[問題] 奇怪的連線記錄(自動跑去連到外面)

看板AntiVirus作者 (戴文)時間15年前 (2008/11/28 12:10), 編輯推噓1(101)
留言2則, 1人參與, 最新討論串1/1
最近發現電腦有奇怪的對外連線記錄 請問這是中毒的跡象嗎? 還有想問 140.116.253.121是哪個單位的ip? 當天是早上9點開機, 9點46分開始有怪異的對外連線, 直到9點50分才結束 有用KIS 2009掃過, 回報沒有中毒. 謝謝幫忙 以下是一部分的連線記錄 Time Event Source Destination Note 11/24/2008 09:50:47 ports scan UDP 192.168.1.7:2104 140.116.253.121:5456 Attac 11/24/2008 09:50:46 ports scan UDP 192.168.1.7:2104 140.116.253.121:5456 Attac 11/24/2008 09:50:45 ports scan UDP 192.168.1.7:2104 140.116.253.121:5456 Attac 11/24/2008 09:50:44 ports scan UDP 192.168.1.7:2104 140.116.253.121:5456 Attac 11/24/2008 09:49:55 ports scan UDP 192.168.1.7:2062 140.116.253.121:16334 Atta 11/24/2008 09:49:54 ports scan UDP 192.168.1.7:2062 140.116.253.121:16334 Atta 11/24/2008 09:49:53 ports scan UDP 192.168.1.7:2062 140.116.253.121:16334 Atta 11/24/2008 09:49:35 ports scan UDP 192.168.1.7:2062 140.116.253.121:16334 Atta 11/24/2008 09:49:04 ports scan UDP 192.168.1.7:2054 140.116.253.121:5869 Attac 11/24/2008 09:49:03 ports scan UDP 192.168.1.7:2054 140.116.253.121:5869 Attac 11/24/2008 09:49:02 ports scan UDP 192.168.1.7:2054 140.116.253.121:5869 Attac 11/24/2008 09:48:44 ports scan UDP 192.168.1.7:2054 140.116.253.121:5869 Attack 11/24/2008 09:48:14 ports scan UDP 192.168.1.7:2045 140.116.253.121:11997 Attac 11/24/2008 09:48:13 ports scan UDP 192.168.1.7:2045 140.116.253.121:11997 Attac 11/24/2008 09:48:12 ports scan UDP 192.168.1.7:2045 140.116.253.121:11997 Attac 11/24/2008 09:48:44 ports scan UDP 192.168.1.7:2054 140.116.253.121:5869 Attack 11/24/2008 09:48:14 ports scan UDP 192.168.1.7:2045 140.116.253.121:11997 Attac 11/24/2008 09:48:13 ports scan UDP 192.168.1.7:2045 140.116.253.121:11997 Attac 11/24/2008 09:48:12 ports scan UDP 192.168.1.7:2045 140.116.253.121:11997 Attac 11/24/2008 09:47:55 ports scan UDP 192.168.1.7:2045 140.116.253.121:11997 Attac 11/24/2008 09:47:54 ports scan UDP 192.168.1.7:2045 140.116.253.121:11997 Attac 11/24/2008 09:47:53 ports scan UDP 192.168.1.7:2045 140.116.253.121:11997 Attac 11/24/2008 09:47:31 ports scan UDP 192.168.1.7:2041 140.116.253.121:13399 Attac 11/24/2008 09:47:31 ports scan UDP 192.168.1.7:2040 140.116.253.121:13398 Attac 11/24/2008 09:47:31 ports scan UDP 192.168.1.7:2039 140.116.253.121:13395 Attac 11/24/2008 09:47:31 ports scan UDP 192.168.1.7:2038 140.116.253.121:13400 Attac 11/24/2008 09:47:31 ports scan UDP 192.168.1.7:2037 140.116.253.121:13403 Attac 11/24/2008 09:47:31 ports scan UDP 192.168.1.7:2036 140.116.253.121:13396 Attac 11/24/2008 09:47:09 ports scan UDP 192.168.1.7:2021 140.116.253.121:11531 Attac 11/24/2008 09:47:09 ports scan UDP 192.168.1.7:2020 140.116.253.121:11537 Attac 11/24/2008 09:47:09 ports scan UDP 192.168.1.7:2019 140.116.253.121:11539 Attac 11/24/2008 09:47:09 ports scan UDP 192.168.1.7:2018 140.116.253.121:11532 Attac 11/24/2008 09:47:09 ports scan UDP 192.168.1.7:2017 140.116.253.121:11538 Attac 11/24/2008 09:46:47 ports scan UDP 192.168.1.7:2013 140.116.253.121:12993 Attac 11/24/2008 09:46:47 ports scan UDP 192.168.1.7:2012 140.116.253.121:12995 Attac 11/24/2008 09:46:47 ports scan UDP 192.168.1.7:2011 140.116.253.121:12997 Attac -- ※ 發信站: 批踢踢實業坊(ptt.cc) ◆ From: 125.224.2.173 ※ 編輯: guest20000 來自: 125.224.2.173 (11/28 12:11)

11/28 12:58, , 1F
成大的IP,不過記錄上成大有1個classB,也就是65536個IP
11/28 12:58, 1F

11/28 12:59, , 2F
上次聽他們的技術士說成大有兩萬多個IP
11/28 12:59, 2F
文章代碼(AID): #19BsyrPE (AntiVirus)