I've been getting lots of outbound traffic destined for a similar IP: 216.220.52.248 port 60:
pri=5 msg="Close outbound, NAT" proto=60/tcp src=192.x.x.x srcport=12xxx nat=12.45.x.x natport=12xxx dst=216.220.52.248 dstport=60 rule=2 duration=1 sent=48 rcvd=40 pkts_sent=1 pkts_rcvd=1 Looks suspicious, but I haven't had time to pin down the cause. And what the heck is port 60 all about? -----Original Message----- From: Stephen Godar [mailto:[EMAIL PROTECTED] Sent: Monday, November 10, 2003 12:56 PM To: [EMAIL PROTECTED] Subject: [gb-users] Address Sweeps We have, for the past 5 days, noticed a huge increase in Address Sweeps, coming from addresses in the range of 216.78.?.? to 216.80.?.?. Has anyone else noticed this? Stephen M Godar VP, Information Services Farmers State Bank [EMAIL PROTECTED] Ph.: (319)377-4196 x1400 GOD BLESS AMERICA!! ----------------------------------------------------- The information transmitted may contain confidential material and is intended only for the person or entity to which it is addressed. Any review, retransmission, dissemination or other use of or taking of any action by persons or entities other than the intended recipient is prohibited. If you are not the intended recipient, please delete the information from your system and contact the sender. ----------------------------------------------------- <<<<gwavasig>>>> ------------------------------------------------------ To unsubscribe: [EMAIL PROTECTED] For additional commands: [EMAIL PROTECTED] Archive: http://archives.gnatbox.com/gb-users/ ------------------------------------------------------ To unsubscribe: [EMAIL PROTECTED] For additional commands: [EMAIL PROTECTED] Archive: http://archives.gnatbox.com/gb-users/
