[Nolug] MS Blaster DDOS against the rest of us

From: Andrew S. Johnson <andy_at_asjohnson.com>
Date: Tue, 19 Aug 2003 18:53:29 -0500
Message-Id: <200308191853.29889.andy@asjohnson.com>

I was looking at the log on my SMC firewall, and I couldn't help
but notice that for the 174 or so entries that it can hold, that 169
of those are scans on port 135. In the 99 minutes that the log
currently holds, that's 17 scans per minute. DOH! Is my IP address
just a lucky honey-covered bullseye, or are y'all seeing the same
sort of activity? This is _WAY_ worse than average. Usually,
I'd see all sorts of scans, such MS SQL Slammer, NFS, telnet,
and the like. But this drowns them all out. If I could only trade
this for some telemarketing calls during dinner........

Blasted in Luling,

Andy

Maybe if knock back the rum in the cupboard, I really be...

___________________
Nolug mailing list
nolug@nolug.org
Received on 08/19/03

This archive was generated by hypermail 2.2.0 : 12/19/08 EST