@wjb Onderstaand heb ik ze gestuurd.
├─────── STARTING
│
│ Domain to test: robot-maatje.com
│ Timestamp (UTC): do 8 aug 2024 6:38:45 UTC
| Timestamp (Local): do 8 aug 2024 8:38:45 CEST
└───────────────────────────────────────
┌───────────────────────────────────────
├─────── IP Information
{
"ip": "Mijn ip adres stond hier",
"city": "Alkmaar",
"region": "North Holland",
"country": "NL",
"loc": "52.6317,4.7486",
"org": "AS1136 KPN B.V.",
"postal": "1811",
"timezone": "Europe/Amsterdam",
"readme": "https://ipinfo.io/missingauth"
}
└───────────────────────────────────────
┌───────────────────────────────────────
├─────── Testing 76.76.21.21
PING 76.76.21.21 (76.76.21.21) 56(84) bytes of data.
--- 76.76.21.21 ping statistics ---
4 packets transmitted, 0 received, 100% packet loss, time 3073ms
traceroute to 76.76.21.21 (76.76.21.21), 30 hops max, 60 byte packets
1 mijnmodem.kpn.home (192.168.2.254) 0.372 ms 0.354 ms 0.443 ms
2 static.kpn.net (195.190.228.102) 4.047 ms 3.845 ms 3.843 ms
3 * * *
4 * * *
5 * * *
6 * * *
7 * * *
8 * * *
9 * * *
10 * * *
11 * * *
12 * * *
13 * * *
14 * * *
15 * * *
16 * * *
17 * * *
18 * * *
19 * * *
20 * * *
21 * * *
22 * * *
23 * * *
24 * * *
25 * * *
26 * * *
27 * * *
28 * * *
29 * * *
30 * * *
└───────────────────────────────────────
┌───────────────────────────────────────
├─────── Testing 76.76.21.9
PING 76.76.21.9 (76.76.21.9) 56(84) bytes of data.
--- 76.76.21.9 ping statistics ---
4 packets transmitted, 0 received, 100% packet loss, time 3061ms
traceroute to 76.76.21.9 (76.76.21.9), 30 hops max, 60 byte packets
1 mijnmodem.kpn.home (192.168.2.254) 0.303 ms 0.387 ms 0.384 ms
2 static.kpn.net (195.190.228.102) 2.061 ms 2.403 ms 2.511 ms
3 * * *
4 * * *
5 * * *
6 * * *
7 * * *
8 * * *
9 * * *
10 * * *
11 * * *
12 * * *
13 * * *
14 * * *
15 * * *
16 * * *
17 * * *
18 * * *
19 * * *
20 * * *
21 * * *
22 * * *
23 * * *
24 * * *
25 * * *
26 * * *
27 * * *
28 * * *
29 * * *
30 * * *
└───────────────────────────────────────
┌───────────────────────────────────────
├─────── Testing 76.76.21.22
PING 76.76.21.22 (76.76.21.22) 56(84) bytes of data.
64 bytes from 76.76.21.22: icmp_seq=1 ttl=250 time=2.88 ms
64 bytes from 76.76.21.22: icmp_seq=2 ttl=250 time=2.75 ms
64 bytes from 76.76.21.22: icmp_seq=3 ttl=250 time=2.72 ms
64 bytes from 76.76.21.22: icmp_seq=4 ttl=250 time=2.68 ms
--- 76.76.21.22 ping statistics ---
4 packets transmitted, 4 received, 0% packet loss, time 3006ms
rtt min/avg/max/mdev = 2.678/2.757/2.884/0.077 ms
└───────────────────────────────────────
┌───────────────────────────────────────
├─────── Testing 76.76.21.61
PING 76.76.21.61 (76.76.21.61) 56(84) bytes of data.
--- 76.76.21.61 ping statistics ---
4 packets transmitted, 0 received, 100% packet loss, time 3060ms
traceroute to 76.76.21.61 (76.76.21.61), 30 hops max, 60 byte packets
1 mijnmodem.kpn.home (192.168.2.254) 0.346 ms 0.290 ms 0.385 ms
2 static.kpn.net (195.190.228.102) 3.626 ms 3.624 ms 3.621 ms
3 * * *
4 * * *
5 * * *
6 * * *
7 * * *
8 * * *
9 * * *
10 * * *
11 * * *
12 * * *
13 * * *
14 * * *
15 * * *
16 * * *
17 * * *
18 * * *
19 * * *
20 * * *
21 * * *
22 * * *
23 * * *
24 * * *
25 * * *
26 * * *
27 * * *
28 * * *
29 * * *
30 * * *
└───────────────────────────────────────
┌───────────────────────────────────────
├─────── Testing 76.76.21.93
PING 76.76.21.93 (76.76.21.93) 56(84) bytes of data.
--- 76.76.21.93 ping statistics ---
4 packets transmitted, 0 received, 100% packet loss, time 3062ms
traceroute to 76.76.21.93 (76.76.21.93), 30 hops max, 60 byte packets
1 mijnmodem.kpn.home (192.168.2.254) 0.378 ms 0.335 ms 0.449 ms
2 static.kpn.net (195.190.228.102) 2.235 ms 2.496 ms 2.707 ms
3 * * *
4 * * *
5 * * *
6 * * *
7 * * *
8 * * *
9 * * *
10 * * *
11 * * *
12 * * *
13 * * *
14 * * *
15 * * *
16 * * *
17 * * *
18 * * *
19 * * *
20 * * *
21 * * *
22 * * *
23 * * *
24 * * *
25 * * *
26 * * *
27 * * *
28 * * *
29 * * *
30 * * *
└───────────────────────────────────────
┌───────────────────────────────────────
├─────── Testing 76.76.21.98
PING 76.76.21.98 (76.76.21.98) 56(84) bytes of data.
--- 76.76.21.98 ping statistics ---
4 packets transmitted, 0 received, 100% packet loss, time 3063ms
traceroute to 76.76.21.98 (76.76.21.98), 30 hops max, 60 byte packets
1 mijnmodem.kpn.home (192.168.2.254) 0.304 ms 0.385 ms 0.383 ms
2 static.kpn.net (195.190.228.102) 2.993 ms 2.991 ms 2.990 ms
3 * * *
4 * * *
5 * * *
6 * * *
7 * * *
8 * * *
9 * * *
10 * * *
11 * * *
12 * * *
13 * * *
14 * * *
15 * * *
16 * * *
17 * * *
18 * * *
19 * * *
20 * * *
21 * * *
22 * * *
23 * * *
24 * * *
25 * * *
26 * * *
27 * * *
28 * * *
29 * * *
30 * * *
└───────────────────────────────────────
┌───────────────────────────────────────
├─────── Testing 76.76.21.123
PING 76.76.21.123 (76.76.21.123) 56(84) bytes of data.
--- 76.76.21.123 ping statistics ---
4 packets transmitted, 0 received, 100% packet loss, time 3062ms
traceroute to 76.76.21.123 (76.76.21.123), 30 hops max, 60 byte packets
1 mijnmodem.kpn.home (192.168.2.254) 0.318 ms 0.302 ms 0.405 ms
2 static.kpn.net (195.190.228.102) 2.940 ms 2.938 ms 2.936 ms
3 * * *
4 * * *
5 * * *
6 * * *
7 * * *
8 * * *
9 * * *
10 * * *
11 * * *
12 * * *
13 * * *
14 * * *
15 * * *
16 * * *
17 * * *
18 * * *
19 * * *
20 * * *
21 * * *
22 * * *
23 * * *
24 * * *
25 * * *
26 * * *
27 * * *
28 * * *
29 * * *
30 * * *
└───────────────────────────────────────
┌───────────────────────────────────────
├─────── Testing 76.76.21.142
PING 76.76.21.142 (76.76.21.142) 56(84) bytes of data.
--- 76.76.21.142 ping statistics ---
4 packets transmitted, 0 received, 100% packet loss, time 3062ms
traceroute to 76.76.21.142 (76.76.21.142), 30 hops max, 60 byte packets
1 mijnmodem.kpn.home (192.168.2.254) 0.333 ms 0.369 ms 0.366 ms
2 static.kpn.net (195.190.228.102) 2.259 ms 2.903 ms 2.902 ms
3 * * *
4 * * *
5 * * *
6 * * *
7 * * *
8 * * *
9 * * *
10 * * *
11 * * *
12 * * *
13 * * *
14 * * *
15 * * *
16 * * *
17 * * *
18 * * *
19 * * *
20 * * *
21 * * *
22 * * *
23 * * *
24 * * *
25 * * *
26 * * *
27 * * *
28 * * *
29 * * *
30 * * *
└───────────────────────────────────────
┌───────────────────────────────────────
├─────── Testing 76.76.21.164
PING 76.76.21.164 (76.76.21.164) 56(84) bytes of data.
--- 76.76.21.164 ping statistics ---
4 packets transmitted, 0 received, 100% packet loss, time 3062ms
traceroute to 76.76.21.164 (76.76.21.164), 30 hops max, 60 byte packets
1 mijnmodem.kpn.home (192.168.2.254) 0.309 ms 0.292 ms 0.391 ms
2 static.kpn.net (195.190.228.102) 2.720 ms 2.718 ms 2.716 ms
3 * * *
4 * * *
5 * * *
6 * * *
7 * * *
8 * * *
9 * * *
10 * * *
11 * * *
12 * * *
13 * * *
14 * * *
15 * * *
16 * * *
17 * * *
18 * * *
19 * * *
20 * * *
21 * * *
22 * * *
23 * * *
24 * * *
25 * * *
26 * * *
27 * * *
28 * * *
29 * * *
30 * * *
└───────────────────────────────────────
┌───────────────────────────────────────
├─────── Testing 76.76.21.241
PING 76.76.21.241 (76.76.21.241) 56(84) bytes of data.
--- 76.76.21.241 ping statistics ---
4 packets transmitted, 0 received, 100% packet loss, time 3062ms
traceroute to 76.76.21.241 (76.76.21.241), 30 hops max, 60 byte packets
1 mijnmodem.kpn.home (192.168.2.254) 0.315 ms 0.298 ms 0.390 ms
2 static.kpn.net (195.190.228.102) 2.743 ms 2.741 ms 2.740 ms
3 * * *
4 * * *
5 * * *
6 * * *
7 * * *
8 * * *
9 * * *
10 * * *
11 * * *
12 * * *
13 * * *
14 * * *
15 * * *
16 * * *
17 * * *
18 * * *
19 * * *
20 * * *
21 * * *
22 * * *
23 * * *
24 * * *
25 * * *
26 * * *
27 * * *
28 * * *
29 * * *
30 * * *
└───────────────────────────────────────
┌───────────────────────────────────────
├─────── dig robot-maatje.com
; <<>> DiG 9.18.28-0ubuntu0.20.04.1-Ubuntu <<>> robot-maatje.com
;; global options: +cmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 40122
;; flags: qr rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1
;; OPT PSEUDOSECTION:
; EDNS: version: 0, flags:; udp: 65494
;; QUESTION SECTION:
;robot-maatje.com. IN A
;; ANSWER SECTION:
robot-maatje.com. 300 IN A 76.76.21.21
;; Query time: 12 msec
;; SERVER: 127.0.0.53#53(127.0.0.53) (UDP)
;; WHEN: Thu Aug 08 08:41:39 CEST 2024
;; MSG SIZE rcvd: 61
└───────────────────────────────────────
┌───────────────────────────────────────
├─────── dig robot-maatje.com via 8.8.8.8
; <<>> DiG 9.18.28-0ubuntu0.20.04.1-Ubuntu <<>> robot-maatje.com @8.8.8.8
;; global options: +cmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 30589
;; flags: qr rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1
;; OPT PSEUDOSECTION:
; EDNS: version: 0, flags:; udp: 512
;; QUESTION SECTION:
;robot-maatje.com. IN A
;; ANSWER SECTION:
robot-maatje.com. 300 IN A 76.76.21.21
;; Query time: 20 msec
;; SERVER: 8.8.8.8#53(8.8.8.8) (UDP)
;; WHEN: Thu Aug 08 08:41:39 CEST 2024
;; MSG SIZE rcvd: 61
└───────────────────────────────────────
┌───────────────────────────────────────
├─────── dig robot-maatje.com via trace
;; communications error to 127.0.0.53#53: timed out
; <<>> DiG 9.18.28-0ubuntu0.20.04.1-Ubuntu <<>> robot-maatje.com +trace
;; global options: +cmd
. 87203 IN NS g.root-servers.net.
. 87203 IN NS e.root-servers.net.
. 87203 IN NS k.root-servers.net.
. 87203 IN NS d.root-servers.net.
. 87203 IN NS m.root-servers.net.
. 87203 IN NS f.root-servers.net.
. 87203 IN NS b.root-servers.net.
. 87203 IN NS a.root-servers.net.
. 87203 IN NS h.root-servers.net.
. 87203 IN NS j.root-servers.net.
. 87203 IN NS l.root-servers.net.
. 87203 IN NS c.root-servers.net.
. 87203 IN NS i.root-servers.net.
;; Received 262 bytes from 127.0.0.53#53(127.0.0.53) in 8 ms
com. 172800 IN NS e.gtld-servers.net.
com. 172800 IN NS g.gtld-servers.net.
com. 172800 IN NS f.gtld-servers.net.
com. 172800 IN NS i.gtld-servers.net.
com. 172800 IN NS j.gtld-servers.net.
com. 172800 IN NS k.gtld-servers.net.
com. 172800 IN NS l.gtld-servers.net.
com. 172800 IN NS m.gtld-servers.net.
com. 172800 IN NS d.gtld-servers.net.
com. 172800 IN NS c.gtld-servers.net.
com. 172800 IN NS h.gtld-servers.net.
com. 172800 IN NS a.gtld-servers.net.
com. 172800 IN NS b.gtld-servers.net.
com. 86400 IN DS 19718 13 2 8ACBB0CD28F41250A80A491389424D341522D946B0DA0C0291F2D3D7 71D7805A
com. 86400 IN RRSIG DS 8 1 86400 20240821050000 20240808040000 20038 . hOA0XysK6RFsF+h5sos6vLx8JYq3gDlFrt0u3GwdiPIpasAhxRxzINQr c+H3DD2uFkLhhnjYU6wsBWjtXBcm9RExx388X4VoTC9EmVW4PMPECptb uU9Qh4R2cshLAsmqZzfD81bzTa4wJOewe4Vqwq0URW6u9Ym5YDI4V5rt udtPqcY9SJaKXKawxzk/237MQtyvYzpENNvy7SgcPYPEo47CJqIvFZ3H XKdo01Zz67Sho4d7yygUkygndXjyZtnyRTedw6oYBI+k9S5eI00lcCVX 76tJjBbXIqGKetLhg8ruh57i5npbr6mUiAMSgQaqYMG0PSATaGEKBWT2 COiQ9Q==
;; Received 1176 bytes from 202.12.27.33#53(m.root-servers.net) in 12 ms
robot-maatje.com. 172800 IN NS darl.ns.cloudflare.com.
robot-maatje.com. 172800 IN NS journey.ns.cloudflare.com.
CK0POJMG874LJREF7EFN8430QVIT8BSM.com. 86400 IN NSEC3 1 1 0 - CK0Q3UDG8CEKKAE7RUKPGCT1DVSSH8LL NS SOA RRSIG DNSKEY NSEC3PARAM
CK0POJMG874LJREF7EFN8430QVIT8BSM.com. 86400 IN RRSIG NSEC3 13 2 86400 20240812002450 20240804231450 59354 com. EurCNTF+cD8oOQ2Uy4AOieTidK0Psg9o6J2DdmEEoNQzvW0D7/T0lZA3 +sp60fqriK7ug4IhB5W8kJL8/JQcsQ==
CUTLQF99FH9LI40O2FMUVP5SP66L45JC.com. 86400 IN NSEC3 1 1 0 - CUTMEN7HFI9H2IPL5PG2KJ2516555INP NS DS RRSIG
CUTLQF99FH9LI40O2FMUVP5SP66L45JC.com. 86400 IN RRSIG NSEC3 13 2 86400 20240813015006 20240806004006 59354 com. 4KV8ZKosl3lJKaVK0o+wl+R24/rM5hihkT9uO1pfA/ZlXg8A7cVDIIOt cxM558PzUe0qYTMXh95NK8lPRs1gsw==
;; Received 721 bytes from 192.5.6.30#53(a.gtld-servers.net) in 12 ms
robot-maatje.com. 300 IN A 76.76.21.21
;; Received 61 bytes from 108.162.194.3#53(journey.ns.cloudflare.com) in 4 ms
└───────────────────────────────────────
┌───────────────────────────────────────
├─────── Output of robot-maatje.com
* Trying 76.76.21.21:443...
* TCP_NODELAY set
* connect to 76.76.21.21 port 443 failed: Verbinding is verlopen
* Failed to connect to robot-maatje.com port 443: Verbinding is verlopen
* Closing connection 0
└───────────────────────────────────────
┌───────────────────────────────────────
│ Time elapsed: 309 seconds
│
├─────── FINISHED
└───────────────────────────────────────
Al die traceroutes zeggen dus helemaal niets. De enige conclusie is dat 195.190.228.102 de laatste server is die fatsoenlijk antwoord geeft. Linux traceroute zendt UDP probes, “traceroute -I” zendt ping probes, en 76.76.21.21 geeft daar antwoord op als 10e in de rij,
“11 76.76.21.21 (76.76.21.21) 12.269 ms 12.358 ms 6.260 ms”.
11 vandaag….
Maar ik zie ook in je logs:
PING 76.76.21.22 (76.76.21.22) 56(84) bytes of data.
64 bytes from 76.76.21.22: icmp_seq=1 ttl=250 time=2.88 ms
64 bytes from 76.76.21.22: icmp_seq=2 ttl=250 time=2.75 ms
64 bytes from 76.76.21.22: icmp_seq=3 ttl=250 time=2.72 ms
64 bytes from 76.76.21.22: icmp_seq=4 ttl=250 time=2.68 ms
dus die doet het wel….
Al die servers binnen dat subnet met “traceroute -I” vanuit hier, alleen laatste stap getoond.
traceroute to 76.76.21.21 (76.76.21.21), 30 hops max, 60 byte packets
11 76.76.21.21 (76.76.21.21) 11.710 ms 11.814 ms 8.997 ms
traceroute to 76.76.21.9 (76.76.21.9), 30 hops max, 60 byte packets
11 76.76.21.9 (76.76.21.9) 6.490 ms 6.693 ms 3.599 ms
traceroute to 76.76.21.22 (76.76.21.22), 30 hops max, 60 byte packets
10 76.76.21.22 (76.76.21.22) 5.373 ms 9.092 ms 9.384 ms
traceroute to 76.76.21.61 (76.76.21.61), 30 hops max, 60 byte packets
11 76.76.21.61 (76.76.21.61) 13.264 ms 13.540 ms 11.135 ms
traceroute to 76.76.21.93 (76.76.21.93), 30 hops max, 60 byte packets
10 76.76.21.93 (76.76.21.93) 9.625 ms 6.928 ms 7.349 ms
traceroute to 76.76.21.98 (76.76.21.98), 30 hops max, 60 byte packets
11 76.76.21.98 (76.76.21.98) 13.797 ms 14.081 ms 9.146 ms
traceroute to 76.76.21.123 (76.76.21.123), 30 hops max, 60 byte packets
10 76.76.21.123 (76.76.21.123) 9.734 ms 9.984 ms 10.264 ms
traceroute to 76.76.21.164 (76.76.21.164), 30 hops max, 60 byte packets
10 76.76.21.164 (76.76.21.164) 14.754 ms 14.952 ms 15.137 ms
traceroute to 76.76.21.241 (76.76.21.241), 30 hops max, 60 byte packets
11 76.76.21.241 (76.76.21.241) 6.148 ms 6.356 ms 3.524 ms
Of die 76.76.21.22 nu incidenteel gewerkt heeft, geen idee.
Met de eerste twee cijfers van je externe IP zou ik nog even gerichter bij “he” kunnen kijken of er een probe via 195.190.228.102 loopt, als die hetzelfde gedrag vertoont wordt dat punt toch verdacht.