Professional Documents
Culture Documents
07/12/2019
ARP-SEND/REPLY-EXAMPLE:
********************************************
********************************************
********************************************
********************************************
********************************************
ECTP-EXAMPLE
********************************************
********************************************
********************************************
Cpre530 PA II Isaac C Klein
07/12/2019
IP/ICMP-DESTINATION-UNREACHABLE-
EXAMPLE
********************************************
********************************************
ICMP HEADER
TYPE= 3 -> DEST-UNREACH
CODE = 04
CHECKSUM = C9:4E
PARAMETER = 00:00:05:D4
INFORMATION = 45:00:05:DC:25:4F:40:00
Total: Packets = 269, IPS = 269, ARPS = 0, ICMPS = 1, ECTPS = 0, ATAS = 0, TKIPS = 0
********************************************
Cpre530 PA II Isaac C Klein
07/12/2019
DEST ADDR = 00:1F:33:D9:81:60:
SRC ADDR = 00:E0:1C:3C:17:C2:
ETH TYPE = 0800 -> IP
VER = 04, HDR-LEN = 05
SERVICE = 00
PAY-LEN = 1492
IDENTIFIER = 21285
FLAGS = 0 1 0
OFFSET = 0
TTL = 128
PROTOCOL = 6 -> TCP
CHECKSUM = 32351
SRC-IP-ADDR => DF:D8:77:87
DES-IP-ADDR => 5F:9D:9A:74
DATA-LEN = 1506
Total: Packets = 270, IPS = 270, ARPS = 0, ICMPS = 1, ECTPS = 0, ATAS = 0, TKIPS = 0
********************************************
ICMP HEADER
TYPE= 3 -> DEST-UNREACH
CODE = 04
CHECKSUM = 05:BD
PARAMETER = 00:00:05:D4
INFORMATION = 45:00:05:DC:25:50:40:00
Total: Packets = 271, IPS = 271, ARPS = 0, ICMPS = 2, ECTPS = 0, ATAS = 0, TKIPS = 0
********************************************
ICMP HEADER
TYPE= 3 -> DEST-UNREACH
CODE = 04
CHECKSUM = 23:65
PARAMETER = 00:00:05:D4
INFORMATION = 45:00:05:DC:25:51:40:00
Total: Packets = 272, IPS = 272, ARPS = 0, ICMPS = 3, ECTPS = 0, ATAS = 0, TKIPS = 0
********************************************
ICMP HEADER
TYPE= 3 -> DEST-UNREACH
CODE = 04
CHECKSUM = CD:4A
PARAMETER = 00:00:05:D4
INFORMATION = 45:00:05:DC:25:52:40:00
Total: Packets = 273, IPS = 273, ARPS = 0, ICMPS = 4, ECTPS = 0, ATAS = 0, TKIPS = 0
********************************************
Cpre530 PA II Isaac C Klein
07/12/2019
IP/ICMP-ECHO-REQUEST/REPLY-EXAMPLE
********************************************
********************************************
ICMP HEADER
TYPE= 8 -> ECHO-REQUEST
CODE = 00
CHECKSUM = 8A:97
PARAMETER = C4:1B:00:00
INFORMATION = 7F:33:D7:37:59:DE:0E:00
Total: Packets = 535, IPS = 501, ARPS = 33, ICMPS = 1, ECTPS = 1, ATAS = 0, TKIPS = 0
********************************************
********************************************
ICMP HEADER
TYPE= 0 -> ECHO-REPLY
CODE = 00
CHECKSUM = 92:97
PARAMETER = C4:1B:00:00
INFORMATION = 7F:33:D7:37:59:DE:0E:00
Total: Packets = 537, IPS = 503, ARPS = 33, ICMPS = 2, ECTPS = 1, ATAS = 0, TKIPS = 0
********************************************
********************************************
ATA-EXAMPLE
********************************************
********************************************
********************************************
********************************************
TKIP-EXAMPLE
********************************************
********************************************
********************************************
********************************************
********************************************
********************************************
********************************************
********************************************
Cpre530 PA II Isaac C Klein
07/12/2019
IP/TCP-EXAMPLE
********************************************
TCP HEADER
SRC-PORT-NUM = 00:19
DEST-PORT-NUM = 05:BE
SEQ-NUM = AE:EC:63:CA
ACKNOW-NUM = 7E:C4:8D:22
HDR-LEN = 5
FLAGS = 0 1 0 0 0 1 -> ACK -> FIN
WINDOW-SIZE = 34848
CHECKSUM = B1:CC
URGENT-PTR = 0
OPTIONS:
00:00:00:00:00:
00:04:E6:39:37:
2A:38:98:00:00:
00:D7:75:2A:5D:
9A:CD:07:1E:3C:
00:00:00:3C:00:
00:00:81:00:00:
00:56:00:64:00:
00:00:00:00:00:
Total: PACKS = 316, IPS = 286, ARPS = 27, ICMPS = 4, TCPS = 172, DNS = 110 ECTPS = 2, ATAS =
0, TKIPS = 0
********************************************
TCP HEADER
SRC-PORT-NUM = 05:BE
DEST-PORT-NUM = 00:19
SEQ-NUM = 7E:C4:8D:23
ACKNOW-NUM = AE:EC:63:CB
HDR-LEN = 5
FLAGS = 0 1 0 0 0 0 -> ACK
WINDOW-SIZE = 64997
CHECKSUM = 3C:06
URGENT-PTR = 0
OPTIONS:
00:00:00:00:00:
00:00:7B:00:38:
ED:EC:98:00:00:
00:D7:75:2A:5D:
6A:A3:12:1E:3C:
00:00:00:3C:00:
00:00:81:00:00:
00:56:00:64:00:
00:00:00:00:00:
Total: PACKS = 317, IPS = 287, ARPS = 27, ICMPS = 4, TCPS = 173, DNS = 110 ECTPS = 2, ATAS =
0, TKIPS = 0
********************************************
TCP HEADER
SRC-PORT-NUM = 00:19
DEST-PORT-NUM = 05:BE
SEQ-NUM = AE:EC:63:CB
ACKNOW-NUM = 7E:C4:8D:23
HDR-LEN = 5
FLAGS = 0 1 0 0 0 0 -> ACK
WINDOW-SIZE = 34848
CHECKSUM = B1:CB
URGENT-PTR = 0
OPTIONS:
00:00:00:00:00:
00:08:00:45:10:
00:4C:A0:00:00:
00:D7:75:2A:5D:
5C:9E:63:1F:4A:
00:00:00:4A:00:
00:00:81:00:00:
00:56:00:64:00:
00:00:00:00:00:
Total: PACKS = 318, IPS = 288, ARPS = 27, ICMPS = 4, TCPS = 174, DNS = 110 ECTPS = 2, ATAS =
0, TKIPS = 0
********************************************
TCP HEADER
SRC-PORT-NUM = D8:CC
DEST-PORT-NUM = 00:50
SEQ-NUM = E4:04:A4:E9
ACKNOW-NUM = 00:00:00:00
HDR-LEN = 10
FLAGS = 0 0 0 0 1 0 -> SYN
WINDOW-SIZE = 29200
CHECKSUM = E3:C4
Cpre530 PA II Isaac C Klein
07/12/2019
URGENT-PTR = 0
OPTIONS:
02:04:05:B4:04:
02:08:0A:B1:C7:
1D:E6:00:00:00:
00:01:03:03:07:
B0:00:00:00:D7:
75:2A:5D:5F:D1:
2E:22:5A:00:00:
00:5A:00:00:00:
81:00:00:00:56:
Total: PACKS = 319, IPS = 289, ARPS = 27, ICMPS = 4, TCPS = 175, DNS = 110 ECTPS = 2, ATAS =
0, TKIPS = 0
********************************************
UDP-EXAMPLE
********************************************
********************************************
int Num_Of_Packets = 0;
int Num_Of_ARPS = 0;
int Num_Of_IPS = 0;
int Num_Of_ECTPS = 0;
int Num_Of_ATAS = 0;
int Num_Of_TKIPS = 0;
int Num_Of_ICMPS = 0;
int Num_Of_TCPS = 0;
int Num_Of_UDPS = 0;
void raw_print(u_char *user, const struct pcap_pkthdr *h, const u_char *p)
uint16_t e_type;
Num_Of_Packets += 1;
printf("********************************************\n\n");
if (e_type == 0x800) {
Num_Of_IPS += 1;
Cpre530 PA II Isaac C Klein
07/12/2019
int Icmp = 0;
int Tcp = 0;
//Take the left 4 bits and shift them to the right to one value.
//Take the right 4 bits and add them to the left 8 bits, shifted 4 to the left.
//Left most bit anded and shifted to bit 1, middle anded and shifted to bit 1, right anded
and shifted to bit 1.
printf("FLAGS = %d %d %d\n", (p[20] & 0x80) >> 7, (p[20] & 0x40) >> 6, (p[20] &
0x20) >> 5);
printf("\n");
if (Icmp) {
printf("\n");
printf("ICMP HEADER\n");
printf("TYPE= %d ",p[34]);
printf("\n");
printf("INFORMATION = %02X:%02X:%02X:%02X:%02X:%02X:%02X:%02X\n",
p[42], p[43], p[44], p[45], p[46], p[47], p[48], p[49]);
if (Tcp) {
printf("\n");
printf("TCP HEADER\n");
printf("\n");
printf("OPTIONS:\n");
int i, j;
for (i = 0; i < 9; i += 1) {
for (j = 1; j < 6; j += 1) {
printf("\n");
printf("\n");
Num_Of_ARPS += 1;
printf("\n");
Cpre530 PA II Isaac C Klein
07/12/2019
printf("SENDER-HW-ADDR => %02X:%02X:%02X:%02X:%02X:%02X\n", p[22], p[23],
p[24], p[25], p[26], p[27]);
Num_Of_ECTPS += 1;
Num_Of_TKIPS += 1;
Num_Of_ATAS += 1;
else {
printf("\n");
printf("Total: PACKS = %d, IPS = %d, ARPS = %d, ICMPS = %d, TCPS = %d, DNS = %d
ECTPS = %d, ATAS = %d, TKIPS = %d\n", Num_Of_Packets, Num_Of_IPS, Num_Of_ARPS,
Num_Of_ICMPS, Num_Of_TCPS, Num_Of_UDPS, Num_Of_ECTPS, Num_Of_ATAS, Num_Of_TKIPS);
//printf("\n");
//default_print(p, caplen);
putchar('\n'); }