Advertisement
Guest User

Untitled

a guest
Nov 29th, 2018
61
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 11.70 KB | None | 0 0
  1. 29/11/2018 14:38:16 15B4 PACKET 0000000005CD6060 TCP Rcv 10.0.16.25 bb0b Q [0000 NOERROR] TKEY (7)6900945(19)sig-mywindc02(7)MYDOMAIN(3)com(0)
  2. TCP question info at 0000000005CD6060
  3. Socket = 10732
  4. Remote addr 10.0.16.25, port 39539
  5. Time Query=13486573, Queued=0, Expire=0
  6. Buf length = 0x10000 (65536)
  7. Msg length = 0x0606 (1542)
  8. Message:
  9. XID 0xbb0b
  10. Flags 0x0000
  11. QR 0 (QUESTION)
  12. OPCODE 0 (QUERY)
  13. AA 0
  14. TC 0
  15. RD 0
  16. RA 0
  17. Z 0
  18. CD 0
  19. AD 0
  20. RCODE 0 (NOERROR)
  21. QCOUNT 1
  22. ACOUNT 0
  23. NSCOUNT 0
  24. ARCOUNT 1
  25. QUESTION SECTION:
  26. Offset = 0x000c, RR count = 0
  27. Name "(7)6900945(19)sig-mywindc02(7)MYDOMAIN(3)com(0)"
  28. QTYPE TKEY (249)
  29. QCLASS 255
  30. ANSWER SECTION:
  31. empty
  32. AUTHORITY SECTION:
  33. empty
  34. ADDITIONAL SECTION:
  35. Offset = 0x0039, RR count = 0
  36. Name "[C00C](7)6900945(19)sig-mywindc02(7)MYDOMAIN(3)com(0)"
  37. TYPE TKEY (249)
  38. CLASS 255
  39. TTL 0
  40. DLEN 1473
  41. DATA
  42. Algorithm: (8)gss-tsig(0)
  43. Create time = 1543498696
  44. Expire time = 1543498696
  45. Mode = 3
  46. Extended RCODE = 0
  47. Key Length = 1447
  48. Key:
  49. 60 82 05 a3 06 06 2b 06 01 05 05 02 a0 82 05 97
  50. 30 82 05 93 a0 0d 30 0b 06 09 2a 86 48 86 f7 12
  51. 01 02 02 a2 82 05 80 04 82 05 7c 60 82 05 78 06
  52. 09 2a 86 48 86 f7 12 01 02 02 01 00 6e 82 05 67
  53. 30 82 05 63 a0 03 02 01 05 a1 03 02 01 0e a2 07
  54. 03 05 00 20 00 00 00 a3 82 04 75 61 82 04 71 30
  55. 82 04 6d a0 03 02 01 05 a1 0d 1b 0b 52 49 53 4f
  56. 52 53 41 2e 43 4f 4d a2 2d 30 2b a0 03 02 01 01
  57. a1 24 30 22 1b 03 44 4e 53 1b 1b 72 69 73 2d 64
  58. 6f 6d 2d 63 6f 6e 74 72 30 32 2e 52 49 53 4f 52
  59. 53 41 2e 63 6f 6d a3 82 04 26 30 82 04 22 a0 03
  60. 02 01 12 a1 03 02 01 5e a2 82 04 14 04 82 04 10
  61. 53 43 c7 b5 43 97 38 b1 5c f0 6d af e1 bf 68 04
  62. ac 47 dd 18 61 22 2d e4 32 1e 44 77 e6 0e d0 54
  63. 06 0d 53 37 c1 62 ac 16 fe a5 6c 3b 14 a1 f6 88
  64. aa 86 ce cf 6a b5 60 b6 84 23 e7 54 bf 2e 92 d7
  65. eb f8 f5 e6 d6 23 4f d7 e7 4a c0 e6 68 64 9a fe
  66. 45 28 9a a4 d3 8c 05 a2 30 24 ce 8d 1a cf db e6
  67. 68 ea e2 d4 e1 28 8f 3c 84 49 10 0f 1b 51 f8 48
  68. fc b0 f1 3b fa 78 93 f4 49 8b 3c f8 12 57 1b 24
  69. e3 ab a0 f9 07 8a c3 02 a0 e9 dc 71 9d 25 ae 66
  70. b3 da b6 e1 23 f6 4a cc 31 d4 8b a5 10 bf 89 a8
  71. b2 45 6c 22 a6 8e 6e f0 5c 2b a1 6a c4 93 41 b9
  72. 54 81 db 1c cd 55 c6 ed a8 d3 73 1b 1d a5 2c b3
  73. 32 d5 b2 c9 7e 72 ed 0d 6e 9a 0e 01 ef 7a 94 5f
  74. 4a e1 99 13 98 2b 43 f7 10 b0 cc 7a 74 01 28 50
  75. 00 5d 52 9a ff ad 41 f9 81 e9 88 36 49 e8 cf 5d
  76. 65 80 e6 e2 75 0d bc 60 8b ba 4c b2 fe 75 d2 b3
  77. 03 f3 fd 78 03 88 35 9e 9b 42 cc 7d 43 3e e1 0e
  78. 6a 91 da ba 70 ea df 3d 7b 69 94 d3 8c 54 64 42
  79. 99 80 40 ab fd cf 27 a9 9c 82 18 b8 b2 1d 66 dd
  80. fb 7e c8 5d 6f c1 4c fe 1d 42 50 5b f0 c8 57 0e
  81. 1c 90 e1 e8 2d e0 ba b8 93 20 91 86 a1 ba a7 ce
  82. 7c 55 48 d6 6b 34 29 28 13 5a 47 b3 62 d1 c4 d7
  83. 93 85 fa fe 21 23 68 b6 83 b7 76 d9 b8 f7 dc 03
  84. 74 13 a7 b4 d3 4d e8 a5 e0 c1 99 db b0 85 04 a4
  85. 8f 0d 98 72 76 1c fb c3 c7 3e ca e0 fd cb f2 e9
  86. a0 90 a3 d2 c8 81 69 5f 23 e1 88 0f b6 5c c3 53
  87. 08 78 01 c2 8e 8c e6 d6 f5 86 73 b8 48 d8 98 56
  88. 9b 87 f8 c7 73 62 c5 59 a6 b6 e6 96 49 30 53 fb
  89. 24 00 7b 94 6f 0c 9d 4a 01 5b 4a 51 8f 79 7e b3
  90. db 92 f5 da c1 2c af 33 47 35 00 a2 8a c5 6b c0
  91. 7b 88 ae 9a 0a 04 64 8e 18 82 55 aa df 12 de 14
  92. d9 45 2b 54 de 6a 99 66 4a cd a3 ff a2 52 f4 99
  93. a5 27 4f ae 35 94 a3 a5 cc 6a df 1a f9 3d 87 4f
  94. 05 16 d8 21 a5 84 8d 63 6b 8b df 27 c4 0a d3 c0
  95. 47 8b 61 cc 5f c3 6e 2a b2 c6 0b 0d 1a 9d 1e 78
  96. fe 67 d5 e9 d5 a6 f7 6c 7b 86 16 e3 aa cf b1 12
  97. 2e 31 9c 70 02 36 4e df 0f 3e d6 ed f6 e8 10 c9
  98. 1d 22 1a ac ce d7 7e 93 ef 57 60 7a 30 cd f0 11
  99. 8a db 12 6a ab 53 54 1f 6f 4d 28 55 91 69 28 85
  100. 58 24 a6 3a 51 47 4b c6 ef b6 02 5e 94 df 68 72
  101. 14 43 7c b3 71 36 4d 02 7c 08 67 3f 7f 58 fe 6a
  102. 39 1e 90 a6 c2 13 ea 3c 62 2d a9 85 52 6b 03 ea
  103. 77 e4 5e c4 95 c9 66 f0 1a c6 4f d5 5d d3 fc 5d
  104. 0b fe a0 6e 50 85 bc 90 7b ef e0 5d 3e 9f 33 5a
  105. 31 f9 b6 f0 d3 54 09 96 87 48 0a c2 66 3b fa 32
  106. e6 cf f6 a7 4c 42 92 90 ba 8f 47 99 27 c9 f5 43
  107. e0 3a d8 cf 1b 8e 07 f0 4e 7c 49 5e 0f 70 7e 84
  108. 07 0e d6 e7 33 ec b3 d3 12 a8 8c c8 78 81 3e 63
  109. 24 1a ef e8 98 27 bd 93 31 4d 4e 39 74 be ef 4f
  110. 6d 88 f1 f8 ef 86 21 90 6a 59 9e ac e0 24 18 2e
  111. 65 3e d6 7d ca 84 0e 3d b4 a1 4b b2 f4 59 ae 6f
  112. 2f bb e5 33 67 d1 0f 25 86 08 1b ba 1f 6c b6 6f
  113. 28 46 d6 0a 45 7a 84 e4 a4 87 54 ef 95 32 d9 d4
  114. 5e 8d a3 9c e0 06 2b d6 99 09 37 70 09 dc 8f 2d
  115. b6 8f 49 12 0e 63 1c 70 4f 51 63 b6 ad 24 f4 8c
  116. 14 15 4f de 4b ad a0 11 47 be 89 68 7b 6b 8c 6b
  117. ff 3f 1d 88 c6 35 d4 e4 40 86 a5 da 02 6d d3 16
  118. bc 08 e3 c2 1c 48 b1 34 fc 7a 3f 1b f4 62 72 72
  119. 4a 9a 26 6b 09 fb 14 97 fb 30 4b ce 0c 51 e9 c0
  120. c2 44 20 93 08 b1 7f ea ef 11 3e dd ab e8 01 b9
  121. 25 33 8b 71 76 6a cb 65 ff a0 e6 ac bb a0 5f 93
  122. e7 f7 6a 5e 9e 5c a1 77 be 37 5b a2 95 8f a2 f0
  123. 15 fe 77 d0 16 22 40 f1 fc e0 89 95 f9 41 2d ef
  124. e5 31 87 1d 54 8a f5 cd 6b dc f8 d4 0d fd 85 7f
  125. 1c de e8 97 ce 6e 1b 41 fa 70 50 31 11 b5 14 77
  126. a4 81 d4 30 81 d1 a0 03 02 01 12 a2 81 c9 04 81
  127. c6 ab 62 0d 98 65 7a 9e bd b1 8f 2d cd 0f 87 13
  128. e0 50 ff 98 f9 08 92 39 b4 6b 83 68 87 64 3d b4
  129. f9 cc 2f ab 1f b3 dc f3 51 00 e6 f7 ee 67 d9 e4
  130. 00 d7 20 03 24 76 55 8b 0a b6 a2 c6 fb 5a 3b cb
  131. 91 4a f3 16 6c 32 b0 a5 49 51 0e 1b 41 68 f5 30
  132. 67 50 71 ec b7 53 ad bf 86 3a bb 72 dc 99 0c 5e
  133. 6c e4 1e 4d a7 08 a0 5a da 52 e1 b7 20 81 21 8e
  134. 14 b5 bc bd bb 9a 56 ae 96 a6 da 46 de 75 ba d8
  135. 17 0e e7 3d 3c 8c 32 31 bc e4 8c 4c a5 69 65 90
  136. 14 41 dd b8 ee e0 7c 0b ce 77 f9 a1 86 fb d6 18
  137. c5 5b 55 82 ce fb 78 31 7c 07 ca d9 73 c4 86 af
  138. cc 0b 42 44 83 99 b2 61 46 13 0e 0d 08 a6 60 94
  139. ed 03 87 09 78 30 b9
  140.  
  141. Other Length = 0
  142. Other Data:
  143.  
  144. 29/11/2018 14:38:16 17A8 PACKET 0000000005CD6060 TCP Snd 10.0.16.25 bb0b R Q [0080 NOERROR] TKEY (7)6900945(19)sig-mywindc02(7)MYDOMAIN(3)com(0)
  145. TCP response info at 0000000005CD6060
  146. Socket = 10732
  147. Remote addr 10.0.16.25, port 39539
  148. Time Query=13486573, Queued=0, Expire=0
  149. Buf length = 0x10000 (65536)
  150. Msg length = 0x01a9 (425)
  151. Message:
  152. XID 0xbb0b
  153. Flags 0x8000
  154. QR 1 (RESPONSE)
  155. OPCODE 0 (QUERY)
  156. AA 0
  157. TC 0
  158. RD 0
  159. RA 0
  160. Z 0
  161. CD 0
  162. AD 0
  163. RCODE 0 (NOERROR)
  164. QCOUNT 1
  165. ACOUNT 1
  166. NSCOUNT 0
  167. ARCOUNT 1
  168. QUESTION SECTION:
  169. Offset = 0x000c, RR count = 0
  170. Name "(7)6900945(19)sig-mywindc02(7)MYDOMAIN(3)com(0)"
  171. QTYPE TKEY (249)
  172. QCLASS 255
  173. ANSWER SECTION:
  174. Offset = 0x0039, RR count = 0
  175. Name "(7)6900945(19)sig-mywindc02(7)MYDOMAIN(3)com(0)"
  176. TYPE TKEY (249)
  177. CLASS 255
  178. TTL 0
  179. DLEN 212
  180. DATA
  181. Algorithm: (8)gss-tsig(0)
  182. Create time = 1543498696
  183. Expire time = 1543585096
  184. Mode = 3
  185. Extended RCODE = 0
  186. Key Length = 186
  187. Key:
  188. a1 81 b7 30 81 b4 a0 03 0a 01 00 a1 0b 06 09 2a
  189. 86 48 86 f7 12 01 02 02 a2 81 9f 04 81 9c 60 81
  190. 99 06 09 2a 86 48 86 f7 12 01 02 02 02 00 6f 81
  191. 89 30 81 86 a0 03 02 01 05 a1 03 02 01 0f a2 7a
  192. 30 78 a0 03 02 01 12 a2 71 04 6f 72 3e d3 27 20
  193. f1 a9 d9 32 4c 2d af 65 f9 9d 22 c3 13 19 03 e6
  194. 7d 10 d0 fa b2 ec 98 13 bd bf 02 43 c4 14 0d 8a
  195. 1e 7c 96 34 05 fd b7 18 ea 4a 5b 9e 5b f9 3e cd
  196. 46 1e 73 72 f8 fd 30 f6 06 41 d0 4c 3b 15 d8 ba
  197. b2 f2 fb 82 47 8e c7 88 89 ee e9 14 61 e5 1c e0
  198. 5f 4b 35 d6 1a 1a d5 2e 0f 78 89 8f c3 80 37 9f
  199. 78 cb 70 a2 d7 90 de 66 c7 e5
  200.  
  201. Other Length = 0
  202. Other Data:
  203. AUTHORITY SECTION:
  204. empty
  205. ADDITIONAL SECTION:
  206. Offset = 0x0140, RR count = 0
  207. Name "(7)6900945(19)sig-mywindc02(7)MYDOMAIN(3)com(0)"
  208. TYPE TSIG (250)
  209. CLASS 255
  210. TTL 0
  211. DLEN 54
  212. DATA
  213. Algorithm: (8)gss-tsig(0)
  214. Signed time = 1543498696
  215. Fudge time = 36000
  216. Sig Length = 28
  217. Signature:
  218. 04 04 05 ff ff ff ff ff 00 00 00 00 6d 28 33 97
  219. 88 4f be 77 57 f9 f5 4f 62 2d dd 9a
  220.  
  221. Original XID = bb0b
  222. Extended RCODE = 0
  223. Other Length = 0
  224. Other Data:
  225.  
  226. 29/11/2018 14:38:16 15B4 PACKET 0000000005CD6060 TCP Rcv 10.0.16.25 3dc8 U [0028 NOERROR] SOA (7)MYDOMAIN(3)com(0)
  227. TCP question info at 0000000005CD6060
  228. Socket = 10732
  229. Remote addr 10.0.16.25, port 33467
  230. Time Query=13486573, Queued=0, Expire=0
  231. Buf length = 0x10000 (65536)
  232. Msg length = 0x00a6 (166)
  233. Message:
  234. XID 0x3dc8
  235. Flags 0x2800
  236. QR 0 (QUESTION)
  237. OPCODE 5 (UPDATE)
  238. AA 0
  239. TC 0
  240. RD 0
  241. RA 0
  242. Z 0
  243. CD 0
  244. AD 0
  245. RCODE 0 (NOERROR)
  246. ZCOUNT 1
  247. PRECOUNT 0
  248. UPCOUNT 1
  249. ARCOUNT 1
  250. ZONE SECTION:
  251. Offset = 0x000c, RR count = 0
  252. Name "(7)MYDOMAIN(3)com(0)"
  253. ZTYPE SOA (6)
  254. ZCLASS 1
  255. PREREQUISITE SECTION:
  256. empty
  257. UPDATE SECTION:
  258. Offset = 0x001d, RR count = 0
  259. Name "(6)_msdcs[C00C](7)MYDOMAIN(3)com(0)"
  260. TYPE NS (2)
  261. CLASS 1
  262. TTL 900
  263. DLEN 13
  264. DATA (10)mysamba4dc[C00C](7)MYDOMAIN(3)com(0)
  265. ADDITIONAL SECTION:
  266. Offset = 0x003d, RR count = 0
  267. Name "(7)6900945(19)sig-mywindc02(7)mydomain(3)com(0)"
  268. TYPE TSIG (250)
  269. CLASS 255
  270. TTL 0
  271. DLEN 54
  272. DATA
  273. Algorithm: (8)gss-tsig(0)
  274. Signed time = 1543498696
  275. Fudge time = 300
  276. Sig Length = 28
  277. Signature:
  278. 04 04 04 ff ff ff ff ff 00 00 00 00 08 bf 9e 34
  279. 2a d4 16 9e 3b b1 40 f5 72 b0 3d 74
  280.  
  281. Original XID = 3dc8
  282. Extended RCODE = 0
  283. Other Length = 0
  284. Other Data:
  285.  
  286. 29/11/2018 14:38:16 12C0 PACKET 0000000005CD6060 TCP Snd 10.0.16.25 3dc8 R U [05a8 REFUSED] SOA (7)MYDOMAIN(3)com(0)
  287. TCP response info at 0000000005CD6060
  288. Socket = 10732
  289. Remote addr 10.0.16.25, port 33467
  290. Time Query=13486573, Queued=0, Expire=0
  291. Buf length = 0x10000 (65536)
  292. Msg length = 0x00a6 (166)
  293. Message:
  294. XID 0x3dc8
  295. Flags 0xa805
  296. QR 1 (RESPONSE)
  297. OPCODE 5 (UPDATE)
  298. AA 0
  299. TC 0
  300. RD 0
  301. RA 0
  302. Z 0
  303. CD 0
  304. AD 0
  305. RCODE 5 (REFUSED)
  306. ZCOUNT 1
  307. PRECOUNT 0
  308. UPCOUNT 1
  309. ARCOUNT 1
  310. ZONE SECTION:
  311. Offset = 0x000c, RR count = 0
  312. Name "(7)MYDOMAIN(3)com(0)"
  313. ZTYPE SOA (6)
  314. ZCLASS 1
  315. PREREQUISITE SECTION:
  316. empty
  317. UPDATE SECTION:
  318. Offset = 0x001d, RR count = 0
  319. Name "(6)_msdcs[C00C](7)MYDOMAIN(3)com(0)"
  320. TYPE NS (2)
  321. CLASS 1
  322. TTL 900
  323. DLEN 13
  324. DATA (10)mysamba4dc[C00C](7)MYDOMAIN(3)com(0)
  325. ADDITIONAL SECTION:
  326. Offset = 0x003d, RR count = 0
  327. Name "(7)6900945(19)sig-mywindc02(7)mydomain(3)com(0)"
  328. TYPE TSIG (250)
  329. CLASS 255
  330. TTL 0
  331. DLEN 54
  332. DATA
  333. Algorithm: (8)gss-tsig(0)
  334. Signed time = 1543498696
  335. Fudge time = 300
  336. Sig Length = 28
  337. Signature:
  338. 04 04 04 ff ff ff ff ff 00 00 00 00 08 bf 9e 34
  339. 2a d4 16 9e 3b b1 40 f5 72 b0 3d 74
  340.  
  341. Original XID = 3dc8
  342. Extended RCODE = 0
  343. Other Length = 0
  344. Other Data:
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement