on 17-03-2022 06:40
I received an email from Virgin saying a device on my network was reported as a DDOS participant. Any advice on whether this is for real, and how to find that device if it is?
on 21-03-2022 10:00
Hi @drjaking,
Thank you for your post and welcome back to our community forums. We're here to help.
I can confirm the the DDOS warning email you've received would be legitimate. Apologies for any confusion or upset caused. Have you followed the advice and steps outlined in the email yet?
Thanks,
on 21-03-2022 11:39
There is an explainer here https://www.virginmedia.com/help/security/denial-of-service-attacks
on 21-03-2022 12:53
on 21-03-2022 13:44
on 21-03-2022 17:12
21-03-2022 17:21 - edited 21-03-2022 17:21
It might? but I use Zyxel that can do Anomaly Detection and Prevention on say a LAN with logging to log the IP doing a flooding.
There are many ways you can go about this but it can take time.
One good thing depending on the DoS if its not that smart with the hub not doing QoS/BWM on the upstream is you can setup a BQM to see when your connection spikes.
on 21-03-2022 17:45