This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

How to combat DDOS attacks on my hosted-at-home gameserver?

Hi all,

 

Over the past few weeks I have been in receipt of DDOS attacks.

And yesterday for the first time my pc crashed an restarted.

How can I combat this?

These are some of the lines in my logfile highlighting the attacks.

The game that I am hosting is Dayz Standalone 

 

20:51:11 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:2
21:45:29 DDOS: Stats for 192.168.1.104:2304 flag 512:0 1024:0 1:0
21:46:29 DDOS: Stats for 146.90.194.139:1026 flag 512:1 1024:1 1:2
21:59:24 DDOS: Stats for 146.90.194.139:1028 flag 512:1 1024:1 1:4
22:00:24 DDOS: Stats for 146.90.194.139:1028 flag 512:1 1024:1 1:0
22:01:24 DDOS: Stats for 146.90.194.139:1028 flag 512:1 1024:1 1:0
22:02:24 DDOS: Stats for 146.90.194.139:1028 flag 512:1 1024:1 1:0
22:03:24 DDOS: Stats for 146.90.194.139:1028 flag 512:1 1024:1 1:0
22:04:24 DDOS: Stats for 146.90.194.139:1028 flag 512:1 1024:1 1:0
22:05:24 DDOS: Stats for 146.90.194.139:1028 flag 512:1 1024:1 1:0
22:06:24 DDOS: Stats for 146.90.194.139:1028 flag 512:1 1024:1 1:0
22:07:24 DDOS: Stats for 146.90.194.139:1028 flag 512:1 1024:1 1:0
22:28:12 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:2
22:29:12 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
22:30:12 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
22:31:12 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
22:32:12 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
22:33:12 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
22:43:18 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:2
22:44:18 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
22:45:18 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
22:46:18 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
22:47:18 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
22:48:18 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
22:49:18 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
22:50:18 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
22:51:18 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
23:02:19 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:2
23:03:19 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
23:04:19 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
23:05:19 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
23:06:19 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
23:07:19 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
23:08:19 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
23:09:19 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
23:10:19 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
23:11:19 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
23:12:19 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
23:13:19 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
23:14:19 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
23:15:19 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
23:16:19 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
23:17:19 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
23:18:19 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
23:19:19 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
23:20:19 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
23:21:19 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
23:22:19 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
23:23:19 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
23:24:19 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
23:25:19 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
23:26:19 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
23:27:19 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
23:28:19 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
23:29:19 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
23:30:19 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
23:31:19 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
23:32:19 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
23:33:19 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
23:34:19 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
23:35:19 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
23:36:19 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
23:37:19 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0
23:38:19 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0

 

One listing in log for every single minute UNTIL last listing at

 

05:26:23 DDOS: Stats for 146.90.194.139:1025 flag 512:1 1024:1 1:0

 

Log is only updated every so often and it is a BATTLEYE log.

 

Thanks.

I need help desperately 

 



This thread was automatically locked due to age.
Parents
  • Hi Zahir ,

     

    From which device have you collected these logs. On our Sophos Firewall Home/Business we have DDOS protection.

    Regards,

    Aditya Patel
    Global Escalation Support Engineer | Sophos Technical Support

    Knowledge Base  |  @SophosSupport | Sign up for SMS Alerts
    If a post solves your question use the 'This helped me' link.

  • Hiya Aditya,

    These logs lines (each line of text not the complete log) came from the BATTLEYE Logs for my game server.

    I have noticed that internet has gone very slow over the last few days and yesterday or the day before (I cannot remember) the system crashed.

    I am using Sophos Home Premium and the license is finishing towards end of January 2019

     

    So if Sophos have a product which can save my game server from the DDOS attacks then that would be great!

    I cannot simply hide/change the IP Number of my static IP because it is needed to for the gamers and also it is displayed inside the DayZ Game Browser (where you select a server to join).

     

    If you can tell me where to look for the Sophos Home Premium logs maybe I can upload them here or part of them (the relevant bits)

     

    Thank You for any and all help,

    I'm in desperate need of help!

    Currently the server is offline (switched off at the power socket in the wall) until I can resolve this.

     

    Just for the record.

    I have not misbehaved/offended to anyone and this is a consequence...

    I think whats happened is someone has been banned for cheating by BattlEye (as various player id's are highlighted for cheating in the logs)

    and taken offence and this is a consequence.

     

     

Reply
  • Hiya Aditya,

    These logs lines (each line of text not the complete log) came from the BATTLEYE Logs for my game server.

    I have noticed that internet has gone very slow over the last few days and yesterday or the day before (I cannot remember) the system crashed.

    I am using Sophos Home Premium and the license is finishing towards end of January 2019

     

    So if Sophos have a product which can save my game server from the DDOS attacks then that would be great!

    I cannot simply hide/change the IP Number of my static IP because it is needed to for the gamers and also it is displayed inside the DayZ Game Browser (where you select a server to join).

     

    If you can tell me where to look for the Sophos Home Premium logs maybe I can upload them here or part of them (the relevant bits)

     

    Thank You for any and all help,

    I'm in desperate need of help!

    Currently the server is offline (switched off at the power socket in the wall) until I can resolve this.

     

    Just for the record.

    I have not misbehaved/offended to anyone and this is a consequence...

    I think whats happened is someone has been banned for cheating by BattlEye (as various player id's are highlighted for cheating in the logs)

    and taken offence and this is a consequence.

     

     

Children