Hi list,

I have 2 boxes which Windows 2003 Server and NGX R65 is installed. One
of them was working for a long time, and a short time ago its switched
with the other one. For the aiming of installing the patches of the
Windows (cause it was online so long and couldnt do it) , i have gave
a local ip of one of the interfaces of the FW and gave the  rule  at
the current online fw
if the source is that let any destination and any port. While running
the MSBA also observed the rule at Smartview Tracker and saw that the
firewall is reaching to other destinations with other ports (not http
or https) like 1199, 4444, AOL, 135 etc.  So im curious about the
reason of this connections, and thinking the possibility of an malware
infection.

Ill have sometime to get work on this FW to fix it (also thinking of
installing HFAs). And when needed of course we'll need this one to get
online again.
So id like to here any recommendations  to clean/fix this up. (But
please dont tell me about installing SPLAT, Windows is not my choice
and these are installed long time ago).

Regards

Scanned by Check Point Total Security Gateway.

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [email protected]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[email protected]
=================================================

Reply via email to