Hi, I am configured as follows. I have a router on which I have portforwarded port 80 (on which I run Apache) and 6881 for Bit Torrent. I just today turned on logging on my windows firewall. Firewall itself was activated all along. I also have GriSoft AVG antivirus as well as Spy Guard. After about 3 hours I noticed the following entries
74 connections to port80 which included http, www, www-http, 711 trojan, AckCmd, BlueFire etc 36 connections to port110 which were pop3, ADM Worm 33 connections to port 139 which were netbios-ssn, nbsession, Chode, Fire Hacker, Msinit etc 28 connections to port 53 which were domain, ADM Worm, li0n, MscanWOrm, MuSka52 A bunch of connections to ports 6881, 2541, 2614,, 2615 with no entries A couple of connections to port 137 which were netbios-ns, nbname, Chode, Nimda 2 connections to Port 2589 which were Trojan DaggerI would greatly appreciate it if someone could shed light on what is going on? I thought that the only ports I had exposed were the ones I portforwarded in my router.
Regards