На мой IP ведется постоянная DoS атака!!!

Тема в разделе 'Вопросы Интернет', создана пользователем Polax, 19 июн 2009.

  1. Polax Новичок

    Здравствуйте. Решил я перенастроить маршрутизатор и заглянул в логи. Оказывается систематические сбои в работе интернета связаны с тем, что на мой IP ведется постоянная DoS атака с IP нашей сети 172.16.8.42
    Вынужден обратится в Вам, так как самостоятельно данную проблему мне не решить, разве что не узнать адрес IP с которого ведется атака и разбираться с ним лично. Прошу принять меры. Лог атаки:

    С новой, более функциональной прошивкой:
    un 19 15:13:28 (none) kern.warn pppd[19692]: Warning - secret file /etc/ppp/chap-secrets has world and/or group access
    Jun 19 15:13:28 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.42 destination=172.16.100.55
    Jun 19 15:13:29 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.42 destination=172.16.100.55
    Jun 19 15:13:30 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.42 destination=172.16.100.55
    Jun 19 15:13:31 (none) kern.warn pppd[19692]: Warning - secret file /etc/ppp/chap-secrets has world and/or group access
    Jun 19 15:13:31 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.42 destination=172.16.100.55
    Jun 19 15:13:32 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.42 destination=172.16.100.55
    Jun 19 15:13:33 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.42 destination=172.16.100.55
    Jun 19 15:13:34 (none) kern.warn pppd[19692]: Warning - secret file /etc/ppp/chap-secrets has world and/or group access
    Jun 19 15:13:34 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.42 destination=172.16.100.55
    Jun 19 15:13:35 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.42 destination=172.16.100.55
    Jun 19 15:13:36 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.42 destination=172.16.100.55
    Jun 19 15:13:37 (none) kern.warn pppd[19692]: Warning - secret file /etc/ppp/chap-secrets has world and/or group access
    Jun 19 15:13:37 (none) kern.err pppd[19692]: MS-CHAPv2 mutual authentication failed.
    Jun 19 15:13:37 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.42 destination=172.16.100.55
    Jun 19 15:13:38 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.42 destination=172.16.100.55
    Jun 19 15:13:39 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.42 destination=172.16.100.55
    Jun 19 15:13:40 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.42 destination=172.16.100.55
    Jun 19 15:13:41 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.42 destination=172.16.100.55
    Jun 19 15:13:42 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.42 destination=172.16.100.55

    Хочу настроить маршрутизатор с новой более функциональной прошивкой.

    И судя по всему именно DoS атака мешает пройти аутентификацию на сервере с новой прошивкой.
    Jun 19 15:13:37 (none) kern.err pppd[19692]: MS-CHAPv2 mutual authentication failed.

    Функционал существующей прошивки меньше чем в новой прошивке, а значит она требует меньше it ресурсов, возможно это является причиной того что на ней, пусть и не с первой попытки, но подключиться удается. А на новой постоянный отказ пройти аутентификацию...

    Существует еще один вид сетевой угрозы, с которой пользователь не может сделать практически ничего. Это — флуд (flood) — одна из разновидностей DoS-атаки. Цель её — «затопить» меня мусорным трафиком, чаще всего с несуществующих адресов, и лишить меня и мои сервисы возможности отправлять или принимать полезную информацию. Она не угрожает моему компьютеру ничем, но временной лишает возможности работать в сети. Сообщаю об этом Вам, так как других вариантов решения этой проблемы нет.


    Да, и ещё... Если это возможно, скажите по какому адресу расположены компьютеры с IP адресами: 172.16.8.42 и 172.16.8.30 на кого зарегистрированы данные логины?


    Вот свежая информация: (конечно со старой прошивкой)
    Jun 19 16:25:19 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:20 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:21 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:22 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:23 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:24 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:25 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:26 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:27 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:28 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:29 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:30 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:31 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:32 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:33 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:34 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:35 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:36 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:37 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:38 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:39 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:40 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:41 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:42 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:43 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:44 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:45 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:46 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:47 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:48 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:49 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:50 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:51 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:52 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:53 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:54 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:55 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:56 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:57 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:58 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:25:59 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:00 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:01 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:02 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:03 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:04 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:05 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:06 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:07 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:08 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:09 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:10 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:11 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:12 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:13 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:14 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:15 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:16 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:17 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:18 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:19 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:20 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:21 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:22 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:23 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:24 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:25 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:26 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:27 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:28 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:29 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:30 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:31 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:32 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:33 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:34 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:35 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:36 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:37 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:38 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:39 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:40 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:41 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:42 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:43 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:44 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:45 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:46 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:47 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:48 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:49 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:50 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:51 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:52 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:53 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:54 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:55 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:56 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:57 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:58 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:26:59 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:00 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:01 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:02 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:03 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:04 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:05 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:06 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:07 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:08 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:09 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:10 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:11 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:12 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:13 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:14 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:15 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:16 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:17 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:18 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:19 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:20 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:21 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:22 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:23 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:24 (none) syslog.info ot create socket
    Jun 19 16:27:24 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:25 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:26 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:27 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:28 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:29 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:30 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:31 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:32 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:33 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:34 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:35 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:36 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:37 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:38 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:39 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:40 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:41 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:42 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:43 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:44 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:45 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:46 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:47 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:48 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:49 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:50 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:51 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:52 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:53 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:54 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:55 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:56 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:57 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:58 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:27:59 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:00 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:01 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:02 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:03 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:04 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:05 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:06 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:07 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:08 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:09 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:10 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:11 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:12 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:13 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:14 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:15 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:16 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:17 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:18 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:19 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:20 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:21 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:22 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:23 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:24 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:25 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:26 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:27 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:28 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:29 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:30 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:31 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:32 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:33 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:34 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:35 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:36 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:37 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:38 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:39 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:40 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:41 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:42 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:43 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:44 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:45 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:46 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:47 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:48 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:49 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:50 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:51 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:52 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:53 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:54 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:55 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:56 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:57 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:58 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:28:59 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.8.30 destination=172.16.100.55
    Jun 19 16:37:28 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.71 destination=172.16.100.55

    Новая атака:

    Jun 19 20:12:02 (none) kern.warn klogd: DoS: Port Scan Attack source=172.24.7.5 destination=172.16.100.55
    Jun 19 20:12:05 (none) kern.warn klogd: DoS: Port Scan Attack source=172.24.7.5 destination=172.16.100.55
    Jun 19 20:12:13 (none) kern.warn klogd: DoS: Port Scan Attack source=172.24.7.5 destination=172.16.100.55
    Jun 19 20:12:14 (none) kern.warn klogd: DoS: Port Scan Attack source=172.24.7.5 destination=172.16.100.55
    Jun 19 20:12:19 (none) kern.warn klogd: DoS: Port Scan Attack source=172.24.7.5 destination=172.16.100.55
    Jun 19 20:12:27 (none) kern.warn klogd: DoS: Port Scan Attack source=172.24.7.5 destination=172.16.100.55
    Jun 19 20:12:31 (none) kern.warn klogd: DoS: Port Scan Attack source=172.24.7.5 destination=172.16.100.55
    Jun 19 20:12:35 (none) kern.warn klogd: DoS: Port Scan Attack source=172.24.7.5 destination=172.16.100.55
    Jun 19 20:12:39 (none) kern.warn klogd: DoS: Port Scan Attack source=172.24.7.5 destination=172.16.100.55

    :?
  2. roman fredd Новичок

    Мхххх..., т.е у вас есть свой WEB-server и на него с определенных IP, осуществляется шквал сетевых пакетов? Странно? Может ошиблись?

    Ну, не знаю если у вас есть менеджер лога доступа, то наверняка есть и какой ни какой БАН лист, вот и воспользуйтесь им, забаньте всю подсеть от 172.16.8.0 до 172.16.8.255 и все, на другие IP адресса данный товаришь не перейдет)

    Если нет, вот переменная PHP - $REMOTE_ADDR, которая инициализирует IP адресс запросивший какую либо страницу на вашем сервере.
    Вот такой скрипт думаю поможет:

    Удачи, вам в борьбе с ДОСерами, а я на дачу седня еду, буду бороться лучше с колорадскими жуками :D
  3. Polax Новичок

    Спасибо... Попробую. Просто IP меняется постоянно... сегодня уже проще все - ни одной атаки не было... А продолжается все это уже около 10-ти дней - врятли это случайная атака...

    Мне главное чтоб прошивка новая работоспособная стала... Маршрутизатор то с атаками итак справляется, а вот о стабильной его работе, в последнее время сказать не могу!
  4. Polax Новичок

    Jun 20 21:22:23 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:22:24 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:22:30 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:22:31 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:22:40 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:22:41 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:22:42 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:22:48 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:22:54 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:22:55 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:23:11 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:23:12 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:23:13 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:23:14 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:23:20 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:23:21 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:23:39 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:23:40 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:23:41 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:23:42 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:23:43 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:24:00 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:24:01 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:24:02 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:24:03 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:24:07 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:24:08 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:24:11 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:24:12 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:24:15 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:24:16 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:24:34 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:24:35 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:24:40 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:24:50 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:24:51 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:24:52 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:24:57 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:24:58 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:25:05 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:25:06 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:25:23 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:25:24 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:25:25 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:25:40 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:25:56 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:25:57 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:25:58 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:26:04 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:26:05 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:26:28 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:26:40 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:26:41 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:26:42 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:26:54 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:26:55 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:26:56 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:27:05 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:27:06 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:27:07 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:27:08 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:27:19 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:27:29 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:27:30 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:27:31 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:27:32 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:27:35 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:27:36 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:27:40 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:27:41 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:27:44 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:31:25 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:32:02 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:32:45 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:32:58 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:33:29 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:33:40 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:34:01 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:35:29 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:36:09 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:39:00 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:39:19 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:39:25 (none) syslog.info ot create socket
    Jun 20 21:39:48 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:40:00 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:40:01 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:40:13 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:40:36 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:41:06 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:41:50 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:42:55 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:45:12 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:46:58 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:47:04 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:47:52 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:48:37 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:48:40 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:49:08 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:49:52 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:50:08 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:50:11 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:51:16 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55
    Jun 20 21:54:30 (none) kern.warn klogd: DoS: Port Scan Attack source=172.16.32.5 destination=172.16.100.55

Просматривают тему (Пользователей: 0, Гостей: 0)