Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Frame 667: 74 bytes on wire (592 bits), 74 bytes captured (592 bits)
- Ethernet II, Src: PcsCompu_49:c7:a0 (08:00:27:49:c7:a0), Dst: RealtekU_12:35:02 (52:54:00:12:35:02)
- Internet Protocol Version 4, Src: 10.0.2.15, Dst: 192.168.137.129
- User Datagram Protocol, Src Port: 38362, Dst Port: 53
- Domain Name System (query)
- [Response In: 668]
- Transaction ID: 0x4a40
- Flags: 0x0100 Standard query
- Questions: 1
- Answer RRs: 0
- Authority RRs: 0
- Additional RRs: 0
- Queries
- www.google.com: type A, class IN
- Name: www.google.com
- [Name Length: 14]
- [Label Count: 3]
- Type: A (Host Address) (1)
- Class: IN (0x0001)
- Frame 668: 90 bytes on wire (720 bits), 90 bytes captured (720 bits)
- Ethernet II, Src: RealtekU_12:35:02 (52:54:00:12:35:02), Dst: PcsCompu_49:c7:a0 (08:00:27:49:c7:a0)
- Internet Protocol Version 4, Src: 192.168.137.129, Dst: 10.0.2.15
- User Datagram Protocol, Src Port: 53, Dst Port: 38362
- Domain Name System (response)
- [Request In: 667]
- [Time: 0.045719000 seconds]
- Transaction ID: 0x4a40
- Flags: 0x8180 Standard query response, No error
- Questions: 1
- Answer RRs: 1
- Authority RRs: 0
- Additional RRs: 0
- Queries
- www.google.com: type A, class IN
- Name: www.google.com
- [Name Length: 14]
- [Label Count: 3]
- Type: A (Host Address) (1)
- Class: IN (0x0001)
- Answers
- www.google.com: type A, class IN, addr 216.58.212.100
- Name: www.google.com
- Type: A (Host Address) (1)
- Class: IN (0x0001)
- Time to live: 86
- Data length: 4
- Address: 216.58.212.100
- Frame 669: 74 bytes on wire (592 bits), 74 bytes captured (592 bits)
- Ethernet II, Src: PcsCompu_49:c7:a0 (08:00:27:49:c7:a0), Dst: RealtekU_12:35:02 (52:54:00:12:35:02)
- Internet Protocol Version 4, Src: 10.0.2.15, Dst: 216.58.212.100
- Transmission Control Protocol, Src Port: 50084, Dst Port: 443, Seq: 0, Len: 0
- Source Port: 50084
- Destination Port: 443
- [Stream index: 10]
- [TCP Segment Len: 0]
- Sequence number: 0 (relative sequence number)
- Acknowledgment number: 0
- Header Length: 40 bytes
- Flags: 0x002 (SYN)
- 000. .... .... = Reserved: Not set
- ...0 .... .... = Nonce: Not set
- .... 0... .... = Congestion Window Reduced (CWR): Not set
- .... .0.. .... = ECN-Echo: Not set
- .... ..0. .... = Urgent: Not set
- .... ...0 .... = Acknowledgment: Not set
- .... .... 0... = Push: Not set
- .... .... .0.. = Reset: Not set
- .... .... ..1. = Syn: Set
- [Expert Info (Chat/Sequence): Connection establish request (SYN): server port 443]
- [Connection establish request (SYN): server port 443]
- [Severity level: Chat]
- [Group: Sequence]
- .... .... ...0 = Fin: Not set
- [TCP Flags: ··········S·]
- Window size value: 29200
- [Calculated window size: 29200]
- Checksum: 0xb8dc [unverified]
- [Checksum Status: Unverified]
- Urgent pointer: 0
- Options: (20 bytes), Maximum segment size, SACK permitted, Timestamps, No-Operation (NOP), Window scale
- Maximum segment size: 1460 bytes
- TCP SACK Permitted Option: True
- Timestamps: TSval 235242, TSecr 0
- No-Operation (NOP)
- Type: 1
- 0... .... = Copy on fragmentation: No
- .00. .... = Class: Control (0)
- ...0 0001 = Number: No-Operation (NOP) (1)
- Window scale: 7 (multiply by 128)
- Frame 670: 60 bytes on wire (480 bits), 60 bytes captured (480 bits)
- Ethernet II, Src: RealtekU_12:35:02 (52:54:00:12:35:02), Dst: PcsCompu_49:c7:a0 (08:00:27:49:c7:a0)
- Internet Protocol Version 4, Src: 216.58.212.100, Dst: 10.0.2.15
- Transmission Control Protocol, Src Port: 443, Dst Port: 50084, Seq: 0, Ack: 1, Len: 0
- Source Port: 443
- Destination Port: 50084
- [Stream index: 10]
- [TCP Segment Len: 0]
- Sequence number: 0 (relative sequence number)
- Acknowledgment number: 1 (relative ack number)
- Header Length: 24 bytes
- Flags: 0x012 (SYN, ACK)
- 000. .... .... = Reserved: Not set
- ...0 .... .... = Nonce: Not set
- .... 0... .... = Congestion Window Reduced (CWR): Not set
- .... .0.. .... = ECN-Echo: Not set
- .... ..0. .... = Urgent: Not set
- .... ...1 .... = Acknowledgment: Set
- .... .... 0... = Push: Not set
- .... .... .0.. = Reset: Not set
- .... .... ..1. = Syn: Set
- [Expert Info (Chat/Sequence): Connection establish acknowledge (SYN+ACK): server port 443]
- [Connection establish acknowledge (SYN+ACK): server port 443]
- [Severity level: Chat]
- [Group: Sequence]
- .... .... ...0 = Fin: Not set
- [TCP Flags: ·······A··S·]
- Window size value: 65535
- [Calculated window size: 65535]
- Checksum: 0x471b [unverified]
- [Checksum Status: Unverified]
- Urgent pointer: 0
- Options: (4 bytes), Maximum segment size
- Maximum segment size: 1460 bytes
- [SEQ/ACK analysis]
- [This is an ACK to the segment in frame: 669]
- [The RTT to ACK the segment was: 0.228676000 seconds]
- [iRTT: 0.228784000 seconds]
- Frame 671: 54 bytes on wire (432 bits), 54 bytes captured (432 bits)
- Ethernet II, Src: PcsCompu_49:c7:a0 (08:00:27:49:c7:a0), Dst: RealtekU_12:35:02 (52:54:00:12:35:02)
- Internet Protocol Version 4, Src: 10.0.2.15, Dst: 216.58.212.100
- Transmission Control Protocol, Src Port: 50084, Dst Port: 443, Seq: 1, Ack: 1, Len: 0
- Source Port: 50084
- Destination Port: 443
- [Stream index: 10]
- [TCP Segment Len: 0]
- Sequence number: 1 (relative sequence number)
- Acknowledgment number: 1 (relative ack number)
- Header Length: 20 bytes
- Flags: 0x010 (ACK)
- 000. .... .... = Reserved: Not set
- ...0 .... .... = Nonce: Not set
- .... 0... .... = Congestion Window Reduced (CWR): Not set
- .... .0.. .... = ECN-Echo: Not set
- .... ..0. .... = Urgent: Not set
- .... ...1 .... = Acknowledgment: Set
- .... .... 0... = Push: Not set
- .... .... .0.. = Reset: Not set
- .... .... ..0. = Syn: Not set
- .... .... ...0 = Fin: Not set
- [TCP Flags: ·······A····]
- Window size value: 29200
- [Calculated window size: 29200]
- [Window size scaling factor: -2 (no window scaling used)]
- Checksum: 0xb8c8 [unverified]
- [Checksum Status: Unverified]
- Urgent pointer: 0
- [SEQ/ACK analysis]
- [This is an ACK to the segment in frame: 670]
- [The RTT to ACK the segment was: 0.000108000 seconds]
- [iRTT: 0.228784000 seconds]
- Frame 672: 249 bytes on wire (1992 bits), 249 bytes captured (1992 bits)
- Ethernet II, Src: PcsCompu_49:c7:a0 (08:00:27:49:c7:a0), Dst: RealtekU_12:35:02 (52:54:00:12:35:02)
- Internet Protocol Version 4, Src: 10.0.2.15, Dst: 216.58.212.100
- Transmission Control Protocol, Src Port: 50084, Dst Port: 443, Seq: 1, Ack: 1, Len: 195
- Source Port: 50084
- Destination Port: 443
- [Stream index: 10]
- [TCP Segment Len: 195]
- Sequence number: 1 (relative sequence number)
- [Next sequence number: 196 (relative sequence number)]
- Acknowledgment number: 1 (relative ack number)
- Header Length: 20 bytes
- Flags: 0x018 (PSH, ACK)
- 000. .... .... = Reserved: Not set
- ...0 .... .... = Nonce: Not set
- .... 0... .... = Congestion Window Reduced (CWR): Not set
- .... .0.. .... = ECN-Echo: Not set
- .... ..0. .... = Urgent: Not set
- .... ...1 .... = Acknowledgment: Set
- .... .... 1... = Push: Set
- .... .... .0.. = Reset: Not set
- .... .... ..0. = Syn: Not set
- .... .... ...0 = Fin: Not set
- [TCP Flags: ·······AP···]
- Window size value: 29200
- [Calculated window size: 29200]
- [Window size scaling factor: -2 (no window scaling used)]
- Checksum: 0xb98b [unverified]
- [Checksum Status: Unverified]
- Urgent pointer: 0
- [SEQ/ACK analysis]
- [iRTT: 0.228784000 seconds]
- [Bytes in flight: 195]
- [Bytes sent since last PSH flag: 195]
- Secure Sockets Layer
- TLSv1.2 Record Layer: Handshake Protocol: Client Hello
- Content Type: Handshake (22)
- Version: TLS 1.0 (0x0301)
- Length: 190
- Handshake Protocol: Client Hello
- Frame 673: 60 bytes on wire (480 bits), 60 bytes captured (480 bits)
- Ethernet II, Src: RealtekU_12:35:02 (52:54:00:12:35:02), Dst: PcsCompu_49:c7:a0 (08:00:27:49:c7:a0)
- Internet Protocol Version 4, Src: 216.58.212.100, Dst: 10.0.2.15
- Transmission Control Protocol, Src Port: 443, Dst Port: 50084, Seq: 1, Ack: 196, Len: 0
- Source Port: 443
- Destination Port: 50084
- [Stream index: 10]
- [TCP Segment Len: 0]
- Sequence number: 1 (relative sequence number)
- Acknowledgment number: 196 (relative ack number)
- Header Length: 20 bytes
- Flags: 0x010 (ACK)
- 000. .... .... = Reserved: Not set
- ...0 .... .... = Nonce: Not set
- .... 0... .... = Congestion Window Reduced (CWR): Not set
- .... .0.. .... = ECN-Echo: Not set
- .... ..0. .... = Urgent: Not set
- .... ...1 .... = Acknowledgment: Set
- .... .... 0... = Push: Not set
- .... .... .0.. = Reset: Not set
- .... .... ..0. = Syn: Not set
- .... .... ...0 = Fin: Not set
- [TCP Flags: ·······A····]
- Window size value: 65535
- [Calculated window size: 65535]
- [Window size scaling factor: -2 (no window scaling used)]
- Checksum: 0x5e15 [unverified]
- [Checksum Status: Unverified]
- Urgent pointer: 0
- [SEQ/ACK analysis]
- [This is an ACK to the segment in frame: 672]
- [The RTT to ACK the segment was: 0.000614000 seconds]
- [iRTT: 0.228784000 seconds]
- Frame 680: 2369 bytes on wire (18952 bits), 2369 bytes captured (18952 bits)
- Ethernet II, Src: RealtekU_12:35:02 (52:54:00:12:35:02), Dst: PcsCompu_49:c7:a0 (08:00:27:49:c7:a0)
- Internet Protocol Version 4, Src: 216.58.212.100, Dst: 10.0.2.15
- Transmission Control Protocol, Src Port: 443, Dst Port: 50084, Seq: 1, Ack: 196, Len: 2315
- Source Port: 443
- Destination Port: 50084
- [Stream index: 10]
- [TCP Segment Len: 2315]
- Sequence number: 1 (relative sequence number)
- [Next sequence number: 2316 (relative sequence number)]
- Acknowledgment number: 196 (relative ack number)
- Header Length: 20 bytes
- Flags: 0x018 (PSH, ACK)
- 000. .... .... = Reserved: Not set
- ...0 .... .... = Nonce: Not set
- .... 0... .... = Congestion Window Reduced (CWR): Not set
- .... .0.. .... = ECN-Echo: Not set
- .... ..0. .... = Urgent: Not set
- .... ...1 .... = Acknowledgment: Set
- .... .... 1... = Push: Set
- .... .... .0.. = Reset: Not set
- .... .... ..0. = Syn: Not set
- .... .... ...0 = Fin: Not set
- [TCP Flags: ·······AP···]
- Window size value: 65535
- [Calculated window size: 65535]
- [Window size scaling factor: -2 (no window scaling used)]
- Checksum: 0xc1d3 [unverified]
- [Checksum Status: Unverified]
- Urgent pointer: 0
- [SEQ/ACK analysis]
- [iRTT: 0.228784000 seconds]
- [Bytes in flight: 2315]
- [Bytes sent since last PSH flag: 2315]
- Secure Sockets Layer
- TLSv1.2 Record Layer: Handshake Protocol: Server Hello
- Content Type: Handshake (22)
- Version: TLS 1.2 (0x0303)
- Length: 72
- Handshake Protocol: Server Hello
- TLSv1.2 Record Layer: Handshake Protocol: Certificate
- Content Type: Handshake (22)
- Version: TLS 1.2 (0x0303)
- Length: 2104
- Handshake Protocol: Certificate
- TLSv1.2 Record Layer: Handshake Protocol: Server Key Exchange
- Content Type: Handshake (22)
- Version: TLS 1.2 (0x0303)
- Length: 115
- Handshake Protocol: Server Key Exchange
- TLSv1.2 Record Layer: Handshake Protocol: Server Hello Done
- Content Type: Handshake (22)
- Version: TLS 1.2 (0x0303)
- Length: 4
- Handshake Protocol: Server Hello Done
- Frame 681: 54 bytes on wire (432 bits), 54 bytes captured (432 bits)
- Ethernet II, Src: PcsCompu_49:c7:a0 (08:00:27:49:c7:a0), Dst: RealtekU_12:35:02 (52:54:00:12:35:02)
- Internet Protocol Version 4, Src: 10.0.2.15, Dst: 216.58.212.100
- Transmission Control Protocol, Src Port: 50084, Dst Port: 443, Seq: 196, Ack: 2316, Len: 0
- Source Port: 50084
- Destination Port: 443
- [Stream index: 10]
- [TCP Segment Len: 0]
- Sequence number: 196 (relative sequence number)
- Acknowledgment number: 2316 (relative ack number)
- Header Length: 20 bytes
- Flags: 0x010 (ACK)
- 000. .... .... = Reserved: Not set
- ...0 .... .... = Nonce: Not set
- .... 0... .... = Congestion Window Reduced (CWR): Not set
- .... .0.. .... = ECN-Echo: Not set
- .... ..0. .... = Urgent: Not set
- .... ...1 .... = Acknowledgment: Set
- .... .... 0... = Push: Not set
- .... .... .0.. = Reset: Not set
- .... .... ..0. = Syn: Not set
- .... .... ...0 = Fin: Not set
- [TCP Flags: ·······A····]
- Window size value: 32660
- [Calculated window size: 32660]
- [Window size scaling factor: -2 (no window scaling used)]
- Checksum: 0xb8c8 [unverified]
- [Checksum Status: Unverified]
- Urgent pointer: 0
- [SEQ/ACK analysis]
- [This is an ACK to the segment in frame: 680]
- [The RTT to ACK the segment was: 0.000047000 seconds]
- [iRTT: 0.228784000 seconds]
- Frame 684: 147 bytes on wire (1176 bits), 147 bytes captured (1176 bits)
- Ethernet II, Src: PcsCompu_49:c7:a0 (08:00:27:49:c7:a0), Dst: RealtekU_12:35:02 (52:54:00:12:35:02)
- Internet Protocol Version 4, Src: 10.0.2.15, Dst: 216.58.212.100
- Transmission Control Protocol, Src Port: 50084, Dst Port: 443, Seq: 196, Ack: 2316, Len: 93
- Source Port: 50084
- Destination Port: 443
- [Stream index: 10]
- [TCP Segment Len: 93]
- Sequence number: 196 (relative sequence number)
- [Next sequence number: 289 (relative sequence number)]
- Acknowledgment number: 2316 (relative ack number)
- Header Length: 20 bytes
- Flags: 0x018 (PSH, ACK)
- 000. .... .... = Reserved: Not set
- ...0 .... .... = Nonce: Not set
- .... 0... .... = Congestion Window Reduced (CWR): Not set
- .... .0.. .... = ECN-Echo: Not set
- .... ..0. .... = Urgent: Not set
- .... ...1 .... = Acknowledgment: Set
- .... .... 1... = Push: Set
- .... .... .0.. = Reset: Not set
- .... .... ..0. = Syn: Not set
- .... .... ...0 = Fin: Not set
- [TCP Flags: ·······AP···]
- Window size value: 32660
- [Calculated window size: 32660]
- [Window size scaling factor: -2 (no window scaling used)]
- Checksum: 0xb925 [unverified]
- [Checksum Status: Unverified]
- Urgent pointer: 0
- [SEQ/ACK analysis]
- [iRTT: 0.228784000 seconds]
- [Bytes in flight: 93]
- [Bytes sent since last PSH flag: 93]
- Secure Sockets Layer
- TLSv1.2 Record Layer: Handshake Protocol: Client Key Exchange
- Content Type: Handshake (22)
- Version: TLS 1.2 (0x0303)
- Length: 37
- Handshake Protocol: Client Key Exchange
- TLSv1.2 Record Layer: Change Cipher Spec Protocol: Change Cipher Spec
- Content Type: Change Cipher Spec (20)
- Version: TLS 1.2 (0x0303)
- Length: 1
- Change Cipher Spec Message
- TLSv1.2 Record Layer: Handshake Protocol: Multiple Handshake Messages
- Content Type: Handshake (22)
- Version: TLS 1.2 (0x0303)
- Length: 40
- Handshake Protocol: Hello Request
- Handshake Protocol: Hello Request
- Frame 685: 60 bytes on wire (480 bits), 60 bytes captured (480 bits)
- Ethernet II, Src: RealtekU_12:35:02 (52:54:00:12:35:02), Dst: PcsCompu_49:c7:a0 (08:00:27:49:c7:a0)
- Internet Protocol Version 4, Src: 216.58.212.100, Dst: 10.0.2.15
- Transmission Control Protocol, Src Port: 443, Dst Port: 50084, Seq: 2316, Ack: 289, Len: 0
- Source Port: 443
- Destination Port: 50084
- [Stream index: 10]
- [TCP Segment Len: 0]
- Sequence number: 2316 (relative sequence number)
- Acknowledgment number: 289 (relative ack number)
- Header Length: 20 bytes
- Flags: 0x010 (ACK)
- 000. .... .... = Reserved: Not set
- ...0 .... .... = Nonce: Not set
- .... 0... .... = Congestion Window Reduced (CWR): Not set
- .... .0.. .... = ECN-Echo: Not set
- .... ..0. .... = Urgent: Not set
- .... ...1 .... = Acknowledgment: Set
- .... .... 0... = Push: Not set
- .... .... .0.. = Reset: Not set
- .... .... ..0. = Syn: Not set
- .... .... ...0 = Fin: Not set
- [TCP Flags: ·······A····]
- Window size value: 65535
- [Calculated window size: 65535]
- [Window size scaling factor: -2 (no window scaling used)]
- Checksum: 0x54ad [unverified]
- [Checksum Status: Unverified]
- Urgent pointer: 0
- [SEQ/ACK analysis]
- [This is an ACK to the segment in frame: 684]
- [The RTT to ACK the segment was: 0.000687000 seconds]
- [iRTT: 0.228784000 seconds]
- Frame 694: 338 bytes on wire (2704 bits), 338 bytes captured (2704 bits)
- Ethernet II, Src: RealtekU_12:35:02 (52:54:00:12:35:02), Dst: PcsCompu_49:c7:a0 (08:00:27:49:c7:a0)
- Internet Protocol Version 4, Src: 216.58.212.100, Dst: 10.0.2.15
- Transmission Control Protocol, Src Port: 443, Dst Port: 50084, Seq: 2316, Ack: 289, Len: 284
- Source Port: 443
- Destination Port: 50084
- [Stream index: 10]
- [TCP Segment Len: 284]
- Sequence number: 2316 (relative sequence number)
- [Next sequence number: 2600 (relative sequence number)]
- Acknowledgment number: 289 (relative ack number)
- Header Length: 20 bytes
- Flags: 0x018 (PSH, ACK)
- 000. .... .... = Reserved: Not set
- ...0 .... .... = Nonce: Not set
- .... 0... .... = Congestion Window Reduced (CWR): Not set
- .... .0.. .... = ECN-Echo: Not set
- .... ..0. .... = Urgent: Not set
- .... ...1 .... = Acknowledgment: Set
- .... .... 1... = Push: Set
- .... .... .0.. = Reset: Not set
- .... .... ..0. = Syn: Not set
- .... .... ...0 = Fin: Not set
- [TCP Flags: ·······AP···]
- Window size value: 65535
- [Calculated window size: 65535]
- [Window size scaling factor: -2 (no window scaling used)]
- Checksum: 0x7f5d [unverified]
- [Checksum Status: Unverified]
- Urgent pointer: 0
- [SEQ/ACK analysis]
- [iRTT: 0.228784000 seconds]
- [Bytes in flight: 284]
- [Bytes sent since last PSH flag: 284]
- Secure Sockets Layer
- TLSv1.2 Record Layer: Handshake Protocol: New Session Ticket
- Content Type: Handshake (22)
- Version: TLS 1.2 (0x0303)
- Length: 228
- Handshake Protocol: New Session Ticket
- TLSv1.2 Record Layer: Change Cipher Spec Protocol: Change Cipher Spec
- Content Type: Change Cipher Spec (20)
- Version: TLS 1.2 (0x0303)
- Length: 1
- Change Cipher Spec Message
- TLSv1.2 Record Layer: Handshake Protocol: Multiple Handshake Messages
- Content Type: Handshake (22)
- Version: TLS 1.2 (0x0303)
- Length: 40
- Handshake Protocol: Hello Request
- Handshake Protocol: Hello Request
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement