Re: FYI - slow scans for https...

From: Hugo van der Kooij (hvdkooijat_private)
Date: Mon Mar 04 2002 - 02:07:08 PST

  • Next message: Hugo van der Kooij: "Re: Rcon trojan"

    On 4 Mar 2002, Russell Fulton wrote:
    
    > As you can see from the traces both vary the 3rd octect fastest.
    > 
    > I reported the scan from 80.26.13.125 last week but I have not had any
    > response from the ISP involved. I reported 62.22.28.56 scan this
    > morning.
    > 
    > Interestingly both these IP addresses appear to be allocated in Spain.
    
    Both are used by the same organization.
    
    Did you contact both the small fish and their upstream party (UUnet)?
    
    Hugo.
    
    -- 
    All email send to me is bound to the rules described on my homepage.
        hvdkooijat_private		http://hvdkooij.xs4all.nl/
    	    Don't meddle in the affairs of sysadmins,
    	    for they are subtle and quick to anger.
    
    
    ----------------------------------------------------------------------------
    This list is provided by the SecurityFocus ARIS analyzer service.
    For more information on this free incident handling, management 
    and tracking system please see: http://aris.securityfocus.com
    



    This archive was generated by hypermail 2b30 : Mon Mar 04 2002 - 14:00:51 PST