It looks like W32/Blaster is making its rounds. For interests sakes, I’ve started collecting connection attempts to port 135 and 445:
Not sure if the flatline last night was because I lost data when I changed the collection program, or if there was just no attempts (doubtful)
Also updated the extended entry to show a pie chart comparing the sources of infections…
This graph shows the source of the attack, based on the /8 the host comes from. Note a lot of 24/8 hosts, mostly cable modems.