MENSAJE Nº1
=
" rberxxxl@elxxxro.com rxxxl@elxxxxo.com SMTP
centroalertas@ixxxx.com;xxxan@ixxxxx.com
centrxxxx@xxxx.com;xxxxxx@infxxxxx.com SMTP;SMTP
File blocked detected: Half_Live.scr "File Block Detected: Half_Live.scr
Protocol: pop3
Source IP: 192.168.1.222
Destination IP: 212.73.32.140
Email Address From: 2xxxxxxp@comb.es
Email Address To: xxxxxxxx@airtel.net
MENSAJE Nº2
" rbexxxxl@exxxxxxx.com lxxxx@exxxxxxxxxx.com SMTP
cxxxxxxxxx@ixxxxxxxxxxxx.com cxxxxxxxxx@ixxxxxxxxx.com SMTP
NIDS ALERT: sql: Slammer "The following intrusion was observed: sql:
Slammer[Reference:
http://www.fortinet.com/ids/ID287178790]
Interface-external: UDP 204.68.92.131:4128 -> 192.168.70.5:1434 .
Son estos dos 'reports' que no que narices son, ¿me podeis dar algún
comentario/opinión al respecto?
gracias y un saludo.
Clavo Oxidado
Leer las respuestas