Security Incidents mailing list archives
many port 4599 probes
From: Caiaphas Pechorin <caiaphas () operamail com>
Date: Wed, 17 Oct 2001 19:59:45 +0545 (NPT)
My ipchains log shows that I received 85 attempted udp connections to port 4599 in just over 3 minutes, apparently from a host calling itself shtam017085.netvigator.com (208.139.101.85). The attempted connections came regularly every two seconds from 208.139.101.85:4599 -> my_address:4599 ipchains is set to DENY rather than REJECT, perhaps accounting for the delay between attempts. Does anyone have any idea what this might be/mean? Thanks for any help CP ---------------------------------------------------------------------------- This list is provided by the SecurityFocus ARIS analyzer service. For more information on this free incident handling, management and tracking system please see: http://aris.securityfocus.com
Current thread:
- many port 4599 probes Caiaphas Pechorin (Oct 17)
- <Possible follow-ups>
- Re: many port 4599 probes Alan Wright (Oct 18)
- Re: many port 4599 probes Mike Tancsa (Oct 18)
- Re: many port 4599 probes Ulrich Eckhardt (Oct 19)
- Re: many port 4599 probes Mike Tancsa (Oct 18)