Alert question



  • Does this mean my server was hacked by a russian is attempting to phone home? I have pfBlocker setup to permit inbound USA with advanced inbound on my open ports and servers using TCP/UDP and deny outbound for Russia and China.

    ![Alert RU.jpg](/public/imported_attachments/1/Alert RU.jpg)
    ![Alert RU.jpg_thumb](/public/imported_attachments/1/Alert RU.jpg_thumb)


  • Moderator

    Click on the "i" icon in the Alerts tab to do some research on that domain. Can also Google for "who <domain name="">".</domain>



  • @BBcan177:

    Click on the "i" icon in the Alerts tab to do some research on that domain. Can also Google for "who <domain name="">".</domain>

    The blocks from Russia and China are ok according to IPVOID but in my permit alert there are entries from the US coming in that are blacklisted.  I have outgoing Russia and China blocked and allow US incoming.  Guess I'll have the fine tune the incoming.  If you have any links on further reading on that topic I would appreciate it.


Log in to reply