Advertisement
Guest User

Untitled

a guest
Oct 18th, 2011
242
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 12.08 KB | None | 0 0
  1. Oct 18 10:21:07 192.168.2.2 pppd[400]: rcvd [LCP EchoRep id=0xd5 magic=0x1e7ccb71]
  2. Oct 18 10:21:22 192.168.2.2 pppd[400]: rcvd [LCP EchoReq id=0x6a magic=0x1e7ccb71]
  3. Oct 18 10:21:22 192.168.2.2 pppd[400]: sent [LCP EchoRep id=0x6a magic=0x44387c2c]
  4. Oct 18 10:21:37 192.168.2.2 pppd[400]: sent [LCP EchoReq id=0xd6 magic=0x44387c2c]
  5. Oct 18 10:21:37 192.168.2.2 pppd[400]: rcvd [LCP EchoRep id=0xd6 magic=0x1e7ccb71]
  6. Oct 18 10:21:54 192.168.2.2 dnsprobe[577]: dns query failed
  7. Oct 18 10:21:56 192.168.2.2 dnsprobe[577]: dns query failed
  8. Oct 18 10:21:58 192.168.2.2 dnsprobe[577]: dns query failed
  9. Oct 18 10:21:58 192.168.2.2 dnsprobe[577]: Primary DNS server Is Down... Switching To Secondary DNS server
  10. Oct 18 10:22:07 192.168.2.2 pppd[400]: sent [LCP EchoReq id=0xd7 magic=0x44387c2c]
  11. Oct 18 10:22:14 192.168.2.2 pppd[400]: rcvd [LCP EchoRep id=0xd7 magic=0x1e7ccb71]
  12. Oct 18 10:22:22 192.168.2.2 pppd[400]: rcvd [LCP EchoReq id=0x6b magic=0x1e7ccb71]
  13. Oct 18 10:22:22 192.168.2.2 pppd[400]: sent [LCP EchoRep id=0x6b magic=0x44387c2c]
  14. Oct 18 10:22:30 192.168.2.2 dnsprobe[577]: Switching Back To Primary DNS server
  15. Oct 18 10:22:37 192.168.2.2 pppd[400]: sent [LCP EchoReq id=0xd8 magic=0x44387c2c]
  16. Oct 18 10:22:37 192.168.2.2 pppd[400]: rcvd [LCP EchoRep id=0xd8 magic=0x1e7ccb71]
  17. Oct 18 10:23:07 192.168.2.2 pppd[400]: sent [LCP EchoReq id=0xd9 magic=0x44387c2c]
  18.  
  19. Oct 18 10:27:37 192.168.2.2 pppd[400]: rcvd [LCP EchoRep id=0xe2 magic=0x1e7ccb71]
  20. Oct 18 10:27:51 192.168.2.2 kernel: Intrusion -> IN=ppp_0_35_1 OUT= MAC= SRC=xxx.xxx.xxx.xxx DST=xxx.xxx.xxx.xxx LEN=48 TOS=0x00 PREC=0x00 TTL=125 ID=32988 DF PROTO=TCP SPT=17748 DPT=445 WINDOW=65535 RES=0x00 SYN URGP=0
  21. Oct 18 10:28:07 192.168.2.2 pppd[400]: sent [LCP EchoReq id=0xe3 magic=0x44387c2c]
  22.  
  23. Oct 18 10:48:55 192.168.2.2 -- MARK --
  24.  
  25. Oct 18 16:41:12 192.168.2.2 pppd[400]: sent [LCP EchoReq id=0xbe magic=0xc3343a6c]
  26. Oct 18 16:41:12 192.168.2.2 pppd[400]: rcvd [LCP EchoRep id=0xbe magic=0x7255fe58]
  27. Oct 18 16:41:31 192.168.2.2 kernel: ADSL link down
  28. Oct 18 16:41:37 192.168.2.2 pppd[400]: Terminating connection due to link down.
  29. Oct 18 16:41:37 192.168.2.2 pppd[400]: Clear IP addresses. Connection DOWN.
  30. Oct 18 16:41:37 192.168.2.2 pppd[400]: Clear IP addresses. PPP connection DOWN.
  31. Oct 18 16:41:37 192.168.2.2 pppd[400]: Couldn't increase MTU to 1500.
  32. Oct 18 16:41:37 192.168.2.2 pppd[400]: Couldn't increase MRU to 1500
  33. Oct 18 16:41:37 192.168.2.2 pppd[400]: sent [LCP TermReq id=0x66 "Link down"]
  34. Oct 18 16:41:40 192.168.2.2 pppd[400]: sent [LCP TermReq id=0x67 "Link down"]
  35. Oct 18 16:41:43 192.168.2.2 pppd[400]: Connection terminated.
  36. Oct 18 16:41:43 192.168.2.2 pppd[400]: Connect time 95.5 minutes.
  37. Oct 18 16:41:43 192.168.2.2 pppd[400]: Sent 1191354 bytes, received 3504166 bytes.
  38. Oct 18 16:41:43 192.168.2.2 pppd[400]: Doing disconnect
  39. Oct 18 16:41:43 192.168.2.2 pppd[400]: Sent packet: Ether addr: xx:xx:xx:xx:xx (PPPOE Discovery) PPPoE hdr: ver=0x1 type=0x1 code=0xa7 sid=0x41f8 length=0x000c (PADT) PPPoE tag: type=0103 length=0004 (Host Uniq) data (bin): xx xx xx xx PPPoE tag: type=0101 length=0000 (Service name)
  40. Oct 18 16:41:46 192.168.2.2 kernel: ADSL G.994 training
  41. Oct 18 16:41:52 192.168.2.2 kernel: ADSL G.992 started
  42. Oct 18 16:41:53 192.168.2.2 dnsprobe[577]: dns query failed
  43. Oct 18 16:41:55 192.168.2.2 dnsprobe[577]: dns query failed
  44. Oct 18 16:41:56 192.168.2.2 kernel: ADSL G.992 channel analysis
  45. Oct 18 16:41:57 192.168.2.2 dnsprobe[577]: dns query failed
  46. Oct 18 16:41:57 192.168.2.2 dnsprobe[577]: Primary DNS server Is Down... Switching To Secondary DNS server
  47. Oct 18 16:42:04 192.168.2.2 kernel: ADSL link down
  48. Oct 18 16:42:09 192.168.2.2 kernel: ADSL G.994 training
  49. Oct 18 16:42:16 192.168.2.2 kernel: ADSL G.992 started
  50. Oct 18 16:42:21 192.168.2.2 kernel: ADSL G.992 channel analysis
  51. Oct 18 16:42:27 192.168.2.2 kernel: ADSL G.992 message exchange
  52. Oct 18 16:42:27 192.168.2.2 kernel: ADSL link up, interleaved, us=1139, ds=20907
  53. Oct 18 16:42:29 192.168.2.2 syslog: iptables -t nat -A PREROUTING -i br0 -d 192.168.2.2 -p udp --dport 53 -j DNAT --to xxx.xxx.xxx.xxx
  54. Oct 18 16:42:31 192.168.2.2 dnsprobe[577]: dns query failed
  55. Oct 18 16:42:33 192.168.2.2 pppd[400]: PPP: Start to connect ...
  56. Oct 18 16:42:33 192.168.2.2 dnsprobe[577]: dns query failed
  57. Oct 18 16:42:33 192.168.2.2 pppd[400]: Sending PADI
  58. Oct 18 16:42:33 192.168.2.2 pppd[400]: Sent packet: Ether addr: ff:ff:ff:ff:ff:ff (PPPOE Discovery) PPPoE hdr: ver=0x1 type=0x1 code=0x09 sid=0x0000 length=0x000c (PADI) PPPoE tag: type=0103 length=0004 (Host Uniq) data (bin): xx xx xx xx PPPoE tag: type=0101 length=0000 (Service name)
  59. Oct 18 16:42:36 192.168.2.2 dnsprobe[577]: dns query failed
  60. Oct 18 16:42:36 192.168.2.2 pppd[400]: Sent packet: Ether addr: ff:ff:ff:ff:ff:ff (PPPOE Discovery) PPPoE hdr: ver=0x1 type=0x1 code=0x09 sid=0x0000 length=0x000c (PADI) PPPoE tag: type=0101 length=0000 (Service name) PPPoE tag: type=0103 length=0004 (Host Uniq) data (bin): xx xx xx xx
  61. Oct 18 16:42:40 192.168.2.2 pppd[400]: Sent packet: Ether addr: ff:ff:ff:ff:ff:ff (PPPOE Discovery) PPPoE hdr: ver=0x1 type=0x1 code=0x09 sid=0x0000 length=0x000c (PADI) PPPoE tag: type=0101 length=0000 (Service name) PPPoE tag: type=0103 length=0004 (Host Uniq) data (bin): xx xx xx xx
  62. Oct 18 16:42:40 192.168.2.2 pppd[400]: Recv'd packet: Ether addr: 00:30:88:13:be:33 (PPPOE Discovery) PPPoE hdr: ver=0x1 type=0x1 code=0x07 sid=0x0000 length=0x0092 (PADO) PPPoE tag: type=0103 length=0004 (Host Uniq) data (bin): 10 04 61 00 PPPoE tag: type=0102 length=0021 (AC Name) data (
  63. Oct 18 16:42:40 192.168.2.2 pppd[400]: HOST_UNIQ successful match
  64. Oct 18 16:42:42 192.168.2.2 pppd[400]: PPP server detected.
  65. Oct 18 16:42:42 192.168.2.2 pppd[400]: Sent packet: Ether addr: xx:xx:xx:xx:xx:xx (PPPOE Discovery) PPPoE hdr: ver=0x1 type=0x1 code=0x19 sid=0x0000 length=0x0017 (PADR) PPPoE tag: type=0101 length=000b (Service name) data (UTF-8): xxx PPPoE tag: type=0103 length=0004 (Host Uniq) da
  66. Oct 18 16:42:42 192.168.2.2 pppd[400]: Recv'd packet: Ether addr: xx:xx:xx:xx:xx:xx (PPPOE Discovery) PPPoE hdr: ver=0x1 type=0x1 code=0x65 sid=0x0477 length=0x003c (PADS) PPPoE tag: type=0101 length=000b (Service name) data (UTF-8): xxx PPPoE tag: type=0103 length=0004 (Host Uniq)
  67. Oct 18 16:42:42 192.168.2.2 pppd[400]: HOST_UNIQ successful match
  68. Oct 18 16:42:42 192.168.2.2 pppd[400]: Got connection: 477
  69. Oct 18 16:42:42 192.168.2.2 pppd[400]: PPP session established.
  70. Oct 18 16:42:43 192.168.2.2 pppd[400]: using channel 28
  71. Oct 18 16:42:43 192.168.2.2 pppd[400]: Using interface ppp0_35_1
  72. Oct 18 16:42:43 192.168.2.2 pppd[400]: Connect: ppp_0_35_1 <--> nas_0_35
  73. Oct 18 16:42:43 192.168.2.2 pppd[400]: Couldn't increase MTU to 1500.
  74. Oct 18 16:42:43 192.168.2.2 pppd[400]: Couldn't increase MRU to 1500
  75. Oct 18 16:42:43 192.168.2.2 pppd[400]: sent [LCP ConfReq id=0x68 <asyncmap 0x0> <magic 0xaxxxxxxx> <pcomp> <accomp>]
  76. Oct 18 16:42:43 192.168.2.2 pppd[400]: rcvd [LCP ConfReq id=0xb5 <mru 1460> <auth chap MD5> <magic 0xaxxxxxxx>]
  77. Oct 18 16:42:43 192.168.2.2 pppd[400]: sent [LCP ConfAck id=0xb5 <mru 1460> <auth chap MD5> <magic 0xaxxxxxxx>]
  78. Oct 18 16:42:43 192.168.2.2 pppd[400]: rcvd [LCP ConfRej id=0x68 <asyncmap 0x0> <pcomp> <accomp>]
  79. Oct 18 16:42:43 192.168.2.2 pppd[400]: sent [LCP ConfReq id=0x69 <magic 0xaxxxxxxx>]
  80. Oct 18 16:42:43 192.168.2.2 pppd[400]: rcvd [LCP ConfAck id=0x69 <magic 0xaxxxxxxx>]
  81. Oct 18 16:42:43 192.168.2.2 pppd[400]: sent [LCP EchoReq id=0x0 magic=0xaxxxxxxx]
  82. Oct 18 16:42:43 192.168.2.2 pppd[400]: PPP LCP UP.
  83. Oct 18 16:42:43 192.168.2.2 pppd[400]: rcvd [CHAP Challenge id=0x1 <xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>, name = "xxx"]
  84. Oct 18 16:42:43 192.168.2.2 pppd[400]: sent [CHAP Response id=0x1 <xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>, name = "xxx"]
  85. Oct 18 16:42:43 192.168.2.2 pppd[400]: rcvd [LCP EchoRep id=0x0 magic=0xaxxxxxxx]
  86. Oct 18 16:42:43 192.168.2.2 pppd[400]: rcvd [CHAP Success id=0x1 "CHAP authentication success, unit 75"]
  87. Oct 18 16:42:43 192.168.2.2 pppd[400]: Remote message: CHAP authentication success, unit 75
  88. Oct 18 16:42:43 192.168.2.2 pppd[400]: sent [IPCP ConfReq id=0x50 <addr 0.0.0.0> <compress VJ 0f 01> <ms-dns1 0.0.0.0> <ms-dns3 0.0.0.0>]
  89. Oct 18 16:42:43 192.168.2.2 pppd[400]: rcvd [IPCP ConfReq id=0x38 <addr xxx.xxx.xxx.xxx>]
  90. Oct 18 16:42:43 192.168.2.2 pppd[400]: sent [IPCP ConfAck id=0x38 <addr xxx.xxx.xxx.xxx>]
  91. Oct 18 16:42:43 192.168.2.2 pppd[400]: rcvd [IPCP ConfRej id=0x50 <compress VJ 0f 01>]
  92. Oct 18 16:42:43 192.168.2.2 pppd[400]: sent [IPCP ConfReq id=0x51 <addr 0.0.0.0> <ms-dns1 0.0.0.0> <ms-dns3 0.0.0.0>]
  93. Oct 18 16:42:43 192.168.2.2 pppd[400]: rcvd [IPCP ConfNak id=0x51 <addr xxx.xxx.xxx.xxx> <ms-dns1 xxx.xxx.xxx.xxx> <ms-dns3 xxx.xxx.xxx.xxx>]
  94. Oct 18 16:42:43 192.168.2.2 pppd[400]: sent [IPCP ConfReq id=0x52 <addr xxx.xxx.xxx.xxx> <ms-dns1 xxx.xxx.xxx.xxx> <ms-dns3 xxx.xxx.xxx.xxx>]
  95. Oct 18 16:42:44 192.168.2.2 pppd[400]: rcvd [IPCP ConfAck id=0x52 <addr xxx.xxx.xxx.xxx> <ms-dns1 xxx.xxx.xxx.xxx> <ms-dns3 xxx.xxx.xxx.xxx>]
  96. Oct 18 16:42:44 192.168.2.2 pppd[400]: local IP address xxx.xxx.xxx.xxx
  97. Oct 18 16:42:44 192.168.2.2 pppd[400]: remote IP address xxx.xxx.xxx.xxx
  98. Oct 18 16:42:44 192.168.2.2 pppd[400]: primary DNS address xxx.xxx.xxx.xxx
  99. Oct 18 16:42:44 192.168.2.2 pppd[400]: secondary DNS address xxx.xxx.xxx.xxx
  100. Oct 18 16:42:46 192.168.2.2 syslog: error connecting to members.dyndns.org:http
  101. Oct 18 16:42:47 192.168.2.2 pppd[400]: Received valid IP address from server. Connection UP.
  102. Oct 18 16:42:56 192.168.2.2 syslog: error connecting to members.dyndns.org:http
  103. Oct 18 16:43:07 192.168.2.2 syslog: error connecting to members.dyndns.org:http
  104. Oct 18 16:43:08 192.168.2.2 dnsprobe[577]: dns query failed
  105. Oct 18 16:43:10 192.168.2.2 dnsprobe[577]: dns query failed
  106. Oct 18 16:43:12 192.168.2.2 dnsprobe[577]: dns query failed
  107. Oct 18 16:43:13 192.168.2.2 pppd[400]: sent [LCP EchoReq id=0x1 magic=0xf078a894]
  108. Oct 18 16:43:13 192.168.2.2 pppd[400]: rcvd [LCP EchoRep id=0x1 magic=0x68dc8006]
  109. Oct 18 16:43:17 192.168.2.2 syslog: error connecting to members.dyndns.org:http
  110. Oct 18 16:43:20 192.168.2.2 syslog: route add default gw xxx.xxx.xxx.xxx 2>/dev/null
  111. Oct 18 16:43:23 192.168.2.2 syslog: iptables -A FORWARD -o ppp_0_35_1 -p tcp --tcp-flags SYN,RST SYN -j TCPMSS --clamp-mss-to-pmtu
  112. Oct 18 16:43:24 192.168.2.2 syslog: iptables -A FORWARD -i ppp_0_35_1 -p tcp --tcp-flags SYN,RST SYN -j TCPMSS --clamp-mss-to-pmtu
  113. Oct 18 16:43:25 192.168.2.2 syslog: echo > /proc/net/ip_conntrack
  114. Oct 18 16:43:25 192.168.2.2 syslog: echo "200" > /proc/sys/net/ipv4/ip_conntrack_max
  115. Oct 18 16:43:25 192.168.2.2 syslog: echo "1" > /proc/sys/net/ipv4/route/gc_elasticity
  116. Oct 18 16:43:26 192.168.2.2 syslog: iptables -t nat -D PREROUTING -i br0 -d 192.168.2.2 -p udp --dport 53 -j DNAT --to xxx.xxx.xxx.xxx 2>/dev/null
  117. Oct 18 16:43:26 192.168.2.2 syslog: iptables -t nat -D POSTROUTING -o ppp_0_35_1 -s 192.168.2.0/255.255.255.0 -j MASQUERADE 2>/dev/null
  118. Oct 18 16:43:26 192.168.2.2 syslog: iptables -t nat -A POSTROUTING -o ppp_0_35_1 -s 192.168.2.0/255.255.255.0 -j MASQUERADE
  119. Oct 18 16:43:26 192.168.2.2 syslog: iptables -t nat -D PREROUTING -i br0 -d 192.168.2.2 -p udp --dport 53 -j DNAT --to xxx.xxx.xxx.xxx 2>/dev/null
  120. Oct 18 16:43:26 192.168.2.2 syslog: iptables -t nat -A PREROUTING -i br0 -d 192.168.2.2 -p udp --dport 53 -j DNAT --to xxx.xxx.xxx.xxx
  121. Oct 18 16:43:33 192.168.2.2 syslog: iptables -I INPUT 1 -p tcp --dport 80 -i ppp_0_35_1 -j ACCEPT
  122. Oct 18 16:43:35 192.168.2.2 pppd[400]: rcvd [LCP EchoReq id=0x0 magic=0x68dc8006]
  123. Oct 18 16:43:35 192.168.2.2 pppd[400]: sent [LCP EchoRep id=0x0 magic=0xf078a894]
  124. Oct 18 16:43:35 192.168.2.2 syslog: iptables -I INPUT 1 -p icmp --icmp-type echo-request -i ppp_0_35_1 -j ACCEPT
  125. Oct 18 16:43:43 192.168.2.2 dnsprobe[577]: Switching Back To Primary DNS server
  126. Oct 18 16:43:44 192.168.2.2 pppd[400]: sent [LCP EchoReq id=0x2 magic=0xf078a894]
  127. Oct 18 16:43:44 192.168.2.2 pppd[400]: rcvd [LCP EchoRep id=0x2 magic=0x68dc8006]
  128. Oct 18 16:44:14 192.168.2.2 pppd[400]: sent [LCP EchoReq id=0x3 magic=0xf078a894]
  129. Oct 18 16:44:14 192.168.2.2 pppd[400]: rcvd [LCP EchoRep id=0x3 magic=0x68dc8006]
  130.  
  131.  
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement