ANNOUNCEMENT: Live Wireshark University & Allegro Packets online APAC Wireshark Training Session
April 17th, 2024 | 14:30-16:00 SGT (UTC+8) | Online

Wireshark-users: [Wireshark-users] Question Regarding Capture Interpretation

From: "Andre Champoux" <andrec@xxxxxxxxxxxxxxxxx>
Date: Tue, 22 Apr 2008 22:48:54 -0700

Hi,

 

I have two workstations on a managed switch (we put the managed switch in to help diagnose the problem) and have found that saving files in a particular application results in really poor performance. I did a network capture from both workstations as well as used a tool called Filemon on the remote workstation. What I notice in both the network capture is this

 

5342       18.380647            10.2.0.152            10.2.0.151            SMB       Write AndX Request, FID: 0x4022, 1 byte at offset 239500

 

I will receive a very long list of these of a small number of bytes.  

 

Can anyone explain what this means?

 

Thanks

 

Andre