8 seconds from connection to infection

Page 3 - Seeking answers? Join the AnandTech community: where nearly half-a-million members share solutions and discuss the latest tech.

jpeyton

Moderator in SFF, Notebooks, Pre-Built/Barebones
Moderator
Aug 23, 2003
25,375
142
116
Of course this is a load of sh1t. 8 seconds might make for good headlines but its nowhere near a realistic time.
 

IonYou

Banned
Jul 28, 2005
447
0
0
what's FTW? i looked it up on urban dictionary and acronym finder and all they say is fsck the world, or for the win.
 

MAME

Banned
Sep 19, 2003
9,281
1
0
Originally posted by: spidey07
Originally posted by: MAME
Originally posted by: spidey07
Originally posted by: MAME
I have never once updated my machine and I never use a firewall. The only reason I installed SP1 was for the USB 2.0 support

Never ONCE have I ever had any sort of infection that I didn't cause by downloading a malicious program and running it myself.

Was this computer publically addressed? If so it really doesn't take long for it to get hit.

all of my computers are / were. Not to mention all of the friends and family computers I set up in the same way

that's really strange then. An unpatched windows box normally will get hit with codered, nimda, slammer, msblast or any of the other worms within minutes.

If I take sniffs of raw internet traffic (meaning from Tier1 providers, completely unfiltered) its all over the place. Sounds like the providers have something in place.

this is through at least 3 different isp's
 

spidey07

No Lifer
Aug 4, 2000
65,469
5
76
Originally posted by: jpeyton
Of course this is a load of sh1t. 8 seconds might make for good headlines but its nowhere near a realistic time.

Actually that is pretty darn realistic time. Take an unpatched machine and plug it straight into the internet. You will be hit in short order.

Like I've said earlier, all you have to do is sniff what is coming in and it is filled with scans for vulnerabilities. We've just come to accept it as 'background noise on the internet'

'the internet' is and can be different than what consumer ISPs provide. They filter some of the well known vulnerabilities and block ports.

'the internet' has no filters in place.
 

bdoople

Senior member
Dec 29, 2004
318
0
0
I use a Router with FW, and that's it. No antivirus, no anti spyware. I run a SpySweeper and Housecall scan once a week, and never find anything. I guess you should just learn how to surf. ;)
 

FeuerFrei

Diamond Member
Mar 30, 2005
9,144
929
126
Wonder why I don't get infected. I'm wide open with no firewall or antivirus software. DSL connection. Win 98. I've had one or two spyware programs over the past year, but that's it. I've been on broadband w/ no protection since Nov. 2001 and I'm not battling any viruses. I use those online scanners every now and then but they don't catch anything.
 

spidey07

No Lifer
Aug 4, 2000
65,469
5
76
Originally posted by: FeuerFrei
Wonder why I don't get infected. I'm wide open with no firewall or antivirus software. DSL connection. Win 98. I've had one or two spyware programs over the past year, but that's it. I've been on broadband w/ no protection since Nov. 2001 and I'm not battling any viruses. I use those online scanners every now and then but they don't catch anything.

You aren't on raw internet would be my guess.
 

imported_goku

Diamond Member
Mar 28, 2004
7,613
3
0
Originally posted by: FeuerFrei
Wonder why I don't get infected. I'm wide open with no firewall or antivirus software. DSL connection. Win 98. I've had one or two spyware programs over the past year, but that's it. I've been on broadband w/ no protection since Nov. 2001 and I'm not battling any viruses. I use those online scanners every now and then but they don't catch anything.

Whats your webbrowser? Usually people don't get spyware+sh!t if they don't explore sites out of anandtech and yahoo.com ;)
 

FeuerFrei

Diamond Member
Mar 30, 2005
9,144
929
126
Originally posted by: goku
Originally posted by: FeuerFrei
Wonder why I don't get infected. I'm wide open with no firewall or antivirus software. DSL connection. Win 98. I've had one or two spyware programs over the past year, but that's it. I've been on broadband w/ no protection since Nov. 2001 and I'm not battling any viruses. I use those online scanners every now and then but they don't catch anything.

Whats your webbrowser? Usually people don't get spyware+sh!t if they don't explore sites out of anandtech and yahoo.com ;)

I've been using IE since switching from Netscape in 1999 or so. Currently use IE 6.0.2800. I think sticking to trusted sites for the most part has something to do with it.
Originally posted by: spidey07
You aren't on raw internet would be my guess.
Raw internet? Please enlighten me.
 

spidey07

No Lifer
Aug 4, 2000
65,469
5
76
Raw internet = unfiltered by any means publicly addressable internet access with an advertised address space.

A lot of the ISPs I've built still have firewalls to block things on the transport network, like vulnerable ports and running servers, etc.

Raw internet is a direct connection to "the internet" without any such measures in place.
 

spidey07

No Lifer
Aug 4, 2000
65,469
5
76
Originally posted by: Sureshot324
Originally posted by: dds14u
Originally posted by: tfinch2
Router + software firewall FTW

Overkill. Most routers have firewalls. My comp is behind a router, and i have no antivirus or soft firewall, and i never get viruses.

NO!

Most routers do not have firewalls. Please name the ones that do.

Its this kind of misinformation that I'm trying to stop. This is a public forum and we can't go around spreading rumors.
 

FreshPrince

Diamond Member
Dec 6, 2001
8,361
1
0
Originally posted by: spidey07
Originally posted by: FreshPrince
Originally posted by: spidey07
Originally posted by: tfinch2
Router + software firewall FTW

stateful hardware firewall + software firewall + AV + anti-spyware + autopatching + hybrid IPS + honey pot = pretty darn safe.

fixed ;)

meh, honey pot is SO 1999.

;)


gotta give n00bie script kiddies something to hack and allow them to think they're smart sh1t and 31337 hax0r ;)
 

IonYou

Banned
Jul 28, 2005
447
0
0
knock knock.
who's there?
it's me
me who?
me who still wants to know what FTW stands for.
oh. shrug.
 

Goosemaster

Lifer
Apr 10, 2001
48,775
3
81
Originally posted by: spidey07
Originally posted by: Goosemaster
astaro > *.*

IDS, SPI, antivirus, antispam, http/dns/smtp/pop proxy with content management.

>*.*

you forgot IPS.

;)

My bad. I thought that was implied;)

Astaro has stopped SOOOOOO much sh!t from getting in. From viruses to,....everything

About the only problem is that our comcast business service is absolute sh!t and when it goes down and comes back up, it take our astaro box like 5min to figure that out.

Since it caches stuff we sometimes don't know the internet is down unti labout 2-3minutes after it has gone down, and if we are in the middle of something we a refvked.

AstarO; good
comcast: sh!t
 

Goosemaster

Lifer
Apr 10, 2001
48,775
3
81
Originally posted by: spidey07
Originally posted by: Sureshot324
Originally posted by: dds14u
Originally posted by: tfinch2
Router + software firewall FTW

Overkill. Most routers have firewalls. My comp is behind a router, and i have no antivirus or soft firewall, and i never get viruses.

NO!

Most routers do not have firewalls. Please name the ones that do.

Its this kind of misinformation that I'm trying to stop. This is a public forum and we can't go around spreading rumors.

Aye.

That said, Netgear's marketing department must be smokign some good sh!t.

Double firewalls my ass:p
 

spidey07

No Lifer
Aug 4, 2000
65,469
5
76
Originally posted by: FreshPrince
Originally posted by: spidey07
Originally posted by: FreshPrince
Originally posted by: spidey07
Originally posted by: tfinch2
Router + software firewall FTW

stateful hardware firewall + software firewall + AV + anti-spyware + autopatching + hybrid IPS + honey pot = pretty darn safe.

fixed ;)

meh, honey pot is SO 1999.

;)


gotta give n00bie script kiddies something to hack and allow them to think they're smart sh1t and 31337 hax0r ;)

yeah, its fun to watch them try the same ole crap.

Kinda like I was back in 1985 thinking I "haxored their boxors" by cracking a floppy drive copy protection.

;)
 

spidey07

No Lifer
Aug 4, 2000
65,469
5
76
Originally posted by: Goosemaster
Originally posted by: spidey07
Originally posted by: Goosemaster
astaro > *.*

IDS, SPI, antivirus, antispam, http/dns/smtp/pop proxy with content management.

>*.*

you forgot IPS.

;)

My bad. I thought that was implied;)

Astaro has stopped SOOOOOO much sh!t from getting in. From viruses to,....everything

About the only problem is that our comcast business service is absolute sh!t and when it goes down and comes back up, it take our astaro box like 5min to figure that out.

Since it caches stuff we sometimes don't know the internet is down unti labout 2-3minutes after it has gone down, and if we are in the middle of something we a refvked.

AstarO; good
comcast: sh!t

Network management systems are good....m'kay? You should know within 30 seconds if something in unavailable.
:)