Go Premium for a chance to win a PS4. Enter to Win

x
?
Solved

A user’s machine is being chatty with IP

Posted on 2014-04-30
3
Medium Priority
?
248 Views
Last Modified: 2014-05-08
A user’s machine is being chatty with IP 199.27.105.111., it looks like this IP is associated with rgbcolo.rgbnetworks.com,  or www.layer42.net  or possibly  amazon cloud player. Any thoughts would be great.
Thanks folks
0
Comment
Question by:kennethjk
  • 2
3 Comments
 
LVL 99

Accepted Solution

by:
John Hurst earned 1500 total points
ID: 40031941
I suggest you get a copy of Wireshark. Put it on a machine on the same subnet as the problem machine. See if you can see in the packets:

1. Excessive packets.
2. Undesirable traffic in the packets. You should be able to see packet contents. I use CommView for this.

It is a very detailed analysis and not always fruitful.

If the site is not in compliance with your company guidelines, have the employee's manager discuss the issue and ask the employee to stop.
0
 

Author Closing Comment

by:kennethjk
ID: 40049861
Thank you so much
0
 
LVL 99

Expert Comment

by:John Hurst
ID: 40050260
@kennethjk  - You are most welcome and I was happy to help.
0

Featured Post

VIDEO: THE CONCERTO CLOUD FOR HEALTHCARE

Modern healthcare requires a modern cloud. View this brief video to understand how the Concerto Cloud for Healthcare can help your organization.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Examines three attack vectors, specifically, the different types of malware used in malicious attacks, web application attacks, and finally, network based attacks.  Concludes by examining the means of securing and protecting critical systems and inf…
Keystroke loggers have been around for a very long time. While the threat is old, some of the remedies are new!
If you're a developer or IT admin, you’re probably tasked with managing multiple websites, servers, applications, and levels of security on a daily basis. While this can be extremely time consuming, it can also be frustrating when systems aren't wor…
We’ve all felt that sense of false security before—locking down external access to a database or component and feeling like we’ve done all we need to do to secure company data. But that feeling is fleeting. Attacks these days can happen in many w…
Suggested Courses

877 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question