Aug 5 00
38 user alert kernel: Intrusion -> IN=ppp0 OUT= MAC= SRC=58.9.33.229 DST=110.164.57.155 LEN=52 TOS=0x00 PREC=0x00 TTL=118 ID=20078 DF PROTO=TCP SPT=56177 DPT=31403 WINDOW=8192 RES=0x00 SYN URGP=0 MARK=0x8000000
Aug 5 00
40 user alert kernel: Intrusion -> IN=ppp0 OUT= MAC= SRC=58.9.33.229 DST=110.164.57.155 LEN=52 TOS=0x00 PREC=0x00 TTL=118 ID=20148 DF PROTO=TCP SPT=56177 DPT=31403 WINDOW=8192 RES=0x00 SYN URGP=0 MARK=0x8000000
Aug 5 00
47 user alert kernel: Intrusion -> IN=ppp0 OUT= MAC= SRC=58.9.33.229 DST=110.164.57.155 LEN=48 TOS=0x00 PREC=0x00 TTL=118 ID=20311 DF PROTO=TCP SPT=56177 DPT=31403 WINDOW=8192 RES=0x00 SYN URGP=0 MARK=0x8000000
Aug 5 00
47 user alert kernel: Intrusion -> IN=ppp0 OUT= MAC= SRC=171.7.81.237 DST=110.164.57.155 LEN=52 TOS=0x1C PREC=0x80 TTL=122 ID=4555 DF PROTO=TCP SPT=61119 DPT=31403 WINDOW=8192 RES=0x00 SYN URGP=0 MARK=0x8000000
Aug 5 00
50 user alert kernel: Intrusion -> IN=ppp0 OUT= MAC= SRC=171.7.81.237 DST=110.164.57.155 LEN=52 TOS=0x1C PREC=0x80 TTL=122 ID=4594 DF PROTO=TCP SPT=61119 DPT=31403 WINDOW=8192 RES=0x00 SYN URGP=0 MARK=0x8000000
Aug 5 00
56 daemon crit syslog: Clear IP addresses. PPP connection DOWN.
Aug 5 00
56 daemon crit syslog: Clear IP addresses. Connection DOWN.
Aug 5 00
00 daemon crit syslog: PPP server detected.
Aug 5 00
00 daemon crit syslog: PPP session established.
Aug 5 00
01 daemon crit syslog: PPP LCP UP.
Aug 5 00
01 daemon crit syslog: Received valid IP address from server. Connection UP.
Aug 5 00
31 user alert kernel: Intrusion -> IN=ppp0 OUT= MAC= SRC=58.9.33.229 DST=110.164.57.155 LEN=52 TOS=0x00 PREC=0x00 TTL=118 ID=21208 DF PROTO=TCP SPT=56314 DPT=31403 WINDOW=8192 RES=0x00 SYN URGP=0 MARK=0x8000000
Aug 5 00
34 user alert kernel: Intrusion -> IN=ppp0 OUT= MAC= SRC=58.9.33.229 DST=110.164.57.155 LEN=52 TOS=0x00 PREC=0x00 TTL=118 ID=21267 DF PROTO=TCP SPT=56314 DPT=31403 WINDOW=8192 RES=0x00 SYN URGP=0 MARK=0x8000000
Aug 5 00
40 user alert kernel: Intrusion -> IN=ppp0 OUT= MAC= SRC=58.8.18.61 DST=110.164.57.155 LEN=52 TOS=0x00 PREC=0x00 TTL=118 ID=31457 DF PROTO=TCP SPT=20000 DPT=31403 WINDOW=8192 RES=0x00 SYN URGP=0 MARK=0x8000000
Aug 5 00
40 user alert kernel: Intrusion -> IN=ppp0 OUT= MAC= SRC=58.9.33.229 DST=110.164.57.155 LEN=48 TOS=0x00 PREC=0x00 TTL=118 ID=21355 DF PROTO=TCP SPT=56314 DPT=31403 WINDOW=8192 RES=0x00 SYN URGP=0 MARK=0x8000000
Aug 5 00
42 user alert kernel: Intrusion -> IN=ppp0 OUT= MAC= SRC=171.7.81.237 DST=110.164.57.155 LEN=52 TOS=0x1C PREC=0x80 TTL=122 ID=5298 DF PROTO=TCP SPT=61317 DPT=31403 WINDOW=8192 RES=0x00 SYN URGP=0 MARK=0x8000000
หลุ่ดบ่อยมากกกก ไม่รู้เป็นอะไร
38 user alert kernel: Intrusion -> IN=ppp0 OUT= MAC= SRC=58.9.33.229 DST=110.164.57.155 LEN=52 TOS=0x00 PREC=0x00 TTL=118 ID=20078 DF PROTO=TCP SPT=56177 DPT=31403 WINDOW=8192 RES=0x00 SYN URGP=0 MARK=0x8000000Aug 5 00
40 user alert kernel: Intrusion -> IN=ppp0 OUT= MAC= SRC=58.9.33.229 DST=110.164.57.155 LEN=52 TOS=0x00 PREC=0x00 TTL=118 ID=20148 DF PROTO=TCP SPT=56177 DPT=31403 WINDOW=8192 RES=0x00 SYN URGP=0 MARK=0x8000000Aug 5 00
47 user alert kernel: Intrusion -> IN=ppp0 OUT= MAC= SRC=58.9.33.229 DST=110.164.57.155 LEN=48 TOS=0x00 PREC=0x00 TTL=118 ID=20311 DF PROTO=TCP SPT=56177 DPT=31403 WINDOW=8192 RES=0x00 SYN URGP=0 MARK=0x8000000Aug 5 00
47 user alert kernel: Intrusion -> IN=ppp0 OUT= MAC= SRC=171.7.81.237 DST=110.164.57.155 LEN=52 TOS=0x1C PREC=0x80 TTL=122 ID=4555 DF PROTO=TCP SPT=61119 DPT=31403 WINDOW=8192 RES=0x00 SYN URGP=0 MARK=0x8000000Aug 5 00
50 user alert kernel: Intrusion -> IN=ppp0 OUT= MAC= SRC=171.7.81.237 DST=110.164.57.155 LEN=52 TOS=0x1C PREC=0x80 TTL=122 ID=4594 DF PROTO=TCP SPT=61119 DPT=31403 WINDOW=8192 RES=0x00 SYN URGP=0 MARK=0x8000000Aug 5 00
56 daemon crit syslog: Clear IP addresses. PPP connection DOWN.Aug 5 00
56 daemon crit syslog: Clear IP addresses. Connection DOWN.Aug 5 00
00 daemon crit syslog: PPP server detected.Aug 5 00
00 daemon crit syslog: PPP session established.Aug 5 00
01 daemon crit syslog: PPP LCP UP.Aug 5 00
01 daemon crit syslog: Received valid IP address from server. Connection UP.Aug 5 00
31 user alert kernel: Intrusion -> IN=ppp0 OUT= MAC= SRC=58.9.33.229 DST=110.164.57.155 LEN=52 TOS=0x00 PREC=0x00 TTL=118 ID=21208 DF PROTO=TCP SPT=56314 DPT=31403 WINDOW=8192 RES=0x00 SYN URGP=0 MARK=0x8000000Aug 5 00
34 user alert kernel: Intrusion -> IN=ppp0 OUT= MAC= SRC=58.9.33.229 DST=110.164.57.155 LEN=52 TOS=0x00 PREC=0x00 TTL=118 ID=21267 DF PROTO=TCP SPT=56314 DPT=31403 WINDOW=8192 RES=0x00 SYN URGP=0 MARK=0x8000000Aug 5 00
40 user alert kernel: Intrusion -> IN=ppp0 OUT= MAC= SRC=58.8.18.61 DST=110.164.57.155 LEN=52 TOS=0x00 PREC=0x00 TTL=118 ID=31457 DF PROTO=TCP SPT=20000 DPT=31403 WINDOW=8192 RES=0x00 SYN URGP=0 MARK=0x8000000Aug 5 00
40 user alert kernel: Intrusion -> IN=ppp0 OUT= MAC= SRC=58.9.33.229 DST=110.164.57.155 LEN=48 TOS=0x00 PREC=0x00 TTL=118 ID=21355 DF PROTO=TCP SPT=56314 DPT=31403 WINDOW=8192 RES=0x00 SYN URGP=0 MARK=0x8000000Aug 5 00
42 user alert kernel: Intrusion -> IN=ppp0 OUT= MAC= SRC=171.7.81.237 DST=110.164.57.155 LEN=52 TOS=0x1C PREC=0x80 TTL=122 ID=5298 DF PROTO=TCP SPT=61317 DPT=31403 WINDOW=8192 RES=0x00 SYN URGP=0 MARK=0x8000000หลุ่ดบ่อยมากกกก ไม่รู้เป็นอะไร
Comment