free

News

collapse

User Info

 
 
Welcome, Guest. Please login or register.
Did you miss your activation email?

* Recent Posts

Re: Argonath RPG Official Clan: Svensson - Est. 2007 by Mr. Goobii
[August 20, 2025, 03:12:11 pm]


Re: The Soprano Family | Royal Loyalty by Dean.
[August 03, 2025, 11:23:58 pm]


Re: Rest in peace by Dean.
[August 03, 2025, 11:23:30 pm]


Re: Stopping by by Dean.
[August 03, 2025, 11:22:35 pm]


Re: ordinary day in VCMP by Denlow
[July 28, 2025, 04:58:56 pm]


Re: The Soprano Family | Royal Loyalty by .Mario.
[July 26, 2025, 03:05:43 pm]


Re: [SA:MP]House of Sforza | The Elite Power | Estd. 2006 | LS - LV by FrankCivello
[July 17, 2025, 12:50:43 am]


NOTICE OF PARKING ENFORCEMENT CHANGES by Huntsman
[June 19, 2025, 05:22:50 pm]


Re: Stopping by by Sinister
[June 08, 2025, 01:58:04 pm]


Re: Stopping by by Ehks
[June 04, 2025, 12:25:17 am]


Re: Rest in peace by Stefanrsb
[June 02, 2025, 03:38:02 am]


Re: [SA:MP]House of Sforza | The Elite Power | Estd. 2006 | LS - LV by Stefanrsb
[June 02, 2025, 03:09:22 am]

* Who's Online

  • Dot Guests: 99
  • Dot Hidden: 0
  • Dot Users: 0

There aren't any users online.

* Birthday Calender

September 2025
Sun Mon Tue Wed Thu Fri Sat
1 2 3 4 5 6
7 8 9 [10] 11 12 13
14 15 16 17 18 19 20
21 22 23 24 25 26 27
28 29 30

SYN Flooding/Port scanning

ROFLCopter · 801

0 Members and 1 Guest are viewing this topic.

Offline ROFLCopterTopic starter

  • The 1337est.
  • User
  • *
    • Posts: 103
  • Paolo_Stracci
  • With us since: 14/09/2010
    YearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYears
on: November 12, 2010, 03:36:17 pm
hi.

I've spotted on my firewall that I've been having people portscanning and SYN Flooding me.

DescriptionCountLast OccurenceTargetSource
SYN Flood
1
Fri Nov 12 02:06:07 2010    58.165.167.91:50122 192.168.0.2:59186
Illegal TCP header
9
Fri Nov 12 02:06:58 2010    192.168.0.2:0 85.224.59.32:0
SYN Flood
1
Fri Nov 12 02:07:00 2010    94.59.203.176:65440 192.168.0.2:59186
Illegal TCP header
3
Fri Nov 12 02:07:02 2010    192.168.0.2:0 85.224.59.32:0
SYN Flood
1
Fri Nov 12 02:07:09 2010    88.109.59.159:29794 192.168.0.2:59186
Illegal TCP header
3
Fri Nov 12 02:07:12 2010    192.168.0.2:0 85.224.59.32:0
SYN Flood
1
Fri Nov 12 02:07:17 2010    59.93.242.23:47131 192.168.0.2:59186
Illegal TCP header
15
Fri Nov 12 02:08:22 2010    192.168.0.2:0 85.224.59.32:0
SYN Flood
6
Fri Nov 12 02:08:51 2010    122.169.45.88:1186 192.168.0.2:59186
Illegal TCP header
6
Fri Nov 12 02:09:21 2010    192.168.0.2:0 85.224.59.32:0
SYN Flood
1
Fri Nov 12 02:09:24 2010    67.177.105.143:33864 192.168.0.2:59186
Illegal TCP header
3
Fri Nov 12 02:09:33 2010    192.168.0.2:0 85.224.59.32:0
SYN Flood
1
Fri Nov 12 02:09:34 2010    93.137.11.37:59593 192.168.0.2:59186
Illegal TCP header
2
Fri Nov 12 02:09:59 2010    192.168.0.2:0 85.224.59.32:0
SYN Flood
1
Fri Nov 12 02:10:01 2010    68.149.51.33:59140 192.168.0.2:59186
Illegal TCP header
5
Fri Nov 12 02:10:12 2010    192.168.0.2:0 85.224.59.32:0
SYN Flood
2
Fri Nov 12 02:10:19 2010    81.245.237.141:53516 192.168.0.2:59186
Illegal TCP header
2
Fri Nov 12 02:10:27 2010    192.168.0.2:0 85.224.59.32:0
SYN Flood
1
Fri Nov 12 02:10:28 2010    121.214.48.165:57942 192.168.0.2:59186
Illegal TCP header
5
Fri Nov 12 02:10:41 2010    192.168.0.2:0 85.224.59.32:0
SYN Flood
1
Fri Nov 12 02:10:43 2010    81.105.229.199:63665 192.168.0.2:59186
Illegal TCP header
14
Fri Nov 12 02:12:15 2010    192.168.0.2:0 85.224.59.32:0
SYN Flood
1
Fri Nov 12 02:12:16 2010    192.168.0.2:59186 75.64.255.161:52871
Illegal TCP header
7
Fri Nov 12 02:13:11 2010    192.168.0.2:0 85.224.59.32:0
IP packet w/MC or BC SRC addr
1
Fri Nov 12 02:13:20 2010    192.168.0.2:59186 89.241.215.255:28291
Illegal TCP header
12
Fri Nov 12 02:14:21 2010    192.168.0.2:0 85.224.59.32:0
SYN Flood
2
Fri Nov 12 02:14:51 2010    96.249.234.224:57187 192.168.0.2:59186
Illegal TCP header
2
Fri Nov 12 02:14:53 2010    192.168.0.2:0 85.224.59.32:0
SYN Flood
19
Fri Nov 12 02:17:38 2010    192.168.0.2:59186 78.101.18.175:59568
TCP- or UDP-based Port Scan
2
Fri Nov 12 14:31:18 2010    94.175.31.126:56780 194.168.4.100:53

Only lately the attacks have slown down my internet connection. halpzor (Target and Source IP's are mixed around in some tables, don't know why.)



Offline jdixo17

  • Regular
  • **
    • Posts: 406
    With us since: 05/02/2010
    YearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYears
Reply #1 on: November 15, 2010, 02:20:48 pm
Your router should have protection against these things.



Offline DellStorm

  • When all the good players are gone. What does that leave?
  • Maiar
  • *****
    • Posts: 1032
  • Don't invest more in a sunk cost. Lesson Learned
  • With us since: 16/10/2010
    YearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYears
    • Rock Star Property
Reply #2 on: November 22, 2010, 05:08:55 am
Hi ROFLCopter,


Two Suggestions For You.


As Suggested your router should already be capable of eliminating the problem so I would not worry about it, they should just get timeout errors anyway.


Are you sure it is not coming from your home network? it appears that they are all coming from the same addresses, have a look and see where it is coming from. If its coming from the same country as yourself (check google for ip lookup) then it could be a friend or a member of your house ! make sure you check up.


Generally there should be no slow down, If you do find there is a small slow down, I would not worry, just every other day, reset your router and you will not notice the difference.


Attacks usually happen daily, but if you think about it, I cannot see them knocking on your door in a months time!


Hope that helps


Happy Gaming


Regards,


DellStorm



When adding value gets you worse off than you were before, due to a hidden agenda against you, its time to quit. Then remember why you quit in the first place.


 


free
free
SimplePortal 2.3.7 © 2008-2025, SimplePortal