[Dshield] Port scan on 135 - 445 - 137

Sue Young smy at gcmlp.com
Tue Aug 5 02:45:50 GMT 2003


According to Sam Spade, it's 

whois -h magic 148.235.8.116
Trying whois -h whois.arin.net 148.235.8.116
Instituto Tecnologico y de Estudios Superiores de Monterrey REDMEX-BNETS
(NET-148-203-0-0-1) 
                                  148.203.0.0 - 148.250.255.255
Uninet S.A. de C.V. UNINET-NET10 (NET-148-235-0-0-1) 
                                  148.235.0.0 - 148.235.255.255

# ARIN WHOIS database, last updated 2003-08-04 19:15
# Enter ? for additional hints on searching ARIN's WHOIS database.


Mexico.  This isn't just coming from China.  My network was scanned by a
site from Texas this 
afternoon.  It's all over.

Sue Young

-----Original Message-----
From: haled at longlines.com [mailto:haled at longlines.com] 
Sent: Monday, August 04, 2003 5:45 PM
To: list at dshield.org
Subject: [Dshield] Port scan on 135 - 445 - 137


For the last half hour I have been getting a lot of hits from 148.235.8.116.
Just wanted to let you know.  Deb
-------------------
Email sent using Long Lines Web Mail (http://www.longlines.com/)


_______________________________________________
list mailing list
list at dshield.org
To change your subscription options (or unsubscribe), see:
http://www.dshield.org/mailman/listinfo/list




More information about the list mailing list