<html><head><style data-externalstyle="true"><!--
p.MsoListParagraph, li.MsoListParagraph, div.MsoListParagraph {
margin-top:0in;
margin-right:0in;
margin-bottom:0in;
margin-left:.5in;
margin-bottom:.0001pt;
}
p.MsoListParagraphCxSpFirst, li.MsoListParagraphCxSpFirst, div.MsoListParagraphCxSpFirst, p.MsoListParagraphCxSpMiddle, li.MsoListParagraphCxSpMiddle, div.MsoListParagraphCxSpMiddle, p.MsoListParagraphCxSpLast, li.MsoListParagraphCxSpLast, div.MsoListParagraphCxSpLast {
margin-top:0in;
margin-right:0in;
margin-bottom:0in;
margin-left:.5in;
margin-bottom:.0001pt;
line-height:115%;
}
--></style></head><body><div data-externalstyle="false" dir="ltr" style="font-family:Calibri,'Segoe UI',Meiryo,'Microsoft YaHei UI','Microsoft JhengHei UI','Malgun Gothic','Khmer UI','Nirmala UI',Tunga,'Lao UI',Ebrima,sans-serif;font-size:12pt;"><div>Bom dia!</div><div> </div><div>Você pode fazer uso do iptables sim, mas é meio arriscado você depender de adicionar a regra na mão. Dê uma olhada no fail2ban, ele busca nos arquivos de log por alguma string e toma uma ação de acordo com o que você especificar (no meu caso, dropar todos pacotes do ip destino).</div><div> </div><div><span style='font-family: "Segoe UI Symbol","Apple Color Emoji";' data-externalstyle="false">😉</span></div><div data-signatureblock="true"><div> </div><div>Enviado do Email do Windows</div><div> </div></div><div style="padding-top: 5px; border-top-color: rgb(229, 229, 229); border-top-width: 1px; border-top-style: solid;"><div><font face="Calibri, 'Segoe UI', Meiryo, 'Microsoft YaHei UI', 'Microsoft JhengHei UI', 'Malgun Gothic', 'Khmer UI', 'Nirmala UI', Tunga, 'Lao UI', Ebrima, sans-serif" style='line-height: 15pt; letter-spacing: 0.02em; font-family: Calibri, "Segoe UI", Meiryo, "Microsoft YaHei UI", "Microsoft JhengHei UI", "Malgun Gothic", "Khmer UI", "Nirmala UI", Tunga, "Lao UI", Ebrima, sans-serif; font-size: 11pt;'><b>De:</b> chicolet<br><b>Enviado:</b> terça-feira, 24 de setembro de 2013 09:38<br><b>Para:</b> asteriskbrasil@listas.asteriskbrasil.org</font></div></div><div> </div><div>
<div>Hudson,</div>
<div> </div>
<div>Bom dia.</div>
<div> </div>
<div>Quando trabalhei numa Empresa de Telecom, usuários que sofriam ataques, solicitavam bloqueio dos IPs atacantes.</div>
<div> </div>
<div>Outra coisa, não é possível fazer uma reclamação no registro.br?</div>
<div> </div>
<div>registro.br</div>
<div><strong style="margin: 0px; padding: 0px; font-family: Arial, Helvetica, sans-serif; font-size: 12px;">Via e-mail</strong><dl style="margin: 0px; padding: 0px; font-family: Arial, Helvetica, sans-serif; font-size: 12px;"><dt style="margin: 0px; padding: 0px;">Cobrança</dt><dd style="margin: 0px 0px 0px 20px; padding: 0px;"><a title="mailto:pagamento@registro.br" style="margin: 0px; padding: 0px; color: rgb(0, 51, 153); font-weight: bold; text-decoration: none;" href="mailto:pagamento@registro.br" target="_parent">pagamento@registro.br</a></dd><dt style="margin: 0px; padding: 0px;">Procedimentos administrativos</dt><dd style="margin: 0px 0px 0px 20px; padding: 0px;"><a title="mailto:doc@registro.br" style="margin: 0px; padding: 0px; color: rgb(0, 51, 153); font-weight: bold; text-decoration: none;" href="mailto:doc@registro.br" target="_parent">doc@registro.br</a></dd><dt style="margin: 0px; padding: 0px;">Dúvidas técnicas</dt><dd style="margin: 0px 0px 0px 20px; padding: 0px;">hostmaster@registro.br</dd></dl><br style="margin: 0px; padding: 0px; font-family: Arial, Helvetica, sans-serif; font-size: 12px;"><strong style="margin: 0px; padding: 0px; font-family: Arial, Helvetica, sans-serif; font-size: 12px;">Via telefone</strong><span style="font-family: Arial, Helvetica, sans-serif; font-size: 12px;"> </span><br style="margin: 0px; padding: 0px; font-family: Arial, Helvetica, sans-serif; font-size: 12px;"><span style="font-family: Arial, Helvetica, sans-serif; font-size: 12px;">De segunda a sexta-feira das 07:00h às 19:00h.</span><br style="margin: 0px; padding: 0px; font-family: Arial, Helvetica, sans-serif; font-size: 12px;"><span style="font-family: Arial, Helvetica, sans-serif; font-size: 12px;">+55 11 5509-3500</span><br style="margin: 0px; padding: 0px; font-family: Arial, Helvetica, sans-serif; font-size: 12px;"><span style="font-family: Arial, Helvetica, sans-serif; font-size: 12px;">+55 11 5509-3501 (
Fax)</span><br style="margin: 0px; padding: 0px; font-family: Arial, Helvetica, sans-serif; font-size: 12px;"><br style="margin: 0px; padding: 0px; font-family: Arial, Helvetica, sans-serif; font-size: 12px;"><strong style="margin: 0px; padding: 0px; font-family: Arial, Helvetica, sans-serif; font-size: 12px;">Via correspondência</strong><span style="font-family: Arial, Helvetica, sans-serif; font-size: 12px;"> </span><a name="END" title="" style="margin: 0px; padding: 0px; color: rgb(0, 51, 102); font-family: Arial, Helvetica, sans-serif; font-size: 12px; font-weight: bold;"></a><br style="margin: 0px; padding: 0px; font-family: Arial, Helvetica, sans-serif; font-size: 12px;"><span style="font-family: Arial, Helvetica, sans-serif; font-size: 12px;">A/C Registro .br</span><br style="margin: 0px; padding: 0px; font-family: Arial, Helvetica, sans-serif; font-size: 12px;"><span style="font-family: Arial, Helvetica, sans-serif; font-size: 12px;">Av. das Nações Unidas, 11541, 7° anda
r</span><br style="margin: 0px; padding: 0px; font-family: Arial, Helvetica, sans-serif; font-size: 12px;"><span style="font-family: Arial, Helvetica, sans-serif; font-size: 12px;">04578-000 - São Paulo - SP</span></div>
<div> </div>
<div> </div>
<div>Rastreando a rota para pro1781.startdedicated.com [188.138.95.18]</div>
<div>com no máximo 30 saltos:</div>
<div> </div>
<div> 1 * * * Esgotado o tempo limite do pedido.</div>
<div> 2 7 ms 7 ms 6 ms 201-0-92-85.dsl.telesp.net.br [201.0.92.85]</div>
<div> 3 6 ms 7 ms 6 ms 200-100-3-153.dsl.telesp.net.br [200.100.3.153]</div>
<div> </div>
<div> 4 6 ms 7 ms 6 ms 187-100-53-69.dsl.telesp.net.br [187.100.53.69]</div>
<div> </div>
<div> 5 19 ms 20 ms 18 ms Et1-0-0-101-grtsanem3.red.telefonica-wholesale.n</div>
<div>et [84.16.10.153]</div>
<div> 6 123 ms 123 ms 178 ms Xe-4-1-2-0-grtmiabr4.red.telefonica-wholesale.ne</div>
<div>t [94.142.124.174]</div>
<div> 7 145 ms * 145 ms 5.53.5.225</div>
<div> 8 150 ms 147 ms 153 ms Xe3-0-0-0-grtwaseq3.red.telefonica-wholesale.net</div>
<div> [94.142.122.198]</div>
<div> 9 156 ms 149 ms 148 ms 213.140.52.46</div>
<div> 10 160 ms 157 ms 161 ms be2043.ccr22.dca01.atlas.cogentco.com [154.54.26</div>
<div>.133]</div>
<div> 11 248 ms 165 ms 166 ms be2043.ccr22.dca01.atlas.cogentco.com [154.54.26</div>
<div>.133]</div>
<div> 12 255 ms 439 ms 411 ms te2-2.ccr01.sxb01.atlas.cogentco.com [154.54.75.</div>
<div>10]</div>
<div> 13 275 ms * 266 ms te1-1.ccr01.sxb01.atlas.cogentco.com [130.117.51</div>
<div>.238]</div>
<div> 14 244 ms 273 ms 244 ms 149.14.12.34</div>
<div> 15 257 ms 250 ms 250 ms 149.14.12.34</div>
<div> 16 242 ms 248 ms 248 ms 217.172.191.162</div>
<div> 17 253 ms 248 ms 250 ms pro1781.startdedicated.com [188.138.95.18]</div>
<div> </div>
<div>Rastreamento concluído.</div>
<div> </div>
<div>Boa sorte.</div>
</div>
<div>Sds,</div>
<div>Chicolet</div>
<hr style="border-top-color: rgb(204, 204, 204); border-top-width: 1px; border-top-style: solid;">
<div><br><strong>De:</strong> Hudson Cardoso < hudsoncardoso@hotmail.com ><br><strong>Enviada:</strong> Terça-feira, 24 de Setembro de 2013 02:10<br><strong>Para:</strong> asteriskbrasil@listas.asteriskbrasil.org < asteriskbrasil@listas.asteriskbrasil.org ><br><strong>Assunto:</strong> [AsteriskBrasil] Tentativa de invasao<br><br></div>
<div class="notviscode"> </div>
<div dir="ltr">
<div> Eles não desistem nunca, agora tentam de 2 em dois, com peers aleatorios e portas</div>
<div>diferentes, recomendo atenção, e bloqueio do ip de origem.</div>
<div> </div>
<div> </div>
<div>[2013-09-24 01:58:20] NOTICE[1794]: chan_sip.c:25547 handle_request_register: Registration from '"7780" <sip:7780@201.47.73.162:5060>' failed for '188.138.95.18:5073' - No matching peer found</div>
<div>[2013-09-24 01:58:20] NOTICE[1794]: chan_sip.c:25547 handle_request_register: Registration from '"7780" <sip:7780@201.47.73.162:5060>' failed for '188.138.95.18:5073' - No matching peer found</div>
<div>[2013-09-24 01:58:32] NOTICE[1794]: chan_sip.c:25547 handle_request_register: Registration from '"9396" <sip:9396@201.47.73.162:5060>' failed for '188.138.95.18:5082' - No matching peer found</div>
<div>[2013-09-24 01:58:32] NOTICE[1794]: chan_sip.c:25547 handle_request_register: Registration from '"9396" <sip:9396@201.47.73.162:5060>' failed for '188.138.95.18:5082' - No matching peer found</div>
<div>[2013-09-24 01:58:47] NOTICE[1794]: chan_sip.c:25547 handle_request_register: Registration from '"6265" <sip:6265@201.47.73.162:5060>' failed for '188.138.95.18:5064' - No matching peer found</div>
<div>[2013-09-24 01:58:47] NOTICE[1794]: chan_sip.c:25547 handle_request_register: Registration from '"6265" <sip:6265@201.47.73.162:5060>' failed for '188.138.95.18:5064' - No matching peer found</div>
<div>[2013-09-24 01:58:49] NOTICE[1794]: chan_sip.c:25547 handle_request_register: Registration from '"1316" <sip:1316@201.47.73.162:5060>' failed for '188.138.95.18:5076' - No matching peer found</div>
<div>[2013-09-24 01:58:49] NOTICE[1794]: chan_sip.c:25547 handle_request_register: Registration from '"5457" <sip:5457@201.47.73.162:5060>' failed for '188.138.95.18:5063' - No matching peer found</div>
<div>[2013-09-24 01:58:50] NOTICE[1794]: chan_sip.c:25547 handle_request_register: Registration from '"5457" <sip:5457@201.47.73.162:5060>' failed for '188.138.95.18:5063' - No matching peer found</div>
<div>[2013-09-24 01:58:55] NOTICE[1794]: chan_sip.c:25547 handle_request_register: Registration from '"8487" <sip:8487@201.47.73.162:5060>' failed for '188.138.95.18:5078' - No matching peer found</div>
<div>[2013-09-24 01:58:55] NOTICE[1794]: chan_sip.c:25547 handle_request_register: Registration from '"8487" <sip:8487@201.47.73.162:5060>' failed for '188.138.95.18:5078' - No matching peer found</div>
<div>[2013-09-24 01:59:17] NOTICE[1794]: chan_sip.c:25547 handle_request_register: Registration from '"710" <sip:710@201.47.73.162:5060>' failed for '188.138.95.18:5076' - No matching peer found</div>
<div> </div>
<br><br>
<pre style="color: rgb(42, 42, 42); line-height: 17px; white-space: normal; background-color: rgb(255, 255, 255);">Hudson <br>(048) 8413-7000<br>Para quem nao cre, nenhuma prova converte,Para aquele que cre, nenhuma prova precisa. </pre>
</div>
<div> </div>
</div></body></html>