I am analyzing LAN network traffic. While capturing traffic i found some problems given below. 1. Malformed Packet (Exception occurred) 2.Connection Reset RST. 3. Retransmission (suspected) 4. Spurious Retransmissions 5.. Duplicate Acknowledgement ACK. Can anyone tell me what is the actual reason behind this problem. Here is a link of capture file. https://drive.google.com/file/d/0B8asXfpLSWu5WXk2TmJNX0pWakE/view?usp=sharing asked 11 Feb '15, 13:37 mohdaftab93 edited 11 Feb '15, 14:35 |
2 Answers:
Unfortunately nobody will be able to tell you the reason for those messages in Wireshark, because it could be caused by:
What we can do is to take a look at the capture file. Maybe there are other signs in that file. If you like to do that, please post the capture file somewhere (google drive, dropbox, cloudshark.org) and post the link here. ++ UPDATE ++ The capture file you posted looks totally normal. Occasional loss of packets is absolutely normal in any network, which will cause the messages in Wireshark you mentioned. So, no reason to worry. Regards answered 11 Feb '15, 14:21 Kurt Knochner ♦ edited 11 Feb '15, 14:45 |
Without the packets it's hard to say if you have a problem, or just normal or noncritical behavior. answered 11 Feb '15, 14:22 Jasper ♦♦ Here is the link of capture file. https://drive.google.com/file/d/0B8asXfpLSWu5WXk2TmJNX0pWakE/view?usp=sharing (11 Feb '15, 15:03) mohdaftab93 |
Here is the link of capture file. https://drive.google.com/file/d/0B8asXfpLSWu5WXk2TmJNX0pWakE/view?usp=sharing
I already looked at the file. See my ++UPDATE++