Man I just looked at my firewall logs and have been hit from various ip's with the stinkin slammer worm. Can't believe it is still roaming around out there! Anyone else notice this?
It very well could be but the times of the firewall hits and the time of the web log do not match. After further investigation it appears that this is the ol nimda worm. I am new to this so it threw up a red flag since it appeared that someone had actually got in and was trying to run some script.
Yeah i get hundreds if not thousands of port scans every day
But if you are using Smoothwall, you can configure it to ignore attacks from the port that Slammer uses
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.