Security Incidents mailing list archives

many port 4599 probes


From: Caiaphas Pechorin <caiaphas () operamail com>
Date: Wed, 17 Oct 2001 19:59:45 +0545 (NPT)

My ipchains log shows that I received 85 attempted udp connections to port
4599 in just over 3 minutes, apparently from a host calling itself
shtam017085.netvigator.com (208.139.101.85).

The attempted connections came regularly every two seconds from
208.139.101.85:4599 -> my_address:4599

ipchains is set to DENY rather than REJECT, perhaps accounting for the delay
between attempts.

Does anyone have any idea what this might be/mean?

Thanks for any help

CP


----------------------------------------------------------------------------
This list is provided by the SecurityFocus ARIS analyzer service.
For more information on this free incident handling, management 
and tracking system please see: http://aris.securityfocus.com


Current thread: