Celebrate National IT Professionals Day with 3 months of free Premium Membership. Use Code ITDAY17

x
?
Solved

Unknown ports

Posted on 2008-09-30
3
Medium Priority
?
683 Views
Last Modified: 2012-05-05
I have been monitoring traffic on my WAN and I can see some traffic that I cant identify.

From a server running Windows 2003 R2 SP1 and Exchange 2003 I am seeing traffic on tcp port 1245. My analyzer is identifying the application as "isbconference2"

A separate server again running Win2k3 R2 SP1 and Exchange 2003 is pushing out traffic on tcp port 1230 and the analyzer is identifying this as application "periscope"

Please can you help me determine what this traffic is?
0
Comment
Question by:dgjlee
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
3 Comments
 
LVL 23

Expert Comment

by:Justin Durrant
ID: 22606591
0
 
LVL 1

Author Comment

by:dgjlee
ID: 22606905
Sorry... This answer is not applicable.
0
 
LVL 32

Accepted Solution

by:
harbor235 earned 1500 total points
ID: 22613533
Periscope Presentation software displays the screen of a Pocket PC onto a nearby desktop or laptop PC for projection, and remotely controls PowerPoint presentations, runs on port 1230

For port 1245 i found this
http://www.symantec.com/business/security_response/attacksignatures/detail.jsp?asid=20256
However,  isbconference2 run on this port as well, could be conferencing software, i would ask around and see if anyone is running these apps. Go to the server in question and list the software that is installed and see if any of the above software is installed . If not i would look at this from a potential security threat and runs some virus/malware program on this system.

harbor235 ;}

0

Featured Post

Optimum High-Definition Video Viewing and Control

The ATEN VM0404HA 4x4 4K HDMI Matrix Switch supports 4K resolutions of UHD (3840 x 2160) and DCI (4096 x 2160) with refresh rates of 30 Hz (4:4:4) and 60 Hz (4:2:0). It is ideal for applications where the routing of 4K digital signals is required.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

David Varnum recently wrote up his impressions of PRTG, based on a presentation by my colleague Christian at Tech Field Day at VMworld in Barcelona. Thanks David, for your detailed and honest evaluation!
In this article, we’ll look at how to deploy ProxySQL.
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
This video gives you a great overview about bandwidth monitoring with SNMP and WMI with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're looking for how to monitor bandwidth using netflow or packet s…

730 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question