There are many Trojan horses in the LAN. How can I find them?
Next I will use the pppoe log of wayos to teach you how to analyze, find the machine, and notify you to handle it.
There are two main steps:
1. Download The winshark software, install it, run it, select your Nic, capture packets, input ARP in the filter, and press enter to display only ARP packets.
You may find the source MAC address of the machine that keeps sending the ARP packet.
2. Open http: // route management address/sys_log.data? Id = pppoe. Here is the pppoe log. You can search for the MAC address, find the corresponding user name, and notify him by phone. However, this log is recorded soon, you can use wayos's dedicated pppoe log Backup System
Different Trojans or ARP spoofing viruses may be different spoofing methods. You can handle them based on your own experience. If you do not know how to add Q to ask me, you can also directly save data packets, send it to me for analysis
Log Backup Software