Sinds enkele maanden valt de internet verbinding van mijn router (Sitecom 300n xr gigabit Gaming Router II) random weg. Ik blijf wel verbinding houden met de router, maar kan niet internet. Ik moet de router dan van het stroom halen en weer aansluiten om weer internet te krijgen. Ik heb de router al eens terug gezet naar de fabrieksinstellingen, maar het probleem blijft. Als ik in de log kijk, zie ik dat mijn router massaal gespammed word van TPC en UDP packages van verschillende IP's.
Wat ik thuis heb draaien:
Computer die als gameserver (minecraft) functioneerd, ook als de gameserver niet draait, blijf ik de spam krijgen.
2 gewone pc's, ook als die uit staan blijf ik spam krijgen.
Hier een stukje van de log, gaat de hele dag door:
[WARN] Tue Jun 09 09:18:44 2015 Blocked incoming UDP packet from 67.199.89.138:53 to xx.xxx.xxx.xxx:8694
[WARN] Tue Jun 09 09:18:36 2015 Blocked incoming UDP packet from 80.57.82.114:12312 to xx.xxx.xxx.xxx:63056
[WARN] Tue Jun 09 09:18:32 2015 Above message repeated 3 times
[INFO] Tue Jun 09 09:18:31 2015 Log viewed by IP address 192.168.0.102
[WARN] Tue Jun 09 09:18:30 2015 Blocked incoming UDP packet from 80.57.82.114:12312 to xx.xxx.xxx.xxx:63056
[WARN] Tue Jun 09 09:18:30 2015 Above message repeated 1 times
[WARN] Tue Jun 09 09:15:06 2015 Blocked incoming UDP packet from 77.169.105.132:2350 to xx.xxx.xxx.xxx:17532
[WARN] Tue Jun 09 09:15:00 2015 Above message repeated 2 times
[WARN] Tue Jun 09 09:13:12 2015 Blocked incoming TCP packet from 218.77.79.43:49111 to xx.xxx.xxx.xxx:23
[WARN] Tue Jun 09 09:12:20 2015 Blocked incoming TCP packet from 50.247.67.139:50379 to xx.xxx.xxx.xxx:22
[WARN] Tue Jun 09 09:12:13 2015 Above message repeated 3 times
[WARN] Tue Jun 09 09:10:49 2015 Blocked incoming UDP packet from 216.218.206.117:52480 to xx.xxx.xxx.xxx:1434
[WARN] Tue Jun 09 09:10:12 2015 Blocked incoming UDP packet from 98.110.162.114:38741 to xx.xxx.xxx.xxx:63056
[WARN] Tue Jun 09 09:10:06 2015 Above message repeated 2 times
[WARN] Tue Jun 09 09:08:50 2015 Blocked incoming UDP packet from 80.57.82.114:12312 to xx.xxx.xxx.xxx:63056
[WARN] Tue Jun 09 09:08:44 2015 Above message repeated 5 times
[WARN] Tue Jun 09 09:06:35 2015 Blocked incoming UDP packet from 135.26.207.22:50166 to xx.xxx.xxx.xxx:63056
[WARN] Tue Jun 09 09:06:29 2015 Above message repeated 2 times
[WARN] Tue Jun 09 09:05:37 2015 Blocked incoming UDP packet from 120.145.31.216:44512 to xx.xxx.xxx.xxx:63056
[WARN] Tue Jun 09 09:05:29 2015 Blocked incoming TCP packet from 120.145.31.216:49192 to xx.xxx.xxx.xxx:63056
[WARN] Tue Jun 09 09:05:28 2015 Above message repeated 1 times
[WARN] Tue Jun 09 09:05:27 2015 Blocked incoming UDP packet from 120.145.31.216:44512 to xx.xxx.xxx.xxx:63056
[WARN] Tue Jun 09 09:05:23 2015 Above message repeated 1 times
[INFO] Tue Jun 09 09:05:14 2015 Log viewed by IP address 192.168.0.102
[WARN] Tue Jun 09 09:04:46 2015 Blocked incoming UDP packet from 77.169.105.132:2350 to xx.xxx.xxx.xxx:17532
[WARN] Tue Jun 09 09:04:40 2015 Above message repeated 2 times
[WARN] Tue Jun 09 09:03:11 2015 Blocked incoming TCP packet from 198.20.69.98:40082 to xx.xxx.xxx.xxx:26
[WARN] Tue Jun 09 09:01:45 2015 Blocked incoming TCP packet from 198.199.98.246:41242 to xx.xxx.xxx.xxx:6112
[WARN] Tue Jun 09 09:01:44 2015 Above message repeated 1 times
[WARN] Tue Jun 09 09:01:44 2015 Blocked incoming TCP packet from 198.199.98.246:37183 to xx.xxx.xxx.xxx:5900
[WARN] Tue Jun 09 09:01:43 2015 Above message repeated 1 times
[WARN] Tue Jun 09 09:01:43 2015 Blocked incoming TCP packet from 198.199.98.246:51677 to xx.xxx.xxx.xxx:5632
[WARN] Tue Jun 09 09:01:42 2015 Above message repeated 1 times
[WARN] Tue Jun 09 09:01:42 2015 Blocked incoming TCP packet from 198.199.98.246:45000 to xx.xxx.xxx.xxx:3306
[WARN] Tue Jun 09 09:01:41 2015 Above message repeated 1 times
[WARN] Tue Jun 09 09:01:41 2015 Blocked incoming TCP packet from 198.199.98.246:48442 to xx.xxx.xxx.xxx:1433
[WARN] Tue Jun 09 09:01:40 2015 Above message repeated 1 times
[WARN] Tue Jun 09 09:01:40 2015 Blocked incoming TCP packet from 198.199.98.246:34419 to xx.xxx.xxx.xxx:194
[WARN] Tue Jun 09 09:01:39 2015 Above message repeated 1 times
[WARN] Tue Jun 09 09:01:39 2015 Blocked incoming TCP packet from 198.199.98.246:54588 to xx.xxx.xxx.xxx:143
[WARN] Tue Jun 09 09:01:38 2015 Above message repeated 1 times
[WARN] Tue Jun 09 09:01:37 2015 Blocked incoming TCP packet from 198.199.98.246:41401 to xx.xxx.xxx.xxx:115
[WARN] Tue Jun 09 09:01:36 2015 Above message repeated 1 times
[WARN] Tue Jun 09 09:01:36 2015 Blocked incoming TCP packet from 198.199.98.246:59960 to xx.xxx.xxx.xxx:110
[WARN] Tue Jun 09 09:01:35 2015 Above message repeated 1 times
[WARN] Tue Jun 09 09:01:34 2015 Blocked incoming TCP packet from 198.199.98.246:42033 to xx.xxx.xxx.xxx:53
[WARN] Tue Jun 09 09:01:33 2015 Above message repeated 1 times
[WARN] Tue Jun 09 09:01:33 2015 Blocked incoming TCP packet from 198.199.98.246:37347 to xx.xxx.xxx.xxx:25
[WARN] Tue Jun 09 09:01:32 2015 Above message repeated 1 times
[WARN] Tue Jun 09 09:01:32 2015 Blocked incoming TCP packet from 198.199.98.246:60129 to xx.xxx.xxx.xxx:23
[WARN] Tue Jun 09 09:01:31 2015 Above message repeated 1 times
[WARN] Tue Jun 09 09:01:31 2015 Blocked incoming TCP packet from 198.199.98.246:44903 to xx.xxx.xxx.xxx:22
[WARN] Tue Jun 09 09:01:30 2015 Above message repeated 1 times
[WARN] Tue Jun 09 09:01:30 2015 Blocked incoming TCP packet from 198.199.98.246:38519 to xx.xxx.xxx.xxx:21
[WARN] Tue Jun 09 09:01:29 2015 Above message repeated 1 times
[INFO] Tue Jun 09 09:00:03 2015 Log viewed by IP address 192.168.0.102
[WARN] Tue Jun 09 08:59:56 2015 Blocked incoming UDP packet from 98.110.162.114:38741 to xx.xxx.xxx.xxx:63056
[WARN] Tue Jun 09 08:59:50 2015 Above message repeated 2 times
[WARN] Tue Jun 09 08:56:26 2015 Blocked incoming UDP packet from 70.65.186.20:60996 to xx.xxx.xxx.xxx:63056
[WARN] Tue Jun 09 08:56:20 2015 Above message repeated 2 times
[WARN] Tue Jun 09 08:56:19 2015 Blocked incoming UDP packet from 135.26.207.22:50166 to xx.xxx.xxx.xxx:63056
[INFO] Tue Jun 09 08:56:17 2015 Log viewed by IP address 192.168.0.102
[WARN] Tue Jun 09 08:56:15 2015 Blocked incoming UDP packet from 135.26.207.22:50166 to xx.xxx.xxx.xxx:63056
[WARN] Tue Jun 09 08:56:13 2015 Above message repeated 1 times
[WARN] Tue Jun 09 08:55:03 2015 Blocked incoming UDP packet from 70.185.96.36:39354 to xx.xxx.xxx.xxx:63056
[WARN] Tue Jun 09 08:54:57 2015 Above message repeated 2 times
[WARN] Tue Jun 09 08:54:28 2015 Blocked incoming TCP packet from 178.19.108.165:12200 to xx.xxx.xxx.xxx:21320
[WARN] Tue Jun 09 08:54:02 2015 Blocked incoming UDP packet from 77.169.105.132:2350 to xx.xxx.xxx.xxx:17532
[WARN] Tue Jun 09 08:53:56 2015 Above message repeated 2 times
[WARN] Tue Jun 09 08:53:24 2015 Blocked incoming UDP packet from 213.199.179.176:40026 to xx.xxx.xxx.xxx:63056
[WARN] Tue Jun 09 08:53:18 2015 Above message repeated 2 times
[INFO] Tue Jun 09 08:52:43 2015 Blocked incoming ICMP error message (ICMP type 3) from 112.87.85.146 to xx.xxx.xxx.xxx as there is no UDP session active between xx.xxx.xxx.xxx:8694 and 112.87.85.146:53
[INFO] Tue Jun 09 08:52:22 2015 Blocked incoming ICMP error message (ICMP type 3) from 125.44.8.248 to xx.xxx.xxx.xxx as there is no UDP session active between xx.xxx.xxx.xxx:8694 and 125.44.8.248:53
[INFO] Tue Jun 09 08:52:15 2015 Log viewed by IP address 192.168.0.102
[INFO] Tue Jun 09 08:52:03 2015 Above message repeated 1 times
[INFO] Tue Jun 09 08:52:00 2015 Log cleared by IP address 192.168.0.102
Poorten overzicht:
Open Port 21 is closed on xx.xxx.xxx.xxx.
Open Port 22 is closed on xx.xxx.xxx.xxx.
Open Port 23 is closed on xx.xxx.xxx.xxx.
Open Port 25 is closed on xx.xxx.xxx.xxx.
Open Port 53 is closed on xx.xxx.xxx.xxx.
Open Port 80 is closed on xx.xxx.xxx.xxx.
Open Port 110 is closed on xx.xxx.xxx.xxx.
Open Port 115 is closed on xx.xxx.xxx.xxx.
Open Port 135 is closed on xx.xxx.xxx.xxx.
Open Port 139 is closed on xx.xxx.xxx.xxx.
Open Port 143 is closed on xx.xxx.xxx.xxx.
Open Port 194 is closed on xx.xxx.xxx.xxx.
Open Port 443 is closed on xx.xxx.xxx.xxx.
Open Port 445 is closed on xx.xxx.xxx.xxx.
Open Port 1433 is closed on xx.xxx.xxx.xxx.
Open Port 3306 is closed on xx.xxx.xxx.xxx.
Open Port 3389 is open on xx.xxx.xxx.xxx.
Open Port 5632 is closed on xx.xxx.xxx.xxx.
Open Port 5900 is closed on xx.xxx.xxx.xxx.
Open Port 6112 is closed on xx.xxx.xxx.xxx.
Edit: Wat ip adressen uit de log gelokaliseerd:
IP Address Country Region City ISP
198.199.98.246 United States California San Francisco Digital Ocean Inc.
P Address Country Region City ISP
120.145.31.216 Australia Western Australia Perth Telstra
IP Address Country Region City ISP
135.26.207.22 United States Illinois Mattoon Consolidated Communications Inc.
IP Address Country Region City ISP
67.199.89.138 United States Arizona Phoenix Crystaltech Web Hosting Inc.
IP Address Country Region City ISP
70.65.186.20 Canada Alberta Lethbridge Shaw Communications Inc.
Weet iemand de oorzaak, of wat ik hier aan kan doen? Het lijkt alsof ik word aangevallen en dit er voor zorgt dat de router de verbinding met het internet kwijt raakt totdat je hem herstart.
Wat ik thuis heb draaien:
Computer die als gameserver (minecraft) functioneerd, ook als de gameserver niet draait, blijf ik de spam krijgen.
2 gewone pc's, ook als die uit staan blijf ik spam krijgen.
Hier een stukje van de log, gaat de hele dag door:
[WARN] Tue Jun 09 09:18:44 2015 Blocked incoming UDP packet from 67.199.89.138:53 to xx.xxx.xxx.xxx:8694
[WARN] Tue Jun 09 09:18:36 2015 Blocked incoming UDP packet from 80.57.82.114:12312 to xx.xxx.xxx.xxx:63056
[WARN] Tue Jun 09 09:18:32 2015 Above message repeated 3 times
[INFO] Tue Jun 09 09:18:31 2015 Log viewed by IP address 192.168.0.102
[WARN] Tue Jun 09 09:18:30 2015 Blocked incoming UDP packet from 80.57.82.114:12312 to xx.xxx.xxx.xxx:63056
[WARN] Tue Jun 09 09:18:30 2015 Above message repeated 1 times
[WARN] Tue Jun 09 09:15:06 2015 Blocked incoming UDP packet from 77.169.105.132:2350 to xx.xxx.xxx.xxx:17532
[WARN] Tue Jun 09 09:15:00 2015 Above message repeated 2 times
[WARN] Tue Jun 09 09:13:12 2015 Blocked incoming TCP packet from 218.77.79.43:49111 to xx.xxx.xxx.xxx:23
[WARN] Tue Jun 09 09:12:20 2015 Blocked incoming TCP packet from 50.247.67.139:50379 to xx.xxx.xxx.xxx:22
[WARN] Tue Jun 09 09:12:13 2015 Above message repeated 3 times
[WARN] Tue Jun 09 09:10:49 2015 Blocked incoming UDP packet from 216.218.206.117:52480 to xx.xxx.xxx.xxx:1434
[WARN] Tue Jun 09 09:10:12 2015 Blocked incoming UDP packet from 98.110.162.114:38741 to xx.xxx.xxx.xxx:63056
[WARN] Tue Jun 09 09:10:06 2015 Above message repeated 2 times
[WARN] Tue Jun 09 09:08:50 2015 Blocked incoming UDP packet from 80.57.82.114:12312 to xx.xxx.xxx.xxx:63056
[WARN] Tue Jun 09 09:08:44 2015 Above message repeated 5 times
[WARN] Tue Jun 09 09:06:35 2015 Blocked incoming UDP packet from 135.26.207.22:50166 to xx.xxx.xxx.xxx:63056
[WARN] Tue Jun 09 09:06:29 2015 Above message repeated 2 times
[WARN] Tue Jun 09 09:05:37 2015 Blocked incoming UDP packet from 120.145.31.216:44512 to xx.xxx.xxx.xxx:63056
[WARN] Tue Jun 09 09:05:29 2015 Blocked incoming TCP packet from 120.145.31.216:49192 to xx.xxx.xxx.xxx:63056
[WARN] Tue Jun 09 09:05:28 2015 Above message repeated 1 times
[WARN] Tue Jun 09 09:05:27 2015 Blocked incoming UDP packet from 120.145.31.216:44512 to xx.xxx.xxx.xxx:63056
[WARN] Tue Jun 09 09:05:23 2015 Above message repeated 1 times
[INFO] Tue Jun 09 09:05:14 2015 Log viewed by IP address 192.168.0.102
[WARN] Tue Jun 09 09:04:46 2015 Blocked incoming UDP packet from 77.169.105.132:2350 to xx.xxx.xxx.xxx:17532
[WARN] Tue Jun 09 09:04:40 2015 Above message repeated 2 times
[WARN] Tue Jun 09 09:03:11 2015 Blocked incoming TCP packet from 198.20.69.98:40082 to xx.xxx.xxx.xxx:26
[WARN] Tue Jun 09 09:01:45 2015 Blocked incoming TCP packet from 198.199.98.246:41242 to xx.xxx.xxx.xxx:6112
[WARN] Tue Jun 09 09:01:44 2015 Above message repeated 1 times
[WARN] Tue Jun 09 09:01:44 2015 Blocked incoming TCP packet from 198.199.98.246:37183 to xx.xxx.xxx.xxx:5900
[WARN] Tue Jun 09 09:01:43 2015 Above message repeated 1 times
[WARN] Tue Jun 09 09:01:43 2015 Blocked incoming TCP packet from 198.199.98.246:51677 to xx.xxx.xxx.xxx:5632
[WARN] Tue Jun 09 09:01:42 2015 Above message repeated 1 times
[WARN] Tue Jun 09 09:01:42 2015 Blocked incoming TCP packet from 198.199.98.246:45000 to xx.xxx.xxx.xxx:3306
[WARN] Tue Jun 09 09:01:41 2015 Above message repeated 1 times
[WARN] Tue Jun 09 09:01:41 2015 Blocked incoming TCP packet from 198.199.98.246:48442 to xx.xxx.xxx.xxx:1433
[WARN] Tue Jun 09 09:01:40 2015 Above message repeated 1 times
[WARN] Tue Jun 09 09:01:40 2015 Blocked incoming TCP packet from 198.199.98.246:34419 to xx.xxx.xxx.xxx:194
[WARN] Tue Jun 09 09:01:39 2015 Above message repeated 1 times
[WARN] Tue Jun 09 09:01:39 2015 Blocked incoming TCP packet from 198.199.98.246:54588 to xx.xxx.xxx.xxx:143
[WARN] Tue Jun 09 09:01:38 2015 Above message repeated 1 times
[WARN] Tue Jun 09 09:01:37 2015 Blocked incoming TCP packet from 198.199.98.246:41401 to xx.xxx.xxx.xxx:115
[WARN] Tue Jun 09 09:01:36 2015 Above message repeated 1 times
[WARN] Tue Jun 09 09:01:36 2015 Blocked incoming TCP packet from 198.199.98.246:59960 to xx.xxx.xxx.xxx:110
[WARN] Tue Jun 09 09:01:35 2015 Above message repeated 1 times
[WARN] Tue Jun 09 09:01:34 2015 Blocked incoming TCP packet from 198.199.98.246:42033 to xx.xxx.xxx.xxx:53
[WARN] Tue Jun 09 09:01:33 2015 Above message repeated 1 times
[WARN] Tue Jun 09 09:01:33 2015 Blocked incoming TCP packet from 198.199.98.246:37347 to xx.xxx.xxx.xxx:25
[WARN] Tue Jun 09 09:01:32 2015 Above message repeated 1 times
[WARN] Tue Jun 09 09:01:32 2015 Blocked incoming TCP packet from 198.199.98.246:60129 to xx.xxx.xxx.xxx:23
[WARN] Tue Jun 09 09:01:31 2015 Above message repeated 1 times
[WARN] Tue Jun 09 09:01:31 2015 Blocked incoming TCP packet from 198.199.98.246:44903 to xx.xxx.xxx.xxx:22
[WARN] Tue Jun 09 09:01:30 2015 Above message repeated 1 times
[WARN] Tue Jun 09 09:01:30 2015 Blocked incoming TCP packet from 198.199.98.246:38519 to xx.xxx.xxx.xxx:21
[WARN] Tue Jun 09 09:01:29 2015 Above message repeated 1 times
[INFO] Tue Jun 09 09:00:03 2015 Log viewed by IP address 192.168.0.102
[WARN] Tue Jun 09 08:59:56 2015 Blocked incoming UDP packet from 98.110.162.114:38741 to xx.xxx.xxx.xxx:63056
[WARN] Tue Jun 09 08:59:50 2015 Above message repeated 2 times
[WARN] Tue Jun 09 08:56:26 2015 Blocked incoming UDP packet from 70.65.186.20:60996 to xx.xxx.xxx.xxx:63056
[WARN] Tue Jun 09 08:56:20 2015 Above message repeated 2 times
[WARN] Tue Jun 09 08:56:19 2015 Blocked incoming UDP packet from 135.26.207.22:50166 to xx.xxx.xxx.xxx:63056
[INFO] Tue Jun 09 08:56:17 2015 Log viewed by IP address 192.168.0.102
[WARN] Tue Jun 09 08:56:15 2015 Blocked incoming UDP packet from 135.26.207.22:50166 to xx.xxx.xxx.xxx:63056
[WARN] Tue Jun 09 08:56:13 2015 Above message repeated 1 times
[WARN] Tue Jun 09 08:55:03 2015 Blocked incoming UDP packet from 70.185.96.36:39354 to xx.xxx.xxx.xxx:63056
[WARN] Tue Jun 09 08:54:57 2015 Above message repeated 2 times
[WARN] Tue Jun 09 08:54:28 2015 Blocked incoming TCP packet from 178.19.108.165:12200 to xx.xxx.xxx.xxx:21320
[WARN] Tue Jun 09 08:54:02 2015 Blocked incoming UDP packet from 77.169.105.132:2350 to xx.xxx.xxx.xxx:17532
[WARN] Tue Jun 09 08:53:56 2015 Above message repeated 2 times
[WARN] Tue Jun 09 08:53:24 2015 Blocked incoming UDP packet from 213.199.179.176:40026 to xx.xxx.xxx.xxx:63056
[WARN] Tue Jun 09 08:53:18 2015 Above message repeated 2 times
[INFO] Tue Jun 09 08:52:43 2015 Blocked incoming ICMP error message (ICMP type 3) from 112.87.85.146 to xx.xxx.xxx.xxx as there is no UDP session active between xx.xxx.xxx.xxx:8694 and 112.87.85.146:53
[INFO] Tue Jun 09 08:52:22 2015 Blocked incoming ICMP error message (ICMP type 3) from 125.44.8.248 to xx.xxx.xxx.xxx as there is no UDP session active between xx.xxx.xxx.xxx:8694 and 125.44.8.248:53
[INFO] Tue Jun 09 08:52:15 2015 Log viewed by IP address 192.168.0.102
[INFO] Tue Jun 09 08:52:03 2015 Above message repeated 1 times
[INFO] Tue Jun 09 08:52:00 2015 Log cleared by IP address 192.168.0.102
Poorten overzicht:
Open Port 21 is closed on xx.xxx.xxx.xxx.
Open Port 22 is closed on xx.xxx.xxx.xxx.
Open Port 23 is closed on xx.xxx.xxx.xxx.
Open Port 25 is closed on xx.xxx.xxx.xxx.
Open Port 53 is closed on xx.xxx.xxx.xxx.
Open Port 80 is closed on xx.xxx.xxx.xxx.
Open Port 110 is closed on xx.xxx.xxx.xxx.
Open Port 115 is closed on xx.xxx.xxx.xxx.
Open Port 135 is closed on xx.xxx.xxx.xxx.
Open Port 139 is closed on xx.xxx.xxx.xxx.
Open Port 143 is closed on xx.xxx.xxx.xxx.
Open Port 194 is closed on xx.xxx.xxx.xxx.
Open Port 443 is closed on xx.xxx.xxx.xxx.
Open Port 445 is closed on xx.xxx.xxx.xxx.
Open Port 1433 is closed on xx.xxx.xxx.xxx.
Open Port 3306 is closed on xx.xxx.xxx.xxx.
Open Port 3389 is open on xx.xxx.xxx.xxx.
Open Port 5632 is closed on xx.xxx.xxx.xxx.
Open Port 5900 is closed on xx.xxx.xxx.xxx.
Open Port 6112 is closed on xx.xxx.xxx.xxx.
Edit: Wat ip adressen uit de log gelokaliseerd:
IP Address Country Region City ISP
198.199.98.246 United States California San Francisco Digital Ocean Inc.
P Address Country Region City ISP
120.145.31.216 Australia Western Australia Perth Telstra
IP Address Country Region City ISP
135.26.207.22 United States Illinois Mattoon Consolidated Communications Inc.
IP Address Country Region City ISP
67.199.89.138 United States Arizona Phoenix Crystaltech Web Hosting Inc.
IP Address Country Region City ISP
70.65.186.20 Canada Alberta Lethbridge Shaw Communications Inc.
Weet iemand de oorzaak, of wat ik hier aan kan doen? Het lijkt alsof ik word aangevallen en dit er voor zorgt dat de router de verbinding met het internet kwijt raakt totdat je hem herstart.
[ Voor 15% gewijzigd door nemesissyn op 09-06-2015 09:27 ]