View Single Post
Old 23-03-2006, 13:52   #1
baldrick33
Inactive
 
Join Date: Mar 2006
Posts: 10
baldrick33 is an unknown quantity at this point
Router reporting odd attack seemingly from ntl

Hi all

wondering if any of you guys can shed some light on this for me

Monday my router began reporting RIP v1 attacks every 5 seconds , it reported 2 addresses 86.2.142.1 and 10.133.88.1 both from wan inbound .

now looking on the net for this problem i've found diddly and ntl tech support where less than helpful,or rather the person I spoke to didnt seem to understand the problem I was describing , but did confirm the first address belonged to ntl , anyone tell me more about this ? below is the text from my router

03/23/2006 13:34:47 **RIP v1** 86.2.142.1, 520->> 224.0.0.9, 520 (from WAN Inbound)
03/23/2006 13:34:47 **RIP v1** 10.133.88.1, 520->> 224.0.0.9, 520 (from WAN Inbound)
03/23/2006 13:34:42 **RIP v1** 86.2.142.1, 520->> 224.0.0.9, 520 (from WAN Inbound)
03/23/2006 13:34:42 **RIP v1** 10.133.88.1, 520->> 224.0.0.9, 520 (from WAN Inbound)
03/23/2006 13:34:37 **RIP v1** 86.2.142.1, 520->> 224.0.0.9, 520 (from WAN Inbound)
03/23/2006 13:34:37 **RIP v1** 10.133.88.1, 520->> 224.0.0.9, 520 (from WAN Inbound)
03/23/2006 13:34:33 **RIP v1** 86.2.142.1, 520->> 224.0.0.9, 520 (from WAN Inbound)
03/23/2006 13:34:33 **RIP v1** 10.133.88.1, 520->> 224.0.0.9, 520 (from WAN Inbound)

thanks in advance for any light shed on this
baldrick33 is offline   Reply With Quote