Jump to content

How to tell if active connections are potentially dangerous/suspicious?


Recommended Posts

Hello, I am wondering how can we check if active connections in the firewall status window are potentially suspicious or dangerous? I run Skype from Thailand, and I am getting an outbound connection to Luxembourg. Chrome.exe/TCP is green and has a USA IP (I assume this is just the IP of the sites I am browsing?) 

 

How about inbound connections, are these only when programs need to update or upload something online? If so, it seems like it would be best to disable all inbound connections and then make exceptions when needed. I just did not find a good explanation of these topics, thank you!

 

Link to comment
Share on other sites

You can check the IP address that the connection is originating from or the IP address of the destination at various websites such as hpHosts to see if it is on a blacklist. There are other websites as well, but a lot of them catalog malicious files on the Internet, and probably shouldn't be posted on the forums. ;)

Link to comment
Share on other sites

  • 3 weeks later...

Hi,  I'm no Skype expert, but there have been some recent issues brought up lately  by Steve Gibson and Leo Laporte on their security now show http://www.grc.com/securitynow.htm

Sorry I don't recall exactly which episode, but it was one of the most recent.

 

I'm also always checking the OA firewall status window, and notice alot of unusual connections to various countries even when logging in to a US Amazon or Netflix site, which usually want to go to Denmark and a few times Panama (???) in order to display images properly.

 

related: Krebs on Security Privacy 101: Skype Leaks

 

http://krebsonsecurity.com/2013/03/privacy-101-skype-leaks-your-location/

Link to comment
Share on other sites

Guest
This topic is now closed to further replies.
 Share

  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...