Found these logs from a netscreen firewall seems malicious, somebody seen these: 1:Nov 30 18:01:53 xx.xx.xx.xx ns204: NetScreen device_id=ns204 [Root]system-critical-00027: 2nd push has been confirmed. (2005-11-30 17:56:44) 2:Nov 30 18:01:59 xx.xx.xx.xx ns204: NetScreen device_id=ns204 [Root]system-critical-00027: Configuration Erase sequence accepted, unit reset. (2005-11-30 17:56:50) 3:Nov 30 18:01:59 xx.xx.xx.xx ns204: NetScreen device_id=ns204 [Root]system-notification-00033: NSM keys were deleted. (2005-11-30 17:56:50) Thanks in advance! -- Lu Daohong _______________________________________________ LogAnalysis mailing list LogAnalysis@private http://lists.shmoo.com/mailman/listinfo/loganalysis
This archive was generated by hypermail 2.1.3 : Wed Dec 07 2005 - 11:19:54 PST