THC SSL Application Layer 7 Resource Denial of Service DoS Attack PCAP file Download

2016-05-10 22:55:21.763780 IP 192.168.1.1.80 > 192.168.1.100.46528: Flags [S.], seq 2840197845, ack 3419153931, win 5792, options [mss 1460,sackOK,TS val 19582549 ecr 48899446,nop,wscale 0], length 0
E..<..@.@……….d.P…I….&…..i……….
.*.U..%v….
2016-05-10 22:55:21.763794 IP 192.168.1.100.46528 > 192.168.1.1.80: Flags [.], ack 1, win 229, options [nop,nop,TS val 48899446 ecr 19582549], length 0
E..4.}@.@……d…….P..&..I………….
..%v.*.U
2016-05-10 22:55:21.763846 IP 192.168.1.100.46528 > 192.168.1.1.80: Flags [P.], seq 1:102, ack 1, win 229, options [nop,nop,TS val 48899446 ecr 19582549], length 101: HTTP
E….~@.@..+…d…….P..&..I…….A…..
..%v.*.U….`…\….wb.t.8……..L..0l..d.~+..-“9….5…….-.#….. ……………………………….
2016-05-10 22:55:21.763866 IP 192.168.1.100.46530 > 192.168.1.1.80: Flags [S], seq 2524174511, win 29200, options [mss 1460,sackOK,TS val 48899446 ecr 0,nop,wscale 7], length 0
E..<..@.@..,…d…….P.s……..r…………
..%v……..
2016-05-10 22:55:21.767307 IP 192.168.1.1.80 > 192.168.1.100.46528: Flags [.], ack 102, win 5792, options [nop,nop,TS val 19582549 ecr 48899446], length 0
E..44.@.@……….d.P…I….&p………..
.*.U..%v
2016-05-10 22:55:21.767853 IP 192.168.1.1.80 > 192.168.1.100.46530: Flags [S.], seq 2843979570, ack 2524174512, win 5792, options [mss 1460,sackOK,TS val 19582549 ecr 48899446,nop,wscale 0], length 0
E..<..@.@……….d.P…..2.s……7……….
.*.U..%v….
2016-05-10 22:55:21.767858 IP 192.168.1.100.46530 > 192.168.1.1.80: Flags [.], ack 1, win 229, options [nop,nop,TS val 48899447 ecr 19582549], length 0
E..4..@.@..3…d…….P.s…..3………..
..%w.*.U
2016-05-10 22:55:21.767900 IP 192.168.1.100.46530 > 192.168.1.1.80: Flags [P.], seq 1:102, ack 1, win 229, options [nop,nop,TS val 48899447 ecr 19582549], length 101: HTTP
E…..@.@……d…….P.s…..3…..A…..
..%w.*.U….`…\……..U..m…c…….kQ………….5…….-.#….. ……………………………….
2016-05-10 22:55:21.767914 IP 192.168.1.100.46532 > 192.168.1.1.80: Flags [S], seq 4040777504, win 29200, options [mss 1460,sackOK,TS val 48899447 ecr 0,nop,wscale 7], length 0
E..<zW@.@.<….d…….P.._ ……r…………
..%w……..
2016-05-10 22:55:21.772031 IP 192.168.1.1.80 > 192.168.1.100.46530: Flags [.], ack 102, win 5792, options [nop,nop,TS val 19582549 ecr 48899447], length 0
E..4af@.@.U……..d.P…..3.s……f3…..
.*.U..%w
2016-05-10 22:55:21.772608 IP 192.168.1.1.80 > 192.168.1.100.46532: Flags [S.], seq 2847078466, ack 4040777505, win 5792, options [mss 1460,sackOK,TS val 19582550 ecr 48899447,nop,wscale 0], length 0
E..<..@.@……….d.P…..B.._!……………
.*.V..%w….
2016-05-10 22:55:21.772613 IP 192.168.1.100.46532 > 192.168.1.1.80: Flags [.], ack 1, win 229, options [nop,nop,TS val 48899449 ecr 19582550], length 0
E..4zX@.@.<….d…….P.._!…C………..
..%y.*.V
2016-05-10 22:55:21.772637 IP 192.168.1.100.46532 > 192.168.1.1.80: Flags [P.], seq 1:102, ack 1, win 229, options [nop,nop,TS val 48899449 ecr 19582550], length 101: HTTP
E…zY@.@.<P…d…….P.._!…C…..A…..
..%y.*.V….`…\..Q7..r7+.R….”…>.!. ‘F.%s….C….5…….-.#….. ……………………………….
2016-05-10 22:55:21.772648 IP 192.168.1.100.46534 > 192.168.1.1.80: Flags [S], seq 3662814013, win 29200, options [mss 1460,sackOK,TS val 48899449 ecr 0,nop,wscale 7], length 0
E..<>D@.@.x….d…….P.R.=……r…………

SLICE Denial of Service DoS Spoofed Packets Dangerous PCAP file download

2016-05-23 15:37:46.606305 IP 100.85.36.40.10282 > 192.168.1.107.42143: tcp 20 [bad hdr length 0 – too short, < 20]
E..(……..dU$(…k(*…@Gd;j.y……..
2016-05-23 15:37:46.606309 IP 60.29.5.54.17350 > 192.168.1.107.39169: tcp 20 [bad hdr length 0 – too short, < 20]
E..(.z……<..6…kC….F…..)…..Z..
2016-05-23 15:37:46.608855 IP 223.135.36.17.21442 > 192.168.1.107.41581: tcp 20 [bad hdr length 0 – too short, < 20]
E..(%……#..$….kS..mY.{.ro.d…..J..
2016-05-23 15:37:46.608873 IP 199.13.15.19.23832 > 192.168.1.107.35628: tcp 20 [bad hdr length 0 – too short, < 20]
E..(……r……..k]..,R..4.G_7……..
2016-05-23 15:37:46.608881 IP 207.78.195.43.10248 > 192.168.1.107.40425: tcp 20 [bad hdr length 0 – too short, < 20]
E..(h%…….N.+…k(…..j
:.TI….gi..
2016-05-23 15:37:46.608888 IP 111.172.220.27.51203 > 192.168.1.107.43962: tcp 20 [bad hdr length 0 – too short, < 20]
E..(……..o……k…….
… ……..
2016-05-23 15:37:46.608896 IP 114.112.36.75.12450 > 192.168.1.107.40753: tcp 20 [bad hdr length 0 – too short, < 20]
E..(#…..?Lrp$K…k0..1@.=.W|.7….3E..
2016-05-23 15:37:46.608904 IP 226.108.222.19.38604 > 192.168.1.107.37776: tcp 20 [bad hdr length 0 – too short, < 20]
E..(…….0.l…..k…..G%j..J…..U…
2016-05-23 15:37:46.608912 IP 40.136.196.26.28979 > 192.168.1.107.42144: tcp 20 [bad hdr length 0 – too short, < 20]
E..(k…….(……kq3…y.l..]6…..{..
2016-05-23 15:37:46.613822 IP 200.249.17.78.39281 > 192.168.1.107.36609: tcp 20 [bad hdr length 0 – too short, < 20]
E..(……u[…N…k.q…r..D……..:..
2016-05-23 15:37:46.615473 IP 162.172.4.32.33234 > 192.168.1.107.36610: tcp 20 [bad hdr length 0 – too short, < 20]
E..(R……f… …k……..w..e….>…
2016-05-23 15:37:46.615486 IP 131.22.48.47.47762 > 192.168.1.107.44041: tcp 20 [bad hdr length 0 – too short, < 20]
E..(.w….j…0/…k… !.
…R…..`…
2016-05-23 15:37:46.615490 IP 67.211.237.76.36637 > 192.168.1.107.34741: tcp 20 [bad hdr length 0 – too short, < 20]
E..(.
….C.C..L…k…..\H(=..|…..!..
2016-05-23 15:37:46.615495 IP 254.199.182.106.8573 > 192.168.1.107.41583: tcp 20 [bad hdr length 0 – too short, < 20]
E..(=……….j…k!}.oTkG%…i….2/..
2016-05-23 15:37:46.615501 IP 101.1.236.40.52640 > 192.168.1.107.43686: tcp 20 [bad hdr length 0 – too short, < 20]
E..(……..e..(…k…..Q…@dl…..T..
2016-05-23 15:37:46.615503 IP 198.197.111.0.9903 > 192.168.1.107.35630: tcp 20 [bad hdr length 0 – too short, < 20]

One of the fastest UDP packing port flooders Denial of Service DoS PCAP file download sample

One of the fastest UDP packing port flooders Denial of Service DoS PCAP file download sample

 

Traffic comes quick:

 

2016-05-23 13:35:11.566884 IP 192.168.1.100.35147 > 192.168.1.107.19383: UDP, length 300
E..HDX@.@.q-…d…k.KK..4.e…………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………
2016-05-23 13:35:11.566927 IP 192.168.1.100.45999 > 192.168.1.107.45886: UDP, length 300
E..HDY@.@.q,…d…k…>.4.e…………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………
2016-05-23 13:35:11.566941 IP 192.168.1.100.34419 > 192.168.1.107.12777: UDP, length 300
E..HDZ@.@.q+…d…k.s1..4.e…………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………
2016-05-23 13:35:11.566954 IP 192.168.1.100.54167 > 192.168.1.107.1915: UDP, length 300
E..HD[@.@.q*…d…k…{.4.e…………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………
2016-05-23 13:35:11.566970 IP 192.168.1.100.44547 > 192.168.1.107.12793: UDP, length 300
E..HD\@.@.q)…d…k..1..4.e…………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………
2016-05-23 13:35:11.566981 IP 192.168.1.100.42297 > 192.168.1.107.48335: UDP, length 300
E..HD]@.@.q(…d…k.9…4.e…………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………
2016-05-23 13:35:11.566993 IP 192.168.1.100.49101 > 192.168.1.107.10386: UDP, length 300
E..HD^@.@.q’…d…k..(..4.e…………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………
2016-05-23 13:35:11.567404 IP 192.168.1.100.42057 > 192.168.1.107.37373: UDP, length 300
E..HD.@.@.q….d…k.I…4.e…………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………
2016-05-23 13:35:11.567417 IP 192.168.1.100.45822 > 192.168.1.107.54421: UDP, length 300
E..HD.@.@.q….d…k…..4.e…………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………
2016-05-23 13:35:11.567442 IP 192.168.1.100.33163 > 192.168.1.107.34919: UDP, length 300
E..HD.@.@.q….d…k…g.4.e…………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………
2016-05-23 13:35:11.567459 IP 192.168.1.100.53960 > 192.168.1.107.13784: UDP, length 300
E..HD.@.@.q….d…k..5..4.e…………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………
2016-05-23 13:35:11.567475 IP 192.168.1.100.36250 > 192.168.1.107.38537: UDP, length 300
E..HD.@.@.q….d…k…..4.e…………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………
2016-05-23 13:35:11.567491 IP 192.168.1.100.36046 > 192.168.1.107.50198: UDP, length 300
E..HD.@.@.p….d…k…..4.e…………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………
2016-05-23 13:35:11.567503 IP 192.168.1.100.59388 > 192.168.1.107.64324: UDP, length 300
E..HD.@.@.p….d…k…D.4.e…………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………………