Advertisement
Guest User

Untitled

a guest
Jan 19th, 2011
632
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 9.63 KB | None | 0 0
  1. root@bt:~# tcpdump -i wlan1 -vv
  2. tcpdump: listening on wlan1, link-type EN10MB (Ethernet), capture size 96 bytes
  3. 22:39:50.452317 arp who-has 192.168.1.103 tell 192.168.1.1
  4. 22:39:50.452333 arp reply 192.168.1.103 is-at 00:c0:ca:47:1b:c9 (oui Unknown)
  5. 22:39:50.453110 IP (tos 0x0, ttl 64, id 44249, offset 0, flags [DF], proto UDP (17), length 72) 192.168.1.103.34060 > ns-pt-vip.012.net.il.domain: [udp sum ok] 51869+ PTR? 103.1.168.192.in-addr.arpa. (44)
  6. 22:39:50.471189 IP (tos 0x80, ttl 55, id 9521, offset 0, flags [none], proto UDP (17), length 128) ns-pt-vip.012.net.il.domain > 192.168.1.103.34060: 51869 NXDomain* q: PTR? 103.1.168.192.in-addr.arpa. 0/1/0 ns: 168.192.in-addr.arpa. (100)
  7. 22:39:50.471509 IP (tos 0x0, ttl 64, id 44254, offset 0, flags [DF], proto UDP (17), length 70) 192.168.1.103.36304 > ns-pt-vip.012.net.il.domain: [udp sum ok] 2166+ PTR? 1.1.168.192.in-addr.arpa. (42)
  8. 22:39:50.491548 IP (tos 0x80, ttl 55, id 24189, offset 0, flags [none], proto UDP (17), length 126) ns-pt-vip.012.net.il.domain > 192.168.1.103.36304: 2166 NXDomain* q: PTR? 1.1.168.192.in-addr.arpa. 0/1/0 ns: 168.192.in-addr.arpa. (98)
  9. 22:39:50.491797 IP (tos 0x0, ttl 64, id 44260, offset 0, flags [DF], proto UDP (17), length 72) 192.168.1.103.52558 > ns-pt-vip.012.net.il.domain: [udp sum ok] 34157+ PTR? 100.52.179.80.in-addr.arpa. (44)
  10. 22:39:50.515558 IP (tos 0x80, ttl 55, id 24190, offset 0, flags [none], proto UDP (17), length 106) ns-pt-vip.012.net.il.domain > 192.168.1.103.52558: 34157 q: PTR? 100.52.179.80.in-addr.arpa. 1/0/0 100.52.179.80.in-addr.arpa. (78)
  11. 22:40:05.784142 arp reply 192.168.1.1 is-at 00:1d:7e:e3:3a:9a (oui Unknown)
  12. 22:40:05.805638 IP (tos 0x0, ttl 58, id 37626, offset 0, flags [none], proto UDP (17), length 158) ns-med1-vip.012.net.il.domain > 192.168.1.101.53125: 41118 q: A? www.google.co.il. 5/0/0 www.google.co.il. CNAME[|domain]
  13. 22:40:05.805819 IP (tos 0x0, ttl 64, id 48855, offset 0, flags [DF], proto UDP (17), length 72) 192.168.1.103.37857 > ns-pt-vip.012.net.il.domain: [udp sum ok] 5128+ PTR? 101.1.168.192.in-addr.arpa. (44)
  14. 22:40:05.815873 IP (tos 0x80, ttl 55, id 9522, offset 0, flags [none], proto UDP (17), length 128) ns-pt-vip.012.net.il.domain > 192.168.1.103.37857: 5128 NXDomain* q: PTR? 101.1.168.192.in-addr.arpa. 0/1/0 ns: 168.192.in-addr.arpa. (100)
  15. 22:40:05.815996 IP (tos 0x0, ttl 64, id 48858, offset 0, flags [DF], proto UDP (17), length 72) 192.168.1.103.60497 > ns-pt-vip.012.net.il.domain: [udp sum ok] 28911+ PTR? 100.55.179.80.in-addr.arpa. (44)
  16. 22:40:05.826512 arp who-has 192.168.1.1 tell 192.168.1.101
  17. 22:40:05.828257 IP (tos 0x80, ttl 55, id 50176, offset 0, flags [none], proto UDP (17), length 108) ns-pt-vip.012.net.il.domain > 192.168.1.103.60497: 28911 q: PTR? 100.55.179.80.in-addr.arpa. 1/0/0 100.55.179.80.in-addr.arpa. (80)
  18. 22:40:05.901154 IP (tos 0x80, ttl 45, id 7387, offset 0, flags [none], proto TCP (6), length 48) ew-in-f99.1e100.net.www > 192.168.1.101.50746: S, cksum 0x8eb9 (correct), 4279796895:4279796895(0) ack 4138156867 win 5720 <mss 1430,nop,nop,sackOK>
  19. 22:40:05.901292 IP (tos 0x0, ttl 64, id 48883, offset 0, flags [DF], proto UDP (17), length 71) 192.168.1.103.56021 > ns-pt-vip.012.net.il.domain: [udp sum ok] 17952+ PTR? 99.77.125.74.in-addr.arpa. (43)
  20. 22:40:05.912509 IP (tos 0x80, ttl 55, id 9523, offset 0, flags [none], proto UDP (17), length 104) ns-pt-vip.012.net.il.domain > 192.168.1.103.56021: 17952 q: PTR? 99.77.125.74.in-addr.arpa. 1/0/0 99.77.125.74.in-addr.arpa. (76)
  21. 22:40:05.998020 IP (tos 0x80, ttl 45, id 7388, offset 0, flags [none], proto TCP (6), length 40) ew-in-f99.1e100.net.www > 192.168.1.101.50746: ., cksum 0xb227 (correct), 1:1(0) ack 1011 win 7070
  22. 22:40:06.011129 IP (tos 0x80, ttl 45, id 7389, offset 0, flags [none], proto TCP (6), length 1327) ew-in-f99.1e100.net.www > 192.168.1.101.50746: P 1:1288(1287) ack 1011 win 7070
  23. 22:40:06.078768 IP (tos 0x0, ttl 58, id 37628, offset 0, flags [none], proto UDP (17), length 167) ns-med1-vip.012.net.il.domain > 192.168.1.101.64395: 42480 q: A? groups.google.co.il. 5/0/0 groups.google.co.il.[|domain]
  24. 22:40:06.120158 IP (tos 0x80, ttl 45, id 7390, offset 0, flags [none], proto TCP (6), length 1470) ew-in-f99.1e100.net.www > 192.168.1.101.50746: . 1288:2718(1430) ack 1011 win 7070
  25. 22:40:06.121502 IP (tos 0x80, ttl 45, id 7392, offset 0, flags [none], proto TCP (6), length 1276) ew-in-f99.1e100.net.www > 192.168.1.101.50746: P 4148:5384(1236) ack 1011 win 7070
  26. 22:40:06.122880 IP (tos 0x80, ttl 45, id 7393, offset 0, flags [none], proto TCP (6), length 1470) ew-in-f99.1e100.net.www > 192.168.1.101.50746: . 5384:6814(1430) ack 1011 win 7070
  27. 22:40:06.123906 IP (tos 0x80, ttl 45, id 7394, offset 0, flags [none], proto TCP (6), length 1470) ew-in-f99.1e100.net.www > 192.168.1.101.50746: . 6814:8244(1430) ack 1011 win 7070
  28. 22:40:06.124761 IP (tos 0x80, ttl 45, id 7395, offset 0, flags [none], proto TCP (6), length 1276) ew-in-f99.1e100.net.www > 192.168.1.101.50746: P 8244:9480(1236) ack 1011 win 7070
  29. 22:40:06.127161 IP (tos 0x80, ttl 45, id 7397, offset 0, flags [none], proto TCP (6), length 1470) ew-in-f99.1e100.net.www > 192.168.1.101.50746: . 9550:10980(1430) ack 1011 win 7070
  30. 22:40:06.321793 IP (tos 0x80, ttl 45, id 7408, offset 0, flags [none], proto TCP (6), length 1470) ew-in-f99.1e100.net.www > 192.168.1.101.50746: . 25280:26710(1430) ack 1011 win 7070
  31. 22:40:06.367302 IP (tos 0x0, ttl 58, id 14295, offset 0, flags [none], proto UDP (17), length 149) ns-med1-vip.012.net.il.domain > 192.168.1.101.60425: 44529 q: A? clients1.google.co.il. 4/0/0 clients1.google.co.il.[|domain]
  32. 22:40:06.445530 IP (tos 0x80, ttl 45, id 7410, offset 0, flags [none], proto TCP (6), length 255) ew-in-f99.1e100.net.www > 192.168.1.101.50746: P 27238:27453(215) ack 1981 win 9090
  33. 22:40:06.455406 IP (tos 0x80, ttl 44, id 24693, offset 0, flags [none], proto TCP (6), length 48) ew-in-f102.1e100.net.www > 192.168.1.101.50747: S, cksum 0x21c2 (correct), 1855008905:1855008905(0) ack 1168131548 win 5720 <mss 1430,nop,nop,sackOK>
  34. 22:40:06.455580 IP (tos 0x0, ttl 64, id 49050, offset 0, flags [DF], proto UDP (17), length 72) 192.168.1.103.53569 > ns-pt-vip.012.net.il.domain: [udp sum ok] 7899+ PTR? 102.77.125.74.in-addr.arpa. (44)
  35. 22:40:06.467287 IP (tos 0x80, ttl 55, id 50177, offset 0, flags [none], proto UDP (17), length 106) ns-pt-vip.012.net.il.domain > 192.168.1.103.53569: 7899 q: PTR? 102.77.125.74.in-addr.arpa. 1/0/0 102.77.125.74.in-addr.arpa. (78)
  36. 22:40:06.830422 IP (tos 0x80, ttl 44, id 24696, offset 0, flags [none], proto TCP (6), length 165) ew-in-f102.1e100.net.www > 192.168.1.101.50747: P 1:126(125) ack 857 win 6848
  37. 22:40:14.634102 IP6 (hlim 1, next-header UDP (17) payload length: 68) fe80::21f:ff:feca:4fe5.546 > ff02::1:2.547: dhcp6 solicit (xid=c58d24 (elapsed time 0) (client ID hwaddr type 1 001f00ca4fe5)[|dhcp6ext])
  38. 22:40:14.634312 IP (tos 0x0, ttl 64, id 51503, offset 0, flags [DF], proto UDP (17), length 118) 192.168.1.103.34845 > ns-pt-vip.012.net.il.domain: 40536+[|domain]
  39. 22:40:14.658212 IP (tos 0x80, ttl 55, id 9524, offset 0, flags [none], proto UDP (17), length 179) ns-pt-vip.012.net.il.domain > 192.168.1.103.34845: 40536 NXDomain q:[|domain]
  40. 22:40:14.658378 IP (tos 0x0, ttl 64, id 51510, offset 0, flags [DF], proto UDP (17), length 118) 192.168.1.103.45465 > ns-pt-vip.012.net.il.domain: 9479+[|domain]
  41. 22:40:14.673712 IP (tos 0x80, ttl 55, id 24191, offset 0, flags [none], proto UDP (17), length 153) ns-pt-vip.012.net.il.domain > 192.168.1.103.45465: 9479 NXDomain* q:[|domain]
  42. 22:40:15.800653 arp who-has 192.168.1.101 tell 192.168.1.1
  43. 22:40:18.627253 IP6 (hlim 1, next-header UDP (17) payload length: 68) fe80::21f:ff:feca:4fe5.546 > ff02::1:2.547: dhcp6 solicit (xid=c58d24 (elapsed time 300) (client ID hwaddr type 1 001f00ca4fe5)[|dhcp6ext])
  44. 22:40:21.905489 IP (tos 0x0, ttl 4, id 0, offset 0, flags [DF], proto UDP (17), length 304) 192.168.1.1.1900 > 239.255.255.250.1900: UDP, length 276
  45. 22:40:21.905678 IP (tos 0x0, ttl 64, id 53685, offset 0, flags [DF], proto UDP (17), length 74) 192.168.1.103.55277 > ns-pt-vip.012.net.il.domain: [udp sum ok] 34600+ PTR? 250.255.255.239.in-addr.arpa. (46)
  46. 22:40:21.908485 IP (tos 0x0, ttl 4, id 0, offset 0, flags [DF], proto UDP (17), length 299) 192.168.1.1.1900 > 239.255.255.250.1900: UDP, length 271
  47. 22:40:21.912987 IP (tos 0x0, ttl 4, id 0, offset 0, flags [DF], proto UDP (17), length 376) 192.168.1.1.1900 > 239.255.255.250.1900: UDP, length 348
  48. 22:40:21.916489 IP (tos 0x0, ttl 4, id 0, offset 0, flags [DF], proto UDP (17), length 368) 192.168.1.1.1900 > 239.255.255.250.1900: UDP, length 340
  49. 22:40:21.919484 IP (tos 0x0, ttl 4, id 0, offset 0, flags [DF], proto UDP (17), length 299) 192.168.1.1.1900 > 239.255.255.250.1900: UDP, length 271
  50. 22:40:21.923375 IP (tos 0x0, ttl 4, id 0, offset 0, flags [DF], proto UDP (17), length 352) 192.168.1.1.1900 > 239.255.255.250.1900: UDP, length 324
  51. 22:40:21.926985 IP (tos 0x0, ttl 4, id 0, offset 0, flags [DF], proto UDP (17), length 384) 192.168.1.1.1900 > 239.255.255.250.1900: UDP, length 356
  52. 22:40:21.930484 IP (tos 0x0, ttl 4, id 0, offset 0, flags [DF], proto UDP (17), length 299) 192.168.1.1.1900 > 239.255.255.250.1900: UDP, length 271
  53. 22:40:21.934253 IP (tos 0x0, ttl 4, id 0, offset 0, flags [DF], proto UDP (17), length 372) 192.168.1.1.1900 > 239.255.255.250.1900: UDP, length 344
  54. 22:40:21.937859 IP (tos 0x0, ttl 4, id 0, offset 0, flags [DF], proto UDP (17), length 366) 192.168.1.1.1900 > 239.255.255.250.1900: UDP, length 338
  55. 22:40:21.942503 IP (tos 0x80, ttl 55, id 24192, offset 0, flags [none], proto UDP (17), length 131) ns-pt-vip.012.net.il.domain > 192.168.1.103.55277: 34600 NXDomain q: PTR? 250.255.255.239.in-addr.arpa. 0/1/0 ns: 239.in-addr.arpa. (103)
  56. ^C
  57. 53 packets captured
  58. 53 packets received by filter
  59. 0 packets dropped by kernel
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement