<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Cut Off From The Outside World</title>
	<atom:link href="http://www.robmaeder.com/archives/88/feed" rel="self" type="application/rss+xml" />
	<link>http://www.robmaeder.com/archives/88</link>
	<description>It's all about me.</description>
	<lastBuildDate>Wed, 08 Sep 2010 18:56:49 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
	<item>
		<title>By: mike</title>
		<link>http://www.robmaeder.com/archives/88/comment-page-1#comment-19129</link>
		<dc:creator>mike</dc:creator>
		<pubDate>Wed, 20 Feb 2008 20:28:50 +0000</pubDate>
		<guid isPermaLink="false">http://www.robmaeder.com/archives/88#comment-19129</guid>
		<description>Spence, how many times did you get alberts computer infected with porn viruses? or was it just Alan? Yeah right spence, you are the biggest porn user of them all...

(I have no verifying information about my false claims.)</description>
		<content:encoded><![CDATA[<p>Spence, how many times did you get alberts computer infected with porn viruses? or was it just Alan? Yeah right spence, you are the biggest porn user of them all&#8230;</p>
<p>(I have no verifying information about my false claims.)</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Chris</title>
		<link>http://www.robmaeder.com/archives/88/comment-page-1#comment-18898</link>
		<dc:creator>Chris</dc:creator>
		<pubDate>Thu, 14 Feb 2008 04:37:49 +0000</pubDate>
		<guid isPermaLink="false">http://www.robmaeder.com/archives/88#comment-18898</guid>
		<description>Yeah, actually, he didn&#039;t really volunteer that information, I had to ask very specifically what they were seeing on their end that resulted in them suspending the service.</description>
		<content:encoded><![CDATA[<p>Yeah, actually, he didn&#8217;t really volunteer that information, I had to ask very specifically what they were seeing on their end that resulted in them suspending the service.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Rob</title>
		<link>http://www.robmaeder.com/archives/88/comment-page-1#comment-18885</link>
		<dc:creator>Rob</dc:creator>
		<pubDate>Wed, 13 Feb 2008 20:59:16 +0000</pubDate>
		<guid isPermaLink="false">http://www.robmaeder.com/archives/88#comment-18885</guid>
		<description>Hey Chris.  What a long and well-written comment.  It&#039;s surprising to me that the tech would even tell you what your computer was actually doing.  I didn&#039;t think you would ever hear the words &quot;ARP lookup packets&quot; come from a Rogers phone tech.  

They always spout off the same stuff about using P2P programs, blame it on LimeWire, etc, without really giving you much help.  They told us we had a virus and they mentioned some things about running a virus scan, checking the registry and possibly having to reformat the computer, without giving any indication what the real problem or solution was.  

In our case, we actually did have a virus/trojan.  Don&#039;t leave your parents&#039; computer unprotected, kids...</description>
		<content:encoded><![CDATA[<p>Hey Chris.  What a long and well-written comment.  It&#8217;s surprising to me that the tech would even tell you what your computer was actually doing.  I didn&#8217;t think you would ever hear the words &#8220;ARP lookup packets&#8221; come from a Rogers phone tech.  </p>
<p>They always spout off the same stuff about using P2P programs, blame it on LimeWire, etc, without really giving you much help.  They told us we had a virus and they mentioned some things about running a virus scan, checking the registry and possibly having to reformat the computer, without giving any indication what the real problem or solution was.  </p>
<p>In our case, we actually did have a virus/trojan.  Don&#8217;t leave your parents&#8217; computer unprotected, kids&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Chris</title>
		<link>http://www.robmaeder.com/archives/88/comment-page-1#comment-18804</link>
		<dc:creator>Chris</dc:creator>
		<pubDate>Mon, 11 Feb 2008 01:50:00 +0000</pubDate>
		<guid isPermaLink="false">http://www.robmaeder.com/archives/88#comment-18804</guid>
		<description>I had a similar issue with Rogers probably about a year ago. I never got a warning call, they just suspended the service over the weekend. Given that I was running Rogers&#039; provided Norton Antivirus, I was suspicious. I called them up and they told me my computer was sending out weird ARP lookup packets like 200 every second, so they shut me off. The moron on the phone went on to tell me to that it could be from P2P Software like Kazaa and other things - which I didn&#039;t have installed. Being able to give me no other information about these packets I was supposedly sending, he suggested I format the computer and then reinstall everything and then call them back and they&#039;d remove the suspension. I pretty much told him I couldn&#039;t do that, even if I wanted to, as I ran a business using that internet connection and couldn&#039;t afford 3 days without internet.

Knowing how long this would likely take, I said that I would unplug everything from the network and only reconnect once I had resolved the issue. He made me agree to some pretty hefty clause treating me as though I was intentionally trying to attack their network with some DNS requests but finally restored the service. I then spent the next hour or two with a copy of Ethereal systematically killing off processes until the ARP packets stopped appearing in the logs. The culprit in the end was the mDNSResponder (Bonojour Network Service) that ships along with iTunes and some other software. Its supposed to keep those ARP requests inside the local network, but was for some reason broadcasting them out across the internet. I uninstalled it, reconnected to the net and crossed by fingers. 

The fact that Rogers didn&#039;t have a log of what these specific packets looked like, and couldn&#039;t tie them back to a piece of malfunctioning software was pretty ridiculous. I&#039;m sure they forced a lot of customers to needlessly wipe their computers as a result.

In the future, ask them what the exact issue is, packets and otherwise, and make sure to have a packet analyser on hand to disconnect, and track down the problem.</description>
		<content:encoded><![CDATA[<p>I had a similar issue with Rogers probably about a year ago. I never got a warning call, they just suspended the service over the weekend. Given that I was running Rogers&#8217; provided Norton Antivirus, I was suspicious. I called them up and they told me my computer was sending out weird ARP lookup packets like 200 every second, so they shut me off. The moron on the phone went on to tell me to that it could be from P2P Software like Kazaa and other things &#8211; which I didn&#8217;t have installed. Being able to give me no other information about these packets I was supposedly sending, he suggested I format the computer and then reinstall everything and then call them back and they&#8217;d remove the suspension. I pretty much told him I couldn&#8217;t do that, even if I wanted to, as I ran a business using that internet connection and couldn&#8217;t afford 3 days without internet.</p>
<p>Knowing how long this would likely take, I said that I would unplug everything from the network and only reconnect once I had resolved the issue. He made me agree to some pretty hefty clause treating me as though I was intentionally trying to attack their network with some DNS requests but finally restored the service. I then spent the next hour or two with a copy of Ethereal systematically killing off processes until the ARP packets stopped appearing in the logs. The culprit in the end was the mDNSResponder (Bonojour Network Service) that ships along with iTunes and some other software. Its supposed to keep those ARP requests inside the local network, but was for some reason broadcasting them out across the internet. I uninstalled it, reconnected to the net and crossed by fingers. </p>
<p>The fact that Rogers didn&#8217;t have a log of what these specific packets looked like, and couldn&#8217;t tie them back to a piece of malfunctioning software was pretty ridiculous. I&#8217;m sure they forced a lot of customers to needlessly wipe their computers as a result.</p>
<p>In the future, ask them what the exact issue is, packets and otherwise, and make sure to have a packet analyser on hand to disconnect, and track down the problem.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Spencer "too much porn" McCormack</title>
		<link>http://www.robmaeder.com/archives/88/comment-page-1#comment-18696</link>
		<dc:creator>Spencer "too much porn" McCormack</dc:creator>
		<pubDate>Thu, 07 Feb 2008 21:07:15 +0000</pubDate>
		<guid isPermaLink="false">http://www.robmaeder.com/archives/88#comment-18696</guid>
		<description>Sounds like somebody went to the wrong porn site.</description>
		<content:encoded><![CDATA[<p>Sounds like somebody went to the wrong porn site.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
