TCLUG Archive
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Looks like real attack !???!!??!



I just got 100 lines of this from netstae and so I took off eth0 and put it back on another ip without dhcp (no direct outside access and sysadmin will be mad, but now I don't have to worry). What should I do / is this important? --AHHH

[lueyb@pclueyb lueyb]$ netstat -an
Active Internet connections (including servers)     
Proto Recv-Q Send-Q Local Address           Foreign Address         State
tcp        0      1 137.22.96.160:4757      205.134.240.199:316 
SYN_SENT                                                     
tcp        0      1 137.22.96.160:4756      205.134.240.199:848   
SYN_SENT                                                      
tcp        0      1 137.22.96.160:4755      205.134.240.199:355