Changes between Version 6 and Version 7 of netsec2018wireshark


Ignore:
Timestamp:
Jun 10, 2018, 6:00:04 PM (6 years ago)
Author:
admin
Comment:

--

Legend:

Unmodified
Added
Removed
Modified
  • netsec2018wireshark

    v6 v7  
    9393
    9494'''chat.dump'''
    95 
     95 - What are the email addresses of the chatters?
     96 - What were they planning to do?
    9697Open the file. Go to Analyse>Follow>TCP Stream.
    9798
    98  - What are the email addresses of the chatters?
    99  - What were they planning to do?
    100 
    10199'''ftp.pcap'''
    102 
     100 - What is the IP address of the FTP server and the Client?
     101 - What is the error code 530?
    103102Open the file. Statistics>Coversation.  Click TCP. Check the Statistics. Go to Analyse>Follow>TCP Stream
    104103
    105  - What is the IP address of the FTP server and the Client?
    106  - What is the error code 530?
    107 
    108104'''foobar.pcap'''
    109 
     105 - What is the protocol use TCP 6346?
     106 -  What could be this scenario?
    110107Open the file. Statistics>Coversation and check for source and destination IP and port. Go to Statistics>Protocol Hierarchy
    111108
    112  - What is the protocol use TCP 6346?
    113  -  What could be this scenario?
    114 
    115109'''convertinfo.pcap'''
    116 
     110 - Ids this a normal icmp packet?
    117111Open the file. Statistics>Coversation and check for packet length.
    118112
    119  - Ids this a normal icmp packet?
    120 
    121113'''sip.pcap'''
     114 - What is the protocol used for media?
     115 - Can you listen to the phone conversation?
     116Statistics>Protocol Hierarchy check for UDP protocols. Use Telephony>(Protocol) > Analysis