Results 1 to 6 of 6

Thread: port scanned by my ISP

  1. #1
    Money Fist's Avatar Che-Che get the yayo
    Join Date
    Oct 2003
    Location
    London, England
    Age
    40
    Posts
    996
    my firewall has told me i got portscanned by an IP associated with my ISP
    its happened a few times before
    with ZoneAlarm i get a red box mentioning an IP from my ISP every now an then
    with Sygate (on my lil bros PC) i just got a portscanned
    Code:
    Somebody is scanning your computer.
     Your computer's TCP ports: 
     4444, 1025, 445,  and 80 have been scanned from 81.178.35.210..
    so i decided to block my ISPs range 81.178.*.*
    this includes my own current IP

    any one else done the same
    or experianced anything like it?

    btw my ISP is PIPEX (a UK ISP)


  2. Internet, Programming and Graphics   -   #2
    Your ISP & other ISPs will always scan you..there is nothing you can do about it.
    I got tired of seeing this in ZA & set it from High to Med.
    It's just there way of Pinging you to keep the conection alive...it's not harmful in anyway.

  3. Internet, Programming and Graphics   -   #3
    4play's Avatar knob jockey
    Join Date
    Jan 2003
    Location
    London
    Age
    41
    Posts
    3,824
    looks to my like your isp are search for people infected by blaster, sasser and other nasty worms since these are the ports they run on.

    its probably their way of reducing the number of infected machines hopefully.

  4. Internet, Programming and Graphics   -   #4
    Money Fist's Avatar Che-Che get the yayo
    Join Date
    Oct 2003
    Location
    London, England
    Age
    40
    Posts
    996
    great theory my friend
    their gonna stay blocked any way


  5. Internet, Programming and Graphics   -   #5
    sparsely's Avatar °¤°¤°¤°¤°¤°¤°
    Join Date
    Dec 2002
    Location
    static hum
    Posts
    3,486
    Quote Originally Posted by Fiber
    great theory my friend
    their gonna stay blocked any way
    that's retarted.
    they're not doing anything abnormal
    the problem is with your b00nish "omg hax" firewall, not your ISP.

    this post is guaranteed 100% parrot-free

  6. Internet, Programming and Graphics   -   #6
    4play's Avatar knob jockey
    Join Date
    Jan 2003
    Location
    London
    Age
    41
    Posts
    3,824
    Quote Originally Posted by Sparsely
    that's retarted.
    they're not doing anything abnormal
    the problem is with your b00nish "omg hax" firewall, not your ISP.
    exactly, how dare your 'b00nish "omg hax" firewall' stop connections on known ports used by malware and report it back to you.

    if you dont belive me do a quick google search for the ports in question and you get

    4444 - ms blaster opens this for shell connections
    1025 - rpc port ( used by untold amounts of malware)
    445 - port used to infect with sasser
    80 - probably checking to see if your running a http server against there license agreement

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •