Advertisement
Guest User

Untitled

a guest
Oct 22nd, 2012
114
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 9.94 KB | None | 0 0
  1. 10/22-00:37:17.230995 x.170.99.178:3874 -> 93.158.134.3:80
  2. TCP TTL:128 TOS:0x0 ID:44796 IpLen:20 DgmLen:48 DF
  3. ******S* Seq: 0x8A208200 Ack: 0x0 Win: 0xFC00 TcpLen: 28
  4. TCP Options (4) => MSS: 1260 NOP NOP SackOK
  5.  
  6. =+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+
  7.  
  8. 10/22-00:37:17.241533 x.170.99.178:3874 -> 93.158.134.3:80
  9. TCP TTL:128 TOS:0x0 ID:44799 IpLen:20 DgmLen:40 DF
  10. ***A**** Seq: 0x8A208201 Ack: 0x1305E9B6 Win: 0xFC00 TcpLen: 20
  11.  
  12. =+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+
  13.  
  14. 10/22-00:37:17.242152 x.170.99.178:3874 -> 93.158.134.3:80
  15. TCP TTL:128 TOS:0x0 ID:44800 IpLen:20 DgmLen:396 DF
  16. ***AP*** Seq: 0x8A208201 Ack: 0x1305E9B6 Win: 0xFC00 TcpLen: 20
  17. 47 45 54 20 2F 20 48 54 54 50 2F 31 2E 31 0D 0A GET / HTTP/1.1..
  18. 48 6F 73 74 3A 20 79 61 2E 72 75 0D 0A 55 73 65 Host: ya.ru..Use
  19. 72 2D 41 67 65 6E 74 3A 20 4D 6F 7A 69 6C 6C 61 r-Agent: Mozilla
  20. 2F 35 2E 30 20 28 57 69 6E 64 6F 77 73 20 4E 54 /5.0 (Windows NT
  21. 20 35 2E 31 3B 20 72 76 3A 31 36 2E 30 29 20 47 5.1; rv:16.0) G
  22. 65 63 6B 6F 2F 32 30 31 30 30 31 30 31 20 46 69 ecko/20100101 Fi
  23. 72 65 66 6F 78 2F 31 36 2E 30 0D 0A 41 63 63 65 refox/16.0..Acce
  24. 70 74 3A 20 74 65 78 74 2F 68 74 6D 6C 2C 61 70 pt: text/html,ap
  25. 70 6C 69 63 61 74 69 6F 6E 2F 78 68 74 6D 6C 2B plication/xhtml+
  26. 78 6D 6C 2C 61 70 70 6C 69 63 61 74 69 6F 6E 2F xml,application/
  27. 78 6D 6C 3B 71 3D 30 2E 39 2C 2A 2F 2A 3B 71 3D xml;q=0.9,*/*;q=
  28. 30 2E 38 0D 0A 41 63 63 65 70 74 2D 4C 61 6E 67 0.8..Accept-Lang
  29. 75 61 67 65 3A 20 72 75 2D 52 55 2C 72 75 3B 71 uage: ru-RU,ru;q
  30. 3D 30 2E 38 2C 65 6E 2D 55 53 3B 71 3D 30 2E 35 =0.8,en-US;q=0.5
  31. 2C 65 6E 3B 71 3D 30 2E 33 0D 0A 41 63 63 65 70 ,en;q=0.3..Accep
  32. 74 2D 45 6E 63 6F 64 69 6E 67 3A 20 67 7A 69 70 t-Encoding: gzip
  33. 2C 20 64 65 66 6C 61 74 65 0D 0A 43 6F 6E 6E 65 , deflate..Conne
  34. 63 74 69 6F 6E 3A 20 6B 65 65 70 2D 61 6C 69 76 ction: keep-aliv
  35. 65 0D 0A 52 65 66 65 72 65 72 3A 20 68 74 74 70 e..Referer: http
  36. 3A 2F 2F 79 61 2E 72 75 2F 0D 0A 43 6F 6F 6B 69 ://ya.ru/..Cooki
  37. 65 3A 20 79 61 6E 64 65 78 75 69 64 3D 39 32 34 e: yandexuid=924
  38. 36 31 32 35 39 32 31 33 35 30 38 39 30 39 36 38 6125921350890968
  39. 0D 0A 0D 0A ....
  40.  
  41. =+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+
  42.  
  43. 10/22-00:37:17.266361 x.170.99.178:3874 -> 93.158.134.3:80
  44. TCP TTL:128 TOS:0x0 ID:44801 IpLen:20 DgmLen:40 DF
  45. ***A**** Seq: 0x8A208365 Ack: 0x1305F38E Win: 0xFC00 TcpLen: 20
  46.  
  47. =+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+
  48.  
  49. 10/22-00:37:17.266476 x.170.99.178:3874 -> 93.158.134.3:80
  50. TCP TTL:128 TOS:0x0 ID:44802 IpLen:20 DgmLen:40 DF
  51. ***A**** Seq: 0x8A208365 Ack: 0x1305F566 Win: 0xFA29 TcpLen: 20
  52.  
  53. =+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+
  54.  
  55. 10/22-00:37:17.387453 x.170.99.178:3874 -> 93.158.134.3:80
  56. TCP TTL:128 TOS:0x0 ID:44848 IpLen:20 DgmLen:40 DF
  57. ***A***F Seq: 0x8A208365 Ack: 0x1305F566 Win: 0xFA29 TcpLen: 20
  58.  
  59. =+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+
  60.  
  61. 10/22-00:37:19.859682 x.170.99.178:3874 -> 93.158.134.3:80
  62. TCP TTL:128 TOS:0x0 ID:45139 IpLen:20 DgmLen:40 DF
  63. ***A***F Seq: 0x8A208365 Ack: 0x1305F566 Win: 0xFA29 TcpLen: 20
  64.  
  65. =+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+
  66.  
  67. 10/22-00:37:20.269915 x.170.99.178:3874 -> 93.158.134.3:80
  68. TCP TTL:128 TOS:0x0 ID:45168 IpLen:20 DgmLen:40 DF
  69. ***A**** Seq: 0x8A208366 Ack: 0x1305F566 Win: 0xFA29 TcpLen: 20
  70.  
  71. =+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+
  72.  
  73. ^CCan't acquire (-1) - ipfw_daq_acquire: can't select divert socket (Interrupted system call)
  74. !
  75. ===============================================================================
  76. Packet I/O Totals:
  77. Received: 8
  78. Analyzed: 8 (100.000%)
  79. Dropped: 0 ( 0.000%)
  80. Filtered: 0 ( 0.000%)
  81. Outstanding: 0 ( 0.000%)
  82. Injected: 3
  83. ===============================================================================
  84. Breakdown by protocol (includes rebuilt packets):
  85. Eth: 0 ( 0.000%)
  86. VLAN: 0 ( 0.000%)
  87. IP4: 8 (100.000%)
  88. Frag: 0 ( 0.000%)
  89. ICMP: 0 ( 0.000%)
  90. UDP: 0 ( 0.000%)
  91. TCP: 8 (100.000%)
  92. IP6: 0 ( 0.000%)
  93. IP6 Ext: 0 ( 0.000%)
  94. IP6 Opts: 0 ( 0.000%)
  95. Frag6: 0 ( 0.000%)
  96. ICMP6: 0 ( 0.000%)
  97. UDP6: 0 ( 0.000%)
  98. TCP6: 0 ( 0.000%)
  99. Teredo: 0 ( 0.000%)
  100. ICMP-IP: 0 ( 0.000%)
  101. EAPOL: 0 ( 0.000%)
  102. IP4/IP4: 0 ( 0.000%)
  103. IP4/IP6: 0 ( 0.000%)
  104. IP6/IP4: 0 ( 0.000%)
  105. IP6/IP6: 0 ( 0.000%)
  106. GRE: 0 ( 0.000%)
  107. GRE Eth: 0 ( 0.000%)
  108. GRE VLAN: 0 ( 0.000%)
  109. GRE IP4: 0 ( 0.000%)
  110. GRE IP6: 0 ( 0.000%)
  111. GRE IP6 Ext: 0 ( 0.000%)
  112. GRE PPTP: 0 ( 0.000%)
  113. GRE ARP: 0 ( 0.000%)
  114. GRE IPX: 0 ( 0.000%)
  115. GRE Loop: 0 ( 0.000%)
  116. MPLS: 0 ( 0.000%)
  117. ARP: 0 ( 0.000%)
  118. IPX: 0 ( 0.000%)
  119. Eth Loop: 0 ( 0.000%)
  120. Eth Disc: 0 ( 0.000%)
  121. IP4 Disc: 0 ( 0.000%)
  122. IP6 Disc: 0 ( 0.000%)
  123. TCP Disc: 0 ( 0.000%)
  124. UDP Disc: 0 ( 0.000%)
  125. ICMP Disc: 0 ( 0.000%)
  126. All Discard: 0 ( 0.000%)
  127. Other: 0 ( 0.000%)
  128. Bad Chk Sum: 0 ( 0.000%)
  129. Bad TTL: 0 ( 0.000%)
  130. S5 G 1: 0 ( 0.000%)
  131. S5 G 2: 0 ( 0.000%)
  132. Total: 8
  133. ===============================================================================
  134. Action Stats:
  135. Alerts: 2 ( 25.000%)
  136. Logged: 2 ( 25.000%)
  137. Passed: 0 ( 0.000%)
  138. Limits:
  139. Match: 0
  140. Queue: 0
  141. Log: 0
  142. Event: 0
  143. Alert: 0
  144. Verdicts:
  145. Allow: 2 ( 25.000%)
  146. Block: 5 ( 62.500%)
  147. Replace: 0 ( 0.000%)
  148. Whitelist: 0 ( 0.000%)
  149. Blacklist: 1 ( 12.500%)
  150. Ignore: 0 ( 0.000%)
  151. ===============================================================================
  152. Normalizer statistics:
  153. ip4::trim: 0
  154. ip4::tos: 0
  155. ip4::df: 0
  156. ip4::rf: 0
  157. ip4::ttl: 0
  158. ip4::opts: 0
  159. icmp4::echo: 0
  160. tcp::syn_opt: 0
  161. tcp::ts_ecr: 0
  162. tcp::opt: 0
  163. tcp::pad: 0
  164. tcp::rsv: 0
  165. tcp::ecn_pkt: 0
  166. tcp::ns: 0
  167. tcp::urg: 0
  168. tcp::urp: 0
  169. tcp::trim: 0
  170. tcp::ecn_ssn: 0
  171. tcp::ts_nop: 0
  172. tcp::ips_data: 0
  173. tcp::block: 0
  174. ===============================================================================
  175. Frag3 statistics:
  176. Total Fragments: 0
  177. Frags Reassembled: 0
  178. Discards: 0
  179. Memory Faults: 0
  180. Timeouts: 0
  181. Overlaps: 0
  182. Anomalies: 0
  183. Alerts: 0
  184. Drops: 0
  185. FragTrackers Added: 0
  186. FragTrackers Dumped: 0
  187. FragTrackers Auto Freed: 0
  188. Frag Nodes Inserted: 0
  189. Frag Nodes Deleted: 0
  190. ===============================================================================
  191. Stream5 statistics:
  192. Total sessions: 1
  193. TCP sessions: 1
  194. UDP sessions: 0
  195. ICMP sessions: 0
  196. IP sessions: 0
  197. TCP Prunes: 0
  198. UDP Prunes: 0
  199. ICMP Prunes: 0
  200. IP Prunes: 0
  201. TCP StreamTrackers Created: 1
  202. TCP StreamTrackers Deleted: 1
  203. TCP Timeouts: 0
  204. TCP Overlaps: 0
  205. TCP Segments Queued: 0
  206. TCP Segments Released: 0
  207. TCP Rebuilt Packets: 0
  208. TCP Segments Used: 0
  209. TCP Discards: 2
  210. TCP Gaps: 0
  211. UDP Sessions Created: 0
  212. UDP Sessions Deleted: 0
  213. UDP Timeouts: 0
  214. UDP Discards: 0
  215. Events: 0
  216. Internal Events: 0
  217. TCP Port Filter
  218. Dropped: 0
  219. Inspected: 0
  220. Tracked: 3
  221. UDP Port Filter
  222. Dropped: 0
  223. Inspected: 0
  224. Tracked: 0
  225. ===============================================================================
  226. HTTP Inspect - encodings (Note: stream-reassembled packets included):
  227. POST methods: 0
  228. GET methods: 0
  229. HTTP Request Headers extracted: 0
  230. HTTP Request Cookies extracted: 0
  231. Post parameters extracted: 0
  232. HTTP response Headers extracted: 0
  233. HTTP Response Cookies extracted: 0
  234. Unicode: 0
  235. Double unicode: 0
  236. Non-ASCII representable: 0
  237. Directory traversals: 0
  238. Extra slashes ("//"): 0
  239. Self-referencing paths ("./"): 0
  240. HTTP Response Gzip packets extracted: 0
  241. Gzip Compressed Data Processed: n/a
  242. Gzip Decompressed Data Processed: n/a
  243. Total packets processed: 1
  244. ===============================================================================
  245. SMTP Preprocessor Statistics
  246. Total sessions : 0
  247. Max concurrent sessions : 0
  248. ===============================================================================
  249. dcerpc2 Preprocessor Statistics
  250. Total sessions: 0
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement