Solved

Unable to view domain name in Wireshark

Posted on 2014-04-19
2
417 Views
Last Modified: 2014-04-20
I'm launching Wireshark then bringing up www.example.com in my browser then stoping wireshark capture. How can I find www.example.com in wireshark? I tried doing a string search but it does not find anything also using tcp port eq 80 does not bring up anything resembling www.example.com. Name resolution is enabled.
0
Comment
Question by:centem
2 Comments
 
LVL 82

Accepted Solution

by:
Dave Baldwin earned 125 total points
ID: 40010559
Name resolution is done thru DNS on port 53.  All you will see on port 80 is the IP address.  http://en.wikipedia.org/wiki/List_of_TCP_and_UDP_port_numbers
0
 
LVL 14

Assisted Solution

by:small_student
small_student earned 125 total points
ID: 40010584
What is it exactly that you want to see. If you would like to follow on the entire communication between your machine and the domain name go to

Analyze --> Follow TCP Stream

From HTTP you would see the GET request to the site as (GET / ) If you click on that packet and view its details you would see the domain name in your request.
0

Featured Post

Why You Should Analyze Threat Actor TTPs

After years of analyzing threat actor behavior, it’s become clear that at any given time there are specific tactics, techniques, and procedures (TTPs) that are particularly prevalent. By analyzing and understanding these TTPs, you can dramatically enhance your security program.

Join & Write a Comment

Suggested Solutions

In this tutorial I will show you with short command examples how to obtain a packet footprint of all traffic flowing thru your Juniper device running ScreenOS. I do not know the exact firmware requirement, but I think the fprofile command is availab…
Introduction Many times we come across a slowness or instability between two hosts, and almost always we blame the poor networking guys, just because they're an easy target.  Sometimes we forget that other factors including disk bottlenecks, CPU …
Here's a very brief overview of the methods PRTG Network Monitor (https://www.paessler.com/prtg) offers for monitoring bandwidth, to help you decide which methods you´d like to investigate in more detail.  The methods are covered in more detail in o…
In this tutorial you'll learn about bandwidth monitoring with flows and packet sniffing with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're interested in additional methods for monitoring bandwidt…

759 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

22 Experts available now in Live!

Get 1:1 Help Now