Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- smbd_smb2_ioctl_pipe_write_done: received 76
- smbd_smb2_ioctl_pipe_write_done: issuing np_read_send of size 1024
- PDU is in Little Endian format!
- Processing packet type 0
- Checking request auth.
- push_sec_ctx(65534, 65534) : sec_ctx_stack_ndx = 1
- setting sec ctx (65534, 65534) - sec_ctx_stack_ndx = 1
- Security token SIDs (7):
- SID[ 0]: S-1-5-21-242122350-723339145-3109924659-501
- SID[ 1]: S-1-5-21-242122350-723339145-3109924659-514
- SID[ 2]: S-1-22-2-65534
- SID[ 3]: S-1-1-0
- SID[ 4]: S-1-5-2
- SID[ 5]: S-1-5-32-546
- SID[ 6]: S-1-22-1-65534
- Privileges (0x 0):
- Rights (0x 0):
- UNIX token of user 65534
- Primary group is 65534 and contains 1 supplementary groups
- Group[ 0]: 65534
- Impersonated user: uid=(65534,65534), gid=(0,65534)
- Requested srvsvc rpc service
- api_rpcTNP: srvsvc op 0x15 - api_rpcTNP: rpc command: SRVSVC_NETSRVGETINFO
- api_rpc_cmds[21].fn == 0x7f41bcbd7b60
- srvsvc_NetSrvGetInfo: struct srvsvc_NetSrvGetInfo
- in: struct srvsvc_NetSrvGetInfo
- server_unc : *
- server_unc : '172.20.100.146'
- level : 0x00000065 (101)
- _srvsvc_NetSrvGetInfo: 1317
- _srvsvc_NetSrvGetInfo: 1395
- srvsvc_NetSrvGetInfo: struct srvsvc_NetSrvGetInfo
- out: struct srvsvc_NetSrvGetInfo
- info : *
- info : union srvsvc_NetSrvInfo(case 101)
- info101 : *
- info101: struct srvsvc_NetSrvInfo101
- platform_id : PLATFORM_ID_NT (500)
- server_name : *
- server_name : 'ITDEBIANTEST'
- version_major : 0x00000006 (6)
- version_minor : 0x00000001 (1)
- server_type : 0x00809a03 (8428035)
- 1: SV_TYPE_WORKSTATION
- 1: SV_TYPE_SERVER
- 0: SV_TYPE_SQLSERVER
- 0: SV_TYPE_DOMAIN_CTRL
- 0: SV_TYPE_DOMAIN_BAKCTRL
- 0: SV_TYPE_TIME_SOURCE
- 0: SV_TYPE_AFP
- 0: SV_TYPE_NOVELL
- 0: SV_TYPE_DOMAIN_MEMBER
- 1: SV_TYPE_PRINTQ_SERVER
- 0: SV_TYPE_DIALIN_SERVER
- 1: SV_TYPE_SERVER_UNIX
- 1: SV_TYPE_NT
- 0: SV_TYPE_WFW
- 0: SV_TYPE_SERVER_MFPN
- 1: SV_TYPE_SERVER_NT
- 0: SV_TYPE_POTENTIAL_BROWSER
- 0: SV_TYPE_BACKUP_BROWSER
- 0: SV_TYPE_MASTER_BROWSER
- 0: SV_TYPE_DOMAIN_MASTER
- 0: SV_TYPE_SERVER_OSF
- 0: SV_TYPE_SERVER_VMS
- 0: SV_TYPE_WIN95_PLUS
- 1: SV_TYPE_DFS_SERVER
- 0: SV_TYPE_ALTERNATE_XPORT
- 0: SV_TYPE_LOCAL_LIST_ONLY
- 0: SV_TYPE_DOMAIN_ENUM
- comment : *
- comment : 'Samba 4.9.5-Debian'
- result : WERR_OK
- api_rpcTNP: called srvsvc successfully
- pop_sec_ctx (65534, 65534) - sec_ctx_stack_ndx = 0
- &r: struct ncacn_packet
- rpc_vers : 0x05 (5)
- rpc_vers_minor : 0x00 (0)
- ptype : DCERPC_PKT_RESPONSE (2)
- pfc_flags : 0x03 (3)
- 1: DCERPC_PFC_FLAG_FIRST
- 1: DCERPC_PFC_FLAG_LAST
- 0: DCERPC_PFC_FLAG_PENDING_CANCEL_OR_HDR_SIGNING
- 0: DCERPC_PFC_FLAG_CONC_MPX
- 0: DCERPC_PFC_FLAG_DID_NOT_EXECUTE
- 0: DCERPC_PFC_FLAG_MAYBE
- 0: DCERPC_PFC_FLAG_OBJECT_UUID
- drep: ARRAY(4)
- [0] : 0x10 (16)
- [1] : 0x00 (0)
- [2] : 0x00 (0)
- [3] : 0x00 (0)
- frag_length : 0x0098 (152)
- auth_length : 0x0000 (0)
- call_id : 0x00000002 (2)
- u : union dcerpc_payload(case 2)
- response: struct dcerpc_response
- alloc_hint : 0x00000080 (128)
- context_id : 0x0000 (0)
- cancel_count : 0x00 (0)
- reserved : 0x00 (0)
- stub_and_verifier : DATA_BLOB length=128
- [0000] 65 00 00 00 04 00 02 00 F4 01 00 00 08 00 02 00 e....... ........
- [0010] 06 00 00 00 01 00 00 00 03 9A 80 00 0C 00 02 00 ........ ........
- [0020] 0D 00 00 00 00 00 00 00 0D 00 00 00 49 00 54 00 ........ ....I.T.
- [0030] 44 00 45 00 42 00 49 00 41 00 4E 00 54 00 45 00 D.E.B.I. A.N.T.E.
- [0040] 53 00 54 00 00 00 00 00 13 00 00 00 00 00 00 00 S.T..... ........
- [0050] 13 00 00 00 53 00 61 00 6D 00 62 00 61 00 20 00 ....S.a. m.b.a. .
- [0060] 34 00 2E 00 39 00 2E 00 35 00 2D 00 44 00 65 00 4...9... 5.-.D.e.
- [0070] 62 00 69 00 61 00 6E 00 00 00 00 00 00 00 00 00 b.i.a.n. ........
- Sending 1 fragments in a total of 128 bytes
- Sending PDU number: 0, PDU Length: 152
- smbd_smb2_request_pending_queue: opcode[SMB2_OP_IOCTL] mid 15 going async
- smb2_set_operation_credit: smb2_set_operation_credit: requested 1, charge 1, granted 1, current possible/max 480/512, total granted/max/low/range 33/8192/16/33
- state->vector[0/5].iov_len = 4
- state->vector[1/5].iov_len = 0
- state->vector[2/5].iov_len = 64
- state->vector[3/5].iov_len = 8
- state->vector[4/5].iov_len = 1
- Received 152 bytes. There is no more data outstanding
- smbd_smb2_ioctl_pipe_read_done: np_read_recv nread = 152 is_data_outstanding = 0, status = NT_STATUS_OK
- smbd_smb2_request_ioctl_done: smbd_smb2_ioctl_recv returned 152 status NT_STATUS_OK
- smbd_smb2_request_done_ex: idx[1] status[NT_STATUS_OK] body[48] dyn[yes:152] at ../source3/smbd/smb2_ioctl.c:361
- smb2_set_operation_credit: smb2_set_operation_credit: requested 1, charge 1, granted 0, current possible/max 479/512, total granted/max/low/range 33/8192/16/33
- smbd_smb2_request idx[1] of 5 vectors
- smb2_validate_sequence_number: smb2_validate_sequence_number: clearing id 16 (position 16) from bitmap
- smbd_smb2_request_dispatch: opcode[SMB2_OP_CLOSE] mid = 16
- change_to_user_impersonate: Skipping user change - already user
- print_impersonation_info: Impersonated user: uid=(65534,65534), gid=(0,65534), cwd=[/tmp]
- smbd_smb2_close: srvsvc - fnum 4210663759
- dbwrap_lock_order_lock: check lock order 1 for /var/run/samba/smbXsrv_open_global.tdb
- lock order: 1:/var/run/samba/smbXsrv_open_global.tdb 2:<none> 3:<none>
- db_tdb_log_key: Locking key 9905ED96
- db_tdb_fetch_locked_internal: Allocated locked data 0x56414d98f180
- db_tdb_log_key: Unlocking key 9905ED96
- dbwrap_lock_order_unlock: release lock order 1 for /var/run/samba/smbXsrv_open_global.tdb
- Deleted handle list for RPC connection srvsvc
- freed files structure 4210663759 (0 used)
- smbd_smb2_request_done_ex: idx[1] status[NT_STATUS_OK] body[60] dyn[no:0] at ../source3/smbd/smb2_close.c:147
- smb2_set_operation_credit: smb2_set_operation_credit: requested 1, charge 1, granted 1, current possible/max 480/512, total granted/max/low/range 33/8192/17/33
- smbd_smb2_request idx[1] of 5 vectors
- smb2_validate_sequence_number: smb2_validate_sequence_number: clearing id 17 (position 17) from bitmap
- smbd_smb2_request_dispatch: opcode[SMB2_OP_TDIS] mid = 17
- change_to_user_impersonate: Skipping user change - already user
- print_impersonation_info: Impersonated user: uid=(65534,65534), gid=(0,65534), cwd=[/tmp]
- setting sec ctx (0, 0) - sec_ctx_stack_ndx = 0
- Security token: (NULL)
- UNIX token of user 0
- Primary group is 0 and contains 0 supplementary groups
- change_to_root_user: now uid=(0,0) gid=(0,0)
- smbd_smb2_request_pending_queue: req->current_idx = 1
- req->in.vector[0].iov_len = 0
- req->in.vector[1].iov_len = 0
- req->in.vector[2].iov_len = 64
- req->in.vector[3].iov_len = 4
- req->in.vector[4].iov_len = 0
- req->out.vector[0].iov_len = 4
- req->out.vector[1].iov_len = 0
- req->out.vector[2].iov_len = 64
- req->out.vector[3].iov_len = 8
- req->out.vector[4].iov_len = 0
- setting sec ctx (0, 0) - sec_ctx_stack_ndx = 0
- Security token: (NULL)
- UNIX token of user 0
- Primary group is 0 and contains 0 supplementary groups
- change_to_root_user: now uid=(0,0) gid=(0,0)
- setting sec ctx (0, 0) - sec_ctx_stack_ndx = 0
- Security token: (NULL)
- UNIX token of user 0
- Primary group is 0 and contains 0 supplementary groups
- change_to_root_user: now uid=(0,0) gid=(0,0)
- it-desktop (ipv4:172.20.6.1:56514) closed connection to service IPC$
- vfs_ChDir to /
- vfs_ChDir got /
- setting sec ctx (0, 0) - sec_ctx_stack_ndx = 0
- Security token: (NULL)
- UNIX token of user 0
- Primary group is 0 and contains 0 supplementary groups
- change_to_root_user: now uid=(0,0) gid=(0,0)
- dbwrap_lock_order_lock: check lock order 1 for /var/run/samba/smbXsrv_tcon_global.tdb
- lock order: 1:/var/run/samba/smbXsrv_tcon_global.tdb 2:<none> 3:<none>
- db_tdb_log_key: Locking key 531BE793
- db_tdb_fetch_locked_internal: Allocated locked data 0x56414d9d89e0
- db_tdb_log_key: Unlocking key 531BE793
- dbwrap_lock_order_unlock: release lock order 1 for /var/run/samba/smbXsrv_tcon_global.tdb
- smbd_smb2_request_done_ex: idx[1] status[NT_STATUS_OK] body[4] dyn[no:0] at ../source3/smbd/smb2_tcon.c:542
- smb2_set_operation_credit: smb2_set_operation_credit: requested 1, charge 1, granted 1, current possible/max 480/512, total granted/max/low/range 33/8192/18/33
- smbd_smb2_request idx[1] of 5 vectors
- smb2_validate_sequence_number: smb2_validate_sequence_number: clearing id 18 (position 18) from bitmap
- smbd_smb2_request_dispatch: opcode[SMB2_OP_LOGOFF] mid = 18
- setting sec ctx (0, 0) - sec_ctx_stack_ndx = 0
- Security token: (NULL)
- UNIX token of user 0
- Primary group is 0 and contains 0 supplementary groups
- change_to_root_user: now uid=(0,0) gid=(0,0)
- smbd_smb2_request_pending_queue: req->current_idx = 1
- req->in.vector[0].iov_len = 0
- req->in.vector[1].iov_len = 0
- req->in.vector[2].iov_len = 64
- req->in.vector[3].iov_len = 4
- req->in.vector[4].iov_len = 0
- req->out.vector[0].iov_len = 4
- req->out.vector[1].iov_len = 0
- req->out.vector[2].iov_len = 64
- req->out.vector[3].iov_len = 8
- req->out.vector[4].iov_len = 0
- push_sec_ctx(0, 0) : sec_ctx_stack_ndx = 1
- push_conn_ctx(0) : conn_ctx_stack_ndx = 0
- setting sec ctx (0, 0) - sec_ctx_stack_ndx = 1
- Security token: (NULL)
- UNIX token of user 0
- Primary group is 0 and contains 0 supplementary groups
- Deleting cache entry (key=[RA/6c5324c2-4130-11ea-8099-00189ea98800])
- Adding cache entry with key=[RA/6c5324c2-4130-11ea-8099-00189ea98800] and timeout=[Wed Dec 31 07:00:00 PM 1969 EST] (-1580153000 seconds in the past)
- pop_sec_ctx (0, 0) - sec_ctx_stack_ndx = 0
- setting sec ctx (0, 0) - sec_ctx_stack_ndx = 0
- Security token: (NULL)
- UNIX token of user 0
- Primary group is 0 and contains 0 supplementary groups
- change_to_root_user: now uid=(0,0) gid=(0,0)
- dbwrap_lock_order_lock: check lock order 1 for /var/run/samba/smbXsrv_session_global.tdb
- lock order: 1:/var/run/samba/smbXsrv_session_global.tdb 2:<none> 3:<none>
- db_tdb_log_key: Locking key A36FEDB9
- db_tdb_fetch_locked_internal: Allocated locked data 0x56414d9d4bd0
- dbwrap_lock_order_unlock: release lock order 1 for /var/run/samba/smbXsrv_session_global.tdb
- db_tdb_log_key: Unlocking key A36FEDB9
- smbd_smb2_request_done_ex: idx[1] status[NT_STATUS_OK] body[4] dyn[no:0] at ../source3/smbd/smb2_sesssetup.c:1269
- smb2_set_operation_credit: smb2_set_operation_credit: requested 1, charge 1, granted 1, current possible/max 480/512, total granted/max/low/range 33/8192/19/33
- smbd_server_connection_terminate_ex: conn[ipv4:172.20.6.1:56514] reason[NT_STATUS_CONNECTION_RESET] at ../source3/smbd/smb2_server.c:4010
- setting sec ctx (0, 0) - sec_ctx_stack_ndx = 0
- Security token: (NULL)
- UNIX token of user 0
- Primary group is 0 and contains 0 supplementary groups
- change_to_root_user: now uid=(0,0) gid=(0,0)
- setting sec ctx (0, 0) - sec_ctx_stack_ndx = 0
- Security token: (NULL)
- UNIX token of user 0
- Primary group is 0 and contains 0 supplementary groups
- change_to_root_user: now uid=(0,0) gid=(0,0)
- setting sec ctx (0, 0) - sec_ctx_stack_ndx = 0
- Security token: (NULL)
- UNIX token of user 0
- Primary group is 0 and contains 0 supplementary groups
- change_to_root_user: now uid=(0,0) gid=(0,0)
- setting sec ctx (0, 0) - sec_ctx_stack_ndx = 0
- Security token: (NULL)
- UNIX token of user 0
- Primary group is 0 and contains 0 supplementary groups
- change_to_root_user: now uid=(0,0) gid=(0,0)
- msg_dgm_ref_destructor: refs=(nil)
- Server exit (NT_STATUS_CONNECTION_RESET)
- Terminated
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement