Advertisement
Guest User

Untitled

a guest
Oct 14th, 2019
187
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 15.43 KB | None | 0 0
  1. root@mail:~# tcpdump
  2. tcpdump: verbose output suppressed, use -v or -vv for full protocol decode
  3. listening on tun0, link-type RAW (Raw IP), capture size 65535 bytes
  4. 14:32:04.711156 IP 185.90.116.200.62032 > mail.mirage.ru.http: Flags [S], seq 713955418, win 29200, options [mss 1367], length 0
  5. 14:32:04.711296 IP mail.mirage.ru > 185.90.116.200: ICMP host mail.mirage.ru unreachable - admin prohibited, length 52
  6. 14:32:04.712641 IP mail.mirage.ru.50696 > dns.google.domain: 56124+ PTR? 3.91.91.10.in-addr.arpa. (41)
  7. 14:32:04.712657 IP mail.mirage.ru.50696 > dns.google.domain: 56124+ PTR? 3.91.91.10.in-addr.arpa. (41)
  8. 14:32:04.727046 IP dns.google.domain > mail.mirage.ru.50696: 56124 NXDomain 0/0/0 (41)
  9. 14:32:04.731675 IP mail.mirage.ru.19847 > dns.google.domain: 45355+ PTR? 200.116.90.185.in-addr.arpa. (45)
  10. 14:32:04.739394 IP dns.google.domain > mail.mirage.ru.50696: 56124 NXDomain 0/0/0 (41)
  11. 14:32:04.739437 IP mail.mirage.ru > dns.google: ICMP mail.mirage.ru udp port 50696 unreachable, length 77
  12. 14:32:04.741597 IP dns.google.domain > mail.mirage.ru.19847: 45355 NXDomain 0/1/0 (123)
  13. 14:32:04.742313 IP mail.mirage.ru.53248 > dns.google.domain: 1639+ PTR? 8.8.8.8.in-addr.arpa. (38)
  14. 14:32:04.761735 IP dns.google.domain > mail.mirage.ru.53248: 1639 1/0/0 PTR dns.google. (62)
  15. 14:32:04.763549 IP mail.mirage.ru.31165 > dns.google.domain: 10875+ PTR? 4.4.8.8.in-addr.arpa. (38)
  16. 14:32:04.772743 IP dns.google.domain > mail.mirage.ru.31165: 10875 1/0/0 PTR dns.google. (62)
  17. 14:32:05.578242 IP 185.90.118.82.45916 > mail.mirage.ru.http: Flags [S], seq 3999645674, win 29200, options [mss 1367], length 0
  18. 14:32:05.578295 IP mail.mirage.ru > 185.90.118.82: ICMP host mail.mirage.ru unreachable - admin prohibited, length 52
  19. 14:32:05.578845 IP mail.mirage.ru.21461 > dns.google.domain: 16507+ PTR? 82.118.90.185.in-addr.arpa. (44)
  20. 14:32:05.622459 IP dns.google.domain > mail.mirage.ru.21461: 16507 NXDomain 0/1/0 (122)
  21. 14:32:06.282441 IP 185.90.118.21.42800 > mail.mirage.ru.http: Flags [S], seq 3563168004, win 29200, options [mss 1367], length 0
  22. 14:32:06.282561 IP mail.mirage.ru > 185.90.118.21: ICMP host mail.mirage.ru unreachable - admin prohibited, length 52
  23. 14:32:06.282998 IP mail.mirage.ru.21250 > dns.google.domain: 37949+ PTR? 21.118.90.185.in-addr.arpa. (44)
  24. 14:32:06.340078 IP dns.google.domain > mail.mirage.ru.21250: 37949 NXDomain 0/1/0 (122)
  25. 14:32:06.645592 IP 185.90.116.98.58836 > mail.mirage.ru.http: Flags [S], seq 3893744036, win 29200, options [mss 1367], length 0
  26. 14:32:06.645653 IP mail.mirage.ru > 185.90.116.98: ICMP host mail.mirage.ru unreachable - admin prohibited, length 52
  27. 14:32:06.646043 IP mail.mirage.ru.27170 > dns.google.domain: 56302+ PTR? 98.116.90.185.in-addr.arpa. (44)
  28. 14:32:06.689549 IP dns.google.domain > mail.mirage.ru.27170: 56302 NXDomain 0/1/0 (122)
  29. 14:32:09.158370 IP 185.90.118.20.36470 > mail.mirage.ru.http: Flags [S], seq 251721893, win 29200, options [mss 1367], length 0
  30. 14:32:09.158466 IP mail.mirage.ru > 185.90.118.20: ICMP host mail.mirage.ru unreachable - admin prohibited, length 52
  31. 14:32:09.163326 IP mail.mirage.ru.53276 > dns.google.domain: 38285+ PTR? 20.118.90.185.in-addr.arpa. (44)
  32. 14:32:09.214688 IP dns.google.domain > mail.mirage.ru.53276: 38285 NXDomain 0/1/0 (122)
  33. 14:32:09.945528 IP 185.90.116.37.61822 > mail.mirage.ru.http: Flags [S], seq 3363459507, win 29200, options [mss 1367], length 0
  34. 14:32:09.945593 IP mail.mirage.ru > 185.90.116.37: ICMP host mail.mirage.ru unreachable - admin prohibited, length 52
  35. 14:32:09.948084 IP mail.mirage.ru.15956 > dns.google.domain: 56000+ PTR? 37.116.90.185.in-addr.arpa. (44)
  36. 14:32:09.996656 IP dns.google.domain > mail.mirage.ru.15956: 56000 NXDomain 0/1/0 (122)
  37. 14:32:11.623523 IP 185.90.118.84.65387 > mail.mirage.ru.http: Flags [S], seq 1731529993, win 29200, options [mss 1367], length 0
  38. 14:32:11.623589 IP mail.mirage.ru > 185.90.118.84: ICMP host mail.mirage.ru unreachable - admin prohibited, length 52
  39. 14:32:11.625020 IP mail.mirage.ru.19330 > dns.google.domain: 17716+ PTR? 84.118.90.185.in-addr.arpa. (44)
  40. 14:32:11.669622 IP dns.google.domain > mail.mirage.ru.19330: 17716 NXDomain 0/1/0 (122)
  41. 14:32:12.934325 IP 185.90.118.22.37476 > mail.mirage.ru.http: Flags [S], seq 238227047, win 29200, options [mss 1367], length 0
  42. 14:32:12.934395 IP mail.mirage.ru > 185.90.118.22: ICMP host mail.mirage.ru unreachable - admin prohibited, length 52
  43. 14:32:12.934797 IP mail.mirage.ru.oma-ilp > dns.google.domain: 3659+ PTR? 22.118.90.185.in-addr.arpa. (44)
  44. 14:32:12.985835 IP dns.google.domain > mail.mirage.ru.oma-ilp: 3659 NXDomain 0/1/0 (122)
  45. 14:32:14.433359 IP 10.91.91.1.rrac > 255.255.255.255.rrac: UDP, length 114
  46. 14:32:14.434056 IP mail.mirage.ru.12235 > dns.google.domain: 32272+ PTR? 255.255.255.255.in-addr.arpa. (46)
  47. 14:32:14.476563 IP dns.google.domain > mail.mirage.ru.12235: 32272 NXDomain 0/1/0 (114)
  48. 14:32:14.477455 IP mail.mirage.ru.44759 > dns.google.domain: 59932+ PTR? 1.91.91.10.in-addr.arpa. (41)
  49. 14:32:14.484799 IP dns.google.domain > mail.mirage.ru.44759: 59932 NXDomain 0/0/0 (41)
  50. 14:32:16.897210 IP mail.mirage.ru.ntp > stratum2-1.ntp.led01.ru.misaka.io.ntp: NTPv4, Client, length 48
  51. 14:32:16.898230 IP mail.mirage.ru.31058 > dns.google.domain: 40588+ PTR? 222.85.209.185.in-addr.arpa. (45)
  52. 14:32:16.907478 IP stratum2-1.ntp.led01.ru.misaka.io.ntp > mail.mirage.ru.ntp: NTPv4, Server, length 48
  53. 14:32:16.916066 IP dns.google.domain > mail.mirage.ru.31058: 40588 1/0/0 PTR stratum2-1.ntp.led01.ru.misaka.io. (92)
  54. 14:32:18.886373 IP mail.mirage.ru.ntp > 93.171.155.1.ntp: NTPv4, Client, length 48
  55. 14:32:18.886894 IP mail.mirage.ru.7044 > dns.google.domain: 39826+ PTR? 1.155.171.93.in-addr.arpa. (43)
  56. 14:32:18.916922 IP 93.171.155.1.ntp > mail.mirage.ru.ntp: NTPv4, Server, length 48
  57. 14:32:18.927240 IP dns.google.domain > mail.mirage.ru.7044: 39826 NXDomain 0/1/0 (103)
  58. 14:32:19.889335 IP mail.mirage.ru.ntp > cello.corbina.net.ntp: NTPv4, Client, length 48
  59. 14:32:19.890131 IP mail.mirage.ru.8527 > dns.google.domain: 47139+ PTR? 23.78.21.85.in-addr.arpa. (42)
  60. 14:32:19.904447 IP cello.corbina.net.ntp > mail.mirage.ru.ntp: NTPv4, Server, length 48
  61. 14:32:19.915268 IP dns.google.domain > mail.mirage.ru.8527: 47139 1/0/0 PTR cello.corbina.net. (73)
  62. 14:32:21.184314 IP 185.90.118.21.34696 > mail.mirage.ru.http: Flags [S], seq 1120606850, win 29200, options [mss 1367], length 0
  63. 14:32:21.184431 IP mail.mirage.ru > 185.90.118.21: ICMP host mail.mirage.ru unreachable - admin prohibited, length 52
  64. 14:32:21.634938 IP 185.90.118.23.54558 > mail.mirage.ru.http: Flags [S], seq 4192129116, win 29200, options [mss 1367], length 0
  65. 14:32:21.634998 IP mail.mirage.ru > 185.90.118.23: ICMP host mail.mirage.ru unreachable - admin prohibited, length 52
  66. 14:32:21.635665 IP mail.mirage.ru.26012 > dns.google.domain: 30038+ PTR? 23.118.90.185.in-addr.arpa. (44)
  67. 14:32:21.646155 IP dns.google.domain > mail.mirage.ru.26012: 30038 NXDomain 0/1/0 (122)
  68. 14:32:22.019807 IP 185.90.116.22.47288 > mail.mirage.ru.http: Flags [S], seq 2853362976, win 29200, options [mss 1367], length 0
  69. 14:32:22.019869 IP mail.mirage.ru > 185.90.116.22: ICMP host mail.mirage.ru unreachable - admin prohibited, length 52
  70. 14:32:22.020444 IP mail.mirage.ru.36606 > dns.google.domain: 25730+ PTR? 22.116.90.185.in-addr.arpa. (44)
  71. 14:32:22.062782 IP dns.google.domain > mail.mirage.ru.36606: 25730 NXDomain 0/1/0 (122)
  72. 14:32:24.289431 IP 185.90.118.40.34309 > mail.mirage.ru.http: Flags [S], seq 1380077501, win 29200, options [mss 1367], length 0
  73. 14:32:24.289519 IP mail.mirage.ru > 185.90.118.40: ICMP host mail.mirage.ru unreachable - admin prohibited, length 52
  74. 14:32:24.294418 IP mail.mirage.ru.44350 > dns.google.domain: 52299+ PTR? 40.118.90.185.in-addr.arpa. (44)
  75. 14:32:24.351771 IP dns.google.domain > mail.mirage.ru.44350: 52299 NXDomain 0/1/0 (122)
  76. 14:32:24.710627 IP 185.90.116.40.32803 > mail.mirage.ru.http: Flags [S], seq 1522970079, win 29200, options [mss 1367], length 0
  77. 14:32:24.710697 IP mail.mirage.ru > 185.90.116.40: ICMP host mail.mirage.ru unreachable - admin prohibited, length 52
  78. 14:32:24.711078 IP mail.mirage.ru.11570 > dns.google.domain: 4855+ PTR? 40.116.90.185.in-addr.arpa. (44)
  79. 14:32:24.762171 IP dns.google.domain > mail.mirage.ru.11570: 4855 NXDomain 0/1/0 (122)
  80. 14:32:25.860009 IP 185.90.116.56.64800 > mail.mirage.ru.http: Flags [S], seq 1007938078, win 29200, options [mss 1367], length 0
  81. 14:32:25.860130 IP mail.mirage.ru > 185.90.116.56: ICMP host mail.mirage.ru unreachable - admin prohibited, length 52
  82. 14:32:25.868274 IP mail.mirage.ru.35889 > dns.google.domain: 48024+ PTR? 56.116.90.185.in-addr.arpa. (44)
  83. 14:32:25.868308 IP mail.mirage.ru.35889 > dns.google.domain: 48024+ PTR? 56.116.90.185.in-addr.arpa. (44)
  84. 14:32:25.915062 IP dns.google.domain > mail.mirage.ru.35889: 48024 NXDomain 0/1/0 (122)
  85. 14:32:25.957343 IP dns.google.domain > mail.mirage.ru.35889: 48024 NXDomain 0/1/0 (122)
  86. 14:32:25.957410 IP mail.mirage.ru > dns.google: ICMP mail.mirage.ru udp port 35889 unreachable, length 158
  87. 14:32:26.976446 IP 185.90.118.29.59376 > mail.mirage.ru.http: Flags [S], seq 3816036854, win 29200, options [mss 1367], length 0
  88. 14:32:26.976517 IP mail.mirage.ru > 185.90.118.29: ICMP host mail.mirage.ru unreachable - admin prohibited, length 52
  89. 14:32:26.977013 IP mail.mirage.ru.21051 > dns.google.domain: 51760+ PTR? 29.118.90.185.in-addr.arpa. (44)
  90. 14:32:26.986504 IP dns.google.domain > mail.mirage.ru.21051: 51760 NXDomain 0/1/0 (122)
  91. 14:32:27.075294 IP 185.90.118.102.33483 > mail.mirage.ru.http: Flags [S], seq 1503387545, win 29200, options [mss 1367], length 0
  92. 14:32:27.075352 IP mail.mirage.ru > 185.90.118.102: ICMP host mail.mirage.ru unreachable - admin prohibited, length 52
  93. 14:32:27.075773 IP mail.mirage.ru.28599 > dns.google.domain: 23945+ PTR? 102.118.90.185.in-addr.arpa. (45)
  94. 14:32:27.119303 IP dns.google.domain > mail.mirage.ru.28599: 23945 NXDomain 0/1/0 (123)
  95. 14:32:27.243454 IP 185.90.116.38.62560 > mail.mirage.ru.http: Flags [S], seq 1545881212, win 29200, options [mss 1367], length 0
  96. 14:32:27.243499 IP mail.mirage.ru > 185.90.116.38: ICMP host mail.mirage.ru unreachable - admin prohibited, length 52
  97. 14:32:27.243526 IP vpn2.eurobet.it.49523 > mail.mirage.ru.http: Flags [S], seq 1467892911, win 29200, options [mss 1367], length 0
  98. 14:32:27.243553 IP mail.mirage.ru > vpn2.eurobet.it: ICMP host mail.mirage.ru unreachable - admin prohibited, length 52
  99. 14:32:27.244031 IP mail.mirage.ru.persona > dns.google.domain: 54094+ PTR? 38.116.90.185.in-addr.arpa. (44)
  100. 14:32:27.290831 IP dns.google.domain > mail.mirage.ru.persona: 54094 NXDomain 0/1/0 (122)
  101. 14:32:27.292241 IP mail.mirage.ru.53470 > dns.google.domain: 43283+ PTR? 2.117.90.185.in-addr.arpa. (43)
  102. 14:32:27.300440 IP dns.google.domain > mail.mirage.ru.53470: 43283 1/0/0 PTR vpn2.eurobet.it. (72)
  103. 14:32:28.950600 IP 185.90.116.84.47211 > mail.mirage.ru.http: Flags [S], seq 297174472, win 29200, options [mss 1367], length 0
  104. 14:32:28.950739 IP mail.mirage.ru > 185.90.116.84: ICMP host mail.mirage.ru unreachable - admin prohibited, length 52
  105. 14:32:28.951308 IP mail.mirage.ru.30818 > dns.google.domain: 58328+ PTR? 84.116.90.185.in-addr.arpa. (44)
  106. 14:32:29.000847 IP dns.google.domain > mail.mirage.ru.30818: 58328 NXDomain 0/1/0 (122)
  107. 14:32:32.762110 IP 185.90.116.200.55796 > mail.mirage.ru.http: Flags [S], seq 3124000938, win 29200, options [mss 1367], length 0
  108. 14:32:32.767531 IP mail.mirage.ru > 185.90.116.200: ICMP host mail.mirage.ru unreachable - admin prohibited, length 52
  109. 14:32:33.278289 IP 185.90.117.4.53239 > mail.mirage.ru.http: Flags [S], seq 1890672361, win 29200, options [mss 1367], length 0
  110. 14:32:33.278357 IP mail.mirage.ru > 185.90.117.4: ICMP host mail.mirage.ru unreachable - admin prohibited, length 52
  111. 14:32:33.279411 IP mail.mirage.ru.55034 > dns.google.domain: 12254+ PTR? 4.117.90.185.in-addr.arpa. (43)
  112. 14:32:33.289278 IP dns.google.domain > mail.mirage.ru.55034: 12254 NXDomain 0/1/0 (121)
  113. 14:32:33.612277 IP 185.90.118.101.49459 > mail.mirage.ru.http: Flags [S], seq 1761129902, win 29200, options [mss 1367], length 0
  114. 14:32:33.612341 IP mail.mirage.ru > 185.90.118.101: ICMP host mail.mirage.ru unreachable - admin prohibited, length 52
  115. 14:32:33.612763 IP mail.mirage.ru.7362 > dns.google.domain: 25810+ PTR? 101.118.90.185.in-addr.arpa. (45)
  116. 14:32:33.660695 IP dns.google.domain > mail.mirage.ru.7362: 25810 NXDomain 0/1/0 (123)
  117. 14:32:34.586724 IP 185.90.118.102.54100 > mail.mirage.ru.http: Flags [S], seq 1320656853, win 29200, options [mss 1367], length 0
  118. 14:32:34.586838 IP mail.mirage.ru > 185.90.118.102: ICMP host mail.mirage.ru unreachable - admin prohibited, length 52
  119. 14:32:34.933946 IP 185.90.116.56.42788 > mail.mirage.ru.http: Flags [S], seq 3909966797, win 29200, options [mss 1367], length 0
  120. 14:32:34.934012 IP mail.mirage.ru > 185.90.116.56: ICMP host mail.mirage.ru unreachable - admin prohibited, length 52
  121. 14:32:37.377416 IP vpn2.eurobet.it.50000 > mail.mirage.ru.http: Flags [S], seq 3383657177, win 29200, options [mss 1367], length 0
  122. 14:32:37.377473 IP mail.mirage.ru > vpn2.eurobet.it: ICMP host mail.mirage.ru unreachable - admin prohibited, length 52
  123. 14:32:38.183342 IP 185.90.118.19.43973 > mail.mirage.ru.http: Flags [S], seq 2936203989, win 29200, options [mss 1367], length 0
  124. 14:32:38.183432 IP mail.mirage.ru > 185.90.118.19: ICMP host mail.mirage.ru unreachable - admin prohibited, length 52
  125. 14:32:38.184437 IP mail.mirage.ru.10940 > dns.google.domain: 62194+ PTR? 19.118.90.185.in-addr.arpa. (44)
  126. 14:32:38.195049 IP dns.google.domain > mail.mirage.ru.10940: 62194 NXDomain 0/1/0 (122)
  127. 14:32:39.491645 IP saleservice.eurobet.it.38449 > mail.mirage.ru.http: Flags [S], seq 1895192870, win 29200, options [mss 1367], length 0
  128. 14:32:39.491757 IP mail.mirage.ru > saleservice.eurobet.it: ICMP host mail.mirage.ru unreachable - admin prohibited, length 52
  129. 14:32:39.499661 IP mail.mirage.ru.47285 > dns.google.domain: 33728+ PTR? 38.118.90.185.in-addr.arpa. (44)
  130. 14:32:39.539943 IP dns.google.domain > mail.mirage.ru.47285: 33728 6/0/0 PTR saleservice.eurobet.it., PTR infoservice.eurobet.it., PTR gamingservice.eurobet.it., PTR authservice.eurobet.it., PTR walletservice.eurobet.it., PTR internalservice.eurobet.it. (218)
  131. 14:32:40.550628 IP 185.90.116.100.50490 > mail.mirage.ru.http: Flags [S], seq 1733378091, win 29200, options [mss 1367], length 0
  132. 14:32:40.553130 IP mail.mirage.ru.65473 > dns.google.domain: 10794+ PTR? 100.116.90.185.in-addr.arpa. (45)
  133. 14:32:40.554713 IP mail.mirage.ru > 185.90.116.100: ICMP host mail.mirage.ru unreachable - admin prohibited, length 52
  134. 14:32:40.564219 IP dns.google.domain > mail.mirage.ru.65473: 10794 NXDomain 0/1/0 (123)
  135. 14:32:43.158320 IP easy.eurobet.it.35784 > mail.mirage.ru.http: Flags [S], seq 3146725853, win 29200, options [mss 1367], length 0
  136. 14:32:43.158387 IP mail.mirage.ru > easy.eurobet.it: ICMP host mail.mirage.ru unreachable - admin prohibited, length 52
  137. 14:32:43.159152 IP mail.mirage.ru.4646 > dns.google.domain: 21222+ PTR? 42.118.90.185.in-addr.arpa. (44)
  138. 14:32:43.169194 IP dns.google.domain > mail.mirage.ru.4646: 21222 1/0/0 PTR easy.eurobet.it. (73)
  139. 14:32:45.367183 IP mail.mirage.ru.53460 > dns.google.domain: 40094+ [1au] TXT? _dmarc.compiling.spamassassin.taint.org. (68)
  140. 14:32:45.398695 IP dns.google.domain > mail.mirage.ru.53460: 40094 NXDomain 0/1/1 (129)
  141. 14:32:45.472371 IP mail.mirage.ru.31164 > dns.google.domain: 22124+ [1au] TXT? _adsp._domainkey.compiling.spamassassin.taint.org. (78)
  142. 14:32:45.483548 IP dns.google.domain > mail.mirage.ru.31164: 22124 NXDomain 0/1/1 (139)
  143. 14:32:45.498084 IP mail.mirage.ru.11130 > dns.google.domain: 26307+ [1au] MX? compiling.spamassassin.taint.org. (61)
  144. 14:32:45.508142 IP dns.google.domain > mail.mirage.ru.11130: 26307 NXDomain 0/1/1 (122)
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement