大家是如果處理被hi呢??



贊助商連結


insture777
2001-08-17, 08:22 PM
最近一直被防火牆掃到有人要入侵(這麼說對嗎)很煩(同一個ip)~~~各位是怎麼處理的呢,
最近防火牆一直跑出ip168.95開頭的訊息~~~但是168不是需擬ip嗎???請各位解答,謝謝

贊助商連結


jwenchin
2001-08-19, 01:44 AM
168.95.X.X
因該是中華電信的
虛擬ip是 192.168.x.x

Johnson
2001-08-19, 04:26 AM
168開頭是虛擬IP?!(我第一次聽)-----通常是192吧!
至於要怎樣防止被駭~~別無他法~就是注意安全漏洞及加強防火牆!

insture777
2001-08-19, 02:09 PM
最初由 Johnson
168開頭是虛擬IP?!(我第一次聽)-----通常是192吧!
至於要怎樣防止被駭~~別無他法~就是注意安全漏洞及加強防火牆!

請問一下安全漏洞是什麼阿???????
最近快煩死了,每次一上網防火牆就會有緊告訊息~~
168.95.192.26跟217.136.492.2這兩個
好像是我下載一個東西以後,就開始了一直這樣~~但是用掃木馬的軟體也掃不到????
謝謝囉

jwenchin
2001-08-19, 03:52 PM
將攻擊訊息列出來看一下
攻擊這事常常都有

insture777
2001-08-19, 05:08 PM
好吧,請大家幫我一下
ZoneAlarm Logging Client v2.6.84
Windows 98-4.90.3000- -SP
type,date,time,source,destination,transport
PE,2001/08/18,14:02:10 +8:00 GMT,Winamp,127.0.0.1:1025,N/A
PE,2001/08/18,14:08:19 +8:00 GMT,Guitar Pro Online,127.0.0.1:1025,N/A
FWIN,2001/08/18,14:24:50 +8:00 GMT,192.168.1.1:0,192.168.1.2:0,ICMP
PE,2001/08/18,14:34:03 +8:00 GMT,ICQSRP.EXE,168.95.192.1:53,N/A
PE,2001/08/18,14:34:09 +8:00 GMT,ZoneAlarm Pro,168.95.192.1:53,N/A
PE,2001/08/18,14:34:18 +8:00 GMT,ICQ Application,168.95.192.1:53,N/A
PE,2001/08/18,14:34:39 +8:00 GMT,ICQ Application,0.0.0.0:0,N/A
PE,2001/08/18,14:38:17 +8:00 GMT,Outlook Express,168.95.192.1:53,N/A
PE,2001/08/18,14:40:41 +8:00 GMT,LiveUpdate Engine COM Module,168.95.192.1:53,N/A
PE,2001/08/18,15:41:42 +8:00 GMT,ICQ Application,168.95.192.1:53,N/A
PE,2001/08/18,15:42:01 +8:00 GMT,Outlook Express,168.95.192.1:53,N/A
FWIN,2001/08/18,15:44:19 +8:00 GMT,63.112.250.195:4213,61.217.181.206:80,TCP (flags:S)
PE,2001/08/18,15:46:01 +8:00 GMT,MSN Messenger Service,127.0.0.1:1109,N/A
PE,2001/08/18,15:48:13 +8:00 GMT,Winamp,168.95.192.1:53,N/A
FWIN,2001/08/18,15:48:15 +8:00 GMT,168.95.192.25:53,61.217.181.206:1167,UDP
PE,2001/08/18,15:50:19 +8:00 GMT,Windows Explorer,127.0.0.1:1216,N/A
PE,2001/08/18,16:51:15 +8:00 GMT,MooSoft Live Update,168.95.192.1:53,N/A
FWIN,2001/08/18,16:53:33 +8:00 GMT,168.95.192.26:53,61.217.183.222:1134,UDP
PE,2001/08/18,16:53:50 +8:00 GMT,EZPEER.EXE,0.0.0.0:0,N/A
PE,2001/08/18,20:01:30 +8:00 GMT,EZPEER.EXE,168.95.192.1:53,N/A
PE,2001/08/18,21:52:08 +8:00 GMT,IPC Server,168.95.192.1:53,N/A
PE,2001/08/18,21:52:13 +8:00 GMT,FlashGet,127.0.0.1:2114,N/A
FWIN,2001/08/18,22:26:51 +8:00 GMT,168.95.192.26:53,61.225.185.5:2417,UDP
FWIN,2001/08/18,22:37:03 +8:00 GMT,168.95.192.26:53,61.225.185.5:2479,UDP
FWIN,2001/08/18,22:45:18 +8:00 GMT,211.36.217.234:1638,61.225.185.5:80,TCP (flags:S)
FWIN,2001/08/19,00:04:14 +8:00 GMT,168.95.192.26:53,61.225.185.5:3035,UDP
FWIN,2001/08/19,00:15:01 +8:00 GMT,210.52.211.175:1519,61.217.181.138:80,TCP (flags:S)
FWIN,2001/08/19,00:42:20 +8:00 GMT,217.136.49.2:4237,61.217.181.138:80,TCP (flags:S)
PE,2001/08/19,00:47:58 +8:00 GMT,TCP/IP Traceroute Command,168.95.192.1:53,N/A
PE,2001/08/19,14:01:35 +8:00 GMT,Norton AntiVirus Utilities,0.0.0.0:0,N/A
PE,2001/08/19,14:02:49 +8:00 GMT,Norton AntiVirus Utilities,168.95.192.1:53,N/A
FWIN,2001/08/19,14:08:05 +8:00 GMT,61.217.205.133:4487,61.217.183.125:80,TCP (flags:S)
FWIN,2001/08/19,14:11:23 +8:00 GMT,61.217.121.129:3533,61.217.183.125:80,TCP (flags:S)
FWIN,2001/08/19,14:11:44 +8:00 GMT,61.217.246.81:4443,61.217.183.125:80,TCP (flags:S)
FWIN,2001/08/19,14:13:23 +8:00 GMT,61.217.203.164:3964,61.217.183.125:80,TCP (flags:S)
FWIN,2001/08/19,14:25:51 +8:00 GMT,61.222.20.82:4058,61.217.183.125:53,TCP (flags:S)
FWIN,2001/08/19,14:28:01 +8:00 GMT,61.217.153.41:1755,61.217.183.125:80,TCP (flags:S)
FWIN,2001/08/19,14:28:04 +8:00 GMT,61.76.211.202:3583,61.217.183.125:80,TCP (flags:S)
FWIN,2001/08/19,14:28:18 +8:00 GMT,61.217.57.66:2233,61.217.183.125:80,TCP (flags:S)
FWIN,2001/08/19,14:29:06 +8:00 GMT,211.22.13.130:0,61.217.182.44:0,ICMP (type:8/subtype:0)
FWIN,2001/08/19,14:30:02 +8:00 GMT,61.217.207.25:3927,61.217.182.44:80,TCP (flags:S)
PE,2001/08/19,14:32:18 +8:00 GMT,Windows(R) NetMeeting(R),0.0.0.0:0,N/A
FWIN,2001/08/19,14:32:35 +8:00 GMT,61.217.4.112:2923,61.217.182.44:80,TCP (flags:S)
PE,2001/08/19,14:32:39 +8:00 GMT,Windows(R) NetMeeting(R),61.217.207.25:1720,N/A
FWIN,2001/08/19,14:39:34 +8:00 GMT,61.217.153.41:4770,61.217.182.44:80,TCP (flags:S)
PE,2001/08/19,14:42:03 +8:00 GMT,Microsoft AutoUpdate,61.217.182.44:2869,N/A
FWIN,2001/08/19,14:43:36 +8:00 GMT,61.217.196.57:2479,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,14:43:38 +8:00 GMT,61.217.57.25:4709,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,14:46:37 +8:00 GMT,61.217.118.25:1920,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,14:51:03 +8:00 GMT,61.217.246.81:4240,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,15:03:25 +8:00 GMT,61.216.154.108:4165,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,15:03:55 +8:00 GMT,61.217.207.25:4854,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,15:07:11 +8:00 GMT,61.217.54.120:4380,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,15:22:19 +8:00 GMT,61.143.102.63:2363,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,15:24:58 +8:00 GMT,61.141.131.148:3077,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,15:30:10 +8:00 GMT,61.72.70.147:4424,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,15:34:02 +8:00 GMT,61.217.107.191:4339,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,15:36:24 +8:00 GMT,61.77.74.9:137,61.217.182.44:137,UDP
FWIN,2001/08/19,15:38:11 +8:00 GMT,61.217.216.120:1430,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,15:41:34 +8:00 GMT,61.217.57.25:1860,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,15:42:05 +8:00 GMT,61.217.121.129:2924,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,15:56:54 +8:00 GMT,61.217.121.129:3728,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,15:57:52 +8:00 GMT,61.217.229.44:3515,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,16:01:18 +8:00 GMT,61.149.7.75:3297,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,16:02:04 +8:00 GMT,61.217.4.112:4368,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,16:04:09 +8:00 GMT,61.217.107.191:3190,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,16:04:14 +8:00 GMT,61.217.87.160:2346,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,16:06:59 +8:00 GMT,61.181.209.9:3459,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,16:14:39 +8:00 GMT,61.217.72.39:2043,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,16:20:59 +8:00 GMT,61.217.58.15:2060,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,16:23:44 +8:00 GMT,168.95.17.202:0,61.217.182.44:0,ICMP (type:3/subtype:1)
FWIN,2001/08/19,16:24:12 +8:00 GMT,61.159.186.73:2460,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,16:33:33 +8:00 GMT,61.217.12.25:1451,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,16:36:29 +8:00 GMT,61.217.109.112:3490,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,16:38:43 +8:00 GMT,61.132.52.58:3453,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,16:39:32 +8:00 GMT,61.217.216.120:3275,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,16:41:48 +8:00 GMT,61.217.71.31:1135,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,16:44:55 +8:00 GMT,61.217.61.190:2004,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,16:45:01 +8:00 GMT,61.217.61.190:2224,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,16:45:04 +8:00 GMT,61.217.61.190:2276,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,16:45:04 +8:00 GMT,61.217.61.190:2292,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,16:45:14 +8:00 GMT,61.217.61.190:2557,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,16:45:22 +8:00 GMT,61.217.61.190:2823,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,16:45:22 +8:00 GMT,61.217.61.190:2827,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,16:45:24 +8:00 GMT,61.217.61.190:2859,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,16:45:25 +8:00 GMT,61.217.61.190:2885,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,16:45:25 +8:00 GMT,61.217.61.190:2891,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,16:45:27 +8:00 GMT,61.217.61.190:2911,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,16:45:30 +8:00 GMT,61.217.61.190:2965,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,16:45:32 +8:00 GMT,61.217.174.57:2372,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,16:47:06 +8:00 GMT,61.217.57.49:3526,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,16:53:03 +8:00 GMT,61.217.93.166:1134,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,17:04:54 +8:00 GMT,61.217.76.216:3087,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,17:06:32 +8:00 GMT,61.224.140.63:1540,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,17:07:26 +8:00 GMT,61.217.240.42:3547,61.217.182.44:80,TCP (flags:S)
FWIN,2001/08/19,17:07:50 +8:00 GMT,61.217.4.112:2321,61.217.182.44:80,TCP (flags:S)
先在這邊謝謝大家熱心幫忙,謝謝

ROACH
2001-08-20, 07:27 AM
照這樣看起來攻擊你的主機~~應該是中的~紅色警戒
所以才會掃你~~
我裝Blackice 幾乎一個小時就被類似這種掃描~掃快一千次

insture777
2001-08-20, 05:59 PM
紅色警戒~~~???那不是win2000才會中嗎????我有format硬碟過一次了,還是掃到~~~我的是98現在裝me的,謝謝

ROACH
2001-08-20, 06:22 PM
我又沒說你中毒~~
是你被掃描ㄚ
中的紅色警戒的主機~~~它會去掃其他的IP~~~看有沒有開80

當然我們這些只要連上網路的電腦~都會被掃到ㄚ~~~

但是我們又不是架NT或2000~~所以只有被掃~不會有其他的損害啦

insture777
2001-08-20, 08:49 PM
哦~~~是這樣哦~~~~謝謝囉