store | blogs | forums | twitter | facebook | wiki | downloads | support portal
Atomic Secure Linux
It is currently Tue Nov 21, 2017 2:18 am

» Feed - Atomicorp

All times are UTC - 5 hours [ DST ]

Post new topic Reply to topic  [ 1 post ] 
Author Message
 Post subject: Some IPs to add to your firewall
Unread postPosted: Mon Dec 12, 2011 7:23 pm 
Long Time Forum Regular
Long Time Forum Regular

Joined: Thu Dec 09, 2004 11:19 am
Posts: 2318 of our sites went from a few megs to 9Gb transfer usage almost overnight. In the logs, I found loads of entries from suhosin about "variable name length limits" being exceeded, along with the IPs in question. These all pointed back to MCI/Verizon in the US.

At that point I drew a blank, and informed the customer (one of our best/nicest/most wonderful) of my findings, and asked him if he had any clues because I certainly didn't.

He did some research and found which mentions a number of the IPs in question. [ Light Bulb! ]

It makes interesting reading. There's a bunch of IPs in there that I'd recommend adding to your firewalls to prevent this. Gods, I wonder if it was related to my Google AdSense banning? Surely Google would have noticed something like that and would not blame the webmaster.

Anyway...I've blocked the /24 on each of those ranges rather than just the ones mentioned, as a temporary measure. Unfortunately I can't figure out the /subnets to use and I'd rather not enter all those IPs individually, but I'll bite the bullet tomorrow and do so.

[EDIT: p.s. some, but not all, listed on project honeypot as "rule breakers" ]

If you want to rent a UK-based VPS that comes with friendly advice and support from a fellow ART fan, please get in touch.

Reply with quote  
Display posts from previous:  Sort by  
Post new topic Reply to topic  [ 1 post ] 

» Feed - Atomicorp

All times are UTC - 5 hours [ DST ]

Who is online

Users browsing this forum: No registered users and 6 guests

You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot post attachments in this forum

Search for:
Jump to:  
Powered by phpBB © 2000, 2002, 2005, 2007 phpBB Group