packet use sport 500, dport 500 and suspicious dst_IP to SEND out

OS: win 7 64 bit.
Firewall: win7’s firewall

I find out there are many packets sent out with sport 500 and dport 500. (some info shows this port is used for vpn)

one of my firewall message ex.
2015-06-27 14:25:59 ALLOW UDP MY_IP 500 500 0 – – – – – – – SEND

Several destination IPs googled can be found listed in the “The Anti Hacker Alliance fights against Internet worst Spammers,….”.

I doubt my computer is infected and hijacked by backdoor viruses.
But the avg 2015 pro scans out none of it.

Source: virus

Leave a Reply

This site uses Akismet to reduce spam. Learn how your comment data is processed.