Security Incidents mailing list archives

Re: Any tcp/608 activity?


From: "Johannes Ullrich" <jullrich () euclidian com>
Date: Mon, 2 Sep 2002 14:11:53 -0400


only very little activity on that port at DShield/ISC:

http://isc.incidents.org/port_details.html?port=608


On Sat, 31 Aug 2002 21:05:30 +0400
"Andrey G. Sergeev (AKA Andris)" <andris () aernet ru> wrote:

Hello!


Did anyone here seen *any* activity, either legal or suspicious, on
TCP port 608 for, say, past 3 months? My question _isn't related_ to
Sender-Initiated/Unsolicited File Transfer proto (RFC 1440) although
I'm still interested in your comments if you're using this service and
have some records in the SIFT-UFT daemon logs saying something like
"Unrecognized command", "Invalid data", "Bad request" and so on.

Thanks.


-- 

Yours sincerely,

Andrey G. Sergeev (AKA Andris)


------------------------------------------------------------------------
---- This list is provided by the SecurityFocus ARIS analyzer service.
For more information on this free incident handling, management 
and tracking system please see: http://aris.securityfocus.com




-- 
--------------------------------------------------------------------
jullrich () euclidian com             Collaborative Intrusion Detection
                                         join http://www.dshield.org

Attachment: _bin
Description:


Current thread: