Security Incidents mailing list archives

UDP port 41170


From: "Patrick Webster" <webster_p () DeMorgan com au>
Date: Tue, 4 Mar 2003 00:00:21 +1100

Hi All,

I'm seeing lots of UDP packets on port 41170 from hundreds of source
addresses - in fact i seem to be getting them every 3 seconds or so.

Also, for every, say, 10 port 41170 packets detected, I'm seeing TCP
packets, destination port 35175, 35429 and 38592.

Any ideas?

-Patrick
----------------------------------------------------

This correspondence is for the named person's use only.  It may contain confidential or legally privileged information 
or both.
No confidentiality or privilege is waived or lost by any mistransmission.  If you receive this correspondence in error, 
please immediately delete it from your system and notify the sender.  You must not disclose, copy or rely on any part 
of this correspondence if you are not the intended recipient.

Any views expressed in this message are those of the individual sender, except where the sender expressly, and with 
authority, states them to be the views of DeMorgan.
This e-mail has been checked for known Viruses. It is the responsibility of the receiver to check their system for 
infected files and any such file is deemed not to be the responsibility of DeMorgan.

---------------------------------------------------------

----------------------------------------------------------------------------

<Pre>Lose another weekend managing your IDS?
Take back your personal time.
15-day free trial of StillSecure Border Guard.</Pre>
<A href="http://www.securityfocus.com/stillsecure";> http://www.securityfocus.com/stillsecure </A>

Current thread: