Esto me viene ocurriendo en forma aleatoria y no puedo encontrar el motivo.
Tampoco Telefonica que es la proveedora del servicio colabora para
resolverlo. La red esta constituida por 4 PCs que comparten internet
utilizando un router SMC Barricade que asigna IP local dinamica y su
conexion Wan esta conectada al modem router Zyxel 650R-31 que proveyo el
ISP. En ninguna de las PCs hay spyware ( Ad-Aware-Spywareblaster y
Spysweeper mediante) y todas tienen sus antivirus actualizados.
Por la noche estan apagadas pero a veces uno de los usuarios deja
funcionando el eDonkey V1.0 bajando alguna cosa y generalmente las bajadas
le funcionan bien pero en algunas ocasiones no solo deja de bajar sino que
tampoco permite subir a quienes esten conectados. Los puertos en uso por el
programa y unicos habilitados en el cortafuegos del router son IP 33333 y
UDP 44444.
El Log de la conexion cuando la interrupcion ocurrio por ultima vez es el
siguiente:
2004/08/15 14:44:04 Dial On Demand (PPPoE): forward to dst 200.41.166.17
2004/08/15 14:44:04 Dial On Demand (PPPoE): forward to dst 200.41.166.17
2004/08/15 14:44:04 Dial On Demand (PPPoE): forward to dst 200.41.166.17
2004/08/15 14:44:04 Dial On Demand (PPPoE): forward to dst 200.41.166.17
2004/08/15 14:44:04 Username and Password : OK
2004/08/15 14:44:07 PPPoE get IP : 200.63.148.29
2004/08/15 14:44:08 192.168.2.161 logout
2004/08/15 14:44:08 0.0.0.0 logout
2004/08/16 09:10:41 PPPoE send PADI
2004/08/16 09:10:43 Dial On Demand (PPPoE): forward to dst 62.21.2.75
2004/08/16 09:10:45 Dial On Demand (PPPoE): forward to dst 62.21.2.75
2004/08/16 09:10:46 PPPoE send PADI
2004/08/16 09:10:46 Dial On Demand (PPPoE): forward to dst 62.21.2.75
2004/08/16 09:10:48 Dial On Demand (PPPoE): forward to dst 200.51.254.254
2004/08/16 09:10:48 Dial On Demand (PPPoE): forward to dst 200.51.254.251
2004/08/16 09:10:48 Dial On Demand (PPPoE): forward to dst 200.51.254.238
2004/08/16 09:10:48 Dial On Demand (PPPoE): forward to dst 200.51.209.22
2004/08/16 09:10:49 Dial On Demand (PPPoE): forward to dst 200.51.254.254
2004/08/16 09:10:49 Dial On Demand (PPPoE): forward to dst 200.51.254.251
2004/08/16 09:10:49 Dial On Demand (PPPoE): forward to dst 200.51.254.238
2004/08/16 09:10:49 Dial On Demand (PPPoE): forward to dst 200.51.209.22
2004/08/16 09:10:50 Dial On Demand (PPPoE): forward to dst 200.51.254.254
2004/08/16 09:10:50 Dial On Demand (PPPoE): forward to dst 200.51.254.251
2004/08/16 09:10:50 Dial On Demand (PPPoE): forward to dst 200.51.254.238
2004/08/16 09:10:50 Dial On Demand (PPPoE): forward to dst 200.51.209.22
2004/08/16 09:10:51 PPPoE send PADI
2004/08/16 09:10:52 Dial On Demand (PPPoE): forward to dst 200.51.254.254
2004/08/16 09:10:52 Dial On Demand (PPPoE): forward to dst 200.51.254.251
2004/08/16 09:10:52 Dial On Demand (PPPoE): forward to dst 200.51.254.238
2004/08/16 09:10:52 Dial On Demand (PPPoE): forward to dst 200.51.209.22
2004/08/16 09:10:56 Dial On Demand (PPPoE): forward to dst 200.51.254.254
2004/08/16 09:10:56 Dial On Demand (PPPoE): forward to dst 200.51.254.251
2004/08/16 09:10:56 Dial On Demand (PPPoE): forward to dst 200.51.254.238
2004/08/16 09:10:56 Dial On Demand (PPPoE): forward to dst 200.51.209.22
2004/08/16 09:10:56 PPPoE send PADI
2004/08/16 09:11:01 PPPoE send PADI
2004/08/16 09:11:03 Dial On Demand (PPPoE): forward to dst 81.51.32.211
2004/08/16 09:11:04 Dial On Demand (PPPoE): forward to dst 81.51.32.211
2004/08/16 09:11:06 Dial On Demand (PPPoE): forward to dst 81.51.32.211
2004/08/16 09:11:06 PPPoE send PADI
2004/08/16 09:11:07 Dial On Demand (PPPoE): forward to dst 200.51.254.254
2004/08/16 09:11:07 Dial On Demand (PPPoE): forward to dst 200.51.254.251
2004/08/16 09:11:07 Dial On Demand (PPPoE): forward to dst 200.51.254.238
2004/08/16 09:11:07 Dial On Demand (PPPoE): forward to dst 200.51.209.22
2004/08/16 09:11:08 Dial On Demand (PPPoE): forward to dst 200.51.254.254
2004/08/16 09:11:08 Dial On Demand (PPPoE): forward to dst 200.51.254.251
2004/08/16 09:11:08 Dial On Demand (PPPoE): forward to dst 200.51.254.238
2004/08/16 09:11:08 Dial On Demand (PPPoE): forward to dst 200.51.209.22
2004/08/16 09:11:09 Dial On Demand (PPPoE): forward to dst 200.51.254.254
2004/08/16 09:11:09 Dial On Demand (PPPoE): forward to dst 200.51.254.251
2004/08/16 09:11:09 Dial On Demand (PPPoE): forward to dst 200.51.254.238
2004/08/16 09:11:09 Dial On Demand (PPPoE): forward to dst 200.51.209.22
2004/08/16 09:11:11 PPPoE send PADI
2004/08/16 09:11:11 Dial On Demand (PPPoE): forward to dst 200.51.254.254
2004/08/16 09:11:11 Dial On Demand (PPPoE): forward to dst 200.51.254.251
2004/08/16 09:11:11 Dial On Demand (PPPoE): forward to dst 200.51.254.238
2004/08/16 09:11:11 Dial On Demand (PPPoE): forward to dst 200.51.209.22
2004/08/16 09:11:15 Dial On Demand (PPPoE): forward to dst 200.51.254.254
2004/08/16 09:11:15 Dial On Demand (PPPoE): forward to dst 200.51.254.251
2004/08/16 09:11:15 Dial On Demand (PPPoE): forward to dst 200.51.254.238
2004/08/16 09:11:15 Dial On Demand (PPPoE): forward to dst 200.51.209.22
2004/08/16 09:11:16 PPPoE send PADI
2004/08/16 09:11:21 PPPoE send PADI
2004/08/16 09:11:22 Dial On Demand (PPPoE): forward to dst 82.254.4.134
2004/08/16 09:11:24 Dial On Demand (PPPoE): forward to dst 82.254.4.134
2004/08/16 09:11:25 Dial On Demand (PPPoE): forward to dst 82.254.4.134
2004/08/16 09:11:26 PPPoE send PADI
2004/08/16 09:11:27 Dial On Demand (PPPoE): forward to dst 200.51.254.254
2004/08/16 09:11:27 Dial On Demand (PPPoE): forward to dst 200.51.254.251
2004/08/16 09:11:27 Dial On Demand (PPPoE): forward to dst 200.51.254.238
2004/08/16 09:11:27 Dial On Demand (PPPoE): forward to dst 200.51.209.22
2004/08/16 09:11:28 Dial On Demand (PPPoE): forward to dst 200.51.254.254
2004/08/16 09:11:28 Dial On Demand (PPPoE): forward to dst 200.51.254.251
2004/08/16 09:11:28 Dial On Demand (PPPoE): forward to dst 200.51.254.238
2004/08/16 09:11:28 Dial On Demand (PPPoE): forward to dst 200.51.209.22
2004/08/16 09:11:29 Dial On Demand (PPPoE): forward to dst 200.51.254.254
2004/08/16 09:11:29 Dial On Demand (PPPoE): forward to dst 200.51.254.251
2004/08/16 09:11:29 Dial On Demand (PPPoE): forward to dst 200.51.254.238
2004/08/16 09:11:29 Dial On Demand (PPPoE): forward to dst 200.51.209.22
2004/08/16 09:11:31 Dial On Demand (PPPoE): forward to dst 200.51.254.254
2004/08/16 09:11:31 Dial On Demand (PPPoE): forward to dst 200.51.254.251
2004/08/16 09:11:31 Dial On Demand (PPPoE): forward to dst 200.51.254.238
2004/08/16 09:11:31 Dial On Demand (PPPoE): forward to dst 200.51.209.22
2004/08/16 09:11:31 PPPoE send PADI
2004/08/16 09:11:35 Dial On Demand (PPPoE): forward to dst 200.51.254.254
2004/08/16 09:11:35 Dial On Demand (PPPoE): forward to dst 200.51.254.251
2004/08/16 09:11:35 Dial On Demand (PPPoE): forward to dst 200.51.254.238
2004/08/16 09:11:35 Dial On Demand (PPPoE): forward to dst 200.51.209.22
2004/08/16 09:11:36 PPPoE send PADI
2004/08/16 09:11:36 PPPoE receive PADO
2004/08/16 09:11:36 PPPoE send PADR
2004/08/16 09:11:36 PPPoE receive PADS
2004/08/16 09:11:36 PPPoE start PPP
2004/08/16 09:11:36 Username and Password : OK
2004/08/16 09:11:42 PPPoE get IP : 168.226.103.144
2004/08/16 09:13:52 192.168.2.161 login successful
Se que las direcciones 200.51. etc son servidores de Telefonica pero
aparecen otras de las que no puedo averiguar el Whois y tengo la sospecha de
que extraños estan tratando de tomar el control del router y cuando lo
logran el pasaje de datos se interrumpe o lo interrumpen.
No he encontrado malware a posteriori de estos hechos pero desearia que
gente con mayores conocimientos que los mios me explicara que puede estar
sucediendo.
Muchisimas gracias a todos los colaboradores en estos Foros,
Hugo Garcia
Leer las respuestas