• We’re currently investigating an issue related to the forum theme and styling that is impacting page layout and visual formatting. The problem has been identified, and we are actively working on a resolution. There is no impact to user data or functionality, this is strictly a front-end display issue. We’ll post an update once the fix has been deployed. Thanks for your patience while we get this sorted.

Getting hit by a few different IP addresses on my firewall

Chunkee

Lifer
They are getting to be quite a few, more than the normal port scans i usually get. The netgear drops them but they are becoming annoying...I have used whois look up for one and have sent the abuse email to bell south with the orignating IP.

I have noticed in the logs that the IP has changed...my be a spoofer or something else?

Any one have any other ideas or suggestions? I can post the IPS if that helps.

Thanks

jC
 
man if i sent an email to abuse.xxx for all the IP's that my astaro and woody boxes are logging i'd never get anything else done.

unless he is actually getting through, I wouldn't worry too much about it.
 
Originally posted by: Chunkee


I have noticed in the logs that the IP has changed...my be a spoofer or something else?

It's called The Internet. 😀

Seriously. This is normal. You're probably seeing more because of all the people coming back into work from the holidays and are being greeted by worms reigning free over their network because their admins didnt patch before they went on vacation over the holidays.

A lot of other people are seeing the same things you are. I had over 100 SSH scans against one of our firewalls this weekend alone.

Hackers know that a lot of admins are on vacation...the good ones aint stupid. Unfortunately, a lot of admins are.
 
Back
Top