Advice 1: How to know the port on the computer

After the performed connection of your computer to the Internet, it is assigned a network address. Applications that use this connection work with certain ports. However, open ports can pose a risk. There are a few variants of their definition.
How to know the port on the computer
Instruction
1
To find the port, use the netstat command in the console operating system. To do this, select the menu "start" "Run" in the window that appears, write cmd and press Enter. Or select start–>All programs–>Accessories–>Command prompt. In the opened console, type netstat and press Enter. You will see a list of IP addresses and used ports on your computer.
2
To more fully explore the possibilities of command at a command prompt netstat /? and examine the information. For example, if you enter the netstat command with the –a option, the screen will display all connections and ports used. Netstat –o displays additional identifier of the process that is responsible for any connection. When you enter netstat –n will show the real IP addresses and numeric port values. The default also shows the DNS name and common aliases.
3
If you don't want to use the command line, download the TCPView utility from the official Microsoft website at http://technet.microsoft.com/ru-ru/sysinternals/bb897437. It provides the same functionality, but with a graphical interface. After downloading the program run it and agree with the license agreement. In the program window you will see the process using the network connection, Protocol, name and port, or the address of the recipient, condition.
4
There are also other programs you can use to define open ports on the computer. For example, Nmap (http://nmap.org), Advanced Port Scanner (http://www.radmin.ru/products/previousversions/portscanner.php), etc.
5
Another option is the use of specialized Internet services that performs ports. As an example may be a website http://2ip.ru. Navigate your browser to the address http://2ip.ru/port-scaner/ to check for potentially dangerous open ports. At http://2ip.ru/check-port/ you can check a specific port.

Advice 2 : How to check open ports on your computer

Check ports on the computer in several ways. Open and not used by system processes or LAN port may be the cause of penetration into the system dangerous software, access your computer from outside.
network
Instruction
1
First of all, such a situation is to prevent system protection: antivirus and firewall. If you have not installed, you must install and test the system. Moreover, it is desirable to establish an efficient and optimal means of protection (e.g. Kaspersky Internet Security). But if you have not used such software, possibly malicious, open port has been used dangerous applications.
2
The easiest way to view the presence of such port with a simple text, which can be performed online at the link: http://2ip.ru/port-scaner/. If the analysis of your computer, you'll find the open port (potentially dangerous for system), it will show red color. If a port in the course of the inspection found, make a note of the name separately because it urgently needs to be closed.
3
To close such port, you can use many programs. But the most simple is Windows Worms Doors Cleaner, with a volume of only 50 KB does not require installation (you can download it at: http://2ip.ru/download/wwdc.exe). After downloading it just run the malware and close the port that issued the computer analysis after the test. Then restart the computer. However, it is rather the action, so to speak, in haste, as the port may again be opened. Therefore, it is advisable to install a firewall (e.g. Outpost Firewall) and to maintain the status quo after the closure threat of the port.
4
Also does not interfere with the test computer using a free utility AVZ (can be downloaded from the link: http://www.z-oleg.com/secur/avz). During a quick test, it is necessary to detect errors of the system settings, probably shot down using the same port. For example, if you allow "anonymous user" you should disable it and restart the computer.

Advice 3 : How to see which ports are open

Can happen such situation that the traffic on your Internet can start "suddenly" somewhere "to go." In this case, attention should be given to ports of the computer to see where which application and which uses the - and to fix the situation based on position information.
How to see which ports are open
Instruction
1
There is such a situation that he does not want in any to run an application that uses a network for its operation - in this case, it is also worth checking if the port is open, which the program uses for its work. In General, situations when you need to find out the list of open ports are common. In order to see the list, you must use either third-party port scanners or standard utility for Linux and Windows: netstat. It runs from the command line. So open a command prompt. This can be done in two ways: 1. "Start" > "Run...". In the window that appears, enter "cmd" and press "Enter"; 2. To run the command line "manually", i.e. go to folder "C:\WINDOWS\System32" and run the program from there "cmd.exe".
2
Now you need to run the utility "netstat". To do this, type at the command line, which was launched in the first step, "netstat" and press "Enter".
For those who this little information, can explore the possibilities of this tool, run it with –h, that is, type in command prompt "netstat -h". The most probable and common keys to run: "netstat-b" - in this case the utility will display not only the open ports, but the apps that use these ports for its operation. "netstat 5". In the case of such starting information about the open ports will be displayed in increments of five seconds, the information will be updated every five seconds, and to stop the output of data with a given key, use the key combination "Ctrl+C".
3
Examine the information. In the command prompt window will display the open ports. It will look the following way: the command line will be divided into four parts, and in the left column will indicate the name of the Protocol in the second domain and after the colon is an open port, the third external address and the fourth state.

Advice 4 : How to find tcp port

Work computers connected to the network, control logic interfaces, which are called network protocols. For data exchange in the Internet use TCP/IP protocols.
How to find tcp port
Instruction
1
Internet Protocol (IP) defines a delivery of data from one network node to another. However, he does not guarantee the accuracy of delivery: packets in transit can be lost or not arrive in the order in which they were sent. Responsible for the accuracy the Protocol, the TRANSporttion level Transmission Control Protocol TCP. TCP establishes a connection, controls sending and receiving packets, duplicate their actions in that case, if the reply is not received or packets lost. It is important to understand that TCP sets the packet exchange, not just between nodes, and between software applications. The network port is a relative concept, a number from 1 to 65535 that specifies which application is assigned to the package.
2
To know what processes are used ports on your computer, you can use standard Windows tools. In the menu "start" click "run" and command prompt type cmd. Confirm with OK. In the console window type the command netstat -a-n-o.
3
In the PID column shows the number of the process in the column "Local address"is the IP address of your computer, a colon, the port number, which is busy with the appropriate process. "External address" is the IP and the port number of the remote host which is running some application.
4
In the console window type the command tasklist. It will return a list of all applications with ID PID running on the computer. So you learn, what process occupies any port on your computer.
5
Can obtain this information otherwise: run "task Manager" from the command line by typing taskmgr, or Ctrl+Alt+Delete. In the PID column find the number you are interested in process, in the column "image Name" – the name of the corresponding application or service. If PID is not displayed in the Manager window, go to "View" main menu and select the option "Choose columns". Tick the checkbox next to "Ref.the PID (process identifier)".

Advice 5 : How to check open port

Communication between the nodes in the network manage network protocols (logical interfaces) of different levels. Transport Protocol TCP establishes a connection between the host client and the node server and monitors the reliability of forwarding data packets. Data is exchanged between applications that are installed on the computers. The network port is a relative concept, a number that is assigned to the application that the transport Protocol knows where to direct packets. This number lies in the range from 1 to 65535.
How to check open port
Instruction
1
To the exchange of data occurred successfully, it is necessary that the appropriate ports at the nodes are open, i.e. can receive and transmit data. The process of finding open ports is called a scan. Do it and hackers, and system administrators: the first one to introduce malware on another computer, the second is to prevent the first to do it. Check the ports you can on your computer by installing a special program – scan the ports or by using online scanners. Go to the website WindowsFAQ.ru: http://www.windowsfaq.ru/content/view/451/82/.
2
If your computer has a firewall with attack detection and auto-blocking an attacking host, disable this option or add a WindowsFAQ.ru in the exception list, otherwise the scanner is blocked. In the section "scan Settings" enter the numbers of the first and final port of the range you want to check. It can be so-called reserved rooms from 1 to 1023, or all ports on your computer.
3
It is important to set the time during which the scanner will wait for a response from the port. If a "Timeout connection" (this option) to make too small, the port may not respond and will be incorrectly detected as closed. On the other hand, too much waiting time will significantly slow down the test. It is better to adopt the recommended value is 0.3 sec.
4
"Host address" and "host Name" is your IP address, which service determines automatically. If the address is not specified, scanning will not start. Click "OK" to start scanning. This will open a new window that displays the progress.
5
After searching, the result will be displayed:- date and time of the inspection;
- address of the host;
numbers checked ports;
- the number of open and closed ports;
- duration of the scanning.In addition, the service will give recommendations on how to identify the process which uses the open ports.
6
You can run a scan from your computer. Download the program "port Scanner v2.1" http://www.softportal.com/software-4285-skaner-portov.html.
7
In the section "Scan ports" enter in the boxes the start and end port numbers from the range that will be checked. If the computer is not in network, enter its IP address is not necessary. Ask in the appropriate section of the scan rate. It is determined by the response time of the port. It is better to choose the average speed, so, on the one hand, to avoid errors in the determination of the status of the port, and with another – not too tighten the verification process. Check the box "Output port information" to see the search result. The scanner finds open ports and determines the processes that use them.

Advice 6 : How to find open ports on your computer

The presence of open ports on your personal computer must be set to mandatory, since they can cause penetration into the system of malicious software. This can be done in several ways.
How to find open ports on your computer
Instruction
1
Install antivirus and firewall on your personal computer. This is the easiest way to find out open ports. Moreover, this way you will be able to prevent the impact of malicious software on your personal computer. If the antivirus program and fearful on your computer have not been established, it is possible that open restaurants already successfully used by malicious software and spyware.
2
Try to find open restaurants online. For this you will need a service online that provides such services. Guide online test to detect open ports that can serve as a gateway for malicious software. Open ports in the list are highlighted in red. Write down a single name of an open port, then to close.
3
Close the discovered open ports. This can be done using special programs. The most affordable and easy I use Windows Worms Door Cleaner. This program does not require installation and occupies a volume of only 50 KB. Download this program on official website, then run it on your personal computer.
4
Malware, close the port that was previously shown in the test analysis. After that, restart your personal computer. In the future, to keep track of open ports, install a firewall. For these purposes, perfect Outpost Firewall.
5
Check your personal computer use a free AVZ. It will help to identify errors in configuring the system that could be provoked by the influence of the open port. In addition, if open access to anonymous user, then for security purposes, your personal computer must be close.

Advice 7 : How to determine the port

On the computer at any time operates a variety of programs. In that case, if the program connects to the Internet, it is allocated a specific port. Sometimes the user may need to determine what port a particular program or service.
How to determine the port
Instruction
1
Open a command prompt: "start – All programs – accessories – Command prompt". Type netstat –aon and press Enter. You will see a list of existing connections. Look at the column "Local address" in it, in the end of each line, numbers open on your computer the portov.
2
To find outwhich program is opening these ports look at the last column – "PID". It shows the process IDs of the processes – i.e. their numbers. In the same command prompt window type the command tasklist and press Enter. You will see a window with the list of running processes on your computer. After each name is the number, this is PID. Looking at the column "Local address" PID of the program you are interested in opening the port, find this identifier in the list of running processes. Now, in the name of the process you will be able to understand which program opens that you are interested in the port.
3
In that case, if the process name tells you nothing and you don't know what program it belongs to, enter it in the search engine – you will get all the information about the process. Alternatively, use AnVir Task Manager – with its help, you will be able to trace where you are interested in starts the process.
4
Sometimes you need to know what portyou opened on the remote computer. In this case, use the scanner ports – for example, Nmap and XSpider. For scanning you need to know the ip address of the remote computer. Enter it in the box ' program, set the desired options (read about them in the program instructions) and run the scan. After the program finishes, you will receive information about the port ofAh, open on the remote machine. Most often such open ports, as port 21 – ftp, 23 – telnet, 3389 - Remote Desktop, 4988 – Radmin, etc. the Law does not prohibit the scanning – however, if the resource Manager will notice the scan, it may prohibit access from your ip address.
5
You can scan and own computer by entering the address 127.0.0.1. In this case, you will get all the information about the open port,Oh that will help you to ensure the highest degree of safety. Always try to close the extra services that have access to the Internet. This can help you with the program however is able to close some vulnerable to attack the port ofs – in particular, 445 and 137. Use it if you are working with Windows XP.

Advice 8 : How to watch network activity

There are tray icons in the form of two computers, the user in General terms to judge the network activity of the machine. In that case, even if the idle computer is actively communicating with the Internet, there is a need to better control traffic.
How to watch network activity
You will need
  • - the right to run applications on the local computer.
Instruction
1
A properly configured computer will never himself to go into the network. The only exceptions are the planned updates to the operating system and antivirus software. If the computer constantly goes to the network, you can assume its wrong settings or virus activity.
2
To see the network activity of the computer, start a command prompt: "start – All programs – accessories – Command prompt". Type netstat –aon and don't forget to press Enter. You will see a table of five columns. In the first followed by the Protocol – UDP or TCP. The second lists all active connections, while you can see and open on your machine ports. The third column shows the external address, the fourth connection status. In the fifth you can see PID – numeric identifier of the process.
3
Specified in the second column, ports say that they have opened some programs, among which may be Trojans. In order to understand which program opens a particular port in the same window, type the command tasklist – you will see a list of running processes. Thus immediately after the name of the executable file will be process ID.
4
For example, you see that you have opened port 1025, it PID 1480 (your may be different). Find this ID in the list of processes and see what program it belongs to. If you don't know what is this program, type its name in the search engine.
5
The column "Status" allows you to see connection status. For example, LISTENING suggests that the program is in the wait state of the connection. Behave backdoors – Trojans, the server part is on the victim's computer. But in this state, there may be other programs – for example, Windows services. In Windows XP some potentially dangerous ports can be closed with the utility however it can be downloaded online.
6
If you want a full analysis of traffic, use BWmeter. It will monitor all connections to your computer with the ip address, data can be written to the log. The program is useful for computing a spyware, and for the identification and subsequent shut down of various services, climbing to the network without the permission of the owner of the computer.

Advice 9 : How to know local port

Each network program, the operating system allocates the local portthrough which the and communicates. Sometimes you need to know on what portfrom working the program or what application a particular port.
How to know local port
Instruction
1
Information on the use of the portof am may be necessary in the case of suspected infection by computer Trojans. On it, in particular, may indicate features such as increased traffic or network activity of the computer at the time, when you do not use the Internet.
2
If you suspect infection of your computer first check which local portyou opened on it. To do this, open a command prompt: "start" - "All programs" - "Accessories" - "Command prompt". Enter in the terminal window the command netstat – aon, it will show all current connections.
3
In the first column of the list indicates the type of connection. In the second local address and the used port. The column "Foreign address" shows the address which connects your computer. In the column "Status" you can view the status of the connection – whether it exists in the moment - ESTABLISHED, over – TIME_WITE or program listens to the port, that is ready for communication – LISTENING. Finally, the PID column shows the process ID is a numeric code through which you can easily understand what the process is "hanging" on a particular port.
4
Type in the same window, the tasklist command, you will see a list of running processes. In the second column, just behind the names of the processes indicated by their identifiers. For example, you see on the first list that you open a local port 3564. Then look in the last column (PID) and find the process ID – for example, 3388 (data are different). Now go to the second table, the second column the PID 3388 and to the left of it you see the name of the opened this port of the program.
5
To get more information about addresses that connects to your computer, use the appropriate network services. For example, this: http://www.ip-ping.ru/whois/ Enter in the desired ip address, click "Request" and you will get all available data.

Advice 10 : How to see active connections

In the course of work on the Internet the computer connects to a different network address. Sometimes, the user need to know which ip is currently connected. This can be done using features of the operating system and installing additional software.
How to see active connections
Instruction
1
Normally you need to view the active connections associated with the suspected infected computer of spyware. A properly configured computer must be connected to the network only when you open some page, or during the upgrade OS files and databases for the antivirus program. If the indicator of the network connection in the system tray and then "alive" itself and the computer, regardless of you, communicates with the Internet some information, you must find out the reasons of such network activity.
2
Open a command prompt, to do this, run: "start" - "All programs" - "Accessories" - "Command prompt". In the opened window enter the command netstat –aon and press Enter. You will see a list of all network connections that are active will be marked in the column "Status" as ESTABLISHED.
3
Note the column "Foreign address" it shows the ip with which were connected with your computer and connection port. Port 80, for example, typical web servers. But if you see some other port, this is cause for alarm. In this case, you need to find out what is installed on your computer, the application opens the connection.
4
Look at the last column, it lists the process identifiers (PID). Remember the ID of the suspicious process, then in the same window, type the command tasklist. Opens the list of running processes on your computer. In the first column indicates the names of the processes in the second – their IDs. Find the ID of a suspicious process, then to his left, view the name of the program to which it belongs.
5
What if the name of the process mean nothing to you? Type it into a search engine and you will get all the information about the process. If not, then it is very likely that you "caught" a new Trojan program, details of which have not yet hit the Internet and the database of the antivirus.
6
Pay attention to which port opens suspicious process – information about the open ports present in the column "Local address". Check the processes in the wait state connection – LISTENING. Behave backdoors – Trojans designed for concealed connection to the compromised computer. The server part of this program always "hangs" on some port and waits for connection from a computer hacker.
7
For full control of the connections, install the software BWMeter. This is one of the best programs of this class, it will allow you to see what address connects your computer, it is possible to record information in the log.

Advice 11 : How to know free ports

Your computer has more than 65 thousand ports. Some of them are busy opening their programs. All the rest – are free. If the user notices a suspicious network activity on your computer, you should see open ports and find out which programs open them.
How to know free ports
Instruction
1
A properly configured computer communicates with the Internet only in two cases: when you are working in a network and update the antivirus database or operating system. If you see that the computer itself "climbs" in the network, it is a reason to scan it.
2
You should know that even protected with antivirus and firewall computer is not invulnerable. Hackers long ago learned how to deceive the most well-known virus protection programs, so carefully follow the behavior of a computer and regularly check the open ports.
3
To check open ports, open a command prompt: "start" - "All programs" - "Accessories" - "Command prompt". There's an easier way: "start" - "Run", enter cmd, and click OK. Enter in the command window netstat –aon, run the utility by pressing Enter.
4
In the first column of the table that appears, specify the type of network connection. The second "Local address" you will see the local address and open ports (for address, after the colon). In the column "Foreign address" indicates the network address, which connects your computer.
5
Pay attention to the section "Status" that indicates the connection status: ESTABLISHED – the connection is established. LISTENING – waiting for a connection. CLOSE_WAIT – the connection is completed. Finally, the last column PID shows the process ID. This is the number under which the particular process appears in the system.
6
Due to the presence of PID you can figure out what program opens a particular port. For example, you see that you have opened the port 1499, ID – 1580 (it will be different). Type in the same window the command line command tasklist. You will see a list of all processes, while the second column contains their identifiers (PID). Now you need to find this column you are interested in PID, in this case 1580. Find, look in the left column, the name of the process – let it be AAWService.exe.
7
If the process name is unfamiliar to you, enter it in the string search engine. Entered, received information the process belongs to the software Ad-Aware. You have on a computer this program? Whether it runs automatically at startup? Whether it is necessary to you? Run Aida64 (Everest) and look at the startup folder and, if necessary, then delete the file Ad-Aware. If you do not like this program then AAWService.exe - the process of a Trojan masquerading as a popular tool. Use this algorithm to check all other applications that open ports.
8
Look for connections with LISTENING. The app listens on the port waiting for a connection. In this way can act as "legal" programs – for example, Windows services and Trojan, pending when they will be connecting to.
Is the advice useful?
Search