Wireshark

A tool used for creating and analysing packet captures (PCAPs). When you think of packet analysis tools this is the de-facto standard of packet analysis tools.

Table of Contents

Cheat Sheet

Samples

Wireshark provides a variety of PCAPs ranging from simple protocol traffic to even viruses and worms such as the Slammer worm sending a DCE RPC packet:

  • https://wiki.wireshark.org/SampleCaptures#viruses-and-worms