[nsp-sec] Bracing For Impact... MS08-067
John Fraizer
john at op-sec.us
Fri Oct 24 14:16:05 EDT 2008
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Watching flows, I've got some TCP/443, TCP/80 traffic on our net to
64.233.189.147. I don't know that I've got any infected constituents at
this time but, I was wondering if any other folks are seeing TCP/443
and/or TCP/80 traffic in addition to your ICMP? I have no detected ICMP
thus far but that could be sample related.
John
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.5 (GNU/Linux)
Comment: Using GnuPG with PCLinuxOS - http://enigmail.mozdev.org
iD8DBQFJAhDl+16lRpJszIgRAr51AJ90b7Y2YH9FGKZ17pBiUZtb+SGFTACeLWUe
VOK4X056Yd6awIrv5uCgWcU=
=iDep
-----END PGP SIGNATURE-----
More information about the nsp-security
mailing list