Jump to content

Malwarebytes

SNMP trap in windows 7 firewall


3 replies to this topic

#1
fivealive

    Elite Member

  • Honorary Members
  • PipPipPipPipPip
  • 790 posts
  • Gender:Male
  • Location:canada
So i was removing a game from my computer and well i was removing the left over files i went into the windows firewall and noticed something by the name of SNMP trap. Now what i found odd is it didnt have permission (no checkmark in the boxes) to go thru the firewall but is till find anything on the internet about what it is.

any help would be greatly appreciated

#2
daledoc1

    Forum Deity

  • Spam Hunters
  • PipPipPipPipPipPip
  • 7,738 posts
  • Gender:Not Telling
Hi, fivealive:

I'll bet David H. Lipman will know EXACTLY what this is (seems to be related to networking and something right up his alley). :)

In the interim, a quick Google search of "SNMP trap" turned up a wikepedia article and several more:
http://en.wikipedia....gement_Protocol

Mostly geek-speak to me, but it seems to be legit?

daledoc1
Just a home user & forum volunteer
DT1: Win7/Ult/64 SP1; Intel Core i7-3770 @3.4 GHz; 16 GB RAM; NVidia GeForce GT620; IE9; Fx 21.0; TB 17.0.6; Cable HSI; MBAM PRO 1.75.0.1300; KIS2013; SAS Free; CCleaner
DT2: Win7 Ult/64 SP1; Intel Core i7-860 @2.8 GHz; 8 GB RAM; ATI Radeon HD 5770; IE 9, Fx 21.0; TB 17.0.6; Cable HSI; MBAM PRO 1.75.0.1300; KIS2013; SAS Free; CCleaner.
LT: Win7 Pro/32 SP1; Intel Core 2 Duo @2.8 GHz; 4 GB RAM; NVIDIA Quadro NVS 160M; IE 9; Fx 21.0; TB 17.0.6; WLAN; MBAM PRO 1.75.0.1300; KIS2013; SAS Free; CCleaner.

#3
David H. Lipman

    Forum Deity

  • Experts
  • PipPipPipPipPipPip
  • 2,464 posts
  • Gender:Male
  • Location:Jersey Shore USA
  • Interests:Malware Research, dSLR Photography, Numismatics & Surf Fishing
LOL, yes I do.

SNMP - Simple Network Management Protocol

There are two parts for SNMP which uses the UDP protocol (SNMP 161 & SNMP Trap 162).

SNMP is loaded on a system or device and using an associated platform related Management Information Base (MIB) you can query the device for its state and health.

Additionally there is a SNMP Trap daemon loaded on a centralized system (Network Management Station - NMS) that receives alerts from systems and devices and keeps records of the alert events. For example if a system has a fault it will send a datagram over UDP port 162 message to the NMS (SNMP Trap IP address).

SNMP is well known and there is a plethora of information on the 'net describing SNMPv1, SNMPv2 and SNMPv3.

Wireshark can decode SNMP trap messages and in "C:\Program Files\Wireshark\snmp\mibs" are various Management Information Bases (MIBs).

SNMP can also be used internally by a Windows system through the Windows Management Instrumentation (WMI)
David H. Lipman
DLipman@Verizon.Net

#4
fivealive

    Elite Member

  • Honorary Members
  • PipPipPipPipPip
  • 790 posts
  • Gender:Male
  • Location:canada
Ah alright thank you i did try and google it but i didnt get a wiki article on it at all.





1 user(s) are reading this topic

0 members, 1 guests, 0 anonymous users

Follow Us