I agree wholeheartedly with iNViCTuS and bombayofpigs. You really shouldn't post IP info with open ports while admitting you can't find the log files for your IDS. Next time you should x out the address like this.
TCP xx.xxx.xxx.xx:1185 xx.xxx.xxx.xxx:80 TIME_WAIT
You should leave the port numbers so we can have some idea about what is running, misconfigured, etc.
I know it's a pain in the ass, but there are somethings you shouldn't post in a public forum.




Reply With Quote