Jump to content

Hi there! I'm a moderator on a game forum. We have reason to believe one of the users are running a cracked version of the game, and are using a VPN to pretend they are from Iran. US sanctions mean Steam is not available in Iran. As a forum for this particular game franchise, and one that is active in communicating with the game devs, we hold a strict policy to not offer support for those running illegitimate versions of the game. We've asked him to prove he owns a legitimate copy of the game, and expected him to be able to show us a Steam library to prove this. Of course, he can't. However, this game is largely available on disc, even today!

 

The website of course logs IPs from users. Nothing malicious, simply the IP itself and nothing more. Users have the choice to state their location on the forum. I checked, and the IP is linked to a legitimate ISP in Iran, however, is it possible for a VPN to guise itself as a legit ISP address? I know this question seems to be worded weirdly, but I hope it makes sense!

Link to comment
https://linustechtips.com/topic/945961-a-question-on-vpns/
Share on other sites

Link to post
Share on other sites

Well, in most cases VPN services will have different servers in multiple countries. If that is the case, whatever VPN is the person is using, they have servers in Iran. 

You could take the IP address and see who is using it.

 

EDIT: to clarify, in terms of the IP, which VPN service providing it.

 

CPU: AMD Ryzen 5 5600X | CPU Cooler: Stock AMD Cooler | Motherboard: Asus ROG STRIX B550-F GAMING (WI-FI) | RAM: Corsair Vengeance LPX 32 GB (4x 8 GB) DDR4-3000 CL16 | GPU: Nvidia GTX 1060 6GB Zotac Mini | Case: K280 Case | PSU: Cooler Master B600 Power supply | SSD: 1TB  | HDDs: 1x 250GB & 1x 1TB WD Blue | Monitor: 24" Acer S240HLBID | OS: Win 11 Pro.

 

Home Lab:  Lenovo ThinkCenter M82 Hyper-V Server 2022 | Dell OptiPlex 9020 Hyper-V Server 2022 | TP-LINK TL-SG108E | Cisco Catalyst C2960CG 8 Port Switch | HP MicroServer G8 SCCM Server | 2x Dell PowerEdge R630 Hyper-V Server 2022

 

 

Link to comment
https://linustechtips.com/topic/945961-a-question-on-vpns/#findComment-11517866
Share on other sites

Link to post
Share on other sites

6 minutes ago, Abdul201588 said:

Well, in most cases VPN services will have different servers in multiple countries. If that is the case, whatever VPN is the person is using, they have servers in Iran. 

You could take the IP address and see who is using it.

 

EDIT: to clarify, in terms of the IP, which VPN service providing it.

 

When I checked the IP address provided, it was linked to a legitimate ISP. However, I thought that a VPN would be able to mask itself as a legitimate ISP address regardless?

Link to comment
https://linustechtips.com/topic/945961-a-question-on-vpns/#findComment-11517890
Share on other sites

Link to post
Share on other sites

1 minute ago, K0MP4CT said:

When I checked the IP address provided, it was linked to a legitimate ISP. However, I thought that a VPN would be able to mask itself as a legitimate ISP address regardless?

I think you're thinking when you connect. For example, this case. The person is intentionally hiding his/her IP address. When connecting the person is connecting the server which is in Iran. 

CPU: AMD Ryzen 5 5600X | CPU Cooler: Stock AMD Cooler | Motherboard: Asus ROG STRIX B550-F GAMING (WI-FI) | RAM: Corsair Vengeance LPX 32 GB (4x 8 GB) DDR4-3000 CL16 | GPU: Nvidia GTX 1060 6GB Zotac Mini | Case: K280 Case | PSU: Cooler Master B600 Power supply | SSD: 1TB  | HDDs: 1x 250GB & 1x 1TB WD Blue | Monitor: 24" Acer S240HLBID | OS: Win 11 Pro.

 

Home Lab:  Lenovo ThinkCenter M82 Hyper-V Server 2022 | Dell OptiPlex 9020 Hyper-V Server 2022 | TP-LINK TL-SG108E | Cisco Catalyst C2960CG 8 Port Switch | HP MicroServer G8 SCCM Server | 2x Dell PowerEdge R630 Hyper-V Server 2022

 

 

Link to comment
https://linustechtips.com/topic/945961-a-question-on-vpns/#findComment-11517896
Share on other sites

Link to post
Share on other sites

1 minute ago, Abdul201588 said:

I think you're thinking when you connect. For example, this case. The person is intentionally hiding his/her IP address. When connecting the person is connecting the server which is in Iran. 

To clarify, I'm not certain whether the user is in fact masking their IP address, but if I can better understand how VPNs function, I can at least limit the possibilities!

Link to comment
https://linustechtips.com/topic/945961-a-question-on-vpns/#findComment-11517902
Share on other sites

Link to post
Share on other sites

8 minutes ago, K0MP4CT said:

To clarify, I'm not certain whether the user is in fact masking their IP address, but if I can better understand how VPNs function, I can at least limit the possibilities!

How VPN works, you connect to a server, once you've connected all the traffic is encrypted to the server then to and back out the internet. For example. Person 1 has an IP of 23.3.1.3 and he cannot access certain sites because they are blocked. Now, he will connect to the server within the country and will use the IP address of the given server such 44.133.9.4. Now the person can access anything.

 

 

 

 

CPU: AMD Ryzen 5 5600X | CPU Cooler: Stock AMD Cooler | Motherboard: Asus ROG STRIX B550-F GAMING (WI-FI) | RAM: Corsair Vengeance LPX 32 GB (4x 8 GB) DDR4-3000 CL16 | GPU: Nvidia GTX 1060 6GB Zotac Mini | Case: K280 Case | PSU: Cooler Master B600 Power supply | SSD: 1TB  | HDDs: 1x 250GB & 1x 1TB WD Blue | Monitor: 24" Acer S240HLBID | OS: Win 11 Pro.

 

Home Lab:  Lenovo ThinkCenter M82 Hyper-V Server 2022 | Dell OptiPlex 9020 Hyper-V Server 2022 | TP-LINK TL-SG108E | Cisco Catalyst C2960CG 8 Port Switch | HP MicroServer G8 SCCM Server | 2x Dell PowerEdge R630 Hyper-V Server 2022

 

 

Link to comment
https://linustechtips.com/topic/945961-a-question-on-vpns/#findComment-11517913
Share on other sites

Link to post
Share on other sites

12 minutes ago, K0MP4CT said:

However, I thought that a VPN would be able to mask itself as a legitimate ISP address regardless?

Depends entirely upon the IP space provided to the remote end.  Some things like PIA have their own AS number so when you look up on ARIN or RIPE it gives you the VPN provider information, some VPN providers just leverage provider-provided IP space which could be anything.

 

What ISP did it resolve to?   I'd say it's possible but improbable.

PC : 3600 · Crosshair VI WiFi · 2x16GB RGB 3200 · 1080Ti SC2 · 1TB WD SN750 · EVGA 1600G2 · Define C 

Link to comment
https://linustechtips.com/topic/945961-a-question-on-vpns/#findComment-11517916
Share on other sites

Link to post
Share on other sites

18 minutes ago, beersykins said:

Depends entirely upon the IP space provided to the remote end.  Some things like PIA have their own AS number so when you look up on ARIN or RIPE it gives you the VPN provider information, some VPN providers just leverage provider-provided IP space which could be anything.

 

What ISP did it resolve to?   I'd say it's possible but improbable.

It came back as Shatel.ir, a quick Google search tells me it's one of the biggest ISPs in Iran. Which of course could be plausible as to why he has a service with them, but also makes it an obvious choice to mask as.

Link to comment
https://linustechtips.com/topic/945961-a-question-on-vpns/#findComment-11517951
Share on other sites

Link to post
Share on other sites

20 minutes ago, K0MP4CT said:

It came back as Shatel.ir, a quick Google search tells me it's one of the biggest ISPs in Iran. Which of course could be plausible as to why he has a service with them, but also makes it an obvious choice to mask as.

May I ask what game it is? Is it an online game? I'm sure you can ban his account

CPU: AMD Ryzen 5 5600X | CPU Cooler: Stock AMD Cooler | Motherboard: Asus ROG STRIX B550-F GAMING (WI-FI) | RAM: Corsair Vengeance LPX 32 GB (4x 8 GB) DDR4-3000 CL16 | GPU: Nvidia GTX 1060 6GB Zotac Mini | Case: K280 Case | PSU: Cooler Master B600 Power supply | SSD: 1TB  | HDDs: 1x 250GB & 1x 1TB WD Blue | Monitor: 24" Acer S240HLBID | OS: Win 11 Pro.

 

Home Lab:  Lenovo ThinkCenter M82 Hyper-V Server 2022 | Dell OptiPlex 9020 Hyper-V Server 2022 | TP-LINK TL-SG108E | Cisco Catalyst C2960CG 8 Port Switch | HP MicroServer G8 SCCM Server | 2x Dell PowerEdge R630 Hyper-V Server 2022

 

 

Link to comment
https://linustechtips.com/topic/945961-a-question-on-vpns/#findComment-11517988
Share on other sites

Link to post
Share on other sites

1 hour ago, Abdul201588 said:

May I ask what game it is? Is it an online game? I'm sure you can ban his account

We definitely can! The forum works on a warning system. He has already been temp-banned previously for private message abuse where he was attempting to get help to crack the game. We are certain he's up to no good once more. However, we don't want to ban him for simply asking a question. Of course, if the question turns out to be related to cracking the game again, we will ban him. For now, I'm trying to find errors in his story.

Link to comment
https://linustechtips.com/topic/945961-a-question-on-vpns/#findComment-11518285
Share on other sites

Link to post
Share on other sites

ISPs also serve businesses, who could be hosting VPN services. Therefore determining ISP from IP address does not help much. VPN IP addresses are not public either. You can block the IP address, but unless we know what kind of connection the game uses, there is not much options.

 

He could be using VPN only for the game and real IP for the forum. 

HAL9000: AMD Ryzen 9 3900x | Noctua NH-D15 chromax.black | 32 GB Corsair Vengeance LPX DDR4 3200 MHz | Asus X570 Prime Pro | ASUS TUF 3080 Ti | 1 TB Samsung 970 Evo Plus + 1 TB Crucial MX500 + 6 TB WD RED | Corsair HX1000 | be quiet Pure Base 500DX | LG 34UM95 34" 3440x1440

Hydrogen server: Intel i3-10100 | Cryorig M9i | 64 GB Crucial Ballistix 3200MHz DDR4 | Gigabyte B560M-DS3H | 33 TB of storage | Fractal Design Define R5 | unRAID 6.9.2

Carbon server: Fujitsu PRIMERGY RX100 S7p | Xeon E3-1230 v2 | 16 GB DDR3 ECC | 60 GB Corsair SSD & 250 GB Samsung 850 Pro | Intel i340-T4 | ESXi 6.5.1

Big Mac cluster: 2x Raspberry Pi 2 Model B | 1x Raspberry Pi 3 Model B | 2x Raspberry Pi 3 Model B+

Link to comment
https://linustechtips.com/topic/945961-a-question-on-vpns/#findComment-11518326
Share on other sites

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

×