Wireshark Question
by mb1994 from LinuxQuestions.org on (#5FNPD)
Good afternoon,
I was wondering if I could get some assistance in understanding the full potential of Wireshark. I am analyzing a .pcap file where there is a EITest Evil Redirect Leading to EK. I was able to locate the compromised website as well as the IP address and domain that delivered the malicious downloadable payload. I was wondering what is the best way of determining other malicious hosts or sites in which the compromised host interacted? Is there a way to determine what other websites are related to the malware attack in Wireshark? Thanks in advance!


I was wondering if I could get some assistance in understanding the full potential of Wireshark. I am analyzing a .pcap file where there is a EITest Evil Redirect Leading to EK. I was able to locate the compromised website as well as the IP address and domain that delivered the malicious downloadable payload. I was wondering what is the best way of determining other malicious hosts or sites in which the compromised host interacted? Is there a way to determine what other websites are related to the malware attack in Wireshark? Thanks in advance!