今天竟然发现自己的电脑不停发送arp请求,同时扫描同网段IP的137和138端口,奈何?防火墙日志如下:(说明:如果将这些日志复制到记事本,不换行,您可能会看得更清楚)
010/11/10 15:37:01.806 [BDFW] [FILTER] Blocked packet because of rule 35. Direction: Inbound, Local Address: 192.168.10.17-138, Remote Address: 192.168.10.151-138, Protocol: 17, Local Packet: 1, PID: 00000004, Process: System, Cmd. Line: .
2010/11/10 15:37:06.761 [BDFW] [FILTER] Blocked packet because of rule 25. Direction: Outbound, Local Address: FE80:0000:0000:0000:8820:877C:1258:35AC-546, Remote Address: FF02:0000:0000:0000:0000:0000:0001:0002-547, Protocol: 17, Local Packet: 0, PID: 0000044C, Process: c:\windows\system32\svchost.exe, Cmd. Line: -k localservicenetworkrestricted.
2010/11/10 15:37:12.341 [BDFNDISF][ARP] sending arp request: smac=18:A9:05:D6:D6:25, sip=0x110AA8C0, dip=0x950AA8C0
2010/11/10 15:37:12.341 [BDFNDISF][ARP] sending arp request: smac=18:A9:05:D6:D6:25, sip=0x110AA8C0, dip=0x7C0AA8C0
2010/11/10 15:37:12.341 [BDFNDISF][ARP] sending arp request: smac=18:A9:05:D6:D6:25, sip=0x110AA8C0, dip=0x7F0AA8C0
2010/11/10 15:37:12.341 [BDFNDISF][ARP] sending arp request: smac=18:A9:05:D6:D6:25, sip=0x110AA8C0, dip=0x980AA8C0
2010/11/10 15:37:12.341 [BDFNDISF][ARP] sending arp request: smac=18:A9:05:D6:D6:25, sip=0x110AA8C0, dip=0x9B0AA8C0
2010/11/10 15:37:12.341 [BDFNDISF][ARP] sending arp request: smac=18:A9:05:D6:D6:25, sip=0x110AA8C0, dip=0xA10AA8C0
2010/11/10 15:37:12.341 [BDFNDISF][ARP] sending arp request: smac=18:A9:05:D6:D6:25, sip=0x110AA8C0, dip=0x7D01A8C0
2010/11/10 15:37:12.341 [BDFNDISF][ARP] sending arp request: smac=18:A9:05:D6:D6:25, sip=0x110AA8C0, dip=0x880AA8C0
2010/11/10 15:37:12.341 [BDFNDISF][ARP] sending arp request: smac=18:A9:05:D6:D6:25, sip=0x110AA8C0, dip=0xA40AA8C0
2010/11/10 15:37:12.341 [BDFNDISF][ARP] sending arp request: smac=18:A9:05:D6:D6:25, sip=0x110AA8C0, dip=0x8B0AA8C0
2010/11/10 15:37:12.341 [BDFNDISF][ARP] sending arp request: smac=18:A9:05:D6:D6:25, sip=0x110AA8C0, dip=0xA70AA8C0