need help with dodgy lookin packets...
RSS feed
Email alert
You must sign up or login to contribute to the APC forums
User
11 posts
Posted: 22/09/2009 8:09 PM
|
hey all, recently i noticed my internet was going heaps slow so i looked around and couldnt find and of the usual culprets so i decided to open up wireshark and have a look at what was going on. first thing i noticed was a heap of packets going to and from 208.111.148.166 (mostly stuff like "[TCP segment of a reassembled PDU]" and "gw > http [ACK] Seq=5641 Ack=441088 Win=17520 Len=0")an IP WHOIS lookup said the IP belonged to Limelight Networks, Inc. i didnt have any software by them or anything like that so a quick block of the IP addres on my router firewall stopped them from getting through. But that isnt all that was there. I also saw a load of packets constandly being sent from my router to my computer with info on it like:I, N(R)=0, N(S)=0; DSAP NULL LSAP Individual, SSAP NULL LSAP Command. and all the data contained in the packet was a heap of 0's
Code: line Data 0020 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ........ ........ 0030 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ........ ........ 0040 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ........ ........ 0050 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ........ ........ 0060 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ........ ........
I cant block this using the router firewall because i wont have access to the internet.
if anyone knows much about packets or what ever could you please shead some light on why my router is constantly sending these packets?
|
|
permalink
Digg
Slashdot
send to a friend
|