User comments on ISPs
  >> PlusNet plc


Register (or login) on our website and you will not see this ad.


These posts have been archived and can no longer be replied to or modified.
  Print Thread
Standard User deleted
(deleted) Mon 21-Sep-09 09:50:36
Print Post

Attacks recently???


[link to this post]
 
Hi All

My router has shown some alerts recently with these two being the most recent:-

UDP Packet - Source:217.23.5.53,55708 Destination:xxx.xxx.xxx.xxx,5060 - [DOS]

and

TCP Packet - Source:84.92.209.241 Destination:xxx.xxx.xxx.xxx - [PORT SCAN]

The latter one resolves to a Force9 user IP ???

I do not recall seeing these DOS and Port Scan alerts before???

Any insight welcome

TIA smile

PS I have xxx out my IP as this is a public forum wink

Edited by deleted (Mon 21-Sep-09 09:51:56)

Standard User TLM
(eat-sleep-adslguide) Mon 21-Sep-09 10:40:10
Print Post

Re: Attacks recently???


[re: deleted] [link to this post]
 
I wouldn't worry about them, as long as your router is finding and blocking them OK.

Another PN customer's machine probably has a trojan they're not even aware of.

I have remonstrated with PN in the past, to try to get them to contact customers in this situation, to get it stopped.

But I never saw any evidence of the effectiveness of this, so I doubt they ever did anything. I kept getting the same old intruder alerts, from the same couple of PN IP addresses.

Ultimately, it doesn't really affect me, as my machine is secured, but I was just trying to be a bit public-spirited.
Standard User deleted
(deleted) Mon 21-Sep-09 10:49:09
Print Post

Re: Attacks recently???


[re: TLM] [link to this post]
 
Thanks smile

Yes, NAT and filtered where needed with default password changed before connected to the phone line from day one.

Anecdotally I keep reading of folk who never make their routers secure......!

Also running software 'protection' at various levels!


Register (or login) on our website and you will not see this ad.

  Print Thread

Jump to