Security Basics mailing list archives

Re: Tons of Source port 80 to random Dest Port Traffic


From: ilaiy <ilaiy.e () gmail com>
Date: Tue, 23 May 2006 11:02:50 -0500

I would say .. Just include the IP in you hosts.deny or deny that ip
address at your firewall ..may be for a day ..

./thanks
ilaiy

On 5/18/06, Tom Hayden <haydenth () msu edu> wrote:
Attached is a quick short summary of traffic my server ( xx.xx.xx.xx )
has been bombarded with lately.  It's a short dump from tethereal.  I
can't seem to figure it out - just tons and tons of traffic coming
from a source port of 80 to seemingly random dest. ports.  Can someone
help me identify this?

Thanks!

--
Tom




Current thread: