[Dshield] Road Runner
mitchthompson at satx.rr.com
Tue Aug 28 09:42:23 GMT 2001
Am I dreaming, or shouldn't it be possible for the highly skilled RoadRunner
sysadmins to cross-ref the TCP/IP address, and date-time stamp to find the
MAC of the cable modem assigned that address and then to notify the
subscriber that they need to fix their machine? Or even turn off the cable
Since 99.99% of all hits to my firewall for port 80 are from 24.xx (the other
.01% seems to be from 216.xxx)., maybe it's time to start emailing my log
entries to RR tech support with the suggestion they do just that.
On Friday 24 August 2001 08:12 am, you wrote:
> What a load of crap.
> I was personally hit by 113 computers in the range of 24.24 to 24.31
> check it out for yourself, realtime stats including number of hits per
> Maybe less than 40 computers **inside Roadrunner the company**... =)
> -- Sean
> At 09:38 AM 8/22/2001 -0700, you wrote:
> >My ISP is Road Runner, which owns the block 18.104.22.168 - 22.214.171.124.
> >I received a letter from them yesterday saying that:
> >"Fewer than 40 computers on our Road Runner network were infected by Code
> >Red. Those users were notified" .....
> >Is it possible to determine if this is consistent with the data reported
> > to DSheild? I had the impression that there have been much more than 40
> > Road Runner customers infected, but I am not sure how to determine that.
> >Dshield mailing list
> >Dshield at dshield.org
> >To change your subscription options (or unsubscribe), see:
> Do You Yahoo!?
> Get your free @yahoo.com address at http://mail.yahoo.com
> Dshield mailing list
> Dshield at dshield.org
> To change your subscription options (or unsubscribe), see:
More information about the list