the past two days ive seen this in the root mail:
and alot of them
Failed password for invalid user richard from ::ffff:212.124.0.3 port 3546 ssh2
Invalid user alka from ::ffff:212.124.0.3
Failed password for invalid user alka from ::ffff:212.124.0.3 port 3656 ssh2
Invalid user alka from ::ffff:212.124.0.3
Ive set the iptables script to drop all on 212.124.0.0/24
but i still get these
ive also run the 'rkhunter' with the latest update and nothing is found.
the result is:
MD5
MD5 compared: 86
Incorrect MD5 checksums: 0
File scan
Scanned files: 342
Possible infected files: 0
Application scan
Vulnerable applications: 1
where the 'Vulnerable applications' is - OpenSSL 0.9.7a [ Old or patched version ] but as ive heard is that this one is patched already
can anyone tell me some other feature to find the whole?


