Peter,

That port is used by a very nasty troyan: SubSeven 2.1 Gold. You can check
this out here: http://subseven.slak.org/

Hope it helps.
pablo
------------------------------------------------------------------------- 
Pablo Marcelo Smiraglia 
Lider de proyectos. 
DTE Inform�tica & Comunicaciones
Voice: +54-114-382-8555 
Fax:    +54-114-382-9073
e-mail: [EMAIL PROTECTED]
<mailto:[EMAIL PROTECTED]> PGP Key: 0xF4A3E60B
------------------------------------------------------------------------- 

 



-----Original Message-----
From: Peter M [mailto:[EMAIL PROTECTED]]
Sent: Jueves, 03 de Febrero de 2000 02:22 p.m.
To: [EMAIL PROTECTED]
Subject: Hey Guys.


Over the last 2 days,

Ive been getting a lot of TCP packets going to port "27374" .. Not a udp nor
icmp.. just a normap tcp packet

Blocking incoming TCP: src=xx.x.xxx.xxx, dst=xx.xxx.xx.xxx, sport=3122,
dport=27374.

Sender Port changes... but destination stays the same.

Let me know guys.

Peter.


__________________________________________________________
Get your FREE personalized e-mail at http://www.canada.com
-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]
-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]

Reply via email to