I started to notice recently that the ISA 2000 server's packetfilter log has a lot of outgoing traffic entries from my primary external IP to a destination IP for port 137. Here is the log. 2005-04-25 14:04:01 136.x.53.52 209.227.167.170 Udp 2088 137 - BLOCKED Although the traffic is blocked, I am just curious why this happens. In fact, there wasn't any traffic from 209.227.167.170 to begin with. Does this indicate any virus problem? The scan reveals nothing. Thanks for your help. --------------------------------- Do you Yahoo!? Yahoo! Small Business - Try our new resources site!