  ChiLLon

    ChiLLon

    I am using Eset Smart Security

    As of lately I have noticed constant attacks. Examples on attacks are ARP-poisoning, DNS cache-poisoning, port scanning.

    They show up as red in the logs and it says they have been detected, however there's no information on whether they were actually blocked. I do not use a router so it is not Eset disliking information sent from the router.

    As of a few days ago I am completely unable to connect to a certain forum. I can connect using my phone and other computers (even ones using the same internet provider backbone, i.e lives in the same building as me).

    I can access the forum through a proxy, however I do not like that. I have literally tried everything to fix this solution. Tried refreshing DNS cache, tried reinstalling modem, tried with a new IP, checked my hosts file, you name it.

    When I try to connect to this forum my request times out due to the forum server taking too long to respond.

    Could these attacks have something to do with this?

    And let me ask once more, does ESS 5 actually block these attacks, not only detect them?

  ChiLLon

    ChiLLon

  Cudni

    Cudni

    It blocks them, hence the logs to tell you what is happening.
  Marcos

    Marcos

    You can try disabling the option "Block unsafe address after attack detection" in the IDS setup and see if that helps.
  agoretsky

    agoretsky


    The connection attempts are being blocked, but if you seeing a lot of these then you might want to consider investing in a residential gateway broadband router device to break the direct connection between the network and your computer.


    Aryeh Goretsky
