|
|||||||||||
|
Backdoor ?? "Girlnextdoor_" TCP Ports 1025/1028
From: Salomao Barguil <barguil(at)yahoo.com>
Date: Thu Feb 27 2003 - 19:40:23 EST
Running netstat -a , I found a foreign address "GirlNextDoor_" listening to ports TCP 1025/1028. Can someone explain me what is going on this desktop ? It's a Win2k/SP2 workstation with Mcafee antivirus and ZoneAlarm. Also, can you explain me the second set of connections, foreign address "*:*" ?
Thanks for your help,
Microsoft Windows 2000 [Version 5.00.2195] (C) Copyright 1985-2000 Microsoft Corp. C:\>netstat -a Active Connections
Proto Local Address Foreign Address
State
UDP p4win2k:epmap *:* UDP p4win2k:microsoft-ds *:* UDP p4win2k:1027 *:* UDP p4win2k:1030 *:* UDP p4win2k:netbios-ns *:* UDP p4win2k:netbios-dgm *:* UDP p4win2k:isakmp *:* C:\> Do you Yahoo!? Yahoo! Tax Center - forms, calculators, tips, more http://taxes.yahoo.com/
<Pre>Lose another weekend managing your IDS?
Take back your personal time.
This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 14:01:59 EDT |
||||||||||
|
|||||||||||