PDA

View Full Version : Client Disconnects since Keypress.dll flunder...


Seraph_AA
29-06-2004, 02:21
I have been running TS for several years and have yet to encounter this issue. It seems that now after the keypress.dll issue our (as in my clan's) TS server constantly port scans my pc. I'm not talking about once in a while, this is non-stop. It is constantly setting off my firewall and causing all kinds of issues. I have disabled the setting to block attacks for a desired time limit yet the scanningis are enough to drop my connection while playing in games.

My system specs:

1.4ghz AMD
640mb Ram
64mb Nvidia GeForce2
VIA AC'97 (onboard sound card)
1.5mbs cable connection
Directx 9.0b

If i am missing something on my system specs let me know. I have reformatted and it didn't help much. I have contacted my ISP about the connection dropping and they stated that it's not on their end. I have traffic logs from my firewall if that helps to show what ports it is scanning. Any help in this matter would be greatly appreciated.

Thanks in advance

SatanClaus
29-06-2004, 16:48
which firewall?
sure the log would help.
I don't think it's related to the keypress.dll as that was a client side file... still there was no virus in it as you can read on www.teamspeak.org in the news...
What I can imagine is that someone gained access to your TS-Server's operating system and thus can scan you from that source ip....

cu
SatanClaus

Seraph_AA
30-06-2004, 07:22
which firewall?
sure the log would help.
I don't think it's related to the keypress.dll as that was a client side file... still there was no virus in it as you can read on www.teamspeak.org in the news...
What I can imagine is that someone gained access to your TS-Server's operating system and thus can scan you from that source ip....

cu
SatanClaus

The scans seem to only occur while playing games, online and offline. I have reformatted in hopes that it would solve the issue. It has never done this in the past until the keypress.dll file was discovered. The scans started once I started using the new client. I am using Sygate version 1.0.1050. I will see about posting the log file minus the IP address of the server that is scanning my pc. This will be a packet log and not the security log since the security log only shows the type of attack and not which ports are being affected.