• Welcome to TechPowerUp Forums, Guest! Please check out our forum guidelines for info related to our community.

ICMP attacks for me! help!

Joined
May 4, 2013
Messages
98 (0.02/day)
My friend is attacking me to the ICMP attack for my router.
my router model is TP-LINK WR841N.
how i stop the attacks?
 
how i stop the attacks?

Well you pay him a visit, Knock on his door, as he opens it, knock him the fuck out. :slap:
Just attack him. simple shit man.
 
Well you pay him a visit, Knock on his door, as he opens it, knock him the fuck out. :slap:
Just attack him. simple shit man.

LOL.. you make me laugh
yea, why your friend attack you? :confused:
 
If you have a dynamic IP, just disconnect your router and reconnect so it fetches another IP.

There is nothing else you can do on your end to mitigate the attack, as it's overloading your incoming line. You could call your ISP and explain the situation, they can drop all packets from your friend before they enter your line, but this usually also means they'll inform the authorities
 
Bo$$ had the best solution
 
If you have a dynamic IP, just disconnect your router and reconnect so it fetches another IP.

There is nothing else you can do on your end to mitigate the attack, as it's overloading your incoming line. You could call your ISP and explain the situation, they can drop all packets from your friend before they enter your line, but this usually also means they'll inform the authorities

If you use a spoofed MAC address on your router and restart your modem, DHCP will automatically get you a new IP. Just restarting the modem won't get you a new IP unless the lease time is incredibly short and more often than not I find that it's an hour or longer (mine is several days,) so the only way for me to force it to give me a new IP is by using a different MAC.

Afterwards you should do what Bo$$ described. You have to make sure it doesn't happen again. :)

You could also tell your router to block incoming ICMP packets, most routers can do this.

Edit:
Here we go, nothing like a user manual to help you out:
icmp.PNG


Enable both highlighted settings and set the packets/s for the ICMP flood filter to 25. That should work nicely.

Now you really can tell him to shove it and do what Bo$$ suggested and you know regardless of the outcome, he won't be doing it again. :)
 
Last edited:
ICMP flood filter

that wont work, unless your network connection has more bandwidth than the attacker has bandwidth. no matter what you set on the router, packets will still travel from your ISP to your router and congest your line
 
use some tool like "wireshark" to catch the ICMP flood attack by pattern (usually it is mainly same type / size),
match it and drop that packets directly on router via iptables rules set .....
 
use some tool like "wireshark" to catch the ICMP flood attack by pattern, match it and drop that packets directly on router via iptables rules set .....

see my previous post
 
see my previous post

works m8, done this on DNS Reflection Attack for Anycast..... :)
it drops by rule hex notation in packet header
 
Enable both highlighted settings and set the packets/s for the ICMP flood filter to 25. That should work nicely.

Now you really can tell him to shove it and do what Bo$$ suggested and you know regardless of the outcome, he won't be doing it again.


works or not?
 
works m8, done this on DNS Reflection Attack for Anycast..... :)
it drops by rule hex notation in packet header

it might work on some attacks, but not on a normal icmp flood or any other type of attack that's trying to use up all your incoming bandwidth
 
Call your ISP, call the police. If someone is doing this to you, they are not your friend. Find out the penalties for cybercrimes and inform him that you will take action to stop him.

If you aren't going to do that, then do as Bo$$ suggested.
 
Tell him you're serious about calling the police. A joke for a couple of minutes might be ok, but if he persists...
 
By the way, my previous router did not work anymore since the attacks. It affects?
and we are purchase the TP-LINK router from ISPs.
 
They are not a good friend
 
Get one of these:



  1. Knock on his door
  2. Quickly pull the trigger on the stun gun
  3. Watch him fall
  4. Go back home and look at your animal porn
 
Make your friend get you a new router and pay for your connection for the next few years and also do what Dr. Deathx said
 
By the way, my previous router did not work anymore since the attacks. It affects?
and we are purchase the TP-LINK router from ISPs.
 
Back
Top