[linux] KORNET en SSH scans

Hugo van der Kooij hvdkooij op vanderkooij.org
Wo mei 4 09:49:52 CEST 2005


Onderstaande antwoord is van toepassing op APNIC netwerk:

inetnum:      220.88.0.0 - 220.95.255.255
netname:      KORNET
descr:        KOREA TELECOM

Trek zelf je conclusie of je verkeer van dit netwerk nog wenst te
ontvangen.

---------- Forwarded message ----------
Date: Wed, 4 May 2005 02:48:46 +0200
From: kams-4917764-1330-rep op abuse.kornet.net
To: hvdkooij op vanderkooij.org
Subject: [SPAM] Re]Abuse complaint about 220.95.215.148

Hello This is Kornet Abuse Team of KT in Seoul.
We recieved your Spam report mail.
But we couldn't find who the client is, because the client using the IP is under the service that cannot find in our system.. (ex. Ntopia, which is share a static IP with others.. Like for Apartment.. therefore we cannot find..)
Sorry about that..
======== Received Message =============
Mon May 2 12:20:21 CEST 2005
All timestamps are local time in the timezone shown above
Abuse complaint about 220.95.215.148:
Org Name : Korea Telecom
Service Name : KORNET
Org Address : 206 Jungja-dong, Bundang-gu, Sungnam city, Gyunggi-do, Korea, 463-711
SYSLOG:
May 2 12:02:06 gandalf sshd(pam_unix)[9254]: authentication failure; logname= uid=0 euid=0 tty=NODEVssh ruser= rhost=220.95.215.148
May 2 12:02:12 gandalf sshd(pam_unix)[9256]: authentication failure; logname= uid=0 euid=0 tty=NODEVssh ruser= rhost=220.95.215.148

.....




More information about the Linux mailing list