[Dshield] Tool to Reassemble wireshark capture

Moses Hernandez moses at networksamurai.org
Thu Jun 5 00:39:45 GMT 2008


Iris can parse it. Probably Sniffer General as well. I think Wireshark  
1.0 may be able to do almost a 100% of this.


On Jun 4, 2008, at 7:38 PM, Phillip Partipilo wrote:

> I asked in another list a while ago about just that but never got a
> response. eEye security has a sniffer similar to wireshark that will  
> do
> that,  Iris i think, but its been a few years since ive trialed it.
> Kinda expensive iirc though.
>
> Cox, Shawn wrote:
>> Could anyone recommend a tool to parse a wireshark capture to  
>> reconstruct http traffic including images?
>>
>> --Shawn
>> --------------------------------------------------
>> Server and Storage Administrator
>> Plains Cotton Cooperative Association
>> Lubbock, Texas
>> (806)763-8011
>> --------------------------------------------------
>> _________________________________________
>> SANSFIRE !! The Internet Storm Center Conference
>> http://www.sans.org/sansfire08/
>>
>>
>>
>> --
>> If this email is spam, report it here:
>> http://www.onlymyemail.com/view/?action=reportSpam&Id=ODEzNjQ6NjU1MzE2NzYxOnBqcEBwc25ldC5jb20%3D
>>
>>
>
> _________________________________________
> SANSFIRE !! The Internet Storm Center Conference
> http://www.sans.org/sansfire08/



More information about the list mailing list