This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

blockling all traffic from all netblock recyber.net

does anyone have all netblocks from recyber.net ?

because if u block the whois recyber.net network 89.248.165.0/24 , nothing happens.

so i guess they use fake ip's and have more networks in use.

i like to block them because i also dont like the massive port scans and malware from thier networks.



This thread was automatically locked due to age.
Parents Reply Children
  • Thanks for that link, Wolfgang!

    I don't think they're a malicious port scanner.  If I did, I would add 89.248.165.0/24 to my "All Portscanners" Network Group.  I have an Intrusion Prevention Exception that skips Anti-Portscan for that group.  I also have a firewall rule that Rejects all traffic from that Network Group.  Virtually all of the malicious port scans come from Russia and China.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA