Welcome to the Comodo Forum
Welcome,
Guest
. Please
login
or
register
.
March 21, 2010, 10:17:52 PM
1 Hour
1 Day
1 Week
1 Month
Forever
Login with username, password and session length
373578
Posts
41454
Topics
94200
Members
Latest Member:
shchen22
more news...
Search:
Advanced search
|
Tag Cloud
Welcome to the Comodo Forum
Learn about Computer Security and Interact with Security Experts
Leak Testing/Attacks/Vulnerability Research
Follow on from My last post concerning fireall intrusions(*new info)
« previous
next »
Pages:
1
2
[
3
]
Author
Topic: Follow on from My last post concerning fireall intrusions(*new info) (Read 6010 times)
eXPerience
Malware Researcher Virus Removal Helper Advanced Tweak Freak Crazy Little Devil
Global Moderator
Comodo's Hero
Offline
Posts: 6892
Why not ? The choice is yours !
Re: Follow on from My last post concerning fireall intrusions(*new info)
«
Reply #30 on:
January 20, 2009, 02:25:38 PM »
could you post the hijackthislog in the meantime ?
Xan
Logged
Fake_monkey
Newbie
Offline
Posts: 4
Re: Follow on from My last post concerning fireall intrusions(*new info)
«
Reply #31 on:
January 20, 2009, 02:34:45 PM »
I really don't think this is an real attack, possible a malware but I doubt it since you did so much scanning, as for System I would just set the thing to block both inbound and outbound and NOT LOG.
If you have the time you could do a rootkit scan with RootkitReveler
http://technet.microsoft.com/en-us/sysinternals/bb897445.aspx
(download link almost at the bottom of the page)
And hijackthis as Xan suggested!
Logged
deleon30
Comodo Family Member
Offline
Posts: 70
Re: Follow on from My last post concerning fireall intrusions(*new info)
«
Reply #32 on:
January 20, 2009, 02:46:51 PM »
well ive found access to all the blocked ip.s including contact emails and info location ect.via the dshield webiste
Logged
deleon30
Comodo Family Member
Offline
Posts: 70
Re: Follow on from My last post concerning fireall intrusions(*new info)
«
Reply #33 on:
January 20, 2009, 02:48:12 PM »
the program you gave me the link to will not install states..acess denied.
Logged
eXPerience
Malware Researcher Virus Removal Helper Advanced Tweak Freak Crazy Little Devil
Global Moderator
Comodo's Hero
Offline
Posts: 6892
Why not ? The choice is yours !
Re: Follow on from My last post concerning fireall intrusions(*new info)
«
Reply #34 on:
January 20, 2009, 02:53:44 PM »
Well, I got it from here
http://www.emsisoft.com/en/software/free/
Xan
Logged
deleon30
Comodo Family Member
Offline
Posts: 70
Re: Follow on from My last post concerning fireall intrusions(*new info)
«
Reply #35 on:
January 20, 2009, 02:58:09 PM »
Quote from: Fake_monkey on January 20, 2009, 02:34:45 PM
I really don't think this is an real attack, possible a malware but I doubt it since you did so much scanning, as for System I would just set the thing to block both inbound and outbound and NOT LOG.
If you have the time you could do a rootkit scan with RootkitReveler
http://technet.microsoft.com/en-us/sysinternals/bb897445.aspx
(download link almost at the bottom of the page)
And hijackthis as Xan suggested!
what do you mean by not a real attack...what are the other possibilities?
Logged
deleon30
Comodo Family Member
Offline
Posts: 70
Re: Follow on from My last post concerning fireall intrusions(*new info)
«
Reply #36 on:
January 20, 2009, 03:02:05 PM »
the a squared program will not install on my pc...mayb issue with xp sp3
tryin the root kit reavler then thats enuff for 1 nite..
cheers
Logged
deleon30
Comodo Family Member
Offline
Posts: 70
Re: Follow on from My last post concerning fireall intrusions(*new info)
«
Reply #37 on:
January 20, 2009, 03:06:15 PM »
could it possibly be incoming requests via utorrent?>>
Logged
commanding the celsius
Product Translator
Comodo's Hero
Offline
Posts: 1401
^^^^
Re: Follow on from My last post concerning fireall intrusions(*new info)
«
Reply #38 on:
January 21, 2009, 10:52:41 AM »
Quote from: deleon30 on January 20, 2009, 03:06:15 PM
could it possibly be incoming requests via utorrent?>>
Dunno.
If you notice a exceeding number of "attacks" when you turn on utorrent and get none when you have utorrent off you probably could draw that conclusion.
But Iam no expert in the field!
Logged
deleon30
Comodo Family Member
Offline
Posts: 70
Re: Follow on from My last post concerning fireall intrusions(*new info)
«
Reply #39 on:
January 21, 2009, 11:59:11 AM »
the attacks are consistant.with or without utorrent or even without using my browser.
still unresolved...
Logged
Bad Frogger
Global Moderator
Comodo's Hero
Offline
Posts: 947
Re: Follow on from My last post concerning fireall intrusions(*new info)
«
Reply #40 on:
January 21, 2009, 01:39:27 PM »
deleon30,
Did you ever go check the other thread you started?
There are three pages of this, with almost no mention that you are torrenting
while all these "attacks" are happening.
When you shutdown utorrent it can take some time for these connection attempts
to slowdown.
To answer your last question Yes it could all be torrent related, but for some reason
it's like you are resistant to setting up your firewall properly for utorrent.
Later
Logged
CIS
Firefox
NoScript
Please remember to follow
The Forum Policy
.
eXPerience
Malware Researcher Virus Removal Helper Advanced Tweak Freak Crazy Little Devil
Global Moderator
Comodo's Hero
Offline
Posts: 6892
Why not ? The choice is yours !
Re: Follow on from My last post concerning fireall intrusions(*new info)
«
Reply #41 on:
January 21, 2009, 03:37:34 PM »
Could you please give us screenshots of your settings ?
Xan
Logged
Tags:
Pages:
1
2
[
3
]
« previous
next »
Jump to:
Please select a destination:
-----------------------------
General Category
-----------------------------
=> Melih's Corner - CEO Talk/Discussions/Blog
=> Comodo.TV - Our Internet Video Channel
===> Comodo.TV - News and Announcements
===> Comodo.TV - Program Lineup
===> Audience Feedback and Suggestions
=> Which Product do you want Comodo to develop next?
=> How Can I Help Comodo? (Please We Need You!)
===> Report Comodo Forum / Web Site Issues
===> Please Tell Us Your Views and Vote Here!
===> Help Spread the Word - Banners and Logos
=> General Discussion (off topic) Anything and everything...
===> Member Confessions :-)
===> Funny Photos :-)
===> Cool Stuff
-----------------------------
Desktop Security Products & Services
-----------------------------
=> Comodo Internet Security - CIS
===> News / Announcements / Feedback - CIS
=====> Wishlist - CIS
===> AV False Positive/Negative Detection Reporting
===> Help - CIS
=====> Guides - CIS
=====> AntiVirus Help - CIS
=======> AntiVirus FAQ - CIS
=====> Firewall Help - CIS
=======> Firewall FAQ - CIS
=====> Defense+ / Sandbox Help - CIS
=======> Defense+ / Sandbox FAQ - CIS
=====> Install / Setup / Configuration Help - CIS
=======> Install / Setup / Configuration FAQ - CIS
===> Bug Report - CIS
=> Comodo Backup - CB
===> News / Announcements / Feedback - CB
===> Comodo Online Backup - COB
===> Help - CB
=====> FAQ - CB
=> Comodo Time Machine - CTM
===> News / Announcements / Feedback - CTM
===> Help - CTM
=====> FAQ - CTM
===> Bug Reports - CTM
=> Comodo Dragon - CD
===> News / Announcements / Feedback - CD
=====> Wishlist - CD
===> Help - CD
=====> FAQ - CD
===> Bug Reports - CD
=> Comodo Disk Encryption - CDE
===> News / Announcements / Feedback - CDE
=====> Wishlist - CDE
===> Help - CDE
=====> FAQ - CDE
===> Bug Reports - CDE
===> Beta Corner - CDE
=> Comodo Secure Email - CSE
===> News / Announcements / Feedback - CSE
===> Help - CSE
=====> FAQ - CSE
===> Bug Reports - CSE
=> Comodo EasyVPN - CEVPN
===> News / Announcements / Feedback - CEVPN
===> Help - CEVPN
=====> FAQ - CEVPN
===> Bug reports - CEVPN
=> Comodo AntiSpam - CAS
=> Comodo TrustConnect - CTC
=> HopSurf - CHS
=> Comodo Instant Malware Analysis Online - CIMA
=> Verification Engine - CVE
-----------------------------
Desktop Utilities & Services
-----------------------------
=> Comodo System Cleaner - File/Registry/Privacy Cleaner - CSC
===> News / Announcements / Feedback - CSC
===> Help - CSC
=====> FAQ - CSC
=> Comodo Cloud Scanner - CCS
===> News / Announcements / Feedback - CCS
===> FAQ - CCS
=> Live PC Support
-----------------------------
Business / Enterprise Security Products & Services
-----------------------------
=> Digital Certificates
===> Code Signing Certificate
===> Content Verification Certificate
===> Email Certificate
===> SSL Certificate
=> PCI DSS Compliance
=> Comodo Endpoint Security Manager
=> Two Factor Authentication for Web Applications
=> Trustlogo
=> Hacker Guardian
-----------------------------
Learn about Computer Security and Interact with Security Experts
-----------------------------
=> General Security Questions and Comments
=> Virus/Malware Removal Assistance
=> Leak Testing/Attacks/Vulnerability Research
=> Digital Certificates, Encryption and Digital Signing
=> Other Security Products
-----------------------------
International Comodo Forums
-----------------------------
=> International Comodo Forums
===> 汉语语言, 漢語語言 / Chinese Simplified, Traditional
===> Česky / Czech
===> Dansk / Danish
===> Nederlands / Dutch
===> Suomi / Finnish
===> Francais / French
===> Deutsch / German
===> ελληνικά / Greek
===> Magyar / Hungarian
===> Italiano / Italian
===> Nihongo / Japanese
===> Norsk / Norwegian
===> Polski / Polish
===> Português/Portuguese
===> Română / Romanian
===> По-русски / Russian
===> Slovenský / Slovak
===> Slovenščina / Slovenian
===> Espanol / Spanish
===> Svenska / Swedish
===> Turkce / Turkish
===> Українська / Ukrainian
===> Việt / Vietnamese
-----------------------------
Other
-----------------------------
=> Forum Policy Violation Board
-----------------------------
Archived Boards
-----------------------------
=> Discontinued Products
===> Comodo Anti-Viruspyware (CAVS)
=====> Help for Comodo AntiVirus
=====> FAQ for Comodo Anti-ViruSpyware
=====> Feedback/Comments/Announcements/News about CAVS
===> Comodo BOClean Anti-Malware
=====> Announcements
=====> Comodo BOClean Anti-Malware FAQ
===> Comodo Diskshield
===> Comodo Firewall
=====> Feedback/Comments/Announcements/News
=====> Help for v3
=====> Help for v2
=====> Frequently Asked Questions (FAQ) for Comodo firewall
=====> Comodo Firewall Translations
=====> Bug Reports
===> i-Vault
===> Launch Pad (Discontinued)
===> Comodo Meet (Web Conferencing Product) (Discontinued)
===> Comodo Memory Firewall(Buffer Overflow Protection)
=====> Comodo Memory Firewall Beta Corner
=====> Help
=====> Frequently Asked Questions (Comodo Memory Firewall)
=====> Feedback/Comments/Announcements/News
===> Safesurf
===> Trusttoolbar (Discontinued)
===> Trustfax (online faxing) (discontinued)
===> Trustix Enterprise Firewall
===> User Anywhere (Remote Access product) (Discontinued)
===> UserTrust - First Independent Website Rating - Empowering our users!
===> Comodo Vulnerability Analyzer - CVA
===> ZTL
Page created in 0.617 seconds with 18 queries.
Powered by SMF 1.1.11
|
SMF © 2006, Simple Machines LLC
Seo4Smf v0.2 © Webmaster's Talks
Design by
7dana.com