|
#1
|
|||
|
|||
|
can anyone tell me whats exactly going on ? because my router show tis log every minute sometimes and non stoping the ip is quite random i think today been showing over 30-50 i cant count exactly, is tat safe actually ?
|
|
#2
|
||||
|
||||
|
if you use torrents, expect to see quite log entry...
__________________
VPN Case Study (www.vpncasestudy.com) Our Second To None VPN Related Setup Case Study "One Stop Solution To Your Netgear VPN Connectivity" *Visit the site for Non-VPN related Doc & Links* [Windows & Mac user/support] Most Other Useful Docs -"General Technical Documentation", "Router Reset", "Router Setup", "Print Server Tips", "Remote Admin" "Wireless Tips" Forum Policy June Mizoguchi-i....@vpncasestudy.com |
|
#3
|
|||
|
|||
|
But I don't use any torrent and I never download anything , normalli I connect 1 laptop for mmorpg and a desktop for buff movie , could it be virus or something , if 1 or 2 log show that I'm fine but showing 1 every minute is abit worry me , Ty for explain to me
|
|
#4
|
||||
|
||||
|
post the log
__________________
VPN Case Study (www.vpncasestudy.com) Our Second To None VPN Related Setup Case Study "One Stop Solution To Your Netgear VPN Connectivity" *Visit the site for Non-VPN related Doc & Links* [Windows & Mac user/support] Most Other Useful Docs -"General Technical Documentation", "Router Reset", "Router Setup", "Print Server Tips", "Remote Admin" "Wireless Tips" Forum Policy June Mizoguchi-i....@vpncasestudy.com |
|
#5
|
|||
|
|||
|
[DoS Attack: RST Scan] from source: 202.1.204.70, port 47501, Monday, February 28,2011 08:51:52
[DoS Attack: ACK Scan] from source: 97.74.215.41, port 443 i reset and turned off my router and modem last night so i lost those log.when i turn on the modem i got these again , but not as many as last night. are these means dangerous ? or just leave it ?
|
|
#6
|
|||
|
|||
|
Perfectly normal ramdom internet noise, which is being blocked as it should be.
Quote:
|
|
#7
|
||||
|
||||
|
I agree, several thousands per week never bothered me. I used to use some software to analyse the logs, but eventually got bored and remembered there’s more to life.
__________________
I don't work for Netgear. My name is Andy. |
|
#8
|
|||
|
|||
|
ok i understand now thnx!
|
|
#9
|
|||
|
|||
|
what is happening when immediately after the recorded DoS, the router shows Internet disconnected.
the ACK scans (in goups of 5-6) then sometimes DoS (one or two) occur dozens of times a day, with loss of internet after each DoS. requires power cycle to recover (admin reconnect does not succeed). why does router fail after this DoS? the attacks follow one computer (of many), forced reassignment of IP results in attach resuming on new IP within 10s min. unable to find some piece of a Torrent based application (suspected) that broadcasts the IP. any hint on how do i find what is broadcasting the IP for the torrent to attempt access? |
![]() |
| Thread Tools | |
| Display Modes | |
|
|