Jump to content

Recommended Posts

Posted

 If you are on Windoze Systems 2k3, 2k8 or 2k8R2.

These commands will help you to get your server back online.

BTW I see your server online.

 

Step 1 :

 

Windows Server 2008

 

netsh advfirewall firewall add rule name="Remote Desktop Protocol" program=System profile=public,private,domain dir=in localport=3389 protocol=tcp action=allow

 

 

Windows Server 2003

 

netsh firewall set portopening protocol=TCP port=3389 name="Remote Desktop Protocol" mode=ENABLE

 

 

 

Step 2 :

First thing to do is enable windows firewall.

 

netsh advfirewall set domainprofile state on
netsh advfirewall set privateprofile state on
netsh advfirewall set publicprofile state on
netsh advfirewall set allprofiles state on

 

 

 

Step 3 :

The first DOS attack to block is all incoming ICMP Packets. (If you like to ping your server then don't follow this step.)

 

Windows Server 2008

 

netsh advfirewall firewall add rule name="All ICMP V4" protocol=icmpv4:any,any dir=in action=block

 

 

Windows Server 2003

 

netsh firewall set icmpsetting type=ALL mode=disable

 

 

Windows Server 2008

Block all IGMP Requests : http://en.wikipedia.org/wiki/Interne...ement_Protocol

 

netsh advfirewall firewall add rule name="All IGMP" protocol=2 dir=in action=block

 

 

Block all GRE Requests : http://en.wikipedia.org/wiki/Generic..._Encapsulation

 

netsh advfirewall firewall add rule name="All GRE" protocol=47 dir=in action=block

 

Block all VRRP Requests : http://en.wikipedia.org/wiki/Virtual...dancy_Protocol

netsh advfirewall firewall add rule name="All VRRP" protocol=112 dir=in action=block

 

 

Block all PGM Requests : http://en.wikipedia.org/wiki/Pragmat...eral_Multicast

 

netsh advfirewall firewall add rule name="All PGM" protocol=113 dir=in action=block/code]




And what is this doing? Could you explain me via pm?  Server is online!
Posted

Can't via PM but I will explain here and I want to help you and other server owners with Windows OS servers..

 

With that cmds you can block a variety of ports from your system, GRPE, ICMP, etc. (like in LINUX systems with iPTables firewall)

With that commands you can activate your Advanced Firewall from Windows and configure it from SHELL console, or directly from RUN/ cmd /Advanced Firewall.

 

 

[iMPORTANT NOTICE]!!!

Search more on google about netsh commands for your server. Trust me this is the only way to stop minor attacks from shi3t skiddies like DoS. (Denial of Service).

DDoS (Distributed Denial of Service) can't be stopped with software configuration only with an external machine/firewall (for a good externa protection you can put another computer in front of your server), or a CISCO router  or any router with protection.

 

Good Luck with your server.

 

 

ALL SERVERS CAN BE CONFIGURED ANTI-DoS (NOT DDoS) from software BUT ONLY FROM COMMANDS!!!

YOU NEED TO USE NETSH COMMANDS FOR WINDOWS SERVERS AND COMMANDS FOR LINUX/UNIX SERVERS.

 

YOU CANT CONFIGURE WINDOWS OR LINUX BY MOUSE CLICKS :P

HAVE FUN AND GOOD LUCK!

Posted

Can't via PM but I will explain here and I want to help you and other server owners with Windows OS servers..

 

With that cmds you can block a variety of ports from your system, GRPE, ICMP, etc. (like in LINUX systems with iPTables firewall)

With that commands you can activate your Advanced Firewall from Windows and configure it from SHELL console, or directly from RUN/ cmd /Advanced Firewall.

 

 

[iMPORTANT NOTICE]!!!

Search more on google about netsh commands for your server. Trust me this is the only way to stop minor attacks from shi3t skiddies like DoS. (Denial of Service).

DDoS (Distributed Denial of Service) can't be stopped with an external machine/firewall (for a good externa protection you can put another computer in front of your server), or a CISCO router  or any router with protection.

 

Good Luck with your server.

 

I doubt if server side configuration is gonna work, nevermind I hope it does

Posted

"

ALL SERVERS CAN BE CONFIGURED ANTI-DoS (NOT DDoS) from software BUT ONLY FROM COMMANDS!!!

YOU NEED TO USE NETSH COMMANDS FOR WINDOWS SERVERS AND COMMANDS FOR LINUX/UNIX SERVERS.

 

YOU CANT CONFIGURE WINDOWS OR LINUX BY MOUSE CLICKS :P

HAVE FUN AND GOOD LUCK!

"

 

When a stranger knocks on your door and ring the door bell a few time a week. Yes you can call to Police ..

 

That's true .. but DDoS or DoS it's illegal. That skiddies will be banned by some datacenters and reported to their shity internet providers and banned and restricted also.

^^

 

 

Posted

"

ALL SERVERS CAN BE CONFIGURED ANTI-DoS (NOT DDoS) from software BUT ONLY FROM COMMANDS!!!

YOU NEED TO USE NETSH COMMANDS FOR WINDOWS SERVERS AND COMMANDS FOR LINUX/UNIX SERVERS.

 

YOU CANT CONFIGURE WINDOWS OR LINUX BY MOUSE CLICKS :P

HAVE FUN AND GOOD LUCK!

"

 

When a stranger knocks on your door and ring the door bell a few time a week. Yes you can call to Police ..

 

That's true .. but DDoS or DoS it's illegal. That skiddies will be banned by some datacenters and reported to their shity internet providers and banned and restricted also.

^^

 

 

 

get real, DoSSers dont attack you with their pc or with their dedicated, they are registered in a company which spreads viruses in links and makes the infected pcs slaves to their ddos network.

 

During a ddos attack thousands of slave pcs from arround the world are ddosing your server

Posted

Noone will spend money to DDoS your fresh L2 private server. Maybe only a noob/skiddie.

 

I know, but no real DDoS from here only some skiddies from MXC forum (other server owners) :P

You can stop by simply add a router like CISCO with basic protection (a cheap one 150-200$) or any router with basic protection for IP filtering.

Or final solution is to NULL Route, a blackhole to 127.0.0.1 ;)

 

Or LoL just restart your server and change your dedicated IP (ask your hosting company).

 

And you're done.

Posted

Noone will spend money to DDoS your fresh L2 private server. Maybe only a noob/skiddie.

 

I know, but no real DDoS from here only some skiddies from MXC forum (other server owners) :P

You can stop by simply add a router like CISCO with basic protection (a cheap one 150-200$) or any router with basic protection for IP filtering.

Or final solution is to NULL Route, a blackhole to 127.0.0.1 ;)

 

Or LoL just restart your server and change your dedicated IP (ask your hosting company).

 

And you're done.

Well,i've already paid the dedicated for 3 months so server won't close.

I've opened donations. (Not Items++ etc stupid things) so if player donate i will buy a ddos protection. if not, i will speak with my host company if i can buy a cisco rooter and send it to them.

Posted

What IP's or what info did you see when you use NETSTAT on your server ?

Use Cports or TCPView (both are free programs, use google).

 

 

or

You can verify it with following command:

# netstat -nr

 

type following command at shell:

# route add 00.00.00.0 gw 127.0.0.1 lo

(Where 00.00.00.0 is attacker IP).

 

 

or

# route -n

 

You can also use reject target

# route add -host IP-ADDRESS reject

# route add -host 00.00.00.0 reject

 

To confirm the null routing status, use ip command as follows:

# ip route get 64.1.2.3

 

Drop entire subnet 192.00.00.0/24:

# route add -net 192.00.00.0/24 gw 127.0.0.1 lo

 

 

You can also use ip command to null route network or ip, enter:

# ip route add blackhole 192.00.00.0/29

# route -n

 

 

Good LucK!

 

 

Posted

 

 

What IP's or what info did you see when you use NETSTAT on your server ?

Use Cports or TCPView (both are free programs, use google).

 

i didn't used netstat,im too busy working on server balance right now.

or

You can verify it with following command:

# netstat -nr

 

type following command at shell:

# route add 00.00.00.0 gw 127.0.0.1 lo

(Where 00.00.00.0 is attacker IP).

 

 

or

# route -n

 

You can also use reject target

# route add -host IP-ADDRESS reject

# route add -host 00.00.00.0 reject

 

To confirm the null routing status, use ip command as follows:

# ip route get 64.1.2.3

 

Drop entire subnet 192.00.00.0/24:

# route add -net 192.00.00.0/24 gw 127.0.0.1 lo

 

 

You can also use ip command to null route network or ip, enter:

# ip route add blackhole 192.00.00.0/29

# route -n

 

 

Good LucK!

 

 

Posted

Well,2shay brah.If u attack other servers,u are gettin attacked.Dont tell me u wasnt expectin dis.

 

What goes around comes around.

Posted

Well,2shay brah.If u attack other servers,u are gettin attacked.Dont tell me u wasnt expectin dis.

 

What goes around comes around.

I didn't attacked any server,that's the bad with my case. But im thinking to start so mutch power got dirty with the time :)

 

 

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



  • Posts

    • We've added 5% discounts for bulk purchases of Google accounts for orders of 300 or more, and 10% for orders of 500 or more. The discount is applied automatically when you place your order! The discount is indicated in the product title and description for each category.  
    • 🎄 CHRISTMAS EVENT 🎄   ‼️ Information and details: https://forum.l2harbor.com/threads/rozhdestvenskie-xlopoty-christmas-chores.9430/post-171464
    • METATG.ORG Direct Telegram Service Provider A bonus of +7% on every order! *We add 7% more followers than your ordered amount to proactively cover potential drops and guarantee you an honest result." Telegram Followers - Price per 1000 SUBSCRIBERS Subscribers 3 days - $0.10 ~ 8 RUB Subscribers. Daily Completion: 200,000,000 Subscribers 7 days - $0.17 ~ 13.6 RUB Subscribers. Daily Completion: 200,000,000 Subscribers 14 days - $0.20 ~ 16 RUB Subscribers. Daily Completion: 200,000,000 Subscribers 30 days - $0.30 ~ 24 RUB Subscribers. Daily Completion: 200,000,000 Subscribers 60 days - $0.40 ~ 32 RUB Subscribers, 14-day guarantee. Daily Completion: 200,000,000 Subscribers 90 days (Super Fast) - $0.50 ~ 40 RUB Subscribers, 14-day guarantee. Daily Completion: 200,000,000 Subscribers 120 days (Super Fast) - $0.60 ~ 48 RUB Subscribers, 14-day guarantee. Daily Completion: 200,000,000 Subscribers Lifetime (Super Fast) - $0.70 ~ 56 RUB Lifetime Subscribers. 14-day guarantee. Daily Completion: 200,000,000 Telegram Services - Price per 1000 Post Views - $0.06 ~ 5 RUB Reactions - $0.08 ~ 6.5 RUB Bot Starts - $0.10 ~ 8 RUB Bot Starts with referrals - $0.15 ~ 12 RUB DISCOUNTS and CASHBACK for large volumes Direct Supplier. We work from our own accounts with our own software! High execution speed. Multiple payment methods. We work 24/7! Additional discounts are discussed for volumes starting from $1000 per day. SUPPORT 24/7 - TELEGRAM WEBSITE 24/7 - METATG.ORG
    • Added: a brand-new default dashboard template. You can now add multiple game/login server builds. Full support for running both PTS & L2J servers simultaneously, with switching between them. Payment systems: added OmegaPay and Pally (new PayPal-style API). Account history now stores everything: donations, items delivered to characters, referrals, transfers between game accounts, and coin transfers to another master account. Personal Promo Code System: you can create a promo code and assign it to a user or promoter. When donating, a player can enter this promo code to receive bonus coins, and the promo code owner also receives a bonus — all fully configurable in the admin panel.     Look demo site: demo
  • Topics

×
×
  • Create New...

AdBlock Extension Detected!

Our website is made possible by displaying online advertisements to our members.

Please disable AdBlock browser extension first, to be able to use our community.

I've Disabled AdBlock