Vi chiedo AIUTO...

  • 3 Risposte
  • 2787 Visite

0 Utenti e 1 Visitatore stanno visualizzando questo topic.

Offline mifregano

  • Nuovo Iscritto
  • *
  • 2
Vi chiedo AIUTO...
« il: 09 Giugno 2012, 23:01 »
Cari Amici,

ho una connessione Infostrada con un router D-link G624-G
... e sono convinto che qualcuno si e' inserito nella mia rete....!

Non ho le competenze per esserne certo ma ho tanti segnali "poco chiari"

I device connessi (tutti in wi-fi) sono Apple e, piu' esattamente, un Macbook Pro, un iPhone 4 e un iPad 2

Mentre controllavo l'iphone, una app che si chiama IP Scanner, che ti permette di verificare tutti i device connessi alla stessa rete, ho verificato che il MAC Address dell'iphone e' "cambiato" rispetto a quello originale (indicato in Impostazioni/Generali/Info) come segue:
le prime 4 cifre del MAC Address vengono indicate dall'app 36:5A mentre invece quelle VERE sono 14:5A

PERCHE' ........?

Vi allego di seguito il file Log del Router che mi da a:   Status/Log


Jan  1 12:00:17> NTP Polling Timer for DHCP Started succesfully.
Jan  1 12:00:17> DSL Polling Timer Started succesfully.
Jan  1 12:00:18> Firewall NAT service started
Jan  1 12:00:18> tr069 starts (1)
Jan  1 12:00:22>  starting on port 80
Jan  1 12:00:22> (c)2000 Netfilter core team
Jan  1 12:00:22> netfilter PSD loaded - (c) astaro AG
Jan  1 12:00:22> Initializing the WAN Bridge.
Jan  1 12:00:22> Please set the MAC Address for the WAN Bridge.
Jan  1 12:00:22> Set the Environment variable 'wan_br_mac'.
Jan  1 12:00:22> xx.xx.xx.xx.xx.xx
Jan  1 12:00:22> Mounted root (squashfs filesystem) readonly.
Jan  1 12:00:22> Mounted devfs on /dev
Jan  1 12:00:22> 64k freed
Jan  1 12:00:22> Algorithmics/MIPS FPU Emulator v1.5
Jan  1 12:00:22> registered device TI Avalanche SAR
Jan  1 12:00:22> Sangam detected
Jan  1 12:00:22> DSP binary filesize = 361898 bytes
Jan  1 12:00:22> Setting mode to 0xffff
Jan  1 12:00:22> version:[5.00.04.00]
Jan  1 12:00:22> Enable_igmp_snooping_register!!!
Jan  1 12:00:22> Setting mode to 0xffff
Jan  1 12:00:22> Default Asymmetric MTU for nas0 1500
Jan  1 12:00:22> Registering protocol inspector: 0x94164638 for VCC:0x94008a00
Jan  1 12:00:23> Default Asymmetric MTU for br0 1500
Jan  1 12:00:23> Bridge Created: br0
Jan  1 12:00:24> Bridge Created: br1
Jan  1 12:00:24> WPA Authenticator Started
Jan  1 12:00:25> Bridge Interface Added: eth0
Jan  1 12:00:26> 2
Jan  1 12:00:26> Default Asymmetric MTU for br1 1500
Jan  1 12:00:26> 2
Jan  1 12:00:27> DSL Carrier is down
Jan  1 12:00:29> Default Asymmetric MTU for wlan0 1500
Jan  1 12:00:29> AP Driver configuration successful
Jan  1 12:00:34> AP IS UP
Jan  1 12:00:34>
Jan  1 12:00:34> disabled.
Jan  1 12:00:34> 802.11h is 314: disabled.
Jan  1 12:00:34> Configuration succeeded !!!
Jan  1 12:00:34> WLAN driver database is up
Jan  1 12:00:34> Preparing for vlynq tearing down....
Jan  1 12:00:34> Resetting the remote device.
Jan  1 12:00:34> Un-resetting the remote device.
Jan  1 12:00:34> Preparing the VLYNQ, now the Link is up.
Jan  1 12:00:34> AcxRegAddr = 0xA4040000, AcxMemAddr = 0xA4000000
Jan  1 12:00:34> whal_acxProcInitiate: found DEVICE_VENDOR ID = 0x9066104c
Jan  1 12:00:34> Bridge Interface Added: wlan0
Jan  1 12:00:35> whal_acxProcInitiate: Cpu halt -} download code
Jan  1 12:00:35> whal_acxProcLoadFwImage: 0xa4000000, 0x0
Jan  1 12:00:35> whal_acxProcLoadFwImage() -- Loading FW image314: Compiled for RADIA (bg) radio
Jan  1 12:00:35> whal_acxProcLoadFwImage: 1, pBuf=0xc00a5000, len=0x15564. Extra pBuf=0x0, len=0x3
Jan  1 12:00:35> whal_acxProcLoadFwImage: 2, pBuf=0xc00a5000, len=0x15564. Extra pBuf=0x0, len=0x3
Jan  1 12:00:35> whal_acxProcLoadFwImage: 3, pBuf=0xc00a5000, len=0x15564, DataLen=0x1555c
Jan  1 12:00:35> whal_acxProcLoadFwImage: 4, pBuf=0xc00a5000, len=0x15564
Jan  1 12:00:35> whal_acxProcLoadFwImage: Checksum, calc=0x71e76f, file=0x71e76f
Jan  1 12:00:35> Mgmt is up
Jan  1 12:00:35> Rx is up
Jan  1 12:00:35> Tx is up
Jan  1 12:00:35> MemMngr is up
Jan  1 12:00:35> main state machine is up
Jan  1 12:00:35> WDRV_MAINSM: WLAN Driver initialized successfully
Jan  1 12:00:35>
Jan  1 12:00:35> WDRV_4X: 4x Disabled
Jan  1 12:00:35> WDRV_4X: Concatenation Disabled
Jan  1 12:00:35> WDRV_4X: Ack Emulation Disabled
Jan  1 12:00:35> whal_apiStartBss: Enable Tx, Rx and Start the Bss
Jan  1 12:00:35> ----------------------------------------------------------------
Jan  1 12:00:35> ----------------------------------------------------------------
Jan  1 12:00:35>   START BSS, SSID=Home-2, BSSID=00-1C-F0-E5-3E-26
Jan  1 12:00:35> ----------------------------------------------------------------
Jan  1 12:00:35> ----------------------------------------------------------------
Jan  1 12:00:35>  AP Power Level = 1
Jan  1 12:00:35>  Regulatory Domain = ETSI
Jan  1 12:00:35>           Net[0] : Channel=6
Jan  1 12:00:35> ----------------------------------------------------------------
Jan  1 12:00:35> DSL in Sync
Jan  1 12:00:35> FW Watchdog is Enabled
Jan  1 12:00:37> DSL Carrier is up
Jan  1 12:00:37> sar read trained mode (1)(ADSL_G.dmt)
Jan  1 12:00:38> pingStat 2, oamHdr 230 result 0
Jan  1 12:00:38> pingStat 2, oamHdr 200 result 0
Jan  1 12:00:38> pingStat 2, oamHdr 280 result 0
Jan  1 12:00:38> pingStat 2, oamHdr 240 result 0
Jan  1 12:00:38> pingStat 2, oamHdr 260 result 0
Jan  1 12:00:38> pingStat 2, oamHdr 600 result 0
Jan  1 12:00:38> pingStat 2, oamHdr 230 result 0
Jan  1 12:00:38> pingStat 2, oamHdr 800230 result 0
Jan  1 12:00:38> pingStat 2, oamHdr 2B0 result 0
Jan  1 12:00:38> pingStat 2, oamHdr 330 result 0
Jan  1 12:00:38> pingStat 2, oamHdr 3B0 result 0
Jan  1 12:00:38> pingStat 2, oamHdr 8002B0 result 0
Jan  1 12:00:38> pingStat 2, oamHdr 800330 result 0
Jan  1 12:00:38> pingStat 2, oamHdr 8003B0 result 0
Jan  1 12:00:39> pppd 2.4.3 started by root, uid 0
Jan  1 12:00:39> Connect: ppp0 {--} nas0
Jan  1 12:00:40> PAP authentication succeeded
Jan  1 12:00:40> peer from calling number 00:90:1A:42:7C:41 authorized
Jan  1 12:00:40> ppp0
Jan  1 12:00:40> WAN IP address 151.25.230.147
Jan  1 12:00:40> WAN gateway 151.6.129.52
Jan  1 12:00:40> primary   DNS address 193.70.152.15
Jan  1 12:00:40> PPPoE Connect with IP Address 151.25.230.147
Jan  1 12:00:40> PPPoE Connection Successfully Established
Jan  1 12:00:40> PPPoE Connect with Gateway IP Address: 151.6.129.52


VI RINGRAZIO INFINITAMENTE PER IL VOSTRO AIUTO....

Enrico



Offline natalinux

  • VIP
  • *****
  • 9309
  • Sesso: Maschio
Re:Vi chiedo AIUTO...
« Risposta #1 il: 10 Giugno 2012, 09:30 »
Ma la tua rete wi-fi è protetta con key criptata?
•••─ ─ ─••• •••─ ─ ─••• •••─ ─ ─•••
TG789vac v2Ver. Mint (17.2) gui 9.6.97 (Tim)
AGTHP_2.3.5 ver. Damson (19.4) DGA4132 [DEV]9.6.97(Tim)
ZTE H388X AGZHP_1.2.3
NordVPN

Offline mifregano

  • Nuovo Iscritto
  • *
  • 2
Re:Vi chiedo AIUTO...
« Risposta #2 il: 10 Giugno 2012, 11:06 »
Ciao,
si, ho settato (da sempre) una password WPA, PSK String, con lettere minuscole, maiuscole e numeri.
La password non e' semplice, ma e' il file Log del router che mi preoccupa...ed il fatto che il MAC Address dell'iPhone al controllo con IP Scanner (app dell'iPhone) dei dispositivi connessi alla rete WiFi domestica (Home-2) risulta DIVERSO da quello reale.

Ho notato che nel file Log del router , verso la fine, c'e' questa stringa :
            peer from calling number 00:90:1A:42:7C:41 authorized

Che significa ?

Grazie Natalinux.

Ciao
enrico


Offline natalinux

  • VIP
  • *****
  • 9309
  • Sesso: Maschio
Re:Vi chiedo AIUTO...
« Risposta #3 il: 10 Giugno 2012, 12:45 »
Resetta il router e cambia la chiave.
•••─ ─ ─••• •••─ ─ ─••• •••─ ─ ─•••
TG789vac v2Ver. Mint (17.2) gui 9.6.97 (Tim)
AGTHP_2.3.5 ver. Damson (19.4) DGA4132 [DEV]9.6.97(Tim)
ZTE H388X AGZHP_1.2.3
NordVPN