Hello, > > My filters are seeing UDP packets to ports 41524, 41530, 41508, > > directed to the all-ones broadcast IP address on my Class C network. > > I get about 17 per day from various sources. > > There is no other port scan activity from the same sources. > > > > Does anyone have any idea of what this traffic might be? Port 41508 is used by InocuLAN client looking for updates. (InocuLAN is antivirus software.) Maybe someone has misconfigured their NT or '95 boxes. -- Nerijus Krukauskas [EMAIL PROTECTED]
begin:vcard n:Krukauskas;Nerijus tel;pager:370-7-932788 tel;fax:370-2-721101 tel;home:370-2-769547 tel;work:370-2-680831 x-mozilla-html:TRUE url:http://www.lbank.lt/ org:The Bank of Lithuania;Computer Network Department adr:;;Zirmunu 151;Vilnius;LT;2012;Lithuania version:2.1 email;internet:[EMAIL PROTECTED] title:Chief engineer x-mozilla-cpt:;26080 fn:Nerijus Krukauskas end:vcard
