obetinho
(usa Fedora)
Enviado em 03/03/2011 - 15:52h
> iptables -vL
Chain INPUT (policy DROP 674 packets, 205K bytes)
pkts bytes target prot opt in out source destination
1197K 245M LOG all -- eth0 any anywhere anywhere LOG level debug prefix `BANDWIDTH_IN:'
1230K 252M ACCEPT all -- !eth1 any anywhere anywhere
858K 821M ACCEPT all -- any any anywhere anywhere state RELATED,ESTABLISHED
0 0 TRINOO tcp -- eth1 any anywhere anywhere tcp dpt:27444
0 0 TRINOO tcp -- eth1 any anywhere anywhere tcp dpt:27665
0 0 TRINOO tcp -- eth1 any anywhere anywhere tcp dpt:31335
0 0 TRINOO tcp -- eth1 any anywhere anywhere tcp dpt:34555
0 0 TRINOO tcp -- eth1 any anywhere anywhere tcp dpt:35555
0 0 TROJAN tcp -- eth1 any anywhere anywhere tcp dpt:mdqs
0 0 TROJAN tcp -- eth1 any anywhere anywhere tcp dpt:mdqs
0 0 TROJAN tcp -- eth1 any anywhere anywhere tcp dpt:terabase
0 0 TROJAN tcp -- eth1 any anywhere anywhere tcp dpt:x11
0 0 TROJAN tcp -- eth1 any anywhere anywhere tcp dpt:6006
0 0 TROJAN tcp -- eth1 any anywhere anywhere tcp dpt:16660
0 0 ACCEPT icmp -- any any anywhere anywhere
0 0 SCANNER tcp -- eth1 any anywhere anywhere tcp flags:FIN,SYN,RST,PSH,ACK,URG/FIN,PSH,URG
0 0 SCANNER tcp -- eth1 any anywhere anywhere tcp flags:FIN,SYN,RST,PSH,ACK,URG/NONE
0 0 SCANNER tcp -- eth1 any anywhere anywhere tcp flags:FIN,SYN,RST,PSH,ACK,URG/FIN,SYN,RST,PSH,ACK,URG
0 0 SCANNER tcp -- eth1 any anywhere anywhere tcp flags:FIN,SYN,RST,PSH,ACK,URG/FIN,SYN
0 0 SCANNER tcp -- eth1 any anywhere anywhere tcp flags:FIN,SYN,RST,PSH,ACK,URG/FIN,SYN,RST,ACK,URG
0 0 SCANNER tcp -- eth1 any anywhere anywhere tcp flags:SYN,RST/SYN,RST
0 0 SCANNER tcp -- eth1 any anywhere anywhere tcp flags:FIN,SYN/FIN,SYN
0 0 LOG tcp -- eth1 any anywhere anywhere tcp dpt:telnet LOG level info prefix `FIREWALL: telnet: '
0 0 LOG tcp -- eth1 any anywhere anywhere tcp dpt:smtp LOG level info prefix `FIREWALL: smtp: '
0 0 ACCEPT tcp -- eth1 any anywhere anywhere tcp spt:ftp-data dpts:1024:65535 flags:FIN,SYN,RST,ACK/SYN state RELATED
0 0 ACCEPT tcp -- eth1 any anywhere anywhere tcp dpt:domain
0 0 ACCEPT udp -- eth1 any anywhere anywhere udp dpt:domain
1 60 ACCEPT tcp -- eth1 any anywhere anywhere tcp dpt:mysql
0 0 ACCEPT tcp -- eth1 any anywhere anywhere tcp dpt:postgres
1 48 ACCEPT tcp -- eth1 any anywhere anywhere tcp dpt:5522
0 0 ACCEPT tcp -- eth1 any anywhere anywhere tcp dpt:glrpc
0 0 ACCEPT tcp -- eth1 any anywhere anywhere tcp dpt:5622
0 0 ACCEPT tcp -- any any anywhere anywhere tcp dpt:ndmp
Chain FORWARD (policy DROP 67 packets, 3046 bytes)
pkts bytes target prot opt in out source destination
80977 46M LOG all -- any eth0 anywhere anywhere LOG level debug prefix `BANDWIDTH_OUT:'
80823 30M LOG all -- eth0 any anywhere anywhere LOG level debug prefix `BANDWIDTH_IN:'
264 20482 LOG tcp -- any any anywhere anywhere tcp flags:!FIN,SYN,RST,ACK/SYN state NEW LOG level info prefix `FIREWALL: NEW sem syn: '
264 20482 DROP tcp -- any any anywhere anywhere tcp flags:!FIN,SYN,RST,ACK/SYN state NEW
161K 76M ACCEPT all -- any any anywhere anywhere state NEW,RELATED,ESTABLISHED
0 0 REJECT tcp -- eth0 any anywhere anywhere tcp dpt:epmap reject-with icmp-port-unreachable
0 0 ACCEPT tcp -- any any anywhere anywhere tcp flags:FIN,SYN,RST,ACK/SYN limit: avg 2/sec burst 5
0 0 ACCEPT icmp -- any any anywhere anywhere icmp echo-request limit: avg 1/sec burst 5
Chain OUTPUT (policy DROP 4351 packets, 183K bytes)
pkts bytes target prot opt in out source destination
1610K 1350M LOG all -- any eth0 anywhere anywhere LOG level debug prefix `BANDWIDTH_OUT:'
2383K 1513M ACCEPT all -- any any anywhere anywhere state NEW,RELATED,ESTABLISHED
Chain SCANNER (7 references)
pkts bytes target prot opt in out source destination
0 0 LOG all -- any any anywhere anywhere limit: avg 15/min burst 5 LOG level info prefix `FIREWALL: port scanner: '
0 0 DROP all -- any any anywhere anywhere
Chain TRINOO (5 references)
pkts bytes target prot opt in out source destination
0 0 LOG all -- any any anywhere anywhere limit: avg 15/min burst 5 LOG level info prefix `FIREWALL: trinoo: '
0 0 DROP all -- any any anywhere anywhere
Chain TROJAN (6 references)
pkts bytes target prot opt in out source destination
0 0 LOG all -- any any anywhere anywhere limit: avg 15/min burst 5 LOG level info prefix `FIREWALL: trojan: '
0 0 DROP all -- any any anywhere anywhere