Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Security Incidents: Source port 3392

Source port 3392

From: John Kristoff <jtk_at_DEPAUL.EDU>
Date: Thu, 31 Aug 2000 16:37:22 -0500

I've been seeing a handful of hosts all using TCP source port 3392
trying to connect to random destinations (ports and IPs). Has anyone
seen any of these lately? It seems awfully strange. I haven't taken
the opportunity to start looking into the details of the packets (I've
felt I have better things to do :-). Some of the sources I've seen so
far include:

209.61.141.199
216.15.205.63
206.161.205.30
206.86.0.23
209.3.225.247
208.190.130.81
130.238.5.2
207.229.143.41

John
Received on Sep 01 2000

[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]
edgeos