Jun 20, 2005

    For the last few days I've realised that there is a persistant activity on my internet connection. I'm a little concerned as I actually don't know what it is.

    C:\Documents and Settings\Chris>netstat
    Active Connections
      Proto  Local Address          Foreign Address        State
      TCP    NE-HOSTING:2236        localhost:2237         ESTABLISHED
      TCP    NE-HOSTING:2237        localhost:2236         ESTABLISHED
      TCP    NE-HOSTING:2422
    C:\Documents and Settings\Chris>
    It's the adsl one at the bottom i'm querying. It's about 20 times a minute it sends off a syn to, which i've traced to be in taiwan. Now, it was trying to operate on ports 445 and 137 before but i've had those ports blocked for some time on my router, now it is trying an icmp of <8,0>. I've ran all the security and virus scans i know of and nothing is detected on my laptop (where the syn's are being broadcast from).

    Anybody got any ideas? I'm getting a little concerned.

    (I've a Linksys WRT54G v1.1 with the latest HyperWRT Firmware running.)
    Never mind hey, i sorted it.
