Why am I being pinged...

…by an outfit in S Korea?

Two days in a row now. I aint concerned, but I am curious as to why this is occurring. Havent seen this before.

Screenie below.

NeoTrace Trace  Version 3.25  Results
Target: [b][/b]
Date: 16/07/2009 (Thursday), 11:44:07 AM
Nodes: 8

Node Data
Node Net Reg IP Address      Location            Node Name
   8   1   -   SEOUL               

Packet Data
Node High Low  Avg  Tot  Lost
   8 ---- ---- ----    2    2

Network Data
Network id#: 1
  [whois.apnic.net node-2]
  Whois data copyright terms    http://www.apnic.net/db/dbcopyright.html

inetnum: -
netname:      KRNIC-KR
descr:        KRNIC
descr:        Korea Network Information Center
country:      KR
admin-c:      HM127-AP
tech-c:       HM127-AP
remarks:      ******************************************
remarks:      KRNIC is the National Internet Registry
remarks:      in Korea under APNIC. If you would like to
remarks:      find assignment information in detail
remarks:      please refer to the KRNIC Whois DB
remarks:      http://whois.nic.or.kr/english/index.html
remarks:      ******************************************
mnt-by:       APNIC-HM
mnt-lower:    MNT-KRNIC-AP
changed:      hostmaster@apnic.net 20000908
changed:      hostmaster@apnic.net 20010627
source:       APNIC

person:       Host Master
address:      11F, KTF B/D, 1321-11, Seocho2-Dong, Seocho-Gu,
address:      Seoul, Korea, 137-857
country:      KR
phone:        +82-2-2186-4500
fax-no:       +82-2-2186-4496
e-mail:       hostmaster@nic.or.kr
nic-hdl:      HM127-AP
mnt-by:       MNT-KRNIC-AP
changed:      hostmaster@nic.or.kr 20020507
source:       APNIC

inetnum: -
netname:      KIDC-KR
descr:        LG DACOM KIDC
country:      KR
admin-c:      IA115-KR
tech-c:       IM115-KR
mnt-by:       MNT-KRNIC-AP
remarks:      This information has been partially mirrored by APNIC from
remarks:      KRNIC. To obtain more specific information, please use the
remarks:      KRNIC whois server at whois.krnic.net.
changed:      hostmaster@nic.or.kr

Registrant Data
NeoTrace Copyright ©1997-2001 NeoWorx Inc

[attachment deleted by admin]

Because they can… ;D

I pinged them back, just to say hello. :slight_smile:

But I guess they have their firewall set to drop ICMP, as my requests timed out.

Inconsiderate buggers :smiley:

Perhaps I allow nmap to pay them a visit ;D ;D ;D ;D ;D

Try to change your IP address.

Does it help?

If only the Firewall went into Emergency Mode, that would mean DDOS.

I’ll restart the router (and thereby get a new IP) tomorrow. Am curious to see if they pay me another visit.



Interesting article. Kinda thought this was the case as other articles I have seen hinted at C and C servers being in the UK, and elsewhere.

BTW, I am about as far away from the UK as you can get :slight_smile: