NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
dos attack
2 TopicsDoS Attack: Ascend Kill
From time to time, my Router's Log is full of entries like: DoS Attack: Ascend Kill] from source: 17.253.34.125, port 123, Monday, December 18,2017 23:50:43 [DoS Attack: Ascend Kill] from source: 17.253.34.253, port 123, Monday, December 18,2017 23:50:43 [DoS Attack: Ascend Kill] from source: 17.253.54.125, port 123, Monday, December 18,2017 23:50:42 [DoS Attack: Ascend Kill] from source: 52.178.161.41, port 123, Monday, December 18,2017 23:34:36 ...etc. After periods with filled Logs like above, there are some days without any of these Log entries. I don't use WiFi from my Router. I use it with a FRITZ!Box connected via LAN to my Router. Router's input (Internet) is coming from a separate Modem. Up to now, I didn't find any Community posts with '[DoS Attack: Ascend Kill]' or at least similar Log messages but with my Router's Model WNDR3800. So I've opened here this new entry with following questions: Is this message from a successfull DoS block of my Router? If not, what can I do on my Router's configuration to block these DoS Attacks successfully? Many thanks in advance for any help, info or ideas!Solveddos attack by ISP?
Hello, I have been having trouble with my nighthawk. Today I had cox come out to fix an issues to me losing internet random for about 20 seconds. The guy took off a filter that is inbetween the modem and cable. Since the internet has not lost service for about 6 hours. Then around 20 mins ago i lost service once again. So i go to my router log and see this: [DoS attack: ACK Scan] attack packets in last 20 sec from ip [72.195.165.88], Tuesday, Nov 08,2016 17:31:33 [DHCP IP: (192.168.1.6)] to MAC address 00:25:F0:A9:3F:F1, Tuesday, Nov 08,2016 17:29:53 [DoS attack: ACK Scan] attack packets in last 20 sec from ip [72.195.165.144], Tuesday, Nov 08,2016 17:29:46 [DoS attack: FIN Scan] attack packets in last 20 sec from ip [72.195.165.144], Tuesday, Nov 08,2016 17:29:41 Now i understand that these are not REAL Dos attacks, but I googled the IP and it was IPs from Cox Communications. So i called cox to confirm that I just lost internet and they told me the internet has been stable for 8 hours and see no indication of a disconnect. I have the latest firmware on my R7000: V1.0.7.2_1.1.93 and also have gone to factory defaults multiple times. I have search all around the internet to figure out this problem and have not come up with a solution. My internet connection speed is: as i was running speed test my internet dropped out for another 20 seconds log shows this: [Admin login] from source 192.168.1.2, Tuesday, Nov 08,2016 23:03:27 [DoS attack: FIN Scan] attack packets in last 20 sec from ip [52.89.158.114], Tuesday, Nov 08,2016 22:54:32 [DoS attack: ACK Scan] attack packets in last 20 sec from ip [52.89.158.114], Tuesday, Nov 08,2016 22:54:27 [DoS attack: FIN Scan] attack packets in last 20 sec from ip [151.101.24.175], Tuesday, Nov 08,2016 22:44:29 [DHCP IP: (192.168.1.7)] to MAC address E4:98:D6:71:16:DA, Tuesday, Nov 08,2016 22:37:58 Any help on this will be greatly appricated i have been battling this for months now. Let me know if any other information is needed.Solved24KViews0likes18Comments