Go Back   Velocity Reviews > Newsgroups > Computer Security
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply

Computer Security - Packet capture - reconnaissance and intrusion - c;arifications needed

 
Thread Tools Search this Thread
Old 07-25-2009, 06:11 AM   #1
Default Packet capture - reconnaissance and intrusion - c;arifications needed


Hey guys,

I have attached a "packet capture" from some network activity.
This seems to be a live attack. Need to identify the probe and intrusion details.

Packets 3 - 258 are part of a reconnaissance attack. They simply want to identify the systems alive on the network.
Packet 229 - A vulnerable system on the network responds.

Attacker 192.168.1.1. culnerable system is 192.168.1.100

Correct me if im wrong here.

Paclets 275 - 286, further reconnaissance. 192.168.1.1 attepts to find vulnearbilities on 192.168.1.100. Tries SSH, FTP, http, pop3, dns, Telnet.

Dont know what 287 - 289 mean.

296 - 313 --- 192.168.1.1. and 192.168 1.100 are negotiating a Telnet connectivity. However why does all the telnet data from 1.00 to 1.1 has a wrong checksum ?

444 - 451 --- Not sure what exactly this is

452 - till end --- indicates some HTTP activity between 1.1. and 1.100. However in most cases 1.100 does not return anythign to 1.1. Let me know if this can be considered an intrusion. If so do we consider it a success or failure.


athideerapandian
Attached Files
File Type: zip capture.zip (24.7 KB, 0 views)
athideerapandian is offline   Reply With Quote
Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off




SEO by vBSEO 3.3.2 ©2009, Crawlability, Inc.

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46