Port Details - Port 1027

Oct 22 59 Oct 24 35 Oct 25 175 Oct 26 83 Oct 27 79 Oct 28 156 Oct 29 153 Oct 30 35 Oct 31 29 Nov 01 54 Nov 02 107 Nov 03 43 Nov 04 45 Nov 05 37 Nov 06 40 Nov 07 44 Nov 08 35 Nov 09 33 Nov 10 38 Nov 11 36 Nov 12 49 Nov 13 32 Nov 14 45 Nov 15 33 Nov 16 53 Nov 17 59 Nov 18 48 Nov 19 75 Nov 20 61 Nov 21 7 Oct 22 215 Oct 24 254 Oct 25 478 Oct 26 817 Oct 27 803 Oct 28 289 Oct 29 961 Oct 30 217 Oct 31 81 Nov 01 291 Nov 02 149 Nov 03 251 Nov 04 739 Nov 05 74 Nov 06 261 Nov 07 322 Nov 08 203 Nov 09 1,120 Nov 10 522 Nov 11 215 Nov 12 273 Nov 13 642 Nov 14 861 Nov 15 157 Nov 16 218 Nov 17 268 Nov 18 141 Nov 19 218 Nov 20 200 Nov 21 6
[show ascii data]
  • Start Date:
  • End Date:
  • Port:
  • Left Graph:
  • Right Graph:
  • Show Range:Yes No

Port Information

ProtocolServiceName
tcpicqicq instant messanger
[get complete service list]

User Comment

Submitted ByDate
Comment
Lele2004-10-28 05:16:08
This is the data contained in the packet: Frame 93 (709 bytes on wire, 709 bytes captured) Time delta from previous packet: 51.351791000 seconds Time since reference or first frame: 1998.591219000 seconds Frame Number: 93 Packet Length: 709 bytes Capture Length: 709 bytes Ethernet II, Src: 00:e0:63:xx:xx:xx, Dst: 00:04:75:xx:xx:xx Destination: 00:04:75:xx:xx:xx (3Com_xx:xx:xx) Source: 00:e0:63:xx:xx:xx (Cabletro_xx:xx:xx) Type: IP (0x0800) Internet Protocol, Src Addr: 210.106.58.88 (210.106.58.88), Dst Addr: xxx.xxx.xxx.xxx User Datagram Protocol, Src Port: 1613 (1613), Dst Port: 1027 (1027) DCE RPC Microsoft Messenger Service Operation: NetrSendMessage (0) Server Max Count: 19 Offset: 0 Actual Count: 19 Server: DIPLOMAS Client Max Count: 19 Offset: 0 Actual Count: 19 Client: You Message Max Count: 511 Offset: 0 Actual Count: 511 Message: \n\nObtain a prosperous future, money earning power,and the admiration of all.\n\nDiplomas from prestigious universities based on your present knowledge and life experience.\n\nNo required tests, classes, books, or interviews.\n\n I think it's a mass spam... couse the source ip is forged and my router are logging a lot of traffic like this... Lele from Italy (sorry for my english!)
2004-07-14 01:15:56
http://www.blackhat.com/presentations/win-usa-04/bh-win-04-seki-up2.pdf
Add a comment

CVE Links

CVE #Description