attacked by asian script kiddies!!!

Leeoniya

Enlightened
Joined
Sep 27, 2002
Messages
376
Location
Northbrook, IL
here's the log:

http://69.128.97.43/ftpsrvlog.txt

did a reverse hostname lookup, ended up in china...or somewhere...AU means australia i guess.

OrgName: Asia Pacific Network Information Centre
OrgID: APNIC
Address: PO Box 2131
City: Milton
StateProv: QLD
PostalCode: 4064
Country: AU

ReferralServer: whois://whois.apnic.net

NetRange: 210.0.0.0 - 211.255.255.255
CIDR: 210.0.0.0/7
NetName: APNIC-CIDR-BLK2
NetHandle: NET-210-0-0-0-1
Parent:
NetType: Allocated to APNIC
NameServer: NS1.APNIC.NET
NameServer: NS3.APNIC.NET
NameServer: NS4.APNIC.NET
NameServer: NS.RIPE.NET
NameServer: TINNIE.ARIN.NET
NameServer: DNS1.TELSTRA.NET
Comment: This IP address range is not registered in the ARIN database.
Comment: For details, refer to the APNIC Whois Database via
Comment: WHOIS.APNIC.NET or http://www.apnic.net/apnic-bin/whois2.pl
Comment: ** IMPORTANT NOTE: APNIC is the Regional Internet Registry
Comment: for the Asia Pacific region. APNIC does not operate networks
Comment: using this IP address range and is not able to investigate
Comment: spam or abuse reports relating to these addresses. For more
Comment: help, refer to http://www.apnic.net/info/faq/abuse
Comment:
RegDate: 1996-07-01
Updated: 2004-03-30

OrgTechHandle: AWC12-ARIN
OrgTechName: APNIC Whois Contact
OrgTechPhone: +61 7 3858 3100
OrgTechEmail: [email protected]

# ARIN WHOIS database, last updated 2005-02-02 19:10
# Enter ? for additional hints on searching ARIN's WHOIS database.



note to self: block IPs after 20 unsuccessful logins. HAHA. come on, i have 4 accounts on my server here. what are the chances of hitting any of them randomly. considering they are all upper and lowercase as well as numerical logins/passwords.

root?
www?

whatever. lam0rs.
 

gregw

Flashlight Enthusiast
Joined
Jun 7, 2004
Messages
1,511
Location
Hong Kong
Here's where it originated:

-----------------------------------------------------
Country: CHINA

Looking up 210.82.177.208 at whois.apnic.net.


% [whois.apnic.net node-1]
% Whois data copyright terms http://www.apnic.net/db/dbcopyright.html

inetnum: 210.82.177.192 - 210.82.177.223
netname: WEIHAI-ZHONGXIN
descr: weihai zhongxin mansion,weihai city,shandong province
country: CN
admin-c: RC272-AP
tech-c: RC272-AP
mnt-by: MAINT-CN-ZM28
changed: *****@china-netcom.com 20011122
status: ASSIGNED NON-PORTABLE
source: APNIC
changed: **********@apnic.net 20020827

person: rensheng cui
nic-hdl: RC272-AP
e-mail: *********@china-netcom.com
address: weihai city,shandong province
phone: +86-010-88093588
country: CN
changed: *********@china-netcom.com 20050120
mnt-by: MAINT-CN-ZM28
source: APNIC
 
Top