Paranoia
Posted: Wed Mar 19, 2008 3:09 am
So I got home from work, turned on my computer, and then went and watched tv for a bit. I had not actually activated anything, or even logged into my pc yet.
then I come back after 2 hours, and hear the harddrive spinning like crazy. So I figure I have some kind of malware. Not expecting to find anything useful since I've heard this before and nothing shows up...I quickly log in and run netstat.
here's what I get: (yes my computer is called poontos...lol)
then I come back after 2 hours, and hear the harddrive spinning like crazy. So I figure I have some kind of malware. Not expecting to find anything useful since I've heard this before and nothing shows up...I quickly log in and run netstat.
here's what I get: (yes my computer is called poontos...lol)
Ok, only 1 foreign address. So lets do a lookup on that:Active Connections
Proto Local Address Foreign Address State
TCP poontos:1036 localhost:27015 ESTABLISHED
TCP poontos:27015 localhost:1036 ESTABLISHED
TCP poontos:1038 208.51.0.7:25793 ESTABLISHED
TCP poontos:50724 192.168.0.1:http TIME_WAIT
TCP poontos:54169 192.168.0.1:http TIME_WAIT
TCP poontos:61478 192.168.0.1:http TIME_WAIT
TCP poontos:61500 192.168.0.1:http TIME_WAIT
TCP poontos:64358 192.168.0.1:http TIME_WAIT
wtf. Is this some kind of spyware that is spoofing the dod's ip address? Or is the DoD spying on me?OrgName: DoD Network Information Center
OrgID: DNIC
Address: 3990 E. Broad Street
City: Columbus
StateProv: OH
PostalCode: 43218
Country: US
NetRange: 205.0.0.0 - 205.55.255.255
CIDR: 205.0.0.0/11, 205.32.0.0/12, 205.48.0.0/13
NetName: NICS0086
NetHandle: NET-205-0-0-0-1
Parent: NET-205-0-0-0-0
NetType: Direct Allocation
Comment:
RegDate:
Updated: 2007-08-31
OrgTechHandle: MIL-HSTMST-ARIN
OrgTechName: Network DoD
OrgTechPhone: +1-614-692-2708
OrgTechEmail: HOSTMASTER@nic.mil