[About] - The Idiot Box

As Y2K approached, the attempted intrusions on Castor increased significantly.  In fact, a couple people actually managed to rack up an amazing number of hits on my firewall.  Therefore, I figured I might as well reward such persistence.  The d00dz featured in the following logs have earned places in the idiot box.

207.127.28.71

This guy showed up just before Y2K and set his scripts on AE0LIS for a few hours.  Must've been bored.  I can't show all the logs here 'cause of his persistence, but an excerpt is below.  If you really wanna see it all, click on his IP address, above.  I really want to know what he thought was on port 5632...

Dec 29 09:10:58 castor kernel: Packet log: input DENY eth0 PROTO=17 207.127.28.71:1222 24.93.29.233:5632 L=30 S=0x00 I=16753 F=0x0000 T=117 (#4) 
Dec 29 09:10:58 castor kernel: Packet log: input DENY eth0 PROTO=17 207.127.28.71:1222 24.93.29.233:22 L=30 S=0x00 I=17009 F=0x0000 T=118 (#4) 
Dec 29 09:15:11 castor kernel: Packet log: input DENY eth0 PROTO=17 207.127.28.71:1222 24.93.29.233:5632 L=30 S=0x00 I=23419 F=0x0000 T=118 (#4) 
Dec 29 09:15:12 castor kernel: Packet log: input DENY eth0 PROTO=17 207.127.28.71:1222 24.93.29.233:22 L=30 S=0x00 I=23675 F=0x0000 T=118 (#4) 
Dec 29 09:16:02 castor kernel: Packet log: input DENY eth0 PROTO=17 207.127.28.71:1222 24.93.29.233:5632 L=30 S=0x00 I=24957 F=0x0000 T=118 (#4) 
Dec 29 09:16:02 castor kernel: Packet log: input DENY eth0 PROTO=17 207.127.28.71:1222 24.93.29.233:22 L=30 S=0x00 I=25213 F=0x0000 T=118 (#4)
Top

207.109.13.204

Someone thought I might be running a Windows machine, and started banging on the NetBIOS port.  This sort of behavior is excusable if they're coming from an IP on my own subnet--Windows networking is really noisy.  But this one (according to nslookup) seemed to be coming from jasc.com, maker of Paint Shop Pro!  I really don't want him to be my Network Neighbor.

Dec 21 04:02:46 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=4394 F=0x0000 T=111 (#147) 
Dec 21 04:02:48 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=54314 F=0x0000 T=112 (#147) 
Dec 21 04:02:49 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=44331 F=0x0000 T=112 (#147) 
Dec 21 04:03:27 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=55869 F=0x0000 T=112 (#147) 
Dec 21 04:03:29 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=35902 F=0x0000 T=112 (#147) 
Dec 21 04:03:31 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=27967 F=0x0000 T=111 (#147) 
Dec 21 04:51:48 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=41226 F=0x0000 T=111 (#147) 
Dec 21 04:51:49 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=11787 F=0x0000 T=112 (#147) 
Dec 21 04:51:51 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=39947 F=0x0000 T=112 (#147) 
Dec 21 04:55:24 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=26970 F=0x0000 T=112 (#147) 
Dec 21 04:55:25 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=603 F=0x0000 T=112 (#147) 
Dec 21 04:55:27 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=23387 F=0x0000 T=112 (#147) 

Dec 23 04:02:21 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=13916 F=0x0000 T=112 (#147) 
Dec 23 04:02:22 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=12381 F=0x0000 T=112 (#147) 
Dec 23 04:02:24 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=49245 F=0x0000 T=112 (#147) 
Dec 23 04:03:03 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=48495 F=0x0000 T=112 (#147) 
Dec 23 04:03:05 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=53360 F=0x0000 T=112 (#147) 
Dec 23 04:03:06 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=33905 F=0x0000 T=112 (#147) 
Dec 23 04:51:01 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=36161 F=0x0000 T=111 (#147) 
Dec 23 04:51:03 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=64065 F=0x0000 T=112 (#147) 
Dec 23 04:51:04 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=14914 F=0x0000 T=112 (#147) 
Dec 23 04:54:48 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=55691 F=0x0000 T=112 (#147) 
Dec 23 04:54:49 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=30348 F=0x0000 T=112 (#147) 
Dec 23 04:54:51 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=55692 F=0x0000 T=112 (#147) 

Dec 26 03:58:45 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=56866 F=0x0000 T=110 (#147) 
Dec 26 03:58:47 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=47395 F=0x0000 T=111 (#147) 
Dec 26 03:58:48 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=34084 F=0x0000 T=111 (#147) 
Dec 26 03:59:25 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=4663 F=0x0000 T=111 (#147) 
Dec 26 03:59:27 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=50231 F=0x0000 T=111 (#147) 
Dec 26 03:59:28 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=45368 F=0x0000 T=111 (#147) 

Dec 26 04:46:55 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=42001 F=0x0000 T=111 (#147) 
Dec 26 04:46:57 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=24082 F=0x0000 T=111 (#147) 
Dec 26 04:46:58 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=13587 F=0x0000 T=111 (#147) 
Dec 26 04:51:36 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=47989 F=0x0000 T=110 (#147) 
Dec 26 04:51:37 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=18038 F=0x0000 T=111 (#147) 
Dec 26 04:51:39 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=29302 F=0x0000 T=111 (#147) 

Dec 27 01:41:59 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=9815 F=0x0000 T=111 (#147) 
Dec 27 01:42:00 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=46679 F=0x0000 T=111 (#147) 
Dec 27 01:42:02 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=13144 F=0x0000 T=111 (#147) 
Dec 27 01:42:36 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=25699 F=0x0000 T=111 (#147) 
Dec 27 01:42:37 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=51299 F=0x0000 T=111 (#147) 
Dec 27 01:42:39 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=30820 F=0x0000 T=111 (#147) 

Dec 27 02:26:55 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=46416 F=0x0000 T=110 (#147) 
Dec 27 02:26:57 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=25425 F=0x0000 T=111 (#147) 
Dec 27 02:26:58 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=65361 F=0x0000 T=111 (#147) 
Dec 27 02:31:07 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=23475 F=0x0000 T=111 (#147) 
Dec 27 02:31:09 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=1972 F=0x0000 T=111 (#147) 
Dec 27 02:31:10 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=47284 F=0x0000 T=111 (#147) 

Dec 28 05:25:38 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=19718 F=0x0000 T=110 (#147) 
Dec 28 05:25:39 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=42246 F=0x0000 T=111 (#147) 
Dec 28 05:25:41 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=26375 F=0x0000 T=111 (#147) 
Dec 28 05:35:59 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=54196 F=0x0000 T=110 (#147) 
Dec 28 05:36:01 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=9909 F=0x0000 T=111 (#147) 
Dec 28 05:36:02 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=55477 F=0x0000 T=111 (#147) 

Jan  4 01:58:57 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=57473 F=0x0000 T=111 (#147) 
Jan  4 01:58:58 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=1410 F=0x0000 T=112 (#147) 
Jan  4 01:59:00 castor kernel: Packet log: input DENY eth0 PROTO=17 207.109.13.204:137 24.93.29.233:137 L=78 S=0x00 I=9858 F=0x0000 T=112 (#147) 
Top

Home * About * Projects * Status * Systems * Resources * Links

Validated as XHTML 1.0 Strict! Valid CSS!
Questions?  Comments?  Talk to the webmaster.
Last update:  Thursday, June 22 2006 @ 09:31:19 MST.