News:

Pretty crazy that we're closer to 2030, than we are 2005. Where did the time go!

Main Menu

wtf??

Started by deadly7, December 30, 2005, 10:06:23 AM

Previous topic - Next topic

0 Members and 2 Guests are viewing this topic.

deadly7

Ok, this is about the third day in a row it's happened.  I seem to be trying to get exploited with some Network Virus for AWStats.. but the attack only seems to come when I'm on Azureus.  I run Azureus, and about an hour later Trend Micro pops up saying it blocked a network virus that hits Windows AWSTATS users. :\
[17:42:21.609] <Ergot> Kutsuju you're girlfrieds pussy must be a 403 error for you
[17:42:25.585] <Ergot> FORBIDDEN

on IRC playing T&T++
<iago> He is unarmed
<Hitmen> he has no arms?!

on AIM with a drunk mythix:
(00:50:05) Mythix: Deadly
(00:50:11) Mythix: I'm going to fuck that red dot out of your head.
(00:50:15) Mythix: with my nine

AntiVirus

That sucks Deadly.. :(

Maybe you shouldn't run Azureus anymore.  :P
The once grove of splendor,
Aforetime crowned by lilac and lily,
Lay now forevermore slender;
And all winds that liven
Silhouette a lone existence;
A leafless oak grasping at eternity.


"They say that I must learn to kill before I can feel safe, but I rather kill myself then turn into their slave."
- The Rasmus

Joe

I take it you know how peer to peer networks work. You connect to peers, not servers. BitTorrent is no exception.

When you connect to anyone out there who says they have the data you're looking for, your bound to encounter someone malicious. If Trend Micro blocked it, then you're going to be just fine.
Quote from: Camel on June 09, 2009, 04:12:23 PMI'd personally do as Joe suggests

Quote from: AntiVirus on October 19, 2010, 02:36:52 PM
You might be right about that, Joe.


deadly7

Na, joe, it's not that.. it's like something corrupted AZUREUS itself.. even if I leave it running with no torrents or anything, I still get the notification.
[17:42:21.609] <Ergot> Kutsuju you're girlfrieds pussy must be a 403 error for you
[17:42:25.585] <Ergot> FORBIDDEN

on IRC playing T&T++
<iago> He is unarmed
<Hitmen> he has no arms?!

on AIM with a drunk mythix:
(00:50:05) Mythix: Deadly
(00:50:11) Mythix: I'm going to fuck that red dot out of your head.
(00:50:15) Mythix: with my nine

rabbit

Get an older version, then.  I still use 2.1.04 (IIRC), or something old like that...

deadly7

[17:42:21.609] <Ergot> Kutsuju you're girlfrieds pussy must be a 403 error for you
[17:42:25.585] <Ergot> FORBIDDEN

on IRC playing T&T++
<iago> He is unarmed
<Hitmen> he has no arms?!

on AIM with a drunk mythix:
(00:50:05) Mythix: Deadly
(00:50:11) Mythix: I'm going to fuck that red dot out of your head.
(00:50:15) Mythix: with my nine

iago

It's likely because Azureus uses a little known (and pretty dangerous, in my opinion) protocol called UPnP to open the ports it needs on your router.  Once the ports are open, you're vulnerable to worms and such that propogate through those ports. 

Whether or not it is actually an issue, if most firewalls (or virus scanners or whatever) detect a propogation attempt, they'll make sure you know that they blocked it and "look how good I am!", even if you aren't vulnerable in the first place. 

I'm guessing that's what you're seeing.  It's not likely that you're in any danger, but commercial firewalls like to make it seem like you are.

deadly7

Oh, all right.  Thanks.
[17:42:21.609] <Ergot> Kutsuju you're girlfrieds pussy must be a 403 error for you
[17:42:25.585] <Ergot> FORBIDDEN

on IRC playing T&T++
<iago> He is unarmed
<Hitmen> he has no arms?!

on AIM with a drunk mythix:
(00:50:05) Mythix: Deadly
(00:50:11) Mythix: I'm going to fuck that red dot out of your head.
(00:50:15) Mythix: with my nine

Hitmen

Quote from: iago on December 30, 2005, 02:22:45 PM
It's likely because Azureus uses a little known (and pretty dangerous, in my opinion) protocol called UPnP to open the ports it needs on your router.
Unless, of course, you tell it not to. It wasn't even enabled by default until a few versions ago I think.
Quote
(22:15:39) Newby: it hurts to swallow

iago

Quote from: Hitmen on December 30, 2005, 06:10:02 PM
Quote from: iago on December 30, 2005, 02:22:45 PM
It's likely because Azureus uses a little known (and pretty dangerous, in my opinion) protocol called UPnP to open the ports it needs on your router.
Unless, of course, you tell it not to. It wasn't even enabled by default until a few versions ago I think.

Well, it's enabled by default now, for sure.  It was messing with my internal router, which wasn't going to do it any good.  I'm glad I realized that before it screwed anything up, and I made sure to disable UPnP on all my routers.

deadly7

#10
Well, I disabled UPnP.. now we wait.


Edit: Well, UPnP was already disabled on my router, just now it's disabled in Azureus as well.
[17:42:21.609] <Ergot> Kutsuju you're girlfrieds pussy must be a 403 error for you
[17:42:25.585] <Ergot> FORBIDDEN

on IRC playing T&T++
<iago> He is unarmed
<Hitmen> he has no arms?!

on AIM with a drunk mythix:
(00:50:05) Mythix: Deadly
(00:50:11) Mythix: I'm going to fuck that red dot out of your head.
(00:50:15) Mythix: with my nine

deadly7

Uh, UPnP has been disabled with Azureus and it still happened. wtf
[17:42:21.609] <Ergot> Kutsuju you're girlfrieds pussy must be a 403 error for you
[17:42:25.585] <Ergot> FORBIDDEN

on IRC playing T&T++
<iago> He is unarmed
<Hitmen> he has no arms?!

on AIM with a drunk mythix:
(00:50:05) Mythix: Deadly
(00:50:11) Mythix: I'm going to fuck that red dot out of your head.
(00:50:15) Mythix: with my nine

Joe

Are you absolutely sure its not this?

Quote from: Joe[e2] on December 30, 2005, 12:06:56 PM
I take it you know how peer to peer networks work. You connect to peers, not servers. BitTorrent is no exception.

When you connect to anyone out there who says they have the data you're looking for, your bound to encounter someone malicious. If Trend Micro blocked it, then you're going to be just fine.
Quote from: Camel on June 09, 2009, 04:12:23 PMI'd personally do as Joe suggests

Quote from: AntiVirus on October 19, 2010, 02:36:52 PM
You might be right about that, Joe.


Sidoh

Quote from: Joe[e2] on December 31, 2005, 03:33:14 PM
Are you absolutely sure its not this?

Quote from: Joe[e2] on December 30, 2005, 12:06:56 PM
I take it you know how peer to peer networks work. You connect to peers, not servers. BitTorrent is no exception.

When you connect to anyone out there who says they have the data you're looking for, your bound to encounter someone malicious. If Trend Micro blocked it, then you're going to be just fine.

The data would've been rejected anyway, since bittorrent data is checksum'd as it's recieved.

iago

Quote from: Sidoh on December 31, 2005, 03:37:29 PM
The data would've been rejected anyway, since bittorrent data is checksum'd as it's recieved.

However, if any bittorrent client had a vulnerability in it, it could be taken advantage of.  The scanner program might have picked up an exploit for a different version of a different program, or something. 

Or, the signature might just suck.  I've noticed while using Snort to monitor traffic, when I'm downloading something off BitTorrent, it often picks up on signatures that it sees that are purely coincidental.