So I'm to the point that I've installed
WireShark on both machines and have captured the HTTP packets that have gone to and from Weather Underground. They are different, most notably the packet being sent from the machine that doesn’t update rapid fire is much longer than the one that works (the longer part is in red). But even the body of the messages are a little different, like there's windgustmph, windgustmph_10m and windgustdir_10m in the packet that works, and that's not in the packet that doesn't. And the packet that doesn't work has leaf wetness and other fields that I don't even have sensors for! Why the differences, I don’t know! Both machines have WeatherLink 5.8.0 installed and the weather underground DLL (I'm not sure if the DLL is the same version, it deosn't report version number anywhere that I can find). I’m way out of my element here, I know enough to get WireShark up and running and capturing packets, but that’s about the extent of it. Does anyone see any issues here that are obvious?
For a reminder, no anti-virus software is on the machine that deosn't work, only windows firewall.
So here’s the Vista machine that works:
Vista machine send:
0000 00 16 e3 aa 74 87 00 1e 8c 5c 65 7c 08 00 45 00 ....t... .\e|..E.
0010 01 e7 71 99 40 00 80 06 00 00 c0 a8 58 64 40 f3 ..q.@... ....Xd@.
0020 ae 7d d3 58 00 50 4c 6d 36 61 35 7e ef 7c 50 18 .}.X.PLm 6a5~.|P.
0030 40 29 0a 57 00 00 47 45 54 20 2f 77 65 61 74 68 @).W..GE T /weath
0040 65 72 73 74 61 74 69 6f 6e 2f 75 70 64 61 74 65 erstatio n/update
0050 77 65 61 74 68 65 72 73 74 61 74 69 6f 6e 2e 70 weathers tation.p
0060 68 70 3f 61 63 74 69 6f 6e 3d 75 70 64 61 74 65 hp?actio n=update
0070 72 61 77 26 49 44 3d 4b 43 4f 43 4f 4c 4f 52 39 raw&ID=K COCOLOR9
0080 32 26 50 41 53 53 57 4f 52 44 3d XX XX XX XX XX 2&PASSWO RD=XXXXX
0090 XX XX XX XX 26 64 61 74 65 75 74 63 3d 32 30 30 XXXX&dat eutc=200
00a0 38 2d 31 32 2d 31 33 25 32 30 30 31 3a 30 38 3a 8-12-13% 2001:08:
00b0 33 33 26 77 69 6e 64 64 69 72 3d 38 32 26 77 69 33&windd ir=82&wi
00c0 6e 64 64 69 72 5f 61 76 67 32 6d 3d 38 32 26 77 nddir_av g2m=82&w
00d0 69 6e 64 73 70 65 65 64 6d 70 68 3d 33 26 77 69 indspeed mph=3&wi
00e0 6e 64 67 75 73 74 6d 70 68 3d 32 26 77 69 6e 64 ndgustmp h=2&wind
00f0 67 75 73 74 6d 70 68 5f 31 30 6d 3d 32 26 77 69 gustmph_ 10m=2&wi
0100 6e 64 67 75 73 74 64 69 72 5f 31 30 6d 3d 38 32 ndgustdi r_10m=82
0110 26 68 75 6d 69 64 69 74 79 3d 36 33 26 74 65 6d &humidit y=63&tem
0120 70 66 3d 33 33 2e 36 26 64 65 77 70 74 66 3d 32 pf=33.6& dewptf=2
0130 32 2e 33 26 72 61 69 6e 69 6e 3d 30 2e 30 30 26 2.3&rain in=0.00&
0140 64 61 69 6c 79 72 61 69 6e 69 6e 3d 30 2e 30 30 dailyrai nin=0.00
0150 26 62 61 72 6f 6d 69 6e 3d 32 39 2e 37 39 26 73 &baromin =29.79&s
0160 6f 66 74 77 61 72 65 74 79 70 65 3d 57 75 6e 64 oftwaret ype=Wund
0170 65 72 67 72 6f 75 6e 64 25 32 30 76 2e 31 2e 31 erground %20v.1.1
0180 35 25 32 30 50 57 53 44 65 63 25 32 30 32 37 25 5%20PWSD ec%2027%
0190 32 30 32 30 30 37 20 48 54 54 50 2f 31 2e 31 0d 202007 H TTP/1.1.
01a0 0a 55 73 65 72 2d 41 67 65 6e 74 3a 20 77 78 65 .User-Ag ent: wxe
01b0 78 0d 0a 48 6f 73 74 3a 20 77 65 61 74 68 65 72 x..Host: weather
01c0 73 74 61 74 69 6f 6e 2e 77 75 6e 64 65 72 67 72 station. wundergr
01d0 6f 75 6e 64 2e 63 6f 6d 0d 0a 43 61 63 68 65 2d ound.com ..Cache-
01e0 43 6f 6e 74 72 6f 6c 3a 20 6e 6f 2d 63 61 63 68 Control: no-cach
01f0 65 0d 0a 0d 0a e....
Response (rapid fire is updated):
0000 00 1e 8c 5c 65 7c 00 16 e3 aa 74 87 08 00 45 20 ...\e|.. ..t...E
0010 00 82 a8 6e 00 00 32 06 d7 6a 40 f3 ae 7d c0 a8 ...n..2. .j@..}..
0020 58 64 00 50 d3 58 35 7e ef 7c 4c 6d 38 20 50 18 Xd.P.X5~ .|Lm8 P.
0030 00 08 14 8c 00 00 48 54 54 50 2f 31 2e 30 20 32 ......HT TP/1.0 2
0040 30 30 20 4f 4b 0d 0a 43 6f 6e 74 65 6e 74 2d 74 00 OK..C ontent-t
0050 79 70 65 3a 20 74 65 78 74 2f 68 74 6d 6c 0d 0a ype: tex t/html..
0060 43 6f 6e 74 65 6e 74 2d 4c 65 6e 67 74 68 3a 20 Content- Length:
0070 38 0d 0a 43 6f 6e 6e 65 63 74 69 6f 6e 3a 20 63 8..Conne ction: c
0080 6c 6f 73 65 0d 0a 0d 0a 73 75 63 63 65 73 73 0a lose.... success.
And here’s the XP machine that doesn’t work:
XP machine send:
0000 00 16 e3 aa 74 87 00 1c c0 5d 7c ea 08 00 45 00 ....t... .]|...E.
0010 03 5b 00 1b 40 00 80 06 ef 01 c0 a8 58 67 40 f3 .[..@... ....Xg@.
0020 ae 7d 04 09 00 50 42 d7 19 af 9c 79 b6 b4 50 18 .}...PB. ...y..P.
0030 ff ff 0b ce 00 00 47 45 54 20 2f 77 65 61 74 68 ......GE T /weath
0040 65 72 73 74 61 74 69 6f 6e 2f 75 70 64 61 74 65 erstatio n/update
0050 77 65 61 74 68 65 72 73 74 61 74 69 6f 6e 2e 70 weathers tation.p
0060 68 70 3f 61 63 74 69 6f 6e 3d 75 70 64 61 74 65 hp?actio n=update
0070 72 61 77 26 49 44 3d 4b 43 4f 43 4f 4c 4f 52 39 raw&ID=K COCOLOR9
0080 32 26 50 41 53 53 57 4f 52 44 3d XX XX XX XX XX 2&PASSWO RD=XXXXX
0090 XX XX XX XX 26 64 61 74 65 75 74 63 3d 32 30 30 XXXX&dat eutc=200
00a0 38 2d 31 32 2d 31 32 25 32 30 30 31 3a 33 35 3a 8-12-12% 2001:35:
00b0 31 34 26 77 69 6e 64 64 69 72 3d 30 26 77 69 6e 14&windd ir=0&win
00c0 64 64 69 72 5f 61 76 67 32 6d 3d 33 36 30 26 77 ddir_avg 2m=360&w
00d0 69 6e 64 73 70 65 65 64 6d 70 68 3d 30 26 68 75 indspeed mph=0&hu
00e0 6d 69 64 69 74 79 3d 30 26 74 65 6d 70 66 3d 30 midity=0 &tempf=0
00f0 2e 30 26 64 65 77 70 74 66 3d 2d 33 32 37 36 38 .0&dewpt f=-32768
0100 2e 30 26 72 61 69 6e 69 6e 3d 30 2e 30 30 26 73 .0&raini n=0.00&s
0110 6f 69 6c 74 65 6d 70 66 3d 2d 39 30 26 73 6f 69 oiltempf =-90&soi
0120 6c 6d 6f 69 73 74 75 72 65 3d 30 26 6c 65 61 66 lmoistur e=0&leaf
0130 77 65 74 6e 65 73 73 3d 30 26 73 6f 6c 61 72 72 wetness= 0&solarr
0140 61 64 69 61 74 69 6f 6e 3d 30 26 55 56 3d 30 2e adiation =0&UV=0.
0150 30 26 64 61 69 6c 79 72 61 69 6e 69 6e 3d 30 2e 0&dailyr ainin=0.
0160 30 30 26 62 61 72 6f 6d 69 6e 3d 30 2e 30 30 26 00&barom in=0.00&
0170 73 6f 66 74 77 61 72 65 74 79 70 65 3d 57 75 6e software type=Wun
0180 64 65 72 67 72 6f 75 6e 64 25 32 30 76 2e 31 2e dergroun d%20v.1.
0190 31 35 25 32 30 50 57 53 44 65 63 25 32 30 32 37 15%20PWS Dec%2027
01a0 25 32 30 32 30 30 37 20 48 54 54 50 2f 31 2e 31 %202007 HTTP/1.1
01b0 0d 0a 55 73 65 72 2d 41 67 65 6e 74 3a 20 77 78 ..User-A gent: wx
01c0 65 78 0d 0a 48 6f 73 74 3a 20 77 65 61 74 68 65 ex..Host : weathe
01d0 72 73 74 61 74 69 6f 6e 2e 77 75 6e 64 65 72 67 rstation .wunderg
01e0 72 6f 75 6e 64 2e 63 6f 6d 0d 0a 43 61 63 68 65 round.co m..Cache
01f0 2d 43 6f 6e 74 72 6f 6c 3a 20 6e 6f 2d 63 61 63 -Control : no-cac
0200 68 65 0d 0a 43 6f 6f 6b 69 65 3a 20 44 54 3d 31 he..
Cook ie: DT=1
0210 32 32 39 31 30 35 39 35 37 3a 38 39 38 35 3a 6c 22910595 7:8985:l
0220 33 61 31 38 3b 20 5f 5f 71 63 61 3d 31 32 32 39 3a18; __ qca=1229
0230 31 30 35 39 35 39 2d 37 36 32 37 30 33 31 38 2d 105959-7 6270318-
0240 33 32 33 32 38 33 31 32 3b 20 5f 5f 75 74 6d 61 32328312 ; __utma
0250 3d 32 30 33 35 36 39 34 33 30 2e 38 31 38 35 36 =2035694 30.81856
0260 31 37 39 38 2e 31 32 32 39 30 31 39 35 32 34 2e 1798.122 9019524.
0270 31 32 32 39 30 31 39 35 32 34 2e 31 32 32 39 30 12290195 24.12290
0280 32 30 30 32 39 2e 32 3b 20 5f 5f 75 74 6d 7a 3d 20029.2; __utmz=
0290 32 30 33 35 36 39 34 33 30 2e 31 32 32 39 30 31 20356943 0.122901
02a0 39 35 32 35 2e 31 2e 31 2e 75 74 6d 63 73 72 3d 9525.1.1 .utmcsr=
02b0 28 64 69 72 65 63 74 29 7c 75 74 6d 63 63 6e 3d (direct) |utmccn=
02c0 28 64 69 72 65 63 74 29 7c 75 74 6d 63 6d 64 3d (direct) |utmcmd=
02d0 28 6e 6f 6e 65 29 3b 20 41 78 44 61 74 61 3d 3b (none); AxData=;
02e0 20 45 6d 61 69 6c 43 6f 6f 6b 69 65 3d 72 6f 61 EmailCo okie=roa
02f0 6b 65 79 25 34 30 75 6e 64 65 72 63 74 65 6b 2e key%40un derctek.
0300 63 6f 6d 3b 20 45 6d 61 69 6c 41 75 74 68 3d 31 com; Ema ilAuth=1
0310 39 33 38 39 35 38 3b 20 4e 6f 41 64 73 43 6f 6f 938958; NoAdsCoo
0320 6b 69 65 3d 30 31 30 64 30 63 34 64 36 34 32 35 kie=010d 0c4d6425
0330 33 61 32 31 37 66 36 63 37 62 37 39 37 62 32 64 3a217f6c 7b797b2d
0340 30 39 35 38 34 65 35 38 30 62 3b 20 50 57 53 49 09584e58 0b; PWSI
0350 44 53 3d 33 39 34 36 35 37 3a 4b 43 4f 43 4f 4c DS=39465 7:KCOCOL
0360 4f 52 39 32 7c 0d 0a 0d 0a OR92|... . Response (rapid fire isn't updated):
0000 00 1c c0 5d 7c ea 00 16 e3 aa 74 87 08 00 45 20 ...]|... ..t...E
0010 00 82 c9 2b 00 00 32 06 b6 aa 40 f3 ae 7d c0 a8 ...+..2. ..@..}..
0020 58 67 00 50 04 09 9c 79 b6 b4 42 d7 1c e2 50 18 Xg.P...y ..B...P.
0030 1c cb bd b6 00 00 48 54 54 50 2f 31 2e 30 20 32 ......HT TP/1.0 2
0040 30 30 20 4f 4b 0d 0a 43 6f 6e 74 65 6e 74 2d 74 00 OK..C ontent-t
0050 79 70 65 3a 20 74 65 78 74 2f 68 74 6d 6c 0d 0a ype: tex t/html..
0060 43 6f 6e 74 65 6e 74 2d 4c 65 6e 67 74 68 3a 20 Content- Length:
0070 38 0d 0a 43 6f 6e 6e 65 63 74 69 6f 6e 3a 20 63 8..Conne ction: c
0080 6c 6f 73 65 0d 0a 0d 0a 73 75 63 63 65 73 73 0a lose.... success.
Anyone got any ideas as to what's gonig on?
Roak