求大神们分析下 这些IP地址都是干什么的?哪个地址是服务器计费…
dos吧
全部回复
仅看楼主
level 2
dd520666 楼主
求大神们分析下 这些IP地址都是干什么的?哪个地址是服务器计费IP?
Microsoft Windows XP [版本 5.1.2600]
(C) 版权所有 1985-2001 Microsoft Corp. C:\Documents and Settings\Administrator> netstat -an Active Connections Proto Local Address Foreign Address State
TCP 0.0.0.0:80 0.0.0.0:0 LISTENING
TCP 0.0.0.0:135 0.0.0.0:0 LISTENING
TCP 0.0.0.0:445 0.0.0.0:0 LISTENING
TCP 0.0.0.0:1026 0.0.0.0:0 LISTENING
TCP 127.0.0.1:1107 127.0.0.1:1108 ESTABLISHED
TCP 127.0.0.1:1108 127.0.0.1:1107 ESTABLISHED
TCP 127.0.0.1:8048 0.0.0.0:0 LISTENING
TCP 127.0.0.1:18611 0.0.0.0:0 LISTENING
TCP 192.168.0.32:139 0.0.0.0:0 LISTENING
TCP 192.168.0.32:1026 192.168.1.241:6666 ESTABLISHED
TCP 192.168.0.32:1034 192.168.1.253:8080 TIME_WAIT
TCP 192.168.0.32:1072 192.168.1.251:1300 ESTABLISHED
TCP 192.168.0.32:1077 210.14.141.221:443 TIME_WAIT
TCP 192.168.0.32:1078 210.14.141.221:443 TIME_WAIT
TCP 192.168.0.32:1098 118.144.80.97:80 TIME_WAIT
TCP 192.168.0.32:1124 192.168.1.251:26899 ESTABLISHED
TCP 192.168.0.32:1133 183.60.131.29:80 TIME_WAIT
TCP 192.168.0.32:1136 61.188.87.222:80 CLOSE_WAIT
TCP 192.168.0.32:1137 121.14.231.54:80 CLOSE_WAIT
TCP 192.168.0.32:1138 121.14.231.54:80 CLOSE_WAIT
TCP 192.168.0.32:1140 183.60.131.29:80 TIME_WAIT
TCP 192.168.0.32:1160 220.181.112.34:80 TIME_WAIT
TCP 192.168.0.32:1161 220.181.112.34:80 TIME_WAIT
TCP 192.168.0.32:1162 183.60.131.29:80 TIME_WAIT
TCP 192.168.0.32:1163 183.60.131.29:80 TIME_WAIT
TCP 192.168.0.32:1165 220.181.124.6:80 ESTABLISHED
TCP 192.168.0.32:1183 220.181.112.34:80 TIME_WAIT
TCP 192.168.0.32:1186 220.181.112.34:80 TIME_WAIT
TCP 192.168.0.32:1188 220.181.112.34:80 TIME_WAIT
TCP 192.168.0.32:1190 180.149.132.155:80 TIME_WAIT
TCP 192.168.0.32:1192 183.60.131.29:80 TIME_WAIT
TCP 192.168.0.32:1193 183.60.131.29:80 TIME_WAIT
TCP 192.168.0.32:1196 183.60.131.29:80 TIME_WAIT
TCP 192.168.0.32:1202 183.60.131.102:80 TIME_WAIT
TCP 192.168.0.32:1203 183.60.131.102:80 TIME_WAIT
TCP 192.168.0.32:1204 183.60.131.102:80 TIME_WAIT
TCP 192.168.0.32:1210 183.60.131.102:80 TIME_WAIT
TCP 192.168.0.32:1212 183.60.131.29:80 TIME_WAIT
TCP 192.168.0.32:1213 183.60.131.102:80 TIME_WAIT
TCP 192.168.0.32:1214 180.149.132.155:80 TIME_WAIT
TCP 192.168.0.32:1215 220.181.112.34:80 TIME_WAIT
TCP 192.168.0.32:1218 220.181.112.34:80 TIME_WAIT
TCP 192.168.0.32:1219 180.149.132.155:80 LAST_ACK
TCP 192.168.0.32:1222 183.60.131.29:80 TIME_WAIT
TCP 192.168.0.32:1223 183.60.131.29:80 TIME_WAIT
TCP 192.168.0.32:1224 183.60.131.29:80 TIME_WAIT
TCP 192.168.0.32:1225 183.60.131.29:80 TIME_WAIT
TCP 192.168.0.32:1227 183.60.131.29:80 TIME_WAIT
TCP 192.168.0.32:1228 183.60.131.102:80 TIME_WAIT
TCP 192.168.0.32:1232 192.168.1.251:52121 ESTABLISHED
UDP 0.0.0.0:445 *:*
UDP 0.0.0.0:500 *:*
UDP 0.0.0.0:1105 *:*
UDP 0.0.0.0:1106 *:*
UDP 0.0.0.0:1109 *:*
UDP 0.0.0.0:1123 *:*
UDP 0.0.0.0:1125 *:*
UDP 0.0.0.0:1231 *:*
UDP 0.0.0.0:4500 *:*
UDP 0.0.0.0:19740 *:*
UDP 0.0.0.0:19801 *:*
UDP 0.0.0.0:20562 *:*
UDP 127.0.0.1:123 *:*
UDP 127.0.0.1:1033 *:*
UDP 127.0.0.1:1045 *:*
UDP 127.0.0.1:1079 *:*
UDP 127.0.0.1:1127 *:*
UDP 127.0.0.1:1197 *:*
UDP 192.168.0.32:123 *:*
UDP 192.168.0.32:137 *:*
UDP 192.168.0.32:138 *:*
UDP 192.168.0.32:1118 *:*
UDP 192.168.0.32:1120 *:*
2012年11月25日 06点11分 1
level 2
dd520666 楼主
192.168.1.241:6666 ESTABLISHED
192.168.1.253:8080 TIME_WAIT
2012年11月25日 06点11分 2
level 11
这个怎么分析。。。netstat命令吧?
2012年11月25日 12点11分 3
level 9

对于TCP连接,状态ESTABLISHED的都有可能。
对于UDP。没办法看
如果一定要分析的话需要抓包看。可以用ethereal之类的工具
2012年12月06日 03点12分 5
level 5
看晕了,
2012年12月12日 11点12分 6
1