Professional Documents
Culture Documents
Lab Fat 1
Lab Fat 1
if Wireshark detects potential problems, it colors them with red text on a black field. It might
indicate a problem, but then again it might not.
Emails:
Ports:
Attachments: Edit → Find Packet
4. What is the filter command for listing all outgoing HTTP traffic?
Command: http
5. Establish a timeline and explain what is happening in the .pcap file.
To capture PCAP files you need to use a packet sniffer. A packet sniffer captures packets and
presents them in a way that's easy to understand. When using a PCAP sniffer the first thing you need
to do is identify what interface you want to sniff on. If you're on a Linux device these could be eth0
or wlan0.
Timelines of some the packets:
2. What is the IP address of the Sender, Receiver, and Server of the email?
State: Nebraska
DKIM: none