Loading...
[get complete service list]
Port Information
Protocol Service Name
tcp flex-lm FlexLM (1-10)
Top IPs Scanning
Today Yesterday
183.94.140.144 (6)64.39.106.74 (8)
162.216.149.72 (4)79.124.49.94 (7)
64.39.106.75 (4)35.203.210.50 (5)
35.203.210.6 (4)35.203.210.93 (5)
35.203.211.112 (3)35.203.211.73 (4)
162.216.150.152 (3)204.10.53.162 (4)
45.128.232.190 (3)35.203.210.117 (4)
162.216.149.32 (2)35.203.211.112 (4)
35.203.210.78 (2)162.216.149.186 (3)
59.188.68.48 (2)162.216.149.88 (3)
User Comments
Submitted By Date
Comment
Sean Cavanaugh 2007-01-23 01:52:04
Azureus, BitComet, uTorrent as well as other clients are starting to use Protocol header encryption (PHE)/message stream encryption (MSE)/Protocol encryption (PE) to help obfuscate the traffic flow to try and avoid Traffic Shaping. more often you are seeing less of the traffic having the Blatant BitTorrent Identifiers in them and are looking more like an SSH connection. usually if you trace the traffic back to the first packet to hit 6881, theres a corresponding outbound packet headed for that same IP, as well as a leading outbound packet from the BT client hittting its central server listing client version and the like. Also note that even after the client is closed, other peers will still try and communicate to it as word about it being shut down hasn't propegated yet.
CVE Links
CVE # Description