BP
2005-07-13 03:30:10 UTC
In configuring a new wireless laptop, I apparently got on to another
unprotected network. After running ipconfig, I wondered why the
assigned address was not on my private network. So I did tracert
to 24.25.195.2 to see if I had broken something on my network or
otherwise screwed up my network gear.
To my surprise, I found a hop of 10.76.128.1 in the mix. I realized
I was not on my network and reset my wireless nic to my net. A few
days later, I noticed there were 800+ enteries in my logs from the
10.76.128.1 address from even before I accidently was on the other
wireless net. Humm...
I changed cable modems sometime during all of this and had to run the
install directly from my other computer without the firewall in the
mix and what do you know? ipconfig showed that my dhcp server was
10.76.128.1. Humm again!
So, I went back on the other unprotected wireless net network with the
aforementioned address as it's gateway, went to GRC.com to log the
ip address, and went to the cable modems interface and screen captured
the data there for future reference.
I am really getting the feeling someone is doing something phishy.
What do you think?
BP
unprotected network. After running ipconfig, I wondered why the
assigned address was not on my private network. So I did tracert
to 24.25.195.2 to see if I had broken something on my network or
otherwise screwed up my network gear.
To my surprise, I found a hop of 10.76.128.1 in the mix. I realized
I was not on my network and reset my wireless nic to my net. A few
days later, I noticed there were 800+ enteries in my logs from the
10.76.128.1 address from even before I accidently was on the other
wireless net. Humm...
I changed cable modems sometime during all of this and had to run the
install directly from my other computer without the firewall in the
mix and what do you know? ipconfig showed that my dhcp server was
10.76.128.1. Humm again!
So, I went back on the other unprotected wireless net network with the
aforementioned address as it's gateway, went to GRC.com to log the
ip address, and went to the cable modems interface and screen captured
the data there for future reference.
I am really getting the feeling someone is doing something phishy.
What do you think?
BP