Security Incidents mailing list archives

Re: DOS


From: Tillman <tillman () HODGSONHOUSE COM>
Date: Wed, 21 Feb 2001 14:23:53 -0600

On Wed, Feb 21, 2001 at 02:19:08PM -0200, Silveira, Anderson wrote:
Feb 20 00:12:59 bufren iplog[107]: TCP: port 267 connection attempt from
96.35.224.33:51183
Feb 20 00:12:59 bufren iplog[107]: TCP: port 269 connection attempt from
148.216.249.68:55072
Feb 20 00:12:59 bufren iplog[107]: TCP: port 270 connection attempt from
46.179.134.86:24249

<snip>

This looks like a since "walking" port-scan rather than a DoS, unless this is
happening enough to saturate your bandwidth. Is there more details about the
DoS aspect that you can give?

- Tillman


Current thread: