China & Spain based attacks

From: Shawn M. Green (shawnat_private)
Date: Mon Jun 18 2001 - 01:10:12 PDT

  • Next message: Alexander Newald: "UDP flood of one of my mashines"

    Well, seems that I'm not the only one getting hit by a China-based attack.  Mine was a fairly minor one, but I saw a similar attack in the archives back in April.  Obviously, looking for a way in thru the portmapper.  
    
    Scrolling thru my logs a bit further, I noticed I was it again in the same area by another IP.  This one, tho, based in Spain.  He regularly seems to enjoy portscanning me.
    
    Anyone else have fun with either of these before?
    Shawn
    
    Log entries --
    
    Jun 17 06:23:17 ooze portsentry[19925]: attackalert: Connect from host: 202.85.169.169/202.85.169.169 to TCP port: 111
    
    Jun 17 15:36:44 ooze portsentry[19925]: attackalert: Connect from host: 202.98.198.42/202.98.198.42 to TCP port: 111
    



    This archive was generated by hypermail 2b30 : Mon Jun 18 2001 - 12:35:48 PDT