dionaea icon indicating copy to clipboard operation
dionaea copied to clipboard

Dionnaea is not downloading malware

Open xsallowed opened this issue 9 years ago • 1 comments

Hi I am getting enough connections to generate reasonable traffic but no attacks. Can anyone help me with this issue

Regards

xsallowed avatar May 28 '16 17:05 xsallowed

here is a snapshot of the recent logs that I am seeing in log files

[28052016 18:29:41] connection connection.c:4337-message: connection 0xa244b18 connect/tcp/shutdown [un://->un:///tmp/p0f.sock] state: shutdown->close [28052016 18:29:41] connection connection.c:4304-message: connection 0xa245e78 none/tcp type: none->connect [28052016 18:29:41] connection connection.c:4337-message: connection 0xa245e78 connect/tcp/none [un://->un:///tmp/p0f.sock] state: none->established [28052016 18:29:41] logsql dionaea/logsql.py:637-info: reject connection from 92.98.121.41:5749 to 192.168.1.112:1500 (id=14058) [28052016 18:29:41] connection connection.c:4337-message: connection 0xa245e78 connect/tcp/established [un://->un:///tmp/p0f.sock] state: established->shutdown [28052016 18:29:41] connection connection.c:4337-message: connection 0xa245e78 connect/tcp/shutdown [un://->un:///tmp/p0f.sock] state: shutdown->close [28052016 18:29:41] connection connection.c:4304-message: connection 0xa2464b0 none/tcp type: none->connect [28052016 18:29:41] connection connection.c:4337-message: connection 0xa2464b0 connect/tcp/none [un://->un:///tmp/p0f.sock] state: none->established [28052016 18:29:41] logsql dionaea/logsql.py:637-info: reject connection from 223.196.18.155:25210 to 192.168.1.112:1500 (id=14059) [28052016 18:29:41] connection connection.c:4337-message: connection 0xa2464b0 connect/tcp/established [un://->un:///tmp/p0f.sock] state: established->shutdown [28052016 18:29:41] connection connection.c:4337-message: connection 0xa2464b0 connect/tcp/shutdown [un://->un:///tmp/p0f.sock] state: shutdown->close [28052016 18:29:41] connection connection.c:4304-message: connection 0xa247120 none/tcp type: none->connect [28052016 18:29:41] connection connection.c:4337-message: connection 0xa247120 connect/tcp/none [un://->un:///tmp/p0f.sock] state: none->establi

xsallowed avatar May 28 '16 17:05 xsallowed