My firewall fortunately fought back against those freaking hackers.
I got some reports look like this when the firewall blocked the attacks:
Intrusion.Win.MSSQL.worm.Helkern! Attacker's IP address: 218.106.91.25
Protocol/service: UDP on local port 1434
Mex helped me find that this IP was pretty famous..
Some other IPs with same local port:
218.64.237.219
122.225.1.148
I know that I will be safe unless I turn off my firewall..
But, anyone knows how to figure this hacker out?