JoeyJoeJo
04-27-2004, 08:53 PM
I am a resident on a college campus where the college has the IP range 129.174.0.0 - 129.174.255.255 with a bunch of subnets. My IP is 184.29 with a subnet of 255.255.248.0. In my dorm I have a Netgear WG314 Wireless G router. I have it set to email me notices of suspicous behaviour. Starting today I have gotten 54 messages that various IP addresses from within the University have been attempting a TCP Flood on my router. Here is a sample of what it sends me.
04-27-2004 19:26:22 - TCP Flood - Source:129.174.184.37,1912,WAN - Destination:129.174.184.29,6129,LAN
It started at 4:48pm today (4/27/04) and is still happening at 8:30pm. I'll get about 5 emails in a row from my router with the same IP address attached to it, then there will be a different one. Also, the ports both WAN and LAN seem to be random. I have a few ports open on my router for varous apps that I use, but I've now closed all non-essential ones. Is this a virus, or someone trying to hack me, or what?
04-27-2004 19:26:22 - TCP Flood - Source:129.174.184.37,1912,WAN - Destination:129.174.184.29,6129,LAN
It started at 4:48pm today (4/27/04) and is still happening at 8:30pm. I'll get about 5 emails in a row from my router with the same IP address attached to it, then there will be a different one. Also, the ports both WAN and LAN seem to be random. I have a few ports open on my router for varous apps that I use, but I've now closed all non-essential ones. Is this a virus, or someone trying to hack me, or what?