Click here to get back home

Port log

 HomeNewsGroups | Search | About
 microsoft.public.security.virus    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content
Subject Author Date
Port log dos 04-22-2008
Posted by dos on April 22, 2008, 2:54 am
Please log in for more thread options
Hi,
is here something that i should worrie? What about port 1042, wich is
trojan port.
------------------------------------------------------------------------------------------------------------------------------------------------------------------------>
| # | DATE | ACTION | PRO | Local Address:Port | Remote Address:Port |
Status | Bytes | Country | PID | Process
------------------------------------------------------------------------------------------------------------------------------------------------------------------------>
--[Session Started at 21/04/2008 - 22:12:23]--
16 21/04/2008 22:12:24 OPEN UDP 0.0.0.0:0 0.0.0.0:0 SUCCESS 0 2604
c:\windows\system32\svchost.exe
17 21/04/2008 22:12:24 OPEN UDP 0.0.0.0:0 0.0.0.0:0 SUCCESS 0 2604
c:\windows\system32\svchost.exe
81 21/04/2008 22:12:30 OPEN TCP 0.0.0.0:0 0.0.0.0:0 SUCCESS 0 2604
c:\windows\system32\svchost.exe
82 21/04/2008 22:12:30 CLOSE TCP 0.0.0.0:0 0.0.0.0:0 SUCCESS 0 2604
c:\windows\system32\svchost.exe
83 21/04/2008 22:12:30 OPEN TCP 0.0.0.0:0 0.0.0.0:0 SUCCESS 0 2604
c:\windows\system32\svchost.exe
84 21/04/2008 22:12:30 CONNECT TCP 0.0.0.0:1040 192.168.0.1:52869 SUCCESS 0
2604 c:\windows\system32\svchost.exe
85 21/04/2008 22:12:30 SEND TCP 192.168.0.100:1040 192.168.0.1:52869 SUCCESS
323 2604 c:\windows\system32\svchost.exe
86 21/04/2008 22:12:30 RECEIVE TCP 192.168.0.100:1040 192.168.0.1:52869
SUCCESS 195 2604 c:\windows\system32\svchost.exe
87 21/04/2008 22:12:30 RECEIVE TCP 192.168.0.100:1040 192.168.0.1:52869
SUCCESS 664 2604 c:\windows\system32\svchost.exe
100 21/04/2008 22:12:30 OPEN TCP 0.0.0.0:0 0.0.0.0:0 SUCCESS 0 2604
c:\windows\system32\svchost.exe
101 21/04/2008 22:12:30 CLOSE TCP 0.0.0.0:0 0.0.0.0:0 SUCCESS 0 2604
c:\windows\system32\svchost.exe
102 21/04/2008 22:12:30 RECEIVE TCP 192.168.0.100:1040 192.168.0.1:52869
SUCCESS 0 2604 c:\windows\system32\svchost.exe
103 21/04/2008 22:12:30 CLOSE TCP 192.168.0.100:1040 192.168.0.1:52869
SUCCESS 0 2604 c:\windows\system32\svchost.exe
104 21/04/2008 22:12:30 OPEN TCP 0.0.0.0:0 0.0.0.0:0 SUCCESS 0 2604
c:\windows\system32\svchost.exe
105 21/04/2008 22:12:30 CONNECT TCP 0.0.0.0:1042 192.168.0.1:52869 SUCCESS 0
2604 c:\windows\system32\svchost.exe
106 21/04/2008 22:12:30 SEND TCP 192.168.0.100:1042 192.168.0.1:52869
SUCCESS 320 2604 c:\windows\system32\svchost.exe
107 21/04/2008 22:12:30 RECEIVE TCP 192.168.0.100:1042 192.168.0.1:52869
SUCCESS 195 2604 c:\windows\system32\svchost.exe
108 21/04/2008 22:12:30 RECEIVE TCP 192.168.0.100:1042 192.168.0.1:52869
SUCCESS 672 2604 c:\windows\system32\svchost.exe
178 21/04/2008 22:13:00 RECEIVE TCP 192.168.0.100:1042 192.168.0.1:52869
SUCCESS 0 2604 c:\windows\system32\svchost.exe
179 21/04/2008 22:13:00 CLOSE TCP 192.168.0.100:1042 192.168.0.1:52869
SUCCESS 0 2604 c:\windows\system32\svchost.exe

Similar ThreadsPosted
Scanning a port September 23, 2005, 11:27 pm
What port Need Sdbot for Execute September 19, 2005, 11:21 am
Port Block Allow NetBIOS changed November 9, 2005, 8:01 pm
ixplore listening on a localhost UDP Port? November 22, 2005, 4:06 pm
Re: Unknown svchost.exe DNS port 53 network activity December 20, 2006, 4:26 pm
Re: Please help me interpret a suspicious netstat SYN_SENT TCP port 1058 ? February 25, 2006, 1:04 am
Windows Defender problems after Port 135 and rpc disabling! Dr Lipman and others - help! April 9, 2006, 5:45 pm
W2K netstat detects port 1433 is listenning but fport does NOT..., can't start mission critical sql server !!! October 14, 2005, 1:20 pm

Our other projects:

Art Dolls, Fairies and Mermaids - Sunnyfaces.net

Roy's Linux, Programming and Search Engines messages

1-Script XML SitemapXML Sitemap