techPowerUp! Forums

Go Back   techPowerUp! Forums > Hardware > Networking & Security

Reply
 
Thread Tools
Old Sep 21, 2010, 06:51 PM   #1
MohawkAngel
Banned
 
Join Date: Jan 2009
Posts: 1,814 (1.15/day)
Thanks: 87
Thanked 128 Times in 116 Posts
Send a message via MSN to MohawkAngel

System Specs

Need help on those attacks



I got those in my router so can you tell me if its dangerous and what type of attacks are they ?

Also is there any way to atack back those mother fuc**** ?
MohawkAngel is offline  
Reply With Quote
Old Sep 21, 2010, 06:54 PM   #2
Frick
Fishfaced Nincompoop
 
Frick's Avatar
 
Join Date: Feb 2006
Location: Sweden
Posts: 7,870 (2.98/day)
Thanks: 1,075
Thanked 1,443 Times in 1,149 Posts

System Specs

It think it's just a port scan. That's life on the web.
__________________
Typemachine: Acer Aspire One D250 | Atom N280 1.6 Ghz | 1GB DDR2 | 160GB SATA | 10.1' 1024 x 600 | Lubuntu 12.10
Oldbox: HP D530 | Pentium 4 2.8 Ghz | 1GB DDR | 40GB | Windows XP
"The 'gentle biker' look is overdone. I'm going for 'psycho hillbilly.' "
Frick is offline  
Reply With Quote
Old Sep 21, 2010, 07:01 PM   #3
Kreij
Hardcore Monkey Moderator
 
Kreij's Avatar
 
Join Date: Feb 2007
Location: Cheeseland (Wisconsin, USA)
Posts: 12,110 (5.28/day)
Thanks: 591
Thanked 5,488 Times in 2,932 Posts

System Specs

Looks like typical internet "noise" (bots, zombies, script kiddies, etc.) scanning ports for vulnerabilities. Given that they are being reported your router seems to be doing its job.
__________________

Cloud (noun, singular): A dynamic arrangement of multiple potential single points of failure, with a user at one end and their data at the other.


Get more tech news on a wide variety of topics at NextPowerUp
Kreij is offline  
Reply With Quote
Old Sep 21, 2010, 07:06 PM   #4
PVTCaboose1337
Graphical Hacker
 
PVTCaboose1337's Avatar
 
Join Date: Feb 2006
Location: San Antonio, Texas
Posts: 7,478 (2.81/day)
Thanks: 798
Thanked 1,174 Times in 834 Posts

System Specs

You won't be able to prevent port scans. Personally, as a sysadmin of my home, any scan I get I get the IP, trace it to a certain ISP. (no, no backtracing, no cyberpolice idiots). I have called the ISP personally of 2 individuals and reported "criminal activity" in the most "I know what I am talking about" tone possible. The port scans stopped from both addresses, the ISP does something, sends a warning letter, cuts off service, I don't know, but problems on my end stop!

Picture is so related :

Attached Thumbnails
Click image for larger version

Name:	1280786214381.png
Views:	287
Size:	172.7 KB
ID:	38082  
__________________
CPU-Z validation sig pics temporarily blocked

Last edited by PVTCaboose1337; Sep 21, 2010 at 07:16 PM. Reason: of != off
PVTCaboose1337 is offline  
Reply With Quote
The Following User Says Thank You to PVTCaboose1337 For This Useful Post:
Old Sep 21, 2010, 07:09 PM   #5
Frick
Fishfaced Nincompoop
 
Frick's Avatar
 
Join Date: Feb 2006
Location: Sweden
Posts: 7,870 (2.98/day)
Thanks: 1,075
Thanked 1,443 Times in 1,149 Posts

System Specs

Somehow I read that you tracked the individuals down, but then I read it again. ^^

I would not have thought about that though. Good tip, although I couldn't be bothered with it.
__________________
Typemachine: Acer Aspire One D250 | Atom N280 1.6 Ghz | 1GB DDR2 | 160GB SATA | 10.1' 1024 x 600 | Lubuntu 12.10
Oldbox: HP D530 | Pentium 4 2.8 Ghz | 1GB DDR | 40GB | Windows XP
"The 'gentle biker' look is overdone. I'm going for 'psycho hillbilly.' "
Frick is offline  
Reply With Quote
Old Sep 21, 2010, 07:11 PM   #6
PVTCaboose1337
Graphical Hacker
 
PVTCaboose1337's Avatar
 
Join Date: Feb 2006
Location: San Antonio, Texas
Posts: 7,478 (2.81/day)
Thanks: 798
Thanked 1,174 Times in 834 Posts

System Specs

Quote:
Originally Posted by Frick View Post
Somehow I read that you tracked the individuals down, but then I read it again. ^^

I would not have thought about that though. Good tip, although I couldn't be bothered with it.
It takes them maybe a few minutes to port scan you, and if you take 20 minutes out of your day to ruin their lives (or at least internet), it is worth it. Trust me.

PS: It is damn obvious when someone is behind proxies, so you are out of luck when they are.
__________________
CPU-Z validation sig pics temporarily blocked

Last edited by PVTCaboose1337; Sep 21, 2010 at 07:17 PM. Reason: Fragment
PVTCaboose1337 is offline  
Reply With Quote
Old Sep 21, 2010, 07:24 PM   #7
MohawkAngel
Banned
 
Join Date: Jan 2009
Posts: 1,814 (1.15/day)
Thanks: 87
Thanked 128 Times in 116 Posts
Send a message via MSN to MohawkAngel

System Specs

The thing is that i unchecked the square saying Respong to wan ping attack.! so why i get wan ping attack if its supposed to not respond to those ping ?
MohawkAngel is offline  
Reply With Quote
Old Sep 21, 2010, 11:00 PM   #8
95Viper
3500 Posts
 
95Viper's Avatar
 
Join Date: Oct 2008
Location: στο άλφα έως ωμέγα
Posts: 3,838 (2.28/day)
Thanks: 2,032
Thanked 1,416 Times in 1,115 Posts

System Specs

Have you got a xbox, ps3, or something hooked up?
And, have you been or are playing any IGN games or connecting to their host or a server that hosts games by them?

If not, then, it is BS ping from them. Remember the MATRIX. (play eerie music here, please)

95Viper is offline  
Reply With Quote
Old Sep 21, 2010, 11:12 PM   #9
MohawkAngel
Banned
 
Join Date: Jan 2009
Posts: 1,814 (1.15/day)
Thanks: 87
Thanked 128 Times in 116 Posts
Send a message via MSN to MohawkAngel

System Specs

Nothing here except computer. Maybe played IGN map in Battlefield 2 .....dont know. If its really the matrix ill screw them by using the old rotary phone :P
MohawkAngel is offline  
Reply With Quote
The Following User Says Thank You to MohawkAngel For This Useful Post:
Old Sep 21, 2010, 11:24 PM   #10
95Viper
3500 Posts
 
95Viper's Avatar
 
Join Date: Oct 2008
Location: στο άλφα έως ωμέγα
Posts: 3,838 (2.28/day)
Thanks: 2,032
Thanked 1,416 Times in 1,115 Posts

System Specs

Yeah, the Xmas port scan is coming from an IGN Entertainment server.

Don't worry 'bout it, everyone gets port scanned, by your ISP even.

You can go here, to GRC(Gibson Research) and do a port scan yourself. See, what is open, stealthed, and closed(blocked). Any of them open that you don't want open... stealth or close 'em; it gives the port numbers and stuff, just mouse around for more info.

Goodluck
95Viper is offline  
Reply With Quote
Old Sep 22, 2010, 06:24 AM   #11
MohawkAngel
Banned
 
Join Date: Jan 2009
Posts: 1,814 (1.15/day)
Thanks: 87
Thanked 128 Times in 116 Posts
Send a message via MSN to MohawkAngel

System Specs

GRC Port Authority Report created on UTC: 2010-09-22 at 06:24:23

Results from scan of ports: 0-1055

0 Ports Open
2 Ports Closed
1054 Ports Stealth
---------------------
1056 Ports Tested

NO PORTS were found to be OPEN.

Ports found to be CLOSED were: 0, 1

Other than what is listed above, all ports are STEALTH.

TruStealth: FAILED - NOT all tested ports were STEALTH,
- NO unsolicited packets were received,
- NO Ping reply (ICMP Echo) was received.
MohawkAngel is offline  
Reply With Quote
Old Oct 4, 2010, 06:57 AM   #12
andrew123
25 Posts
 
Join Date: Jan 2010
Location: Canada
Posts: 30 (0.02/day)
Thanks: 1
Thanked 3 Times in 3 Posts

yeah, it's life on the internet.. i have an ssh box I use at home and when I check my auth.log it shows nightly portscans usually from 2 or 3 addresses.. c'est la vie.
andrew123 is offline  
Reply With Quote
Old Oct 4, 2010, 07:08 AM   #13
qubit
Overclocked quantum bit
 
qubit's Avatar
 
Join Date: Dec 2007
Location: Quantumville UK
Posts: 8,641 (4.34/day)
Thanks: 4,169
Thanked 3,301 Times in 1,941 Posts

System Specs

I wouldn't worry about it.

A few years ago my IPCop firewall registered upto 15000 hits a day - and every single one of them bounced off. That was at the height of some virus outbreak. It was all over the media and I remember people running around at work like headless chickens over it. Boy that was funny!

Nowadays, it's only a few hundred to a 1000 at the most. Shame.
__________________
Siggie in the post.

Last edited by qubit; Oct 4, 2010 at 09:28 AM. Reason: Clarified
qubit is offline  
Reply With Quote
Old Oct 4, 2010, 07:37 AM   #14
segalaw19800
200 Posts
 
segalaw19800's Avatar
 
Join Date: Jan 2010
Location: Stockton CA
Posts: 371 (0.31/day)
Thanks: 111
Thanked 61 Times in 52 Posts

System Specs

try this link to trace ip .. http://www.ip-adress.com/
__________________
Cheese is always free on a mouse trap
segalaw19800 is offline  
Reply With Quote
The Following User Says Thank You to segalaw19800 For This Useful Post:
Old Oct 5, 2010, 02:58 AM   #15
gunsmoke
200 Posts
 
gunsmoke's Avatar
 
Join Date: Mar 2010
Location: u.k.
Posts: 277 (0.24/day)
Thanks: 100
Thanked 34 Times in 27 Posts

System Specs

Quote:
Originally Posted by MohawkAngel View Post
http://img.techpowerup.org/100921/WBR-1310.jpg

I got those in my router so can you tell me if its dangerous and what type of attacks are they ?

Also is there any way to atack back those mother fuc**** ?
why not try a ip mask i no it can hide you on line but mite slow down your isp tho.
it worked for me this onces with the same problemes you are haveing i had all so years,
Ago
gunsmoke is offline  
Reply With Quote
Old Oct 5, 2010, 03:17 AM   #16
AsRock
TPU addict
 
Join Date: Jun 2007
Location: US\ Uk Born
Posts: 8,785 (4.07/day)
Thanks: 1,669
Thanked 1,345 Times in 1,167 Posts

System Specs

If you want to block and put the computer is stealth try Outpost Firewall. As you get used the program you can do much more than your typical FW.

To test even further try this site http://www.pcflank.com/about.htm?from=ossmyinternet08

EDIT: BTW are you running a bittorrent ?. That could be why you getting so many port scans.
AsRock is online now  
Reply With Quote
The Following 2 Users Say Thank You to AsRock For This Useful Post:
Old Oct 5, 2010, 05:21 AM   #17
f22a4bandit
200 Posts
 
f22a4bandit's Avatar
 
Join Date: Sep 2010
Location: SATX
Posts: 462 (0.47/day)
Thanks: 210
Thanked 200 Times in 115 Posts
Send a message via AIM to f22a4bandit

System Specs

Quote:
Originally Posted by AsRock View Post
If you want to block and put the computer is stealth try Outpost Firewall. As you get used the program you can do much more than your typical FW.

To test even further try this site http://www.pcflank.com/about.htm?from=ossmyinternet08

EDIT: BTW are you running a bittorrent ?. That could be why you getting so many port scans.
That's a really good site there, AsRock.
f22a4bandit is offline  
Reply With Quote
Old Oct 5, 2010, 05:56 AM   #18
Solaris17
Creator Solaris Utility DVD
 
Solaris17's Avatar
 
Join Date: Aug 2005
Location: Reinacting scenes from platoon with Charlie Sheen
Posts: 13,708 (4.84/day)
Thanks: 4,365
Thanked 3,295 Times in 2,311 Posts
Send a message via ICQ to Solaris17 Send a message via AIM to Solaris17 Send a message via MSN to Solaris17 Send a message via Yahoo to Solaris17 Send a message via Skype™ to Solaris17

System Specs



having your ID stolen blows im tagged for life. stay safe people the internet is a real place were real people with bad intentions REALLY exist.
__________________
I Made the Millionth post! | "Please come to WI now so I can beat you over the head with a bratwurst."-Kreij
PS3 mod 8500/8600GT Mod Guide Rebuild a Copperhead Heat Ware
NF4 Ultra SLI Mod Solaris Utility DVD 4.0 Broken CPU pin guide
Vista Mark
Solaris17 is offline  
Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Attacks on Adobe Intensify Polaris573 News 3 Feb 12, 2008 02:42 AM
WinFlash 1.84 (for those who need it) SpoonMuffin Motherboards & Memory 0 Oct 31, 2007 09:50 PM
For all those axp/p4 users who need an upgrade AshenSugar General Hardware 1 Sep 21, 2006 11:11 AM


All times are GMT. The time now is 09:22 PM.


Powered by vBulletin® Version 3.8.6
Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
no new posts