Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:




Security Incidents mailing list archives

Re: Port 33434 and decoy-scanning
From: ryan () SECURITYFOCUS COM (Ryan Russell)
Date: Thu, 9 Mar 2000 13:45:51 -0800



Don't know the what or why but have been seeing the same traffic for
about week, same source addresses.  The source ports are the same each
pass, and occurs about the same time each day for a period of an hour or
so.  The pattern is traceroute like, generally 3 packets with TTL=1 followed
by 1 to 3 packets with TTL=2.
--

That's traceroute.

                                Ryan


  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]