EasyBox Ereignislogbuch

EStein

Cadet 2nd Year
Registriert
Sep. 2015
Beiträge
23
Hallo,

kann jemand anhand von dem Logbuch sagen ob sich jemand in meinen Router eingeloggt hat?

07/30/2016 23:35:53 192.168.2.104 login success
07/30/2016 23:32:53 sending ACK to 192.168.2.104
07/30/2016 23:30:23 sending ACK to 192.168.2.102
07/30/2016 23:30:22 sending OFFER to 192.168.2.102
07/30/2016 23:25:45 sending ACK to 192.168.2.173
07/30/2016 23:25:44 sending ACK to 192.168.2.173
07/30/2016 23:16:50 Wireless 8C:00:6D:84:C4:85 released
07/30/2016 22:59:34 sending ACK to 192.168.2.101
07/30/2016 22:59:33 sending OFFER to 192.168.2.101
07/30/2016 22:58:13 sending ACK to 192.168.2.173
07/30/2016 22:58:12 sending OFFER to 192.168.2.173
07/30/2016 14:37:59 NTP Date/Time updated.
07/30/2016 14:37:11 Get system time from NTP server:129.250.35.250.
07/30/2016 10:35:24 **UDP Loop** 74.82.47.49, 48695->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/30/2016 10:19:24 **UDP Loop** 185.94.111.1, 57719->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/30/2016 03:50:19 **UDP Loop** 158.69.243.83, 55310->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/30/2016 02:37:11 NTP Date/Time updated.
07/30/2016 02:36:22 Get system time from NTP server:213.95.200.109.
07/29/2016 14:36:22 NTP Date/Time updated.
07/29/2016 14:35:34 Get system time from NTP server:131.188.3.220.
07/29/2016 10:38:30 **UDP Loop** 74.82.47.21, 48058->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/29/2016 03:50:19 **UDP Loop** 158.69.243.83, 49815->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/29/2016 02:35:34 NTP Date/Time updated.
07/29/2016 02:34:45 Get system time from NTP server:78.47.93.200.
07/28/2016 23:41:32 **UDP Loop** 185.94.111.1, 56084->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/28/2016 19:12:51 **ICMP TimeStamp request** 50.184.74.163->> 94.222.88.30, Type:13, Code:0 (from PPPoE1 Inbound)
07/28/2016 14:34:45 NTP Date/Time updated.
07/28/2016 14:33:57 Get system time from NTP server:212.18.3.18.
07/28/2016 11:01:44 **UDP Loop** 74.82.47.17, 48120->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/28/2016 02:33:57 NTP Date/Time updated.
07/28/2016 02:33:08 Get system time from NTP server:213.95.200.111.
07/27/2016 17:24:29 **UDP Loop** 158.69.243.225, 47809->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/27/2016 14:33:08 NTP Date/Time updated.
07/27/2016 14:32:20 Get system time from NTP server:195.50.171.101.
07/27/2016 11:08:44 **UDP Loop** 104.255.70.247, 36487->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/27/2016 10:52:41 **UDP Loop** 185.94.111.1, 53543->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/27/2016 10:32:12 **UDP Loop** 74.82.47.61, 37745->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/27/2016 09:44:19 **UDP Loop** 158.69.243.83, 55096->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/27/2016 02:32:20 NTP Date/Time updated.
07/27/2016 02:31:31 Get system time from NTP server:81.88.24.155.
07/26/2016 14:31:31 NTP Date/Time updated.
07/26/2016 14:30:45 Get system time from NTP server:212.227.54.68.
07/26/2016 13:35:25 **UDP Loop** 5.39.31.157, 32906->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/26/2016 10:39:24 **UDP Loop** 74.82.47.13, 35276->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/26/2016 07:44:54 **ICMP TimeStamp request** 81.229.227.103->> 94.222.88.30, Type:13, Code:0 (from PPPoE1 Inbound)
07/26/2016 05:11:49 **UDP Loop** 185.128.40.162, 40846->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/26/2016 02:30:45 NTP Date/Time updated.
07/26/2016 02:29:54 Get system time from NTP server:144.76.43.40.
07/26/2016 00:47:19 **UDP Loop** 185.94.111.1, 43791->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/26/2016 00:13:40 **UDP Loop** 64.137.244.174, 59678->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/25/2016 14:29:54 NTP Date/Time updated.
07/25/2016 14:29:06 Get system time from NTP server:5.9.122.148.
07/25/2016 11:47:52 **UDP Loop** 71.6.135.131, 27221->> 94.222.88.30, 7 (from PPPoE1 Inbound)
07/25/2016 10:13:10 **UDP Loop** 74.82.47.37, 35168->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/25/2016 02:29:06 NTP Date/Time updated.
07/25/2016 02:28:17 Get system time from NTP server:5.189.152.108.
07/24/2016 21:39:10 **UDP Loop** 158.69.243.83, 47176->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/24/2016 14:28:17 NTP Date/Time updated.
07/24/2016 14:27:29 Get system time from NTP server:5.45.97.110.
07/24/2016 13:41:28 **UDP Loop** 185.94.111.1, 54682->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/24/2016 10:22:40 **UDP Loop** 74.82.47.5, 38172->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/24/2016 02:27:29 NTP Date/Time updated.
07/24/2016 02:26:40 Get system time from NTP server:131.234.137.23.
07/23/2016 19:19:26 **UDP Loop** 158.69.243.83, 48853->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/23/2016 14:26:40 NTP Date/Time updated.
07/23/2016 14:25:52 Get system time from NTP server:95.142.67.61.
07/23/2016 10:19:10 **UDP Loop** 74.82.47.61, 60082->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/23/2016 05:57:55 **Smurf** 212.129.29.0, 80->> 94.222.88.30, 48792 (from PPPoE1 Inbound)
07/23/2016 02:53:26 **UDP Loop** 185.94.111.1, 38142->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/23/2016 02:25:52 NTP Date/Time updated.
07/23/2016 02:25:03 Get system time from NTP server:217.91.44.17.
07/22/2016 22:24:17 **UDP Loop** 93.174.93.127, 54710->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/22/2016 14:25:03 NTP Date/Time updated.
07/22/2016 14:24:15 Get system time from NTP server:129.250.35.250.
07/22/2016 11:12:28 **UDP Loop** 74.82.47.37, 48758->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/22/2016 10:08:54 **Smurf** 193.124.180.255, 80->> 94.222.88.30, 40633 (from PPPoE1 Inbound)
07/22/2016 09:53:18 **Smurf** 193.124.180.255, 80->> 94.222.88.30, 53388 (from PPPoE1 Inbound)
07/22/2016 02:24:15 NTP Date/Time updated.
07/22/2016 02:23:26 Get system time from NTP server:213.95.200.109.
07/21/2016 15:08:34 **UDP Loop** 185.94.111.1, 33047->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/21/2016 14:44:10 **UDP Loop** 198.20.69.74, 27221->> 94.222.88.30, 7 (from PPPoE1 Inbound)
07/21/2016 14:23:26 NTP Date/Time updated.
07/21/2016 14:22:38 Get system time from NTP server:131.188.3.220.
07/21/2016 11:30:19 **UDP Loop** 74.82.47.17, 37370->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/21/2016 08:04:19 **UDP Loop** 158.69.243.83, 55093->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/21/2016 04:24:06 **UDP Loop** 198.20.70.114, 63487->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/21/2016 02:22:38 NTP Date/Time updated.
07/21/2016 02:21:49 Get system time from NTP server:78.47.93.200.
07/21/2016 02:14:02 **UDP Loop** 185.128.40.162, 32940->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/20/2016 14:21:49 NTP Date/Time updated.
07/20/2016 14:21:01 Get system time from NTP server:212.18.3.18.
07/20/2016 10:14:13 **UDP Loop** 74.82.47.49, 36826->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/20/2016 05:45:03 **UDP Loop** 158.69.243.83, 41940->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/20/2016 02:21:01 NTP Date/Time updated.
07/20/2016 02:20:12 Get system time from NTP server:213.95.200.111.
07/20/2016 00:08:21 **UDP Loop** 158.69.243.225, 47599->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/19/2016 16:55:21 **UDP Loop** 185.94.111.1, 33456->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/19/2016 14:20:12 NTP Date/Time updated.
07/19/2016 14:19:24 Get system time from NTP server:195.50.171.101.
07/19/2016 10:11:00 **UDP Loop** 74.82.47.57, 33542->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/19/2016 06:36:38 **UDP Loop** 104.255.70.247, 33700->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/19/2016 03:19:53 **UDP Loop** 5.196.199.226, 53003->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/19/2016 02:19:24 NTP Date/Time updated.
07/19/2016 02:18:35 Get system time from NTP server:81.88.24.155.
07/18/2016 14:18:35 NTP Date/Time updated.
07/18/2016 14:17:47 Get system time from NTP server:212.227.54.68.
07/18/2016 12:50:14 **UDP Loop** 158.69.243.83, 57354->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/18/2016 11:31:48 **ICMP TimeStamp request** 83.152.230.165->> 94.222.88.30, Type:13, Code:0 (from PPPoE1 Inbound)
07/18/2016 10:51:51 **UDP Loop** 74.82.47.17, 54418->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/18/2016 06:35:52 **UDP Loop** 185.94.111.1, 56964->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/18/2016 02:58:22 **UDP Loop** 118.193.26.38, 48111->> 94.222.88.30, 7 (from PPPoE1 Inbound)
07/18/2016 02:58:22 **UDP Loop** 118.193.26.37, 52640->> 94.222.88.30, 7 (from PPPoE1 Inbound)
07/18/2016 02:17:47 NTP Date/Time updated.
07/18/2016 02:16:58 Get system time from NTP server:144.76.43.40.
07/17/2016 20:27:12 **UDP Loop** 185.35.62.48, 60164->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/17/2016 14:44:19 **UDP Loop** 93.174.93.127, 52733->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/17/2016 14:16:58 NTP Date/Time updated.
07/17/2016 14:16:10 Get system time from NTP server:5.9.122.148.
07/17/2016 12:52:10 **UDP Loop** 158.69.243.83, 38837->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/17/2016 10:15:34 **UDP Loop** 74.82.47.9, 57646->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/17/2016 02:16:10 NTP Date/Time updated.
07/17/2016 02:15:21 Get system time from NTP server:5.189.152.108.
07/17/2016 00:22:44 **UDP Loop** 185.128.40.162, 43511->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/16/2016 19:00:25 **UDP Loop** 185.94.111.1, 33876->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/16/2016 14:15:21 NTP Date/Time updated.
07/16/2016 14:14:33 Get system time from NTP server:5.45.97.110.
07/16/2016 09:38:27 **UDP Loop** 74.82.47.25, 58127->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/16/2016 02:14:33 NTP Date/Time updated.
07/16/2016 02:13:44 Get system time from NTP server:131.234.137.23.
07/15/2016 21:10:14 Wireless 8C:00:6D:84:C4:85 released
07/15/2016 21:07:54 Wireless 60:21:C0:0B:1B:CD released
07/15/2016 21:07:54 Wireless 18:9E:FC:20:E6:E5 released
07/15/2016 21:02:30 sending ACK to 192.168.2.101
07/15/2016 19:56:14 Wireless 28:C6:8E:61:05:DA released
07/15/2016 18:42:36 sending ACK to 192.168.2.101
07/15/2016 17:42:54 Wireless 18:9E:FC:20:E6:E5 released
07/15/2016 17:37:09 sending ACK to 192.168.2.104
07/15/2016 17:26:36 sending ACK to 192.168.2.104
07/15/2016 17:26:34 Wireless 28:C6:8E:61:05:DA released
07/15/2016 17:25:35 sending ACK to 192.168.2.104
07/15/2016 17:25:34 Wireless 28:C6:8E:61:05:DA released
07/15/2016 17:25:22 sending ACK to 192.168.2.104
07/15/2016 17:25:18 sending ACK to 192.168.2.104
07/15/2016 17:22:49 sending ACK to 192.168.2.104
07/15/2016 17:21:32 sending ACK to 192.168.2.104
07/15/2016 17:20:19 sending ACK to 192.168.2.104
07/15/2016 17:19:52 sending ACK to 192.168.2.104
07/15/2016 17:17:03 sending ACK to 192.168.2.102
07/15/2016 17:16:45 sending ACK to 192.168.2.101
07/15/2016 16:21:54 Wireless 60:21:C0:0B:1B:CD released
07/15/2016 16:21:14 Wireless 18:9E:FC:20:E6:E5 released
07/15/2016 16:16:54 Wireless 28:C6:8E:61:05:DA released
07/15/2016 14:53:49 sending ACK to 192.168.2.102
07/15/2016 14:30:05 sending ACK to 192.168.2.101
07/15/2016 14:13:44 NTP Date/Time updated.
07/15/2016 14:12:55 Get system time from NTP server:95.142.67.61.
07/15/2016 13:27:05 Wireless 18:9E:FC:20:E6:E5 released
07/15/2016 13:18:04 sending ACK to 192.168.2.104
07/15/2016 12:47:38 sending ACK to 192.168.2.101
07/15/2016 12:00:06 **UDP Loop** 5.196.199.226, 53251->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/15/2016 11:31:59 **UDP Loop** 198.20.69.98, 63487->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/15/2016 11:21:51 sending ACK to 192.168.2.173
07/15/2016 09:39:17 **UDP Loop** 74.82.47.29, 51127->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/15/2016 09:27:05 Wireless 00:13:CE:AF:7F:85 released
07/15/2016 08:51:47 sending ACK to 192.168.2.100
07/15/2016 07:11:24 **UDP Loop** 185.94.111.1, 51667->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/15/2016 06:54:36 **UDP Loop** 93.174.94.141, 49816->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/15/2016 02:12:55 NTP Date/Time updated.
07/15/2016 02:12:06 Get system time from NTP server:217.91.44.17.
07/15/2016 01:09:34 **UDP Loop** 118.193.26.38, 33912->> 94.222.88.30, 7 (from PPPoE1 Inbound)
07/15/2016 01:09:34 **UDP Loop** 118.193.26.37, 54487->> 94.222.88.30, 7 (from PPPoE1 Inbound)
07/15/2016 00:17:23 **UDP Loop** 158.69.244.160, 59411->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/14/2016 23:49:56 Wireless 28:C6:8E:61:05:DA released
07/14/2016 23:49:16 Wireless 18:9E:FC:20:E6:E5 released
07/14/2016 23:06:36 sending ACK to 192.168.2.100
07/14/2016 22:38:06 sending ACK to 192.168.2.173
07/14/2016 21:47:20 **SYN Flood to Host** 192.168.2.104, 51558->> 184.73.249.101, 80 (from PPPoE1 Outbound)
07/14/2016 21:12:58 **UDP Loop** 185.35.62.137, 60853->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/14/2016 20:36:23 sending ACK to 192.168.2.102
07/14/2016 19:19:44 sending ACK to 192.168.2.104
07/14/2016 18:48:34 sending ACK to 192.168.2.101
07/14/2016 16:53:56 Wireless 18:9E:FC:20:E6:E5 released
07/14/2016 16:35:40 sending ACK to 192.168.2.101
07/14/2016 15:32:56 Wireless 28:C6:8E:61:05:DA released
07/14/2016 14:35:30 sending ACK to 192.168.2.101
07/14/2016 14:12:36 NTP Date/Time updated.



LG Estein
 
welches ist das von dir bemerkte problem/verhalten?

Code:
07/18/2016 10:51:51 **UDP Loop** 74.82.47.17, 54418->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/18/2016 06:35:52 **UDP Loop** 185.94.111.1, 56964->> 94.222.88.30, 19 (from PPPoE1 Inbound)
07/18/2016 02:58:22 **UDP Loop** 118.193.26.38, 48111->> 94.222.88.30, 7 (from PPPoE1 Inbound)
07/18/2016 02:58:22 **UDP Loop** 118.193.26.37, 52640->> 94.222.88.30, 7 (from PPPoE1 Inbound)
da versucht jemand zu dir zu kommen mit udp-anfragen.
wer kannst du auch selbst herausfinden über whois-daten (amerika, russland, frankreich).
was derjenige will ...
 
Warum will der zu mir und was soll ich jetzt machen?
 
wollte mich da jemand DDOSEN? wie kann ich herausfinden wer das war?
 
es gibt verschiedene angriffsarten
1) jemand will dich ddosen
2) spoofing wie es im artikel beschrieben wird. jemand schickt dir eine gefälschte anfrage, dein router reagiert darauf und schickt die antwort an die gespoofte adresse. das macht der angreiffer bei 1000 anschlüssen die alle auf das gleiche ziel gehen und schon kannd er nix mehr machen weil 1000-facher mist an daten kommt.

wie kannst du das herausfinden?
garnicht. wobei die ip steht ja im log. wer hinter der ip sitzt ist fraglich.

was machst du dir so nen kopf?
gibt es probleme? hab ich ja schon gefragt aber keine antwort bekommen

/edit: achja. solange du einen consumeranschluss mit entsprechenden consumerendgeräten hast wird selbst der provider nix machen falls die frage kommt.
auch bei businessanschlüssen muss das produkt entsprechend sein damit da was passiert. alles andere ist uninteressant
 
Zuletzt bearbeitet:
Zurück
Oben