Security Incidents mailing list archives
Re: DOS
From: Tillman <tillman () HODGSONHOUSE COM>
Date: Wed, 21 Feb 2001 14:23:53 -0600
On Wed, Feb 21, 2001 at 02:19:08PM -0200, Silveira, Anderson wrote:
Feb 20 00:12:59 bufren iplog[107]: TCP: port 267 connection attempt from 96.35.224.33:51183 Feb 20 00:12:59 bufren iplog[107]: TCP: port 269 connection attempt from 148.216.249.68:55072 Feb 20 00:12:59 bufren iplog[107]: TCP: port 270 connection attempt from 46.179.134.86:24249
<snip> This looks like a since "walking" port-scan rather than a DoS, unless this is happening enough to saturate your bandwidth. Is there more details about the DoS aspect that you can give? - Tillman