Beantwoord

Netwerk aanval

  • 20 oktober 2017
  • 4 reacties
  • 398 keer bekeken

Ik heb redenen om te geloven dat iemand mogelijk het netwerk waar ik op zit aanvalt of mogelijk toegang heeft tot mijn computer.
het houdt nu al een aantal dagen stand. en ik vroeg me af welke stappen ik zou kunnen ondernemen.

10/20/2017 17:21:06 sending ACK to 192.168.2.10
10/20/2017 17:18:50 Wireless D8:5D:E2:98:FD:E3 released
10/20/2017 17:18:24 sending ACK to 192.168.2.10
10/20/2017 17:15:45 sending ACK to 192.168.2.6
10/20/2017 17:13:50 Wireless AC:29:3A:13:D7:68 released
10/20/2017 17:13:19 sending ACK to 192.168.2.6
10/20/2017 17:13:10 Wireless D8:5D:E2:98:FD:E3 released
10/20/2017 17:09:29 sending ACK to 192.168.2.6
10/20/2017 17:09:29 sending ACK to 192.168.2.6
10/20/2017 17:08:30 Wireless AC:29:3A:13:D7:68 released
10/20/2017 17:08:12 sending ACK to 192.168.2.6
10/20/2017 17:06:29 Wireless AC:29:3A:13:D7:68 released
10/20/2017 17:06:08 sending ACK to 192.168.2.6
10/20/2017 17:05:02 sending ACK to 192.168.2.10
10/20/2017 17:02:49 Wireless AC:29:3A:13:D7:68 released
10/20/2017 17:01:54 sending ACK to 192.168.2.6
10/20/2017 16:59:09 sending ACK to 192.168.2.1
10/20/2017 16:59:09 sending OFFER to 192.168.2.1
10/20/2017 16:58:42 sending ACK to 192.168.2.1
10/20/2017 16:58:42 sending OFFER to 192.168.2.1
10/20/2017 16:50:48 192.168.2.10 login success
10/20/2017 16:48:28 Wireless AC:29:3A:13:D7:68 released
10/20/2017 16:44:25 sending ACK to 192.168.2.6
10/20/2017 16:44:24 sending OFFER to 192.168.2.6
10/20/2017 16:37:01 sending ACK to 192.168.2.5
10/20/2017 16:36:58 sending ACK to 192.168.2.5
10/20/2017 16:36:56 sending ACK to 192.168.2.5
10/20/2017 16:26:09 **SYN Flood** 192.168.2.10, 64270->> 5.189.185.57, 6882 (from PPPoE1 Outbound)
10/20/2017 16:26:09 **SYN Flood Stop** (from PPPoE1 Inbound)
10/20/2017 16:26:09 **SYN Flood** 192.168.2.10, 64269->> 46.166.191.6, 42501 (from PPPoE1 Outbound)
10/20/2017 16:26:09 **SYN Flood** 192.168.2.10, 64257->> 183.228.188.194, 9811 (from PPPoE1 Outbound)
10/20/2017 16:26:09 **SYN Flood** 192.168.2.10, 64268->> 89.17.128.202, 65533 (from PPPoE1 Outbound)
10/20/2017 16:26:08 **SYN Flood (per Min)** 212.242.103.37, 57566->> 86.81.133.143, 40500 (from PPPoE1 Inbound)
10/20/2017 16:26:08 **SYN Flood (per Min) Stop** (from PPPoE1 Outbound)
10/20/2017 16:26:08 **SYN Flood** 212.242.103.37, 57566->> 86.81.133.143, 40500 (from PPPoE1 Inbound)
10/20/2017 16:26:08 **SYN Flood (per Min)** 192.168.2.10, 64204->> 98.219.73.61, 25259 (from PPPoE1 Outbound)
10/20/2017 16:26:08 **SYN Flood** 192.168.2.10, 64204->> 98.219.73.61, 25259 (from PPPoE1 Outbound)
10/20/2017 16:26:08 **SYN Flood (per Min)** 192.168.2.10, 64266->> 222.247.58.254, 15000 (from PPPoE1 Outbound)
10/20/2017 16:26:08 **SYN Flood** 192.168.2.10, 64266->> 222.247.58.254, 15000 (from PPPoE1 Outbound)
10/20/2017 16:26:08 **SYN Flood (per Min)** 192.168.2.10, 64265->> 112.198.206.71, 50321 (from PPPoE1 Outbound)
10/20/2017 16:26:08 **SYN Flood** 192.168.2.10, 64265->> 112.198.206.71, 50321 (from PPPoE1 Outbound)
10/20/2017 16:26:08 **SYN Flood (per Min)** 192.168.2.10, 64264->> 195.35.245.30, 50321 (from PPPoE1 Outbound)
10/20/2017 16:26:08 **SYN Flood** 192.168.2.10, 64264->> 195.35.245.30, 50321 (from PPPoE1 Outbound)
10/20/2017 16:26:08 **SYN Flood (per Min)** 192.168.2.10, 64203->> 172.58.136.56, 43727 (from PPPoE1 Outbound)
10/20/2017 16:26:08 **SYN Flood** 192.168.2.10, 64203->> 172.58.136.56, 43727 (from PPPoE1 Outbound)
10/20/2017 16:26:08 **SYN Flood (per Min)** 192.168.2.10, 64200->> 151.229.26.137, 6882 (from PPPoE1 Outbound)
10/20/2017 16:26:08 **SYN Flood** 192.168.2.10, 64200->> 151.229.26.137, 6882 (from PPPoE1 Outbound)
10/20/2017 16:26:08 **SYN Flood (per Min)** 192.168.2.10, 64202->> 151.231.242.104, 6881 (from PPPoE1 Outbound)
10/20/2017 16:26:08 **SYN Flood** 192.168.2.10, 64202->> 151.231.242.104, 6881 (from PPPoE1 Outbound)
10/20/2017 16:26:08 **SYN Flood (per Min)** 41.224.156.234, 36185->> 86.81.133.143, 40501 (from PPPoE1 Inbound)
10/20/2017 16:26:08 **SYN Flood** 41.224.156.234, 36185->> 86.81.133.143, 40501 (from PPPoE1 Inbound)
10/20/2017 16:26:08 **SYN Flood (per Min)** 79.126.245.129, 63834->> 86.81.133.143, 40500 (from PPPoE1 Inbound)
10/20/2017 16:26:08 **SYN Flood** 79.126.245.129, 63834->> 86.81.133.143, 40500 (from PPPoE1 Inbound)
10/20/2017 16:26:07 **SYN Flood (per Min)** 192.168.2.2, 51695->> 108.177.119.94, 443 (from PPPoE1 Outbound)
10/20/2017 16:26:07 **SYN Flood** 192.168.2.2, 51695->> 108.177.119.94, 443 (from PPPoE1 Outbound)
10/20/2017 16:26:07 **SYN Flood (per Min)** 192.168.2.10, 64240->> 58.235.209.61, 6951 (from PPPoE1 Outbound)
10/20/2017 16:26:07 **SYN Flood** 192.168.2.10, 64240->> 58.235.209.61, 6951 (from PPPoE1 Outbound)
10/20/2017 16:26:07 **SYN Flood (per Min)** 156.222.84.57, 50214->> 86.81.133.143, 40500 (from PPPoE1 Inbound)
10/20/2017 16:26:07 **SYN Flood** 156.222.84.57, 50214->> 86.81.133.143, 40500 (from PPPoE1 Inbound)
10/20/2017 16:26:07 **SYN Flood (per Min)** 192.168.2.10, 64198->> 112.5.234.211, 31716 (from PPPoE1 Outbound)
10/20/2017 16:26:07 **SYN Flood** 192.168.2.10, 64198->> 112.5.234.211, 31716 (from PPPoE1 Outbound)
10/20/2017 16:26:07 **SYN Flood (per Min)** 192.168.2.10, 64197->> 93.190.142.42, 53061 (from PPPoE1 Outbound)
10/20/2017 16:26:07 **SYN Flood** 192.168.2.10, 64197->> 93.190.142.42, 53061 (from PPPoE1 Outbound)
10/20/2017 16:26:07 **SYN Flood (per Min)** 192.168.2.10, 64196->> 78.95.178.242, 1760 (from PPPoE1 Outbound)
10/20/2017 16:26:07 **SYN Flood** 192.168.2.10, 64196->> 78.95.178.242, 1760 (from PPPoE1 Outbound)
10/20/2017 16:26:07 **SYN Flood (per Min)** 192.168.2.10, 64248->> 218.199.207.117, 45162 (from PPPoE1 Outbound)
10/20/2017 16:26:07 **SYN Flood** 192.168.2.10, 64248->> 218.199.207.117, 45162 (from PPPoE1 Outbound)
10/20/2017 16:26:05 **SYN Flood (per Min)** 84.209.161.185, 60656->> 86.81.133.143, 40502 (from PPPoE1 Inbound)
10/20/2017 16:26:05 **SYN Flood** 84.209.161.185, 60656->> 86.81.133.143, 40502 (from PPPoE1 Inbound)
10/20/2017 16:26:04 **SYN Flood (per Min)** 192.168.2.10, 64245->> 208.125.41.35, 39025 (from PPPoE1 Outbound)
10/20/2017 16:26:04 **SYN Flood** 192.168.2.10, 64245->> 208.125.41.35, 39025 (from PPPoE1 Outbound)
10/20/2017 16:26:03 **SYN Flood** 192.168.2.10, 64227->> 46.166.191.24, 20393 (from PPPoE1 Outbound)
10/20/2017 16:26:03 **SYN Flood** 174.128.236.100, 45093->> 86.81.133.143, 40500 (from PPPoE1 Inbound)
10/20/2017 16:26:03 **SYN Flood** 192.168.2.10, 64208->> 72.51.112.82, 4753 (from PPPoE1 Outbound)
10/20/2017 16:26:03 **SYN Flood** 192.168.2.10, 64209->> 92.98.158.143, 50322 (from PPPoE1 Outbound)
10/20/2017 16:26:03 **SYN Flood** 192.168.2.10, 64177->> 112.5.248.201, 50515 (from PPPoE1 Outbound)
10/20/2017 16:26:03 **SYN Flood** 192.168.2.10, 64241->> 62.121.74.132, 40501 (from PPPoE1 Outbound)
10/20/2017 16:26:03 **SYN Flood** 192.168.2.10, 64240->> 58.235.209.61, 6951 (from PPPoE1 Outbound)
10/20/2017 16:26:03 **SYN Flood** 192.168.2.10, 64239->> 65.48.218.53, 6881 (from PPPoE1 Outbound)
10/20/2017 16:26:03 **SYN Flood** 192.168.2.10, 64238->> 112.5.238.211, 31716 (from PPPoE1 Outbound)
10/20/2017 16:26:03 **SYN Flood** 192.168.2.10, 64237->> 117.157.144.192, 28394 (from PPPoE1 Outbound)
10/20/2017 16:26:03 **SYN Flood** 192.168.2.10, 64175->> 89.210.19.147, 10630 (from PPPoE1 Outbound)
10/20/2017 16:26:03 **SYN Flood** 192.168.2.10, 64173->> 83.249.214.33, 50324 (from PPPoE1 Outbound)
10/20/2017 16:26:03 **SYN Flood** 192.168.2.10, 64174->> 120.28.111.166, 6881 (from PPPoE1 Outbound)
10/20/2017 16:26:03 **SYN Flood** 183.228.188.194, 16834->> 86.81.133.143, 40500 (from PPPoE1 Inbound)
10/20/2017 16:26:02 **SYN Flood** 192.168.2.10, 64171->> 218.206.243.162, 12062 (from PPPoE1 Outbound)
10/20/2017 16:26:02 **SYN Flood** 192.168.2.10, 64170->> 41.151.231.230, 40501 (from PPPoE1 Outbound)
10/20/2017 16:26:02 **SYN Flood** 192.168.2.10, 64218->> 121.54.44.135, 6881 (from PPPoE1 Outbound)
10/20/2017 16:26:02 **SYN Flood** 192.168.2.10, 64230->> 60.52.108.225, 40500 (from PPPoE1 Outbound)
10/20/2017 16:26:02 **SYN Flood** 192.168.2.10, 64229->> 77.69.75.66, 40500 (from PPPoE1 Outbound)
10/20/2017 16:26:02 **SYN Flood** 192.168.2.10, 64228->> 45.32.155.245, 7889 (from PPPoE1 Outbound)
10/20/2017 16:26:02 **SYN Flood** 192.168.2.10, 64227->> 46.166.191.24, 20393 (from PPPoE1 Outbound)
10/20/2017 16:26:02 **SYN Flood** 192.168.2.10, 64204->> 98.219.73.61, 25259 (from PPPoE1 Outbound)
10/20/2017 16:26:02 **SYN Flood** 192.168.2.10, 64226->> 166.137.107.173, 48157 (from PPPoE1 Outbound)
10/20/2017 16:26:02 **SYN Flood** 192.168.2.10, 64203->> 172.58.136.56, 43727 (from PPPoE1 Outbound)
10/20/2017 16:26:02 **SYN Flood** 192.168.2.10, 64200->> 151.229.26.137, 6882 (from PPPoE1 Outbound)
10/20/2017 16:26:02 **SYN Flood** 192.168.2.10, 64202->> 151.231.242.104, 6881 (from PPPoE1 Outbound)
10/20/2017 16:26:02 **SYN Flood** 192.168.2.10, 64201->> 72.252.195.246, 6881 (from PPPoE1 Outbound)
10/20/2017 15:25:18 **UDP Loop** 2.84.203.118, 50321->> 192.168.2.10, 40500 (from PPPoE1 Inbound)
10/20/2017 15:25:15 **UDP Loop** 2.84.203.118, 50321->> 192.168.2.10, 40500 (from PPPoE1 Inbound)
10/20/2017 15:25:12 **UDP Loop** 2.84.203.118, 50321->> 192.168.2.10, 40500 (from PPPoE1 Inbound)
10/20/2017 15:25:10 **UDP Loop** 2.84.203.118, 50321->> 192.168.2.10, 40500 (from PPPoE1 Inbound)
10/20/2017 15:25:09 **UDP Loop** 2.84.203.118, 50321->> 192.168.2.10, 40500 (from PPPoE1 Inbound)
10/20/2017 15:24:41 **UDP Loop** 85.93.202.239, 6881->> 192.168.2.10, 40502 (from PPPoE1 Inbound)
10/20/2017 15:24:39 **UDP Loop** 85.93.202.239, 6881->> 192.168.2.10, 40502 (from PPPoE1 Inbound)
10/20/2017 15:24:38 **UDP Loop** 85.93.202.239, 6881->> 192.168.2.10, 40502 (from PPPoE1 Inbound)
10/20/2017 15:21:51 **UDP Loop** 2.84.203.118, 50321->> 192.168.2.10, 40500 (from PPPoE1 Inbound)
10/20/2017 15:21:50 **UDP Loop** 2.84.203.118, 50321->> 192.168.2.10, 40500 (from PPPoE1 Inbound)
10/20/2017 15:21:47 **UDP Loop** 2.84.203.118, 50321->> 192.168.2.10, 40500 (from PPPoE1 Inbound)
10/20/2017 15:21:46 **UDP Loop** 2.84.203.118, 50321->> 192.168.2.10, 40500 (from PPPoE1 Inbound)
10/20/2017 15:21:43 **UDP Loop** 2.84.203.118, 50321->> 192.168.2.10, 40500 (from PPPoE1 Inbound)
10/20/2017 15:17:36 **UDP Flood to Host** 85.93.202.239, 6881->> 192.168.2.10, 40502 (from PPPoE1 Inbound)
10/20/2017 15:15:26 **UDP Loop** 115.64.110.62, 40500->> 192.168.2.10, 40500 (from PPPoE1 Inbound)
10/20/2017 15:15:23 **UDP Loop** 115.64.110.62, 40500->> 192.168.2.10, 40500 (from PPPoE1 Inbound)
10/20/2017 15:15:21 **UDP Loop** 115.64.110.62, 40500->> 192.168.2.10, 40500 (from PPPoE1 Inbound)
10/20/2017 15:15:20 **UDP Loop** 115.64.110.62, 40500->> 192.168.2.10, 40500 (from PPPoE1 Inbound)
10/20/2017 15:15:18 **UDP Loop** 115.64.110.62, 40500->> 192.168.2.10, 40500 (from PPPoE1 Inbound)
10/20/2017 15:15:16 **UDP Loop** 115.64.110.62, 40500->> 192.168.2.10, 40500 (from PPPoE1 Inbound)
10/20/2017 15:04:00 **UDP Loop** 31.10.170.97, 44754->> 192.168.2.10, 40500 (from PPPoE1 Inbound)
10/20/2017 15:03:59 **UDP Loop** 31.10.170.97, 44754->> 192.168.2.10, 40500 (from PPPoE1 Inbound)
10/20/2017 15:03:56 **UDP Loop** 31.10.170.97, 44754->> 192.168.2.10, 40500 (from PPPoE1 Inbound)
10/20/2017 15:03:54 **UDP Loop** 31.10.170.97, 44754->> 192.168.2.10, 40500 (from PPPoE1 Inbound)
10/20/2017 15:02:51 **UDP Loop** 85.93.202.239, 6881->> 192.168.2.10, 40502 (from PPPoE1 Inbound)
10/20/2017 14:59:56 **UDP Loop** 83.57.94.213, 58103->> 192.168.2.10, 40500 (from PPPoE1 Inbound)
10/20/2017 14:59:43 **UDP Loop** 83.57.94.213, 58103->> 192.168.2.10, 40500 (from PPPoE1 Inbound)
10/20/2017 14:59:41 **UDP Loop** 83.57.94.213, 58103->> 192.168.2.10, 40500 (from PPPoE1 Inbound)
10/20/2017 14:57:37 **UDP Loop** 77.193.243.151, 40500->> 192.168.2.10, 40502 (from PPPoE1 Inbound)
10/20/2017 14:57:35 **UDP Loop** 77.193.243.151, 40500->> 192.168.2.10, 40502 (from PPPoE1 Inbound)
10/20/2017 14:57:32 **UDP Loop** 77.193.243.151, 40500->> 192.168.2.10, 40502 (from PPPoE1 Inbound)
10/20/2017 14:57:30 **UDP Loop** 77.193.243.151, 40500->> 192.168.2.10, 40502 (from PPPoE1 Inbound)
10/20/2017 14:57:29 **UDP Loop** 77.193.243.151, 40500->> 192.168.2.10, 40502 (from PPPoE1 Inbound)
10/20/2017 14:55:27 **UDP Loop** 193.77.124.110, 40500->> 192.168.2.10, 40502 (from PPPoE1 Inbound)
10/20/2017 14:55:25 **UDP Loop** 193.77.124.110, 40500->> 192.168.2.10, 40502 (from PPPoE1 Inbound)
10/20/2017 14:55:23 **UDP Loop** 193.77.124.110, 40500->> 192.168.2.10, 40502 (from PPPoE1 Inbound)
10/20/2017 14:55:21 **UDP Loop** 193.77.124.110, 40500->> 192.168.2.10, 40502 (from PPPoE1 Inbound)
10/20/2017 14:55:19 **UDP Loop** 193.77.124.110, 40500->> 192.168.2.10, 40502 (from PPPoE1 Inbound)
10/20/2017 14:55:00 **SYN Flood** 192.168.2.10, 58058->> 94.157.108.22, 14732 (from PPPoE1 Outbound)
10/20/2017 14:55:00 **SYN Flood Stop** (from PPPoE1 Outbound)
10/20/2017 14:55:00 **SYN Flood** 124.63.32.172, 1829->> 86.81.133.143, 40502 (from PPPoE1 Inbound)
10/20/2017 14:55:00 **SYN Flood** 181.29.242.74, 58403->> 86.81.133.143, 40501 (from PPPoE1 Inbound)
10/20/2017 14:55:00 **SYN Flood** 109.65.121.205, 52230->> 86.81.133.143, 40502 (from PPPoE1 Inbound)
10/20/2017 14:55:00 **SYN Flood** 103.86.97.2, 53448->> 86.81.133.143, 40502 (from PPPoE1 Inbound)
10/20/2017 14:55:00 **SYN Flood** 111.125.208.26, 26382->> 86.81.133.143, 40502 (from PPPoE1 Inbound)
10/20/2017 14:55:00 **SYN Flood** 192.168.2.10, 58045->> 190.107.226.232, 51413 (from PPPoE1 Outbound)
10/20/2017 14:54:59 **SYN Flood** 192.168.2.10, 58044->> 210.97.8.163, 61577 (from PPPoE1 Outbound)
10/20/2017 14:54:59 **SYN Flood** 192.168.2.10, 58042->> 188.29.164.53, 30901 (from PPPoE1 Outbound)
10/20/2017 14:54:59 **SYN Flood** 192.168.2.10, 58055->> 183.36.83.116, 20420 (from PPPoE1 Outbound)
10/20/2017 14:54:59 **SYN Flood** 192.168.2.10, 58054->> 197.218.83.60, 15523 (from PPPoE1 Outbound)
10/20/2017 14:54:59 **SYN Flood** 192.168.2.10, 58057->> 222.70.201.2, 8015 (from PPPoE1 Outbound)
10/20/2017 14:54:58 **SYN Flood** 192.168.2.10, 58053->> 196.202.194.31, 40122 (from PPPoE1 Outbound)
10/20/2017 14:54:58 **SYN Flood** 192.168.2.10, 58041->> 95.136.59.152, 40500 (from PPPoE1 Outbound)
10/20/2017 14:54:58 **SYN Flood** 192.168.2.10, 58059->> 41.143.186.112, 1025 (from PPPoE1 Outboun
icon

Beste antwoord door RobinFlikkema 21 oktober 2017, 12:40

Ik zou beginnen met die poorten dicht zitten (eventueel UPnP uit zetten).
Daarnaast verstuurt het apparaat zelf (192.168.2.10) ook allemaal Floods naar andere IPs dus ik zou daar beginnen.
Bekijk origineel

4 reacties

oke ik ga als ik thuis ben een poging wagen. ik laat het weten
Reputatie 7
Badge +30
Ik zou beginnen met die poorten dicht zitten (eventueel UPnP uit zetten).
Daarnaast verstuurt het apparaat zelf (192.168.2.10) ook allemaal Floods naar andere IPs dus ik zou daar beginnen.
dat is mijn laptop. en nee geen torrents of game server,
het gebeurt ook op andere apparaten die verbonden zijn zoals me telefoon internet heel slecht
het moet een ddos aanval zijn wat kan ik hieraan doen
Reputatie 7
Badge +30
Hoi,

Welk apparaat is 192.168.2.10?
Draait die toevallig een torrentclient en/of een game(server)?
Heb je UPnP aanstaan op de Experiabox om een specifieke reden?

Robin

Reageer