Προς το περιεχόμενο

UDP flood ktl, intrusions ktl


Lord_Az

Προτεινόμενες αναρτήσεις

Δημοσ.

exw ena routeraki Sagem F@st 1500WG

 

kai to security log mou bgazei:

 

11/15/2006 20:00:48 192.168.2.2 login success

11/15/2006 19:37:02 **Smurf** 169.254.255.255->> 169.254.244.251, Type:3, Code:3 (from ATM1 Outbound)

11/15/2006 19:37:01 **Smurf** 169.254.255.255->> 169.254.244.251, Type:3, Code:3 (from ATM1 Outbound)

11/15/2006 19:36:59 **Smurf** 169.254.255.255->> 169.254.244.251, Type:3, Code:3 (from ATM1 Outbound)

11/15/2006 19:36:58 **Smurf** 169.254.255.255->> 169.254.244.251, Type:3, Code:3 (from ATM1 Outbound)

11/15/2006 19:36:56 **Smurf** 169.254.255.255->> 169.254.244.251, Type:3, Code:3 (from ATM1 Outbound)

11/15/2006 19:36:55 **Smurf** 169.254.255.255->> 169.254.244.251, Type:3, Code:3 (from ATM1 Outbound)

11/15/2006 15:23:07 **TCP FIN Scan** 192.168.2.4, 4301->> 83.82.85.216, 52182 (from ATM1 Outbound)

11/15/2006 15:23:06 **TCP FIN Scan** 192.168.2.4, 4262->> 217.210.40.19, 8001 (from ATM1 Outbound)

11/15/2006 15:23:06 **TCP FIN Scan** 192.168.2.4, 4277->> 62.77.198.30, 4662 (from ATM1 Outbound)

11/15/2006 15:23:06 **TCP FIN Scan** 192.168.2.4, 4287->> 87.219.70.237, 4390 (from ATM1 Outbound)

11/15/2006 15:23:06 **TCP FIN Scan** 192.168.2.4, 4291->> 82.159.9.236, 51217 (from ATM1 Outbound)

11/15/2006 15:23:06 **TCP FIN Scan** 192.168.2.4, 4286->> 84.99.218.76, 4662 (from ATM1 Outbound)

11/15/2006 15:23:06 **TCP FIN Scan** 192.168.2.4, 4274->> 83.193.20.7, 6675 (from ATM1 Outbound)

11/15/2006 15:23:06 **TCP FIN Scan** 192.168.2.4, 4289->> 85.50.69.19, 4662 (from ATM1 Outbound)

11/15/2006 15:23:06 **TCP FIN Scan** 192.168.2.4, 4283->> 200.126.86.156, 28157 (from ATM1 Outbound)

11/15/2006 15:23:06 **TCP FIN Scan** 192.168.2.4, 4275->> 87.216.128.171, 6001 (from ATM1 Outbound)

11/15/2006 15:23:06 **TCP FIN Scan** 192.168.2.4, 4272->> 83.58.32.135, 4662 (from ATM1 Outbound)

11/15/2006 15:23:06 **TCP FIN Scan** 192.168.2.4, 4243->> 212.122.114.134, 4662 (from ATM1 Outbound)

11/15/2006 15:23:06 **TCP FIN Scan** 192.168.2.4, 4266->> 87.218.64.144, 4662 (from ATM1 Outbound)

11/15/2006 15:23:06 **TCP FIN Scan** 192.168.2.4, 4282->> 83.182.173.59, 26229 (from ATM1 Outbound)

11/15/2006 15:23:06 **TCP FIN Scan** 192.168.2.4, 4280->> 62.226.226.169, 4662 (from ATM1 Outbound)

11/15/2006 15:23:06 **TCP FIN Scan** 192.168.2.4, 4279->> 85.49.166.208, 4662 (from ATM1 Outbound)

11/15/2006 15:23:06 **TCP FIN Scan** 192.168.2.4, 4254->> 82.243.76.213, 1080 (from ATM1 Outbound)

11/15/2006 15:21:33 **TCP FIN Scan** 192.168.2.4, 4214->> 82.126.189.126, 5662 (from ATM1 Outbound)

11/15/2006 15:21:33 **TCP FIN Scan** 192.168.2.4, 4217->> 83.115.56.43, 4662 (from ATM1 Outbound)

11/15/2006 15:21:33 **TCP FIN Scan** 192.168.2.4, 4221->> 85.84.201.90, 4662 (from ATM1 Outbound)

11/15/2006 15:16:09 **TCP FIN Scan** 192.168.2.4, 4102->> 85.179.161.119, 11395 (from ATM1 Outbound)

11/15/2006 15:16:09 **TCP FIN Scan** 192.168.2.4, 4095->> 189.136.134.25, 57182 (from ATM1 Outbound)

11/15/2006 15:16:09 **TCP FIN Scan** 192.168.2.4, 4100->> 88.1.146.239, 85 (from ATM1 Outbound)

11/15/2006 15:16:09 **TCP FIN Scan** 192.168.2.4, 4084->> 88.5.226.151, 4662 (from ATM1 Outbound)

11/15/2006 15:16:09 **TCP FIN Scan** 192.168.2.4, 4088->> 90.0.21.127, 4662 (from ATM1 Outbound)

11/15/2006 15:16:08 **TCP FIN Scan** 192.168.2.4, 4075->> 81.33.228.250, 4662 (from ATM1 Outbound)

11/15/2006 15:16:08 **TCP FIN Scan** 192.168.2.4, 4101->> 83.184.108.43, 4662 (from ATM1 Outbound)

11/15/2006 15:16:08 **TCP FIN Scan** 192.168.2.4, 4090->> 83.57.227.41, 27561 (from ATM1 Outbound)

11/15/2006 15:16:08 **TCP FIN Scan** 192.168.2.4, 4096->> 195.74.246.19, 4662 (from ATM1 Outbound)

11/15/2006 14:57:34 NTP Date/Time updated.

11/15/2006 11:47:34 **Smurf** 169.254.255.255->> 169.254.244.251, Type:3, Code:3 (from ATM1 Outbound)

11/15/2006 11:47:33 **Smurf** 169.254.255.255->> 169.254.244.251, Type:3, Code:3 (from ATM1 Outbound)

11/15/2006 11:47:31 **Smurf** 169.254.255.255->> 169.254.244.251, Type:3, Code:3 (from ATM1 Outbound)

11/15/2006 11:47:30 **Smurf** 169.254.255.255->> 169.254.244.251, Type:3, Code:3 (from ATM1 Outbound)

11/15/2006 11:47:28 **Smurf** 169.254.255.255->> 169.254.244.251, Type:3, Code:3 (from ATM1 Outbound)

11/15/2006 08:54:12 NTP Date/Time updated.

11/15/2006 05:34:07 **UDP Flood Stop** (from ATM1 Outbound)

11/15/2006 05:34:05 **UDP flood** 192.168.2.2, 1666->> 193.92.150.3, 53 (from ATM1 Outbound)

11/15/2006 05:34:05 **UDP flood** 217.12.49.43, 61746->> 192.168.2.2, 57742 (from ATM1 Inbound)

11/15/2006 05:34:05 **UDP flood** 192.168.2.2, 57742->> 202.175.188.212, 19770 (from ATM1 Outbound)

11/15/2006 05:34:04 **UDP flood** 192.168.2.2, 1665->> 193.92.150.3, 53 (from ATM1 Outbound)

11/15/2006 05:34:03 **UDP flood** 192.168.2.2, 57742->> 61.51.231.119, 22622 (from ATM1 Outbound)

11/15/2006 05:34:03 **UDP flood** 192.168.2.2, 57742->> 58.61.254.34, 2927 (from ATM1 Outbound)

11/15/2006 05:34:02 **UDP flood** 82.42.223.62, 23939->> 192.168.2.2, 57742 (from ATM1 Inbound)

11/15/2006 05:34:02 **UDP flood** 192.168.2.2, 57742->> 210.82.47.197, 24601 (from ATM1 Outbound)

11/15/2006 05:34:02 **UDP flood** 192.168.2.2, 57742->> 221.208.146.233, 8860 (from ATM1 Outbound)

11/15/2006 05:34:02 **UDP flood** 218.34.45.196, 19092->> 62.1.124.79, 11183 (from ATM1 Inbound)

11/15/2006 05:34:02 **UDP flood** 192.168.2.2, 1661->> 193.92.150.3, 53 (from ATM1 Outbound)

11/15/2006 05:34:02 **UDP flood** 82.21.207.98, 9301->> 192.168.2.2, 57742 (from ATM1 Inbound)

11/15/2006 05:34:01 **UDP flood** 192.168.2.2, 57742->> 221.236.110.54, 16246 (from ATM1 Outbound)

11/15/2006 05:34:01 **UDP flood** 192.168.2.2, 57742->> 87.118.170.66, 10373 (from ATM1 Outbound)

11/15/2006 05:34:01 **UDP flood** 192.168.2.2, 57742->> 220.139.187.166, 26228 (from ATM1 Outbound)

11/15/2006 05:34:01 **UDP flood** 192.168.2.2, 57742->> 218.87.11.211, 20192 (from ATM1 Outbound)

11/15/2006 05:34:01 **UDP flood** 189.172.53.213, 64951->> 192.168.2.2, 57742 (from ATM1 Inbound)

11/15/2006 05:34:01 **UDP flood** 192.168.2.2, 1660->> 193.92.150.3, 53 (from ATM1 Outbound)

11/15/2006 05:34:01 **UDP flood** 192.168.2.2, 57742->> 84.64.143.117, 27611 (from ATM1 Outbound)

11/15/2006 05:34:01 **UDP flood** 192.168.2.2, 57742->> 24.55.18.125, 2226 (from ATM1 Outbound)

11/15/2006 05:34:01 **UDP flood** 192.168.2.2, 57742->> 82.83.47.135, 55698 (from ATM1 Outbound)

11/15/2006 05:34:00 **UDP flood** 85.53.12.126, 10156->> 62.1.124.79, 11183 (from ATM1 Inbound)

11/15/2006 05:34:00 **UDP flood** 192.168.2.2, 57742->> 85.50.161.203, 62764 (from ATM1 Outbound)

11/15/2006 05:34:00 **UDP flood** 192.168.2.2, 57742->> 125.33.154.136, 9263 (from ATM1 Outbound)

11/15/2006 05:34:00 **UDP flood** 192.168.2.2, 57742->> 202.229.205.164, 10749 (from ATM1 Outbound)

11/15/2006 05:34:00 **UDP flood** 192.168.2.2, 57742->> 60.48.188.25, 22821 (from ATM1 Outbound)

11/15/2006 05:34:00 **UDP flood** 192.168.2.2, 57742->> 82.24.144.177, 11709 (from ATM1 Outbound)

11/15/2006 05:34:00 **UDP flood** 192.168.2.2, 57742->> 220.187.55.110, 18134 (from ATM1 Outbound)

11/15/2006 05:34:00 **UDP flood** 192.168.2.2, 57742->> 125.99.40.8, 57100 (from ATM1 Outbound)

11/15/2006 05:34:00 **UDP flood** 192.168.2.2, 57742->> 67.185.64.199, 33263 (from ATM1 Outbound)

11/15/2006 05:34:00 **UDP flood** 192.168.2.2, 57742->> 70.82.199.222, 61901 (from ATM1 Outbound)

11/15/2006 05:34:00 **UDP flood** 192.168.2.2, 57742->> 74.134.246.251, 60211 (from ATM1 Outbound)

11/15/2006 05:34:00 **UDP flood** 192.168.2.2, 57742->> 218.9.243.180, 12510 (from ATM1 Outbound)

11/15/2006 05:33:59 **UDP flood** 192.168.2.2, 57742->> 219.128.57.127, 58584 (from ATM1 Outbound)

11/15/2006 05:33:59 **UDP flood** 192.168.2.2, 57742->> 61.180.4.148, 62277 (from ATM1 Outbound)

11/15/2006 05:33:59 **UDP flood** 192.168.2.2, 57742->> 220.229.190.157, 15003 (from ATM1 Outbound)

11/15/2006 05:33:59 **UDP flood** 192.168.2.2, 57742->> 209.166.120.33, 52770 (from ATM1 Outbound)

11/15/2006 05:33:59 **UDP flood** 192.168.2.2, 57742->> 84.170.148.98, 14696 (from ATM1 Outbound)

11/15/2006 05:33:59 **UDP flood** 192.168.2.2, 57742->> 213.6.192.148, 13753 (from ATM1 Outbound)

11/15/2006 05:33:59 **UDP flood** 192.168.2.2, 57742->> 58.209.172.143, 21548 (from ATM1 Outbound)

11/15/2006 05:33:59 **UDP flood** 192.168.2.2, 1658->> 193.92.150.3, 53 (from ATM1 Outbound)

11/15/2006 05:33:59 **UDP flood** 192.168.2.2, 57742->> 60.188.149.208, 16785 (from ATM1 Outbound)

11/15/2006 05:33:59 **UDP flood** 220.189.223.66, 38324->> 192.168.2.2, 57742 (from ATM1 Inbound)

11/15/2006 05:33:59 **UDP flood** 192.168.2.2, 57742->> 222.37.102.17, 35402 (from ATM1 Outbound)

11/15/2006 05:33:59 **UDP flood** 192.168.2.2, 57742->> 89.165.205.100, 8844 (from ATM1 Outbound)

11/15/2006 05:33:59 **UDP flood** 192.168.2.2, 57742->> 193.93.93.71, 20625 (from ATM1 Outbound)

11/15/2006 05:33:59 **UDP flood** 192.168.2.2, 57742->> 87.78.59.61, 20377 (from ATM1 Outbound)

11/15/2006 05:33:59 **UDP flood** 192.168.2.2, 57742->> 222.69.204.59, 11775 (from ATM1 Outbound)

11/15/2006 05:33:59 **UDP flood** 192.168.2.2, 57742->> 74.139.216.108, 63182 (from ATM1 Outbound)

11/15/2006 05:33:58 **UDP flood** 192.168.2.2, 57742->> 74.118.99.46, 12762 (from ATM1 Outbound)

11/15/2006 05:33:58 **UDP flood** 192.168.2.2, 57742->> 222.245.29.94, 14342 (from ATM1 Outbound)

11/15/2006 05:33:58 **UDP flood** 192.168.2.2, 57742->> 146.115.127.60, 6278 (from ATM1 Outbound)

11/15/2006 05:33:58 **UDP flood** 192.168.2.2, 57742->> 222.89.192.114, 18156 (from ATM1 Outbound)

11/15/2006 05:33:58 **UDP flood** 192.168.2.2, 57742->> 203.135.229.17, 8916 (from ATM1 Outbound)

11/15/2006 05:33:58 **UDP flood** 192.168.2.2, 57742->> 218.66.253.30, 21650 (from ATM1 Outbound)

11/15/2006 05:33:58 **UDP flood** 192.168.2.2, 57742->> 74.111.230.43, 63224 (from ATM1 Outbound)

11/15/2006 05:33:58 **UDP flood** 192.168.2.2, 1653->> 193.92.150.3, 53 (from ATM1 Outbound)

11/15/2006 05:33:57 **UDP flood** 192.168.2.2, 57742->> 217.211.188.75, 63998 (from ATM1 Outbound)

11/15/2006 05:33:57 **UDP flood** 192.168.2.2, 57742->> 221.216.10.237, 17944 (from ATM1 Outbound)

11/15/2006 05:33:57 **UDP flood** 192.168.2.2, 57742->> 60.48.116.139, 14363 (from ATM1 Outbound)

11/15/2006 05:33:57 **UDP flood** 192.168.2.2, 57742->> 218.111.178.65, 21328 (from ATM1 Outbound)

11/15/2006 05:33:57 **UDP flood** 192.168.2.2, 57742->> 80.192.130.37, 61027 (from ATM1 Outbound)

11/15/2006 05:33:57 **UDP flood** 192.168.2.2, 57742->> 123.49.218.115, 18128 (from ATM1 Outbound)

11/15/2006 05:33:57 **UDP flood** 192.168.2.2, 57742->> 121.46.126.13, 17784 (from ATM1 Outbound)

11/15/2006 05:33:57 **UDP flood** 201.26.91.194, 13514->> 62.1.124.79, 11183 (from ATM1 Inbound)

11/15/2006 05:33:57 **UDP flood** 192.168.2.2, 1652->> 193.92.150.3, 53 (from ATM1 Outbound)

11/15/2006 05:33:56 **UDP flood** 192.168.2.2, 57742->> 71.193.77.180, 19000 (from ATM1 Outbound)

11/15/2006 05:33:56 **UDP flood** 192.168.2.2, 57742->> 88.110.72.194, 16727 (from ATM1 Outbound)

11/15/2006 05:33:56 **UDP flood** 192.168.2.2, 57742->> 220.180.214.69, 26623 (from ATM1 Outbound)

11/15/2006 05:33:56 **UDP flood** 192.168.2.2, 57742->> 60.48.219.7, 20288 (from ATM1 Outbound)

11/15/2006 05:33:56 **UDP flood** 192.168.2.2, 57742->> 196.202.13.109, 19755 (from ATM1 Outbound)

11/15/2006 05:33:56 **UDP flood** 192.168.2.2, 57742->> 203.206.23.107, 10207 (from ATM1 Outbound)

11/15/2006 05:33:56 **UDP flood** 192.168.2.2, 57742->> 218.165.251.28, 12558 (from ATM1 Outbound)

11/15/2006 05:33:56 **UDP flood** 192.168.2.2, 57742->> 68.249.205.104, 7892 (from ATM1 Outbound)

11/15/2006 05:33:56 **UDP flood** 218.163.107.221, 15060->> 192.168.2.2, 57742 (from ATM1 Inbound)

11/15/2006 05:33:56 **UDP flood** 192.168.2.2, 57742->> 218.11.10.80, 9650 (from ATM1 Outbound)

11/15/2006 05:33:56 **UDP flood** 192.168.2.2, 57742->> 221.220.154.32, 9015 (from ATM1 Outbound)

11/15/2006 05:33:56 **UDP flood** 192.168.2.2, 57742->> 60.163.100.34, 12301 (from ATM1 Outbound)

11/15/2006 05:33:56 **UDP flood** 125.232.70.99, 15016->> 192.168.2.2, 57742 (from ATM1 Inbound)

11/15/2006 05:33:55 **UDP flood** 192.168.2.2, 57742->> 124.114.66.236, 27706 (from ATM1 Outbound)

11/15/2006 05:33:55 **UDP flood** 192.168.2.2, 57742->> 59.40.71.16, 59248 (from ATM1 Outbound)

11/15/2006 05:33:55 **UDP flood** 218.64.23.91, 22604->> 192.168.2.2, 57742 (from ATM1 Inbound)

11/15/2006 05:33:55 **UDP flood** 192.168.2.2, 57742->> 71.247.6.149, 6881 (from ATM1 Outbound)

11/15/2006 05:33:55 **UDP flood** 192.168.2.2, 1651->> 193.92.150.3, 53 (from ATM1 Outbound)

11/15/2006 05:33:55 **UDP flood** 192.168.2.2, 57742->> 86.104.205.72, 9859 (from ATM1 Outbound)

11/15/2006 05:33:55 **UDP flood** 192.168.2.2, 57742->> 212.201.85.224, 6881 (from ATM1 Outbound)

11/15/2006 05:33:55 **UDP flood** 192.168.2.2, 57742->> 85.254.220.153, 42205 (from ATM1 Outbound)

11/15/2006 05:33:55 **UDP flood** 218.9.163.54, 43612->> 192.168.2.2, 57742 (from ATM1 Inbound)

11/15/2006 05:33:54 **UDP flood** 192.168.2.2, 57742->> 58.50.173.184, 17156 (from ATM1 Outbound)

11/15/2006 05:33:54 **UDP flood** 192.168.2.2, 57742->> 209.160.32.234, 42913 (from ATM1 Outbound)

11/15/2006 05:33:54 **UDP flood** 201.253.181.140, 25192->> 192.168.2.2, 57742 (from ATM1 Inbound)

11/15/2006 05:33:54 **UDP flood** 192.168.2.2, 57742->> 82.73.19.123, 17752 (from ATM1 Outbound)

11/15/2006 05:33:54 **UDP flood** 192.168.2.2, 57742->> 60.50.206.117, 53465 (from ATM1 Outbound)

11/15/2006 05:33:53 **UDP flood** 192.168.2.2, 57742->> 201.42.110.10, 50579 (from ATM1 Outbound)

11/15/2006 05:33:53 **UDP flood** 192.168.2.2, 57742->> 84.175.255.246, 27722 (from ATM1 Outbound)

11/15/2006 05:33:53 **UDP flood** 192.168.2.2, 57742->> 202.178.140.206, 10804 (from ATM1 Outbound)

11/15/2006 05:33:53 **UDP flood** 192.168.2.2, 57742->> 85.182.74.78, 33444 (from ATM1 Outbound)

11/15/2006 05:33:52 **UDP flood** 192.168.2.2, 57742->> 59.176.97.51, 34932 (from ATM1 Outbound)

11/15/2006 05:33:52 **UDP flood** 192.168.2.2, 57742->> 210.213.156.178, 25965 (from ATM1 Outbound)

11/15/2006 05:33:52 **UDP flood** 192.168.2.2, 57742->> 203.210.254.236, 10989 (from ATM1 Outbound)

11/15/2006 05:33:51 **UDP flood** 192.168.2.2, 57742->> 220.167.42.187, 27687 (from ATM1 Outbound)

11/15/2006 05:33:51 **UDP flood** 192.168.2.2, 57742->> 202.22.132.72, 63095 (from ATM1 Outbound)

11/15/2006 05:33:51 **UDP flood** 192.168.2.2, 57742->> 88.148.66.250, 20089 (from ATM1 Outbound)

11/15/2006 05:33:51 **UDP flood** 192.168.2.2, 57742->> 72.40.1.236, 62773 (from ATM1 Outbound)

11/15/2006 05:33:51 **UDP flood** 192.168.2.2, 57742->> 125.90.250.169, 21515 (from ATM1 Outbound)

11/15/2006 05:33:51 **UDP flood** 192.168.2.2, 57742->> 82.103.118.203, 12811 (from ATM1 Outbound)

11/15/2006 05:33:51 **UDP flood** 192.168.2.2, 57742->> 87.69.232.184, 20660 (from ATM1 Outbound)

11/15/2006 05:33:51 **UDP flood** 192.168.2.2, 57742->> 91.89.49.183, 6881 (from ATM1 Outbound)

11/15/2006 05:33:51 **UDP flood** 192.168.2.2, 57742->> 87.207.239.241, 24959 (from ATM1 Outbound)

11/15/2006 05:33:51 **UDP flood** 192.168.2.2, 57742->> 61.153.212.172, 7001 (from ATM1 Outbound)

11/15/2006 05:33:51 **UDP flood** 192.168.2.2, 57742->> 217.97.155.168, 18330 (from ATM1 Outbound)

11/15/2006 05:33:50 **UDP flood** 192.168.2.2, 57742->> 222.210.242.163, 18973 (from ATM1 Outbound)

11/15/2006 05:33:50 **UDP flood** 192.168.2.2, 57742->> 58.217.198.13, 23478 (from ATM1 Outbound)

11/15/2006 05:33:50 **UDP flood** 192.168.2.2, 57742->> 221.226.145.164, 36417 (from ATM1 Outbound)

11/15/2006 05:33:50 **UDP flood** 192.168.2.2, 57742->> 69.174.178.58, 15776 (from ATM1 Outbound)

11/15/2006 05:33:50 **UDP flood** 192.168.2.2, 57742->> 125.33.121.4, 20865 (from ATM1 Outbound)

 

 

exei kaneis idea an einai sumh8ismena intrusion..

kai an mporw na kanw kati giauto..

epishs uparxei periptwsh na upoboh8oun sto gegonos oti sernetai to internet mou 2mbs forthnet autes oi epi8eseis...

 

epishs to zomealarm se 3 ebdomades exei katagrapsei 68000 peripou intrusions (oles blocked)

 

kamia idea kaneis..

Δημοσ.

Επειδή συγκεκριμένα χτυπάει το port 57742, μήπως έχεις κάτι που ακούει σε αυτό το port και δεν έχεις ενεργοποιημένο port forwarding?

Αρχειοθετημένο

Αυτό το θέμα έχει αρχειοθετηθεί και είναι κλειστό για περαιτέρω απαντήσεις.

  • Δημιουργία νέου...