Security Incidents mailing list archives
Re: Any tcp/608 activity?
From: "Johannes Ullrich" <jullrich () euclidian com>
Date: Mon, 2 Sep 2002 14:11:53 -0400
only very little activity on that port at DShield/ISC: http://isc.incidents.org/port_details.html?port=608 On Sat, 31 Aug 2002 21:05:30 +0400 "Andrey G. Sergeev (AKA Andris)" <andris () aernet ru> wrote:
Hello! Did anyone here seen *any* activity, either legal or suspicious, on TCP port 608 for, say, past 3 months? My question _isn't related_ to Sender-Initiated/Unsolicited File Transfer proto (RFC 1440) although I'm still interested in your comments if you're using this service and have some records in the SIFT-UFT daemon logs saying something like "Unrecognized command", "Invalid data", "Bad request" and so on. Thanks. -- Yours sincerely, Andrey G. Sergeev (AKA Andris) ------------------------------------------------------------------------ ---- This list is provided by the SecurityFocus ARIS analyzer service. For more information on this free incident handling, management and tracking system please see: http://aris.securityfocus.com
-- -------------------------------------------------------------------- jullrich () euclidian com Collaborative Intrusion Detection join http://www.dshield.org
Attachment:
_bin
Description:
Current thread:
- Any tcp/608 activity? Andrey G. Sergeev (AKA Andris) (Sep 02)
- Re: Any tcp/608 activity? Johannes Ullrich (Sep 02)
- <Possible follow-ups>
- RE: Any tcp/608 activity? Garramone, Michael (CCI-Las Vegas) (Sep 04)
- RE: Any tcp/608 activity? Garramone, Michael (CCI-Las Vegas) (Sep 05)