Incidents
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
Re: Source port 445,80 Sep 06 2007 04:55PM
Valdis Kletnieks vt edu
On Thu, 06 Sep 2007 12:17:47 +0800, Wong Yu Liang said:
> Thanks valdis=20
> I suspected so. Possibly a worm propagation and the ips detected the
> *return* traffic. But yet the alerts from my ips is very strange. Some
> alerts
>
> 172.16.1.254:80 -> 172.17.17.103:1434 MSSQL buffer overflow detect...

[ more ]  
 

Privacy Statement
Copyright 2010, SecurityFocus