Recently i was able to capture some real data from my servers fail2ban logs this is how fail2ban logs look for banning ips 2012-10-21 12:54:16,032 fail2ban.actions: WARNING [ssh] Ban 112.4.172.217 2012-10-22 17:05:48,080 fail2ban.actions: WARNING [ssh] Ban 222.73.24.10 2012-10-22 18:36:55,892 fail2ban.actions: WARNING [ssh] Ban 202.96.199.150 2012-10-22 23:23:10,053 fail2ban.actions: WARNING [ssh] Ban 111.74.82.33 2012-10-23 05:06:53,861 fail2ban.actions: WARNING

a little continuation of my fail2ban postRead More »

Here is what a ssh bruteforce attack looks like from a  cisco router log uthentication Failed] at 01:13:18 UTC Sun Sep 30 2012*Sep 30 01:13:18.463: %SEC_LOGIN-1-QUIET_MODE_ON: Still timeleft for watching failures is 0 secs, [user: root] [Source: 211.144.68.163] [localport: 22] [Reason: Login Authentication Failed] [ACL: 100] at 01:13:18 UTC Sun Sep 30 2012*Sep 30 01:13:24.967:

SSH bruteforce attack on cisco routers and ways to stop it !Read More »

Emailed from  [email protected] Ashirin Jamilah & Nor (K.Sel)No. 9A, Jalan Melati 3/21,Bandar Melawati.45000 Kuala LumpurSelangorTel:+60163722712 Dear Sean, I am Ashirin Jamilah,an attorney at law. A deceased client of mine, by name MrAdams Mancini,who was here and after shall be referred as my client,he died with hisfamilyin gulf air flight crashes in Persian gulf near Bahrain

New Spam Email recived todayRead More »