Contact US

Log In

Come Join Us!

Are you a
Computer / IT professional?
Join Tek-Tips Forums!
  • Talk With Other Members
  • Be Notified Of Responses
    To Your Posts
  • Keyword Search
  • One-Click Access To Your
    Favorite Forums
  • Automated Signatures
    On Your Posts
  • Best Of All, It's Free!

*Tek-Tips's functionality depends on members receiving e-mail. By joining you are opting in to receive e-mail.

Posting Guidelines

Promoting, selling, recruiting, coursework and thesis posting is forbidden.

Students Click Here

Is it normal ?

Is it normal ?

Is it normal ?

After rebooting my PC (WIN 98SE on which I have Norton Antivirus uptodate, with a CABLE connection to the Internet, and with ZoneAlarm FW), if I run netstat -a command I get this result :

netstat -a

Active Connections

  Proto  Local Address          Foreign Address        State
  TCP    chris:3731             CHRIS:0                LISTENING
  TCP    chris:1025             CHRIS:0                LISTENING
  TCP    chris:137              CHRIS:0                LISTENING
  TCP    chris:138              CHRIS:0                LISTENING
  TCP    chris:nbsession        CHRIS:0                LISTENING
  UDP    chris:3731             *:*                    
  UDP    chris:1025             *:*                    
  UDP    chris:nbname           *:*                    
  UDP    chris:nbdatagram       *:*                    

Is it normal ?

Why do I see these ports 137, 138 (both for NetBios), and 3731 and 1025 in a LISTENING state ? How could I remove this if necessary ?

Thanks for any advice,

RE: Is it normal ?

As I understand it, the fact that the ports are reported as listening is down to the system configuration, and what services or programs you have running. If you don't need NetBios enabled over tcp/ip then unbind it in the TCP/IP Network Properties relating to your cable modem. Just having something listening doesn't mean the computer is compromised, it depends on the permissions you have allowed each program in Zone Alarm. If you are concerned, go to Sheilds Up section at www.grc.com and run the Probe my Ports test. With ZA it should come out as 'Stealth' on each port if set up properly.

Red Flag This Post

Please let us know here why this post is inappropriate. Reasons such as off-topic, duplicates, flames, illegal, vulgar, or students posting their homework.

Red Flag Submitted

Thank you for helping keep Tek-Tips Forums free from inappropriate posts.
The Tek-Tips staff will check this out and take appropriate action.

Reply To This Thread

Posting in the Tek-Tips forums is a member-only feature.

Click Here to join Tek-Tips and talk with other members! Already a Member? Login

Close Box

Join Tek-Tips® Today!

Join your peers on the Internet's largest technical computer professional community.
It's easy to join and it's free.

Here's Why Members Love Tek-Tips Forums:

Register now while it's still free!

Already a member? Close this window and log in.

Join Us             Close