Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations gkittelson on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Traffic on MyMachine:microsoft-ds

Status
Not open for further replies.

Ladyluck

Technical User
Mar 8, 2002
15
IS
I recently noticed some unexplained traffic on "Local address" MyMachine:microsoft-ds using netstat -p TCP

The foreign address was a "server" ip nr. in germany (.de:1648 ESTABLISHED)

Being a novice I´m not to sure what to read into this: is it a homephoning tendency in MS-XP or a hostile attempt to log on to my XP. I am located quite a ways away from .de

I have done some gooogling to no avail
 
I have a XP on a LAN consisting of 5 windows/linux boxes a cisco router/switch and an HPUX server.

In cmd line running "netstat - p TCP" gave
Proto Local Address Foreign Address State

Proto TCP
Local Address MM:microsoft-ds
Foreign Address port-ip-nr-in-germany:1648
State Established

with a bit more googling I found microsoft-ds is a service (what does it do?)on port 445 ( )that may be subject to DOS attacks and I´m now wondering how to close it.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top