Hi! I've received a half-scan attack from this ip: 11.6.83.115.
www.dnsstuff.com shows it being Japan-based.
According to this site, I should block it on my server that they actually
scanned for open ports. Should I do anything else? Is there an
organization, like NIST, that tries to catch Internet abusers?
Here's the link:
http://www.microsoft.com/technet/treeview/default.asp?url=/technet/prodtechnol/isa/proddocs/isadocs/CMT_IntrusionIntro.asp
Any thoughts or advice will be greatly appreciated.
Marcia