Ways to protect myself from unauthorized remote access

IllBeTheJudge

New member
Local time
9:23 AM
Messages
3
Hiya

Whilst troubleshooting another issue, I noticed that overnight there are dozens of attempts to log onto my machine remotely (all failing)

I checked my router logs and saw a couple of different IP addresses trying to access my PC remotely. Tracing these IPs probably revealed nothing, but reportedly they were coming out of South Korea and China

Although at times I might need to remotely access my machine from "anywhere", for now I have blocked all access to remote desktop apart from a few known good addresses (such as from my work IP address) but just wondering what others might consider best practices in regards to protecting themselves from unauthorized remote desktop access? Is there other software I should look into, or other means that might already be at my disposal (using Windows 7 Professional, but not expecting a lot the OS to do about it)

I am running Kaspersky Internet Security 12, so would I be better off blocking access from there, or at the router level itself?
 

My Computer My Computer

At a glance

Windows 7 Professional 32-bit
OS
Windows 7 Professional 32-bit
It's likely just some script kiddie port scanning looking for a open system.
It's not uncommon to get a few hits or clusters of them now and then.
If it's constant you can consider it a focused attack.
I think you're just getting port scanned though. and kapersky should be adequate.
The only reason I don't say do it at the router is it can mess with some online games.
If you don't game at all you could go ahead and just tell your router not to respond to them.
 

My Computer My Computer

At a glance

Windows 7 x64Intel i7 2600kG.skill Ripjaw 16gigs @ 1866Nvidia gtx580 (evga)
Computer Manufacturer/Model Number
Insane hobo technologies. ;-)
OS
Windows 7 x64
CPU
Intel i7 2600k
Motherboard
Asrock z68 extreme 4 gen 3
Memory
G.skill Ripjaw 16gigs @ 1866
Graphics Card(s)
Nvidia gtx580 (evga)
Sound Card
Integrated HD audio + hdmi
Monitor(s) Displays
24" ASUS widescreen + 42" insignia
Screen Resolution
1080p (1920x1080)
Hard Drives
128 Samsung 830
256 Samsung 840
3 x 1tb storage drive (various)
1 western digital 1tb (eSATA)
1 Seagate 1tb (eSATA)
PSU
1 kilowatt SLI/Crossfire rated Silverstone modular
Case
NZXT Phantom + additional 220 fan
Cooling
Zalmann
Keyboard
Microsoft wireless 3000 (v2)
Mouse
MS - wireless 5000 (bluetrack)
Internet Speed
depends on if you ask me or my provider.
Other Info
The above information is provided as is, and the author assumes no responsibility for issues it may cause with your sanity or fanboyism.
Just set your LAN side of the router to ignore all pings and scans, but actively defend against DOS attacks, and make sure its firmware is up to date.

If you need access from your workplace set up VPN.

In Windows ensure the firewall is on, and the inbound rules cover everything. Ensure your updates are kept on schedule, and consider turning off Remote Assistance etc.

If you go to this forums Tutorial Section you'll find many more tips :)
 

My Computer My Computer

At a glance

W7 x64Intel Q9300 2.5Ghz Quad LGA775 (Would like Q9...4Gb OCZ Gold 1,333MhzPalit HD4850 O/C Sonic 512Mb DDR3, Dual DViD's
Computer Manufacturer/Model Number
Custom built machine
OS
W7 x64
CPU
Intel Q9300 2.5Ghz Quad LGA775 (Would like Q9650)
Motherboard
Gigabyte GA-EP45T-UD3R (F6 Bios)
Memory
4Gb OCZ Gold 1,333Mhz
Graphics Card(s)
Palit HD4850 O/C Sonic 512Mb DDR3, Dual DViD's
Sound Card
Azalia to twin Samson 50w Studio Monitors
Monitor(s) Displays
Twin Dell (E-IPS) U2311H 23.6" Screens
Screen Resolution
1920 x 1080 @ 60Hz
Hard Drives
Crucial M4 SSD, archives on twin Western Digital Caviar Black WD2002FAEX, 2TB, 7200rpm HDD's, Samsung Ritemaster CD/DVD Burner...
PSU
OCZ 600w
Case
Lian-Li PC8 acoustifoamed' aluminium tower
Cooling
Scythe 140mm Zipang
Keyboard
Cherry PS/2 custom model
Mouse
Lenovo USB laser "Thinkpad" Mouse
Internet Speed
ADSL2+ @14Mbps downstream & Cat6 Gigabit Ethernet
Antivirus
NOD32
Browser
Opera
Other Info
Silicon Dust HD Homerun Dual FTA (Ethernet) TV Tuners, Dray Tek Vigor 2850Vn router and 8x HP Gigabit Switch. Lian-Li CR26 Card Reader, Canon MF4430 iSensys laser printer/scanner.
Thanks Maguscreed and Qdos

The attempts have been happening a lot (just re-checked the Event log) so I have restricted access to port 3389, and created a VPN, and when I am next in the office I will see how that goes

Pings were already being ignored and DoS attacks monitored also. Remote Assistance is switched off also, so now I'll just see how things go and monitor logs

Thanks for the assistance
 

My Computer My Computer

At a glance

Windows 7 Professional 32-bit
OS
Windows 7 Professional 32-bit
You could use a Firewall like Comodo Firewall or enable the default built in one.

A good Anti-Virus and Anti-Malware like MSE (you won't need this since you already have Kaspersky) but Malwarebytes or SuperAntiSpyware will also help run with Kaspersky.

You could also disable Remote Registry by opening up services.msc (from a run box or the Start Menu Search) and head over to Remote Registry, stop it if you haven't already. Right Click and select Properties, change the Startup type to Disabled

For extra protection you could install WOT or another site advisor for your Browser and FlashBlock with NoScript could also help to block Malicious sites.
 

My Computer My Computer

At a glance

Windows 7 Ultimate SP1 - 64 BitIntel Core i5 2500k2x4GB DDR3 1333HzAti Radeon 6770
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Novatech iRush Pro
OS
Windows 7 Ultimate SP1 - 64 Bit
CPU
Intel Core i5 2500k
Motherboard
Foxconn H67M-S/H67M-V/H67
Memory
2x4GB DDR3 1333Hz
Graphics Card(s)
Ati Radeon 6770
Sound Card
None
Monitor(s) Displays
Samsung S22B150
Screen Resolution
1920x1080
Hard Drives
2x500GB
PSU
500W
Cooling
Fan
Keyboard
HP KU0316
Mouse
Wireless Logitech M185
Internet Speed
20MB/s
Antivirus
Avast Free
Browser
Google Chrome
Other Info
Logitech M185 Mouse
KU-M316 Keyboard
Thanks for that Infinite

I have MalwareBytes and run that fairly regularly
I used to have SuperAntiSpyware but ran into some compatibility issues at some stage (from memory, issues with it AND Kaspersky running)

I'll look into those other suggestions of yours too, appreciate the time and effort
 

My Computer My Computer

At a glance

Windows 7 Professional 32-bit
OS
Windows 7 Professional 32-bit
Back
Top