Nampaknya terpaksa la aku kerap tukar password server sepaku.net dari seminggu sekali kepada setiap hari kerana serangan brute force semakin menjadi-jadi.
The following is a summary event for exceeded login failures on sepaku.net:
SOURCE ADDRESS: 203.59.54.191
TARGET SERVICE: sshd
FAILED LOGINS: 8
EXECUTED COMMAND: /etc/apf/apf -d 203.59.54.191 {bfd.sshd}SOURCE LOGS FROM SERVICE ’sshd’ (GMT +0800):
Dec 2 17:13:19 sepaku sshd[25462]: Did not receive identification string from 203.59.54.191
Dec 2 17:13:20 sepaku sshd[25461]: Did not receive identification string from 203.59.54.191
Dec 2 17:15:09 sepaku sshd[25615]: Failed password for root from 203.59.54.191 port 36183 ssh2
Dec 2 17:15:09 sepaku sshd[25618]: Failed password for root from 203.59.54.191 port 36186 ssh2
Dec 2 09:15:09 sepaku sshd[25670]: Received disconnect from 203.59.54.191: 11: Bye Bye
Dec 2 09:15:09 sepaku sshd[25671]: Received disconnect from 203.59.54.191: 11: Bye Bye
Dec 2 17:15:12 sepaku sshd[25684]: Invalid user fluffy from 203.59.54.191
Dec 2 17:15:13 sepaku sshd[25683]: Invalid user fluffy from 203.59.54.191
Dec 2 17:15:16 sepaku sshd[25684]: Failed password for invalid user fluffy from 203.59.54.191 port 36556 ssh2
Dec 2 09:15:16 sepaku sshd[25686]: Received disconnect from 203.59.54.191: 11: Bye Bye
Dec 2 17:15:17 sepaku sshd[25683]: Failed password for invalid user fluffy from 203.59.54.191 port 36554 ssh2
Dec 2 09:15:17 sepaku sshd[25685]: Received disconnect from 203.59.54.191: 11: Bye Bye
Dec 2 17:15:22 sepaku sshd[25688]: Failed password for admin from 203.59.54.191 port 36837 ssh2
Dec 2 17:15:23 sepaku sshd[25691]: Failed password for admin from 203.59.54.191 port 36893 ssh2———————————————–
BFD (Brute Force Detection) 1.2 [bfd@r-fx.org]
Sapala yang busuk hati ni?
Subscribe

hihi.. aiseh.. ramai tul yang dengki.. xpuas hati tul diorang ni…
admin Reply:
December 2nd, 2009 at 7:52 pm
@solehpolysas, apa leh wat bro…terima jela
aku tak tahu benda2 mcm ni.. tp mungkinkah ada unsur dengki dr pihak hosting yg lain? kehkehkeh.. ye la kot sbb sepaku dah smakin femes skrng ni.. mklumlah, sana sini org asyik dok ckp pasal sepaku.. sbb tu diorg nk kondem sepaku dgn cara mcm tu.
itulah, biasalah jika dah popular, memang ramai yang akan mula mendengki.. Jampi sini sana, lepa tu letak paku lah, jarum lah.. wakakakaka… lari topik dah..
aku cuma paham yg ko kna tukar password dari seminggu skali ke setiap hari je.. yg lain haram jadah aku xpaham.. hahah
tuh ahh.. diorg dengki kat sepaku sbb hosting sepaku murah tahap melampau.. hanya abg edy je yg bg harga hosting mcm ni.. hohoho.. brute force tu natang mende? keterangan sket. aku pon just faham yg kne tkar pass seminggu skali.. coding tu langsung xphm.. kne study nihh.. hohoho
Salam,
Edy boleh sahaja tukar :
1. SSH port number
2. Disallow root login
Salam,