code red virus?

Jon K plug-discuss@lists.plug.phoenix.az.us
Thu, 13 Jun 2002 13:39:49 +0000


I had this happen to me too... I had over 500 hits from some guys IIS 5.0 
server in just one day.  So I found out who he was and called his house.  The 
man sounded a little shocked I had his number.  The computer went of line 
quickly. :)

Jon 


On Wednesday 12 June 2002 07:18, User wrote:
> Lately we have noticed that our friendly firewall is taking hits  from
> what seems to be Russia. At least today it seems to be Russia.
> Novoisvirsk, it seems like, according to traceroute.
> I don't know a whole lot about probes like this but am thankful to you
> folks for your guidance with regard to firewalls.
>
> Is there something that we can do with regard to this type of thing?
> Maybe, just track them down for fun. Where would be a good place to
> start reading about this sort of thing.
>
> We trace routed them throught 25 hops to 217.70.107.151
>
> p151.rnttu.sinor.ru was the last hop on the list.
>
> Thank you
> Roger
>
> ________________________________________________
> See http://PLUG.phoenix.az.us/navigator-mail.shtml if your mail doesn't
> post to the list quickly and you use Netscape to write mail.
>
> PLUG-discuss mailing list  -  PLUG-discuss@lists.plug.phoenix.az.us
> http://lists.PLUG.phoenix.az.us/mailman/listinfo/plug-discuss