Hello,

> > My filters are seeing UDP packets to ports 41524, 41530, 41508,
> > directed to the all-ones broadcast IP address on my Class C network.
> > I get about 17 per day from various sources.
> > There is no other port scan activity from the same sources.
> >
> > Does anyone have any idea of what this traffic might be?

  Port 41508 is used by InocuLAN client looking for updates. (InocuLAN is
antivirus software.) Maybe someone has misconfigured their NT or '95 boxes.

-- 
Nerijus Krukauskas
[EMAIL PROTECTED]
begin:vcard 
n:Krukauskas;Nerijus
tel;pager:370-7-932788
tel;fax:370-2-721101
tel;home:370-2-769547
tel;work:370-2-680831
x-mozilla-html:TRUE
url:http://www.lbank.lt/
org:The Bank of Lithuania;Computer Network Department
adr:;;Zirmunu 151;Vilnius;LT;2012;Lithuania
version:2.1
email;internet:[EMAIL PROTECTED]
title:Chief engineer
x-mozilla-cpt:;26080
fn:Nerijus Krukauskas
end:vcard

Reply via email to