Hello,
i'm having some attack going on in a LAN, im using wireshark for looking at the network traffic and what i see is a lot of ICMP packages that have a echo ping request from one ip of the network to the broadcast. Something like this
Source________Dest_____Prot__Description
172.16.100.216 172.16.0.0 ICMP Echo (Ping) Request
172.16.100.216 172.16.0.0 ICMP Echo (Ping) Request
172.16.100.216 172.16.0.0 ICMP Echo (Ping) Request
172.16.100.216 172.16.0.0 ICMP Echo (Ping) Request
172.16.100.216 172.16.0.0 ICMP Echo (Ping) Request
172.16.100.216 172.16.0.0 ICMP Echo (Ping) Request
172.16.100.216 172.16.0.0 ICMP Echo (Ping) Request
... ... ... ...
I was reading that probably that is a smurf attack, but the thing is that i don't see any ping reply, and what i read about smurf attack is that the hosts of the network will reply to the ping request.
Anybody have a clue of what type of attack i am dealing with?
Thanks in Advance










Autor


En línea






