[mod.protocols.tcp-ip] Little delights

Mills@UDEL.EDU.UUCP (04/10/87)

Folks,

Thought you might enjoy a couple of creepycrawlers that wandered past
our gateways recently. One was a 'gram from 10.10.0.2 to 10.0.0.0, which
showed up at dcn-gw (10.2.0.96). The most beguiling explanation is that
somebody uncorked a 4.2 Unix on the ARPANET and turned on rwho. I still
have to explain why that 'gram showed up here, unless maybe the dude
is running 4.3 Unix and is trying to find a boot server. Maybe I should provide a
suitable core image? That's even more beguiling.

Observed on linkabit-gw (10.0.0.111) yesterday were a number of creatures
apparently hatched on net 128.174. Some of these were from one subnet to
the all-zeroes address on another subnet, while others were to the net (sic)
broadcast address of all ones. While that suggests broken subnets, my
intrigue is spiked by curious fact the buggers showed up half way across the
country.

I know there is a logical explanation for this infestation and will (wearily)
pursue it. Meanwhile, it's the chuckles that keep me warm and suggest that
we might place an add for an Internet spider to catch them bugs.

Dave