Re: I have too much firewall activity

Tech-Archive recommends: Speed Up your PC by fixing your registry

From: Ian (ipember_at_removethisfirst.msn.com)
Date: 08/28/04


Date: Sat, 28 Aug 2004 17:12:50 +0100

just a thought, I have SP2 and was wondering why a fix for this hadn't been
established...

-- 
"Ian" <ipember@removethisfirst.msn.com> wrote in message 
news:%23gErLlRjEHA.3456@TK2MSFTNGP12.phx.gbl...
> Thanks, very helpful.  Does this high level of activity slow down my 
> computer or internet connection though?
>
> Ian
>
> -- 
>
>
>
>
> "Dennis Lazo" <email@dennislazo.com> wrote in message 
> news:%23af$xhRjEHA.636@TK2MSFTNGP12.phx.gbl...
>> ian,
>>
>> your activity log shows nothing out of the ordinary.  port 445 is 
>> basically the port that other computer checks if you are on a network and 
>> is done basically by other computers on the same network that you are. 
>> however, as some firewalls do not have outbound blocking (like windows 
>> firewall), there will be computers which will be probing port 445 of 
>> other computers even when they are not on the same network.
>>
>> more info on port 445:
>> http://grc.com/port_445.htm
>>
>> hope this helps.
>> -- 
>> Regards,
>> Dennis Lazo
>>
>> the email address from where this message has been sent from is 
>> unmonitored.
>> your replies may not be received. replies may be sent at
>> http://dennislazo.com/email/.
>> information herein is provided as is with no warranties, and confers no
>> rights.
>>
>>
>>
>> "Ian" <ipember@removethisfirst.msn.com> wrote in message 
>> news:%23dLdvbRjEHA.2764@TK2MSFTNGP11.phx.gbl...
>>> In my firewall logs, I am getting information sent to my computer every 
>>> 4 secs or so.  I am currently using the new XP SP2 firewall but I also 
>>> got the similar activity when I used Zonealarm.  The IP addresses vary 
>>> but tend to start with 81.156, as an example:
>>>
>>>
>>> 2004-08-26 22:08:30 DROP TCP 81.156.185.233 81.156.58.12 4141 445 48 S 
>>> 3869061011 0 65535 - - - RECEIVE
>>> 2004-08-26 22:08:36 DROP TCP 81.156.249.172 81.156.58.12 4195 445 48 S 
>>> 1738999339 0 65535 - - - RECEIVE
>>> 2004-08-26 22:08:36 DROP TCP 81.156.249.172 81.156.58.12 4199 1433 48 S 
>>> 1739036499 0 65535 - - - RECEIVE
>>> 2004-08-26 22:08:39 DROP TCP 81.156.231.115 81.156.58.12 4316 445 48 S 
>>> 4243233531 0 65535 - - - RECEIVE
>>> 2004-08-26 22:08:39 DROP TCP 81.156.249.172 81.156.58.12 4195 445 48 S 
>>> 1738999339 0 65535 - - - RECEIVE
>>> 2004-08-26 22:08:39 DROP TCP 81.156.249.172 81.156.58.12 4199 1433 48 S 
>>> 1739036499 0 65535 - - - RECEIVE
>>>
>>> I have set my firewall settings to allow echo or ping, but as you can 
>>> see I still get plenty of activity.   I have AVG antivirus up to date 
>>> and also use Pandascan antivirus web checker and I run spybot and 
>>> lavasoft adaware often. can anyone help?
>>>
>>>
>>>
>>> -- 
>>>
>>>
>>>
>>>
>>> Ian
>>>
>>>
>>> ---
>>> Outgoing mail is certified Virus Free.
>>> Checked by AVG anti-virus system (http://www.grisoft.com).
>>> Version: 6.0.745 / Virus Database: 497 - Release Date: 27/08/2004
>>>
>>
>>
>
>
> ---
> Outgoing mail is certified Virus Free.
> Checked by AVG anti-virus system (http://www.grisoft.com).
> Version: 6.0.745 / Virus Database: 497 - Release Date: 27/08/2004
>
---
Outgoing mail is certified Virus Free.
Checked by AVG anti-virus system (http://www.grisoft.com).
Version: 6.0.745 / Virus Database: 497 - Release Date: 27/08/2004 


Relevant Pages

  • Re: I have too much firewall activity
    ... "Ian" wrote in message ... >>> In my firewall logs, I am getting information sent to my computer every ... >>> and also use Pandascan antivirus web checker and I run spybot and ... >>> Checked by AVG anti-virus system. ...
    (microsoft.public.security.virus)
  • Re: I have too much firewall activity
    ... "Ian" wrote in message ... >>> In my firewall logs, I am getting information sent to my computer every ... >>> and also use Pandascan antivirus web checker and I run spybot and ... >>> Checked by AVG anti-virus system. ...
    (microsoft.public.windowsxp.basics)
  • Richards Firewall Rule Set - getting it to work (0/1)
    ... I use Kerio 2.1.5 Firewall ... [ian also snipping MAC addresses] ... WAN Interface Configuration Wizard ... [radio button ian NOT CHECKED Disable Snooze ...
    (comp.security.firewalls)
  • Re: I have too much firewall activity
    ... it is good that you have a firewall. ... port scans may be done by ... your replies may not be received. ... "Ian" wrote in message ...
    (microsoft.public.windowsxp.general)
  • Re: I have too much firewall activity
    ... it is good that you have a firewall. ... port scans may be done by ... your replies may not be received. ... "Ian" wrote in message ...
    (microsoft.public.windowsxp.basics)