Fairly rude surprise in logs this AM -- possible DoS attempt?

Vince Hoang baylisa at az0.altern8.net
Tue Jan 20 09:09:57 PST 2004


On Tue, Jan 20, 2004 at 07:25:54AM -0800, Alvin Oga wrote:
> On Tue, 20 Jan 2004, David Wolfskill wrote:
> 
> > So -- I received an explanation for the portscanning I mentioned here:
> 
> if you didn't send the initial (complaint) mail to them ( zonnet.nl ),
> than they should not have been scanning you in the first place

Try http://dsbl.zonnet.nl/ and http://dsbl.org/howitworks#how.

> it's odd that they scan the sender of emails ...
> 	what would be the point ?
> 	- are they collecting a list of open proxy ???

Yes. Lots of dnsbls operate this way.

> 	- why not make that "list of daily thousands of open proxy"
> 	available so that we all can use it as an rbl, since they've
> 	already verified its an open proxy and they received "spam"

Zonnet does explain their methodology. I will avoid discussing
the validity of their rationale, because that is just a rat hole.

-Vince



More information about the Baylisa mailing list