First of all Don't Panic... and explain to me why you think you have been targetted by a hacker? The reason I ask is because all computers are constantly being scanned all the time and if you only have a few hits on your firewall then you probably are not being targetted...unless someone has made a specific threat.
Second of all, do not let your antivirus/firewall software lapse.
Next, I have traced both of those IPs .. once is coming from ripe and the other through apnic (basically they are foreign)...
If you are truly concerned you can write to the abuse departments of those ISPs and report these intrusion attempts (however without more info on what the IPs were doing it's impossibe to say if they were truly intrusion attacks or attacks at all)...
The first IP traces to:
inetnum: 195.131.4.128 - 195.131.4.191
netname: SINTEZ-NET
descr: Sintez
descr: Saint-Petersburg
descr: Russia
country: RU
admin-c: ZHAM-RIPE
tech-c: ZHAM-RIPE
status: ASSIGNED PA
mnt-by: AS6690-MNT
source: RIPE # Filtered
person: Andrey B. Zhamoydo
address: WEBplus Ltd.
address: Kolomenskaja 29
address: St. Petersburg, Russia 191119
phone: +7 812 3269020
fax-no: +7 812 3269029
e-mail: zham@wplus.net
nic-hdl: ZHAM-RIPE
source: RIPE # Filtered
% Information related to '195.131.0.0/16AS6690'
route: 195.131.0.0/16
descr: WebPlus ZAO
origin: AS6690
mnt-by: AS6690-MNT
source: RIPE # Filtered
The second IP traces to:
inetnum: 60.208.0.0 - 60.217.255.255
netname: CNCGROUP-SD
descr: CNCGROUP Shandong province network
descr: China Network Communications Group Corporation
descr: No.156,Fu-Xing-Men-Nei Street,
descr: Beijing 100031
country: CN
admin-c: CH455-AP
tech-c: XZ14-AP
mnt-by: APNIC-HM
mnt-lower: MAINT-CNCGROUP-SD
mnt-routes: MAINT-CNCGROUP-RR
status: ALLOCATED PORTABLE
remarks: -+-+-+-+-+-+-+-+-+-+-+-++-+-+-+-+-+-+-+-+-+-+-+-+-+-+
remarks: This object can only be updated by APNIC hostmasters.
remarks: To update this object, please contact APNIC
remarks: hostmasters and include your organisation's account
remarks: name in the subject line.
remarks: -+-+-+-+-+-+-+-+-+-+-+-++-+-+-+-+-+-+-+-+-+-+-+-+-+-+
changed: hm-changed@apnic.net 20040705
changed: hm-changed@apnic.net 20060125
source: APNIC
route: 60.208.0.0/13
descr: CNC Group CHINA169 Shandong Province Network
country: CN
origin: AS4837
mnt-by: MAINT-CNCGROUP-RR
changed: abuse@cnc-noc.net 20060118
source: APNIC
role: CNCGroup Hostmaster
e-mail: abuse@cnc-noc.net
address: No.156,Fu-Xing-Men-Nei Street,
address: Beijing,100031,P.R.China
nic-hdl: CH455-AP
phone: +86-10-82993155
fax-no: +86-10-82993102
country: CN
admin-c: CH444-AP
tech-c: CH444-AP
changed: abuse@cnc-noc.net 20041119
mnt-by: MAINT-CNCGROUP
source: APNIC
person: XIAOFENG ZHANG
nic-hdl: XZ14-AP
e-mail: ip@pub.sd.cninfo.net
address: Jinan,Shandong P.R China
phone: +86-531-6666666
fax-no: +86-531-6666666
country: CN
changed: ip@sdinfo.net 20050330
mnt-by: MAINT-ZXF
source: APNIC
and they have an abuse@address listed...
good luck.
2007-09-16 12:48:38
·
answer #1
·
answered by Anonymous
·
0⤊
1⤋
What a JOKE.
If you had been around a while you would know this is by design to scare you into renewing your subscription.
It has been my expieriance that almost all do this when it gets to within a couple of weeks of renewel.
I can't prove anything but I have had both McAfee and Norton over the years and they both pulled this same unscrupulas tactic.
You don't suppose it's because they have both moved there tech support to India,
I'll say one thing, it wasn't like that when Peter Norton owned the company.
Ask Around and you be the judge
I would go with one of those that are offered by the Internet Service Providers Free
Don
2007-09-16 19:38:50
·
answer #2
·
answered by Don M 7
·
0⤊
1⤋
First, relax. If you are running a firewall, then it is doing exactly what you want it to do. When your current subscription runs out, invest in something, often your ISP will have software that is available to subscribers for free.
Many attacks taht are caught are from spoofed IP addresses anyway, so it won't make much of a difference.
2007-09-16 19:32:30
·
answer #3
·
answered by Michael H 7
·
0⤊
1⤋
Its probably just from software trying to conduct internet business. Get rid of norton, and use free stuff. I reccomend AVG antivirus free edition, zone alarm, and windows defender.
2007-09-16 19:31:58
·
answer #4
·
answered by lynx6201 3
·
0⤊
1⤋
Products made by Symantec are made just to make money and are not designed to be of any help to your PC. They actually Use too much RAM up and they really put too much pressure on your processor. I would recommend Bitdefender or Kaspersky. Anyway right now you should get spybot (antispyware)and zonealarm ( powerful firewall against hackers )
Both products are free
spybot
http://filehippo.com/download_spybot_search_destroy/
zonealarm
http://filehippo.com/download_zonealarm_free/
2007-09-16 19:34:24
·
answer #5
·
answered by Manhal 1
·
0⤊
1⤋
keep updating your antivirus and block the intrutions you can also download zonealarm firewall to block the hackers AVG is a freeware antivirus and zone alarm is a firewall which is also free ware i think with those your computer will be safe
2007-09-16 19:33:02
·
answer #6
·
answered by EL CHINGON DE DURANGO 2
·
0⤊
1⤋