CS Personal
// cloudshark.org
Guest upload is turned off
Log In
Protocol Decode of
frame 372
from
C:\Users\rramsey\Desktop\BadUpload1.pcap
Follow TCP
Download as .txt
Frame 372: 1434 bytes on wire (11472 bits), 1434 bytes captured (11472 bits)
Encapsulation type: Ethernet (1)
Arrival Time: Dec 4, 2010 20:13:47.992345000 UTC
[Time shift for this packet: 0.000000000 seconds]
Epoch Time: 1291493627.992345000 seconds
[Time delta from previous captured frame: 0.000019000 seconds]
[Time delta from previous displayed frame: 0.000019000 seconds]
[Time since reference or first frame: 9.222442000 seconds]
Frame Number: 372
Frame Length: 1434 bytes (11472 bits)
Capture Length: 1434 bytes (11472 bits)
[Frame is marked: False]
[Frame is ignored: False]
[Protocols in frame: eth:ethertype:ip:tcp]
Ethernet II, Src: Dell_02:ff:b1 (00:21:9b:02:ff:b1), Dst: Cisco_35:da:30 (00:16:c8:35:da:30)
Destination: Cisco_35:da:30 (00:16:c8:35:da:30)
Address: Cisco_35:da:30 (00:16:c8:35:da:30)
.... ..0. .... .... .... .... = LG bit: Globally unique address (factory default)
.... ...0 .... .... .... .... = IG bit: Individual address (unicast)
Source: Dell_02:ff:b1 (00:21:9b:02:ff:b1)
Address: Dell_02:ff:b1 (00:21:9b:02:ff:b1)
.... ..0. .... .... .... .... = LG bit: Globally unique address (factory default)
.... ...0 .... .... .... .... = IG bit: Individual address (unicast)
Type: IPv4 (0x0800)
Internet Protocol Version 4, Src: 192.168.1.2, Dst: 74.125.45.136
0100 .... = Version: 4
.... 0101 = Header Length: 20 bytes (5)
Differentiated Services Field: 0x00 (DSCP: CS0, ECN: Not-ECT)
0000 00.. = Differentiated Services Codepoint: Default (0)
.... ..00 = Explicit Congestion Notification: Not ECN-Capable Transport (0)
Total Length: 1420
Identification: 0x2436 (9270)
Flags: 0x40, Don't fragment
0... .... = Reserved bit: Not set
.1.. .... = Don't fragment: Set
..0. .... = More fragments: Not set
...0 0000 0000 0000 = Fragment Offset: 0
Time to Live: 128
Protocol: TCP (6)
Header Checksum: 0x0000 [validation disabled]
[Header checksum status: Unverified]
Source Address: 192.168.1.2
Destination Address: 74.125.45.136
[Destination GeoIP: US, ASN 15169, GOOGLE]
[Destination GeoIP Country: United States]
[Source or Destination GeoIP Country: United States]
[Destination GeoIP ISO Two Letter Country Code: US]
[Source or Destination GeoIP ISO Two Letter Country Code: US]
[Destination GeoIP AS Number: 15169]
[Source or Destination GeoIP AS Number: 15169]
[Destination GeoIP AS Organization: GOOGLE]
[Source or Destination GeoIP AS Organization: GOOGLE]
[Destination GeoIP Latitude: 37.751]
[Source or Destination GeoIP Latitude: 37.751]
[Destination GeoIP Longitude: -97.822]
[Source or Destination GeoIP Longitude: -97.822]
Transmission Control Protocol, Src Port: 2923, Dst Port: 80, Seq: 526071, Ack: 1, Len: 1380
Source Port: 2923
Destination Port: 80
[Stream index: 0]
[Conversation completeness: Incomplete (44)]
[TCP Segment Len: 1380]
Sequence Number: 526071 (relative sequence number)
Sequence Number (raw): 717797053
[Next Sequence Number: 527451 (relative sequence number)]
Acknowledgment Number: 1 (relative ack number)
Acknowledgment number (raw): 2865025169
0101 .... = Header Length: 20 bytes (5)
Flags: 0x010 (ACK)
000. .... .... = Reserved: Not set
...0 .... .... = Nonce: Not set
.... 0... .... = Congestion Window Reduced (CWR): Not set
.... .0.. .... = ECN-Echo: Not set
.... ..0. .... = Urgent: Not set
.... ...1 .... = Acknowledgment: Set
.... .... 0... = Push: Not set
.... .... .0.. = Reset: Not set
.... .... ..0. = Syn: Not set
.... .... ...0 = Fin: Not set
[TCP Flags: ·······A····]
Window: 16560
[Calculated window size: 16560]
[Window size scaling factor: -1 (unknown)]
Checksum: 0x3f2e [unverified]
[Checksum Status: Unverified]
Urgent Pointer: 0
[Timestamps]
[Time since first frame in this TCP stream: 9.222442000 seconds]
[Time since previous frame in this TCP stream: 0.000019000 seconds]
[SEQ/ACK analysis]
[Bytes in flight: 13800]
[Bytes sent since last PSH flag: 2760]
TCP payload (1380 bytes)