Alexander, I looked it up and I see I needed the -w option to do Wireshark format. Here's a new capture using that option. So you'll have both plain text and Wireshark format. https://www.yousendit.com/download/UVJnNHAzQVNqY3I0WjlVag Regards, Doug On May 14, 2013, at 12:33 PM, Alexander Nezhinsky <nezhinsky@xxxxxxxxx> wrote: > Doug, > > There is a problem with the file. Wireshark refuses to open it complaining about "a format it can't understand" > and even tcpdump itself says this: > > $ tcpdump -qns 0 -X -r formattest.pcap > tcpdump: unknown file format > > > On Tue, May 14, 2013 at 9:57 PM, Doug Clow <doug.clow@xxxxxxxxxxx> wrote: > Alexander, > > Here is the tcpdump you requested. I start by connecting to the disk and then immediately attempt a quick format from Windows. That produced a huge file so I uploaded it to Yousendit. This is the download link: > > https://www.yousendit.com/download/UVJnNHAzTkE4aVBtcXRVag > > > -- To unsubscribe from this list: send the line "unsubscribe stgt" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html