Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:




Security Incidents mailing list archives

Increase in Scans of Port 445?
From: "Compton, Rich" <RCompton () chartercom com>
Date: Mon, 10 Mar 2003 13:14:14 -0600

Hey guys,
I've noticed on Incidents.org (http://isc.incidents.org/port_details.html?port=445) that there is an increase in 
traffic to port 445.  Is this because of this "Dropper" virus?  I noticed that the MacAfee link 
(http://vil.nai.com/vil/content/v_100124.htm) stated that the risk of this virus is very low but if we are seeing such 
an increase in traffic to this port then it does seem like boxes are getting infected.  Perhaps it is more of a threat 
than was first considered (especially to home users). Is there some other method of preventing this worm from infecting 
a box other than turning off (or blocking) sharing? 

Thanks,
Rich Compton

----------------------------------------------------------------------------

<Pre>Lose another weekend managing your IDS?
Take back your personal time.
15-day free trial of StillSecure Border Guard.</Pre>
<A href="http://www.securityfocus.com/stillsecure";> http://www.securityfocus.com/stillsecure </A>



  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]