Advertisement
Guest User

Untitled

a guest
Feb 24th, 2020
107
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 13.47 KB | None | 0 0
  1. gabriel@zombie:~/projekte/c++/file$ sudo tcpdump -i wlp2s0
  2. [sudo] Passwort für gabriel:
  3. tcpdump: verbose output suppressed, use -v or -vv for full protocol decode
  4. listening on wlp2s0, link-type EN10MB (Ethernet), capture size 262144 bytes
  5. 19:19:16.341880 ARP, Request who-has zombie tell 192.168.1.1, length 46
  6. 19:19:16.341893 ARP, Reply zombie is-at 7c:b0:c2:7a:67:1e (oui Unknown), length 28
  7. 19:19:16.342602 IP6 zombie.46576 > _gateway.domain: 43504+ PTR? 130.1.168.192.in-addr.arpa. (44)
  8. 19:19:16.595604 ARP, Request who-has 192.168.1.1 tell zombie, length 28
  9. 19:19:16.599205 ARP, Reply 192.168.1.1 is-at 24:d3:f2:ed:b8:67 (oui Unknown), length 46
  10. 19:19:17.276885 IP zombie.48516 > 192.168.1.1.domain: 43504+ [1au] PTR? 130.1.168.192.in-addr.arpa. (55)
  11. 19:19:17.280765 IP 192.168.1.1.domain > zombie.48516: 43504* 1/0/0 PTR zombie.home. (69)
  12. 19:19:17.364483 IP zombie.52618 > 192.168.1.1.domain: 57561+ PTR? 1.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.8.e.f.ip6.arpa. (90)
  13. 19:19:17.732323 IP 192.168.1.1.domain > zombie.52618: 57561 NXDomain 0/1/0 (154)
  14. 19:19:21.351903 IP zombie.56261 > 192.168.1.1.domain: 54396+ A? socket-fornax.simplecast.com. (46)
  15. 19:19:21.352159 IP zombie.40694 > 192.168.1.1.domain: 47702+ AAAA? socket-fornax.simplecast.com. (46)
  16. 19:19:21.361065 IP 192.168.1.1.domain > zombie.56261: 54396 3/0/0 A 34.235.177.125, A 3.208.67.248, A 52.22.118.92 (94)
  17. 19:19:21.459612 IP6 zombie > _gateway: ICMP6, neighbor solicitation, who has _gateway, length 32
  18. 19:19:21.480011 IP6 _gateway > zombie: ICMP6, neighbor advertisement, tgt is _gateway, length 24
  19. 19:19:21.860033 IP 192.168.1.1.domain > zombie.40694: 47702 0/1/0 (130)
  20. 19:19:21.862631 IP zombie.53552 > ec2-52-22-118-92.compute-1.amazonaws.com.https: Flags [S], seq 2454678273, win 64240, options [mss 1460,sackOK,TS val 1403743157 ecr 0,nop,wscale 7], length 0
  21. 19:19:21.862856 IP zombie.42301 > 192.168.1.1.domain: 50014+ PTR? 92.118.22.52.in-addr.arpa. (43)
  22. 19:19:21.876895 IP 192.168.1.1.domain > zombie.42301: 50014 1/0/0 PTR ec2-52-22-118-92.compute-1.amazonaws.com. (97)
  23. 19:19:21.970915 IP ec2-52-22-118-92.compute-1.amazonaws.com.https > zombie.53552: Flags [S.], seq 2661042274, ack 2454678274, win 26847, options [mss 1460,sackOK,TS val 85015164 ecr 1403743157,nop,wscale 8], length 0
  24. 19:19:21.970967 IP zombie.53552 > ec2-52-22-118-92.compute-1.amazonaws.com.https: Flags [.], ack 1, win 502, options [nop,nop,TS val 1403743266 ecr 85015164], length 0
  25. 19:19:21.972031 IP zombie.53552 > ec2-52-22-118-92.compute-1.amazonaws.com.https: Flags [P.], seq 1:592, ack 1, win 502, options [nop,nop,TS val 1403743267 ecr 85015164], length 591
  26. 19:19:22.098101 IP ec2-52-22-118-92.compute-1.amazonaws.com.https > zombie.53552: Flags [.], ack 592, win 110, options [nop,nop,TS val 85015191 ecr 1403743267], length 0
  27. 19:19:22.098106 IP ec2-52-22-118-92.compute-1.amazonaws.com.https > zombie.53552: Flags [P.], seq 1:147, ack 592, win 110, options [nop,nop,TS val 85015191 ecr 1403743267], length 146
  28. 19:19:22.098199 IP zombie.53552 > ec2-52-22-118-92.compute-1.amazonaws.com.https: Flags [.], ack 147, win 501, options [nop,nop,TS val 1403743393 ecr 85015191], length 0
  29. 19:19:22.098451 IP zombie.53552 > ec2-52-22-118-92.compute-1.amazonaws.com.https: Flags [P.], seq 592:643, ack 147, win 501, options [nop,nop,TS val 1403743393 ecr 85015191], length 51
  30. 19:19:22.099349 IP zombie.53552 > ec2-52-22-118-92.compute-1.amazonaws.com.https: Flags [P.], seq 643:820, ack 147, win 501, options [nop,nop,TS val 1403743394 ecr 85015191], length 177
  31. 19:19:22.246095 IP ec2-52-22-118-92.compute-1.amazonaws.com.https > zombie.53552: Flags [P.], seq 147:216, ack 643, win 110, options [nop,nop,TS val 85015223 ecr 1403743393], length 69
  32. 19:19:22.246100 IP ec2-52-22-118-92.compute-1.amazonaws.com.https > zombie.53552: Flags [P.], seq 216:254, ack 820, win 115, options [nop,nop,TS val 85015223 ecr 1403743394], length 38
  33. 19:19:22.246139 IP zombie.53552 > ec2-52-22-118-92.compute-1.amazonaws.com.https: Flags [.], ack 216, win 501, options [nop,nop,TS val 1403743541 ecr 85015223], length 0
  34. 19:19:22.246157 IP zombie.53552 > ec2-52-22-118-92.compute-1.amazonaws.com.https: Flags [.], ack 254, win 501, options [nop,nop,TS val 1403743541 ecr 85015223], length 0
  35. 19:19:22.246214 IP zombie.53552 > ec2-52-22-118-92.compute-1.amazonaws.com.https: Flags [P.], seq 820:858, ack 254, win 501, options [nop,nop,TS val 1403743541 ecr 85015223], length 38
  36. 19:19:22.246450 IP zombie.44634 > ec2-3-208-67-248.compute-1.amazonaws.com.https: Flags [S], seq 1393869058, win 64240, options [mss 1460,sackOK,TS val 2620075196 ecr 0,nop,wscale 7], length 0
  37. 19:19:22.248975 IP zombie.43702 > 192.168.1.1.domain: 29203+ PTR? 248.67.208.3.in-addr.arpa. (43)
  38. 19:19:22.296122 IP 192.168.1.1.domain > zombie.43702: 29203 1/0/0 PTR ec2-3-208-67-248.compute-1.amazonaws.com. (97)
  39. 19:19:22.353928 IP ec2-3-208-67-248.compute-1.amazonaws.com.https > zombie.44634: Flags [S.], seq 3547776045, ack 1393869059, win 26847, options [mss 1460,sackOK,TS val 1018295000 ecr 2620075196,nop,wscale 8], length 0
  40. 19:19:22.353977 IP zombie.44634 > ec2-3-208-67-248.compute-1.amazonaws.com.https: Flags [.], ack 1, win 502, options [nop,nop,TS val 2620075304 ecr 1018295000], length 0
  41. 19:19:22.354997 IP zombie.44634 > ec2-3-208-67-248.compute-1.amazonaws.com.https: Flags [P.], seq 1:589, ack 1, win 502, options [nop,nop,TS val 2620075305 ecr 1018295000], length 588
  42. 19:19:22.398145 IP ec2-52-22-118-92.compute-1.amazonaws.com.https > zombie.53552: Flags [.], ack 858, win 115, options [nop,nop,TS val 85015271 ecr 1403743541], length 0
  43. 19:19:22.462967 IP ec2-3-208-67-248.compute-1.amazonaws.com.https > zombie.44634: Flags [.], ack 589, win 110, options [nop,nop,TS val 1018295028 ecr 2620075305], length 0
  44. 19:19:22.462972 IP ec2-3-208-67-248.compute-1.amazonaws.com.https > zombie.44634: Flags [P.], seq 1:153, ack 589, win 110, options [nop,nop,TS val 1018295028 ecr 2620075305], length 152
  45. 19:19:22.462992 IP zombie.44634 > ec2-3-208-67-248.compute-1.amazonaws.com.https: Flags [.], ack 153, win 501, options [nop,nop,TS val 2620075413 ecr 1018295028], length 0
  46. 19:19:22.463246 IP zombie.44634 > ec2-3-208-67-248.compute-1.amazonaws.com.https: Flags [P.], seq 589:640, ack 153, win 501, options [nop,nop,TS val 2620075413 ecr 1018295028], length 51
  47. 19:19:22.464125 IP zombie.44634 > ec2-3-208-67-248.compute-1.amazonaws.com.https: Flags [P.], seq 640:1305, ack 153, win 501, options [nop,nop,TS val 2620075414 ecr 1018295028], length 665
  48. 19:19:22.572748 IP ec2-3-208-67-248.compute-1.amazonaws.com.https > zombie.44634: Flags [.], ack 1305, win 115, options [nop,nop,TS val 1018295055 ecr 2620075413], length 0
  49. 19:19:22.585019 IP ec2-3-208-67-248.compute-1.amazonaws.com.https > zombie.44634: Flags [P.], seq 153:394, ack 1305, win 115, options [nop,nop,TS val 1018295058 ecr 2620075413], length 241
  50. 19:19:22.585057 IP zombie.44634 > ec2-3-208-67-248.compute-1.amazonaws.com.https: Flags [.], ack 394, win 501, options [nop,nop,TS val 2620075535 ecr 1018295058], length 0
  51. 19:19:44.904161 IP zombie.56074 > 192.168.1.1.domain: 14647+ A? connectivity-check.ubuntu.com. (47)
  52. 19:19:44.904380 IP zombie.41090 > 192.168.1.1.domain: 62801+ AAAA? connectivity-check.ubuntu.com. (47)
  53. 19:19:44.908352 IP 192.168.1.1.domain > zombie.56074: 14647 2/0/0 A 35.222.85.5, A 35.224.99.156 (79)
  54. 19:19:45.776816 IP6 zombie.43023 > _gateway.domain: 62801+ AAAA? connectivity-check.ubuntu.com. (47)
  55. 19:19:45.943850 IP 192.168.1.1.domain > zombie.41090: 62801 0/1/0 (108)
  56. 19:19:45.943900 IP zombie > 192.168.1.1: ICMP zombie udp port 41090 unreachable, length 144
  57. 19:19:49.026763 IP zombie.47354 > 192.168.1.1.domain: 62801+ AAAA? connectivity-check.ubuntu.com. (47)
  58. 19:19:49.744464 IP 192.168.1.1.domain > zombie.47354: 62801 0/1/0 (108)
  59. 19:19:49.907744 IP zombie.38150 > 5.85.222.35.bc.googleusercontent.com.http: Flags [S], seq 3499483242, win 64240, options [mss 1460,sackOK,TS val 3476693156 ecr 0,nop,wscale 7], length 0
  60. 19:19:49.908113 IP zombie.47927 > 192.168.1.1.domain: 51625+ PTR? 5.85.222.35.in-addr.arpa. (42)
  61. 19:19:49.995970 IP 192.168.1.1.domain > zombie.47927: 51625 1/0/0 PTR 5.85.222.35.bc.googleusercontent.com. (92)
  62. 19:19:50.039525 IP 5.85.222.35.bc.googleusercontent.com.http > zombie.38150: Flags [S.], seq 774790904, ack 3499483243, win 28160, options [mss 1420,sackOK,TS val 1752522253 ecr 3476693156,nop,wscale 7], length 0
  63. 19:19:50.039584 IP zombie.38150 > 5.85.222.35.bc.googleusercontent.com.http: Flags [.], ack 1, win 502, options [nop,nop,TS val 3476693287 ecr 1752522253], length 0
  64. 19:19:50.039665 IP zombie.38150 > 5.85.222.35.bc.googleusercontent.com.http: Flags [P.], seq 1:88, ack 1, win 502, options [nop,nop,TS val 3476693287 ecr 1752522253], length 87: HTTP: GET / HTTP/1.1
  65. 19:19:50.189895 IP 5.85.222.35.bc.googleusercontent.com.http > zombie.38150: Flags [.], ack 88, win 229, options [nop,nop,TS val 1752522427 ecr 3476693287], length 0
  66. 19:19:50.189901 IP 5.85.222.35.bc.googleusercontent.com.http > zombie.38150: Flags [P.], seq 1:149, ack 88, win 229, options [nop,nop,TS val 1752522429 ecr 3476693287], length 148: HTTP: HTTP/1.1 204 No Content
  67. 19:19:50.189902 IP 5.85.222.35.bc.googleusercontent.com.http > zombie.38150: Flags [F.], seq 149, ack 88, win 229, options [nop,nop,TS val 1752522429 ecr 3476693287], length 0
  68. 19:19:50.189943 IP zombie.38150 > 5.85.222.35.bc.googleusercontent.com.http: Flags [.], ack 149, win 501, options [nop,nop,TS val 3476693438 ecr 1752522429], length 0
  69. 19:19:50.190123 IP zombie.38150 > 5.85.222.35.bc.googleusercontent.com.http: Flags [F.], seq 88, ack 150, win 501, options [nop,nop,TS val 3476693438 ecr 1752522429], length 0
  70. 19:19:50.338439 IP 5.85.222.35.bc.googleusercontent.com.http > zombie.38150: Flags [.], ack 89, win 229, options [nop,nop,TS val 1752522578 ecr 3476693438], length 0
  71. 19:19:53.486184 IP 192.168.1.1.56069 > 239.255.255.250.1900: UDP, length 411
  72. 19:19:53.488041 IP zombie.42137 > 192.168.1.1.domain: 25395+ PTR? 250.255.255.239.in-addr.arpa. (46)
  73. 19:19:53.571461 IP 192.168.1.1.56069 > 239.255.255.250.1900: UDP, length 420
  74. 19:19:53.705730 IP 192.168.1.1.56069 > 239.255.255.250.1900: UDP, length 483
  75. 19:19:53.720684 IP 192.168.1.1.domain > zombie.42137: 25395 NXDomain 0/1/0 (103)
  76. 19:19:53.773859 IP 192.168.1.1.59286 > 239.255.255.250.1900: UDP, length 465
  77. 19:19:53.932055 IP 192.168.1.1.59880 > 239.255.255.250.1900: UDP, length 420
  78. 19:19:53.976455 IP 192.168.1.1.59880 > 239.255.255.250.1900: UDP, length 459
  79. 19:19:54.080531 IP 192.168.1.1.54739 > 239.255.255.250.1900: UDP, length 491
  80. 19:19:54.179888 IP 192.168.1.1.52718 > 239.255.255.250.1900: UDP, length 420
  81. 19:19:54.287970 IP 192.168.1.1.52718 > 239.255.255.250.1900: UDP, length 479
  82. 19:19:54.382089 IP 192.168.1.1.35422 > 239.255.255.250.1900: UDP, length 473
  83. 19:19:54.496296 IP 192.168.1.1.52082 > 239.255.255.250.1900: UDP, length 487
  84. 19:19:54.733384 ARP, Request who-has zombie tell 192.168.1.1, length 46
  85. 19:19:54.733395 ARP, Reply zombie is-at 7c:b0:c2:7a:67:1e (oui Unknown), length 28
  86. 19:20:06.552385 IP ec2-54-149-112-77.us-west-2.compute.amazonaws.com.https > zombie.34316: Flags [P.], seq 3344074366:3344074397, ack 3413351930, win 118, options [nop,nop,TS val 3258099989 ecr 2168154520], length 31
  87. 19:20:06.552411 IP zombie.34316 > ec2-54-149-112-77.us-west-2.compute.amazonaws.com.https: Flags [.], ack 31, win 501, options [nop,nop,TS val 2168454714 ecr 3258099989], length 0
  88. 19:20:06.552492 IP zombie.34316 > ec2-54-149-112-77.us-west-2.compute.amazonaws.com.https: Flags [P.], seq 1:36, ack 31, win 501, options [nop,nop,TS val 2168454714 ecr 3258099989], length 35
  89. 19:20:06.554436 IP zombie.34941 > 192.168.1.1.domain: 44613+ PTR? 77.112.149.54.in-addr.arpa. (44)
  90. 19:20:06.602541 IP 192.168.1.1.domain > zombie.34941: 44613 1/0/0 PTR ec2-54-149-112-77.us-west-2.compute.amazonaws.com. (107)
  91. 19:20:06.779254 IP ec2-54-149-112-77.us-west-2.compute.amazonaws.com.https > zombie.34316: Flags [.], ack 36, win 118, options [nop,nop,TS val 3258100039 ecr 2168454714], length 0
  92. 19:20:19.083817 IP6 _gateway > ip6-allnodes: ICMP6, router advertisement, length 56
  93. 19:20:19.095585 IP6 zombie > ff02::16: HBH ICMP6, multicast listener report v2, 2 group record(s), length 48
  94. 19:20:19.096036 IP zombie.55035 > 192.168.1.1.domain: 8506+ PTR? 6.1.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.2.0.f.f.ip6.arpa. (90)
  95. 19:20:19.796739 IP 192.168.1.1.domain > zombie.55035: 8506 NXDomain 0/1/0 (154)
  96. 19:20:19.923654 IP6 zombie > ff02::16: HBH ICMP6, multicast listener report v2, 2 group record(s), length 48
  97. 19:20:20.246762 IP zombie.53552 > ec2-52-22-118-92.compute-1.amazonaws.com.https: Flags [P.], seq 858:904, ack 254, win 501, options [nop,nop,TS val 1403801542 ecr 85015271], length 46
  98. 19:20:20.360934 IP ec2-52-22-118-92.compute-1.amazonaws.com.https > zombie.53552: Flags [.], ack 904, win 115, options [nop,nop,TS val 85029760 ecr 1403801542], length 0
  99. 19:20:20.360939 IP ec2-52-22-118-92.compute-1.amazonaws.com.https > zombie.53552: Flags [P.], seq 254:300, ack 904, win 115, options [nop,nop,TS val 85029760 ecr 1403801542], length 46
  100. 19:20:20.360981 IP zombie.53552 > ec2-52-22-118-92.compute-1.amazonaws.com.https: Flags [.], ack 300, win 501, options [nop,nop,TS val 1403801656 ecr 85029760], length 0
  101. 19:20:23.419635 ARP, Request who-has zombie tell 192.168.1.1, length 46
  102. 19:20:23.419639 ARP, Request who-has zombie tell 192.168.1.1, length 46
  103. 19:20:23.419640 ARP, Request who-has zombie tell 192.168.1.1, length 46
  104. 19:20:23.419647 ARP, Reply zombie is-at 7c:b0:c2:7a:67:1e (oui Unknown), length 28
  105. 19:20:23.419659 ARP, Reply zombie is-at 7c:b0:c2:7a:67:1e (oui Unknown), length 28
  106. 19:20:23.419661 ARP, Reply zombie is-at 7c:b0:c2:7a:67:1e (oui Unknown), length 28
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement