port being spammed!

Advertisement

darco
Joined:
Posts:
1
Location:
bay area, ca

port being spammed!

I recently installed this Prog only to update scripts since the alternative was using VI..
Great program!
BUT I have huge issues with something is spamming my ports.....at first I somehow "exposed" my GUI to the wan so I was getting hit:

May 28 08:08:56 darcoSM authpriv.info dropbear[21755]: Child connection from 58.242.83.9:61095
May 28 08:08:57 darcoSM authpriv.info dropbear[21755]: Exit before auth: Disconnect received
May 28 08:15:57 darcoSM authpriv.info dropbear[21869]: Child connection from 221.194.47.239:43408
May 28 08:16:00 darcoSM authpriv.info dropbear[21869]: Exit before auth: Disconnect received

I then shut down telnet and created private key for SSH on port 443, now I get

May 30 18:48:15 darcoSM authpriv.info dropbear[18664]: Child connection from 127.0.0.1:32994
May 30 18:48:15 darcoSM authpriv.info dropbear[18664]: Exit before auth: Exited normally
May 30 18:48:15 darcoSM authpriv.info dropbear[18673]: Child connection from 127.0.0.1:32995
May 30 18:48:15 darcoSM authpriv.info dropbear[18675]: Child connection from 127.0.0.1:32996
May 30 18:48:15 darcoSM authpriv.info dropbear[18673]: Exit before auth: Exited normally
May 30 18:48:15 darcoSM authpriv.info dropbear[18675]: Exit before auth: Exited normally
May 30 18:48:16 darcoSM authpriv.info dropbear[18678]: Child connection from 127.0.0.1:33001
May 30 18:48:16 darcoSM authpriv.info dropbear[18678]: Exit before auth: Exited normally
May 30 18:48:16 darcoSM authpriv.info dropbear[18679]: Child connection from 127.0.0.1:33003
May 30 18:48:16 darcoSM authpriv.info dropbear[18679]: Exit before auth: Exited normally
May 30 18:49:18 darcoSM authpriv.info dropbear[18802]: Child connection from 127.0.0.1:33102
May 30 18:49:18 darcoSM authpriv.info dropbear[18802]: Exit before auth: Exited normally
May 30 18:49:18 darcoSM authpriv.info dropbear[18804]: Child connection from 127.0.0.1:33103
May 30 18:49:18 darcoSM authpriv.info dropbear[18804]: Exit before auth: Exited normally

I dual boot and these cessages are from Win10...when I boot into Linux,I know longer receive these messages. I am running a Netgear R7800 w/dd-wrt ver 36020 dated 5/25.
I just logged into Win and didnt even login to WinSCP and these messages started spamming the ports..
any help would be appreciated!
thxs
d

Reply with quote

Advertisement

You can post new topics in this forum