Security Basics mailing list archives

Re: is this real?


From: "Niek" <niek () packetstorm nu>
Date: Wed, 17 Mar 2004 12:14:03 +0100

-----Original Message-----
From: Michael Weber [mailto:mweber () hitwin com] 
Sent: Monday, March 15, 2004 6:49 PM
To: security-basics () securityfocus com
Subject: is this real?


Hi,

after the weekend i spend a few hours for a journey trough my 
logfiles 
from the weekend. So i detect one IP which scan us very often 
and try to 
connect to ssh. Not unusual so far... normally i do an nmap 
run, look on 
the machine and forget it.

But This:
<snip mnap output>

Hi Michael,

This could very well be true. If some Korean decided to do a redhat 6.2
install,
or something else which is ancient, you'd get such nmap results.

Regards,

Niek


---------------------------------------------------------------------------
Ethical Hacking at the InfoSec Institute. Mention this ad and get $545 off 
any course! All of our class sizes are guaranteed to be 10 students or less 
to facilitate one-on-one interaction with one of our expert instructors. 
Attend a course taught by an expert instructor with years of in-the-field 
pen testing experience in our state of the art hacking lab. Master the skills 
of an Ethical Hacker to better assess the security of your organization. 
Visit us at: 
http://www.infosecinstitute.com/courses/ethical_hacking_training.html
----------------------------------------------------------------------------


Current thread: