Be afraid, very afraid!
You must put that IP in your firewall!
There's a good chance they already go in, if you didn't put in iptables brute force controls?
Helloes.
Yes, another thread about the Chinese.
Okayso over the past couple days I've been seeing things like this:
/var/log/messages:May 9 11:00:10 (none) sshd[688]: Connection from
200.111.157.187 port 51751
/var/log/messages:May 9 11:00:10 (none) sshd[688]: Did not receive
identification string from 200.111.157.187
And then I don't hear from that ip ever again. What's going on here? Did
the script that all those kiddies are using break? Should I be more
concerned?
Thanks!
---------------------------------------------------
PLUG-discuss mailing list - PLUG-discuss@lists.plug.phoenix.az.us
To subscribe, unsubscribe, or to change your mail settings:
http://lists.PLUG.phoenix.az.us/mailman/listinfo/plug-discuss