U
U
unfapable2016-12-21 06:34:31
Computer networks
unfapable, 2016-12-21 06:34:31

Calculate by IP - myth or reality?

Is it possible to calculate its location by IP? Can it be that the IP address be tied to a specific city, district and based on calculate at least an approximate location (if the IP was not hidden)?

What should I do if, for example, I discovered that my mail was accessed from a different IP address, this is a criminal offense, how to figure out who it was?

Answer the question

In order to leave comments, you need to log in

10 answer(s)
V
Vladimir Io, 2016-12-21
@vawsan

Only 2 categories of specialists can calculate by IP:

  1. schoolchildren who gave each other a headshot in cs =)))
  2. special services

E
Eugene Wolf, 2016-12-21
@Wolfnsex

Is it possible to calculate its location by IP?

City - quite, more accurately - very unlikely. Databases, IP/city mappings are a dime a dozen, from "approximate" to fairly accurate, like this one .
First you need to make sure that it was not you, just for some reason from a different address. A criminal offense is when there are victims and / or the damage is some large amount of money. Imagine a situation that is hypothetically quite possible, that you have a mailbox "[email protected]" with a password "qwe123", and someone has a mailbox "[email protected]", with exactly the same password... and Here, you, by mistake, instead of "1" type "2" and "your" password, and get into someone else's mailbox, by chance, from a "different IP" ... do you think this is a criminal offense? :) No, of course, if you prove the mercenary intent of the attacker, as well as the fact that he entered your computer intentionally, with some specific and illegal purpose (although, as far as I remember, hacking someone else's computer in itself is considered illegal) or in some other unrighteous way took possession of your credentials from the mail ... - you can contact the police, at the same time taking evidence with you. They will make a request to the provider, and he, in turn, will give out the address of the villain. But these are all formalities and work at the level of the "theory of communism".
What to do? First of all, change the password from the mail to a more serious one, bind a phone to it and use other security measures from those provided by your mail provider. And at the same time write to the support service, they will probably be able to tell you about the city from which the entrance was.

V
VerniteAccount, 2016-12-21
@VerniteAccount

One of the possible scenarios for "breaking through" and hacking the target victim by IP:
1) The attacker finds out the victim's IP in any convenient way.
(it can be skype resolver, picture sniffer, etc.)
2) Goes to Whois and GeoIP services as well as Wigle.net.
3) Find out information about the provider and the IP country from Whois, then go to GeoIP and find out the city or region.
4) Go to Wigle and enter the IP in the advanced search form (if possible).
5) If he is lucky and the victim has Wifi, he will see his WiFi network name, BSSID (MAC).
6) Enters and sees the history of this network, as well as its approximate coordinates. He goes to the Google map and possibly sees its network on the map, and next to it is the house number, street name and settlement.
7) If you live in the same city, you can kick your ass and go to a place with a good WiFi whistle and any WiFi enabled device, find this network and try to get a password if the network does not have WPS enabled or is it some kind of TP-Link, we go to the 3WiFi service and try to find a PIN or a ready-made password in the database.
8) If the password is found and he is lucky, you can enter the local network and the victim’s Internet, under his IP, and then, sniff passwords, go there “where you don’t need to” and do everything that your imagination has enough for ...
You can access on the user's machine, for this it is enough to carry out an ARP Spoofing attack, and replace the downloaded exe files with your RAT, Trojan, Downloader, etc. After that, the attacker can gain full access to the victim's devices.
The information is provided for informational purposes, hacking and gaining unauthorized access to computer information is punishable by the law of your country.

A
atis //, 2016-12-21
@atis2345

Easily!
1. Find out the IP address.
2. We stomp to the provider.
3. We fall off as much as necessary.
4. Well, there is already at your discretion ...

S
Sanes, 2016-12-21
@Sanes

If it is strongly necessary, then they will calculate without IP.

C
Cyril, 2016-12-22
@argz

There is even a book ;-)

spoiler
bd88b3d8e64a436387e4acb28d624e3f.png

C
CityCat4, 2016-12-21
@CityCat4

Only by technical means - no way. Yes, you can query various bases by whois, they will show who owns this IP, a graphical traceroute can show its approximate location. But all this is true only if you did not use a VPN - in this case - well, you will find out that this is the IP of the anonymizer or even Tor exit nodes - will it help a lot?
The exact location of the IP provider can give. relevant authorities.
If you entered your mail from a foreign IP, contact the provider's support and be sure to change the password to a complex one. And best of all, do not use it for any confidential information - because there is some truth in jokes about admins laughing at user photos. Or rather, as one of my girlfriends said - "In every joke there is a share of a joke, the rest is all serious"

C
Cool Admin, 2016-12-21
@ifaustrue

In the case of penetration into the mailbox, you must immediately contact the technical support service and change passwords, application bindings, etc.
Service administrators often have many more tools to identify an attacker.
And then, of course, we go and write a statement to the police, especially if there is a fact of the right of violation, since the entrance to your mailbox itself will be very difficult to qualify under any article, since no harm has been done to you (but I don’t lawyer).
By IP, you can calculate something, which is difficult to say in advance. It all depends on many factors. For example, if it was an IP from the Rostelecom home Internet pool, then even the owner's passport data can be calculated (in the sense that, upon an official request from the police or an authority with the appropriate authority, Rostelecom can get it from its billing). The reverse situation, if the IP belongs to the exit node of the TOR network, then of course, apart from this node, you are unlikely to learn anything just by IP.

H
HawK, 2016-12-22
@HawK3D

The geo-reference of IP addresses is very abstract, the owner of the corresponding address or pool can announce it geographically anywhere, while there is no single mechanism capable of tracking these changes and somehow reflecting them in the databases. For example, in our region, for 1.5 years, the provider has been giving subscribers white addresses from pools previously used in another city, but the location, judging by the "ipcomputers", is still incorrect)

Didn't find what you were looking for?

Ask your question

Ask a Question

731 491 924 answers to any question