Opened 7 years ago
Closed 7 years ago
#11380 closed Feature request (rejected)
autoban after configurable number of bad commands (command unrecognized)
Reported by: | erank | Owned by: | |
---|---|---|---|
Priority: | normal | Component: | FileZilla Server |
Keywords: | autoban unrecognized command security | Cc: | |
Component version: | 0.9.60 | Operating system type: | Windows |
Operating system version: | Windows 7 |
Description
There are hackers trying to get into my FileZilla server by entering bad command after bad command. I've attached an example from my FZ server log below. A good feature would be the ability to log out and autoban the IP address after a certain number of failed commands. First I believe this would be a good security feature. Second, this would lower the load on the server while legitimate activity was ongoing.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> Connected on port 21, sending welcome message...
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 220 Welcome
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> "
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 4õÜk£T®áR¸m>yN›–
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> øq.¤2/Š9Rs‹
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> ˆÀ0À,À(À$ÀÀ
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> £
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> Ÿ
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> k
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> j
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 9
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 8
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> ˆ
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> ‡À2À.À*À&ÀÀ
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)>
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> =
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 5
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> „ÀÀ
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)>
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> À
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> À
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> À/À+À'À#ÀÀ
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> ¢
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> ž
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> g
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> @
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 3
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 2
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> š
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> ™
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> E
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> DÀ1À-À)À%ÀÀ
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> œ
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> <
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> /
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> –
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> AÀÀÀÀ
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)>
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)>
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)>
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)>
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)>
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)>
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> m
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)>
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)>
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)>
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 4
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 2
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)>
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)>
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)>
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)>
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)>
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)>
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)>
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)>
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)>
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)>
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)>
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)>
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)>
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)>
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)>
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)>
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)>
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)>
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)>
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)>
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)>
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)>
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)>
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> #
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)>
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)>
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)>
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> 500 Syntax error, command unrecognized.
(000038) 8/28/2017 2:36:22 AM - (not logged in) (118.193.31.179)> disconnected.
Completely harmless, you can ignore these. The longer you keep such an entity on your server, the less harm it can do elsewhere.