Wireshark-bugs: [Wireshark-bugs] [Bug 1197] IP packet display with Protocol "TCP"
Date: Wed, 1 Nov 2006 21:24:18 +0000 (GMT)

------- Comment #2 from [email protected]  2006-11-01 21:24 GMT -------
Manual dissection looks like a proper TCP payload and saving the file in
Microsoft NetMon format and opening it in there shows a proper HTTP over TCP
over IP packet.  Do all of your packets show up malformed at the TCP level or
just this one?  The malformed warning is caused by the first attempt to get
data from the TCP payload - the source port - even though the packet is not
malformed at that packet.

