[nsp-sec] Bracing For Impact... MS08-067

John Fraizer john at op-sec.us
Fri Oct 24 14:16:05 EDT 2008


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Watching flows, I've got some TCP/443, TCP/80 traffic on our net to
64.233.189.147.  I don't know that I've got any infected constituents at
this time but, I was wondering if any other folks are seeing TCP/443
and/or TCP/80 traffic in addition to your ICMP?  I have no detected ICMP
thus far but that could be sample related.

John
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.5 (GNU/Linux)
Comment: Using GnuPG with PCLinuxOS - http://enigmail.mozdev.org

iD8DBQFJAhDl+16lRpJszIgRAr51AJ90b7Y2YH9FGKZ17pBiUZtb+SGFTACeLWUe
VOK4X056Yd6awIrv5uCgWcU=
=iDep
-----END PGP SIGNATURE-----



More information about the nsp-security mailing list