heavy traffic on port 1025

From: Erwin Michiels (ErwinMichiels_at_discussions.microsoft.com)
Date: 07/31/04


Date: Fri, 30 Jul 2004 20:39:02 -0700

Many people seem to have noticed heavy traffic on port 1025. This traffic is caused by the task scheduler service hosted by svchost.exe. This service opens port 1025 by default. There are two ways to block this traffic:

1) disable task scheduler service and reboot; be aware it is possible that prefetch, system restore and bootvis won't work properly anymore;

2) deny inbound traffic for svchost.exe using TCP on the local ports 1024-65535; you can use a firewall like Agnitum Outpost 1.0 (freeware) to configure your system this way ( http://www.agnitum.com/download/outpost1.html ).

To exploit task scheduler listening on port 1025, you can even download a tool from the net: remoxec from http://www.securityfriday.com/tools/Remoxec.html . This explains probably the amount of scans of port 1025.



Relevant Pages

  • heavy traffic on port 1025
    ... disable task scheduler service and reboot; be aware it is possible that prefetch, system restore and bootvis won't work properly anymore; ...
    (microsoft.public.security)
  • Re: prefetch query
    ... I thought about that but my latest system restore point is from last Wednesday, ... the program to turn on full prefetch although that made no difference in the registry setting and with one reboot the prefetch folder remains empty. ... doesn't remember all of my desktop settings. ... Is this happening because I cleared the prefetch folder? ...
    (microsoft.public.windowsxp.basics)
  • Re: Defragmentierung - Sortierung der Daten auf einer Festplatte
    ... Bootvis machte nichts anderes, als diesen ... mal den Ordner "prefetch" im Windows anschauen und leeren.. ... welche Programme über welchen Pfad ...
    (microsoft.public.de.german.windowsxp.hardware)
  • Re: xp service pack 2 slow down
    ... When I used System Restore to revert to a virgin ... When I reinstalled the service pack it ... optimisations that have gone on - it accordingly deletes the PreFetch ...
    (microsoft.public.windowsxp.general)
  • Re: How to Unistall XP2 update
    ... etc. Can't even run the System Restore to get ... >back to Config before XP2 update. ... optimisations that have gone on - it accordingly deletes the PreFetch ...
    (microsoft.public.windowsxp.general)