Huge thanks to our Platinum Members Endace and LiveAction,
and our Silver Member Veeam, for supporting the Wireshark Foundation and project.

Ethereal-users: [Ethereal-users] microsoft-ds [SYN] frames flooding my system

Note: This archive is from the project's previous web site, ethereal.com. This list is no longer active.

From: "Harrison, Bruce" <bharrison@xxxxxxxxxxxxxxx>
Date: Tue, 21 Dec 2004 13:59:50 -0500
I use Ethereal on my Linux routers.  At one location, we are flooded, from several users, with microsoft-ds [SYN] frames going to numerous ipaddresses outside our systems.  Most of the outside addresses are black holes (192.168.128.214, etc).

I think it is part of the Fizzer Worm Virus associated with AOL IM and IRC, but am not sure.

Can anyone shed light on what this microsoft-ds [SYN] is and where I can go to find more information?

Thanks,
Bruce Harrison