Skip to content

Wow – Don’t Try This at Home

February 26, 2016

I usually open up ports on the firewall using oddball external ports such as 1802 but today I had opened port 80 and 23 because that was what i had hard coded in the olduino. As I was doing my timing I noticed a session pop up that I hadn’t started. I used the table display and found that I had had DOZENS of telnet sessions connect over the time i was running my tests! The IP addresses are all over the place from the obvious suspects but also US domestic addresses. I assume these are automated port scanners looking for open ports and trying maybe typical telnet sequences to see what they’re dealing with. I don’t think they’s have much luck hacking the olduino but i’ll for sure start using non-standard ports.

The table below shows the incoming ip addresses. Mostly it looks like they just connected and disconnected without sending any cr’s. A couple did send some commands. None of them won any games!

Client Table/Secret/Games/Turns
192.168.1.93/321/3/5
80.11.188.122/523/0/0
201.204.179.208/368/0/12
81.215.195.236/745/0/0
146.66.22.169/967/0/18
171.116.14.153/673/0/0
180.116.225.96/927/0/0
218.201.110.152/834/0/0
183.68.191.223/276/0/0
39.36.91.52/309/0/11
120.37.132.199/496/0/0
58.140.209.121/107/0/17
220.120.10.140/301/0/0
103.7.247.229/630/0/0
115.76.33.209/692/0/0
113.61.3.77/782/0/0
178.141.177.33/490/0/0
113.52.192.12/381/0/0
211.116.220.136/123/0/0
24.224.146.96/725/0/0
14.148.21.108/947/0/0
210.99.148.206/365/0/0
74.93.192.2/670/0/0
187.138.208.252/160/0/0
66.190.125.246/749/0/0
119.60.195.31/270/0/0
103.25.136.1/498/0/0

Sock Port Stat Prev Mode
   0   80   14   14
   1   23   17   17    C
   2   23   14   14    C
   3   23   14   14
   4   23   14   14
:
Advertisements

From → telnet, web server

Leave a Comment

Leave a Reply

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out / Change )

Twitter picture

You are commenting using your Twitter account. Log Out / Change )

Facebook photo

You are commenting using your Facebook account. Log Out / Change )

Google+ photo

You are commenting using your Google+ account. Log Out / Change )

Connecting to %s

%d bloggers like this: