View Full Version : *icmp Direct*smurf*ip Spoofing*
madgooner
10-22-06, 01:09 PM
Help, my downloads on my 3COM router 3crwe754g72-a on torrent sites are running really slow eg 10 k the router logs are coming up with **ICMP DIRECT** **SMURF** **IP SPOOFING** and **LAND** whats going on i have port forward the router and have zone alarm on which i have just put on thinking that might help. Also switched the windows firewall off
Please Help!
Shinobi
10-22-06, 04:53 PM
Welcome to Speedguide :)
First
What ports have you fowarded on the router?
madgooner
10-22-06, 05:02 PM
thanks mate for your response i have the following:
55009 for bitcomet
6969
6881 to 6886
these are done udp and tcp
do you know whats happening with my logs?
Shinobi
10-22-06, 07:08 PM
Well.. any time you "port forward" or open up any tcp or udp ports on your router.. any computers "out there" "scaning" for those ports thru the internet can try to exploit your computer..
Now.. if your downloading from bit torrent sites.. the "program" that you use... (say it is using just tcp port 6635).. well maybe the computer that you are downloading the file "from" is also trying to scan your i.p. address and see what other "ports" might be open.. that seems like to me what is happening.. whatever computer or "computers" that you are downloading from.. are throwing a bunch of scans toward your computer.. and your nat router is blocking that stuff and logging it, as a scanning type of attack..
Seems like a ICMP Scan.. that ties all of that string together.. that you posted from your router: **ICMP DIRECT** **SMURF** **IP SPOOFING** and **LAND** all together.
Also those attacks would be slowing you down... no doubt about that..
Is this happening on one bit torrent site? Or more then one?
vBulletin® v3.8.4, Copyright ©2000-2010, Jelsoft Enterprises Ltd.