Ask Your Question

Kurt Knochner's profile - activity

2019-03-21 11:08:19 +0000 received badge  Rapid Responder (source)
2019-03-21 11:08:19 +0000 answered a question How to protect against arp attacks?

Please read the following https://www.indusface.com/blog/protect-arp-poisoning/ You will see, that protecting against

2019-03-21 10:57:36 +0000 answered a question Large number of RST-SYN

There is no service listening on port 42385. Not sure if you anonymized the pcap (127.0.0.1), or if you captured on loca

2019-03-14 20:09:05 +0000 edited answer get netflix password from my own fire stick?

but is it possible using wireshark although it is certainly a SSL protected athentication process? No, it's not pos

2019-03-14 20:07:36 +0000 edited answer get netflix password from my own fire stick?

but is it possible using wireshark although it is certainly a SSL protected athentication process? No, it's not pos

2019-03-14 20:06:23 +0000 edited answer Malicious broadcast or signal hack: What to look for?

Has anyone used Wireshark to forensically prove a signal hack no, I have not and based on your assumption to use

2019-03-14 20:06:02 +0000 answered a question Malicious broadcast or signal hack: What to look for?

Has anyone used Wireshark to forensically prove a signal hack no, I have not and based on your assumption to use

2019-03-14 19:56:26 +0000 commented question Malformed EAPOL packets

why is this? impossible to say without a pcap and some information what/where/how you captured that data.

2019-03-14 19:55:52 +0000 commented question Malformed EAPOL packets

why is this? impossible to say without a pcap and some information what/where/how you captured that data. what

2019-03-14 19:54:35 +0000 answered a question get netflix password from my own fire stick?

but is it possible using wireshark although it is certainly a SSL protected athentication process? No, it's not pos

2019-03-11 14:48:43 +0000 answered a question Determine if python code was sent through port 80

You could search for typical python code statements with Wireshark filters, like http contains "import" http contains

2019-03-05 06:34:56 +0000 answered a question LOG's file of NETWORK

can someone please link me a link to read about how to read logfiles of captured go to https://www.wireshark.org/,

2019-03-05 06:27:46 +0000 received badge  Supporter (source)
2019-03-05 06:25:48 +0000 commented answer WS cannot identify HTTP packets

They look like part of HTTP POST request and that's what you get, based on your first comment. Maybe I don't under

2019-03-05 06:23:23 +0000 received badge  Rapid Responder (source)
2019-03-05 06:23:23 +0000 answered a question How do I disable auto updates via silent mode or during installation?

If it's you who installs Wireshark, you can also deploy a preferences file, after the installation, with auto updates di

2019-03-05 06:15:53 +0000 commented answer WS cannot identify HTTP packets

They look like part of HTTP POST request and that's what you get, based on your first comment. Maybe I don't under

2019-03-04 17:37:35 +0000 commented question Email Attachement Packet

please add more details of your setup! Are both systems (E-Mail seder and Sniffer) in the same Wifi network? Same SSID,

2019-03-04 17:34:42 +0000 commented question ACK behavior

please answer with comments, not new answers! I converted your answer to a comment.

2019-03-04 17:34:04 +0000 commented answer ACK behavior

please answer with comments, not new answers!

2019-03-04 17:33:10 +0000 received badge  Citizen Patrol (source)
2019-03-04 17:33:01 +0000 received badge  Editor (source)
2019-03-04 17:33:01 +0000 edited question -- SPAM -- Good Online Video Marketing Recommendations Which Can Help You Out

Good Online Video Marketing Recommendations Which Can Help You Out Have you ever heard of employing online video marketi

2019-03-04 17:32:40 +0000 received badge  Rapid Responder (source)
2019-03-04 17:32:40 +0000 answered a question -- SPAM -- Good Online Video Marketing Recommendations Which Can Help You Out

-- SPAM --

2019-03-04 17:31:24 +0000 received badge  Rapid Responder (source)
2019-03-04 17:31:24 +0000 answered a question WS cannot identify HTTP packets

That's HTTP on port 8080 and it decodes in my Wireshark installation. So, either your HTTP protocol settings don't have

2019-03-04 17:25:10 +0000 received badge  Rapid Responder (source)
2019-03-04 17:25:10 +0000 answered a question Figuring out if my server's logfile has an attempt of attack or not

if you mean pcap when you say 'log file', then there are several possible signs of an attack. But it's hard to spot such

2019-03-04 16:43:28 +0000 received badge  Rapid Responder (source)
2019-03-04 16:43:28 +0000 answered a question size of the data(urgent! )

ny looking at the frame layer. It tells you: xxx bytes on wire xxx byte captured If you're looking for another size,

2019-03-04 16:10:35 +0000 commented question capture vlan ID

can you please ask a new question, with the details of your environment?

2019-03-04 16:08:54 +0000 received badge  Rapid Responder (source)
2019-03-04 16:08:54 +0000 answered a question ACK behavior

sounds rather strange. I can imagine two scenarios. misinterpretation of the pcap TCP offloading (into the NIC) on the