What would cause NT 4.0, FW1 4.1 SP4 to do a port NBNAME port scan? My logs show about 3 times a minute, the source is the firewall - the destination is a private network that doesn't exist - and it's blocked by rule 0. It started with 172.21.x.x and is up to 172.23.x.x.
This started happening about 1 week ago. I have current antivirus patterns on this machine, and it shows clean. I haven't made any changes to this setup for a while. http://www.primeinc.com ********************************************************************** This email and any files transmitted with it are confidential and intended solely for the use of the individual or entity to whom they are addressed. If you have received this email in error please reply to the sender of the message. The views expressed in this correspondence may not reflect the views of Prime, Inc. This footnote also confirms that this email message has been scanned for the presence of computer viruses. *********************************************************************** =============================================== To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ===============================================