[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: [cobalt-users] Another Exploit?!? (different than before)...



> Jordan,
> 
> I had the same anonymous ftp login error messages so I added the
following
> to our
> host.deny file.
> 
> Sim
> 
> 
> in.telnetd: 163.28.0.0/255.255.0.0
> in.proftpd: 163.28.0.0/255.255.0.0
> in.telnetd: 212.179.0.0/255.255.0.0
> in.proftpd: 212.179.0.0/255.255.0.0
> in.telnetd: 61.216.0.0/255.255.0.0
> in.proftpd: 61.216.0.0/255.255.0.0
> in.telnetd: ALL EXCEPT .com, .net
> in.proftpd: ALL EXCEPT .com, .net
> in.telnetd: 62.243.185.0/255.255.255.0, 62.161.48.100/255.255.0.0,
> .microsoft.com
> in.proftpd:  62.243.185.0/255.255.255.0, 62.161.48.100/255.255.0.0,
> .microsoft.com
> 
Why the microsoft entries?

Regards,
Curtis