A Broadband and ADSL forum. BroadbanterBanter

Welcome to BroadbanterBanter.

You are currently viewing as a guest which gives you limited access to view most discussions and other FREE features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload your own photos and access many other special features. Registration is fast, simple and absolutely free so please, join our community today.

Go Back   Home » BroadbanterBanter forum » Newsgroup Discussions » uk.telecom.broadband (UK broadband)
Site Map Home Register Authors List Search Today's Posts Mark Forums Read Web Partners

uk.telecom.broadband (UK broadband) (uk.telecom.broadband) Discussion of broadband services, technology and equipment as provided in the UK. Discussions of specific services based on ADSL, cable modems or other broadband technology are also on-topic. Advertising is not allowed.

Router log.



 
 
Thread Tools Display Modes
  #1  
Old July 6th 06, 11:01 AM posted to uk.telecom.broadband
Dave P
external usenet poster
 
Posts: 36
Default Router log.

What does this mean??? All logs are for the same time. Any ideas?

Thanks,

Dave


06.07.2006 06:51:10 **UDP Flood to Host** 68.42.202.114, 9465- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 69.116.89.103, 2949- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 200.234.110.78, 6346- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 69.244.183.253, 21756- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 72.226.93.173, 37526- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 75.6.25.242, 19790- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 24.42.146.141, 61295- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 201.152.157.69, 6346- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 81.153.239.50, 6346- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 85.164.23.80, 3232- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 213.140.16.191, 37112- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 12.218.182.101, 6346- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 82.83.55.6, 13586- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 220.238.231.244, 15804- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 70.179.153.239, 60433- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 66.38.53.84, 12132- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 207.237.102.79, 27728- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 24.128.91.154, 2873- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 71.108.127.11, 24919- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 60.226.107.166, 1026- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 63.40.98.205, 21227- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 218.17.11.103, 21282- ****MY
IP****, 7875 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 71.240.235.254, 50069- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 128.220.203.235, 6346- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 147.10.235.141, 11605- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 149.229.97.123, 36559- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 201.4.171.202, 6346- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 63.136.115.247, 60897- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 217.227.15.35, 36479- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 69.110.90.158, 50756- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 220.233.81.46, 4326- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 71.233.254.9, 6346- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 67.84.20.178, 7647- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 72.178.35.151, 63818- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 86.15.161.118, 6346- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 12.178.14.158, 15711- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 24.155.205.119, 60021- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 206.75.62.110, 32554- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 82.41.133.32, 10077- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 81.49.12.142, 6346- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 67.51.148.61, 60708- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 201.155.1.226, 6346- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 86.199.250.50, 6346- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 65.33.86.60, 40022- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 82.230.127.222, 6346- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 82.254.54.37, 6346- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 83.131.38.88, 6346- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 84.227.28.237, 6346- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 82.41.137.8, 17187- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 68.4.211.11, 15481- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 65.8.10.152, 50182- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 65.118.151.226, 6346- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 71.79.213.6, 6346- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 81.110.98.190, 2775- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 84.190.100.76, 6346- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 67.165.55.103, 17003- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 201.26.45.35, 6346- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 81.248.99.151, 6346- ****MY
IP****, 41395 (from ATM1 Inbound)


  #2  
Old July 6th 06, 11:14 AM posted to uk.telecom.broadband
Gareth Halfacree
external usenet poster
 
Posts: 32
Default Router log.

Dave P wrote:
What does this mean??? All logs are for the same time. Any ideas?

06.07.2006 06:51:10 **UDP Flood to Host** 68.42.202.114, 9465- ****MY
IP****, 41395 (from ATM1 Inbound)


Your router is detecting large quantities of User Datagram Protocol
packets from a range of IP addresses. The built-in 'firewall' is
proclaiming these to be a DoS or 'flood' attack, and presumably
filtering accordingly. The IPs range from Comcast cable ranges to
Brazilian DSL services.

Are you using any peer-to-peer filesharing software?

--
Gareth Halfacree
http://gareth.halfacree.co.uk
  #3  
Old July 6th 06, 11:27 AM posted to uk.telecom.broadband
Mike the Unshavable
external usenet poster
 
Posts: 4
Default Router log.

"Dave P" writed in
:

What does this mean??? All logs are for the same time. Any ideas?

Thanks,

Dave


06.07.2006 06:51:10 **UDP Flood to Host** 68.42.202.114, 9465-
****MY IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 69.116.89.103, 2949-
****MY IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 200.234.110.78, 6346-
****MY IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 69.244.183.253, 21756-
****MY IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 72.226.93.173, 37526-
****MY IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 75.6.25.242, 19790- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 24.42.146.141, 61295-
****MY IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 201.152.157.69, 6346-
****MY IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 81.153.239.50, 6346-
****MY IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 85.164.23.80, 3232- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 213.140.16.191, 37112-
****MY IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 12.218.182.101, 6346-
****MY IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 82.83.55.6, 13586- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 220.238.231.244, 15804-
****MY IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 70.179.153.239, 60433-
****MY IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 66.38.53.84, 12132- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 207.237.102.79, 27728-
****MY IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 24.128.91.154, 2873-
****MY IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 71.108.127.11, 24919-
****MY IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 60.226.107.166, 1026-
****MY IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 63.40.98.205, 21227-
****MY IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 218.17.11.103, 21282-
****MY IP****, 7875 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 71.240.235.254, 50069-
****MY IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 128.220.203.235, 6346-
****MY IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 147.10.235.141, 11605-
****MY IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 149.229.97.123, 36559-
****MY IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 201.4.171.202, 6346-
****MY IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 63.136.115.247, 60897-
****MY IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 217.227.15.35, 36479-
****MY IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 69.110.90.158, 50756-
****MY IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 220.233.81.46, 4326-
****MY IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 71.233.254.9, 6346- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 67.84.20.178, 7647- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 72.178.35.151, 63818-
****MY IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 86.15.161.118, 6346-
****MY IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 12.178.14.158, 15711-
****MY IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 24.155.205.119, 60021-
****MY IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 206.75.62.110, 32554-
****MY IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 82.41.133.32, 10077-
****MY IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 81.49.12.142, 6346- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 67.51.148.61, 60708-
****MY IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 201.155.1.226, 6346-
****MY IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 86.199.250.50, 6346-
****MY IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 65.33.86.60, 40022- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 82.230.127.222, 6346-
****MY IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 82.254.54.37, 6346- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 83.131.38.88, 6346- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 84.227.28.237, 6346-
****MY IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 82.41.137.8, 17187- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 68.4.211.11, 15481- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 65.8.10.152, 50182- ****MY
IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 65.118.151.226, 6346-
****MY IP****, 41395 (from ATM1 Inbound)
06.07.2006 06:51:10 **UDP Flood to Host** 71.79.213.6, 6346- ****MY

etc



I got a couple of these (no where near as many as you) along with a log
entry that related to 'smurf' I did a bit of googling and got slightly
spooked as they appeared to relate to DDoS (denial of service) attacking
attempts.
My ISP (Metronet) seemed unconcerned and told me that they related to
voip, which seemed to hang together, as I had recently installed a Sipura
ATA.
  #4  
Old July 6th 06, 11:42 AM posted to uk.telecom.broadband
Dave P
external usenet poster
 
Posts: 36
Default Router log.

"Mike

I got a couple of these (no where near as many as you) along with a log
entry that related to 'smurf' I did a bit of googling and got slightly
spooked as they appeared to relate to DDoS (denial of service) attacking
attempts.
My ISP (Metronet) seemed unconcerned and told me that they related to
voip, which seemed to hang together, as I had recently installed a Sipura
ATA.


Thanks guys. I haven't and don't use VOIP. Guess its one of those things.

Dave



--
"Statistics are like a bikini. What they reveal is interesting. What they
conceal is vital. "


 




Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT +1. The time now is 01:32 AM.


Powered by vBulletin® Version 3.6.4
Copyright ©2000 - 2019, Jelsoft Enterprises Ltd.Content Relevant URLs by vBSEO 2.4.0
Copyright 2004-2019 BroadbanterBanter.
The comments are property of their posters.