I've been getting lots of outbound traffic destined for a similar IP:
216.220.52.248 port 60:

pri=5 msg="Close outbound, NAT" proto=60/tcp src=192.x.x.x srcport=12xxx
nat=12.45.x.x natport=12xxx dst=216.220.52.248 dstport=60 rule=2 duration=1
sent=48 rcvd=40 pkts_sent=1 pkts_rcvd=1

Looks suspicious, but I haven't had time to pin down the cause.
And what the heck is port 60 all about?


-----Original Message-----
From: Stephen Godar [mailto:[EMAIL PROTECTED]
Sent: Monday, November 10, 2003 12:56 PM
To: [EMAIL PROTECTED]
Subject: [gb-users] Address Sweeps


We have, for the past 5 days, noticed a huge increase in Address Sweeps,
coming from addresses in the range of 216.78.?.? to 216.80.?.?.

Has anyone else noticed this?

Stephen M Godar
VP, Information Services
Farmers State Bank
[EMAIL PROTECTED]
Ph.: (319)377-4196 x1400


GOD BLESS AMERICA!!

-----------------------------------------------------
The information transmitted may contain confidential material and is intended
only for the person or entity to which it is addressed. Any review,
retransmission, dissemination or other use of or taking of any
action by persons or entities other than the intended recipient is prohibited.
If you are not the intended recipient, please delete the information from your
system and contact the sender.
-----------------------------------------------------
<<<<gwavasig>>>>

------------------------------------------------------
To unsubscribe:           [EMAIL PROTECTED]
For additional commands:         [EMAIL PROTECTED]
Archive:  http://archives.gnatbox.com/gb-users/

------------------------------------------------------
To unsubscribe:           [EMAIL PROTECTED]
For additional commands:         [EMAIL PROTECTED]
Archive:  http://archives.gnatbox.com/gb-users/

Reply via email to