Ask Your Question

Revision history [back]

click to hide/show revision 1
initial version

Why Src My Computer Accessing An Apple IP Address Dst. When I Did Not Search This Out?

Why is my computer accessing a Apple IP Address when I did not even search for anything on or about this scanstat port. How would I find out more about this.

Thank you so very much

Vtechie

Frame 10027: 66 bytes on wire, 66 bytes captured on interface \Device\NPF_{}, id 0 Ethernet II, Src: Dell_ (), Dst: ASUSTekC_() Internet Protocol Version 4, Src: 192.168.50.112 (192.168.50.112), Dst: 17.253.25.202 (17.253.25.202) 0100 .... = Version: 4 .... 0101 = Header Length: 20 bytes (5) Differentiated Services Field: 0x00 (DSCP: CS0, ECN: Not-ECT) Total Length: 52 Identification: 0x0e7c (3708) Flags: 0x40, Don't fragment ...0 0000 0000 0000 = Fragment Offset: 0 Time to Live: 128 Protocol: TCP (6) Header Checksum: 0x0000 incorrect, should be 0xcd68(may be caused by "IP checksum offload"?) [Expert Info (Error/Checksum): Bad checksum [should be 0xcd68]] [Header checksum status: Bad] [Calculated Checksum: 0xcd68] Source Address: 192.168.50.112 (192.168.50.112) <source or="" destination="" address:="" 192.168.50.112="" (192.168.50.112)&gt;="" &lt;[source="" host:="" 192.168.50.112]&gt;="" &lt;[source="" or="" destination="" host:="" 192.168.50.112]&gt;="" destination="" address:="" 17.253.25.202="" (17.253.25.202)="" <source="" or="" destination="" address:="" 17.253.25.202="" (17.253.25.202)&gt;="" &lt;[destination="" host:="" 17.253.25.202]&gt;="" &lt;[source="" or="" destination="" host:="" 17.253.25.202]&gt;="" transmission="" control="" protocol,="" src="" port:="" scanstat-1="" (1215),="" dst="" port:="" http="" (80),="" seq:="" 0,="" len:="" 0="" source="" port:="" scanstat-1="" (1215)="" destination="" port:="" http="" (80)="" <source="" or="" destination="" port:="" scanstat-1="" (1215)&gt;="" <source="" or="" destination="" port:="" http="" (80)&gt;="" [stream="" index:="" 103]="" [conversation="" completeness:="" incomplete,="" data="" (15)]="" [tcp="" segment="" len:="" 0]="" sequence="" number:="" 0="" (relative="" sequence="" number)="" sequence="" number="" (raw):="" 2632828988="" [next="" sequence="" number:="" 1="" (relative="" sequence="" number)]="" acknowledgment="" number:="" 0="" acknowledgment="" number="" (raw):="" 0="" 1000="" ....="Header" length:="" 32="" bytes="" (8)="" flags:="" 0x002="" (syn)="" 000.="" ....="" ....="Reserved:" not="" set="" ...0="" ....="" ....="Nonce:" not="" set="" ....="" 0...="" ....="Congestion" window="" reduced="" (cwr):="" not="" set="" ....="" .0..="" ....="ECN-Echo:" not="" set="" ....="" ..0.="" ....="Urgent:" not="" set="" ....="" ...0="" ....="Acknowledgment:" not="" set="" ....="" ....="" 0...="Push:" not="" set="" ....="" ....="" .0..="Reset:" not="" set="" ....="" ....="" ..1.="Syn:" set="" [expert="" info="" (chat="" sequence):="" connection="" establish="" request="" (syn):="" server="" port80]="" [connection="" establish="" request="" (syn):="" server="" port="" 80]="" <message:="" connection="" establish="" request="" (syn):="" server="" port="" 80=""> [Severity level: Chat] [Group: Sequence] .... .... ...0 = Fin: Not set [TCP Flags: ··········S·] Window: 64240 [Calculated window size: 64240] Checksum: 0x1f06 incorrect, should be 0xeb06(maybe caused by "TCP checksum offload"?) [Expert Info (Error/Checksum): Bad checksum [should be 0xeb06]] [Bad checksum [should be 0xeb06]] <message: bad="" checksum="" [should="" be="" 0xeb06]&gt;="" [severity="" level:="" error]="" [group:="" checksum]="" [checksum="" status:="" bad]="" [calculated="" checksum:="" 0xeb06]="" urgent="" pointer:="" 0="" options:="" (12="" bytes),="" maximum="" segment="" size,="" no-operation="" (nop),="" window="" scale,="" no-operation="" (nop),="" no-operation="" (nop),="" sack="" permitted="" tcp="" option="" -="" maximum="" segment="" size:="" 1460="" bytes="" tcp="" option="" -="" no-operation="" (nop)="" tcp="" option="" -="" window="" scale:="" 8="" (multiply="" by="" 256)="" tcp="" option="" -="" no-operation="" (nop)="" tcp="" option="" -="" no-operation="" (nop)="" tcp="" option="" -="" sack="" permitted="" [timestamps]="" [time="" since="" first="" frame="" in="" this="" tcp="" stream:="" 0.000000000="" seconds]="" [time="" since="" previous="" frame="" in="" this="" tcp="" stream:="" 0.000000000="" seconds]<="" p="">

click to hide/show revision 2
None

Why Src My Computer Accessing An Apple IP Address Dst. When I Did Not Search This Out?

Why is my computer accessing a Apple IP Address when I did not even search for anything on or about this scanstat port. How would I find out more about this.

Thank you so very much

Vtechie

Frame 10027: 66 bytes on wire, 66 bytes captured on interface \Device\NPF_{}, id 0
Ethernet II, Src: Dell_ (), Dst: ASUSTekC_()
Internet Protocol Version 4, Src: 192.168.50.112 (192.168.50.112), Dst: 17.253.25.202 (17.253.25.202)
    0100 .... = Version: 4
    .... 0101 = Header Length: 20 bytes (5)
    Differentiated Services Field: 0x00 (DSCP: CS0, ECN: Not-ECT)
    Total Length: 52
    Identification: 0x0e7c (3708)
    Flags: 0x40, Don't fragment
    ...0 0000 0000 0000 = Fragment Offset: 0
    Time to Live: 128
    Protocol: TCP (6)
    Header Checksum: 0x0000 incorrect, should be 0xcd68(may be caused by "IP checksum offload"?)
        [Expert Info (Error/Checksum): Bad checksum [should be 0xcd68]]
    [Header checksum status: Bad]
    [Calculated Checksum: 0xcd68]
    Source Address: 192.168.50.112 (192.168.50.112)
    <source or="" destination="" address:="" 192.168.50.112="" (192.168.50.112)&gt;="" &lt;[source="" host:="" 192.168.50.112]&gt;="" &lt;[source="" or="" destination="" host:="" 192.168.50.112]&gt;="" destination="" address:="" 17.253.25.202="" (17.253.25.202)="" <source="" or="" destination="" address:="" 17.253.25.202="" (17.253.25.202)&gt;="" &lt;[destination="" host:="" 17.253.25.202]&gt;="" &lt;[source="" or="" destination="" host:="" 17.253.25.202]&gt;="" transmission="" control="" protocol,="" src="" port:="" scanstat-1="" (1215),="" dst="" port:="" http="" (80),="" seq:="" 0,="" len:="" 0="" source="" port:="" scanstat-1="" (1215)="" destination="" port:="" http="" (80)="" <source="" or="" destination="" port:="" scanstat-1="" (1215)&gt;="" <source="" or="" destination="" port:="" http="" (80)&gt;="" [stream="" index:="" 103]="" [conversation="" completeness:="" incomplete,="" data="" (15)]="" [tcp="" segment="" len:="" 0]="" sequence="" number:="" 0="" (relative="" sequence="" number)="" sequence="" number="" (raw):="" 2632828988="" [next="" sequence="" number:="" 1="" (relative="" sequence="" number)]="" acknowledgment="" number:="" 0="" acknowledgment="" number="" (raw):="" 0="" 1000="" ....="Header" length:="" 32="" bytes="" (8)="" flags:="" 0x002="" (syn)="" 000.="" ....="" ....="Reserved:" not="" set="" ...0="" ....="" ....="Nonce:" not="" set="" ....="" 0...="" ....="Congestion" window="" reduced="" (cwr):="" not="" set="" ....="" .0..="" ....="ECN-Echo:" not="" set="" ....="" ..0.="" ....="Urgent:" not="" set="" ....="" ...0="" ....="Acknowledgment:" not="" set="" ....="" ....="" 0...="Push:" not="" set="" ....="" ....="" .0..="Reset:" not="" set="" ....="" ....="" ..1.="Syn:" set="" [expert="" info="" (chat="" sequence):="" connection="" establish="" request="" (syn):="" server="" port80]="" [connection="" establish="" request="" (syn):="" server="" port="" 80]="" <message:="" connection="" establish="" request="" (syn):="" server="" port="" 80="">
<Source or Destination Address: 192.168.50.112 (192.168.50.112)>
    <[Source Host: 192.168.50.112]>
    <[Source or Destination Host: 192.168.50.112]>
    Destination Address: 17.253.25.202 (17.253.25.202)
    <Source or Destination Address: 17.253.25.202 (17.253.25.202)>
    <[Destination Host: 17.253.25.202]>
    <[Source or Destination Host: 17.253.25.202]>
Transmission Control Protocol, Src Port: scanstat-1 (1215), Dst Port: http (80), Seq: 0, Len: 0
    Source Port: scanstat-1 (1215)
    Destination Port: http (80)
    <Source or Destination Port: scanstat-1 (1215)>
    <Source or Destination Port: http (80)>
    [Stream index: 103]
    [Conversation completeness: Incomplete, DATA (15)]
    [TCP Segment Len: 0]
    Sequence Number: 0    (relative sequence number)
    Sequence Number (raw): 2632828988
    [Next Sequence Number: 1    (relative sequence number)]
    Acknowledgment Number: 0
    Acknowledgment number (raw): 0
    1000 .... = Header Length: 32 bytes (8)
    Flags: 0x002 (SYN)
        000. .... .... = Reserved: Not set
        ...0 .... .... = Nonce: Not set
        .... 0... .... = Congestion Window Reduced (CWR): Not set
        .... .0.. .... = ECN-Echo: Not set
        .... ..0. .... = Urgent: Not set
        .... ...0 .... = Acknowledgment: Not set
        .... .... 0... = Push: Not set
        .... .... .0.. = Reset: Not set
        .... .... ..1. = Syn: Set
            [Expert Info (Chat/Sequence): Connection establish request (SYN): server port80]
                [Connection establish request (SYN): server port 80]
                <Message: Connection establish request (SYN): server port 80>
                [Severity level: Chat]
                [Group: Sequence]
        .... .... ...0 = Fin: Not set
        [TCP Flags: ··········S·]
    Window: 64240
    [Calculated window size: 64240]
    Checksum: 0x1f06 incorrect, should be 0xeb06(maybe caused by "TCP checksum offload"?)
        [Expert Info (Error/Checksum): Bad checksum [should be 0xeb06]]
            [Bad checksum [should be 0xeb06]]
            <message: bad="" checksum="" [should="" be="" 0xeb06]&gt;="" [severity="" level:="" error]="" [group:="" checksum]="" [checksum="" status:="" bad]="" [calculated="" checksum:="" 0xeb06]="" urgent="" pointer:="" 0="" options:="" (12="" bytes),="" maximum="" segment="" size,="" no-operation="" (nop),="" window="" scale,="" no-operation="" (nop),="" no-operation="" (nop),="" sack="" permitted="" tcp="" option="" -="" maximum="" segment="" size:="" 1460="" bytes="" tcp="" option="" -="" no-operation="" (nop)="" tcp="" option="" -="" window="" scale:="" 8="" (multiply="" by="" 256)="" tcp="" option="" -="" no-operation="" (nop)="" tcp="" option="" -="" no-operation="" (nop)="" tcp="" option="" -="" sack="" permitted="" [timestamps]="" [time="" since="" first="" frame="" in="" this="" tcp="" stream:="" 0.000000000="" seconds]="" [time="" since="" previous="" frame="" in="" this="" tcp="" stream:="" 0.000000000="" seconds]<="" p="">

<Message: Bad checksum [should be 0xeb06]> [Severity level: Error] [Group: Checksum] [Checksum Status: Bad] [Calculated Checksum: 0xeb06] Urgent Pointer: 0 Options: (12 bytes), Maximum segment size, No-Operation (NOP), Window scale, No-Operation (NOP), No-Operation (NOP), SACK permitted TCP Option - Maximum segment size: 1460 bytes TCP Option - No-Operation (NOP) TCP Option - Window scale: 8 (multiply by 256) TCP Option - No-Operation (NOP) TCP Option - No-Operation (NOP) TCP Option - SACK permitted [Timestamps] [Time since first frame in this TCP stream: 0.000000000 seconds] [Time since previous frame in this TCP stream: 0.000000000 seconds]