This is a static archive of our old Q&A Site. Please post any new questions and answers at ask.wireshark.org.

[closed] is it a malware?

0

i have a wireshark result. there is a connection between A and a server. During this connection server repeatedly sends ACK=202 and correct seq of the data, A is sending seq =202 with correct ACK and len=0. At the end A has received many data but server has only packet with seq=202 which its length is 0.

TCP disconnection, instead of sending FIN to Server, A sends RST to Server. I want to know that is it a malware? if it is a malware what is its target or it is what kind of malware?

thanks for your consideration

asked 24 May '15, 13:36

samira's gravatar image

samira
6557
accept rate: 0%

closed 24 May '15, 14:03

grahamb's gravatar image

grahamb ♦
19.8k330206

(24 May '15, 14:03) grahamb ♦

The question has been closed for the following reason “Duplicate Question” by grahamb 24 May ‘15, 14:03