We recently had an incident with a Dlink router participating with a
DDoS attack. All the outgoing traffic was on port 1900, so it made it
easy to identify. Firmware upgrade fixed it.
bp
On 10/3/2014 7:38 PM, RickG wrote:
I've got a customer complaining about intermittent speed issues and short
cut off's on his connection. My MT box shows he has a high connection rate.
I also noticed in the logs on my Netgear router that his IP shows with the
following message: [DoS attack: Smurf] attack packets in last 20 sec from
ip [10.10.45.103], Friday, Oct 03,2014 16:05:51
I assume he has a virus but he says he has run virus scans on all his
computers and devices. I'm not sure what to tell him next. Any ideas?
-------------- next part --------------
An HTML attachment was scrubbed...
URL:
<http://mail.butchevans.com/pipermail/mikrotik/attachments/20141003/74df16e8/attachment.html>
_______________________________________________
Mikrotik mailing list
[email protected]
http://mail.butchevans.com/mailman/listinfo/mikrotik
Visit http://blog.butchevans.com/ for tutorials related to Mikrotik RouterOS
_______________________________________________
Mikrotik mailing list
[email protected]
http://mail.butchevans.com/mailman/listinfo/mikrotik
Visit http://blog.butchevans.com/ for tutorials related to Mikrotik RouterOS