ICMP TTL:0 TOS:0x0 ID:14790 IpLen:20 DgmLen:92
Type:8 Code:0 ID:0 Seq:0 ECHO
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
00 00 00 00 00 00 ......
=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+
//第二个是ICMP攻击包
IP Len field is 10 bytes bigger than captured length.
(ip.len: 92, cap.len: 82)
08/10-14:47:16.467979 10.5.3.61 -> 80.20.134.0
ICMP TTL:64 TOS:0x0 ID:29580 IpLen:20 DgmLen:92
Type:0 Code:0 ID:0 Seq:0 ECHO REPLY
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
00 00 00 00 00 00 ......
=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+
//第三个是正常的包,是10.5.3.61这个“笨蛋”服务器返回给伪造IP段的ICMP包
IP Len field is 6 bytes smaller than captured length.
(ip.len: 40, cap.len: 46)
TCP Data Offset (0) < hlen (0)
08/10-14:47:16.468008 192.27.108.0:0 -> 10.5.3.61:0
TCP TTL:231 TOS:0x0 ID:49300 IpLen:20 DgmLen:40
39 0A 84 E1 00 D0 09 8C F0 78 00 00 00 22 9E D4 9........x..."..
BB 33 BF 1A .3..
//第四个是ICMP/smurf攻击包
| 论坛热门帖子: | [lch203] 写得蛮好的linux学习笔记(10-21) [黑马制造] 学习java的30个目标(10-19) [笑傲股林] 做测试半年了,有点迷茫,应该再学些什么提高自己的测试水平和测试能力呢?(10-19) [udp8589] 大家用google的来吱一声? 用百度的~~也来报道下?(10-18) [沂偌掳兆] 本人总结的一些认为C++比较经典的书籍,希望对大家有用(10-18) |
| TAG标签: | 全文 网络 架构 攻击 安装 数据 服务器 echo 保存 include |
注册
个人空间
