BearShare Forums  

Go Back   Gnutella Forums > Current Gnutella Client Forums > BearShare (Windows) > BearShare Open Discussion
Register FAQ The Twelve Commandments Members List Calendar Arcade Find the Best VPN Today's Posts

BearShare Open Discussion Open topic discussion for BearShare users

Preview this popular software (BearShare Beta v5 "Download")


Like Tree94Likes

 
 
LinkBack Thread Tools Display Modes
Prev Previous Post   Next Post Next
  #31 (permalink)  
Old April 24th, 2014
Lord of the Rings's Avatar
ContraBanned
 
Join Date: June 30th, 2004
Location: Middle of the ocean apparently (middle earth)
Posts: 671
Lord of the Rings has a distinguished reputationLord of the Rings has a distinguished reputationLord of the Rings has a distinguished reputation
Default Browse-BOT obvservation

Past two days (after I deciding to use the less stringent on Japanese hosts hostiles), found a handful of Japanese Browse-BOTs that browsed me as soon as I connected to the network (all within 5-10 seconds.) These ones browse repeatedly over a period of time. Here's an example of one today over a 70 minute period:
ID: 59.147.135.13:50652-Tokyo So-net Entertainment Corporation. <- (List, name & shame!)
Code:
8:20:11 AM
8:20:14 AM
8:20:24 AM

8:21:12 AM
8:21:52 AM

8:22:01 AM
8:22:56 AM

8:23:14 AM
8:23:39 AM

8:24:13 AM

8:25:47 AM

8:26:05 AM
8:26:22 AM
8:26:25 AM

8:27:11 AM
8:27:13 AM
8:27:13 AM

8:29:14 AM
8:29:30 AM
8:29:31 AM
8:29:33 AM

8:30:12 AM

8:31:58 AM

8:32:17 AM
8:32:19 AM
8:32:20 AM

8:33:21 AM
8:33:37 AM

8:34:23 AM

8:35:32 AM

8:36:01 AM
8:36:42 AM

8:37:43 AM
8:37:49 AM

8:38:08 AM
8:38:18 AM
8:38:32 AM
8:38:41 AM
8:38:45 AM

8:39:39 AM
8:39:50 AM
8:39:57 AM

8:40:32 AM
8:40:49 AM

8:43:22 AM
8:43:31 AM
8:43:35 AM
8:43:35 AM
8:43:41 AM
8:43:49 AM
8:43:55 AM
8:43:58 AM

8:44:33 AM

8:45:03 AM

8:46:05 AM
8:46:22 AM
8:46:49 AM
8:46:57 AM

8:47:11 AM
8:47:12 AM
8:47:27 AM
8:47:56 AM

8:49:45 AM

8:50:57 AM

8:52:40 AM
8:52:45 AM
8:52:45 AM

8:53:50 AM
8:55:46 AM

8:56:01 AM
8:56:26 AM
8:56:55 AM

8:57:16 AM
8:57:27 AM
8:57:44 AM

8:58:40 AM

8:59:10 AM
8:59:56 AM

9:00:12 AM
9:00:16 AM
9:00:22 AM

9:01:54 AM
9:01:57 AM

9:02:47 AM

9:04:02 AM
9:04:25 AM

9:05:03 AM
9:05:08 AM
9:05:31 AM

9:06:14 AM
9:06:40 AM
9:06:40 AM

9:08:15 AM

9:09:10 AM
9:09:44 AM
9:09:54 AM

9:10:01 AM
9:10:24 AM

9:12:08 AM
9:12:14 AM
9:12:19 AM
9:12:37 AM
9:12:44 AM
9:12:49 AM
9:12:51 AM

9:13:00 AM
9:13:12 AM
9:13:50 AM

9:14:19 AM
9:14:20 AM
9:14:32 AM

9:15:40 AM
9:15:42 AM
9:15:51 AM
9:15:55 AM

9:16:33 AM
9:16:53 AM

9:17:08 AM
9:17:17 AM

9:18:09 AM
9:18:46 AM
9:18:54 AM

9:19:42 AM
9:19:59 AM

9:20:25 AM
9:20:46 AM

9:21:09 AM
9:21:12 AM
9:21:32 AM
9:21:51 AM
You'll notice where I was attempted to be browsed up to 7 and 8 times over a minute. Even after banning the host. I am obviously not the only host this BOT is attempting to constantly browse. Also this is not the only browse-BOT. So if you can imagine several hundred of these browse-BOTs, it starts to become a semi-DDoS.

LW 4 usually shows each occasion a person is browsed. LW 5 / LPE do not. If the Browse listing is still up in the upload window, it will not repeat itself even if you have been browsed several times over a period of time. Only if you clear it from the Upload window will it re-list itself.

The example above was of a new BOT I found today. I checked my firewall log via console & realised the others I found yesterday had also been attempting to browse at a similar rate. Again, up to 8 times a particular minute. Over a period of time the others with slightly greater occurrences than the new BOT today.

Japan BOTs are notorious for deliberately causing heavy traffic. But from my experience, Taiwan BOT's seem to be designed purely for DDoS purposes. ie: not attempting to connect, browse, or download. Simply pinging the program (the firewall console verifies this, example: Allow LimeWire connecting from 1.*.*.*:51768 to port *****)

My answer for helping to prevent the actual program from being pinged into lagginess & eventual crashing is to block various known ip pingers in the firewall. Particularly the Taiwan DDoS BOTs. MS Windows 7 & higher, and some 3rd party firewalls have the ability to block ip's. MacOSX can only achieve it via using 3rd party apps. Personally I use WaterRoof which adds abilities to the OSX built-in firewall, but this app is slow & tedious to add ip's one by one, especially if there's a large list already there. This app should have ability to add a block of ip's at once like Windows firewall does. (1-2 mins between each addition when a large list already exists. Not a well thought out design.)

So you wonder, why is it these Japanese BOTs are browsing everyone & why once is not enough? And why certain BOTs from other parts of the world browse everyone as soon as they can after you first connect to the network?

Edit: Click image for larger version

Name:	Spam-2014-05-11.png
Views:	441
Size:	2.8 KB
ID:	6515 connected to my Phex on 11 May 2014. I added this Washington address to the hostiles 16 March 2013, stated reason was DDoS @ LW & BearShare. I noted it again 19 April for same reason.
runt66 likes this.
Reply With Quote
 


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


LinkBacks (?)
LinkBack to this Thread: https://www.gnutellaforums.com/bearshare-open-discussion/53973-technutopia-fullsize-hostiles-list-bearshare-limewire.html
Posted By For Type Date
BearShare Pro-5.3.0 (download torrent) - TPB This thread Refback February 22nd, 2016 08:01 PM
BearShare PRO 5.2.6.0 {Full Cracked Installer} (download torrent) - TPB This thread Refback August 11th, 2014 09:48 AM
Site Gnutella Forums | www.gnutellaforums.com | BoardReader This thread Refback May 7th, 2014 03:33 PM
BearShare Pro-5.3.0 (download torrent) - TPB This thread Refback December 18th, 2013 02:15 AM
BearShare PRO 5.2.6.0 {Full Cracked Installer} (download torrent) - TPB This thread Refback November 5th, 2013 01:07 AM
Bearshare pro 5 (download torrent) - TPB This thread Refback August 16th, 2013 02:15 PM
Bearshare pro 5 (download torrent) - TPB This thread Refback August 16th, 2013 02:39 AM
BearShare Pro-5.3.0 (download torrent) - TPB This thread Refback July 14th, 2013 03:01 AM
BearShare Pro-5.3.0 (download torrent) - TPB This thread Refback May 21st, 2013 11:24 AM
BearShare PRO 5.2.6.0 {Full Cracked Installer} (download torrent) - TPB This thread Refback May 4th, 2013 04:05 AM
BearShare PRO 5.2.6.0 {Full Cracked Installer} (download torrent) - TPB This thread Refback March 15th, 2013 10:11 AM
BearShare Pro-5.3.0 (download torrent) - TPB This thread Refback February 24th, 2013 04:36 PM
BearShare Pro-5.3.0 (download torrent) - TPB This thread Refback November 4th, 2012 11:37 PM
BearShare Pro-5.3.0 (download torrent) - TPB This thread Refback October 8th, 2012 08:59 PM
BearShare PRO 5.2.6.0 {Full Cracked Installer} (download torrent) - TPB This thread Refback August 7th, 2012 03:05 AM

Similar Threads
Thread Thread Starter Forum Replies Last Post
The TechNutopia Fullsize Hostiles List for BearShare and LimeWire AaronWalkhouse Tips & Tricks 18 March 20th, 2009 08:45 PM
Hostiles File - I'm Lost ADKR General Windows Support 7 December 25th, 2007 07:03 PM
Is anybody having trouble connecting to www.technutopia.com? AaronWalkhouse Chat - Open Topics - The Lounge 19 August 6th, 2006 05:34 PM
The LimeWire Fullsize Hostiles List. AaronWalkhouse New Feature Requests 1 July 16th, 2005 05:03 PM
hostiles.txt in CVS tree number_man Gtk-Gnutella (Linux/Unix/Mac OSX/Windows) 0 May 22nd, 2004 06:58 AM


All times are GMT -7. The time now is 07:04 PM.


Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2025, vBulletin Solutions, Inc.
SEO by vBSEO 3.6.0 ©2011, Crawlability, Inc.

Copyright © 2020 Gnutella Forums.
All Rights Reserved.