[ILUG] Detecting Hackers

From: Ronnie Ayres (ronnie at domain dimension3.co.uk)
Date: Thu 27 Jul 2000 - 23:58:31 IST


Hi all

Whats the best way to detect and block attacks and scans on Mandrake Linux?
I've being running BlackICE on my 98 box and in 1/2 hour there has been 18
attempts to attack the PC, including UDP port scans, TCP Port Scans, ICMP
Floods, Scans for SubSeven Trojan.

Cheers Ron.

Hit List of Hackers :

>atm4-1-0-33.gw01.cra.dublin.te.net
>btnet-1.ims.bt.net
>core1-pos-7-0.telehouse.bt.net
>fa1-0.gw01.cra.dublin.indigo.ie
>host213-1-148-87.btinternet.com - Node: LAPTOP - Group: ISHMAEL1
>host213-1-134-197.btinternet.com
>imsdns04.ims.bt.net
>inh1dns-c01-qfe0.ims.bt.net
>inh1dns02.ims.bt.net
>host213-1-177-11.btinternet.com - Node: CRUSTY KNOB - Group: PBN WORKGROUP



This archive was generated by hypermail 2.1.6 : Thu 06 Feb 2003 - 13:07:00 GMT