Security Incidents mailing list archives

Re: FYI - slow scans for https...


From: Hugo van der Kooij <hvdkooij () vanderkooij org>
Date: Mon, 4 Mar 2002 11:07:08 +0100 (CET)

On 4 Mar 2002, Russell Fulton wrote:

As you can see from the traces both vary the 3rd octect fastest.

I reported the scan from 80.26.13.125 last week but I have not had any
response from the ISP involved. I reported 62.22.28.56 scan this
morning.

Interestingly both these IP addresses appear to be allocated in Spain.

Both are used by the same organization.

Did you contact both the small fish and their upstream party (UUnet)?

Hugo.

-- 
All email send to me is bound to the rules described on my homepage.
    hvdkooij () vanderkooij org         http://hvdkooij.xs4all.nl/
            Don't meddle in the affairs of sysadmins,
            for they are subtle and quick to anger.


----------------------------------------------------------------------------
This list is provided by the SecurityFocus ARIS analyzer service.
For more information on this free incident handling, management 
and tracking system please see: http://aris.securityfocus.com


Current thread: