Drive wiper - does it affect security logs?

I have a question: When you run the Drive Wiper function on the DOD-level setting (3 passes), does this by some odd means cause multiple port access attempts to be made to a specific port by the U.S. Department of Defense Information Center in Ohio?

At about 9 p.m., February 8th, I activated the Drive Wiper to wipe FREE space on the hard drive and two USB flash drives, using the DOD (3 passes) setting. While reviewing the "Inbound Events Log" of my computer security software this morning, I have discovered many unauthorized access attempts were being made to one specific port on my computer. Just between the hours of 4 a.m. - 5:11 a.m. (U.S. Eastern Standard Time) alone, there were a total of 35 access attempts made from the same IP address. Many other access attempts go back to the approximate time I started the Drive Wiper.

According to the ARIN WHOIS database, the IP address shown in my security log belongs to the DOD Information Center in Ohio.

Thanks very much for your time and any enlightenment!

Pete

Are you in North America? Do you have your dates correct? If you're anywhere west of Japan then 9 pm 8th Feb hasn't happened yet.

Anyway the DOD wipe is just a process, and I would bet anyone's money that CC has absolutely nothing to do with this. Have a look at http://forums.t-mobile.com/t5/Help-General-Discussion/Hiport-connects-to-DoD/m-p/205863 and http://www.wilderssecurity.com/archive/index.php/t-115870.html and http://www.issociate.de/board/post/318619/Continous_portscan_from_DoD_Network_Information_Center.html.

Or just Google dod information center port access.

Are you in North America? Do you have your dates correct? If you're anywhere west of Japan then 9 pm 8th Feb hasn't happened yet.

Anyway the DOD wipe is just a process, and I would bet anyone's money that CC has absolutely nothing to do with this. Have a look at http://forums.t-mobile.com/t5/Help-General-Discussion/Hiport-connects-to-DoD/m-p/205863 and http://www.wilderssecurity.com/archive/index.php/t-115870.html and http://www.issociate.de/board/post/318619/Continous_portscan_from_DoD_Network_Information_Center.html.

Or just Google dod information center port access.

I appreciate the info, as I wanted to be sure (being new to this site) I had not overlooked any relevant information before contacting DoD on this issue. I did manage to speak by phone with someone at the DoD Information Center and was advised that they are experiencing problems with an external entity engaging in the unauthorized access activity I described, who is managing to make it appear as if the access attempts are originating from the Department of Defense's IP addresses. SO, no problem with the CC software. Thanks very much again for your time and help!

It would be a marvelous exploit for an intelligence agency to make publicly available a disc wiping procedure that when activated would secretly "phone home" with all the data you are wiping, but I do not think so ! !

Seriously though, if you think it possible that CCleaner would be able to contact the D.O.D., you ought to rethink your protection against keyloggers etc.

I have a Netgear Router which includes a hardware firewall, and I appreciate the benefit that my Comodo software Firewall no longer wastes processor cycles dealing with port probes and attempts at p-to-p file sharing with the previous occupant of my dynamic address, but the hardware is happy to let any outgoing through.

I am confident that Comodo will only allow authorised outgoing, and there is no way Comodo would allow CCleaner to get out - I have NOT authorised CCleaner to update, I only download via Firefox when I choose. I would have to tell Comodo to allow and remember before CCleaner could even send an echo request.

Alan

It would be a marvelous exploit for an intelligence agency to make publicly available a disc wiping procedure that when activated would secretly "phone home" with all the data you are wiping, but I do not think so ! !

Seriously though, if you think it possible that CCleaner would be able to contact the D.O.D., you ought to rethink your protection against keyloggers etc.

I have a Netgear Router which includes a hardware firewall, and I appreciate the benefit that my Comodo software Firewall no longer wastes processor cycles dealing with port probes and attempts at p-to-p file sharing with the previous occupant of my dynamic address, but the hardware is happy to let any outgoing through.

I am confident that Comodo will only allow authorised outgoing, and there is no way Comodo would allow CCleaner to get out - I have NOT authorised CCleaner to update, I only download via Firefox when I choose. I would have to tell Comodo to allow and remember before CCleaner could even send an echo request.

Alan

I appreciate your comments Alan. As I indicated in the last post, I am relatively new to the forums here and am certainly NOT a whiz when it comes to the ins and outs of using Drive Wiper for the first time. I just thought it was odd my Inbound Events Log was recording external access attempts at the same time Drive Wiper was running (set on the DoD level wipe), and wanted to ascertain if this was just a normal part of the Drive Wiper's operation. Of course, now I know the access attempts referred to have nothing to do with the Drive Wiper part of CCleaner, but rather were a mere coincidence.