Port Scan Attacks

  • From: "Watts, Jeb" <Jwatts@xxxxxxxxxxx>
  • To: "[ISAserver.org Discussion List]" <isalist@xxxxxxxxxxxxx>
  • Date: Tue, 1 Jun 2004 15:21:12 -0500

I am getting event 15105 in my system event logs. I checked the packet filter 
logs and am seeing a source ip of 64.235.246.143 with param#1 = 25 and param#2 
being a range of numbers. I suppose param#1 and param#2 are ports. Can someone 
explain what is happening? Thanks!
 
Jeb Watts

Other related posts:

  • » Port Scan Attacks