Port Scans...

spacedude89

Active Member
i keep getting port scaned, these are the log files,

=================================
Your computer's TCP ports:
135, 1025, 445, 139 and 1433 have been scanned from 71.111.25.162.
===================================
Somebody is scanning your computer.
Your computer's UDP ports:
2673, 2669, 2674, 2675 and 2676 have been scanned from 38.113.32.195.
===============================
Somebody is scanning your computer.
Your computer's TCP ports:
135, 1025, 445, 139 and 1433 have been scanned from 71.111.114.188.\

should i be worried, i have my firewall set up to block any attack for 600000 seconds now, before it was 600 and a portscan would occur, then they would get blocked again, this has been happing for 3 days now.....
 
Are you over a network ? I mean is there other computers connected with you as a LAN???

Check in your firewall what it says about the severity of the port scanning..Usually port scanning is a primitive way to initiate attacks but it's used for collecting information about your ports..Usually, as long as your firewall is working fine, you don't have to worry.
 
Port scanning is generally used in either hacking or as narafa pointed out, in you are on a network.
The way to check if this is a hacker attempt you need to tell us wheter or not you are on a network. If not then you will need some sort of port hider or a tracing program, when someone scans your ports again make sure you can trace him back to the source and of course, report them to their ISP. I suggest using something like NeoTrace which allows you to follow a remote connection if you can get thier IP address.
 
im not on a network, its just my own computer at home. the firewall program says they were minor,
Untitled-1.jpg
 
Well an easy fix, if your on a dynamic IP, just unplug router or reset it (retaining settings) This will change youre IP address. If your ip doesnt change, and your not behind a router or firewall. Turn on windows XP firewall. does this program also blockk attempts? or doesnt notify you? ( would be stupid to just tell you and not block em)
 
yes, i set it up to block them for 3 days but it seems they keep switching ip or something, i will try the unplug if the modem
 
what isp are you with?

EDIT:

OrgName: Verizon Internet Services Inc.
OrgID: VIS-61
Address: 1880 Campus Commons Dr
City: Reston
StateProv: VA
PostalCode: 20191
Country: US

NetRange: 71.96.0.0 - 71.117.255.255
CIDR: 71.96.0.0/12, 71.112.0.0/14, 71.116.0.0/15
NetName: BLOCK
NetHandle: NET-71-96-0-0-1
Parent: NET-71-0-0-0-0
NetType: Direct Allocation
NameServer: NS1.BELLATLANTIC.NET
NameServer: NS2.BELLATLANTIC.NET
NameServer: NS2.VERIZON.NET
NameServer: NS4.VERIZON.NET
Comment:
RegDate: 2005-01-18
Updated: 2005-04-21

OrgAbuseHandle: VISAB-ARIN
OrgAbuseName: VIS Abuse
OrgAbusePhone: +1-214-513-6711
OrgAbuseEmail: [email protected]

OrgTechHandle: ZV20-ARIN
OrgTechName: Verizon Internet Services
OrgTechPhone: +1-703-295-4583
OrgTechEmail: [email protected]

results using ARIN WHOIS
 
Back
Top