View Single Post
  #1 (permalink)  
Old February 22nd, 2008
dddkkk dddkkk is offline
Enthusiast
 
Join Date: February 5th, 2007
Posts: 47
dddkkk is flying high
Default Incoming searches in traffic capture?

Im capturing Gnutella network traffic sent to my laptop using Wireshark Network Analyzer (Seemed like a fun thing to do on a Friday night while drinking a beer)

I can see the incoming searches in the "Search Monitor" in plain text, however when I try to locate those packets in the network analyzer, I cant identify them. I think they are UDP?

I know the Gnutella syn packet headers are in plain text. How can I identify the incoming search packets? Is there a way that they are human readable?

Dave
Reply With Quote