port scanning from spoofed addresses

Charles Wyble charles at thewybles.com
Thu Dec 3 12:00:32 CST 2009

On Dec 3, 2009, at 9:53 AM, Matthew Huff wrote:

> The source address appears to be fixed as well as the source port (6666), scanning different destinations and ports.

Some script kiddies found nmap and decided to target you for some reason. It happens. It's annoying. 

More information about the NANOG mailing list