NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.

Forum Discussion

ehagood's avatar
ehagood
Aspirant
Feb 19, 2013

FVS318 - Intermittent Network Drops, Began Recently

Hello all,
We have had an FVS318 for about 6 years or so without an issue, until about 2 weeks ago. All of the sudden, about three times a day the entire network will drop and then restart all in the span of 30 to 60 seconds. Any programs that were accessing network resources at that moment will crash. It only seems to happen about 2 to 3 times a day. No settings have been changed on it recently and I am rather puzzled as to why this is happening. The log(listed below) on the VPN shows that the date/time has been reset during this outage. I have searched the internet and come up short. Any ideas would be greatly appreciated!

Sun, 01/01/1900 00:00:00 - Netgear Activated.
Sun, 01/01/1900 00:00:00 - TCP connection dropped - Source:68.142.118.4, 80, WAN - Destination:[OUR IP ADDRESS], 18891, LAN - 'Possible Port Scan'
Sun, 01/01/1900 00:00:00 - TCP connection dropped - Source:69.171.235.16, 443, WAN - Destination:[OUR IP ADDRESS], 20741, LAN - 'Suspicious TCP Data'
Sun, 01/01/1900 00:00:00 - TCP connection dropped - Source:193.182.8.66, 4070, WAN - Destination:[OUR IP ADDRESS], 19449, LAN - 'Possible Port Scan'
Sun, 01/01/1900 00:00:00 - TCP connection dropped - Source:216.248.29.104, 443, WAN - Destination:[OUR IP ADDRESS], 18745, LAN - 'Suspicious TCP Data'
Sun, 01/01/1900 00:00:00 - TCP connection dropped - Source:69.171.224.42, 443, WAN - Destination:[OUR IP ADDRESS], 19200, LAN - 'Suspicious TCP Data'
Sun, 01/01/1900 00:00:00 - TCP connection dropped - Source:65.55.71.47, 1863, WAN - Destination:[OUR IP ADDRESS], 16887, LAN - 'Possible Port Scan'
Tues, 02/19/2013 12:10:21 - Get NTP Time: Tues, 02/19/2013 12:10:21
Tues, 02/19/2013 12:11:49 - TCP connection dropped - Source:184.26.142.49, 443, WAN - Destination:[OUR IP ADDRESS], 20566, LAN - 'Suspicious TCP Data'
Tues, 02/19/2013 12:12:47 - TCP connection dropped - Source:17.149.36.93, 443, WAN - Destination:[OUR IP ADDRESS], 24001, LAN - 'Possible Port Scan'
Tues, 02/19/2013 12:14:41 - TCP connection dropped - Source:129.3.172.226, 62801, WAN - Destination:[OUR IP ADDRESS], 45014, LAN - 'Suspicious TCP Data'
Tues, 02/19/2013 12:14:41 - TCP connection dropped - Source:174.55.193.192, 49237, WAN - Destination:[OUR IP ADDRESS], 45014, LAN - 'Suspicious TCP Data'

Thanks,
Eddie

12 Replies

  • This maybe a little bit too late to help, but I noticed almost the exact same problem with my Cisco rv016 when my cable company changed their backend. The new backend (Arris c4) was sending 100 packets/sec to my rv016, so it would constantly reboot thinking it was under attack. Seems like the same thing might be going on with the snippet of the log you posted.

NETGEAR Academy

Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology! 

Join Us!

ProSupport for Business

Comprehensive support plans for maximum network uptime and business peace of mind.

 

Learn More