C
Colon Terminus
I was running a complete virus scan on the computer with the IP address
192.168.1.100 and it attempted to send an ARP packet to 192.168.1.101.
Does anyone have any idea why it would want to do this?
Here's the complete text from Sygate:
The executable has changed since the last time you used: D:\Program
Files\Alwil Software\Avast4\ashSimpl.exe
File Version : 4.5.536.0
File Description : Virus scanner
File Path : D:\Program Files\Alwil Software\Avast4\ashSimpl.exe
Process ID : 0x30C (Heximal) 780 (Decimal)
Connection origin : local initiated
Protocol : Other
Local Address : 0.0.0.0
Local Port : 0
Remote Name :
Remote Address : 0.0.0.0
Remote Port : 0
Ethernet packet details:
Ethernet II (Packet Length: 56)
Destination: ff-ff-ff-ff-ff-ff
Source: 00-50-ba-5e-48-6b
ype: ARP (0x0806)
Address Resolution Protocol (ARP)
Hardware type: Ethernet (0x0001)
Protocol type: IP (0x0800)
Hardware size: 6
Protocol size: 4
Opcode: Request
Sender hardware address: 00-50-ba-5e-48-6b
Sender IP address: 192.168.1.100
Target hardware address: 00-00-00-00-00-00
Target IP address: 192.168.1.101
Binary dump of the packet:
0000: FF FF FF FF FF FF 00 50 : BA 5E 48 6B 08 06 00 01 | .......P.^Hk....
0010: 08 00 06 04 00 01 00 50 : BA 5E 48 6B C0 A8 01 64 | .......P.^Hk...d
0020: 00 00 00 00 00 00 C0 A8 : 01 65 15 3B 32 9D 50 18 | .........e.;2.P.
0030: FB 6A EA 8A 00 00 00 00 : | .j......
192.168.1.100 and it attempted to send an ARP packet to 192.168.1.101.
Does anyone have any idea why it would want to do this?
Here's the complete text from Sygate:
The executable has changed since the last time you used: D:\Program
Files\Alwil Software\Avast4\ashSimpl.exe
File Version : 4.5.536.0
File Description : Virus scanner
File Path : D:\Program Files\Alwil Software\Avast4\ashSimpl.exe
Process ID : 0x30C (Heximal) 780 (Decimal)
Connection origin : local initiated
Protocol : Other
Local Address : 0.0.0.0
Local Port : 0
Remote Name :
Remote Address : 0.0.0.0
Remote Port : 0
Ethernet packet details:
Ethernet II (Packet Length: 56)
Destination: ff-ff-ff-ff-ff-ff
Source: 00-50-ba-5e-48-6b
ype: ARP (0x0806)
Address Resolution Protocol (ARP)
Hardware type: Ethernet (0x0001)
Protocol type: IP (0x0800)
Hardware size: 6
Protocol size: 4
Opcode: Request
Sender hardware address: 00-50-ba-5e-48-6b
Sender IP address: 192.168.1.100
Target hardware address: 00-00-00-00-00-00
Target IP address: 192.168.1.101
Binary dump of the packet:
0000: FF FF FF FF FF FF 00 50 : BA 5E 48 6B 08 06 00 01 | .......P.^Hk....
0010: 08 00 06 04 00 01 00 50 : BA 5E 48 6B C0 A8 01 64 | .......P.^Hk...d
0020: 00 00 00 00 00 00 C0 A8 : 01 65 15 3B 32 9D 50 18 | .........e.;2.P.
0030: FB 6A EA 8A 00 00 00 00 : | .j......