[Snort-sigs] smoothwall box being used for a DoS attack??

Michael Scheidell scheidell at ...249...
Tue Jan 8 14:43:03 EST 2002


some strange ip addresses there.. are you sure you didn't just COOK a
cheap hub?
> IP info: 1.173.215.130:n/a -> 64.0.64.6:n/a
> IP info: 0.64.223.252:n/a -> 64.0.64.6:n/a
> IP info: 0.64.223.253:n/a -> 64.0.64.6:n/a

did you trap any packets in binary form? what does tcpdump say? what mac
addresses are involved?

-- 
Michael Scheidell
Secnap Network Security, LLC
scheidell at ...249... 1+(561) 368-9561
See updated IT Security News at http://www.fdma.com/




More information about the Snort-sigs mailing list