Handler on Duty: Johannes Ullrich
Threat Level: green
Loading...
|
|
Submitted By | Date |
---|---|
Comment | |
A K Bressen | 2004-02-24 17:23:16 |
There is something out there that tries ports 1075, 3128, 4588, 6588, and 8080 and uses a tcp sequence number of 666666. I've found this signature in my logs a few times during Fall 2003 and Winter 2004, and someone else mentioned it at http://seclists.org/lists/security-basics/2003/Jun/0877.html but a quick websearch showed no positive id. While other things have tried ports 6588 and possibly 3128 or 8080, only this beastie has tried 1075 and 4588 on my machines. |
CVE # | Description |
---|