Academic Integrity: tutoring, explanations, and feedback — we don’t complete graded work or submit on a student’s behalf.

If this is an attack, identify and describe the attack mechanism. [**] Unknown F

ID: 3532254 • Letter: I

Question

If this is an attack, identify and describe the attack mechanism. [**] Unknown FTP Access [***] 03/17-20:08:51.868175 210.104.180.1:3299 rightarrow 128.173.92.85:21 TCP TTL:45 TOS 0x0 ID:33389 DF **S***** Seq: 0xF883F9 Ack: 0x0 Win:0x7d78 TCP Options MSS: 1460 SackOK: TS 34460844 0 NOP WS: 0 03/17-20:08:51.870167 128.173.92.85:21 rightarrow 210.104.180.1:3299 TCP TTL:64 TOS 0x0 ID:95 DF **S***A* Seq: 0x5BA70BF Ack: 0xF883FA Win:0x4470 TCP Options MSS: 1460 03/17-20:08:54.480821 128.173.92.85:21 rightarrow 210.104.180.1:3299 TCP TTL:64 TOS 0x0 ID:96 DF **S***A* Seq: 0x5BA70BF Ack: 0xF883FA Win:0x4470 TCP Options MSS: 1460 [**] Unknown FTP Access [***] 03/17-20:08:54.602814 210.104.180.1:3299 rightarrow 128.173.92.85:21 TCP TTL:45 TOS 0x0 ID:33792 DF **S***** Seq: 0xF883F9 Ack: 0x0 Win:0x7d78 TCP Options MSS: 1460 SackOK TS: 34461133 0 NOP WS: 0 03/17-20:08:54.604626 128.173.92.85:21 rightarrow 210.104.180.1.3299 TCP TTL:64 TOS 0x0 ID:97 DF ******A* Seq: 0x5BA70C0 Ack: 0xF883FA Win:0x4470 TCP Options MSS: 1460 03/17-20:09:00.480859 128.173.92.85:21 rightarrow 210.104.180.1.3299 TCP TTL:64 TOS 0x0 ID:98 DF **S***A* Seq: 0x5BA70BF Ack: 0xF883FA Win:0x4470 TCP Options MSS: 1460 03/17-20:09:01.666058 210-104-180.1:3299 rightarrow 128.173.92.85:21 TCP TTL:236 TOS 0x0 ID:34629 DF ****R*** Seq: 0xF883FA Ack: 0x0 Win:0x0 00 00 00 00 00 00 ........... 03/17-20:09:02.262459 210.104.180.1:3299 rightarrow 128.173.92.85:21 TCP TTL:236 TOS 0x0 ID:34725 DF ****R*** Seq: 0xF883FA Ack: 0x0 Win:0x0 00 00 00 00 00 00 ...........

Explanation / Answer

This is a TCP attack on your ftp port. I am not sure what it is called!