[geeks] Ping of Death

Michael Schiller schiller at agrijag.com
Thu Feb 5 03:55:09 CST 2004


Hi All.

I've got a quick question that I hope somebody can give me some
pointers on. I got an email today saying that my machine is attacking a
router with the ping-of-death. I'm running Sol9 on 2 machines, OSX
10.3.2 on 2 machines, and XP on my PC, and was wondering first off if
this guy is telling me the truth, that my IP is in fact attacking his,
and secondly if so, which of my machines should I check first? Oh, all
these machines are behind a linksys cable router. Below is a part of
his message:


 
I am an IT professional.  Recently, one of the routers I maintain
started logging ping of death attacks from your IP address. Below is a
sample of the log.
 

Feb/05/2004 01:47:40

Ping of Death Detect src:68.118.97.30:58898 dst:224.0.0.251:32644
Packet Dropped

Feb/05/2004 01:43:24

Ping of Death Detect src:68.118.97.30:58898 dst:224.0.0.251:32644
Packet Dropped

Feb/05/2004 01:41:16

Ping of Death Detect src:68.118.97.30:58898 dst:224.0.0.251:32644
Packet Dropped

Feb/05/2004 01:40:13

Ping of Death Detect src:68.118.97.30:58898 dst:224.0.0.251:32644
Packet Dropped

Feb/05/2004 01:39:40


Any help with this would be appreciated, as I really haven't kept up
with this stuff, and at the moment I'm too tired to start tearing into
all my machines without knowing which one to look at first, and what to
look for. Thanks!


 
-Mike
*-------------------------------------------------------------------*
* PGP fingerprint= D2 4F A8 B7 13 D5 73 1E  48 99 40 99 F9 BC 74 74 *
* Email:schiller at nospam.agrijag.com \|||/    http://www.agrijag.com *
*                                   (o o)                           *
*--------------------------------ooO-(_)-Ooo------------------------*



More information about the geeks mailing list