Post by
NIGHTfall_240sx »
https://forums.nicoclub.com/nightfall-240sx-u6331.html
Tue Aug 24, 2004 8:28 pm
240Knightrider:
what port are they attacking? it is most likly a proxy scanner just sweaping though your isp's ranges, my best advice to you is next time they bounce, copy down the ip and port, look up on google if that port has a purpose, its prolly just going to be a proxy port (80 and 8080 are very common hits when machines scan for proxies, 80 and 8080 are socks4/5)
but all comes to all, find out which port they are hitting, it will pretty much tell you if its a proxy scan or a RAT .
also, you can lookup the what isp the attacks are comming from, and if its not a proxy, you can call the isp and inform them of their users actions.
best of luck man, if you need help with the above contact me via email or this thread and ill help you out.
-jeff