*** Rapport Routeur - monrouteur

** Le 27 Janvier 2002


Sommaire


ACLs vues


ACLs surveillées

 ***   100        Entree Site          :     740 lignes
 ***   101        Sortie Site          :      20 lignes
          ---

ACLs non surveillées

          ---

       Total                           :     760 lignes


Le palmarès...


*** ACL 100 - Entree Site

 *** Les adresses source les plus actifs :

 100    212.129.154.213                 182 lignes - ut-ovv-1ad5.adsl.wanadoo.nl
 100    216.27.134.215                  141 lignes - dsl027-134-215.nyc1.dsl.speakeasy.net
 100    61.218.36.10                     96 lignes - 61.218.36.10
 100    24.248.170.74                    44 lignes - cad3127795-a.crlspr1.fl.home.com
 100    210.170.99.79                    44 lignes - firefly.comcom.co.jp
 100    61.127.217.39                    31 lignes - tx.028.co.jp
 100    194.205.185.100                  30 lignes - 194.205.185.100
 100    202.164.166.204                  25 lignes - 202.164.166.204
 100    212.74.101.3                     25 lignes - mk-www-1.portal.uk.tiscali.com
 100    194.239.21.20                    14 lignes - 0xc2ef1514.boanxx9.adsl-dhcp.tele.dk

 *** Les adresses de destination les plus recherchés :

 100    194.214.158.145                 151 lignes - gillespie
 100    194.214.158.14                  141 lignes - coltrane
 100    194.214.158.144                 104 lignes - evans
 100    194.214.158.140                  99 lignes - ravel
 100    194.214.158.50                   38 lignes - walterscott
 100    194.214.158.41                    7 lignes - barnabe
 100    194.214.158.165                   7 lignes - crocodile
 100    194.214.158.42                    6 lignes - nastacia
 100    194.214.158.46                    6 lignes - mapinguari
 100    194.214.158.32                    6 lignes - saci

 *** Les ports de destination les plus recherchés :

 100        25 tcp  smtp                600 lignes
 100        22 tcp  ssh                  30 lignes
 100        80 tcp  www-http             26 lignes
 100      1024 tcp                       18 lignes
 100      1080 tcp  socks                 4 lignes
 100      1130 tcp                        4 lignes
 100      1112 tcp                        4 lignes
 100      1260 tcp                        3 lignes
 100      1171 tcp                        3 lignes
 100      1102 tcp                        2 lignes

*** ACL 101 - Sortie Site

 *** Les adresses source les plus actifs :

 101    10.3.6.160                       10 lignes - 10.3.6.160
 101    10.3.6.174                        6 lignes - 10.3.6.174
 101    10.3.6.172                        2 lignes - 10.3.6.172
 101    10.3.6.154                        2 lignes - 10.3.6.154

 *** Les adresses de destination les plus recherchés :

 101    207.188.7.131                    10 lignes - outpostrr1.real.com
 101    212.64.61.59                      2 lignes - 4dyn59.ldam.casema.net
 101    193.252.19.244                    2 lignes - 193.252.19.244
 101    212.64.61.209                     2 lignes - 4dyn209.ldam.casema.net
 101    206.34.39.203                     2 lignes - mathsoft.com
 101    195.101.94.178                    2 lignes - chat1.voila.fr

 *** Les ports de destination les plus recherchés :

 101        ** tcp                       20 lignes


Les scans


*** ACL 100 - Entree Site

*** SCAN a partir de 24.248.170.74    cad3127795-a.crlspr1.fl.home.com
    44 ligne(s), 37 adresse(s), 1 port(s)
 ** PORTS
       25/tcp  - smtp             
 ** ADRESSES
    194.214.158.17    194.214.158.26    194.214.158.39    194.214.158.87    
    194.214.158.119   194.214.158.120   194.214.158.121   194.214.158.123   
    194.214.158.124   194.214.158.126   194.214.158.127   194.214.158.128   
    194.214.158.129   194.214.158.130   194.214.158.139   194.214.158.147   
    194.214.158.148   194.214.158.149   194.214.158.150   194.214.158.151   
    194.214.158.152   194.214.158.153   194.214.158.154   194.214.158.155   
    194.214.158.156   194.214.158.157   194.214.158.158   194.214.158.159   
    194.214.158.162   194.214.158.175   194.214.158.212   194.214.158.236   
    194.214.158.237   194.214.158.239   194.214.158.247   194.214.158.248   
    194.214.158.253   

*** SCAN a partir de 194.205.185.100  194.205.185.100
    30 ligne(s), 27 adresse(s), 1 port(s)
 ** PORTS
       22/tcp  - ssh              
 ** ADRESSES
    194.214.158.0     194.214.158.1     194.214.158.16    194.214.158.17    
    194.214.158.29    194.214.158.45    194.214.158.46    194.214.158.47    
    194.214.158.50    194.214.158.102   194.214.158.103   194.214.158.104   
    194.214.158.105   194.214.158.111   194.214.158.116   194.214.158.120   
    194.214.158.125   194.214.158.128   194.214.158.157   194.214.158.207   
    194.214.158.225   194.214.158.232   194.214.158.234   194.214.158.236   
    194.214.158.237   194.214.158.239   194.214.158.240   

*** SCAN a partir de 202.164.166.204  202.164.166.204
    25 ligne(s), 22 adresse(s), 1 port(s)
 ** PORTS
       25/tcp  - smtp             
 ** ADRESSES
    194.214.158.65    194.214.158.112   194.214.158.171   194.214.158.172   
    194.214.158.173   194.214.158.174   194.214.158.175   194.214.158.176   
    194.214.158.178   194.214.158.180   194.214.158.181   194.214.158.183   
    194.214.158.184   194.214.158.185   194.214.158.186   194.214.158.187   
    194.214.158.188   194.214.158.189   194.214.158.190   194.214.158.191   
    194.214.158.192   194.214.158.194   

*** SCAN a partir de 212.74.101.3     mk-www-1.portal.uk.tiscali.com
    25 ligne(s), 13 adresse(s), 10 port(s)
 ** PORTS
     1024/tcp  -                   1030/tcp  - iad1             
     1037/tcp  -                   1051/tcp  -                  
     1080/tcp  - socks             1102/tcp  -                  
     1148/tcp  -                   1171/tcp  -                  
     1236/tcp  -                   1239/tcp  -                  
 ** ADRESSES
    194.214.158.1     194.214.158.33    194.214.158.35    194.214.158.40    
    194.214.158.41    194.214.158.42    194.214.158.43    194.214.158.45    
    194.214.158.47    194.214.158.141   194.214.158.150   194.214.158.196   
    194.214.158.211   

*** SCAN a partir de 212.74.101.5     mk-www-3.portal.uk.tiscali.com
    8 ligne(s), 4 adresse(s), 5 port(s)
 ** PORTS
     1080/tcp  - socks             1107/tcp  -                  
     1210/tcp  -                   1260/tcp  -                  
     1271/tcp  -                  
 ** ADRESSES
    194.214.158.32    194.214.158.41    194.214.158.165   194.214.158.246   

*** SCAN a partir de 212.74.101.6     mk-www-4.portal.uk.tiscali.com
    12 ligne(s), 6 adresse(s), 5 port(s)
 ** PORTS
     1024/tcp  -                   1045/tcp  -                  
     1059/tcp  - nimreg            1112/tcp  -                  
     1248/tcp  - hermes           
 ** ADRESSES
    194.214.158.42    194.214.158.44    194.214.158.46    194.214.158.126   
    194.214.158.149   194.214.158.195   

*** SCAN a partir de 212.74.101.7     mk-www-5.portal.uk.tiscali.com
    9 ligne(s), 5 adresse(s), 7 port(s)
 ** PORTS
     1038/tcp  -                   1082/tcp  -                  
     1130/tcp  -                   1199/tcp  -                  
     1245/tcp  -                   1261/tcp  -                  
     1270/tcp  -                  
 ** ADRESSES
    194.214.158.41    194.214.158.43    194.214.158.45    194.214.158.46    
    194.214.158.165   

*** SCAN a partir de 212.74.101.8     mk-www-6.portal.uk.tiscali.com
    14 ligne(s), 7 adresse(s), 8 port(s)
 ** PORTS
     1024/tcp  -                   1069/tcp  -                  
     1102/tcp  -                   1112/tcp  -                  
     1130/tcp  -                   1138/tcp  -                  
     1237/tcp  -                   1243/tcp  -                  
 ** ADRESSES
    194.214.158.32    194.214.158.35    194.214.158.39    194.214.158.40    
    194.214.158.41    194.214.158.70    194.214.158.165   


*** ACL 101 - Sortie Site



Les harcelements


*** ACL 100 - Entree Site

  ***  61.218.36.10    -> 194.214.158.145    96 lignes
       61.218.36.10 -> gillespie
       PORT    25/tcp   smtp                 96 lignes
  ***  212.129.154.213 -> 194.214.158.140    98 lignes
       ut-ovv-1ad5.adsl.wanadoo.nl -> ravel
       PORT    25/tcp   smtp                 98 lignes
  ***  212.129.154.213 -> 194.214.158.144    84 lignes
       ut-ovv-1ad5.adsl.wanadoo.nl -> evans
       PORT    25/tcp   smtp                 84 lignes
  ***  216.27.134.215  -> 194.214.158.14    141 lignes
       dsl027-134-215.nyc1.dsl.speakeasy.net -> coltrane
       PORT    25/tcp   smtp                141 lignes

*** ACL 101 - Sortie Site



Agrégation par Adresse Source (IPS)


*** ACL 100 - Entree Site (740 lignes)

 *** Lignes de log : 702

 *** 24.248.170.74    -     44 lignes  -  cad3127795-a.crlspr1.fl.home.com
   * Ports contactés    :     1
        25/tcp  - smtp             
   * Adresses contactés :    37
     194.214.158.17    194.214.158.26    194.214.158.39    194.214.158.87    
     194.214.158.119   194.214.158.120   194.214.158.121   194.214.158.123   
     194.214.158.124   194.214.158.126   194.214.158.127   194.214.158.128   
     194.214.158.129   194.214.158.130   194.214.158.139   194.214.158.147   
     194.214.158.148   194.214.158.149   194.214.158.150   194.214.158.151   
     194.214.158.152   194.214.158.153   194.214.158.154   194.214.158.155   
     194.214.158.156   194.214.158.157   194.214.158.158   194.214.158.159   
     194.214.158.162   194.214.158.175   194.214.158.212   194.214.158.236   
     194.214.158.237   194.214.158.239   194.214.158.247   194.214.158.248   
     194.214.158.253   

 *** 61.127.217.39    -     31 lignes  -  tx.028.co.jp
   * Ports contactés    :     1
        25/tcp  - smtp             
   * Adresses contactés :     1
     194.214.158.145   

 *** 61.218.36.10     -     96 lignes  -  61.218.36.10
   * Ports contactés    :     1
        25/tcp  - smtp             
   * Adresses contactés :     1
     194.214.158.145   

 *** 194.7.226.101    -     12 lignes  -  uu194-7-226-101.unknown.be.uu.net
   * Ports contactés    :     1
        80/tcp  - www-http         
   * Adresses contactés :     7
     194.214.158.33    194.214.158.40    194.214.158.43    194.214.158.44    
     194.214.158.102   194.214.158.107   194.214.158.114   

 *** 194.205.185.100  -     30 lignes  -  194.205.185.100
   * Ports contactés    :     1
        22/tcp  - ssh              
   * Adresses contactés :    27
     194.214.158.0     194.214.158.1     194.214.158.16    194.214.158.17    
     194.214.158.29    194.214.158.45    194.214.158.46    194.214.158.47    
     194.214.158.50    194.214.158.102   194.214.158.103   194.214.158.104   
     194.214.158.105   194.214.158.111   194.214.158.116   194.214.158.120   
     194.214.158.125   194.214.158.128   194.214.158.157   194.214.158.207   
     194.214.158.225   194.214.158.232   194.214.158.234   194.214.158.236   
     194.214.158.237   194.214.158.239   194.214.158.240   

 *** 194.239.21.20    -     14 lignes  -  0xc2ef1514.boanxx9.adsl-dhcp.tele.dk
   * Ports contactés    :     1
        80/tcp  - www-http         
   * Adresses contactés :     8
     194.214.158.105   194.214.158.107   194.214.158.113   194.214.158.114   
     194.214.158.115   194.214.158.119   194.214.158.122   194.214.158.125   

 *** 202.164.166.204  -     25 lignes  -  202.164.166.204
   * Ports contactés    :     1
        25/tcp  - smtp             
   * Adresses contactés :    22
     194.214.158.65    194.214.158.112   194.214.158.171   194.214.158.172   
     194.214.158.173   194.214.158.174   194.214.158.175   194.214.158.176   
     194.214.158.178   194.214.158.180   194.214.158.181   194.214.158.183   
     194.214.158.184   194.214.158.185   194.214.158.186   194.214.158.187   
     194.214.158.188   194.214.158.189   194.214.158.190   194.214.158.191   
     194.214.158.192   194.214.158.194   

 *** 210.170.99.79    -     44 lignes  -  firefly.comcom.co.jp
   * Ports contactés    :     1
        25/tcp  - smtp             
   * Adresses contactés :     2
     194.214.158.144   194.214.158.145   

 *** 212.74.101.3     -     25 lignes  -  mk-www-1.portal.uk.tiscali.com
   * Ports contactés    :    10
      1024/tcp  -                   1030/tcp  - iad1             
      1037/tcp  -                   1051/tcp  -                  
      1080/tcp  - socks             1102/tcp  -                  
      1148/tcp  -                   1171/tcp  -                  
      1236/tcp  -                   1239/tcp  -                  
   * Adresses contactés :    13
     194.214.158.1     194.214.158.33    194.214.158.35    194.214.158.40    
     194.214.158.41    194.214.158.42    194.214.158.43    194.214.158.45    
     194.214.158.47    194.214.158.141   194.214.158.150   194.214.158.196   
     194.214.158.211   

 *** 212.74.101.4     -      6 lignes  -  mk-www-2.portal.uk.tiscali.com
   * Ports contactés    :     4
      1090/tcp  -                   1137/tcp  -                  
      1149/tcp  -                   1256/tcp  -                  
   * Adresses contactés :     3
     194.214.158.33    194.214.158.36    194.214.158.39    

 *** 212.74.101.5     -      8 lignes  -  mk-www-3.portal.uk.tiscali.com
   * Ports contactés    :     5
      1080/tcp  - socks             1107/tcp  -                  
      1210/tcp  -                   1260/tcp  -                  
      1271/tcp  -                  
   * Adresses contactés :     4
     194.214.158.32    194.214.158.41    194.214.158.165   194.214.158.246   

 *** 212.74.101.6     -     12 lignes  -  mk-www-4.portal.uk.tiscali.com
   * Ports contactés    :     5
      1024/tcp  -                   1045/tcp  -                  
      1059/tcp  - nimreg            1112/tcp  -                  
      1248/tcp  - hermes           
   * Adresses contactés :     6
     194.214.158.42    194.214.158.44    194.214.158.46    194.214.158.126   
     194.214.158.149   194.214.158.195   

 *** 212.74.101.7     -      9 lignes  -  mk-www-5.portal.uk.tiscali.com
   * Ports contactés    :     7
      1038/tcp  -                   1082/tcp  -                  
      1130/tcp  -                   1199/tcp  -                  
      1245/tcp  -                   1261/tcp  -                  
      1270/tcp  -                  
   * Adresses contactés :     5
     194.214.158.41    194.214.158.43    194.214.158.45    194.214.158.46    
     194.214.158.165   

 *** 212.74.101.8     -     14 lignes  -  mk-www-6.portal.uk.tiscali.com
   * Ports contactés    :     8
      1024/tcp  -                   1069/tcp  -                  
      1102/tcp  -                   1112/tcp  -                  
      1130/tcp  -                   1138/tcp  -                  
      1237/tcp  -                   1243/tcp  -                  
   * Adresses contactés :     7
     194.214.158.32    194.214.158.35    194.214.158.39    194.214.158.40    
     194.214.158.41    194.214.158.70    194.214.158.165   

 *** 212.74.101.9     -      5 lignes  -  mk-cms-1.portal.uk.tiscali.com
   * Ports contactés    :     4
      1024/tcp  -                   1037/tcp  -                  
      1064/tcp  -                   1115/tcp  -                  
   * Adresses contactés :     4
     194.214.158.34    194.214.158.40    194.214.158.43    194.214.158.69    

 *** 212.74.101.10    -      4 lignes  -  www.tiscali.co.uk
   * Ports contactés    :     3
      1055/tcp  -                   1134/tcp  -                  
      1187/tcp  -                  
   * Adresses contactés :     2
     194.214.158.32    194.214.158.42    

 *** 212.129.154.213  -    182 lignes  -  ut-ovv-1ad5.adsl.wanadoo.nl
   * Ports contactés    :     1
        25/tcp  - smtp             
   * Adresses contactés :     2
     194.214.158.140   194.214.158.144   

 *** 216.27.134.215   -    141 lignes  -  dsl027-134-215.nyc1.dsl.speakeasy.net
   * Ports contactés    :     1
        25/tcp  - smtp             
   * Adresses contactés :     1
     194.214.158.14    



*** ACL 101 - Sortie Site (20 lignes)

 *** Lignes de log : 16

 *** 10.3.6.160       -     10 lignes  -  10.3.6.160
   * Ports contactés    :     1
         0/tcp  -                  
   * Adresses contactés :     1
     207.188.7.131     

 *** 10.3.6.174       -      6 lignes  -  10.3.6.174
   * Ports contactés    :     1
         0/tcp  -                  
   * Adresses contactés :     3
     195.101.94.178    212.64.61.59      212.64.61.209     



Agrégation par Adresse Destinataire (IPD)


*** ACL 100 - Entree Site (740 lignes)

 *** Lignes de log retenues : 617

 *** 194.214.158.14   -    141 lignes  -  coltrane
   * Ports contactés    :     1
        25/tcp  - smtp             
   * Adresses source :     1
     216.27.134.215    

 *** 194.214.158.32   -      6 lignes  -  saci
   * Ports contactés    :     5
      1055/tcp  -                   1107/tcp  -                  
      1187/tcp  -                   1243/tcp  -                  
      1260/tcp  -                  
   * Adresses source :     3
     212.74.101.5      212.74.101.8      212.74.101.10     

 *** 194.214.158.33   -      6 lignes  -  perere
   * Ports contactés    :     4
        80/tcp  - www-http          1190/tcp  -                  
      1236/tcp  -                   1256/tcp  -                  
   * Adresses source :     4
     194.7.226.101     212.74.101.2      212.74.101.3      212.74.101.4      

 *** 194.214.158.35   -      6 lignes  -  curupira
   * Ports contactés    :     4
      1051/tcp  -                   1148/tcp  -                  
      1171/tcp  -                   1237/tcp  -                  
   * Adresses source :     2
     212.74.101.3      212.74.101.8      

 *** 194.214.158.39   -      6 lignes  -  benta
   * Ports contactés    :     4
        25/tcp  - smtp              1090/tcp  -                  
      1130/tcp  -                   1137/tcp  -                  
   * Adresses source :     3
     24.248.170.74     212.74.101.4      212.74.101.8      

 *** 194.214.158.40   -      6 lignes  -  quindim
   * Ports contactés    :     5
        80/tcp  - www-http          1037/tcp  -                  
      1069/tcp  -                   1102/tcp  -                  
      1171/tcp  -                  
   * Adresses source :     4
     194.7.226.101     212.74.101.3      212.74.101.8      212.74.101.9      

 *** 194.214.158.41   -      7 lignes  -  barnabe
   * Ports contactés    :     5
      1030/tcp  - iad1              1138/tcp  -                  
      1261/tcp  -                   1270/tcp  -                  
      1271/tcp  -                  
   * Adresses source :     4
     212.74.101.3      212.74.101.5      212.74.101.7      212.74.101.8      

 *** 194.214.158.42   -      6 lignes  -  nastacia
   * Ports contactés    :     4
      1037/tcp  -                   1045/tcp  -                  
      1134/tcp  -                   1239/tcp  -                  
   * Adresses source :     3
     212.74.101.3      212.74.101.6      212.74.101.10     

 *** 194.214.158.43   -      4 lignes  -  pedrinho
   * Ports contactés    :     4
        80/tcp  - www-http          1082/tcp  -                  
      1102/tcp  -                   1115/tcp  -                  
   * Adresses source :     4
     194.7.226.101     212.74.101.3      212.74.101.7      212.74.101.9      

 *** 194.214.158.44   -      4 lignes  -  emilia
   * Ports contactés    :     2
        80/tcp  - www-http          1059/tcp  - nimreg           
   * Adresses source :     2
     194.7.226.101     212.74.101.6      

 *** 194.214.158.45   -      4 lignes  -  narizinho
   * Ports contactés    :     3
        22/tcp  - ssh               1024/tcp  -                  
      1245/tcp  -                  
   * Adresses source :     3
     194.205.185.100   212.74.101.3      212.74.101.7      

 *** 194.214.158.46   -      6 lignes  -  mapinguari
   * Ports contactés    :     5
        22/tcp  - ssh               1038/tcp  -                  
      1112/tcp  -                   1199/tcp  -                  
      1248/tcp  - hermes           
   * Adresses source :     3
     194.205.185.100   212.74.101.6      212.74.101.7      

 *** 194.214.158.50   -     38 lignes  -  walterscott
   * Ports contactés    :     2
        22/tcp  - ssh                 25/tcp  - smtp             
   * Adresses source :    26
     64.125.140.180    64.125.140.181    64.125.140.211    64.125.140.213    
     64.125.140.226    64.125.140.228    64.125.140.229    64.125.140.230    
     194.205.185.100   216.115.96.51     216.115.96.52     216.115.96.53     
     216.115.96.55     216.115.96.57     216.115.96.58     216.115.96.59     
     216.115.96.61     216.115.96.62     216.115.96.65     216.115.96.70     
     216.115.96.73     216.115.96.74     216.115.96.75     216.115.96.76     
     216.115.96.80     216.115.96.82     

 *** 194.214.158.107  -      4 lignes  -  getz
   * Ports contactés    :     1
        80/tcp  - www-http         
   * Adresses source :     2
     194.7.226.101     194.239.21.20     

 *** 194.214.158.122  -      4 lignes  -  marsalis
   * Ports contactés    :     1
        80/tcp  - www-http         
   * Adresses source :     1
     194.239.21.20     

 *** 194.214.158.126  -      4 lignes  -  dorsey
   * Ports contactés    :     2
        25/tcp  - smtp              1024/tcp  -                  
   * Adresses source :     2
     24.248.170.74     212.74.101.6      

 *** 194.214.158.140  -     99 lignes  -  ravel
   * Ports contactés    :     1
        25/tcp  - smtp             
   * Adresses source :     2
     210.154.131.210   212.129.154.213   

 *** 194.214.158.144  -    104 lignes  -  evans
   * Ports contactés    :     1
        25/tcp  - smtp             
   * Adresses source :     2
     210.170.99.79     212.129.154.213   

 *** 194.214.158.145  -    151 lignes  -  gillespie
   * Ports contactés    :     1
        25/tcp  - smtp             
   * Adresses source :     3
     61.127.217.39     61.218.36.10      210.170.99.79     

 *** 194.214.158.150  -      4 lignes  -  bechet
   * Ports contactés    :     2
        25/tcp  - smtp              1024/tcp  -                  
   * Adresses source :     2
     24.248.170.74     212.74.101.3      

 *** 194.214.158.165  -      7 lignes  -  crocodile
   * Ports contactés    :     4
      1112/tcp  -                   1130/tcp  -                  
      1210/tcp  -                   1260/tcp  -                  
   * Adresses source :     3
     212.74.101.5      212.74.101.7      212.74.101.8      



*** ACL 101 - Sortie Site (20 lignes)

 *** Lignes de log retenues : 10

 *** 207.188.7.131    -     10 lignes  -  outpostrr1.real.com
   * Ports contactés    :     1
         0/tcp  -                  
   * Adresses source :     1
     10.3.6.160        



Rapport Détaillé


*** ACL 100 - Entree Site (740 lignes)

ACL 100 - PROTO icmp


ACL 100 - PROTO tcp

S    24.248.170.74   -> 194.214.158.17  (   25) -      2 - cad3127795-a.crlspr1.fl.home.com -> miles               
S    24.248.170.74   -> 194.214.158.26  (   25) -      1 - cad3127795-a.crlspr1.fl.home.com -> 194.214.158.26      
SD   24.248.170.74   -> 194.214.158.39  (   25) -      1 - cad3127795-a.crlspr1.fl.home.com -> benta               
S    24.248.170.74   -> 194.214.158.87  (   25) -      1 - cad3127795-a.crlspr1.fl.home.com -> 194.214.158.87      
S    24.248.170.74   -> 194.214.158.119 (   25) -      1 - cad3127795-a.crlspr1.fl.home.com -> goodman             
S    24.248.170.74   -> 194.214.158.120 (   25) -      1 - cad3127795-a.crlspr1.fl.home.com -> jarrett             
S    24.248.170.74   -> 194.214.158.121 (   25) -      2 - cad3127795-a.crlspr1.fl.home.com -> lester              
S    24.248.170.74   -> 194.214.158.123 (   25) -      1 - cad3127795-a.crlspr1.fl.home.com -> shorter             
S    24.248.170.74   -> 194.214.158.124 (   25) -      1 - cad3127795-a.crlspr1.fl.home.com -> young               
SD   24.248.170.74   -> 194.214.158.126 (   25) -      2 - cad3127795-a.crlspr1.fl.home.com -> dorsey              
S    24.248.170.74   -> 194.214.158.127 (   25) -      1 - cad3127795-a.crlspr1.fl.home.com -> grappelly           
S    24.248.170.74   -> 194.214.158.128 (   25) -      1 - cad3127795-a.crlspr1.fl.home.com -> hawkins             
S    24.248.170.74   -> 194.214.158.129 (   25) -      1 - cad3127795-a.crlspr1.fl.home.com -> hodges              
S    24.248.170.74   -> 194.214.158.130 (   25) -      1 - cad3127795-a.crlspr1.fl.home.com -> cole                
S    24.248.170.74   -> 194.214.158.139 (   25) -      1 - cad3127795-a.crlspr1.fl.home.com -> dvorak              
S    24.248.170.74   -> 194.214.158.147 (   25) -      1 - cad3127795-a.crlspr1.fl.home.com -> hampton             
S    24.248.170.74   -> 194.214.158.148 (   25) -      1 - cad3127795-a.crlspr1.fl.home.com -> basie               
S    24.248.170.74   -> 194.214.158.149 (   25) -      1 - cad3127795-a.crlspr1.fl.home.com -> monk                
SD   24.248.170.74   -> 194.214.158.150 (   25) -      2 - cad3127795-a.crlspr1.fl.home.com -> bechet              
S    24.248.170.74   -> 194.214.158.151 (   25) -      1 - cad3127795-a.crlspr1.fl.home.com -> hamilton            
S    24.248.170.74   -> 194.214.158.152 (   25) -      1 - cad3127795-a.crlspr1.fl.home.com -> brubeck             
S    24.248.170.74   -> 194.214.158.153 (   25) -      1 - cad3127795-a.crlspr1.fl.home.com -> dizzy               
S    24.248.170.74   -> 194.214.158.154 (   25) -      2 - cad3127795-a.crlspr1.fl.home.com -> parker              
S    24.248.170.74   -> 194.214.158.155 (   25) -      1 - cad3127795-a.crlspr1.fl.home.com -> sclavis             
S    24.248.170.74   -> 194.214.158.156 (   25) -      1 - cad3127795-a.crlspr1.fl.home.com -> solal               
S    24.248.170.74   -> 194.214.158.157 (   25) -      2 - cad3127795-a.crlspr1.fl.home.com -> bolling             
S    24.248.170.74   -> 194.214.158.158 (   25) -      1 - cad3127795-a.crlspr1.fl.home.com -> petrucciani         
S    24.248.170.74   -> 194.214.158.159 (   25) -      1 - cad3127795-a.crlspr1.fl.home.com -> joe                 
S    24.248.170.74   -> 194.214.158.162 (   25) -      1 - cad3127795-a.crlspr1.fl.home.com -> 194.214.158.162     
S    24.248.170.74   -> 194.214.158.175 (   25) -      2 - cad3127795-a.crlspr1.fl.home.com -> 194.214.158.175     
S    24.248.170.74   -> 194.214.158.212 (   25) -      1 - cad3127795-a.crlspr1.fl.home.com -> 194.214.158.212     
S    24.248.170.74   -> 194.214.158.236 (   25) -      1 - cad3127795-a.crlspr1.fl.home.com -> 194.214.158.236     
S    24.248.170.74   -> 194.214.158.237 (   25) -      1 - cad3127795-a.crlspr1.fl.home.com -> 194.214.158.237     
S    24.248.170.74   -> 194.214.158.239 (   25) -      1 - cad3127795-a.crlspr1.fl.home.com -> 194.214.158.239     
S    24.248.170.74   -> 194.214.158.247 (   25) -      1 - cad3127795-a.crlspr1.fl.home.com -> www-anciens         
S    24.248.170.74   -> 194.214.158.248 (   25) -      1 - cad3127795-a.crlspr1.fl.home.com -> www.actedentreprendre
S    24.248.170.74   -> 194.214.158.253 (   25) -      1 - cad3127795-a.crlspr1.fl.home.com -> www.cgs             
SD   61.127.217.39   -> 194.214.158.145 (   25) -     31 - tx.028.co.jp         -> gillespie           
SD   61.218.36.10    -> 194.214.158.145 (   25) -     96 - 61.218.36.10         -> gillespie           
 D   64.125.140.180  -> 194.214.158.50  (   25) -      2 - outmta027.topicadirect.com -> walterscott         
 D   64.125.140.181  -> 194.214.158.50  (   25) -      1 - outmta028.topicadirect.com -> walterscott         
 D   64.125.140.211  -> 194.214.158.50  (   25) -      1 - outmta002.topica.com -> walterscott         
 D   64.125.140.213  -> 194.214.158.50  (   25) -      1 - outmta004.topica.com -> walterscott         
 D   64.125.140.226  -> 194.214.158.50  (   25) -      2 - outmta017.topica.com -> walterscott         
 D   64.125.140.228  -> 194.214.158.50  (   25) -      3 - outmta019.topica.com -> walterscott         
 D   64.125.140.229  -> 194.214.158.50  (   25) -      2 - outmta020.topica.com -> walterscott         
 D   64.125.140.230  -> 194.214.158.50  (   25) -      2 - outmta021.topica.com -> walterscott         
SD   194.7.226.101   -> 194.214.158.33  (   80) -      2 - uu194-7-226-101.unknown.be.uu.net -> perere              
SD   194.7.226.101   -> 194.214.158.40  (   80) -      1 - uu194-7-226-101.unknown.be.uu.net -> quindim             
SD   194.7.226.101   -> 194.214.158.43  (   80) -      1 - uu194-7-226-101.unknown.be.uu.net -> pedrinho            
SD   194.7.226.101   -> 194.214.158.44  (   80) -      2 - uu194-7-226-101.unknown.be.uu.net -> emilia              
S    194.7.226.101   -> 194.214.158.102 (   80) -      2 - uu194-7-226-101.unknown.be.uu.net -> montgomery          
SD   194.7.226.101   -> 194.214.158.107 (   80) -      2 - uu194-7-226-101.unknown.be.uu.net -> getz                
S    194.7.226.101   -> 194.214.158.114 (   80) -      2 - uu194-7-226-101.unknown.be.uu.net -> sassy               
S    194.205.185.100 -> 194.214.158.0   (   22) -      1 - 194.205.185.100      -> 194.214.158.0       
S    194.205.185.100 -> 194.214.158.1   (   22) -      1 - 194.205.185.100      -> manitou             
S    194.205.185.100 -> 194.214.158.16  (   22) -      2 - 194.205.185.100      -> miller              
S    194.205.185.100 -> 194.214.158.17  (   22) -      1 - 194.205.185.100      -> miles               
S    194.205.185.100 -> 194.214.158.29  (   22) -      1 - 194.205.185.100      -> 194.214.158.29      
SD   194.205.185.100 -> 194.214.158.45  (   22) -      1 - 194.205.185.100      -> narizinho           
SD   194.205.185.100 -> 194.214.158.46  (   22) -      1 - 194.205.185.100      -> mapinguari          
S    194.205.185.100 -> 194.214.158.47  (   22) -      1 - 194.205.185.100      -> iara                
SD   194.205.185.100 -> 194.214.158.50  (   22) -      2 - 194.205.185.100      -> walterscott         
S    194.205.185.100 -> 194.214.158.102 (   22) -      1 - 194.205.185.100      -> montgomery          
S    194.205.185.100 -> 194.214.158.103 (   22) -      1 - 194.205.185.100      -> benson              
S    194.205.185.100 -> 194.214.158.104 (   22) -      1 - 194.205.185.100      -> bridgewater         
S    194.205.185.100 -> 194.214.158.105 (   22) -      1 - 194.205.185.100      -> cab                 
S    194.205.185.100 -> 194.214.158.111 (   22) -      2 - 194.205.185.100      -> morton              
S    194.205.185.100 -> 194.214.158.116 (   22) -      1 - 194.205.185.100      -> coleman             
S    194.205.185.100 -> 194.214.158.120 (   22) -      1 - 194.205.185.100      -> jarrett             
S    194.205.185.100 -> 194.214.158.125 (   22) -      1 - 194.205.185.100      -> clayton             
S    194.205.185.100 -> 194.214.158.128 (   22) -      1 - 194.205.185.100      -> hawkins             
S    194.205.185.100 -> 194.214.158.157 (   22) -      1 - 194.205.185.100      -> bolling             
S    194.205.185.100 -> 194.214.158.207 (   22) -      1 - 194.205.185.100      -> 194.214.158.207     
S    194.205.185.100 -> 194.214.158.225 (   22) -      1 - 194.205.185.100      -> w5                  
S    194.205.185.100 -> 194.214.158.232 (   22) -      1 - 194.205.185.100      -> 194.214.158.232     
S    194.205.185.100 -> 194.214.158.234 (   22) -      1 - 194.205.185.100      -> 194.214.158.234     
S    194.205.185.100 -> 194.214.158.236 (   22) -      1 - 194.205.185.100      -> 194.214.158.236     
S    194.205.185.100 -> 194.214.158.237 (   22) -      1 - 194.205.185.100      -> 194.214.158.237     
S    194.205.185.100 -> 194.214.158.239 (   22) -      1 - 194.205.185.100      -> 194.214.158.239     
S    194.205.185.100 -> 194.214.158.240 (   22) -      1 - 194.205.185.100      -> 194.214.158.240     
S    194.239.21.20   -> 194.214.158.105 (   80) -      1 - 0xc2ef1514.boanxx9.adsl-dhcp.tele.dk -> cab                 
SD   194.239.21.20   -> 194.214.158.107 (   80) -      2 - 0xc2ef1514.boanxx9.adsl-dhcp.tele.dk -> getz                
S    194.239.21.20   -> 194.214.158.113 (   80) -      2 - 0xc2ef1514.boanxx9.adsl-dhcp.tele.dk -> rollins             
S    194.239.21.20   -> 194.214.158.114 (   80) -      1 - 0xc2ef1514.boanxx9.adsl-dhcp.tele.dk -> sassy               
S    194.239.21.20   -> 194.214.158.115 (   80) -      1 - 0xc2ef1514.boanxx9.adsl-dhcp.tele.dk -> tatum               
S    194.239.21.20   -> 194.214.158.119 (   80) -      1 - 0xc2ef1514.boanxx9.adsl-dhcp.tele.dk -> goodman             
SD   194.239.21.20   -> 194.214.158.122 (   80) -      4 - 0xc2ef1514.boanxx9.adsl-dhcp.tele.dk -> marsalis            
S    194.239.21.20   -> 194.214.158.125 (   80) -      2 - 0xc2ef1514.boanxx9.adsl-dhcp.tele.dk -> clayton             
S    202.164.166.204 -> 194.214.158.65  (   25) -      1 - 202.164.166.204      -> pantanal            
S    202.164.166.204 -> 194.214.158.112 (   25) -      2 - 202.164.166.204      -> piazzolla           
S    202.164.166.204 -> 194.214.158.171 (   25) -      1 - 202.164.166.204      -> calloway            
S    202.164.166.204 -> 194.214.158.172 (   25) -      1 - 202.164.166.204      -> hancock             
S    202.164.166.204 -> 194.214.158.173 (   25) -      1 - 202.164.166.204      -> vander              
S    202.164.166.204 -> 194.214.158.174 (   25) -      1 - 202.164.166.204      -> 194.214.158.174     
S    202.164.166.204 -> 194.214.158.175 (   25) -      1 - 202.164.166.204      -> 194.214.158.175     
S    202.164.166.204 -> 194.214.158.176 (   25) -      1 - 202.164.166.204      -> 194.214.158.176     
S    202.164.166.204 -> 194.214.158.178 (   25) -      1 - 202.164.166.204      -> 194.214.158.178     
S    202.164.166.204 -> 194.214.158.180 (   25) -      1 - 202.164.166.204      -> 194.214.158.180     
S    202.164.166.204 -> 194.214.158.181 (   25) -      1 - 202.164.166.204      -> 194.214.158.181     
S    202.164.166.204 -> 194.214.158.183 (   25) -      1 - 202.164.166.204      -> 194.214.158.183     
S    202.164.166.204 -> 194.214.158.184 (   25) -      1 - 202.164.166.204      -> 194.214.158.184     
S    202.164.166.204 -> 194.214.158.185 (   25) -      1 - 202.164.166.204      -> 194.214.158.185     
S    202.164.166.204 -> 194.214.158.186 (   25) -      1 - 202.164.166.204      -> 194.214.158.186     
S    202.164.166.204 -> 194.214.158.187 (   25) -      1 - 202.164.166.204      -> 194.214.158.187     
S    202.164.166.204 -> 194.214.158.188 (   25) -      1 - 202.164.166.204      -> 194.214.158.188     
S    202.164.166.204 -> 194.214.158.189 (   25) -      1 - 202.164.166.204      -> 194.214.158.189     
S    202.164.166.204 -> 194.214.158.190 (   25) -      1 - 202.164.166.204      -> mcalcul             
S    202.164.166.204 -> 194.214.158.191 (   25) -      2 - 202.164.166.204      -> lucifer             
S    202.164.166.204 -> 194.214.158.192 (   25) -      2 - 202.164.166.204      -> vander2             
S    202.164.166.204 -> 194.214.158.194 (   25) -      1 - 202.164.166.204      -> 194.214.158.194     
 D   210.154.131.210 -> 194.214.158.140 (   25) -      1 - ns.kayakuakzo.co.jp  -> ravel               
SD   210.170.99.79   -> 194.214.158.144 (   25) -     20 - firefly.comcom.co.jp -> evans               
SD   210.170.99.79   -> 194.214.158.145 (   25) -     24 - firefly.comcom.co.jp -> gillespie           
 D   212.74.101.2    -> 194.214.158.33  ( 1190) -      1 - mk-feeds-2.portal.uk.tiscali.com -> perere              
S    212.74.101.3    -> 194.214.158.1   ( 1024) -      2 - mk-www-1.portal.uk.tiscali.com -> manitou             
SD   212.74.101.3    -> 194.214.158.33  ( 1236) -      2 - mk-www-1.portal.uk.tiscali.com -> perere              
SD   212.74.101.3    -> 194.214.158.35  ( 1051) -      2 - mk-www-1.portal.uk.tiscali.com -> curupira            
SD   212.74.101.3    -> 194.214.158.35  ( 1148) -      1 - mk-www-1.portal.uk.tiscali.com -> curupira            
SD   212.74.101.3    -> 194.214.158.35  ( 1171) -      1 - mk-www-1.portal.uk.tiscali.com -> curupira            
SD   212.74.101.3    -> 194.214.158.40  ( 1171) -      2 - mk-www-1.portal.uk.tiscali.com -> quindim             
SD   212.74.101.3    -> 194.214.158.41  ( 1030) -      2 - mk-www-1.portal.uk.tiscali.com -> barnabe             
SD   212.74.101.3    -> 194.214.158.42  ( 1037) -      1 - mk-www-1.portal.uk.tiscali.com -> nastacia            
SD   212.74.101.3    -> 194.214.158.42  ( 1239) -      1 - mk-www-1.portal.uk.tiscali.com -> nastacia            
SD   212.74.101.3    -> 194.214.158.43  ( 1102) -      1 - mk-www-1.portal.uk.tiscali.com -> pedrinho            
SD   212.74.101.3    -> 194.214.158.45  ( 1024) -      1 - mk-www-1.portal.uk.tiscali.com -> narizinho           
S    212.74.101.3    -> 194.214.158.47  ( 1239) -      1 - mk-www-1.portal.uk.tiscali.com -> iara                
S    212.74.101.3    -> 194.214.158.141 ( 1024) -      2 - mk-www-1.portal.uk.tiscali.com -> brahms              
SD   212.74.101.3    -> 194.214.158.150 ( 1024) -      2 - mk-www-1.portal.uk.tiscali.com -> bechet              
S    212.74.101.3    -> 194.214.158.196 ( 1024) -      2 - mk-www-1.portal.uk.tiscali.com -> 194.214.158.196     
S    212.74.101.3    -> 194.214.158.211 ( 1080) -      2 - mk-www-1.portal.uk.tiscali.com -> 194.214.158.211     
SD   212.74.101.4    -> 194.214.158.33  ( 1256) -      1 - mk-www-2.portal.uk.tiscali.com -> perere              
S    212.74.101.4    -> 194.214.158.36  ( 1149) -      2 - mk-www-2.portal.uk.tiscali.com -> cuca                
SD   212.74.101.4    -> 194.214.158.39  ( 1090) -      2 - mk-www-2.portal.uk.tiscali.com -> benta               
SD   212.74.101.4    -> 194.214.158.39  ( 1137) -      1 - mk-www-2.portal.uk.tiscali.com -> benta               
SD   212.74.101.5    -> 194.214.158.32  ( 1107) -      1 - mk-www-3.portal.uk.tiscali.com -> saci                
SD   212.74.101.5    -> 194.214.158.32  ( 1260) -      1 - mk-www-3.portal.uk.tiscali.com -> saci                
SD   212.74.101.5    -> 194.214.158.41  ( 1271) -      1 - mk-www-3.portal.uk.tiscali.com -> barnabe             
SD   212.74.101.5    -> 194.214.158.165 ( 1210) -      1 - mk-www-3.portal.uk.tiscali.com -> crocodile              
SD   212.74.101.5    -> 194.214.158.165 ( 1260) -      2 - mk-www-3.portal.uk.tiscali.com -> crocodile              
S    212.74.101.5    -> 194.214.158.246 ( 1080) -      2 - mk-www-3.portal.uk.tiscali.com -> 194.214.158.246     
SD   212.74.101.6    -> 194.214.158.42  ( 1045) -      2 - mk-www-4.portal.uk.tiscali.com -> nastacia            
SD   212.74.101.6    -> 194.214.158.44  ( 1059) -      2 - mk-www-4.portal.uk.tiscali.com -> emilia              
SD   212.74.101.6    -> 194.214.158.46  ( 1112) -      2 - mk-www-4.portal.uk.tiscali.com -> mapinguari          
SD   212.74.101.6    -> 194.214.158.46  ( 1248) -      1 - mk-www-4.portal.uk.tiscali.com -> mapinguari          
SD   212.74.101.6    -> 194.214.158.126 ( 1024) -      2 - mk-www-4.portal.uk.tiscali.com -> dorsey              
S    212.74.101.6    -> 194.214.158.149 ( 1024) -      1 - mk-www-4.portal.uk.tiscali.com -> monk                
S    212.74.101.6    -> 194.214.158.195 ( 1024) -      2 - mk-www-4.portal.uk.tiscali.com -> 194.214.158.195     
SD   212.74.101.7    -> 194.214.158.41  ( 1261) -      1 - mk-www-5.portal.uk.tiscali.com -> barnabe             
SD   212.74.101.7    -> 194.214.158.41  ( 1270) -      1 - mk-www-5.portal.uk.tiscali.com -> barnabe             
SD   212.74.101.7    -> 194.214.158.43  ( 1082) -      1 - mk-www-5.portal.uk.tiscali.com -> pedrinho            
SD   212.74.101.7    -> 194.214.158.45  ( 1245) -      2 - mk-www-5.portal.uk.tiscali.com -> narizinho           
SD   212.74.101.7    -> 194.214.158.46  ( 1038) -      1 - mk-www-5.portal.uk.tiscali.com -> mapinguari          
SD   212.74.101.7    -> 194.214.158.46  ( 1199) -      1 - mk-www-5.portal.uk.tiscali.com -> mapinguari          
SD   212.74.101.7    -> 194.214.158.165 ( 1130) -      2 - mk-www-5.portal.uk.tiscali.com -> crocodile              
SD   212.74.101.8    -> 194.214.158.32  ( 1243) -      2 - mk-www-6.portal.uk.tiscali.com -> saci                
SD   212.74.101.8    -> 194.214.158.35  ( 1237) -      2 - mk-www-6.portal.uk.tiscali.com -> curupira            
SD   212.74.101.8    -> 194.214.158.39  ( 1130) -      2 - mk-www-6.portal.uk.tiscali.com -> benta               
SD   212.74.101.8    -> 194.214.158.40  ( 1069) -      1 - mk-www-6.portal.uk.tiscali.com -> quindim             
SD   212.74.101.8    -> 194.214.158.40  ( 1102) -      1 - mk-www-6.portal.uk.tiscali.com -> quindim             
SD   212.74.101.8    -> 194.214.158.41  ( 1138) -      2 - mk-www-6.portal.uk.tiscali.com -> barnabe             
S    212.74.101.8    -> 194.214.158.70  ( 1024) -      2 - mk-www-6.portal.uk.tiscali.com -> pc-besson           
SD   212.74.101.8    -> 194.214.158.165 ( 1112) -      2 - mk-www-6.portal.uk.tiscali.com -> crocodile              
S    212.74.101.9    -> 194.214.158.34  ( 1064) -      1 - mk-cms-1.portal.uk.tiscali.com -> caipora             
SD   212.74.101.9    -> 194.214.158.40  ( 1037) -      1 - mk-cms-1.portal.uk.tiscali.com -> quindim             
SD   212.74.101.9    -> 194.214.158.43  ( 1115) -      1 - mk-cms-1.portal.uk.tiscali.com -> pedrinho            
S    212.74.101.9    -> 194.214.158.69  ( 1024) -      2 - mk-cms-1.portal.uk.tiscali.com -> 194.214.158.69      
SD   212.74.101.10   -> 194.214.158.32  ( 1055) -      1 - www.tiscali.co.uk    -> saci                
SD   212.74.101.10   -> 194.214.158.32  ( 1187) -      1 - www.tiscali.co.uk    -> saci                
SD   212.74.101.10   -> 194.214.158.42  ( 1134) -      2 - www.tiscali.co.uk    -> nastacia            
SD   212.129.154.213 -> 194.214.158.140 (   25) -     98 - ut-ovv-1ad5.adsl.wanadoo.nl -> ravel               
SD   212.129.154.213 -> 194.214.158.144 (   25) -     84 - ut-ovv-1ad5.adsl.wanadoo.nl -> evans               
SD   216.27.134.215  -> 194.214.158.14  (   25) -    141 - dsl027-134-215.nyc1.dsl.speakeasy.net -> coltrane            
 D   216.115.96.51   -> 194.214.158.50  (   25) -      1 - n1.groups.yahoo.com  -> walterscott         
 D   216.115.96.52   -> 194.214.158.50  (   25) -      2 - n2.groups.yahoo.com  -> walterscott         
 D   216.115.96.53   -> 194.214.158.50  (   25) -      1 - n3.groups.yahoo.com  -> walterscott         
 D   216.115.96.55   -> 194.214.158.50  (   25) -      2 - n5.groups.yahoo.com  -> walterscott         
 D   216.115.96.57   -> 194.214.158.50  (   25) -      1 - n7.groups.yahoo.com  -> walterscott         
 D   216.115.96.58   -> 194.214.158.50  (   25) -      2 - n8.groups.yahoo.com  -> walterscott         
 D   216.115.96.59   -> 194.214.158.50  (   25) -      1 - n9.groups.yahoo.com  -> walterscott         
 D   216.115.96.61   -> 194.214.158.50  (   25) -      1 - n11.groups.yahoo.com -> walterscott         
 D   216.115.96.62   -> 194.214.158.50  (   25) -      1 - n12.groups.yahoo.com -> walterscott         
 D   216.115.96.65   -> 194.214.158.50  (   25) -      1 - n15.groups.yahoo.com -> walterscott         
 D   216.115.96.70   -> 194.214.158.50  (   25) -      2 - n20.groups.yahoo.com -> walterscott         
 D   216.115.96.73   -> 194.214.158.50  (   25) -      1 - n23.groups.yahoo.com -> walterscott         
 D   216.115.96.74   -> 194.214.158.50  (   25) -      1 - n24.groups.yahoo.com -> walterscott         
 D   216.115.96.75   -> 194.214.158.50  (   25) -      1 - n25.groups.yahoo.com -> walterscott         
 D   216.115.96.76   -> 194.214.158.50  (   25) -      2 - n26.groups.yahoo.com -> walterscott         
 D   216.115.96.80   -> 194.214.158.50  (   25) -      1 - n30.groups.yahoo.com -> walterscott         
 D   216.115.96.82   -> 194.214.158.50  (   25) -      1 - n32.groups.yahoo.com -> walterscott         
             740 lignes

ACL 100 - PROTO udp


Lignes dont le numero du port source est bas

ACL 100 - PROTO icmp


ACL 100 - PROTO tcp

    84 lignes
 D   212.74.101.2    (   80) -> 194.214.158.33  ( 1190) -     1 - mk-feeds-2.portal.uk.tiscali.com -> perere                   
S    212.74.101.3    (   80) -> 194.214.158.1   ( 1024) -     2 - mk-www-1.portal.uk.tiscali.com -> manitou                  
SD   212.74.101.3    (   80) -> 194.214.158.33  ( 1236) -     2 - mk-www-1.portal.uk.tiscali.com -> perere                   
SD   212.74.101.3    (   80) -> 194.214.158.35  ( 1051) -     2 - mk-www-1.portal.uk.tiscali.com -> curupira                 
SD   212.74.101.3    (   80) -> 194.214.158.35  ( 1148) -     1 - mk-www-1.portal.uk.tiscali.com -> curupira                 
SD   212.74.101.3    (   80) -> 194.214.158.35  ( 1171) -     1 - mk-www-1.portal.uk.tiscali.com -> curupira                 
SD   212.74.101.3    (   80) -> 194.214.158.40  ( 1171) -     2 - mk-www-1.portal.uk.tiscali.com -> quindim                  
SD   212.74.101.3    (   80) -> 194.214.158.41  ( 1030) -     2 - mk-www-1.portal.uk.tiscali.com -> barnabe                  
SD   212.74.101.3    (   80) -> 194.214.158.42  ( 1037) -     1 - mk-www-1.portal.uk.tiscali.com -> nastacia                 
SD   212.74.101.3    (   80) -> 194.214.158.42  ( 1239) -     1 - mk-www-1.portal.uk.tiscali.com -> nastacia                 
SD   212.74.101.3    (   80) -> 194.214.158.43  ( 1102) -     1 - mk-www-1.portal.uk.tiscali.com -> pedrinho                 
SD   212.74.101.3    (   80) -> 194.214.158.45  ( 1024) -     1 - mk-www-1.portal.uk.tiscali.com -> narizinho                
S    212.74.101.3    (   80) -> 194.214.158.47  ( 1239) -     1 - mk-www-1.portal.uk.tiscali.com -> iara                     
S    212.74.101.3    (   80) -> 194.214.158.141 ( 1024) -     2 - mk-www-1.portal.uk.tiscali.com -> brahms                   
SD   212.74.101.3    (   80) -> 194.214.158.150 ( 1024) -     2 - mk-www-1.portal.uk.tiscali.com -> bechet                   
S    212.74.101.3    (   80) -> 194.214.158.196 ( 1024) -     2 - mk-www-1.portal.uk.tiscali.com -> 194.214.158.196          
S    212.74.101.3    (   80) -> 194.214.158.211 ( 1080) -     2 - mk-www-1.portal.uk.tiscali.com -> 194.214.158.211          
SD   212.74.101.4    (   80) -> 194.214.158.33  ( 1256) -     1 - mk-www-2.portal.uk.tiscali.com -> perere                   
S    212.74.101.4    (   80) -> 194.214.158.36  ( 1149) -     2 - mk-www-2.portal.uk.tiscali.com -> cuca                     
SD   212.74.101.4    (   80) -> 194.214.158.39  ( 1090) -     2 - mk-www-2.portal.uk.tiscali.com -> benta                    
SD   212.74.101.4    (   80) -> 194.214.158.39  ( 1137) -     1 - mk-www-2.portal.uk.tiscali.com -> benta                    
SD   212.74.101.5    (   80) -> 194.214.158.32  ( 1107) -     1 - mk-www-3.portal.uk.tiscali.com -> saci                     
SD   212.74.101.5    (   80) -> 194.214.158.32  ( 1260) -     1 - mk-www-3.portal.uk.tiscali.com -> saci                     
SD   212.74.101.5    (   80) -> 194.214.158.41  ( 1271) -     1 - mk-www-3.portal.uk.tiscali.com -> barnabe                  
SD   212.74.101.5    (   80) -> 194.214.158.165 ( 1210) -     1 - mk-www-3.portal.uk.tiscali.com -> crocodile                   
SD   212.74.101.5    (   80) -> 194.214.158.165 ( 1260) -     2 - mk-www-3.portal.uk.tiscali.com -> crocodile                   
S    212.74.101.5    (   80) -> 194.214.158.246 ( 1080) -     2 - mk-www-3.portal.uk.tiscali.com -> 194.214.158.246          
SD   212.74.101.6    (   80) -> 194.214.158.42  ( 1045) -     2 - mk-www-4.portal.uk.tiscali.com -> nastacia                 
SD   212.74.101.6    (   80) -> 194.214.158.44  ( 1059) -     2 - mk-www-4.portal.uk.tiscali.com -> emilia                   
SD   212.74.101.6    (   80) -> 194.214.158.46  ( 1112) -     2 - mk-www-4.portal.uk.tiscali.com -> mapinguari               
SD   212.74.101.6    (   80) -> 194.214.158.46  ( 1248) -     1 - mk-www-4.portal.uk.tiscali.com -> mapinguari               
SD   212.74.101.6    (   80) -> 194.214.158.126 ( 1024) -     2 - mk-www-4.portal.uk.tiscali.com -> dorsey                   
S    212.74.101.6    (   80) -> 194.214.158.149 ( 1024) -     1 - mk-www-4.portal.uk.tiscali.com -> monk                     
S    212.74.101.6    (   80) -> 194.214.158.195 ( 1024) -     2 - mk-www-4.portal.uk.tiscali.com -> 194.214.158.195          
SD   212.74.101.7    (   80) -> 194.214.158.41  ( 1261) -     1 - mk-www-5.portal.uk.tiscali.com -> barnabe                  
SD   212.74.101.7    (   80) -> 194.214.158.41  ( 1270) -     1 - mk-www-5.portal.uk.tiscali.com -> barnabe                  
SD   212.74.101.7    (   80) -> 194.214.158.43  ( 1082) -     1 - mk-www-5.portal.uk.tiscali.com -> pedrinho                 
SD   212.74.101.7    (   80) -> 194.214.158.45  ( 1245) -     2 - mk-www-5.portal.uk.tiscali.com -> narizinho                
SD   212.74.101.7    (   80) -> 194.214.158.46  ( 1038) -     1 - mk-www-5.portal.uk.tiscali.com -> mapinguari               
SD   212.74.101.7    (   80) -> 194.214.158.46  ( 1199) -     1 - mk-www-5.portal.uk.tiscali.com -> mapinguari               
SD   212.74.101.7    (   80) -> 194.214.158.165 ( 1130) -     2 - mk-www-5.portal.uk.tiscali.com -> crocodile                   
SD   212.74.101.8    (   80) -> 194.214.158.32  ( 1243) -     2 - mk-www-6.portal.uk.tiscali.com -> saci                     
SD   212.74.101.8    (   80) -> 194.214.158.35  ( 1237) -     2 - mk-www-6.portal.uk.tiscali.com -> curupira                 
SD   212.74.101.8    (   80) -> 194.214.158.39  ( 1130) -     2 - mk-www-6.portal.uk.tiscali.com -> benta                    
SD   212.74.101.8    (   80) -> 194.214.158.40  ( 1069) -     1 - mk-www-6.portal.uk.tiscali.com -> quindim                  
SD   212.74.101.8    (   80) -> 194.214.158.40  ( 1102) -     1 - mk-www-6.portal.uk.tiscali.com -> quindim                  
SD   212.74.101.8    (   80) -> 194.214.158.41  ( 1138) -     2 - mk-www-6.portal.uk.tiscali.com -> barnabe                  
S    212.74.101.8    (   80) -> 194.214.158.70  ( 1024) -     2 - mk-www-6.portal.uk.tiscali.com -> pc-besson                
SD   212.74.101.8    (   80) -> 194.214.158.165 ( 1112) -     2 - mk-www-6.portal.uk.tiscali.com -> crocodile                   
S    212.74.101.9    (   80) -> 194.214.158.34  ( 1064) -     1 - mk-cms-1.portal.uk.tiscali.com -> caipora                  
SD   212.74.101.9    (   80) -> 194.214.158.40  ( 1037) -     1 - mk-cms-1.portal.uk.tiscali.com -> quindim                  
SD   212.74.101.9    (   80) -> 194.214.158.43  ( 1115) -     1 - mk-cms-1.portal.uk.tiscali.com -> pedrinho                 
S    212.74.101.9    (   80) -> 194.214.158.69  ( 1024) -     2 - mk-cms-1.portal.uk.tiscali.com -> 194.214.158.69           
SD   212.74.101.10   (   80) -> 194.214.158.32  ( 1055) -     1 - www.tiscali.co.uk         -> saci                     
SD   212.74.101.10   (   80) -> 194.214.158.32  ( 1187) -     1 - www.tiscali.co.uk         -> saci                     
SD   212.74.101.10   (   80) -> 194.214.158.42  ( 1134) -     2 - www.tiscali.co.uk         -> nastacia                 

ACL 100 - PROTO udp



*** ACL 101 - Sortie Site (20 lignes)

ACL 101 - PROTO icmp


ACL 101 - PROTO tcp

     10.3.6.154      -> 206.34.39.203   (    0) -      2 - 10.3.6.154           -> mathsoft.com        
SD   10.3.6.160      -> 207.188.7.131   (    0) -     10 - 10.3.6.160           -> outpostrr1.real.com 
     10.3.6.172      -> 193.252.19.244  (    0) -      2 - 10.3.6.172           -> 193.252.19.244      
S    10.3.6.174      -> 195.101.94.178  (    0) -      2 - 10.3.6.174           -> chat1.voila.fr      
S    10.3.6.174      -> 212.64.61.59    (    0) -      2 - 10.3.6.174           -> 4dyn59.ldam.casema.net
S    10.3.6.174      -> 212.64.61.209   (    0) -      2 - 10.3.6.174           -> 4dyn209.ldam.casema.net
              20 lignes

ACL 101 - PROTO udp


Lignes dont le numero du port source est bas

ACL 101 - PROTO icmp


ACL 101 - PROTO tcp


ACL 101 - PROTO udp



Configuration


Fichier de configuration                                  : vigilog.conf

ACLs a traiter : 
   100                  : Entree Site
   101                  : Sortie Site

Protocoles
   icmp   tcp   udp

Traitement des logs :
   Fichier de log                                         : router.020127
   Seuil du nombre d'adresses pour valider scan           :    12
   Seuil du nombre d'adresses pour valider scan           :    12
   Seuil du nombre de ports pour valider scan             :     4
   Seuil du nombre de ports pour valider harcelement      :    50
   Resolution des adresses IP                             : OUI
   Resolution des numeros de port                         : OUI
   Fichier de resolution des numeros de port              : INTERNAL
    Services a definir/redefinir : 
     - 5492/tcp               legato
     - 6112/tcp               dtspcd
   Reseaux a exclure dans traitement
   Hosts a exclure dans traitement

Rapport :
   Titre                                                  : Rapport Routeur - monrouteur
   Nombre de lignes dans la section TOP par item          :    10
   Section Aggregation par adresses                       : OUI
   Seuil du nombre de lignes dans la section aggregation  :     3
   Section Detail des lignes de log                       : OUI
   Port source dans la section detail                     : NON
   Resolution des adresses IP dans la partie detail       : OUI
   Section detail avec les ports bas des adresses source  : OUI
   Repertoire des fichiers resultat au format html        : .
   URL du repertoire contenant les fichiers html          : http://www.foo.com/cisco
   Nom de ce fichier                                      : resultat.020127.html

Alerte par E-Mail :
   Envoi de message de synthese                           : NON
   Destinataires
   Champs 'From' du message
     - root
   Champs 'Subject' du message
     - [LOG ROUTEUR] Rapport du __DATEABR__
   En-tete
     - *
     - * Routeur - CISCO 3660 - __DATE__
     - *
   Pied de page
     - *
     - * Pour plus d'informations, consultez la page :
     - *     __WWWROOT__/__FOUT__
     - *
     - * Rapport cree par vigilog v1.0
     - *



Rapport généré par Vigilog 1.0

Ecole des Mines de Paris - Centre de Calcul
Dernière mise à jour le Wed Jan 30 13:03:56 MET 2002