/ Forside / Teknologi / Netværk / TCP/IP / Nyhedsindlæg
Login
Glemt dit kodeord?
Brugernavn

Kodeord


Reklame
Top 10 brugere
TCP/IP
#NavnPoint
Per.Frede.. 4668
BjarneD 4017
severino 2804
pallebhan.. 1680
EXTERMINA.. 1525
xou 1455
strarup 1430
Manse9933 1419
o.v.n. 1400
10  Fijala 1204
Underlig log fra Router/firewall.
Fra : Lars Jørgensen \(275~


Dato : 19-08-03 20:37

Hejsa NG.

Får følgende log fra min ZyWall1 nogle der ved hvad det er ? Det får den
nemlig til at logge helt og aldeles af nettet. Pænt kedeligt...

No. Time Source IP Destination IP Note

1|08/19/2003 19:59:54 |192.168.1.6:2977 |80.196.35.130:4662 |ACCESS FORWARD

Firewall sent TCP reset packets: TCP

2|08/19/2003 19:59:43 |192.168.1.4:1158 |65.54.194.118:80 |web forward

rad.msn.com

3|08/19/2003 19:59:42 |192.168.1.6:2973 |217.157.129.240:4662 |ACCESS
FORWARD

Firewall sent TCP reset packets: TCP

4|08/19/2003 19:59:26 |192.168.1.6:2967 |62.243.177.121:4662 |ACCESS FORWARD

Firewall sent TCP reset packets: TCP

5|08/19/2003 19:59:14 |192.168.1.6:2963 |80.162.116.228:4662 |ACCESS FORWARD

Firewall sent TCP reset packets: TCP

6|08/19/2003 19:59:14 |192.168.1.6:2961 |80.160.96.61:4662 |ACCESS FORWARD

Firewall sent TCP reset packets: TCP

7|08/19/2003 19:59:10 |192.168.1.4:1157 |81.180.94.8:80 |ACCESS FORWARD

Firewall sent TCP reset packets: TCP

8|08/19/2003 19:59:06 |192.168.1.6:2951 |80.196.35.130:4662 |ACCESS FORWARD

Firewall sent TCP reset packets: TCP

9|08/19/2003 19:59:02 |192.168.1.6:2943 |80.63.221.169:4662 |ACCESS FORWARD

Firewall sent TCP reset packets: TCP

10|08/19/2003 19:58:50 |192.168.1.6:2931 |217.157.129.240:4662 |ACCESS
FORWARD

Firewall sent TCP reset packets: TCP

11|08/19/2003 19:58:46 |192.168.1.6:2917 |62.243.177.121:4662 |ACCESS
FORWARD

Firewall sent TCP reset packets: TCP

12|08/19/2003 19:58:39 |62.107.198.1:2916 |80.160.99.252:23 |ACCESS BLOCK

Firewall default policy: TCP (W to L)

13|08/19/2003 19:58:33 |62.107.198.1:2916 |80.160.99.252:23 |ACCESS BLOCK

Firewall default policy: TCP (W to L)

14|08/19/2003 19:58:31 |62.107.198.1:2916 |80.160.99.252:23 |ACCESS BLOCK

Firewall default policy: TCP (W to L)

15|08/19/2003 19:58:27 |192.168.1.6:2879 |80.164.124.41:4662 |ACCESS FORWARD

Firewall sent TCP reset packets: TCP

16|08/19/2003 19:58:26 |192.168.1.6:2891 |80.162.116.228:4662 |ACCESS
FORWARD

Firewall sent TCP reset packets: TCP

17|08/19/2003 19:58:26 |192.168.1.6:2885 |80.160.96.61:4662 |ACCESS FORWARD

Firewall sent TCP reset packets: TCP

18|08/19/2003 19:58:10 |192.168.1.6:2851 |80.63.221.169:4662 |ACCESS FORWARD

Firewall sent TCP reset packets: TCP

19|08/19/2003 19:58:00 |62.107.198.1:2915 |80.160.99.252:23 |ACCESS BLOCK

Firewall default policy: TCP (W to L)

20|08/19/2003 19:57:54 |62.107.198.1:2915 |80.160.99.252:23 |ACCESS BLOCK

Firewall default policy: TCP (W to L)

21|08/19/2003 19:57:54 |192.168.1.6:2837 |62.243.177.121:4662 |ACCESS
FORWARD



 
 
DaneX (19-08-2003)
Kommentar
Fra : DaneX


Dato : 19-08-03 22:18

> Får følgende log fra min ZyWall1 nogle der ved hvad det er ? Det får den
> nemlig til at logge helt og aldeles af nettet. Pænt kedeligt...

[snip - en hel del]

Umiddelbart ligner det "bare" en omgang portscanning for at checke hvilke
porte du har åbne og om der er nogen måde de kan komme i gennem.



Søg
Reklame
Statistik
Spørgsmål : 177502
Tips : 31968
Nyheder : 719565
Indlæg : 6408538
Brugere : 218887

Månedens bedste
Årets bedste
Sidste års bedste