Peter,
That port is used by a very nasty troyan: SubSeven 2.1 Gold. You can check
this out here: http://subseven.slak.org/
Hope it helps.
pablo
-------------------------------------------------------------------------
Pablo Marcelo Smiraglia
Lider de proyectos.
DTE Inform�tica & Comunicaciones
Voice: +54-114-382-8555
Fax: +54-114-382-9073
e-mail: [EMAIL PROTECTED]
<mailto:[EMAIL PROTECTED]> PGP Key: 0xF4A3E60B
-------------------------------------------------------------------------
-----Original Message-----
From: Peter M [mailto:[EMAIL PROTECTED]]
Sent: Jueves, 03 de Febrero de 2000 02:22 p.m.
To: [EMAIL PROTECTED]
Subject: Hey Guys.
Over the last 2 days,
Ive been getting a lot of TCP packets going to port "27374" .. Not a udp nor
icmp.. just a normap tcp packet
Blocking incoming TCP: src=xx.x.xxx.xxx, dst=xx.xxx.xx.xxx, sport=3122,
dport=27374.
Sender Port changes... but destination stays the same.
Let me know guys.
Peter.
__________________________________________________________
Get your FREE personalized e-mail at http://www.canada.com
-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]
-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]