Author Topic: 224.0.0.1 ?  (Read 26220 times)

Offline landsker

  • Comodo Family Member
  • ***
  • Posts: 62
    • Costa del Sol, Spain
224.0.0.1 ?
« on: April 16, 2009, 01:28:11 AM »
I see, in the Firewall events, many blockings of the IP address 224.0.0.1.
Can someone tell me what this is?
I run one laptop, (XP Home, SP3, CIS latest beta), on a wireless connection to a Linksys home gateway.

Offline Beanie

  • Comodo's Hero
  • *****
  • Posts: 549
  • I am a saxophonist.
Re: 224.0.0.1 ?
« Reply #1 on: April 16, 2009, 02:49:28 AM »
That's strange, I'm getting a couple from 224.0.0.1 too, as well as one from 224.0.0.9 ???

Since it's from Windows Operating System, I'm assuming it's safe.

Beanie :)

Offline John Buchanan

  • The greatest victory comes from the battle within.
  • Global Moderator
  • Comodo's Hero
  • *****
  • Posts: 5608
  • Personal Dragons can be defeated. Improve yourself
Re: 224.0.0.1 ?
« Reply #2 on: April 16, 2009, 07:44:14 AM »
The IP reverse resolves to mcast.net.
Please follow Comodo Forum Policy

Offline Creasy

  • Product Translator
  • Comodo's Hero
  • *****
  • Posts: 858
  • I'm watching you.
Re: 224.0.0.1 ?
« Reply #3 on: April 16, 2009, 08:38:06 AM »
I see, in the Firewall events, many blockings of the IP address 224.0.0.1.
Can someone tell me what this is?
I run one laptop, (XP Home, SP3, CIS latest beta), on a wireless connection to a Linksys home gateway.

Don't worry. It's not from the any web site. Also it's not hacking attempt.
It's from your ISP's router.
We say Multicast. The router which from your ISP sends multicast packets to evrybody have same IP range.
Why do that?
It means 'is there any hosts(PC) which belong to multicast group?'.
Because the router should manage it's 'Routing Table'.
It sends same packets every 1min(it depands on configuration).
If you don't want to see that message Turn off Stealth port.


Wrong messages are dangerous, but wrong interpretation of correct messages is even more dangerous.-Andre Kostolany-
I'm a MAN!!
I'm not a girl!

Offline FU2HO

  • Newbie
  • *
  • Posts: 2
Re: 224.0.0.1 ?
« Reply #4 on: August 31, 2009, 02:15:04 AM »
Okay,

I've been trying to figure this out for some months now.  I believe there is some kind of glitch in the program.  I was going straight to block all incoming connections first.  Well today I decided to set it to alert me to incoming connections.  I was hoping to have comodo catch the multicast so I can see what it says.  Well I no longer was receiving the 224.0.0.1.   I was like cool.  Then I decided to test my theory and went back to block all incoming connections.  Guess what...I still did not get the 224.0.0.1.

So I figure if you select block all incoming connections first it will pick up the multicast.  If you select another stealth option first then select block to everyone it will stop.  So far so good.  I have not received the multicast 224.0.0.1 in over two hours.   Before it was every 2 minutes.  Not sure if this only works on a new install.  I didn't want to risk uninstalling an reinstalling to test this theory.  All I know is it works now and I don't get that 224.0.0.1 every two minutes now.

Offline Copy, right?

  • Comodo Member
  • **
  • Posts: 38
  • How old are you anyway?
Re: 224.0.0.1 ?
« Reply #5 on: December 14, 2009, 12:06:01 PM »
Thank You!

It's nice to know that this is going away:


(open in new tab to see the horrible sight)
« Last Edit: December 14, 2009, 12:13:39 PM by Copy, right? »

 

Seo4Smf 2.0 © SmfMod.Com | Smf Destek