What I did, ,thinking it would make a difference:
1) changed my static IP to dynamic. This made the foreign port scans even worse, I guess because my ISP has limited pool of dynamic IP's, and they are recycled and already compromised when I get one???
2) pfblocker doesn't seem to do anything... I can't figure out how it works... you select the top spamming countries... then in another tab you select the individual countries as well? I select EVERYTHING on both tabs, ,and it makes no difference... the scans keep coming within seconds cycling modem and changing IP address. How to update lists???
3) installed SNORT with free lists, but again, not sure if it's even working... had some alerts, ,but that was my iphone connecting outbound to akamai technologies web server for some type of update on it's own. I don't like that it did this without my asking first. Akamai is EVERYWHERE, have you all noticed that? Video servers, file servers, software updates, most of the time it's on an akamai server.
Has anyone else experienced these types of unrelenting port scans from all over the world? It's driving me nuts and makes me concerned about my internet banking, ,etc.
I have a fresh install of windows xp, ran malawarebytes, spybot, alvira... nothing....
then I noticed my DNS resolver cache was full of CRAP from foreign .cn websites, I tried to flush it, but it wouldn't flush.... ipconfig /displaydns continued to show the crap.. .not sure the significance of this as I'm new to all this stuff.... so I disabled the local DNS server service... I don't need it.
here's a typical scan from Latvia: 220.127.116.11:54300
any help greatly appreciated.