1. ip.addr ==10.0.0.1 [Sets a filter for any packet with 10.0.0.1, as either thesource or dest]
2. ip.addr==10.0.0.1 && ip.addr==10.0.0.2 [setsa conversation filter between the two defined IP addresses]
3. http or dns [setsa filter to display all http and dns]
4. tcp.port==4000[sets a filter for any TCP packet with 4000 as a source or dest port]
5. tcp.flags.reset==1[displays all TCP resets]
6. http.request[displays all HTTP GET requests]
7. tcp containstraffic [displays all TCP packets that contain the word ?traffic?.Excellent when searching on a specific string or user ID]
8. !(arp or icmp ordns) [masks out arp, icmp, dns, or whatever other protocols may bebackground noise. Allowing you to focus on the traffic of interest]
9. udp contains33:27:58 [sets a filter for the HEX values of 0x33 0x27 0x58 at anyoffset]
10. tcp.analysis.retransmission[displays all retransmissions in the trace. Helps when tracking down slowapplication performance and packet loss]