Hi All,
We received below types of alerts frequently. More than 100 messages received per day. How to stop this attack.
Live websites running from this server. So we did not block the port 80.
The attacks comes from different attacker IP. Shall you please help us?
-----------------------------------------------------------------
Attack: an intrusion attempt was blocked.
Risk Level | Medium
Attacker Computer
177.79.48.18:56622
Destination Computer
172.31.0.202:80
Protocol
TCP
Attack Signature
Web Attack: Jorgee Vulnerability Scanner
Attack URL
52.52.37.252/phpmyadmin2013/
Targeted Application
SYSTEM
Status
Blocked
Action
Resolved - No Action Required
Date & Time
8/10/2017 9:19 PM