(Msg. 25) Posted: Wed Feb 06, 2008 3:03 am
Post subject: Re: Just 12 minutes [Login to view extended thread Info.] Archived from groups: alt>comp>anti-virus (more info?)
"David H. Lipman" <DLipman~nospam~@Verizon.Net> wrote in message
news:xbaqj.20111$Ou1.15146@trnddc07...
> From: "Lord Turkey Cough" <spamdump.RemoveThis@invalid.com>
>
>
>>> My IP address is in my reply.
>>> Prove otherwise.
> |
> | Thats like saying your house is burgal proof and inviting me to burgal
> | it to prove you wrong.
> |
> | My IP address has been in my reply for the last ten years, and I have
> | not suffered any infections really, one or two possible incidents but
> | these were no doubt caused by my careless use of the internet or were
> | merely over zealous antivirus software reports.
> | I am sure there are many people using NAT routers who had serious
> problems
> | with viruses. I certaintly have not and certaintly nothting that a NAT
> | router would have
> | prevented. I can guarantee you that.
> |
> | But anyway you have avoided the question as to how you are
> | protected, asking me to prove you are not an adaquate answer, it
> | suggests you don't know.
> |
> | All you router is doing is routing the traffic to your computer, it has
> no
> | more
> | idea whether that traffic is a 'virus' or not.
> |
> | Anyway there are a lot of 12 minutes in the time I have been connected
> to
> | to the interenet, and I don't appear to have acquired my yearly
> alloction
> | of 43,000 viruses, in fact I should be up to the 1/2 million mark my
> now!!
> | Or maybe I have!! Maybe that is why my hard drive is nearly full :O)
> |
>
> I have posted numerous times about the use of FireWall appliance and NAT
> Routers. Find and
> read them.
>
> If you probe my IP you won't find out anything.
> Why ?
Computer off line due to a virus infection?
> Because the Router has ports specifically blocked
However without some open ports you cannot use the internet.
> and only on invites from the LAN side will
> WAN access get through the WAN/LAN barrier. The Routers enforcement
> through simplistic
> FireWall constructs and Network Address Translation is far superior then
> attempting to close
> ports on nodes on the LAN side.
No it is effecively the same thing.
>
> I look forward to seeing activity from NTL Internet Ltd.
Either that or an annomouuus proxy anyway.
Anyway I am not a hacker so it is pointless asking me to hack you,
so if you want to be tested you better ask more widely, prehaps in a
'hackers'
group and see how you get on.
Or you could go to one of many sites which will test you open ports.
I have just had all my 'ports tested' and I passed with flying colours.
Perhaps you would like to give it a try too???
(Msg. 26) Posted: Wed Feb 06, 2008 3:03 am
Post subject: Re: Just 12 minutes [Login to view extended thread Info.] Archived from groups: per prev. post (more info?)
"David W. Hodgins" <dwhodgins DeleteThis @nomail.afraid.org> wrote in message
news:op.t523gnnaa3w0dx@hodgins.homeip.net...
> On Tue, 05 Feb 2008 22:01:02 -0500, Lord Turkey Cough
> <spamdump DeleteThis @invalid.com> wrote:
>
>> "David H. Lipman" <DLipman~nospam~@Verizon.Net> wrote in message
>> news:m2rpj.31284$ds2.30990@trnddc05...
>>> Using a NAT Router will mitigate the BOT/Worm threat as well as hacking
>>> attempts.
>>
>> Do you really believe this? I think you are deluding yourself here.
>
> Worms that spread by taking advantage of exploits in software listening to
> tcp/udp ports are blocked by the router.
>
>> I don't really see what protection your router is giving you.
>> Would you care to explain how it protects you?
>
> When you use a properly configured router, all incoming traffic is
> blocked,
> unless it's in response to an outgoing packet.
Ah so its the same as my computer then!! Interestinig!!
> The router has to be configured,
> to allow traffic for the ports where you do want incoming traffic, to be
> allowed.
Bit like my comp :O)
>
> For example, if you are running an http server, you would have to setup
> the
> router to forward all data coming in to port 80, to forward it to the
> computer with the server running.
>
> Your web browser will still work, because it is initiating the connection,
> by sending a tcp syn packet, that the router will allow responses to.
>
> You'll still have to keep your software, that accesses the internet
> updated,
> but you no longer have to worry about printer&file sharing, for example.
>
> You can think of the nat router, as a hardware firewall, for incoming
> traffic. Like the windows firewall, it does nothing to help with
> connections
> established by software, on your computer.
I have had my securirty tested and passed with flying colours, I don't
use windows firewall I use another. I would sooner but my balls into
the mouth of a rotweiller than use a windows product for security.
And no I am not into beatiality.
AS far as I can see a router offers me nowt, infact I think relying on one
for security is the height of folly.
>
> Regards, Dave Hodgins
>
> --
> Change nomail.afraid.org to ody.ca to reply by email.
> (nomail.afraid.org has been set up specifically for
> use in usenet. Feel free to use it yourself.)
(Msg. 27) Posted: Wed Feb 06, 2008 3:03 am
Post subject: Re: Just 12 minutes [Login to view extended thread Info.] Archived from groups: per prev. post (more info?)
"David W. Hodgins" <dwhodgins.DeleteThis@nomail.afraid.org> wrote in message
news:op.t525rbana3w0dx@hodgins.homeip.net...
> On Tue, 05 Feb 2008 23:22:11 -0500, Lord Turkey Cough
> <spamdump.DeleteThis@invalid.com> wrote:
>
>> However without some open ports you cannot use the internet.
>
> This is not correct.
Yes it is unless you just want to send data, which is rather pointless
inmost instances.
> Open ports are used by servers, to allow clients
> to establish a connection.
And by other programs to communicate.
>If you are not running any servers, that
> you want to have accessible, from the internet, then you do not need
> any open incoming ports.
Except for programs which need to accept data.
>Incoming traffic will still be allowed, but
> only when it is in response to outgoing traffic.
Yes.....you're getting there....
>For most home computers,
> the only case where an open incoming port is usually needed, is for p2p
> software.
Exactly. Any your firewall will take care of that.
Unless it is a hardware router with an exploit in in which cannot be fixed
by an uupdate, such as NAT router
>
> Regards, Dave Hodgins
>
> --
> Change nomail.afraid.org to ody.ca to reply by email.
> (nomail.afraid.org has been set up specifically for
> use in usenet. Feel free to use it yourself.)
(Msg. 28) Posted: Wed Feb 06, 2008 10:24 am
Post subject: Re: Just 12 minutes [Login to view extended thread Info.] Archived from groups: per prev. post (more info?)
On Wed, 06 Feb 2008 02:38:12 -0500, "David W. Hodgins"
<dwhodgins RemoveThis @nomail.afraid.org> wrote:
>Heh. heh. The swen email worm made me do that, as it was filling my inbox at
>my isp in less than two hours, till I started running my computer 24/7 with a
>filter to id and delete the worms, without having to download them. I couldn't
>download them as fast at they were arriving at my isp, at the time.
It's ironic that the vx purists who used to post to acv thought
conciseness of code to be of real importance yet swen caused a major
headache not because of its exceptional coding but because of its
bulk.
I think a lot of people got email accounts with server side filtering
after that. Often at an extra cost
(Msg. 29) Posted: Wed Feb 06, 2008 3:50 pm
Post subject: Re: Just 12 minutes [Login to view extended thread Info.] Archived from groups: per prev. post (more info?)
>>
>> Using a NAT Router will mitigate the BOT/Worm threat as well as hacking
>> attempts.
>
> Do you really believe this? I think you are deluding yourself here.
> I don't really see what protection your router is giving you.
> Would you care to explain how it protects you?
> Explaintions such as "Well I am using a NAT router" don't really qualify
> as the
> arguement is kind of circular."
>
In the context of the OP a NAT router will mitigate the threats. The
question was about exposing an unpatched version of XP directly to the
Internet. There are worms that will take advantage of a system in this
state. A NAT router is adequate to stop these threats while you download and
install the needed updates. If you plan on surfing to porn and warez sites
then probably nothing is adequate.
(Msg. 30) Posted: Wed Feb 06, 2008 10:33 pm
Post subject: Re: Just 12 minutes [Login to view extended thread Info.] Archived from groups: per prev. post (more info?)
I stated...
"If you probe my IP you won't find out anything."
You eplied...
"Computer off line due to a virus infection?"
Not even close. It is because my Router is locked down, wob't respond to 'pings', Telnet,
TFTP or other atempts at communication. When you see the WAN address you can't see the
non-routable private address scheme of 192.168.x.y and the Router will NOT translate that
WAN to LAN address from the POV of the Internet.
Your conclusions in this thread are faulty to say the least and I am not going to hash and
rehash answers to try to convince you otherwise.
Please take the time to research this subject matter. If you do you will learn that due to
simplistic FireWall constructs found in NAT Routers and specifically Network address
Translation nodes from the POV of the Internet can not simply access nodes on the LAN side.
Additionally you will learn the software based FireWalls are placebos when compared to an PC
(even with open ports) that are behind a NAT Router or a Router with a full FireWall
implementation.
(Msg. 31) Posted: Wed Feb 06, 2008 10:46 pm
Post subject: Re: Just 12 minutes [Login to view extended thread Info.] Archived from groups: per prev. post (more info?)
"David H. Lipman" <DLipman~nospam~@Verizon.Net> wrote in message
news:EAqqj.19434$hF2.8364@trnddc02...
> From: "Lord Turkey Cough" <spamdump.TakeThisOut@invalid.com>
>
> I stated...
> "If you probe my IP you won't find out anything."
>
> You eplied...
> "Computer off line due to a virus infection?"
>
> Not even close. It is because my Router is locked down, wob't respond to
> 'pings', Telnet,
> TFTP or other atempts at communication.
How quaint, neither will mine.
If fact you will find it hard to find a computer at my IP adress at all.
> When you see the WAN address you can't see the
> non-routable private address scheme of 192.168.x.y and the Router will NOT
> translate that
> WAN to LAN address from the POV of the Internet.
>
> Your conclusions in this thread are faulty to say the least and I am not
> going to hash and
> rehash answers to try to convince you otherwise.
Better no do cos you will look very silly when I prove you wronog.
>
> Please take the time to research this subject matter.
An ironic statement if ever iheard one.
> If you do you will learn that due to
> simplistic FireWall constructs found in NAT Routers and specifically
> Network address
> Translation nodes from the POV of the Internet can not simply access nodes
> on the LAN side.
> Additionally you will learn the software based FireWalls are placebos when
> compared to an PC
> (even with open ports) that are behind a NAT Router or a Router with a
> full FireWall
> implementation.
Largly piffle.
Do some real resaerch instad of parroting something you found on the the net
or repeatiing a salesmans prattle
(Msg. 32) Posted: Wed Feb 06, 2008 10:48 pm
Post subject: Re: Just 12 minutes [Login to view extended thread Info.] Archived from groups: per prev. post (more info?)
"Lord Turkey Cough" wrote:
> "Ant" wrote:
>> I have since closed all ports so that even without a firewall I am no
>> longer open to these kind of attacks.
>
> LOL yes as long as your are not connected to the internet which kind of
> defeats the object.
Read the original question again.
> Why not get well protected and unplug your modem etc???
Read my other post in this thread.
> You have gazillions of other software acessing the interenet when you
> you do use the internet that can be infected.
No I don't. Those that do are configured properly.
> You are just bocking one hole in a culander. Rather pointless.
All times are: Eastern Time (US & Canada) (change) Goto page Previous1, 2, 3, 4, 5, 6
Page 4 of 6
You can post new topics in this forum You can reply to topics in this forum You cannot edit your posts in this forum You cannot delete your posts in this forum You cannot vote in polls in this forum