It looks as though someone is trying to drop a trojan/backdoor on your machine (port 56137). I am checking for more deatils on this port. The ipBlock belongs to Galactica (milan, Italy). This ip belongs tp lisa.galactica.it. (or does now ..contact galactica for mroe info. look for abuse@ email address
Will get back with more info ... Email other scans if you dont want to post them ..
julian@newcentcom.com
Results of lookup
---------------------------
Ip Is In Milan, Italy
Report for 212.41.192.23
Analysis: IP packets are being lost past network "UUNET PIPEX" at hop 14. at hop Connections to HTTP port 80 are being
rejected.
------------------------------------------------------------------------------------------------------------------------------------------------------------
| Hop | %Loss | IP Address | Node Name | Location | Tzone | ms | Graph | Network |
------------------------------------------------------------------------------------------------------------------------------------------------------------
| 0 | | 161.58.180.113 | win10115.iad.dn.net | Dulles, VA, USA | -5.0 | | | Verio, Inc. |
| 1 | | 161.58.176.129 | - | ?Englewood, CO 80112 | | 0 | x | Verio, Inc. |
| 2 | | 161.58.156.140 | - | ?Englewood, CO 80112 | | 0 | x | Verio, Inc. |
| 3 | | 129.250.27.190 | ge-1-3-0.r00.stngva01.us.bb.verio.net | Sterling, VA, USA | -5.0 | 0 | x | Verio, Inc. |
| 4 | | 129.250.3.157 | p16-7-0-0.r01.mclnva02.us.bb.verio.net | Mclean, VA, USA | -5.0 | 0 | x | Verio, Inc. |
| 5 | | 204.255.169.89 | ATM5-0.BR3.DCA6.ALTER.NET | Washington, DC, USA | -5.0 | 0 | x | UUNET Technologies, Inc. |
| 6 | | 152.63.38.118 | 0.so-3-1-0.XL1.DCA6.ALTER.NET | Washington, DC, USA | -5.0 | 0 | x | UUNET Technologies, Inc. |
| 7 | | 152.63.35.113 | 0.so-0-0-0.XR1.DCA6.ALTER.NET | Washington, DC, USA | -5.0 | 0 | x | UUNET Technologies, Inc. |
| 8 | | 152.63.11.101 | 0.so-4-0-0.TR1.DCA6.ALTER.NET | Washington, DC, USA | -5.0 | 0 | x | UUNET Technologies, Inc. |
| 9 | | 152.63.10.121 | 121.at-4-0-0.IR1.DCA6.ALTER.NET | Washington, DC, USA | -5.0 | 0 | x | UUNET Technologies, Inc. |
| 10 | | 146.188.13.34 | SO-0-0-0.IR1.DCA4.Alter.Net | Washington, DC, USA | -5.0 | 0 | x | UUNET PIPEX |
| 11 | | 146.188.3.202 | so-5-0-0.TR1.FFT1.Alter.Net | Frankfurt, Germany | +1.0 | 78 | x | UUNET PIPEX |
| 12 | | 146.188.8.94 | 297.at-4-0-0.XR2.MLN4.Alter.Net | Milan, Italy | +1.0 | 93 | x | UUNET PIPEX |
| 13 | | 146.188.4.201 | 314.ATM5-0-0.GW2.MLN4.Alter.Net | Milan, Italy | +1.0 | 93 | x | UUNET PIPEX |
| 14 | | 146.188.37.42 | Galactica-gw.customer.ALTER.NET | - | | 106 | x------ | UUNET PIPEX |
| 15 | 100 | ?146.188.37.42 | Galactica-gw.customer.ALTER.NET | | | | | UUNET PIPEX |
| 16 | 100 | ?212.41.192.23 | ?lisa.galactica.it | | | | | Galactica.it Network - Milano |
------------------------------------------------------------------------------------------------------------------------------------------------------------
domain: galactica.it
x400-domain: c=it; admd=0; prmd=galactica;
org: Galactica Spa
admin-c: PL1155
tech-c: MM4349
postmaster: MM4349
zone-c: MM4349
nserver: 212.41.208.6 dns.galactica.it
nserver: 193.205.245.8 dns2.nic.it
remarks: Fully-Managed
mnt-by: GALACTICA-MNT
created: before 960129
changed: hostmaster@nic.it 19990826
source: IT-NIC
%%% End of referred query result