suspiciuni (firewall resetat)
- tapirul
- elite
- Posts: 3194
- Joined: Sun Jul 06, 2003 5:57 am
- Contact:
suspiciuni (firewall resetat)
in timp ce ma plimbam pe un site mai deocheat (cu crack-uri sa fiu mai exact, incercand sa gasesc...ceva ), antiviru imi spune ca a detectat un threat (Bloodhound Exploit.6 ); imediat dupa ce inchid browseru (nu am mai downloadat nimic ca ma forta sa instalez nu's ce cakat) ZA-ul imi spune ca "a new network was detected" si imi cere sa o redenumesc etc. Ma uit in setari - ZA era pornit de la zero (setarile de privacy off, programs numa' trei etc). Am curatat calcul (si nu am gasit nimic), am reinstalat ZA..
ce sa fi fost?
ce sa fi fost?
- Luci Sandor
- senior
- Posts: 441
- Joined: Wed Apr 07, 2004 11:17 pm
- Location: 127.0.0.1
- Contact:
- tapirul
- elite
- Posts: 3194
- Joined: Sun Jul 06, 2003 5:57 am
- Contact:
alta astazi. Firewallu cica:
Object: 800040e9 is trying to connect to the Internet or your local network
ZoneAlarm Pro is asking you whether to allow the connection. No breach in your security has occurred. Your computer is safe.
Inside the program alert
Alert property Alert property value Technical explanation
Program Name Object: 800040e9 A program running on your computer, which either attempted to send an IP packet over the Internet or is waiting for an incoming packet.
Filename Object: 800040e9 The filename of the program that ZoneAlarm Pro found on your computer.
Program Size 0 The size of the program executable file in bytes.
Program MD5 00000000000000000000000000000000 The MD5 hash, or number, that uniquely identifies the executable.
Date Modified Nov-29-1979 05:00:00 PM The date when Object: 800040e9 was most recently modified.
Connect Type Access This value can be either Access, which is an Internet connection attempt by Object: 800040e9 or Server, which indicates that Object: 800040e9 is waiting for connections coming in from the Internet.
Remote Port 110 The port Object: 800040e9 is using on the remote computer.
Remote IP Address 63.240.76.10 The IP address of the remote computer that caused the alert.
Alert Date Sep-08-2004 10:27:22 PM GMT-08:00 The time when ZoneAlarm Pro detected the alert on your computer.
Whois Information
CERFnet CERFNET-BLK-5 (NET-63-240-0-0-1)
63.240.0.0 - 63.242.255.255
Project Redwood ISP (AT&T Internal) ATTENS-NYC3-007708-2 (NET-63-240-76-0-1)
63.240.76.0 - 63.240.77.255
# ARIN WHOIS database, last updated 2004-02-09 19:15
# Enter ? for additional hints on searching ARIN's WHOIS database.
CustName: Project Redwood ISP (AT&T Internal)
Address: 9805 Scranton Road
City: San Diego
StateProv: CA
PostalCode: 92121
Country: US
RegDate: 2001-11-16
Updated: 2001-11-16
NetRange: 63.240.76.0 - 63.240.77.255
CIDR: 63.240.76.0/23
NetName: ATTENS-NYC3-007708-2
NetHandle: NET-63-240-76-0-1
Parent: NET-63-240-0-0-1
NetType: Reassigned
Comment:
RegDate: 2001-11-16
Updated: 2001-11-16
TechHandle: CERF-HM-ARIN
TechName: AT&T Enhanced Network Services
TechPhone: +1-858-812-5000
TechEmail: notify@attens.com
OrgTechHandle: NETWO10-ARIN
OrgTechName: Network Provisioning
OrgTechPhone: +1-800-876-2373
OrgTechEmail: iptool@attens.com
- tapirul
- elite
- Posts: 3194
- Joined: Sun Jul 06, 2003 5:57 am
- Contact:
- tapirul
- elite
- Posts: 3194
- Joined: Sun Jul 06, 2003 5:57 am
- Contact:
mai, ori sunt io paranoic ori ceva se intampla.
brusc ZA-ul ma anunta ca detecteaza un nou network conectat la compul meu. Zice ca IP-ul este 169.254.0.0 (pe whois zice ca este
am zis pe wizard ca NOT trust si am ramas cu setarile vechi. Dar ce-a fost asta?
cercetand mai departe aflu ca
what should I make out of this??
brusc ZA-ul ma anunta ca detecteaza un nou network conectat la compul meu. Zice ca IP-ul este 169.254.0.0 (pe whois zice ca este
OrgName: Internet Assigned Numbers Authority
OrgID: IANA
Address: 4676 Admiralty Way, Suite 330
City: Marina del Rey
StateProv: CA
PostalCode: 90292-6695
Country: US
NetRange: 169.254.0.0 - 169.254.255.255
CIDR: 169.254.0.0/16
NetName: LINKLOCAL
NetHandle: NET-169-254-0-0-1
Parent: NET-169-0-0-0-0
NetType: IANA Special Use
NameServer: BLACKHOLE-1.IANA.ORG
NameServer: BLACKHOLE-2.IANA.ORG
Comment: Please see RFC 3330 for additional information.
RegDate: 1998-01-27
Updated: 2002-10-14
OrgAbuseHandle: IANA-IP-ARIN
OrgAbuseName: Internet Corporation for Assigned Names and Number
OrgAbusePhone: +1-310-301-5820
OrgAbuseEmail: abuse@iana.org
OrgTechHandle: IANA-IP-ARIN
OrgTechName: Internet Corporation for Assigned Names and Number
OrgTechPhone: +1-310-301-5820
OrgTechEmail: abuse@iana.org
am zis pe wizard ca NOT trust si am ramas cu setarile vechi. Dar ce-a fost asta?
cercetand mai departe aflu ca
"Autoconfiguration" IP Addresses:
169.254.0.0 - 169.254.255.255
Addresses in the range 169.254.0.0 to 169.254.255.255 are used automatically by some PCs and Macs when they are configured to use IP, do not have a static IP Address assigned, and are unable to obtain an IP address using DHCP.
This traffic is intended to be confined to the local network, so the administrator of the local network should look for misconfigured hosts. Some ISPs inadvertently also permit this traffic, so you may also want to contact your ISP. This is documented in RFC 3330.
what should I make out of this??
- Luci Sandor
- senior
- Posts: 441
- Joined: Wed Apr 07, 2004 11:17 pm
- Location: 127.0.0.1
- Contact:
Probabil ca acela are DHCP (ceea ce se intimpla de regula la cablu) si IP-ul acela este pus automat de Windows fiindca acel calculator nu a reusit sa se inteleaga in timp util cu serverul care distribuie IP-uri pe timp limitat. Acum acel PC cauta prin retea serverul DHCP care sa ii dea un nou IP so striga de nebun catre toate calculatoarele.
nu arunca lucrurile care pot fi utile altcuiva, doneaza pe Freecycle Bucuresti
- tapirul
- elite
- Posts: 3194
- Joined: Sun Jul 06, 2003 5:57 am
- Contact:
- elfstone
- senior
- Posts: 428
- Joined: Sun Sep 14, 2003 3:10 pm
- Location: about and aloof
- Contact:
- d'Arc
- elder
- Posts: 1377
- Joined: Tue Oct 07, 2008 1:18 am
Re: suspiciuni (firewall resetat)
nu stiu daca sunt pe topicul potrivit, dar am o problema cu firefox-ul, care de cate ori deschid o pagina (imed, mail, etc), imi deschide reclama pentru travians si gamingharbor. am dezinstalat si reinstalat firefox, si face la fel. am cautat pe paginile respective sa vad daca pot sa-i dau sa nu-mi mai apara, nu este nimic. nu stiu ce sa mai fac de ciuda. vreo idee?
- Laurentziu
- senior
- Posts: 244
- Joined: Tue Aug 11, 2009 8:32 pm
- Location: Bucuresti
Re: suspiciuni (firewall resetat)
nu stiu care e cauza dar incearca si tu un alt browser sa vezi ce se intampla. poate ne spui si noua apoi.
the punisher
- d'Arc
- elder
- Posts: 1377
- Joined: Tue Oct 07, 2008 1:18 am
Re: suspiciuni (firewall resetat)
ok. opera merge fara smecherii. ce fac cu firefox-ul... imi place mai mult...
- Laurentziu
- senior
- Posts: 244
- Joined: Tue Aug 11, 2009 8:32 pm
- Location: Bucuresti
-
- elite
- Posts: 4133
- Joined: Tue Oct 07, 2008 1:54 pm
Re: suspiciuni (firewall resetat)
dr_bang wrote:nu stiu daca sunt pe topicul potrivit, dar am o problema cu firefox-ul, care de cate ori deschid o pagina (imed, mail, etc), imi deschide reclama pentru travians si gamingharbor. am dezinstalat si reinstalat firefox, si face la fel. am cautat pe paginile respective sa vad daca pot sa-i dau sa nu-mi mai apara, nu este nimic. nu stiu ce sa mai fac de ciuda. vreo idee?
Adauga asta la firefox 3.5 https://addons.mozilla.org/en-US/firefox/addon/1865
sper sa-ti mearga.
succes.
- d'Arc
- elder
- Posts: 1377
- Joined: Tue Oct 07, 2008 1:18 am
Re: suspiciuni (firewall resetat)
am adaugat. tot asa face. mersi oricum.
-
- elite
- Posts: 4133
- Joined: Tue Oct 07, 2008 1:54 pm
Re: suspiciuni (firewall resetat)
dr_bang wrote:am adaugat. tot asa face. mersi oricum.
Inseamna ca ai activate pop-upurile, asa se numesc prostiile alea de reclame
intra la outils -> Options -> Contenu -> si bifeaza cele 4 casute , apoi da-i aply si save.
vezi poate asa merge.
- originaltup
- elder
- Posts: 1749
- Joined: Sun Jul 06, 2003 11:52 am
- Location: Ohio
Re: suspiciuni (firewall resetat)
Opera imi place mai mult dar daca vrei sa ramai in pierzanie dupa ce dezinstalezi Firefox, du-te in System/Program Files si sterge folderul de Firefox.
De asemenea n-ar strica sa dai in command: regedit, apoi search pentru chestiile cu pricina (doar inceputul numelui, gen "travia" si "gaming/gamingh") si pentru "firefox" si sterge-le. Dupa ceea reinstaleza Firefox 3.5.
PS. search doar numele, fara ghilimele
De asemenea n-ar strica sa dai in command: regedit, apoi search pentru chestiile cu pricina (doar inceputul numelui, gen "travia" si "gaming/gamingh") si pentru "firefox" si sterge-le. Dupa ceea reinstaleza Firefox 3.5.
PS. search doar numele, fara ghilimele
"There is a big difference between knowing the path, and walking the path"
- originaltup
- elder
- Posts: 1749
- Joined: Sun Jul 06, 2003 11:52 am
- Location: Ohio
Re: suspiciuni (firewall resetat)
Si nu ar strica daca ai avea o versiune de Adaware sau Spybot (ambele au versiuni free) pe care sa le folosesti in mod regulat.
"There is a big difference between knowing the path, and walking the path"
- d'Arc
- elder
- Posts: 1377
- Joined: Tue Oct 07, 2008 1:18 am
Re: suspiciuni (firewall resetat)
o sa incerc, dar mai incolo, maine am test si m-am enervat destul. oricum ms, o sa revin cu stiri.
Who is online
Users browsing this forum: No registered users and 4 guests