hey folks, i've been seeing quite a few packets destined to tcp port 445 this morning. the traffic is coming from more than one ip address. /etc/services says microsoft-ds for this. anyone else seeing this kind of thing? is this some new attack out there? hope y'all are having a good day, mike -- mike cullerton