On Wed, 2003-01-29 at 04:28, Gkruel wrote: > Iīve noticed that since 01/24 00:14 GMT -0200, til today, different IPīs > started to scan my whole network for UDP port 135. > > They send one packet each 30 seconds, one for each IP of my whole range. > I'm seeing them too, but a bit faster at around 10 pps, along with a lot of tcp 445 (many more 445 than 135). -- Russell Fulton, Computer and Network Security Officer The University of Auckland, New Zealand "It aint necessarily so" - Gershwin ---------------------------------------------------------------------------- This list is provided by the SecurityFocus ARIS analyzer service. For more information on this free incident handling, management and tracking system please see: http://aris.securityfocus.com
This archive was generated by hypermail 2b30 : Wed Jan 29 2003 - 08:37:04 PST