pmarsh at nmefdn.org
Wed Mar 23 16:11:35 GMT 2005
Once again I'm asking the list to educate me. I'm sure some are
getting tired of the stupid questions, sorry ;)
I've been noticing the following IP's scanning me with the
following source ports.
126.96.36.199 33435 udp
188.8.131.52 33436 udp
184.108.40.206 33437 udp
220.127.116.11 33438 udp
18.104.22.168 33440 udp
The range belongs to internap.com. Their site mentions router
optimization services. Does traceroute us the ports in question? While
reviewing port reports on dshield I noticed the output of the port query
on the ports in question to be very systematic. I said to my self, self
this has got be internap's router optimization services scanning the
internet for OSPF. I dug a little deeper and found the following
The question is, what are these scans?
Why are they listed as infected?
More information about the list