Mar 13 12:32:50 firewall snort[19228]: INFO FTP anonymous FTP: 24.0.36.2:1333 -> 172.16.1.103:21 Mar 13 14:09:31 firewall snort[19228]: INFO FTP anonymous FTP: 24.43.91.147:3192 -> 172.16.1.103:21 Mar 13 14:33:08 firewall snort[19228]: DNS named version attempt: 200.11.71.226:2888 -> 172.16.1.103:53 Mar 13 18:06:28 firewall snort[19228]: ICMP Destination Unreachable (Undefined Code!): 212.113.0.113 -> 216.80.71.101 Mar 13 21:33:56 firewall snort[19228]: SCAN synscan portscan: 202.52.99.203:21 -> 172.16.1.101:21 Mar 13 21:33:56 firewall snort[19228]: SCAN synscan portscan: 202.52.99.203:21 -> 172.16.1.102:21 Mar 13 21:33:56 firewall snort[19228]: SCAN synscan portscan: 202.52.99.203:21 -> 172.16.1.103:21 Mar 13 21:33:56 firewall snort[19228]: SCAN synscan portscan: 202.52.99.203:21 -> 172.16.1.104:21 Mar 13 21:33:56 firewall snort[19228]: SCAN synscan portscan: 202.52.99.203:21 -> 172.16.1.105:21 Mar 13 21:33:56 firewall snort[19228]: SCAN synscan portscan: 202.52.99.203:21 -> 172.16.1.106:21 Mar 13 21:33:56 firewall snort[19228]: SCAN synscan portscan: 202.52.99.203:21 -> 172.16.1.107:21 Mar 13 21:33:56 firewall snort[19228]: SCAN synscan portscan: 202.52.99.203:21 -> 172.16.1.108:21 Mar 13 22:44:10 firewall snort[19228]: ICMP Destination Unreachable (Undefined Code!): 213.65.16.250 -> 216.80.71.108 Mar 14 01:51:46 firewall snort[20334]: ICMP Destination Unreachable (Undefined Code!): 213.65.16.250 -> 216.80.71.106 Mar 14 04:08:32 firewall snort[20334]: ICMP Destination Unreachable (Undefined Code!): 213.65.16.250 -> 216.80.71.106 Mar 14 04:20:48 firewall snort[20334]: ICMP Destination Unreachable (Undefined Code!): 213.65.16.250 -> 216.80.71.107 Mar 14 10:17:12 firewall snort[20334]: RPC Info Query: 62.122.75.140:758 -> 172.16.1.103:111 Mar 14 10:38:18 firewall snort[20334]: RPC portmap request rstatd: 62.122.75.140:658 -> 172.16.1.103:111 Mar 15 07:52:44 firewall snort[20842]: ICMP Destination Unreachable (Undefined Code!): 213.65.16.250 -> 216.80.71.104 Mar 15 08:08:31 firewall snort[20842]: TELNET access: 172.16.1.103:23 -> 211.180.229.190:3329 Mar 15 19:21:24 firewall snort[20842]: RPC portmap request rstatd: 211.185.125.124:789 -> 172.16.1.103:111 Mar 15 19:21:25 firewall snort[20842]: EXPLOIT x86 NOPS: 211.185.125.124:790 -> 172.16.1.103:32773 Mar 15 19:21:25 firewall snort[20842]: RPC portmap request rstatd: 211.185.125.124:790 -> 172.16.1.108:111 Mar 15 19:21:25 firewall snort[20842]: EXPLOIT x86 NOPS: 211.185.125.124:791 -> 172.16.1.108:931 Mar 15 19:21:27 firewall snort[20842]: EXPLOIT x86 NOPS: 211.185.125.124:791 -> 172.16.1.108:931 Mar 15 19:24:27 firewall snort[20842]: INFO id check returned root: 172.16.1.108:39168 -> 211.185.125.124:4450 Mar 16 03:34:15 firewall snort[22593]: INFO FTP anonymous FTP: 24.43.91.147:3088 -> 172.16.1.103:21 Mar 16 09:05:02 firewall snort[22593]: TELNET access: 172.16.1.103:23 -> 211.180.229.190:1534 Mar 16 10:28:41 firewall snort[22593]: TELNET access: 172.16.1.103:23 -> 12.29.148.12:4821 Mar 17 13:05:13 firewall snort[24186]: TELNET access: 172.16.1.103:23 -> 212.111.54.117:4028