QUOTE(hkpoh @ Aug 2 2007, 04:48 PM)
"Winnuke detected" doesnt mean they r u using winnuke, it's written there because 124.79.114.164 is connecting using port 6670. open a command com (cmd.exe), and then net view to check if there is a any wierd port is established. If yes, then u have to scan ur pc oledi.
How then is it possible to that I see these in my Firewall log:
FWROUTE,2007/08/05,09:55:00 +8:00 GMT,10.0.0.2:0,10.0.0.9:0,ICMP (type:8/subtype:0)
FWROUTE,2007/08/05,09:55:00 +8:00 GMT,10.0.0.9:1053,10.0.0.2:53,UDP
FWIN,2007/08/05,09:55:16 +8:00 GMT,124.82.90.64:4693,10.0.0.9:445,TCP (flags:S)
FWIN,2007/08/05,09:56:08 +8:00 GMT,124.18.90.188:4352,10.0.0.9:135,TCP (flags:S
FWIN,2007/08/05,09:57:58 +8:00 GMT,190.17.64.6:1256,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:00:24 +8:00 GMT,60.50.27.13:4273,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:00:42 +8:00 GMT,67.85.90.63:62523,10.0.0.9:22715,TCP (flags:S)
FWIN,2007/08/05,10:00:44 +8:00 GMT,67.85.90.63:62637,10.0.0.9:22715,TCP (flags:S)
FWIN,2007/08/05,10:00:58 +8:00 GMT,124.82.8.27:4517,10.0.0.9:445,TCP (flags:S)
FWIN,2007/08/05,10:02:16 +8:00 GMT,124.82.8.27:4375,10.0.0.9:445,TCP (flags:S)
FWIN,2007/08/05,10:02:34 +8:00 GMT,190.17.64.6:2675,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:03:06 +8:00 GMT,71.184.220.89:49175,10.0.0.9:54906,TCP (flags:S)
FWIN,2007/08/05,10:03:28 +8:00 GMT,190.17.64.6:4851,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:03:32 +8:00 GMT,60.50.86.164:7109,10.0.0.9:14469,UDP
FWIN,2007/08/05,10:03:50 +8:00 GMT,124.82.1.245:3760,10.0.0.9:135,TCP (flags:S)
FWIN,2007/08/05,10:04:06 +8:00 GMT,124.188.244.76:3288,10.0.0.9:5900,TCP (flags:S)
FWIN,2007/08/05,10:04:10 +8:00 GMT,190.17.64.6:2339,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:04:26 +8:00 GMT,60.241.227.138:2966,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:04:40 +8:00 GMT,81.234.142.16:63133,10.0.0.9:8603,UDP
FWIN,2007/08/05,10:05:34 +8:00 GMT,190.17.64.6:1294,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:05:58 +8:00 GMT,124.82.12.89:3811,10.0.0.9:445,TCP (flags:S)
FWIN,2007/08/05,10:06:00 +8:00 GMT,60.241.227.138:3044,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:06:02 +8:00 GMT,67.85.90.63:63195,10.0.0.9:22715,TCP (flags:S)
FWIN,2007/08/05,10:06:04 +8:00 GMT,67.85.90.63:63310,10.0.0.9:22715,TCP (flags:S)
FWIN,2007/08/05,10:06:10 +8:00 GMT,67.85.90.63:63411,10.0.0.9:22715,TCP (flags:S)
FWIN,2007/08/05,10:06:52 +8:00 GMT,77.64.9.133:55974,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:07:30 +8:00 GMT,190.17.64.6:4965,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:08:44 +8:00 GMT,124.82.12.89:4954,10.0.0.9:445,TCP (flags:S)
FWIN,2007/08/05,10:08:44 +8:00 GMT,124.82.10.65:1857,10.0.0.9:445,TCP (flags:S)
FWIN,2007/08/05,10:08:46 +8:00 GMT,124.82.94.169:3208,10.0.0.9:445,TCP (flags:S)
FWIN,2007/08/05,10:09:32 +8:00 GMT,190.17.64.6:1433,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:10:14 +8:00 GMT,190.17.64.6:2899,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:10:28 +8:00 GMT,83.25.206.36:0,10.0.0.9:0,ICMP (type:8/subtype:0)
FWIN,2007/08/05,10:10:40 +8:00 GMT,67.85.90.63:63992,10.0.0.9:22715,TCP (flags:S)
FWIN,2007/08/05,10:10:42 +8:00 GMT,67.85.90.63:60014,10.0.0.9:22715,TCP (flags:S)
FWIN,2007/08/05,10:10:48 +8:00 GMT,67.85.90.63:60074,10.0.0.9:22715,TCP (flags:S)
FWIN,2007/08/05,10:12:06 +8:00 GMT,190.17.64.6:2604,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:12:16 +8:00 GMT,190.17.64.6:3329,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:12:16 +8:00 GMT,124.82.12.89:3980,10.0.0.9:445,TCP (flags:S)
FWIN,2007/08/05,10:13:08 +8:00 GMT,190.17.64.6:4809,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:13:12 +8:00 GMT,124.82.1.245:4304,10.0.0.9:135,TCP (flags:S)
FWIN,2007/08/05,10:13:30 +8:00 GMT,89.137.132.168:57091,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:14:12 +8:00 GMT,124.82.12.89:3409,10.0.0.9:445,TCP (flags:S)
FWIN,2007/08/05,10:15:06 +8:00 GMT,210.10.164.85:63205,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:15:06 +8:00 GMT,210.10.164.85:22958,10.0.0.9:7962,UDP
FWIN,2007/08/05,10:16:40 +8:00 GMT,124.82.90.64:3561,10.0.0.9:445,TCP (flags:S)
FWIN,2007/08/05,10:16:54 +8:00 GMT,124.82.90.64:4491,10.0.0.9:445,TCP (flags:S)
FWIN,2007/08/05,10:17:16 +8:00 GMT,190.17.64.6:1637,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:17:34 +8:00 GMT,221.4.255.140:17074,10.0.0.9:22715,UDP
FWIN,2007/08/05,10:17:38 +8:00 GMT,190.17.64.6:2370,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:18:22 +8:00 GMT,67.85.90.63:60600,10.0.0.9:22715,TCP (flags:S)
FWIN,2007/08/05,10:18:24 +8:00 GMT,67.85.90.63:60709,10.0.0.9:22715,TCP (flags:S)
FWIN,2007/08/05,10:18:26 +8:00 GMT,190.17.64.6:3839,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:18:30 +8:00 GMT,67.85.90.63:60816,10.0.0.9:22715,TCP (flags:S)
FWIN,2007/08/05,10:18:58 +8:00 GMT,190.17.64.6:1343,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:19:40 +8:00 GMT,89.137.132.168:17986,10.0.0.9:7962,UDP
FWIN,2007/08/05,10:20:10 +8:00 GMT,218.171.151.183:2119,10.0.0.9:32000,TCP (flags:S)
FWIN,2007/08/05,10:21:10 +8:00 GMT,190.17.64.6:1818,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:21:24 +8:00 GMT,62.40.68.58:2697,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:21:32 +8:00 GMT,190.17.64.6:2569,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:21:50 +8:00 GMT,124.82.8.27:2936,10.0.0.9:445,TCP (flags:S)
FWIN,2007/08/05,10:21:52 +8:00 GMT,190.17.64.6:3310,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:22:20 +8:00 GMT,190.17.64.6:4062,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:22:52 +8:00 GMT,124.82.8.27:3894,10.0.0.9:445,TCP (flags:S)
FWIN,2007/08/05,10:23:06 +8:00 GMT,124.82.8.27:4397,10.0.0.9:445,TCP (flags:S)
FWIN,2007/08/05,10:23:48 +8:00 GMT,67.85.90.63:61201,10.0.0.9:22715,TCP (flags:S)
FWIN,2007/08/05,10:23:50 +8:00 GMT,67.85.90.63:61317,10.0.0.9:22715,TCP (flags:S)
FWIN,2007/08/05,10:23:56 +8:00 GMT,67.85.90.63:61395,10.0.0.9:22715,TCP (flags:S)
FWIN,2007/08/05,10:23:58 +8:00 GMT,82.5.176.101:1919,10.0.0.9:59200,TCP (flags:S)
FWIN,2007/08/05,10:24:00 +8:00 GMT,82.5.176.101:26882,10.0.0.9:59200,UDPA
FWIN,2007/08/05,10:24:46 +8:00 GMT,81.234.142.16:62417,10.0.0.9:8603,UDP
FWIN,2007/08/05,10:24:46 +8:00 GMT,82.5.92.120:63458,10.0.0.9:7962,UDP
FWIN,2007/08/05,10:24:58 +8:00 GMT,218.111.161.46:2523,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:25:00 +8:00 GMT,218.111.161.46:17960,10.0.0.9:7962,UDP
FWIN,2007/08/05,10:25:10 +8:00 GMT,190.17.64.6:2088,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:27:12 +8:00 GMT,77.64.9.133:57863,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:27:26 +8:00 GMT,124.82.8.27:1720,10.0.0.9:445,TCP (flags:S)
FWIN,2007/08/05,10:29:26 +8:00 GMT,124.82.84.52:2741,10.0.0.9:135,TCP (flags:S)
FWIN,2007/08/05,10:29:52 +8:00 GMT,72.152.186.111:50138,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:30:26 +8:00 GMT,217.164.187.144:60716,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:30:38 +8:00 GMT,67.85.90.63:61835,10.0.0.9:22715,TCP (flags:S)
FWIN,2007/08/05,10:30:40 +8:00 GMT,67.85.90.63:61951,10.0.0.9:22715,TCP (flags:S)
FWIN,2007/08/05,10:30:50 +8:00 GMT,190.17.64.6:2253,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:31:06 +8:00 GMT,70.22.111.169:3178,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:31:42 +8:00 GMT,190.17.64.6:3752,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:32:04 +8:00 GMT,124.82.62.127:1247,10.0.0.9:445,TCP (flags:S)
FWIN,2007/08/05,10:32:18 +8:00 GMT,190.17.64.6:1273,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:33:14 +8:00 GMT,124.82.8.27:3749,10.0.0.9:445,TCP (flags:S)
FWIN,2007/08/05,10:34:12 +8:00 GMT,67.85.90.63:62433,10.0.0.9:22715,TCP (flags:S)
FWIN,2007/08/05,10:34:16 +8:00 GMT,124.82.94.169:3559,10.0.0.9:445,TCP (flags:S)
FWIN,2007/08/05,10:34:22 +8:00 GMT,67.85.90.63:62593,10.0.0.9:22715,TCP (flags:S)
FWIN,2007/08/05,10:35:36 +8:00 GMT,81.158.30.179:54514,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:36:50 +8:00 GMT,190.17.64.6:3038,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:36:50 +8:00 GMT,69.145.130.47:44082,10.0.0.9:6346,UDP
FWIN,2007/08/05,10:38:00 +8:00 GMT,124.82.62.219:3690,10.0.0.9:135,TCP (flags:S)
FWIN,2007/08/05,10:38:04 +8:00 GMT,190.17.64.6:1294,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:38:24 +8:00 GMT,124.82.8.27:3663,10.0.0.9:445,TCP (flags:S)
FWIN,2007/08/05,10:38:38 +8:00 GMT,124.82.8.27:3390,10.0.0.9:445,TCP (flags:S)
FWIN,2007/08/05,10:38:50 +8:00 GMT,69.181.143.33:4622,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:39:02 +8:00 GMT,67.85.90.63:62999,10.0.0.9:22715,TCP (flags:S)
FWIN,2007/08/05,10:39:12 +8:00 GMT,67.85.90.63:63171,10.0.0.9:22715,TCP (flags:S)
FWIN,2007/08/05,10:39:44 +8:00 GMT,190.17.64.6:1085,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:39:56 +8:00 GMT,124.82.94.169:4653,10.0.0.9:445,TCP (flags:S)
FWIN,2007/08/05,10:40:00 +8:00 GMT,124.82.12.89:3811,10.0.0.9:445,TCP (flags:S)
FWIN,2007/08/05,10:40:44 +8:00 GMT,190.17.64.6:3386,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:41:16 +8:00 GMT,190.17.64.6:4114,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:41:36 +8:00 GMT,220.238.184.92:2551,10.0.0.9:7962,TCP (flags:S)
FWIN,2007/08/05,10:41:50 +8:00 GMT,124.82.84.52:1739,10.0.0.9:135,TCP (flags:S)
FWIN,2007/08/05,10:42:12 +8:00 GMT,190.17.64.6:2453,10.0.0.9:7962,TCP (flags:S)