弁財天

ゴフマン「専門家を信じるのではなく、自分自身で考えて判断せよ」

Androidで無線LANを監視w。update1

Canon MX420 series MP Driversの削除
のつづき。


最近のスマホはCPUが8コアも付いてるので。LinuxDeployでKali Linuxを動かしてsnortだのiplogを余裕で動作させることができる。

12/27-10:32:37.542573  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:32:37.717220  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:33:07.648439  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:33:09.901364  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:33:37.754853  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:33:41.948594  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:34:07.859579  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:34:14.112942  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:34:37.965892  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:34:46.260796  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:35:08.072326  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:35:18.414785  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:35:38.280007  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:35:50.568334  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:36:08.386069  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:36:22.620519  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:36:38.351465  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:36:54.713973  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:37:08.462090  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:37:26.818370  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:37:38.588015  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:37:58.972933  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:38:08.707810  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:38:31.057292  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:38:38.813142  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:39:03.287416  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:39:06.868647  [**] [1:527:8] BAD-TRAFFIC same SRC/DST [**] [Classification: Potentially Bad Traffic] [Priority: 2] {IPV6-ICMP} :: -> ff02::1:ff8d:f898
12/27-10:39:06.868598  [**] [1:527:8] BAD-TRAFFIC same SRC/DST [**] [Classification: Potentially Bad Traffic] [Priority: 2] {UDP} 0.0.0.0:68 -> 255.255.255.255:67
12/27-10:39:08.918932  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:39:35.339296  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:39:38.964739  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:40:07.492476  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:40:09.130541  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:40:39.237286  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:40:39.547830  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:41:09.264163  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:41:11.657847  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:41:39.449026  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:41:43.758514  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:42:09.555087  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:42:15.897889  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:42:39.660828  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:42:48.050409  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:43:09.719931  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:43:20.313480  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:43:39.872314  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:43:52.315617  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:44:09.875223  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:44:24.426047  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:44:39.879328  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
12/27-10:44:56.571385  [**] [1:402:7] ICMP Destination Unreachable Port Unreachable [**] [Classification: Misc activity] [Priority: 3] {ICMP} オレのLinuxDeployしたAndorid7.1.1 -> 会社の無線LAN.8
Dec 27 10:32:37 UDP: dgram to オレのLinuxDeployしたAndorid7.1.1:port 8612 from 会社の無線LAN.8:57387 (16 data bytes)
Dec 27 10:32:37 UDP: dgram to オレのLinuxDeployしたAndorid7.1.1:port 8611 from 会社の無線LAN.8:57388 (16 data bytes)
Dec 27 10:33:07 UDP: dgram to オレのLinuxDeployしたAndorid7.1.1:port 8612 from 会社の無線LAN.8:57393 (16 data bytes)
Dec 27 10:33:09 UDP: dgram to オレのLinuxDeployしたAndorid7.1.1:port 8611 from 会社の無線LAN.8:57394 (16 data bytes)
Dec 27 10:33:37 UDP: dgram to オレのLinuxDeployしたAndorid7.1.1:port 8612 from 会社の無線LAN.8:57399 (16 data bytes)
Dec 27 10:33:41 UDP: dgram to オレのLinuxDeployしたAndorid7.1.1:port 8611 from 会社の無線LAN.8:57400 (16 data bytes)
Dec 27 10:34:07 UDP: dgram to オレのLinuxDeployしたAndorid7.1.1:port 8612 from 会社の無線LAN.8:57404 (16 data bytes)
Dec 27 10:34:14 UDP: dgram to オレのLinuxDeployしたAndorid7.1.1:port 8611 from 会社の無線LAN.8:57406 (16 data bytes)
Dec 27 10:34:37 UDP: dgram to オレのLinuxDeployしたAndorid7.1.1:port 8612 from 会社の無線LAN.8:57410 (16 data bytes)
Dec 27 10:34:46 UDP: dgram to オレのLinuxDeployしたAndorid7.1.1:port 8611 from 会社の無線LAN.8:57412 (16 data bytes)
Dec 27 10:35:08 UDP: dgram to オレのLinuxDeployしたAndorid7.1.1:port 8612 from 会社の無線LAN.8:57416 (16 data bytes)
Dec 27 10:35:18 UDP: dgram to オレのLinuxDeployしたAndorid7.1.1:port 8611 from 会社の無線LAN.8:57418 (16 data bytes)
Dec 27 10:35:38 UDP: dgram to オレのLinuxDeployしたAndorid7.1.1:port 8612 from 会社の無線LAN.8:57422 (16 data bytes)
Dec 27 10:35:50 UDP: dgram to オレのLinuxDeployしたAndorid7.1.1:port 8611 from 会社の無線LAN.8:57424 (16 data bytes)
Dec 27 10:36:08 UDP: dgram to オレのLinuxDeployしたAndorid7.1.1:port 8612 from 会社の無線LAN.8:57428 (16 data bytes)
Dec 27 10:36:22 UDP: dgram to オレのLinuxDeployしたAndorid7.1.1:port 8611 from 会社の無線LAN.8:57430 (16 data bytes)
Dec 27 10:36:38 UDP: dgram to オレのLinuxDeployしたAndorid7.1.1:port 8612 from 会社の無線LAN.8:57434 (16 data bytes)
Dec 27 10:36:54 UDP: dgram to オレのLinuxDeployしたAndorid7.1.1:port 8611 from 会社の無線LAN.8:57436 (16 data bytes)
Dec 27 10:37:08 UDP: dgram to オレのLinuxDeployしたAndorid7.1.1:port 8612 from 会社の無線LAN.8:57439 (16 data bytes)
Dec 27 10:37:26 UDP: dgram to オレのLinuxDeployしたAndorid7.1.1:port 8611 from 会社の無線LAN.8:57442 (16 data bytes)
Dec 27 10:37:38 UDP: scan/flood detected to オレのLinuxDeployしたAndorid7.1.1 [ports 8611,8612] from 会社の無線LAN.8 [ports 57374,57376,57381,57382,57387,...]
Dec 27 10:42:10 UDP: dgram to 会社の無線LAN.255:netbios-dgm from 会社の無線LAN.8:138 (201 data bytes)
Dec 27 10:42:34 UDP: dgram to 会社の無線LAN.255:netbios-dgm from 会社の無線LAN.10:138 (201 data bytes)
Dec 27 10:44:29 UDP: dgram to 会社の無線LAN.255:netbios-dgm from 会社の無線LAN.10:138 (207 data bytes)

しばらく動くけど、カーネルを含めてシステム全体がハングアップ。 そうなると電源ボタンでも再起動できないトンデモ状態に陥るかもw。

投稿されたコメント:

コメント
コメントは無効になっています。