TCP Port 42
Common Use
Windows Internet Naming Service (WINS).
Inbound Scan
Currently inbound scans are likely to be new worms exploiting a recently
announced buffer
overflow vulnerability within WINS.
Outbound Scan
Outbound scans if occurring in volume should be considered an indication of a
possible worm infection on the source computer and should be investigated.
Additional Information
PortPeeker Capture of WINS Exploit Attempt
(large)
PortPeeker Capture of a different WINS
Exploit Attempt
Micorosoft - How to help protect against a WINS security issue
Technical Analysis by Steve Frield
Page last updated on
April 02, 2005
|