10.16.70.52 6074 16.82%
79.109.179.21 2531 7.01%
195.200.254.142 2146 5.94%
Other(3593) 25355 70.22%
Subtotal(3596) 36106 0.23%
04:00 - 05:00 10.16.70.52 6089 16.99%
195.200.254.142 4463 12.45%
90.161.72.148 1008 2.81%
Other(4523) 24277 67.74%
Subtotal(4526) 35837 0.23%
05:00 - 06:00 10.16.70.52 6074 18.27%
dd - 29
f
The daily breakdown of the traffic source over the reporting period.
Top Sources By Day of Week
Day of Week Source Events Percent
MON 10.128.128.30 52977 1.75%
10.151.68.10 50267 1.66%
10.252.193.94 24586 0.81%
Other(14701) 2895885 95.77%
Subtotal(14704) 3023715 19.49%
TUE 10.151.68.10 48935 1.61%
10.128.128.30 43996 1.45%
10.252.99.25 26416 0.87%
Other(14946) 2920586 96.07%
Subtotal(14949) 3039933 19.60%
WED 10.128.128.30 60642 2.00%
10.151.68.10 39780 1.31%
10.252.193.94 29129 0.96%
Other(17426) 2901239 95.73%
Subtotal(17429) 3030790 19.54%
THU 10.128.128.30 62603 2.06%
10.151.68.10 51342 1.69%
10.252.193.94 33309 1.09%
Other(19310) 2895017 95.16%
Subtotal(19313) 3042271 19.61%
FRI 10.128.128.30 47838 1.87%
10.151.68.10 30628 1.20%
10.17.61.224 29527 1.15%
Other(18135) 2455012 95.79%
Subtotal(18138) 2563005 16.52%
SAT 10.16.70.52 20859 6.09%
188.78.58.68 6398 1.87%
92.178.233.83 5189 1.51%
Other(3864) 310296 90.53%
Subtotal(3867) 342742 2.21%
SUN 10.16.70.52 20833 4.44%
10.16.80.86 6151 1.31%
dd - 30
f
The monthly breakdown of the traffic source over the reporting period.
Top Sources By Month
Month Source Events Percent
2023-jan 10.128.128.30 269735 1.74%
10.151.68.10 221574 1.43%
10.252.193.94 131429 0.85%
Other(52236) 14889133 95.99%
Subtotal(52239) 15511871 100.00%
Total(1) 15511871 100.00%
dd - 31
f
Attack
Attack by Time
dd - 32
f
dd - 33
f
dd - 34
f
dd - 35
f
dd - 36
f
dd - 37
f
Attacks By Date
dd - 38
f
dd - 39
f
dd - 40
f
dd - 41
f
dd - 42
f
Other(1) 50 0.02%
Subtotal(4) 217342 3.89%
01:00 - 02:00 low 216093 99.83%
high 217 0.10%
medium 139 0.06%
Other(1) 18 0.01%
Subtotal(4) 216467 3.87%
02:00 - 03:00 low 215640 99.91%
medium 92 0.04%
high 75 0.03%
Other(1) 30 0.01%
Subtotal(4) 215837 3.86%
03:00 - 04:00 low 215123 99.83%
high 253 0.12%
medium 88 0.04%
Other(1) 18 0.01%
Subtotal(4) 215482 3.86%
04:00 - 05:00 low 213571 99.89%
high 138 0.06%
medium 73 0.03%
Other(1) 15 0.01%
Subtotal(4) 213797 3.83%
05:00 - 06:00 low 213349 99.92%
medium 116 0.05%
high 52 0.02%
Other(1) 8 0.00%
Subtotal(4) 213525 3.82%
06:00 - 07:00 low 212638 99.89%
medium 119 0.06%
high 94 0.04%
Other(1) 24 0.01%
Subtotal(4) 212875 3.81%
Other(17) 4081661 73.06%
Total(24) 5586986 100.00%
dd - 43
f
dd - 44
f
dd - 45
f
The most frequently detected attack types over the reporting period.
Top Attack Types
Attack Type Events Percent
HTTP Connection 5447276 97.50%
Failure
Generic 50204 0.90%
Attacks(Extended)
Generic Attacks 31691 0.57%
SQL Injection 14080 0.25%
SQL/XSS Syntax Based 13885 0.25%
Detection
Machine Learning 8030 0.14%
Cross Site Scripting 5642 0.10%
Other(8) 16178 0.29%
Total(15) 5586986 100.00%
dd - 46
f
The protocols carrying the most attacks over the reporting period, broken down by attack
type.
Top Attack Protocols by Type
Protocol Attack Type Events Percent
https/tls1.2 HTTP Connection 5432082 97.66%
Failure
Generic 50204 0.90%
Attacks(Extended)
Generic Attacks 31164 0.56%
Other(11) 48748 0.88%
Subtotal(14) 5562198 99.56%
tcp Machine Learning 8030 100.00%
Subtotal(1) 8030 0.14%
https/tls1.1 HTTP Connection 6262 100.00%
Failure
Subtotal(1) 6262 0.11%
https/tls1.0 HTTP Connection 5183 100.00%
Failure
Subtotal(1) 5183 0.09%
https/tls1.3 HTTP Connection 2355 100.00%
Failure
Subtotal(1) 2355 0.04%
http IP Reputation 1027 65.66%
Generic Attacks 527 33.70%
dd - 47
f
The number of attacks for each attack category over the reporting period, broken down by
attack type.
Attack Categories by Type
Category Attack Type Events Percent
HTTP Connection HTTP Connection 5447276 100.00%
Failure Failure
Subtotal(1) 5447276 97.50%
Signature Generic 50204 45.65%
Detection Attacks(Extended)
Generic Attacks 31691 28.82%
SQL Injection 14080 12.80%
Other(5) 14004 12.73%
Subtotal(8) 109979 1.97%
SQL/XSS Syntax SQL/XSS Syntax 13885 100.00%
Based Detection Based Detection
Subtotal(1) 13885 0.25%
dd - 48
f
The most frequently detected attack severities over the reporting period, broken down by
action.
Top Attack Severities by Action
Action Severity Events Percent
Alert_Deny low 5451037 98.65%
high 67275 1.22%
medium 7547 0.14%
Subtotal(3) 5525859 98.91%
Alert medium 50173 82.08%
informative 8030 13.14%
low 2570 4.20%
dd - 49
f
The most frequently attacked destinations over the reporting period, broken down by attack
type.
Top Attack Destinations by Type
Destination Attack Type Events Percent
10.17.210.65 HTTP Connection 5415246 99.03%
Failure
Generic 48663 0.89%
Attacks(Extended)
IP Reputation 3103 0.06%
Other(7) 1080 0.02%
Subtotal(10) 5468092 97.87%
10.17.210.12 Generic Attacks 27327 44.50%
HTTP Connection 18006 29.32%
Failure
SQL/XSS Syntax 13788 22.45%
Based Detection
Other(5) 2293 3.73%
Subtotal(8) 61414 1.10%
10.17.210.18 SQL Injection 14078 40.42%
Cross Site Scripting 3857 11.08%
dd - 50
f
dd - 51
f
The most frequently attacked destinations over the reporting period, broken down by
source.
Top Attack Destinations by Source
Destination Source Events Percent
10.17.210.65 193.127.193.53 5345702 97.76%
177.222.109.47 3994 0.07%
192.126.194.33 3648 0.07%
Other(11456) 114748 2.10%
Subtotal(11459) 5468092 97.87%
10.17.210.12 37.97.137.40 4675 7.61%
206.189.127.129 4674 7.61%
195.57.52.2 1389 2.26%
Other(5236) 50676 82.52%
Subtotal(5239) 61414 1.10%
10.17.210.18 10.17.61.224 25273 72.57%
10.17.60.120 6933 19.91%
51.195.190.22 116 0.33%
Other(493) 2503 7.19%
Subtotal(496) 34825 0.62%
0.0.0.0 0.0.0.0 8030 100.00%
Subtotal(1) 8030 0.14%
10.17.210.40 88.221.90.166 248 5.58%
2.22.234.134 189 4.25%
88.221.90.7 181 4.07%
Other(1144) 3827 86.10%
Subtotal(1147) 4445 0.08%
10.17.210.9 157.55.39.89 346 8.48%
157.55.39.201 270 6.61%
40.77.167.40 268 6.57%
Other(352) 3198 78.34%
Subtotal(355) 4082 0.07%
10.17.210.29 10.17.60.168 631 29.09%
10.128.128.30 86 3.96%
10.151.68.10 77 3.55%
Other(300) 1375 63.39%
Subtotal(303) 2169 0.04%
Other(5) 3929 0.07%
Total(12) 5586986 100.00%
The most frequently detected attack types over the reporting period, broken down by
source.
Top Attack Types by Source
Attack Type Source Events Percent
HTTP Connection 193.127.193.53 5345702 98.14%
dd - 52
f
The most frequently attacked http methods over the reporting period, broken down by
attack type.
Top Attacked Http methods by Type
Http Method Attack Type Events Percent
none HTTP Connection 5447276 99.83%
Failure
Machine Learning 8030 0.15%
IP Reputation 1027 0.02%
Subtotal(3) 5456333 97.66%
post Generic 47582 56.67%
Attacks(Extended)
Generic Attacks 27176 32.37%
SQL/XSS Syntax 5721 6.81%
dd - 53
f
Based Detection
Other(9) 3484 4.15%
Subtotal(12) 83963 1.50%
get SQL Injection 13768 29.75%
SQL/XSS Syntax 8164 17.64%
Based Detection
Generic Attacks 4465 9.65%
Other(10) 19882 42.96%
Subtotal(13) 46279 0.83%
head Known Bots 304 79.79%
Detection
Information 57 14.96%
Disclosure
Generic Attacks 20 5.25%
Subtotal(3) 381 0.01%
webdav Generic Attacks 24 100.00%
Subtotal(1) 24 0.00%
options Generic Attacks 6 100.00%
Subtotal(1) 6 0.00%
Total(6) 5586986 100.00%
Attacks By Policy
dd - 54
f
The most frequently detected attack URLs over the reporting period.
Top Attack URLs
URL Events Percent
none 5456333 97.66%
/rb_672bda62-27f5- 45544 0.82%
4ac5-a713-
9fda56ef7959
/Delta2Web/ 24636 0.44%
rb_672bda62-27f5-
4ac5-a713-
9fda56ef7959
/Delta2Web/gusu/ 3666 0.07%
j_security_check
/Delta2Web/gpat/ 3234 0.06%
dd - 55
f
GestionPat.do
/avisonotificacion/ 2091 0.04%
rb_672bda62-27f5-
4ac5-a713-
9fda56ef7959
/Delta2Web/grem/ 1602 0.03%
GestionRemesas.do
Other(14406) 49880 0.89%
Total(14413) 5586986 100.00%
The most frequently attacked user identifications over the reporting period.
Top Attacked User Identifications
Session ID Events Percent
none 5461204 97.75%
678B286DEEC1BEF66B 28188 0.50%
BF6EAF4ECBF69A
678B286A59AA61CE8E 1338 0.02%
CF7BEF539CFFB3
678B286AC9350115735 878 0.02%
3C0C93F4759AE
678B286A00FFD575674 633 0.01%
E578B0D4B6B0C
678B286AA252002FE68 631 0.01%
319DE8CA86958
dd - 56
f
dd - 57
f
dd - 58
f
The most frequently triggered signature ID over the reporting period, broken down by
attack type.
Top Triggered Signature IDs By Type
Attack Type Signature ID Events Percent
Generic 060140003 49234 98.07%
Attacks(Extende 060050011 270 0.54%
d) 060070002 255 0.51%
Other(5) 445 0.89%
Subtotal(8) 50204 45.65%
Generic Attacks 050050039 23766 74.99%
050150001 2187 6.90%
050180008 1594 5.03%
Other(19) 4144 13.08%
Subtotal(22) 31691 28.82%
SQL Injection 030000040 4035 28.66%
030000042 3616 25.68%
030000163 2297 16.31%
Other(7) 4132 29.35%
Subtotal(10) 14080 12.80%
Cross Site 010000107 1871 33.16%
Scripting 010000041 1499 26.57%
010000063 580 10.28%
Other(15) 1692 29.99%
Subtotal(18) 5642 5.13%
dd - 59
f
dd - 60
f
dd - 61
f
dd - 62
f
dd - 63
f
es/astin/home
Other(4334) 61393 1.10%
Total(4341) 5586986 100.00%
dd - 64
f
dd - 65
f
6A8575230A
C0A2E074B859E 25 612 96.99%
29534224CBA28 100 19 3.01%
042EFC5B85 Subtotal(2) 631 0.01%
Other(13406) 96766 1.73%
Total(13413) 5586986 100.00%
dd - 66
f
dd - 67
f
Failure
Machine Learning 8030 0.15%
IP Reputation 1027 0.02%
Subtotal(3) 5456333 97.66%
8C7F8CCE7F28B Signature Detection 25781 91.46%
DD6245CFFDE17 Protected 2400 8.51%
1AB1076313 Hostnames
SQL/XSS Syntax 6 0.02%
Based Detection
Subtotal(3) 28187 0.50%
DD49A566DB590 Signature Detection 2130 95.95%
3BAE962082E7E Protected 90 4.05%
C9544F39B1 Hostnames
Subtotal(2) 2220 0.04%
FA5FDD2D80CE4 IP Reputation 1338 100.00%
66DE5A20807CB Subtotal(1) 1338 0.02%
642FD8E860
DD24CDA18239F Signature Detection 878 100.00%
D09BC0296E136 Subtotal(1) 878 0.02%
D495C9E3B4
304586BE0FB90 IP Reputation 633 100.00%
59FA95170BB0B Subtotal(1) 633 0.01%
6A8575230A
C0A2E074B859E Signature Detection 615 97.46%
29534224CBA28 SQL/XSS Syntax 16 2.54%
042EFC5B85 Based Detection
Subtotal(2) 631 0.01%
Other(13406) 96766 1.73%
Total(13413) 5586986 100.00%
dd - 68
f
Attack Summary
dd - 69
f
dd - 70
f
00:01:30 27f5-4ac5-a713-
9fda56ef7959
dd - 71
f
dd - 72
f
dd - 73
f
00:10:48
Attack Details
dd - 74
f
Sub N/A
Type
Priorit alert
y
Servic https/tls1.1
e
Sourc 154.38.157.158
e
Sourc 48006
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;258& 41; - unsupported protocol
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
dd - 75
f
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:00:01
&
Time
Log 20000016
ID
MSG 1767109607
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 154.38.157.158
e
Sourc 56709
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
dd - 76
f
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:00:02
&
Time
Log 20000016
ID
MSG 1767109608
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.1
e
Sourc 154.38.157.158
e
Sourc 34922
e Port
Destin 10.17.210.65
ation
Destin 443
ation
dd - 77
f
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;258& 41; - unsupported protocol
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
dd - 78
f
Attack Details
Item Value
Date 2023-01-07 00:00:03
&
Time
Log 20000016
ID
MSG 1767109609
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 154.38.157.158
e
Sourc 46308
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
dd - 79
f
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:00:03
&
Time
Log 20000016
ID
MSG 1767109610
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 154.38.157.158
e
Sourc 43371
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
dd - 80
f
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:00:03
&
Time
Log 20000016
ID
MSG 1767109611
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
dd - 81
f
y
Servic https/tls1.2
e
Sourc 154.38.157.158
e
Sourc 55848
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
dd - 82
f
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:00:04
&
Time
Log 20000016
ID
MSG 1767109612
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.1
e
Sourc 154.38.157.158
e
Sourc 46906
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;258& 41; - unsupported protocol
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
dd - 83
f
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:00:04
&
Time
Log 20000016
ID
MSG 1767109613
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 37.97.137.40
e
Sourc 42198
e Port
Destin 10.17.210.12
ation
Destin 443
ation
Port
Policy Pol_delta
Action Alert_Deny
dd - 84
f
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc Netherlands
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:00:05
dd - 85
f
&
Time
Log 20000016
ID
MSG 1767109614
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 154.38.157.158
e
Sourc 39977
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
dd - 86
f
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:00:06
&
Time
Log 20000016
ID
MSG 1767109615
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.1
e
Sourc 154.38.157.158
e
Sourc 56587
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
dd - 87
f
r
Policy
Messa SSL Error& 40;258& 41; - unsupported protocol
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:00:08
&
Time
Log 20000016
ID
MSG 1767109616
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
dd - 88
f
Sourc 52.60.34.56
e
Sourc 36400
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc Canada
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
dd - 89
f
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:00:27
&
Time
Log 20000016
ID
MSG 1767109634
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 144.24.160.176
e
Sourc 53458
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
dd - 90
f
Signat N/A
ure ID
Sourc Germany
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:00:32
&
Time
Log 20000016
ID
MSG 1767109642
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 144.24.160.176
e
Sourc 36878
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
dd - 91
f
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc Germany
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:01:09
&
Time
Log 20000016
dd - 92
f
ID
MSG 1767109728
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 206.189.127.129
e
Sourc 52524
e Port
Destin 10.17.210.12
ation
Destin 443
ation
Port
Policy Pol_delta
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United Kingdom
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
dd - 93
f
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:01:13
&
Time
Log 20000016
ID
MSG 1767109731
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 192.126.194.33
e
Sourc 39448
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
dd - 94
f
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:01:14
&
Time
Log 20000016
ID
MSG 1767109734
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 192.126.194.33
e
Sourc 47905
dd - 95
f
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
dd - 96
f
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:01:16
&
Time
Log 20000016
ID
MSG 1767109737
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 192.126.194.33
e
Sourc 38200
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
dd - 97
f
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:01:17
&
Time
Log 20000016
ID
MSG 1767109739
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.1
e
Sourc 192.126.194.33
e
Sourc 56862
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
dd - 98
f
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;258& 41; - unsupported protocol
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:01:18
&
Time
Log 20000016
ID
MSG 1767109741
ID
dd - 99
f
dd - 100
f
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:01:19
&
Time
Log 20000016
ID
MSG 1767109746
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.1
e
Sourc 192.126.194.33
e
Sourc 56472
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;258& 41; - unsupported protocol
ge
Signat Unknown
ure
dd - 101
f
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:01:20
&
Time
Log 20000016
ID
MSG 1767109748
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 192.126.194.33
e
Sourc 34603
e Port
Destin 10.17.210.65
ation
dd - 102
f
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
dd - 103
f
Level
Attack Details
Item Value
Date 2023-01-07 00:01:21
&
Time
Log 20000016
ID
MSG 1767109752
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.1
e
Sourc 192.126.194.33
e
Sourc 48709
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;258& 41; - unsupported protocol
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
dd - 104
f
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:01:22
&
Time
Log 20000016
ID
MSG 1767109757
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 192.126.194.33
e
Sourc 57709
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
dd - 105
f
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:01:23
&
Time
Log 20000016
ID
MSG 1767109759
ID
Main HTTP Connection Failure
Type
Sub N/A
dd - 106
f
Type
Priorit alert
y
Servic https/tls1.1
e
Sourc 192.126.194.33
e
Sourc 56562
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;258& 41; - unsupported protocol
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
dd - 107
f
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:01:25
&
Time
Log 20000016
ID
MSG 1767109761
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 192.126.194.33
e
Sourc 52913
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
dd - 108
f
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:01:26
&
Time
Log 20000016
ID
MSG 1767109765
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.1
e
Sourc 192.126.194.33
e
Sourc 46735
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
dd - 109
f
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;258& 41; - unsupported protocol
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
dd - 110
f
Item Value
Date 2023-01-07 00:01:28
&
Time
Log 20000008
ID
MSG 1767109791
ID
Main Signature Detection
Type
Sub Generic Attacks(Extended)
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 90.77.73.178
e
Sourc 58382
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert
Http post
Metho
d
URL /rb_672bda62-27f5-4ac5-a713-9fda56ef7959
Http expinterweb.mites.gob.es
Host
Http Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like
Agent Gecko) Version/16.0 Safari/605.1.15
Sessio 678B286A6D8A6DB83F8CD15D7F270695
n ID
Severi medium
ty
Level
Trigge N/A
r
Policy
Messa Parameter& 40;rf& 41; triggered signature ID 060140003 of Signatures policy
ge WP_Signature_EXPINTERWEB_ALL
Signat Unknown
ure
Maincl
ass
Type
Signat RFI Injection
ure
Subcl
ass
Type
Signat 060140003
ure ID
Sourc Spain
e
Count
ry
Serve EXPINTERWEB
r Pool
User Unknown
dd - 111
f
Name
Http https://expinterweb.mites.gob.es/regcon/cat/index.htm
Refer
er
Http 1.x
Versio
n
Client 1FDCDFB06C4C926AFED495322877DB02CC52
Devic
e ID
Threa 25
t
Weigh
t
Histor 325
ical
Threa
t
Weigh
t
Threa Moderate
t
Level
Attack Details
Item Value
Date 2023-01-07 00:01:28
&
Time
Log 20000008
ID
MSG 1767109792
ID
Main Signature Detection
Type
Sub Generic Attacks(Extended)
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 90.77.73.178
e
Sourc 58382
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert
Http post
Metho
d
URL /rb_672bda62-27f5-4ac5-a713-9fda56ef7959
Http expinterweb.mites.gob.es
Host
Http Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like
Agent Gecko) Version/16.0 Safari/605.1.15
Sessio 678B286A6D8A6DB83F8CD15D7F270695
n ID
Severi medium
ty
dd - 112
f
Level
Trigge N/A
r
Policy
Messa Parameter& 40;$a& 41; triggered signature ID 060140003 of Signatures policy
ge WP_Signature_EXPINTERWEB_ALL
Signat Unknown
ure
Maincl
ass
Type
Signat RFI Injection
ure
Subcl
ass
Type
Signat 060140003
ure ID
Sourc Spain
e
Count
ry
Serve EXPINTERWEB
r Pool
User Unknown
Name
Http https://expinterweb.mites.gob.es/regcon/cat/index.htm
Refer
er
Http 1.x
Versio
n
Client 1FDCDFB06C4C926AFED495322877DB02CC52
Devic
e ID
Threa 25
t
Weigh
t
Histor 350
ical
Threa
t
Weigh
t
Threa Moderate
t
Level
Attack Details
Item Value
Date 2023-01-07 00:01:30
&
Time
Log 20000008
ID
MSG 1767109797
ID
Main Signature Detection
Type
Sub Generic Attacks(Extended)
Type
Priorit alert
y
dd - 113
f
Servic https/tls1.2
e
Sourc 90.77.73.178
e
Sourc 58382
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert
Http post
Metho
d
URL /rb_672bda62-27f5-4ac5-a713-9fda56ef7959
Http expinterweb.mites.gob.es
Host
Http Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like
Agent Gecko) Version/16.0 Safari/605.1.15
Sessio 678B286A6D8A6DB83F8CD15D7F270695
n ID
Severi medium
ty
Level
Trigge N/A
r
Policy
Messa Parameter& 40;rf& 41; triggered signature ID 060140003 of Signatures policy
ge WP_Signature_EXPINTERWEB_ALL
Signat Unknown
ure
Maincl
ass
Type
Signat RFI Injection
ure
Subcl
ass
Type
Signat 060140003
ure ID
Sourc Spain
e
Count
ry
Serve EXPINTERWEB
r Pool
User Unknown
Name
Http https://expinterweb.mites.gob.es/regcon/cat/index.htm
Refer
er
Http 1.x
Versio
n
Client 1FDCDFB06C4C926AFED495322877DB02CC52
Devic
e ID
Threa 25
t
Weigh
t
dd - 114
f
Histor 375
ical
Threa
t
Weigh
t
Threa Moderate
t
Level
Attack Details
Item Value
Date 2023-01-07 00:01:30
&
Time
Log 20000008
ID
MSG 1767109798
ID
Main Signature Detection
Type
Sub Generic Attacks(Extended)
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 90.77.73.178
e
Sourc 58382
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert
Http post
Metho
d
URL /rb_672bda62-27f5-4ac5-a713-9fda56ef7959
Http expinterweb.mites.gob.es
Host
Http Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like
Agent Gecko) Version/16.0 Safari/605.1.15
Sessio 678B286A6D8A6DB83F8CD15D7F270695
n ID
Severi medium
ty
Level
Trigge N/A
r
Policy
Messa Parameter& 40;$tvn& 41; triggered signature ID 060140003 of Signatures policy
ge WP_Signature_EXPINTERWEB_ALL
Signat Unknown
ure
Maincl
ass
Type
Signat RFI Injection
ure
Subcl
dd - 115
f
ass
Type
Signat 060140003
ure ID
Sourc Spain
e
Count
ry
Serve EXPINTERWEB
r Pool
User Unknown
Name
Http https://expinterweb.mites.gob.es/regcon/cat/index.htm
Refer
er
Http 1.x
Versio
n
Client 1FDCDFB06C4C926AFED495322877DB02CC52
Devic
e ID
Threa 25
t
Weigh
t
Histor 400
ical
Threa
t
Weigh
t
Threa Moderate
t
Level
Attack Details
Item Value
Date 2023-01-07 00:01:40
&
Time
Log 20000008
ID
MSG 1767109816
ID
Main Signature Detection
Type
Sub Generic Attacks(Extended)
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 90.77.73.178
e
Sourc 58389
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert
Http post
dd - 116
f
Metho
d
URL /rb_672bda62-27f5-4ac5-a713-9fda56ef7959
Http expinterweb.mites.gob.es
Host
Http Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like
Agent Gecko) Version/16.0 Safari/605.1.15
Sessio 678B286A6D8A6DB83F8CD15D7F270695
n ID
Severi medium
ty
Level
Trigge N/A
r
Policy
Messa Parameter& 40;rf& 41; triggered signature ID 060140003 of Signatures policy
ge WP_Signature_EXPINTERWEB_ALL
Signat Unknown
ure
Maincl
ass
Type
Signat RFI Injection
ure
Subcl
ass
Type
Signat 060140003
ure ID
Sourc Spain
e
Count
ry
Serve EXPINTERWEB
r Pool
User Unknown
Name
Http https://expinterweb.mites.gob.es/regcon/cat/index.htm
Refer
er
Http 1.x
Versio
n
Client 1FDCDFB06C4C926AFED495322877DB02CC52
Devic
e ID
Threa 25
t
Weigh
t
Histor 425
ical
Threa
t
Weigh
t
Threa Moderate
t
Level
Attack Details
Item Value
Date 2023-01-07 00:01:40
&
dd - 117
f
Time
Log 20000008
ID
MSG 1767109817
ID
Main Signature Detection
Type
Sub Generic Attacks(Extended)
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 90.77.73.178
e
Sourc 58389
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert
Http post
Metho
d
URL /rb_672bda62-27f5-4ac5-a713-9fda56ef7959
Http expinterweb.mites.gob.es
Host
Http Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like
Agent Gecko) Version/16.0 Safari/605.1.15
Sessio 678B286A6D8A6DB83F8CD15D7F270695
n ID
Severi medium
ty
Level
Trigge N/A
r
Policy
Messa Parameter& 40;$a& 41; triggered signature ID 060140003 of Signatures policy
ge WP_Signature_EXPINTERWEB_ALL
Signat Unknown
ure
Maincl
ass
Type
Signat RFI Injection
ure
Subcl
ass
Type
Signat 060140003
ure ID
Sourc Spain
e
Count
ry
Serve EXPINTERWEB
r Pool
User Unknown
Name
Http https://expinterweb.mites.gob.es/regcon/cat/index.htm
Refer
dd - 118
f
er
Http 1.x
Versio
n
Client 1FDCDFB06C4C926AFED495322877DB02CC52
Devic
e ID
Threa 25
t
Weigh
t
Histor 450
ical
Threa
t
Weigh
t
Threa Moderate
t
Level
Attack Details
Item Value
Date 2023-01-07 00:01:54
&
Time
Log 20000016
ID
MSG 1767109853
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 185.191.171.42
e
Sourc 54476
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
dd - 119
f
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:01:54
&
Time
Log 20000016
ID
MSG 1767109854
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 185.191.171.42
dd - 120
f
e
Sourc 58214
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
dd - 121
f
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:02:18
&
Time
Log 20000016
ID
MSG 1767109969
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 87.250.224.19
e
Sourc 41036
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
dd - 122
f
ure ID
Sourc Russian Federation
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:02:18
&
Time
Log 20000016
ID
MSG 1767109970
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 87.250.224.19
e
Sourc 41128
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
dd - 123
f
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc Russian Federation
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:02:18
&
Time
Log 20000016
ID
dd - 124
f
MSG 1767109971
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.1
e
Sourc 87.250.224.19
e
Sourc 41256
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;258& 41; - unsupported protocol
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc Russian Federation
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
dd - 125
f
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:02:18
&
Time
Log 20000016
ID
MSG 1767109972
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.0
e
Sourc 87.250.224.19
e
Sourc 41376
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;258& 41; - unsupported protocol
ge
dd - 126
f
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc Russian Federation
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:02:24
&
Time
Log 20000016
ID
MSG 1767109978
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 37.97.137.40
e
Sourc 52496
e Port
dd - 127
f
Destin 10.17.210.12
ation
Destin 443
ation
Port
Policy Pol_delta
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc Netherlands
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
dd - 128
f
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:02:39
&
Time
Log 20000016
ID
MSG 1767109985
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 40.77.167.7
e
Sourc 41472
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
dd - 129
f
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:02:39
&
Time
Log 20000016
ID
MSG 1767109986
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 40.77.167.7
e
Sourc 41473
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
dd - 130
f
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:02:51
&
Time
Log 20000016
ID
MSG 1767110029
ID
Main HTTP Connection Failure
dd - 131
f
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 66.249.76.7
e
Sourc 56916
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc Belgium
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
dd - 132
f
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:03:28
&
Time
Log 20000016
ID
MSG 1767110161
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 206.189.127.129
e
Sourc 35838
e Port
Destin 10.17.210.12
ation
Destin 443
ation
Port
Policy Pol_delta
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
dd - 133
f
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United Kingdom
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:03:47
&
Time
Log 20000016
ID
MSG 1767110244
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 185.191.171.13
e
Sourc 9638
e Port
Destin 10.17.210.65
ation
Destin 443
dd - 134
f
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
dd - 135
f
Attack Details
Item Value
Date 2023-01-07 00:03:47
&
Time
Log 20000016
ID
MSG 1767110245
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 185.191.171.13
e
Sourc 18182
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
dd - 136
f
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:04:36
&
Time
Log 20000016
ID
MSG 1767110302
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 37.97.137.40
e
Sourc 35330
e Port
Destin 10.17.210.12
ation
Destin 443
ation
Port
Policy Pol_delta
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
dd - 137
f
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc Netherlands
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:05:40
&
Time
Log 20000016
ID
MSG 1767110512
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
dd - 138
f
Priorit alert
y
Servic https/tls1.2
e
Sourc 206.189.127.129
e
Sourc 44004
e Port
Destin 10.17.210.12
ation
Destin 443
ation
Port
Policy Pol_delta
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United Kingdom
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
dd - 139
f
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:05:46
&
Time
Log 20000016
ID
MSG 1767110524
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 40.77.167.8
e
Sourc 60288
e Port
Destin 10.17.210.9
ation
Destin 443
ation
Port
Policy Pol_bibliotecavirtual
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
dd - 140
f
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:05:46
&
Time
Log 20000016
ID
MSG 1767110525
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 40.77.167.8
e
Sourc 60289
e Port
Destin 10.17.210.9
ation
Destin 443
ation
Port
Policy Pol_bibliotecavirtual
dd - 141
f
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
dd - 142
f
dd - 143
f
Http none
Refer
er
Http 1.x
Versio
n
Client 46701E750B11FCD489BCC0A711A2A9D3A27B
Devic
e ID
Threa 25
t
Weigh
t
Histor 25
ical
Threa
t
Weigh
t
Threa Moderate
t
Level
Attack Details
Item Value
Date 2023-01-07 00:06:09
&
Time
Log 20000008
ID
MSG 1767110552
ID
Main Signature Detection
Type
Sub Generic Attacks(Extended)
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 66.249.64.254
e
Sourc 57621
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert
Http post
Metho
d
URL /rb_672bda62-27f5-4ac5-a713-9fda56ef7959
Http expinterweb.mites.gob.es
Host
Http Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML,
Agent like Gecko) Chrome/108.0.5359.130 Mobile Safari/537.36 (compatible; Googlebot/2.1;
+http://www.google.com/bot.html)
Sessio 678B286AA22CCE098752AAD1F2907FF5
n ID
Severi medium
ty
dd - 144
f
Level
Trigge N/A
r
Policy
Messa Parameter& 40;rf& 41; triggered signature ID 060140003 of Signatures policy
ge WP_Signature_EXPINTERWEB_ALL
Signat Unknown
ure
Maincl
ass
Type
Signat RFI Injection
ure
Subcl
ass
Type
Signat 060140003
ure ID
Sourc United States
e
Count
ry
Serve EXPINTERWEB
r Pool
User Unknown
Name
Http https://expinterweb.mites.gob.es/regcon/
Refer
er
Http 1.x
Versio
n
Client 754018A52A1B16FF0186DE2D79310D3F5FFC
Devic
e ID
Threa 25
t
Weigh
t
Histor 25
ical
Threa
t
Weigh
t
Threa Moderate
t
Level
Attack Details
Item Value
Date 2023-01-07 00:06:09
&
Time
Log 20000008
ID
MSG 1767110553
ID
Main Signature Detection
Type
Sub Generic Attacks(Extended)
Type
Priorit alert
y
dd - 145
f
Servic https/tls1.2
e
Sourc 66.249.64.254
e
Sourc 57621
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert
Http post
Metho
d
URL /rb_672bda62-27f5-4ac5-a713-9fda56ef7959
Http expinterweb.mites.gob.es
Host
Http Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML,
Agent like Gecko) Chrome/108.0.5359.130 Mobile Safari/537.36 (compatible; Googlebot/2.1;
+http://www.google.com/bot.html)
Sessio 678B286AA22CCE098752AAD1F2907FF5
n ID
Severi medium
ty
Level
Trigge N/A
r
Policy
Messa Parameter& 40;$a& 41; triggered signature ID 060140003 of Signatures policy
ge WP_Signature_EXPINTERWEB_ALL
Signat Unknown
ure
Maincl
ass
Type
Signat RFI Injection
ure
Subcl
ass
Type
Signat 060140003
ure ID
Sourc United States
e
Count
ry
Serve EXPINTERWEB
r Pool
User Unknown
Name
Http https://expinterweb.mites.gob.es/regcon/
Refer
er
Http 1.x
Versio
n
Client 754018A52A1B16FF0186DE2D79310D3F5FFC
Devic
e ID
Threa 25
t
Weigh
dd - 146
f
t
Histor 50
ical
Threa
t
Weigh
t
Threa Moderate
t
Level
Attack Details
Item Value
Date 2023-01-07 00:06:11
&
Time
Log 20000016
ID
MSG 1767110557
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 157.55.39.10
e
Sourc 37120
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
dd - 147
f
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:06:11
&
Time
Log 20000016
ID
MSG 1767110558
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 157.55.39.10
e
Sourc 37121
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
dd - 148
f
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:06:21
dd - 149
f
&
Time
Log 20000016
ID
MSG 1767110567
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 40.77.167.7
e
Sourc 39104
e Port
Destin 10.17.210.9
ation
Destin 443
ation
Port
Policy Pol_bibliotecavirtual
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
dd - 150
f
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:06:21
&
Time
Log 20000016
ID
MSG 1767110568
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 40.77.167.7
e
Sourc 39105
e Port
Destin 10.17.210.9
ation
Destin 443
ation
Port
Policy Pol_bibliotecavirtual
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
dd - 151
f
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:06:43
&
Time
Log 20000016
ID
MSG 1767110677
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
dd - 152
f
Sourc 66.249.76.198
e
Sourc 48391
e Port
Destin 10.17.210.18
ation
Destin 443
ation
Port
Policy Pol_Preinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc Belgium
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
dd - 153
f
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:06:44
&
Time
Log 20000016
ID
MSG 1767110678
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 37.97.137.40
e
Sourc 45544
e Port
Destin 10.17.210.12
ation
Destin 443
ation
Port
Policy Pol_delta
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
dd - 154
f
Signat N/A
ure ID
Sourc Netherlands
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:07:20
&
Time
Log 20000037
ID
MSG 1767110812
ID
Main Machine Learning
Type
Sub Model test failed
Type
Priorit alert
y
Servic tcp
e
Sourc 0.0.0.0
e
Sourc 0
e Port
Destin 0.0.0.0
ation
Destin 0
ation
Port
Policy Pol_expinterweb
Action Alert
Http none
Metho
d
dd - 155
f
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi informative
ty
Level
Trigge N/A
r
Policy
Messa The mathematical model of argument& 60;tramiteSel& 62;& 40;2429& 41; in
ge *.mites.gob.es failed. Model
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc Unknown
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http unknown
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Low
t
Level
Attack Details
Item Value
Date 2023-01-07 00:07:53
&
Time
Log 20000016
dd - 156
f
ID
MSG 1767111047
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 206.189.127.129
e
Sourc 55088
e Port
Destin 10.17.210.12
ation
Destin 443
ation
Port
Policy Pol_delta
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United Kingdom
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
dd - 157
f
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:08:57
&
Time
Log 20000016
ID
MSG 1767111119
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 40.77.167.8
e
Sourc 58880
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
dd - 158
f
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:08:57
&
Time
Log 20000016
ID
MSG 1767111121
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 40.77.167.8
e
Sourc 58881
dd - 159
f
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
dd - 160
f
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:08:59
&
Time
Log 20000016
ID
MSG 1767111124
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 37.97.137.40
e
Sourc 56580
e Port
Destin 10.17.210.12
ation
Destin 443
ation
Port
Policy Pol_delta
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc Netherlands
dd - 161
f
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:09:33
&
Time
Log 20000016
ID
MSG 1767111245
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 15.206.202.147
e
Sourc 63934
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
dd - 162
f
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc India
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:09:34
&
Time
Log 20000016
ID
MSG 1767111247
ID
dd - 163
f
dd - 164
f
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:09:34
&
Time
Log 20000016
ID
MSG 1767111257
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.1
e
Sourc 15.206.202.147
e
Sourc 64071
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;258& 41; - unsupported protocol
ge
Signat Unknown
ure
dd - 165
f
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc India
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:09:34
&
Time
Log 20000016
ID
MSG 1767111258
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.1
e
Sourc 15.206.202.147
e
Sourc 64113
e Port
Destin 10.17.210.65
ation
dd - 166
f
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;258& 41; - unsupported protocol
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc India
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
dd - 167
f
Level
Attack Details
Item Value
Date 2023-01-07 00:09:34
&
Time
Log 20000016
ID
MSG 1767111259
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 15.206.202.147
e
Sourc 64156
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc India
e
Count
ry
dd - 168
f
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:09:35
&
Time
Log 20000016
ID
MSG 1767111279
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.1
e
Sourc 15.206.202.147
e
Sourc 64220
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
dd - 169
f
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;258& 41; - unsupported protocol
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc India
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:09:35
&
Time
Log 20000016
ID
MSG 1767111280
ID
Main HTTP Connection Failure
Type
Sub N/A
dd - 170
f
Type
Priorit alert
y
Servic https/tls1.1
e
Sourc 15.206.202.147
e
Sourc 64286
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;258& 41; - unsupported protocol
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc India
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
dd - 171
f
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:09:35
&
Time
Log 20000016
ID
MSG 1767111281
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 15.206.202.147
e
Sourc 64350
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
dd - 172
f
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc India
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:09:35
&
Time
Log 20000016
ID
MSG 1767111282
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.1
e
Sourc 15.206.202.147
e
Sourc 64414
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
dd - 173
f
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;258& 41; - unsupported protocol
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc India
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
dd - 174
f
Item Value
Date 2023-01-07 00:10:04
&
Time
Log 20000016
ID
MSG 1767111429
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 206.189.127.129
e
Sourc 34752
e Port
Destin 10.17.210.12
ation
Destin 443
ation
Port
Policy Pol_delta
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United Kingdom
e
Count
ry
Serve none
r Pool
User Unknown
dd - 175
f
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:10:35
&
Time
Log 20000016
ID
MSG 1767111506
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 192.126.194.33
e
Sourc 48614
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
dd - 176
f
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:10:37
&
Time
Log 20000016
ID
MSG 1767111507
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
dd - 177
f
Servic https/tls1.2
e
Sourc 192.126.194.33
e
Sourc 35708
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
dd - 178
f
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:10:38
&
Time
Log 20000016
ID
MSG 1767111508
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 192.126.194.33
e
Sourc 58395
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
dd - 179
f
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:10:39
&
Time
Log 20000016
ID
MSG 1767111512
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.1
e
Sourc 192.126.194.33
e
Sourc 34254
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
dd - 180
f
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;258& 41; - unsupported protocol
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:10:40
&
dd - 181
f
Time
Log 20000016
ID
MSG 1767111514
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 192.126.194.33
e
Sourc 35508
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
dd - 182
f
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:10:41
&
Time
Log 20000016
ID
MSG 1767111516
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.1
e
Sourc 192.126.194.33
e
Sourc 52136
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
dd - 183
f
Policy
Messa SSL Error& 40;258& 41; - unsupported protocol
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:10:43
&
Time
Log 20000016
ID
MSG 1767111517
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 192.126.194.33
dd - 184
f
e
Sourc 34358
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
dd - 185
f
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:10:44
&
Time
Log 20000016
ID
MSG 1767111519
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.1
e
Sourc 192.126.194.33
e
Sourc 37861
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;258& 41; - unsupported protocol
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
dd - 186
f
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:10:45
&
Time
Log 20000016
ID
MSG 1767111520
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 192.126.194.33
e
Sourc 60442
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
dd - 187
f
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:10:46
&
Time
Log 20000016
ID
dd - 188
f
MSG 1767111523
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.1
e
Sourc 192.126.194.33
e
Sourc 56377
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;258& 41; - unsupported protocol
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
dd - 189
f
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:10:47
&
Time
Log 20000016
ID
MSG 1767111525
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 192.126.194.33
e
Sourc 54623
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
dd - 190
f
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:10:48
&
Time
Log 20000016
ID
MSG 1767111529
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.1
e
Sourc 192.126.194.33
e
Sourc 49468
e Port
dd - 191
f
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;258& 41; - unsupported protocol
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
dd - 192
f
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:11:10
&
Time
Log 20000016
ID
MSG 1767111560
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 37.97.137.40
e
Sourc 38484
e Port
Destin 10.17.210.12
ation
Destin 443
ation
Port
Policy Pol_delta
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc Netherlands
e
dd - 193
f
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:11:26
&
Time
Log 20000016
ID
MSG 1767111578
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 40.77.167.8
e
Sourc 60288
e Port
Destin 10.17.210.9
ation
Destin 443
ation
Port
Policy Pol_bibliotecavirtual
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
dd - 194
f
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:11:26
&
Time
Log 20000016
ID
MSG 1767111579
ID
Main HTTP Connection Failure
dd - 195
f
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 40.77.167.8
e
Sourc 60289
e Port
Destin 10.17.210.9
ation
Destin 443
ation
Port
Policy Pol_bibliotecavirtual
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
dd - 196
f
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:11:42
&
Time
Log 20000016
ID
MSG 1767111606
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 192.126.194.33
e
Sourc 43692
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
dd - 197
f
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:11:44
&
Time
Log 20000016
ID
MSG 1767111624
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 192.126.194.33
e
Sourc 37189
e Port
Destin 10.17.210.65
ation
Destin 443
dd - 198
f
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
dd - 199
f
Attack Details
Item Value
Date 2023-01-07 00:11:45
&
Time
Log 20000016
ID
MSG 1767111626
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 192.126.194.33
e
Sourc 47537
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
dd - 200
f
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:11:46
&
Time
Log 20000016
ID
MSG 1767111628
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.1
e
Sourc 192.126.194.33
e
Sourc 45803
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
dd - 201
f
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;258& 41; - unsupported protocol
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:11:47
&
Time
Log 20000016
ID
MSG 1767111630
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
dd - 202
f
Priorit alert
y
Servic https/tls1.2
e
Sourc 192.126.194.33
e
Sourc 51015
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
dd - 203
f
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:11:48
&
Time
Log 20000016
ID
MSG 1767111632
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.1
e
Sourc 192.126.194.33
e
Sourc 50686
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;258& 41; - unsupported protocol
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
dd - 204
f
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:11:49
&
Time
Log 20000016
ID
MSG 1767111635
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 192.126.194.33
e
Sourc 37473
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
dd - 205
f
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
dd - 206
f
dd - 207
f
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:11:51
&
Time
Log 20000016
ID
MSG 1767111637
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 192.126.194.33
e
Sourc 40862
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
dd - 208
f
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:11:53
&
Time
Log 20000016
ID
MSG 1767111640
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.1
dd - 209
f
e
Sourc 192.126.194.33
e
Sourc 54652
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;258& 41; - unsupported protocol
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
dd - 210
f
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:11:54
&
Time
Log 20000016
ID
MSG 1767111642
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.2
e
Sourc 192.126.194.33
e
Sourc 51318
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;319& 41; - ssl3 ext invalid servername
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
dd - 211
f
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Attack Details
Item Value
Date 2023-01-07 00:11:55
&
Time
Log 20000016
ID
MSG 1767111647
ID
Main HTTP Connection Failure
Type
Sub N/A
Type
Priorit alert
y
Servic https/tls1.1
e
Sourc 192.126.194.33
e
Sourc 39992
e Port
Destin 10.17.210.65
ation
Destin 443
ation
Port
Policy Pol_expinterweb
Action Alert_Deny
Http none
Metho
dd - 212
f
d
URL none
Http none
Host
Http none
Agent
Sessio none
n ID
Severi low
ty
Level
Trigge N/A
r
Policy
Messa SSL Error& 40;258& 41; - unsupported protocol
ge
Signat Unknown
ure
Maincl
ass
Type
Signat N/A
ure
Subcl
ass
Type
Signat N/A
ure ID
Sourc United States
e
Count
ry
Serve none
r Pool
User Unknown
Name
Http none
Refer
er
Http 1.x
Versio
n
Client none
Devic
e ID
Threa 0
t
Weigh
t
Histor 0
ical
Threa
t
Weigh
t
Threa Off
t
Level
Event
dd - 213
f
By Hour Of Day
dd - 214
f
Subtotal(2) 47 3.16%
04:00 - 05:00 HA synchronize 42 91.30%
known_bots to
secondary device
FV-1KD3A14800321
success.
Disk log reaches file 4 8.70%
size limit
Subtotal(2) 46 3.10%
05:00 - 06:00 HA synchronize 47 90.38%
known_bots to
secondary device
FV-1KD3A14800321
success.
Disk log reaches file 5 9.62%
size limit
Subtotal(2) 52 3.50%
06:00 - 07:00 HA synchronize 48 90.57%
known_bots to
secondary device
FV-1KD3A14800321
success.
Disk log reaches file 5 9.43%
size limit
Subtotal(2) 53 3.57%
Other(17) 1137 76.57%
Total(24) 1485 100.00%
dd - 215
f
dd - 216
f
Security/Fortiweb
OK
Subtotal(1) 1 1.35%
Total(5) 74 100.00%
dd - 217
f
dd - 218
f
This report provides information about the Hourly Events Triggered by category.
Top Event Categories by Hour of Day
Hour Category Events Percent
00:00 - 01:00 information 55 100.00%
Subtotal(1) 55 3.53%
01:00 - 02:00 information 48 100.00%
Subtotal(1) 48 3.08%
02:00 - 03:00 information 47 100.00%
Subtotal(1) 47 3.01%
03:00 - 04:00 information 47 100.00%
Subtotal(1) 47 3.01%
04:00 - 05:00 information 46 100.00%
Subtotal(1) 46 2.95%
05:00 - 06:00 information 52 100.00%
Subtotal(1) 52 3.34%
06:00 - 07:00 information 53 100.00%
Subtotal(1) 53 3.40%
Other(17) 1211 77.68%
Total(24) 1559 100.00%
dd - 219
f
By Date
dd - 220
f
size limit
User 1 0.72%
daemon_admin
generate Report
Scheduled_Report_
1-2023-01-07-1115
successfully
Other(2) 2 1.45%
Subtotal(5) 138 9.29%
2023-01-08 HA synchronize 145 92.36%
known_bots to
secondary device
FV-1KD3A14800321
success.
Disk log reaches file 9 5.73%
size limit
User 1 0.64%
daemon_admin
generate Report
Scheduled_Report_
1-2023-01-08-1115
successfully
Other(2) 2 1.27%
Subtotal(5) 157 10.57%
2023-01-09 HA synchronize 122 65.59%
known_bots to
secondary device
FV-1KD3A14800321
success.
Disk log reaches file 60 32.26%
size limit
User 1 0.54%
daemon_admin
generate Report
Scheduled_Report_
1-2023-01-09-1115
successfully
Other(3) 3 1.61%
Subtotal(6) 186 12.53%
2023-01-10 HA synchronize 163 61.28%
known_bots to
secondary device
FV-1KD3A14800321
success.
Disk log reaches file 98 36.84%
size limit
User 50732516J 1 0.38%
logged in
successfully from
GUI-
>HTTPS(10.16.70.1
07)
dd - 221
f
Other(4) 4 1.50%
Subtotal(7) 266 17.91%
2023-01-11 HA synchronize 168 56.00%
known_bots to
secondary device
FV-1KD3A14800321
success.
Disk log reaches file 126 42.00%
size limit
CPU usage reduced, 1 0.33%
CPU usage is 21
Other(5) 5 1.67%
Subtotal(8) 300 20.20%
2023-01-12 HA synchronize 179 73.97%
known_bots to
secondary device
FV-1KD3A14800321
success.
Disk log reaches file 60 24.79%
size limit
User 1 0.41%
daemon_admin
generate Report
Scheduled_Report_
1-2023-01-12-1115
successfully
Other(2) 2 0.83%
Subtotal(5) 242 16.30%
2023-01-13 HA synchronize 131 66.84%
known_bots to
secondary device
FV-1KD3A14800321
success.
Disk log reaches file 51 26.02%
size limit
HA synchronize 1 0.51%
virus engine and
virus database to
secondary device
FV-1KD3A14800321
success.
Other(13) 13 6.63%
Subtotal(16) 196 13.20%
Total(7) 1485 100.00%
dd - 222
f
dd - 223
f
dd - 224
f
Subtotal(9) 10 13.51%
2023-01-13 Fortiweb FSCI 2 18.18%
update succeeded
Fortiweb ip 1 9.09%
intelligence
signature update
succeeded
CPU usage too 1 9.09%
high,CPU usage is
68, process proxyd
Other(7) 7 63.64%
Subtotal(10) 11 14.86%
Total(7) 74 100.00%
dd - 225
f
dd - 226
f
FV-1KD3A14800321
success.
Disk log reaches file 60 23.81%
size limit
Fortiweb FSCI 2 0.79%
update succeeded
Other(11) 11 4.37%
Subtotal(14) 252 16.16%
2023-01-13 HA synchronize 131 63.29%
known_bots to
secondary device
FV-1KD3A14800321
success.
Disk log reaches file 51 24.64%
size limit
Fortiweb FSCI 2 0.97%
update succeeded
Other(23) 23 11.11%
Subtotal(26) 207 13.28%
Total(7) 1559 100.00%
This report provides information about the Daily Events Triggered by category.
Top Event Categories by Date
Date Category Events Percent
dd - 227
f
Others
dd - 228
f
This report provides information on events success and failure at the device
Top Event Categories by Status
Category Status Events Percent
information success 1482 99.80%
failure 3 0.20%
Subtotal(2) 1485 95.25%
notice success 71 95.95%
failure 3 4.05%
Subtotal(2) 74 4.75%
Total(2) 1559 100.00%
Top Events
dd - 229
f
The most frequently occurring event categories over the reporting period.
Top Event Categories
Category Events Percent
information 1485 95.25%
notice 74 4.75%
Total(2) 1559 100.00%
dd - 230
f
The most frequently occurring event types over the reporting period.
Top Event Types
Event Type Events Percent
system 1549 99.36%
admin 10 0.64%
Total(2) 1559 100.00%
dd - 231
f
dd - 232