google et le monople de mon .log xp sp2

Ici on parle de sécurité. Venez donc poser vos questions ou proposer vos solutions.

Modérateur: Barbapapa

google et le monople de mon .log xp sp2

Message par midnight » 01 Mars 2005 22:35

bonsoir à tous
voilà je me pose des questions sur les entrées dans le .log de mon parefeu ...et je me rende compte que la plupart vient de google d'apres le whois ...le comble est que je ne l'emploie pas comme moteur de recherche par défaut etant yahoo ce dernier ...quoi q'il en soit j'ai penser aux ads sur la plupart des sites mais pq dans mon .log et c'est quoi le but de ce nobre de paquets ?

un bout de .log :

2005-03-01 20:44:05 DROP TCP 64.233.185.109 10.0.0.39 995 4397 40 R 4034867717 402187241 8201 - - - RECEIVE
2005-03-01 20:47:05 DROP TCP 64.233.171.109 10.0.0.39 995 4404 40 R 3945520447 4278826382 8201 - - - RECEIVE
2005-03-01 20:48:05 DROP TCP 64.233.171.109 10.0.0.39 995 4406 40 R 436508838 1520462252 8201 - - - RECEIVE
2005-03-01 20:49:05 DROP TCP 64.233.171.109 10.0.0.39 995 4408 40 R 1277821951 3176296759 8201 - - - RECEIVE
2005-03-01 20:51:05 DROP TCP 64.233.185.109 10.0.0.39 995 4473 40 R 4019839514 471269564 8201 - - - RECEIVE
2005-03-01 20:52:06 DROP TCP 64.233.171.109 10.0.0.39 995 4475 40 R 4177089563 3377947448 8201 - - - RECEIVE
2005-03-01 20:53:05 DROP TCP 64.233.171.109 10.0.0.39 995 4477 40 R 3435341674 861011286 8201 - - - RECEIVE
2005-03-01 20:55:06 DROP TCP 64.233.185.109 10.0.0.39 995 4481 40 R 168421801 252172515 8201 - - - RECEIVE
2005-03-01 20:57:02 DROP TCP 193.22.143.71 10.0.0.39 80 4489 213 FAP 388222499 2867317466 16848 - - - RECEIVE
2005-03-01 20:57:04 DROP TCP 193.22.143.71 10.0.0.39 80 4489 213 FAP 388222499 2867317466 16848 - - - RECEIVE
2005-03-01 20:57:05 DROP TCP 64.233.185.109 10.0.0.39 995 4515 40 R 3624627203 1285002875 8201 - - - RECEIVE
2005-03-01 20:57:07 DROP TCP 193.22.143.71 10.0.0.39 80 4489 213 FAP 388222499 2867317466 16848 - - - RECEIVE
2005-03-01 20:57:13 DROP TCP 193.22.143.71 10.0.0.39 80 4489 213 FAP 388222499 2867317466 16848 - - - RECEIVE
2005-03-01 20:57:24 DROP TCP 193.22.143.71 10.0.0.39 80 4489 213 FAP 388222499 2867317466 16848 - - - RECEIVE
2005-03-01 20:58:06 DROP TCP 64.233.171.109 10.0.0.39 995 4544 40 R 1379522228 2252979272 8201 - - - RECEIVE
2005-03-01 20:59:07 DROP TCP 64.233.171.109 10.0.0.39 995 4546 40 R 1352085491 1491535078 8201 - - - RECEIVE
2005-03-01 21:01:06 DROP TCP 64.233.171.109 10.0.0.39 995 4578 40 R 2338434776 681999101 8201 - - - RECEIVE
2005-03-01 21:02:06 DROP TCP 64.233.171.109 10.0.0.39 995 4634 40 R 1020572540 3610708567 8201 - - - RECEIVE
2005-03-01 21:04:06 DROP TCP 64.233.171.109 10.0.0.39 995 4638 40 R 902830317 1938055749 8201 - - - RECEIVE
2005-03-01 21:05:06 DROP TCP 64.233.171.109 10.0.0.39 995 4640 40 R 1329745060 3656111363 8201 - - - RECEIVE
2005-03-01 21:06:06 DROP TCP 64.233.185.109 10.0.0.39 995 4642 40 R 2377381351 2353062639 8201 - - - RECEIVE
2005-03-01 21:08:06 DROP TCP 64.233.185.109 10.0.0.39 995 4645 40 R 3626305656 3764241314 8201 - - - RECEIVE
2005-03-01 21:11:06 DROP TCP 64.233.171.109 10.0.0.39 995 4652 40 R 3253251806 854604540 8201 - - - RECEIVE
2005-03-01 21:12:06 DROP TCP 64.233.171.109 10.0.0.39 995 4653 40 R 535376156 269452015 8201 - - - RECEIVE
2005-03-01 21:14:06 DROP TCP 64.233.171.109 10.0.0.39 995 4658 40 R 64979563 3064704717 8201 - - - RECEIVE
2005-03-01 21:16:06 DROP TCP 64.233.171.109 10.0.0.39 995 4662 40 R 1521590360 3423267524 8201 - - - RECEIVE
2005-03-01 21:16:55 DROP TCP 64.59.134.11 10.0.0.39 80 4713 405 AP 2870956928 2815555440 17024 - - - RECEIVE
2005-03-01 21:16:55 DROP TCP 64.59.134.11 10.0.0.39 80 4714 563 AP 637473203 4256904823 17021 - - - RECEIVE
2005-03-01 21:16:55 DROP TCP 64.59.134.11 10.0.0.39 80 4712 471 AP 3074382378 3478551670 17025 - - - RECEIVE
2005-03-01 21:16:55 DROP TCP 64.59.134.11 10.0.0.39 80 4718 533 AP 1440688195 4167406449 17026 - - - RECEIVE
2005-03-01 21:16:55 DROP TCP 64.59.134.11 10.0.0.39 80 4713 1492 A 2870955476 2815555440 17024 - - - RECEIVE
2005-03-01 21:16:55 DROP TCP 64.59.134.11 10.0.0.39 80 4714 1492 A 637471751 4256904823 17021 - - - RECEIVE
2005-03-01 21:16:55 DROP TCP 64.59.134.11 10.0.0.39 80 4712 1492 A 3074380926 3478551670 17025 - - - RECEIVE
2005-03-01 21:16:55 DROP TCP 64.59.134.11 10.0.0.39 80 4717 1492 A 2348760831 3901710716 17020 - - - RECEIVE
2005-03-01 21:16:55 DROP TCP 64.59.134.11 10.0.0.39 80 4718 1492 A 1440686743 4167406449 17026 - - - RECEIVE
2005-03-01 21:16:55 DROP TCP 64.59.134.11 10.0.0.39 80 4716 1492 A 1897869391 4019258206 17025 - - - RECEIVE
2005-03-01 21:16:55 DROP TCP 64.59.134.11 10.0.0.39 80 4719 1492 A 1797205479 3552361726 17023 - - - RECEIVE
2005-03-01 21:16:55 DROP TCP 64.59.134.11 10.0.0.39 80 4715 1492 A 3988745735 2117293389 17025 - - - RECEIVE
2005-03-01 21:16:56 DROP TCP 64.59.134.11 10.0.0.39 80 4713 1492 A 2870955476 2815555440 17024 - - - RECEIVE
2005-03-01 21:16:56 DROP TCP 64.59.134.11 10.0.0.39 80 4714 1492 A 637471751 4256904823 17021 - - - RECEIVE
2005-03-01 21:16:56 DROP TCP 64.59.134.11 10.0.0.39 80 4712 1492 A 3074380926 3478551670 17025 - - - RECEIVE
2005-03-01 21:16:56 DROP TCP 64.59.134.11 10.0.0.39 80 4717 1492 A 2348760831 3901710716 17020 - - - RECEIVE
2005-03-01 21:16:56 DROP TCP 64.59.134.11 10.0.0.39 80 4718 1492 A 1440686743 4167406449 17026 - - - RECEIVE
2005-03-01 21:16:56 DROP TCP 64.59.134.11 10.0.0.39 80 4716 1492 A 1897869391 4019258206 17025 - - - RECEIVE
2005-03-01 21:16:56 DROP TCP 64.59.134.11 10.0.0.39 80 4719 1492 A 1797205479 3552361726 17023 - - - RECEIVE
2005-03-01 21:16:56 DROP TCP 64.59.134.11 10.0.0.39 80 4715 1492 A 3988745735 2117293389 17025 - - - RECEIVE
2005-03-01 21:16:58 DROP TCP 64.59.134.11 10.0.0.39 80 4713 1492 A 2870955476 2815555440 17024 - - - RECEIVE
2005-03-01 21:16:58 DROP TCP 64.59.134.11 10.0.0.39 80 4714 1492 A 637471751 4256904823 17021 - - - RECEIVE
2005-03-01 21:16:58 DROP TCP 64.59.134.11 10.0.0.39 80 4712 1492 A 3074380926 3478551670 17025 - - - RECEIVE
2005-03-01 21:16:58 DROP TCP 64.59.134.11 10.0.0.39 80 4717 1492 A 2348760831 3901710716 17020 - - - RECEIVE
2005-03-01 21:16:58 DROP TCP 64.59.134.11 10.0.0.39 80 4718 1492 A 1440686743 4167406449 17026 - - - RECEIVE
2005-03-01 21:16:58 DROP TCP 64.59.134.11 10.0.0.39 80 4716 1492 A 1897869391 4019258206 17025 - - - RECEIVE
2005-03-01 21:16:58 DROP TCP 64.59.134.11 10.0.0.39 80 4719 1492 A 1797205479 3552361726 17023 - - - RECEIVE
2005-03-01 21:16:58 DROP TCP 64.59.134.11 10.0.0.39 80 4715 1492 A 3988745735 2117293389 17025 - - - RECEIVE
2005-03-01 21:17:00 DROP TCP 67.19.42.36 10.0.0.39 80 4699 40 R 250388749 0 0 - - - RECEIVE
2005-03-01 21:17:00 DROP TCP 67.19.42.36 10.0.0.39 80 4693 40 R 240114785 0 0 - - - RECEIVE
2005-03-01 21:17:02 DROP TCP 64.59.134.11 10.0.0.39 80 4713 1492 A 2870955476 2815555440 17024 - - - RECEIVE
2005-03-01 21:17:02 DROP TCP 64.59.134.11 10.0.0.39 80 4714 1492 A 637471751 4256904823 17021 - - - RECEIVE
2005-03-01 21:17:02 DROP TCP 64.59.134.11 10.0.0.39 80 4712 1492 A 3074380926 3478551670 17025 - - - RECEIVE
2005-03-01 21:17:02 DROP TCP 64.59.134.11 10.0.0.39 80 4717 1492 A 2348760831 3901710716 17020 - - - RECEIVE
2005-03-01 21:17:02 DROP TCP 64.59.134.11 10.0.0.39 80 4718 1492 A 1440686743 4167406449 17026 - - - RECEIVE
2005-03-01 21:17:02 DROP TCP 64.59.134.11 10.0.0.39 80 4716 1492 A 1897869391 4019258206 17025 - - - RECEIVE
2005-03-01 21:17:02 DROP TCP 64.59.134.11 10.0.0.39 80 4719 1492 A 1797205479 3552361726 17023 - - - RECEIVE
2005-03-01 21:17:02 DROP TCP 64.59.134.11 10.0.0.39 80 4715 1492 A 3988745735 2117293389 17025 - - - RECEIVE
2005-03-01 21:17:10 DROP TCP 64.59.134.11 10.0.0.39 80 4713 1492 A 2870955476 2815555440 17024 - - - RECEIVE
2005-03-01 21:17:10 DROP TCP 64.59.134.11 10.0.0.39 80 4714 1492 A 637471751 4256904823 17021 - - - RECEIVE
2005-03-01 21:17:10 DROP TCP 64.59.134.11 10.0.0.39 80 4712 1492 A 3074380926 3478551670 17025 - - - RECEIVE
2005-03-01 21:17:10 DROP TCP 64.59.134.11 10.0.0.39 80 4717 1492 A 2348760831 3901710716 17020 - - - RECEIVE
2005-03-01 21:17:10 DROP TCP 64.59.134.11 10.0.0.39 80 4718 1492 A 1440686743 4167406449 17026 - - - RECEIVE
2005-03-01 21:17:10 DROP TCP 64.59.134.11 10.0.0.39 80 4716 1492 A 1897869391 4019258206 17025 - - - RECEIVE
2005-03-01 21:17:10 DROP TCP 64.59.134.11 10.0.0.39 80 4719 1492 A 1797205479 3552361726 17023 - - - RECEIVE
2005-03-01 21:17:10 DROP TCP 64.59.134.11 10.0.0.39 80 4715 1492 A 3988745735 2117293389 17025 - - - RECEIVE

Image

qqun pour m'expliquer ? svp :?:
midnight
Nouveau
Nouveau
 
Message(s) : 2
Inscription : 03 Fév 2005 19:52

Message par apn » 01 Mars 2005 22:49

64.233.171.109 & 64.233.185.109: Connection port 995 -> pop3s, tu est donc en train d'utiliser ton client mail pour rapatrier tes mails de GMAIL (qui appartient à google) ;-)

Ps pour la dernière rafale de connections (ip 64.59.134.11 port 80) elle n'appartient pas aux ranges de google.
apn
Habitué
Habitué
 
Message(s) : 706
Inscription : 18 Oct 2003 17:32
Localisation : Uccle

Message par midnight » 04 Mars 2005 18:02

ok, merci :wink:
midnight
Nouveau
Nouveau
 
Message(s) : 2
Inscription : 03 Fév 2005 19:52


Retour vers Sécurité

Qui est en ligne ?

Utilisateur(s) parcourant ce forum : Aucun utilisateur inscrit