r1ch.net forums
* Home Help Search Login Register
r1ch.net  |  r1ch.net stuff  |  R1Q2  |  Topic: Adding IP to Blackholes for "spoofing"...
Pages: [1]
Print
Author Topic: Adding IP to Blackholes for "spoofing"...  (Read 6683 times)
Anonymous
Guest
« on: November 05, 2004, 11:45:44 pm »

zw0rst1 connected
zw0rst1[68.160.39.36:27901]: protocol 34: "3.20 x86 Oct 16 1998 Win32 RELEASE"
zw0rst1 entered the game
------- Server Initialization -------
0 entities inhibited
0 teams with 0 entities
Stalemate!
-------------------------------------
zw0rst1[68.160.39.36:27901]: protocol 34: "3.20 x86 Oct 16 1998 Win32 RELEASE"
Added 68.160.39.36:27901 to blackholes for attempted to spoof ip '200.226.136.137'.


I got this message on my R1Q2 dedicated console and was wondering about how the heck someone can spoof IP.  I looked up 200.226.136.137 and found a bunch of OSP gaming servers on lots of ports.  Is this person trying to hack or is this just a random error?   I know blackholing is null-routing an IP address because I have about 10,000 crappy ad sites blackholed in my hosts file.  Basically this means this person cannot ever connect to me from that address.  How do I remove/disable or find out why this is happening?

(The mod is freeze tag)
Logged
R1CH
Administrator
Member

Posts: 2625



« Reply #1 on: November 06, 2004, 12:11:38 pm »

This is happening because the client added an "ip" variable to his userinfo, used to trick mods into reading the incorrect IP and evading bans. That IP looks very familiar - I think it's the default IP used by frkq2's "IP Spoofing" cheat.

You can use the listholes command and addhole/delhole to add/remove blackholes.
Logged
Pages: [1]
Print
r1ch.net  |  r1ch.net stuff  |  R1Q2  |  Topic: Adding IP to Blackholes for "spoofing"...
Jump to:  

Powered by SMF 1.1.19 | SMF © 2013, Simple Machines