Viren, Spyware, Datenschutz 11.253 Themen, 94.785 Beiträge

Spoofing - Firewall

axel_bangert / 10 Antworten / Flachansicht Nickles

Ich benutze zwei Firewalls -> Zyxel Router Prestige alles gesperrt und Norton Firewall 2004 mit  lokalen IP Freigaben für den DHCP IP Bereich des Routers, damit die dynamisch zugeteilten IP's an die jeweiligen Rechner von der Firewall durchgelassen werden


Ist es möglich mittels spoofing, also einer vorgetäuschten lokalen Masquerading-IP an den beiden Firewalls vorbeizukommen und eine TCP Verbindung herzustellen.


Bei netstat -a sehe ich viele  tcp Verbindungen zwischen z.B.: localhost:1600(lokal) und localhost:1486(remote) etc.. Kann es sein dass das Spoofingverbindungen sind?

bei Antwort benachrichtigen
axel_bangert Mario32 „-a zeigt ja ganz bewußt auch die lokalen am eigenen rechner verbindungen....“
Optionen

Das ist die Ausgabe. Kein Fenster geöffnet. Keine lokale Verbindung
zu anderen Clients , außer Serverinterne Sockets für die Dienste.
Ist das nicht etwas seltsam?

Microsoft Windows 2000 [Version 5.00.2195]
(C) Copyright 1985-2000 Microsoft Corp.

C:\>netstat -a

Aktive Verbindungen

Proto Lokale Adresse Remoteadresse Status
TCP newyork-central:epmap newyork-central:0 ABHÖREN
TCP newyork-central:microsoft-ds newyork-central:0 ABHÖREN
TCP newyork-central:1028 newyork-central:0 ABHÖREN
TCP newyork-central:1029 newyork-central:0 ABHÖREN
TCP newyork-central:1036 newyork-central:0 ABHÖREN
TCP newyork-central:2522 newyork-central:0 ABHÖREN
TCP newyork-central:2901 newyork-central:0 ABHÖREN
TCP newyork-central:8103 newyork-central:0 ABHÖREN
TCP newyork-central:8500 newyork-central:0 ABHÖREN
TCP newyork-central:19997 newyork-central:0 ABHÖREN
TCP newyork-central:19998 newyork-central:0 ABHÖREN
TCP newyork-central:1025 newyork-central:0 ABHÖREN
TCP newyork-central:1025 newyork-central:1640 WARTEND
TCP newyork-central:1025 newyork-central:1657 WARTEND
TCP newyork-central:1025 newyork-central:1694 WARTEND
TCP newyork-central:1025 newyork-central:1697 WARTEND
TCP newyork-central:1025 newyork-central:1702 WARTEND
TCP newyork-central:1025 newyork-central:1704 WARTEND
TCP newyork-central:1025 newyork-central:1710 WARTEND
TCP newyork-central:1025 newyork-central:1716 WARTEND
TCP newyork-central:1025 newyork-central:1718 WARTEND
TCP newyork-central:1025 newyork-central:1720 WARTEND
TCP newyork-central:1025 newyork-central:1722 WARTEND
TCP newyork-central:1025 newyork-central:1731 WARTEND
TCP newyork-central:1035 newyork-central:0 ABHÖREN
TCP newyork-central:1662 newyork-central:1035 WARTEND
TCP newyork-central:1664 newyork-central:1035 WARTEND
TCP newyork-central:1666 newyork-central:1035 WARTEND
TCP newyork-central:1668 newyork-central:1035 WARTEND
TCP newyork-central:1670 newyork-central:1035 WARTEND
TCP newyork-central:1672 newyork-central:1035 WARTEND
TCP newyork-central:1674 newyork-central:1035 WARTEND
TCP newyork-central:1676 newyork-central:1035 WARTEND
TCP newyork-central:1678 newyork-central:1035 WARTEND
TCP newyork-central:1680 newyork-central:1035 WARTEND
TCP newyork-central:1682 newyork-central:1035 WARTEND
TCP newyork-central:1684 newyork-central:1035 WARTEND
TCP newyork-central:1686 newyork-central:1035 WARTEND
TCP newyork-central:1688 newyork-central:1035 WARTEND
TCP newyork-central:1690 newyork-central:1035 WARTEND
TCP newyork-central:1692 newyork-central:1035 WARTEND
TCP newyork-central:1734 newyork-central:1035 WARTEND
TCP newyork-central:1738 newyork-central:1035 WARTEND
TCP newyork-central:1740 newyork-central:1035 WARTEND
TCP newyork-central:1742 newyork-central:1035 WARTEND
TCP newyork-central:1744 newyork-central:1035 WARTEND
TCP newyork-central:1746 newyork-central:1035 WARTEND
TCP newyork-central:1748 newyork-central:1035 WARTEND
TCP newyork-central:1750 newyork-central:1035 WARTEND
TCP newyork-central:1752 newyork-central:1035 WARTEND
TCP newyork-central:1754 newyork-central:1035 WARTEND
TCP newyork-central:1756 newyork-central:1035 WARTEND
TCP newyork-central:1758 newyork-central:1035 WARTEND
TCP newyork-central:1760 newyork-central:1035 WARTEND
TCP newyork-central:1762 newyork-central:1035 WARTEND
TCP newyork-central:1764 newyork-central:1035 WARTEND
TCP newyork-central:1766 newyork-central:1035 WARTEND
TCP newyork-central:1768 newyork-central:1035 WARTEND
TCP newyork-central:1770 newyork-central:1035 WARTEND
TCP newyork-central:1772 newyork-central:1035 WARTEND
TCP newyork-central:1774 newyork-central:1035 WARTEND
TCP newyork-central:1776 newyork-central:1035 WARTEND
TCP newyork-central:1778 newyork-central:1035 WARTEND
TCP newyork-central:1780 newyork-central:1035 WARTEND
TCP newyork-central:1782 newyork-central:1035 WARTEND
TCP newyork-central:1784 newyork-central:1035 WARTEND
TCP newyork-central:1786 newyork-central:1035 WARTEND
TCP newyork-central:1788 newyork-central:1035 WARTEND
TCP newyork-central:1790 newyork-central:1035 WARTEND
TCP newyork-central:1792 newyork-central:1035 WARTEND
TCP newyork-central:1794 newyork-central:1035 WARTEND
TCP newyork-central:1796 newyork-central:1035 WARTEND
TCP newyork-central:1798 newyork-central:1035 WARTEND
TCP newyork-central:netbios-ssn newyork-central:0 ABHÖREN
TCP newyork-central:1645 www.pcom.de:http WARTEND
TCP newyork-central:1646 216.239.59.99:http WARTEND
TCP newyork-central:1651 fd05.future-data.net:http WARTEND
TCP newyork-central:1724 fd05.future-data.net:http WARTEND
TCP newyork-central:1726 fd05.future-data.net:http WARTEND
UDP newyork-central:epmap *:*
UDP newyork-central:microsoft-ds *:*
UDP newyork-central:1032 *:*
UDP newyork-central:1316 *:*
UDP newyork-central:netbios-ns *:*
UDP newyork-central:netbios-dgm *:*
UDP newyork-central:isakmp *:*

C:\>

bei Antwort benachrichtigen