This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

A LOT of random connections to Twitter, among others - please advise

Hi there,

 

New user here, could someone please explain these connections to me?


 

I have default WAN to LAN IPS and the default firewall on for now (which allows any connections). I would hope that the IPS blocks malicious connections and keeps ports closed, but I seem to be having a lot of small connections to random IPs that purport to be Twitter, Microsoft etc, though as I search the IPs it appears they may be linked to abuse.

What sort of connections are these? It seems my system has made the connection, and originally I thought it was from web browsing, but I'm not sure now.  

What information might they be gaining from my system, if it is malicious? How can I distinguish between connections that come from legitimate sources and malicious ones?

How can I block them from occurring? My solution for now is to turn on my software VPN, while I figure things out.



This thread was automatically locked due to age.
Parents
  • Hi,

    a quick fix is your IPS should be LAN to WAN.

    Ian

  • I did have it on lan to wan strict, but I realised that was more for people running servers?

     

    As I am more concerned about incoming connections, I changed it to wan to lan.


    I realise that the twitter connections were literally the fact that I had a web page open with twitter. But there have been others such as Viber or Skype, which I do not have open or browse to.

    Also searching the ips does not lead me to feel comfortable, as some of them have been linked to abuse, even if they are hosted by twitter, skype, microsoft.


    I'm not sure how to interpret this yet, but I will try tightening up my outgoing connections. Just not sure if I want to track ever single app that might want to talk to the world, I already have Bitdefender on "paranoid mode" so the apps that are talking should have been vetter already.

Reply
  • I did have it on lan to wan strict, but I realised that was more for people running servers?

     

    As I am more concerned about incoming connections, I changed it to wan to lan.


    I realise that the twitter connections were literally the fact that I had a web page open with twitter. But there have been others such as Viber or Skype, which I do not have open or browse to.

    Also searching the ips does not lead me to feel comfortable, as some of them have been linked to abuse, even if they are hosted by twitter, skype, microsoft.


    I'm not sure how to interpret this yet, but I will try tightening up my outgoing connections. Just not sure if I want to track ever single app that might want to talk to the world, I already have Bitdefender on "paranoid mode" so the apps that are talking should have been vetter already.

Children