SOCKSプロキシ用ログフォルダです。
セッション毎のデータ受信毎に以下のような、記録が行われます。
[フォルダ]
環境変数"ALLUSERSPROFILE"
└ Z-PROXY
└ sockslog SOCKSプロキシ用ログフォルダ[ログ]
[11:41:29:468] (1.17) Copyright 2008-2009 K-TEC Inc. All rights reserved.
[11:41:29:468] Connection = 0
[11:41:29:468] IP version = IPv4,IPv6 ← 接続可能なIPバージョン
[11:41:29:468] Proxy Auth = no
[11:41:29:468] Timeout Client(Plain) = 30000 ← 接続クライアントとの無通信タイムアウト時間
(プレーン時)単位ミリ秒
[11:41:29:468] Timeout Client(SSL) = 30000 ← 接続クライアントとの無通信タイムアウト時間
(暗号化時)単位ミリ秒
[11:41:29:468] Timeout Server(Plain) = 30000 ← 接続サーバとの無通信タイムアウト時間
(暗号化時)単位ミリ秒
[11:41:29:468] Timeout Server(SSL) = 30000 ← 接続サーバとの無通信タイムアウト時間
(暗号化時)単位ミリ秒
[11:41:29:468] Mail backup = no:
[11:41:29:468] FTP PortRange = 00000 - 00000 ← FTPでのデータポート範囲
[11:41:29:468] SOCKS Cache time = 0 min.
[11:41:29:468] Virus Mail deleted = On.
[11:41:29:468] Log Folder = C:\Documents and Settings\All Users\Z-PROXY\sockslog
[11:41:29:468] [AcceptClients] table=192.168.1.15 1080
[11:41:29:468] [AcceptClients] table=192.168.1.16 1080
[11:41:29:484] [AcceptClients] listen=192.168.1.15 1080 ← リッスン:ポートIP(1)
[11:41:29:484] [AcceptClients] listen=192.168.1.16 1080 ← リッスン:ポートIP(2)
[11:41:29:500] [AcceptClients] host.domain=[xxxxxxxx.jp]
[11:41:29:500] [AcceptClients] wait select()
[12:19:39:109] [AcceptClients] wait accept()
:
: [HTTP接続]
[12:19:39:109] [AcceptClients] start accept()
[12:19:39:109] [AcceptClients] Accept Client sokect.(0000075c)(00000778) ← セッションの発生
[12:19:39:109] [AcceptClients] [0015e008] memory alloc()
[12:19:39:109] [AcceptClients] Connect from [192.168.1.15] ← 接続元
[12:19:39:125] [AcceptClients] wait select()
[12:19:39:125] [AcceptClients] [0015e008] START[0000075c]
[12:19:39:125] [AcceptClients] C:recv(1884):3 bytes.
[12:19:39:125] ← クライアントからSOCKSでの接続情報
05 01 00
[12:19:39:125] ← クライアントへの結果応答
05 00
[12:19:39:125] [AcceptClients] C:recv(1884):10 bytes.
[12:19:39:125]
05 01 00 01 ca e8 8c 4d 00 50
[12:19:39:125]
05 00 00 01 ca e8 8c 4d 00 50
[12:19:39:125] [AcceptClients] C:recv(1884):516 bytes.
[12:19:39:125] GET /xxxx.xxx HTTP/1.1
[12:19:39:125] [Proxy_Dispatch] [1884] Start Proxy_Dispatch()
[12:19:39:125] [Query_SURBLists] [Hit] 接続先名称
[12:19:39:140] [ConnectHost] Winsock connect success. Server=202.232.140.77
[12:19:39:140] [GetDispatch] [1860] sender connect success.
[12:19:39:156] [GetDispatch] S:recv(1860):545 bytes.
[12:19:39:156] [GetDispatch] [1860] sender close socket.
[12:19:39:406] [ScanFile] [1860] C:\Documents and Settings\All Users\Z-PROXY\req-5-1884_proxy.tmp
--- CLEAN
[12:19:39:406] [GetDispatch] [1860] [GET /rss20.xml HTTP/1.1
] [CLEAN]
[12:19:39:406] [GetDispatch] C:send(1884):545 bytes
[12:19:39:406] [Proxy_Dispatch] [1884] End.
:
:[UDP接続]
[12:27:00:906] [AcceptClients] start accept()
[12:27:00:906] [AcceptClients] Accept Client sokect.(000006ec)(00000778)
[12:27:00:921] [AcceptClients] [0015e008] memory alloc()
[12:27:00:921] [AcceptClients] Connect from [192.168.1.15]
[12:27:00:921] [AcceptClients] wait select()
[12:27:00:921] [AcceptClients] [0015e008] START[000006ec]
[12:27:00:921] [AcceptClients] C:recv(1772):3 bytes.
[12:27:00:921]
05 01 02
[12:27:00:921]
05 00
[12:27:00:921] [AcceptClients] C:recv(1772):10 bytes.
[12:27:00:921]
05 03 00 01 00 00 00 00 0c 89
[12:27:00:921] [UDPMain] [1772] mIP=192.168.1.15, nPort=3209
[12:27:00:921]
05 00 00 01 c0 a8 01 0f 0c 89
[12:27:00:921] [UDPMain] [1836] UDP Data recv Client ok. 58 bytes.
[12:27:00:921]
00 00 00 01 82 22 0b 75 00 7b 0b 00 00 00 00 00
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
00 00 00 00 00 00 00 00 00 00
[12:27:00:921] [TellRemoteUDP] [1740] UDP Data send Server ok. 48 bytes.
[12:27:00:921]
0b 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
:
:[FTP接続]
[12:29:07:656] [AcceptClients] wait accept()
[12:29:07:656] [AcceptClients] start accept()
[12:29:07:656] [AcceptClients] Accept Client sokect.(00000730)(00000778)
[12:29:07:656] [AcceptClients] [0015e008] memory alloc()
[12:29:07:656] [AcceptClients] Connect from [192.168.1.15]
[12:29:07:656] [AcceptClients] wait select()
[12:29:07:656] [AcceptClients] [0015e008] START[00000730]
[12:29:07:671] [AcceptClients] C:recv(1840):3 bytes.
[12:29:07:671]
05 01 02
[12:29:07:671]
05 00
[12:29:07:671] [AcceptClients] C:recv(1840):10 bytes.
[12:29:07:671]
05 01 00 01 c0 a8 01 0f 00 15
[12:29:07:671] [Query_SURBLists] [Hit] 接続先名称
[12:29:07:687] [ConnectHost] Winsock connect success. Server=192.168.1.15
[12:29:07:687]
05 00 00 01 c0 a8 01 0f 00 15
[12:29:07:687] [TelnetDispatch] [1776] sender connect success.
[12:29:07:687] [ServerToClientSession] Start. sockSv=1776, sockCl=1840
[12:29:07:687] [ServerToClientSession] S:recv(1776):27 bytes.
[12:29:07:687] 220 XXXXXXXXXXXXXXXXXX
:
:[SMTP接続]
[12:32:19:500] [AcceptClients] wait accept()
[12:32:19:500] [AcceptClients] start accept()
[12:32:19:500] [AcceptClients] Accept Client sokect.(000006a8)(00000778)
[12:32:19:500] [AcceptClients] [001ae258] memory alloc()
[12:32:19:500] [AcceptClients] Connect from [192.168.1.15]
[12:32:19:500] [AcceptClients] wait select()
[12:32:19:500] [AcceptClients] [001ae258] START[000006a8]
[12:32:19:500] [AcceptClients] C:recv(1704):3 bytes.
[12:32:19:500]
05 01 00
[12:32:19:500]
05 00
[12:32:19:500] [AcceptClients] C:recv(1704):10 bytes.
[12:32:19:515]
05 01 00 01 db a3 be d2 00 19
[12:32:19:515] [Query_SURBLists] [Hit] 接続先名称
[12:32:19:515] [ConnectHost] Winsock connect success. Server=xxxx.xxxx.xxxx
[12:32:19:515]
05 00 00 01 db a3 be d2 00 19
[12:32:19:515] [TelnetDispatch] [1776] sender connect success.
[12:32:19:515] [ServerToClientSession] Start. sockSv=1776, sockCl=1704
[12:32:19:734] [ServerToClientSession] S:recv(1776):90 bytes.
[12:32:19:734] 220 XXXXXXXXXXXXXXXXXXXXXXXXXXXXXX
:
:[POP3接続]
[12:33:58:140] [AcceptClients] wait accept()
[12:33:58:140] [AcceptClients] start accept()
[12:33:58:140] [AcceptClients] Accept Client sokect.(0000071c)(00000778)
[12:33:58:140] [AcceptClients] [001ae258] memory alloc()
[12:33:58:140] [AcceptClients] Connect from [192.168.1.15]
[12:33:58:140] [AcceptClients] wait select()
[12:33:58:156] [AcceptClients] [001ae258] START[0000071c]
[12:33:58:156] [AcceptClients] C:recv(1820):3 bytes.
[12:33:58:156]
05 01 00
[12:33:58:156]
05 00
[12:33:58:156] [AcceptClients] C:recv(1820):10 bytes.
[12:33:58:156]
05 01 00 01 db a3 be d2 00 6e
[12:33:58:156] [Query_SURBLists] [Hit] 接続先名称
[12:33:58:171] [ConnectHost] Winsock connect success. Server=xxxx.xxxx.xxxx
[12:33:58:171]
05 00 00 01 db a3 be d2 00 6e
[12:33:58:171] [TelnetDispatch] [1776] sender connect success.
[12:33:58:171] [ServerToClientSession] Start. sockSv=1776, sockCl=1820
[12:33:58:171] [ServerToClientSession] S:recv(1776):79 bytes.
[12:33:58:171] +OK XXXXXXXXXXXXXXXXXXXXXXXXXXXXX
|