[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[connect24h:01811] 2/27 probe 情報 (Re: 2/26 probe 情報)



こんばんは、え と申します。

2/27 一日のこちらの状況です。

TCP/111(sunrpc)
UDP/137(netbios-ns)
UDP/31337(Back-Orifice)
UDP/53(domain)
ICMP type 3

Feb 27 00:05:24 Rejected IN filter: TCP 210.65.*.*:2966 > 210.230.*.*:111
Feb 27 00:29:32 Rejected IN filter: UDP 210.243.*.*:137 > 210.230.*.*:137
Feb 27 00:39:33 Rejected IN filter: UDP 210.127.*.*:137 > 210.230.*.*:137
Feb 27 01:04:57 Rejected IN filter: UDP 210.109.*.*:137 > 210.230.*.*:137
Feb 27 01:12:20 Rejected IN filter: UDP 210.206.*.*:137 > 210.230.*.*:137
Feb 27 03:31:39 Rejected IN filter: UDP 211.33.*.*:31338 > 210.230.*.*:31337
Feb 27 05:25:11 Rejected IN filter: UDP 210.101.*.*:137 > 210.230.*.*:137
Feb 27 09:08:52 Rejected IN filter: UDP 210.220.*.*:137 > 210.230.*.*:137
Feb 27 10:54:07 Rejected IN filter: TCP 63.207.*.*:4312 > 210.230.*.*:111
Feb 27 14:13:17 Rejected IN filter: UDP 202.235.*.*:736 > 210.230.*.*:53 (DNS Query [rodfbs.org])
Feb 27 14:33:49 Rejected IN filter: UDP 210.24.*.*:137 > 210.230.*.*:137
Feb 27 14:52:42 Rejected IN filter: UDP 211.104.*.*:137 > 210.230.*.*:137
Feb 27 14:52:42 Rejected IN filter: UDP 210.81.*.*:137 > 210.230.*.*:137
Feb 27 15:07:22 Rejected IN filter: UDP 211.38.*.*:137 > 210.230.*.*:137
Feb 27 15:28:52 Rejected IN filter: UDP 211.4.*.*:987 > 210.230.*.*:53 (DNS Query [rodfbs.org])
Feb 27 15:28:56 Rejected IN filter: UDP 202.235.*.*:981 > 210.230.*.*:53 (DNS Query [rodfbs.org])
Feb 27 15:44:33 Rejected IN filter: UDP 210.98.*.*:137 > 210.230.*.*:137
Feb 27 21:16:10 Rejected IN filter: ICMP 62.20.*.* > 210.230.*.* :  3
Feb 27 21:48:11 Rejected IN filter: UDP 210.249.*.*:137 > 210.230.*.*:137
Feb 27 22:29:57 Rejected IN filter: UDP 64.250.*.*:137 > 210.230.*.*:137

いずれも reject を開始した最初のもののみ書いています。

上記のうち
Feb 27 14:13:17 Rejected IN filter: UDP 202.235.*.*:736 > 210.230.*.*:53 (DNS Query [rodfbs.org])

Feb 27 14:52:42 Rejected IN filter: UDP 211.104.*.*:137 > 210.230.*.*:137
Feb 27 14:52:42 Rejected IN filter: UDP 210.81.*.*:137 > 210.230.*.*:137

Feb 27 15:28:52 Rejected IN filter: UDP 211.4.*.*:987 > 210.230.*.*:53 (DNS Query [rodfbs.org])
Feb 27 15:28:56 Rejected IN filter: UDP 202.235.*.*:981 > 210.230.*.*:53 (DNS Query [rodfbs.org])

については対 日本サイトアタック情報掲示版にも詳細ログを
書きました。

http://blue.blue.ac/bbs/cyclamen.cgi/cyclamen.cgi?tree=c198

--あかさかえりや <eakasaka@xxxxxxxxxx>
<eakasaka@xxxxxxxxxxxxxxxxxxxxxxxxxx>