<HTML>
<HEAD>
<TITLE>Open proxy scanner experience</TITLE>
</HEAD>
<BODY>
<FONT SIZE="4"><FONT FACE="Calibri, Verdana, Helvetica, Arial"><SPAN STYLE='font-size:11pt'>So yesterday a network that I do work for had it’s mail server scanned. I reported the scan (snort reported nmap –F scan) to the offending netblock owner, thinking that they had a compromised machine. I was surprised to receive an email this morning stating “Oh that’s just our open proxy scanner”. Now....I’ve dealt with some open proxy scanners and seeing the activity before, but GOOD GANDHI...they scanned the ENTIRE port range of the machine..it took almost 3 hours from start to finish. Has anyone else seen such aggressive “open proxy” scanning like that?<BR>
<BR>
James</SPAN></FONT></FONT>
</BODY>
</HTML>