Omega Owners Forum

Please login or register.

Login with username, password and session length
Advanced search  

News:

Welcome to OOF

Pages: 1 [2] 3  All   Go Down

Author Topic: Hackers...  (Read 3510 times)

0 Members and 1 Guest are viewing this topic.

Ian_D

  • Omega Baron
  • *****
  • Offline Offline
  • Gender: Male
  • York
  • Posts: 2432
    • View Profile
Re: Hackers...
« Reply #15 on: 28 July 2009, 22:32:57 »

At 3 attempts per second, they will have performed about 281,000 unsuccessful attempts at logging in!

 ;D ;D ;D

Loosers!
Quote
Yeah, I have loads of hack attempts across all servers here. Mostly stopped at firewall, though obviously some services I have to allow through.

Some of my websites I've set up to email me when a SQL Injection hack is attempted - go through phases of getting several hundred attempts per day, yet other days just a handful.


Generally, in my experience, if you open it up for anonymous, but block writes, and have nothing in there, they won't try brute force.


Set up a pair of new servers for work, on a previously unused subnet. The second the ACLs were lifted from the edge network, non-stop constant probing started.


Thats just part of having a server on the net.
I did think about just allowing FTP like you said above with an empty folder.

How secure is a virtual folder in IIS? As I can access a main part of my server thorough one! I guess the only way someone can gain access to that is if they first gain access to the default FTP dir, and then guess the virtual dir path? :-?

Logged
[size=12]
LMF are utter rubbish - dont buy steering idlers from them! You've been warned![/size]

Ian_D

  • Omega Baron
  • *****
  • Offline Offline
  • Gender: Male
  • York
  • Posts: 2432
    • View Profile
Re: Hackers...
« Reply #16 on: 28 July 2009, 22:37:30 »

Quote
Quote
Quote
Quote
I get an attack on my ftp every day or 2, 15 or so invalid logins and the ip is blacklisted and doesnt even allow a logon attempt  :y
whats an ftp pls ?
File Transfer Protocol....

In simple terms, its a means of moving files from both to and from one machine to another over a network such as the internet.
And insecure, and generally considered 'old hat' now.
Agree with that, but its still a handy feature - which I tend to use moving small files when im at work / mates etc.
Logged
[size=12]
LMF are utter rubbish - dont buy steering idlers from them! You've been warned![/size]

Del Boy

  • Omega Queen
  • *****
  • Offline Offline
  • Gender: Male
  • Kent, UK.
  • Posts: 10804
    • 2012 '62' BMW 730d MSport
    • View Profile
Re: Hackers...
« Reply #17 on: 28 July 2009, 22:45:55 »

Hunt him down and shoot him!
Logged
Drives: 2013 (13) BMW 530d M Sport Touring, 2011 '61' BMW 520d SE.

Ian_D

  • Omega Baron
  • *****
  • Offline Offline
  • Gender: Male
  • York
  • Posts: 2432
    • View Profile
Re: Hackers...
« Reply #18 on: 28 July 2009, 22:57:18 »

Quote
Hunt him down and shoot him!
Taiwan is the place to go, anyone fancy an OOF meet?  ;D
Logged
[size=12]
LMF are utter rubbish - dont buy steering idlers from them! You've been warned![/size]

eddie

  • Intermediate Member
  • ***
  • Offline Offline
  • Gender: Male
  • Cardiff
  • Posts: 352
    • View Profile
Re: Hackers...
« Reply #19 on: 29 July 2009, 00:13:12 »

How about putting a router/firewall into service?

There again, will that stop Legitimate use of your server?

eddie
Logged

Ian_D

  • Omega Baron
  • *****
  • Offline Offline
  • Gender: Male
  • York
  • Posts: 2432
    • View Profile
Re: Hackers...
« Reply #20 on: 29 July 2009, 00:41:31 »

A firewall would be a good idea, but it also would create problems itself. It would need to have port 21 open anyway for FTP, so wouldn't have any effect here.

Anyway, Hacker update... 'Still going strong!'  ;D

23:42:54 220.128.178.146 [18]USER daniel 331 0
23:42:54 220.128.178.146 [18]PASS - 530 1326
23:42:55 220.128.178.146 [18]USER daniel 331 0
23:42:55 220.128.178.146 [18]PASS - 530 1326
23:42:55 220.128.178.146 [18]USER daniel 331 0
23:42:56 220.128.178.146 [18]PASS - 530 1326


Like TB said, I think I may just set the default FTP path to an empty folder, which is read only - and thus render it useless to the public user.
Logged
[size=12]
LMF are utter rubbish - dont buy steering idlers from them! You've been warned![/size]

eddie

  • Intermediate Member
  • ***
  • Offline Offline
  • Gender: Male
  • Cardiff
  • Posts: 352
    • View Profile
Logged

Chris_H

  • Omega Knight
  • *****
  • Offline Offline
  • Gender: Male
  • E London/Essex UK
  • Posts: 1716
    • Jag XF Portfolio S 3.0D
    • View Profile
Re: Hackers...
« Reply #22 on: 29 July 2009, 09:42:01 »

Can't you block specific IPs on your firewall?
Logged
First Vauxhall - PABX Cresta; Previous, previous Vauxhall - 3.0 12v Senator CD; Previous Vauxhall Omega Elite 3.0V6 Saloon Auto

eddie

  • Intermediate Member
  • ***
  • Offline Offline
  • Gender: Male
  • Cardiff
  • Posts: 352
    • View Profile
Re: Hackers...
« Reply #23 on: 29 July 2009, 11:22:43 »

Looks like he's a naughty boy,he's on these Blacklist sites,along with one or two others!

http://vmx.yourcmc.ru/BAD_HOSTS.IP4

http://pastie.org/pastes/529764

eddie
Logged

Ian_D

  • Omega Baron
  • *****
  • Offline Offline
  • Gender: Male
  • York
  • Posts: 2432
    • View Profile
Re: Hackers...
« Reply #24 on: 29 July 2009, 11:27:17 »

Quote
Can't you block specific IPs on your firewall?
I guess I could do actually thinking about it...  ;D
Anyway, they gave up last night at 3:08am... Loosers! ;D
Logged
[size=12]
LMF are utter rubbish - dont buy steering idlers from them! You've been warned![/size]

Ian_D

  • Omega Baron
  • *****
  • Offline Offline
  • Gender: Male
  • York
  • Posts: 2432
    • View Profile
Re: Hackers...
« Reply #25 on: 29 July 2009, 11:28:44 »

Quote
Is this of any use?

http://serverfault.com/questions/42396/prevent-brute-force-attacks-in-microsoft-ftp-server-iis6-7


eddie
Cheers for that link, I will have a proper look at that this eve.  :y
Logged
[size=12]
LMF are utter rubbish - dont buy steering idlers from them! You've been warned![/size]

Mr Skrunts

  • Get A Life!!
  • *****
  • Offline Offline
  • Gender: Male
  • Skruntie Land.
  • Posts: 25695
  • 3.O Elite Saloon with all the toys,
    • 2003 CD 2.2 Auto
    • View Profile
Re: Hackers...
« Reply #26 on: 29 July 2009, 11:48:15 »

Pity you cant find his email address and bomb him with an email mail flood.
Logged
Ask yourself :  " WHY do I believe in what I believe?"

Remember that my opinions expressed here are not representative of the opinions of other members on the OOF Forum.

Chris_H

  • Omega Knight
  • *****
  • Offline Offline
  • Gender: Male
  • E London/Essex UK
  • Posts: 1716
    • Jag XF Portfolio S 3.0D
    • View Profile
Re: Hackers...
« Reply #27 on: 29 July 2009, 16:50:39 »

Quote
Quote
Can't you block specific IPs on your firewall?
I guess I could do actually thinking about it...  ;D
Anyway, they gave up last night at 3:08am... Loosers! ;D
You hope.
Logged
First Vauxhall - PABX Cresta; Previous, previous Vauxhall - 3.0 12v Senator CD; Previous Vauxhall Omega Elite 3.0V6 Saloon Auto

Martin_1962

  • Guest
Re: Hackers...
« Reply #28 on: 29 July 2009, 17:11:09 »

Can't you repeatedly access his IP?
Logged

Ian_D

  • Omega Baron
  • *****
  • Offline Offline
  • Gender: Male
  • York
  • Posts: 2432
    • View Profile
Re: Hackers...
« Reply #29 on: 29 July 2009, 17:29:38 »

Quote
Can't you repeatedly access his IP?
If I could be bothered to, I guess so yes...
Logged
[size=12]
LMF are utter rubbish - dont buy steering idlers from them! You've been warned![/size]
Pages: 1 [2] 3  All   Go Up
 

Page created in 0.012 seconds with 17 queries.