Answer the question
In order to leave comments, you need to log in
Calculate by IP - myth or reality?
Is it possible to calculate its location by IP? Can it be that the IP address be tied to a specific city, district and based on calculate at least an approximate location (if the IP was not hidden)?
What should I do if, for example, I discovered that my mail was accessed from a different IP address, this is a criminal offense, how to figure out who it was?
Answer the question
In order to leave comments, you need to log in
Only 2 categories of specialists can calculate by IP:
Is it possible to calculate its location by IP?
One of the possible scenarios for "breaking through" and hacking the target victim by IP:
1) The attacker finds out the victim's IP in any convenient way.
(it can be skype resolver, picture sniffer, etc.)
2) Goes to Whois and GeoIP services as well as Wigle.net.
3) Find out information about the provider and the IP country from Whois, then go to GeoIP and find out the city or region.
4) Go to Wigle and enter the IP in the advanced search form (if possible).
5) If he is lucky and the victim has Wifi, he will see his WiFi network name, BSSID (MAC).
6) Enters and sees the history of this network, as well as its approximate coordinates. He goes to the Google map and possibly sees its network on the map, and next to it is the house number, street name and settlement.
7) If you live in the same city, you can kick your ass and go to a place with a good WiFi whistle and any WiFi enabled device, find this network and try to get a password if the network does not have WPS enabled or is it some kind of TP-Link, we go to the 3WiFi service and try to find a PIN or a ready-made password in the database.
8) If the password is found and he is lucky, you can enter the local network and the victim’s Internet, under his IP, and then, sniff passwords, go there “where you don’t need to” and do everything that your imagination has enough for ...
You can access on the user's machine, for this it is enough to carry out an ARP Spoofing attack, and replace the downloaded exe files with your RAT, Trojan, Downloader, etc. After that, the attacker can gain full access to the victim's devices.
The information is provided for informational purposes, hacking and gaining unauthorized access to computer information is punishable by the law of your country.
Easily!
1. Find out the IP address.
2. We stomp to the provider.
3. We fall off as much as necessary.
4. Well, there is already at your discretion ...
Only by technical means - no way. Yes, you can query various bases by whois, they will show who owns this IP, a graphical traceroute can show its approximate location. But all this is true only if you did not use a VPN - in this case - well, you will find out that this is the IP of the anonymizer or even Tor exit nodes - will it help a lot?
The exact location of the IP provider can give. relevant authorities.
If you entered your mail from a foreign IP, contact the provider's support and be sure to change the password to a complex one. And best of all, do not use it for any confidential information - because there is some truth in jokes about admins laughing at user photos. Or rather, as one of my girlfriends said - "In every joke there is a share of a joke, the rest is all serious"
In the case of penetration into the mailbox, you must immediately contact the technical support service and change passwords, application bindings, etc.
Service administrators often have many more tools to identify an attacker.
And then, of course, we go and write a statement to the police, especially if there is a fact of the right of violation, since the entrance to your mailbox itself will be very difficult to qualify under any article, since no harm has been done to you (but I don’t lawyer).
By IP, you can calculate something, which is difficult to say in advance. It all depends on many factors. For example, if it was an IP from the Rostelecom home Internet pool, then even the owner's passport data can be calculated (in the sense that, upon an official request from the police or an authority with the appropriate authority, Rostelecom can get it from its billing). The reverse situation, if the IP belongs to the exit node of the TOR network, then of course, apart from this node, you are unlikely to learn anything just by IP.
The geo-reference of IP addresses is very abstract, the owner of the corresponding address or pool can announce it geographically anywhere, while there is no single mechanism capable of tracking these changes and somehow reflecting them in the databases. For example, in our region, for 1.5 years, the provider has been giving subscribers white addresses from pools previously used in another city, but the location, judging by the "ipcomputers", is still incorrect)
Didn't find what you were looking for?
Ask your questionAsk a Question
731 491 924 answers to any question