Re: port 710 ?

From: Karl Levinson [x y] mvp (levinson_k_at_despammed.com)
Date: 08/07/03


Date: Thu, 7 Aug 2003 15:00:38 -0400


"Alessandro Perilli" <peris@tiscali.it> wrote in message
news:sthla5lyquk9.s7ishiso377d.dlg@40tude.net...

> Mike,
> nothing running on port 710 on my Win2003 Enterprise (default installation
> + IIS6.0).
> Maybe a 3rd party software?

Danger, danger Will Robinson. Could be a sign of hacking? Use Fport which
is free from www.foundstone.com/knowledge to see what if anything is
listening on that port, or use a free sniffer to see the content of those
packets, or install a firewall software such as www.sygate.com or
www.kerio.com to see what software program generated those packets [assuming
they are continuing].

Knowing the destination IP address and the other port number involved would
have been useful. You can look up the destination IP address at
www.network-tools.com

Other things you could do to try to confirm or deny whether the computer is
compromised:

http://securityadmin.info/faq.htm#hacked



Relevant Pages

  • Re: Masqed client cannot access masqed server
    ... >> sharing app and the aforementionned webserver. ... but port 80 connections time out. ... The internal client looks at the destination address and its own address ... then the router no longer drops the packets (check the syslog ...
    (comp.os.linux.networking)
  • Re: Ports capable of multiple simultaneous connections?
    ... The port number is only one of several attributes used to identify the ... IP passes incoming packets to TCP, ... fields in order to dispatch incoming packets to the right destination. ... A "connection" for a typical ServerSocket might look like this: ...
    (comp.lang.java.programmer)
  • Re(2): Help with an odd log file...
    ... between most source IP/port and destination IP/port packets. ... Date Time TCP Seq# Source Address Port Target Address Port ...
    (Incidents)
  • Re: Fee Based Email (From Re: Processs PreciseMail AntiSpam...)
    ... >> rerouting or final destination. ... >> only count or evaluate packets that come via its various channels. ... >bogus source IP address and a source port of 25. ... It all depends on how my ISP or his ...
    (comp.os.vms)
  • Re: Windows NT server manager, user manager and iptables
    ... Since you used DNAT the destination address would be what gets changed. ... outside interface of the firewall (meaning packets created by the firewall ... The original request should have a destination port of 137 - ...
    (comp.os.linux.security)