[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
RE: [cobalt-users] Ugh..
- Subject: RE: [cobalt-users] Ugh..
- From: Reinoud van Leeuwen <rvanleeuwen@xxxxxxxxxxxx>
- Date: Wed Feb 28 07:01:39 2001
- List-id: Mailing list for users to share thoughts on Cobalt products. <cobalt-users.list.cobalt.com>
> Active System Attack Alerts
> =-=-=-=-=-=-=-=-=-=-=-=-=-=
> Feb 27 19:31:01 localhost portsentry[31277]: attackalert: Unknown
> Type: Packet Flags: SYN: 1 FIN: 1 ACK: 0 PSH: 0 URG: 0 RST: 0 from
> host: ns.asb-net.to/64.65.0.177 to TCP port: 53
>
>
> So, I took a look at the IP. *sigh*
>
>
> It's another RaQ3.. with the default homepage.
>
> Trying to get in touch with the ISP now..
probably that RaQ is hacked, and now a script is running over there to try
to hack other boxes