please post your rules
/ppp export
and
/ip firewall filter export
/ppp profile
set 0 change-tcp-mss=default local-address=81.17.31.39 name=default only-one=default use-compression=default use-encryption=default use-mpls=default use-vj-compression=default
add change-tcp-mss=yes dns-server=4.2.2.4,8.8.8.8 local-address=POOL name=F.E.D.A.I only-one=default remote-address=POOL use-compression=yes use-encryption=yes use-mpls=yes use-vj-compression=yes
add change-tcp-mss=yes dns-server=4.2.2.4 local-address=pool1 name=profile1 only-one=default remote-address=pool1 use-compression=yes use-encryption=yes use-mpls=yes use-vj-compression=yes
add change-tcp-mss=default dns-server=4.2.2.4 local-address=78.39.132.45 name="VPN Dehi(pptp&ipsec)" only-one=default remote-address="VPN Pool" use-compression=default use-encryption=default use-mpls=default \
use-vj-compression=default
add change-tcp-mss=yes dns-server=4.2.2.4,8.8.8.8 local-address=81.17.31.39 name=profile2 only-one=default remote-address=satnet use-compression=yes use-encryption=yes use-mpls=yes use-vj-compression=yes
set 5 change-tcp-mss=yes dns-server=4.2.2.4 local-address=81.17.31.39 name=default-encryption only-one=default remote-address=POOL use-compression=yes use-encryption=yes use-mpls=yes use-vj-compression=yes \
wins-server=8.8.8.8
/ppp aaa
set accounting=yes interim-update=1m use-radius=yes
/ppp secret
add caller-id="" disabled=no limit-bytes-in=0 limit-bytes-out=0 name=1 password=1 profile=F.E.D.A.I remote-address=193.238.35.71 routes="" service=any
add caller-id="" disabled=no limit-bytes-in=0 limit-bytes-out=0 name=test password=test profile="VPN Dehi(pptp&ipsec)" routes="" service=any
add caller-id="" disabled=no limit-bytes-in=0 limit-bytes-out=0 name=waqif password=islam profile="VPN Dehi(pptp&ipsec)" remote-address=213.209.171.10 routes="" service=pptp
add caller-id="" disabled=no limit-bytes-in=0 limit-bytes-out=0 name=ptcl password=gulalai profile=F.E.D.A.I remote-address=58.147.158.155 routes="" service=any
add caller-id="" disabled=no limit-bytes-in=0 limit-bytes-out=0 name=2 password=2 profile=F.E.D.A.I remote-address=80.81.216.64 routes="" service=any
/ip firewall connection tracking
set enabled=yes generic-timeout=10m icmp-timeout=10s tcp-close-timeout=10s tcp-close-wait-timeout=10s tcp-established-timeout=1d tcp-fin-wait-timeout=10s tcp-last-ack-timeout=10s tcp-syn-received-timeout=5s \
tcp-syn-sent-timeout=5s tcp-syncookie=no tcp-time-wait-timeout=10s udp-stream-timeout=3m udp-timeout=10s
/ip firewall filter
add action=drop chain=forward disabled=no dst-port=23 protocol=tcp
add action=accept chain=forward disabled=no dst-port=23 protocol=udp
add action=drop chain=forward disabled=no dst-port=24 protocol=tcp
add action=drop chain=forward disabled=no dst-port=25 protocol=tcp
add action=drop chain=forward disabled=no dst-port=25 protocol=udp
add action=accept chain=forward disabled=no dst-port=445 protocol=tcp
add action=drop chain=forward disabled=no dst-port=445 protocol=udp
add action=drop chain=forward disabled=no dst-port=24 protocol=udp
add action=drop chain=forward disabled=no dst-port=446 protocol=tcp
add action=drop chain=forward disabled=no dst-port=446 protocol=udp
add action=drop chain=forward disabled=no dst-port=110 protocol=tcp
add action=drop chain=forward disabled=no dst-port=110 protocol=udp
add action=drop chain=forward disabled=no dst-port=2390 protocol=tcp
add action=drop chain=forward disabled=no dst-port=2390 protocol=udp
add action=drop chain=forward disabled=no dst-port=587 protocol=tcp
add action=drop chain=forward disabled=no dst-port=587 protocol=udp
add action=drop chain=forward disabled=no dst-port=135 protocol=tcp
add action=drop chain=forward disabled=no dst-port=135 protocol=udp
add action=drop chain=forward disabled=no dst-port=993 protocol=tcp
add action=drop chain=forward disabled=no dst-port=993 protocol=udp
add action=drop chain=forward disabled=no dst-port=994 protocol=tcp
add action=drop chain=forward disabled=no dst-port=994 protocol=udp
add action=drop chain=forward disabled=no dst-port=995 protocol=tcp
add action=drop chain=forward disabled=no dst-port=995 protocol=udp
add action=drop chain=forward disabled=no dst-port=143 protocol=tcp
add action=drop chain=forward disabled=no dst-port=143 protocol=udp
add action=drop chain=forward disabled=no dst-port=220 protocol=tcp
add action=drop chain=forward disabled=no dst-port=220 protocol=udp
add action=drop chain=forward disabled=no dst-port=585 protocol=tcp
add action=drop chain=forward disabled=no dst-port=585 protocol=udp
add action=add-src-to-address-list address-list=spammer address-list-timeout=10h chain=forward comment="Detect and add-list SMTP virus or spammers" connection-limit=10,32 disabled=no dst-port=25 limit=50,5 \
protocol=tcp
add action=drop chain=forward comment="BLOCK SPAMMERS OR INFECTED USERS" disabled=no dst-port=25 protocol=tcp src-address-list=spammer
add action=drop chain=virus disabled=no dst-port=135-139 protocol=tcp
add action=drop chain=virus comment="Drop Messenger Worm" disabled=no dst-port=135-139 protocol=udp
add action=drop chain=virus comment="Drop Blaster Worm" disabled=no dst-port=445 protocol=tcp
add action=drop chain=virus comment="Drop Blaster Worm" disabled=no dst-port=445 protocol=udp
add action=drop chain=virus comment=________ disabled=no dst-port=593 protocol=tcp
add action=drop chain=virus comment=________ disabled=no dst-port=1024-1030 protocol=tcp
add action=drop chain=virus comment="Drop MyDoom" disabled=no dst-port=1080 protocol=tcp
add action=drop chain=virus comment=________ disabled=no dst-port=1214 protocol=tcp
add action=drop chain=virus comment="ndm requester" disabled=no dst-port=1363 protocol=tcp
add action=drop chain=virus comment="ndm server" disabled=no dst-port=1364 protocol=tcp
add action=drop chain=virus comment="screen cast" disabled=no dst-port=1368 protocol=tcp
add action=drop chain=virus comment=hromgrafx disabled=no dst-port=1373 protocol=tcp
add action=drop chain=virus comment=cichlid disabled=no dst-port=1377 protocol=tcp
add action=drop chain=virus comment=Worm disabled=no dst-port=1433-1434 protocol=tcp
add action=drop chain=virus comment="Bagle Virus" disabled=no dst-port=2745 protocol=tcp
add action=drop chain=virus comment="Drop Dumaru.Y" connection-limit=100,32 disabled=no dst-port=2283 protocol=tcp
add action=drop chain=virus comment="Drop Beagle" disabled=no dst-port=2535 protocol=tcp
add action=drop chain=virus comment="Drop Beagle.C-K" disabled=no dst-port=2745 protocol=tcp
add action=drop chain=virus comment="Drop MyDoom" disabled=no dst-port=3127-3128 protocol=tcp
add action=drop chain=virus comment="Drop Backdoor OptixPro" disabled=no dst-port=3410 protocol=tcp
add action=drop chain=virus comment=Worm disabled=no dst-port=4444 protocol=tcp
add action=drop chain=virus comment=Worm disabled=no dst-port=4444 protocol=udp
add action=drop chain=virus comment="Drop Sasser" disabled=no dst-port=5554 protocol=tcp
add action=drop chain=virus comment="Drop Beagle.B" disabled=no dst-port=8866 protocol=tcp
add action=drop chain=virus comment="Drop Dabber.A-B" disabled=no dst-port=9898 protocol=tcp
add action=drop chain=virus comment="Drop Dumaru.Y" disabled=no dst-port=10000 protocol=tcp
add action=drop chain=virus comment="Drop MyDoom.B" disabled=no dst-port=10080 protocol=tcp
add action=drop chain=virus comment="Drop NetBus" disabled=no dst-port=12345 protocol=tcp
add action=drop chain=virus comment="Drop NetBus" disabled=no dst-port=12345 protocol=tcp
add action=drop chain=virus comment="Drop Kuang2" disabled=no dst-port=17300 protocol=tcp
add action=drop chain=virus comment="Drop SubSeven" disabled=no dst-port=27374 protocol=tcp
add action=drop chain=virus comment="Drop PhatBot, Agobot, Gaobot" disabled=no dst-port=65506 protocol=tcp
add action=drop chain=forward disabled=no dst-port=2390 in-interface=WAN protocol=tcp
add action=drop chain=forward disabled=no dst-port=25 in-interface=WAN protocol=tcp
add action=drop chain=forward disabled=no dst-port=2390 in-interface=WAN protocol=tcp
add action=drop chain=forward disabled=no dst-port=2390 in-interface=WAN protocol=udp
add action=drop chain=forward disabled=no dst-port=2390 in-interface=WAN protocol=udp
add action=drop chain=forward disabled=no dst-port=110 in-interface=WAN protocol=tcp
add action=drop chain=forward disabled=no dst-port=135 in-interface=WAN protocol=tcp
add action=drop chain=forward disabled=no dst-port=1080 in-interface=WAN protocol=tcp
add action=drop chain=input disabled=no dst-port=25,465,587,109,110,995,220,143,993 protocol=tcp
add action=drop chain=forward disabled=no dst-port=25,465,587,109,110,995,220,143,993 protocol=tcp
add action=drop chain=input disabled=no dst-port=25,465,587,109,110,995,220,143,993 protocol=udp
add action=drop chain=forward disabled=no dst-port=25,465,587,109,110,995,220,143,993 protocol=udp
add action=drop chain=input disabled=no dst-port=666,2300,2400,47624,2592,3724,4747,4748,10090,11999,26000 protocol=tcp
/ip firewall nat
add action=netmap chain=srcnat disabled=no src-address=10.10.10.0/24 to-addresses=81.17.31.39
add action=masquerade chain=srcnat comment="Nat For VPN Users" disabled=no src-address=5.10.50.0/24
/ip firewall service-port
set ftp disabled=no ports=21
set tftp disabled=no ports=69
set irc disabled=no ports=6667
set h323 disabled=no
set sip disabled=no ports=5060,5061 sip-direct-media=yes
set pptp disabled=no