Question

  • Creator
    Topic
  • #4126628

    Wireshark – No [SYN] but a lot of [ACK]

    by jaydaley123 ·

    Tags: 

    I need to figure out what type of malicious activity is present in this .pcap file I have received for my coursework using wireshark, however I’m not asking anyone to solve it don’t worry. I’m curious about something else. From my understanding, when there is a TCP connection handshake, on Wireshark it is displayed as:
    SYN
    SYN, ACK
    ACK
    I’m just a beginner at the moment, so I’m trying to understand, most of the TCP frames in Wireshark are displaying ACK without any SYN, and some say PSH instead. Can someone educate me on why? I tried to search it up but it just talks about SYN ACK handshakes and doesn’t answer my question. Thank you! please ask for clarity if this does not make sense and I’ll try my best.

You are posting a reply to: Wireshark – No [SYN] but a lot of [ACK]

The posting of advertisements, profanity, or personal attacks is prohibited. Please refer to our Community FAQs for details. All submitted content is subject to our Terms of Use.

All Answers

Viewing 0 reply threads