Hi list, I have 2 boxes which Windows 2003 Server and NGX R65 is installed. One of them was working for a long time, and a short time ago its switched with the other one. For the aiming of installing the patches of the Windows (cause it was online so long and couldnt do it) , i have gave a local ip of one of the interfaces of the FW and gave the rule at the current online fw if the source is that let any destination and any port. While running the MSBA also observed the rule at Smartview Tracker and saw that the firewall is reaching to other destinations with other ports (not http or https) like 1199, 4444, AOL, 135 etc. So im curious about the reason of this connections, and thinking the possibility of an malware infection.
Ill have sometime to get work on this FW to fix it (also thinking of installing HFAs). And when needed of course we'll need this one to get online again. So id like to here any recommendations to clean/fix this up. (But please dont tell me about installing SPLAT, Windows is not my choice and these are installed long time ago). Regards Scanned by Check Point Total Security Gateway. ================================================= To set vacation, Out-Of-Office, or away messages, send an email to [email protected] in the BODY of the email add: set fw-1-mailinglist nomail ================================================= To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ================================================= If you have any questions on how to change your subscription options, email [email protected] =================================================
