Re: intrusion alert
- From: Rick <rick0.merrill@xxxxxxxxxxxxxxxxxx>
- Date: Wed, 10 Mar 2010 18:29:23 -0500
Burkhard Ott wrote:
On Wed, 10 Mar 2010 14:29:14 +0000, Jon Solberg wrote:
On 2010-03-10, Rick<rick0.merrill@xxxxxxxxxxxxxxxxxx> wrote:My firewall emails me the following:
03/09/2010 10:58:19.736 - Alert - Intrusion Prevention - FTP: PORT
bounce attack dropped. - 192.168.248.213, 3629, X1 (rick) -
192.168.248.205, 21, X0 - Target host: 216.87.188.9, 59310 This email
was generated by: SonicOS Enhanced 5.3.0.0-16o (0017-C54A-D6FC)
Comments?
Get a real firewall.
Nope, a dropped packet on a Sonicwall.
I think it means Affinity has an infected/zombied server. What do you think?
.
- Follow-Ups:
- Re: intrusion alert
- From: Burkhard Ott
- Re: intrusion alert
- References:
- intrusion alert
- From: Rick
- Re: intrusion alert
- From: Jon Solberg
- Re: intrusion alert
- From: Burkhard Ott
- intrusion alert
- Prev by Date: Re: intrusion alert
- Next by Date: Re: intrusion alert
- Previous by thread: Re: intrusion alert
- Next by thread: Re: intrusion alert
- Index(es):
Relevant Pages
|