Packet sniffing software

Open discussion about any topic, as long as you abide by the rules of course!
Post Reply
Giraffe }{unter
Posts: 2941
Joined: Fri Mar 17, 2000 8:00 am

Packet sniffing software

Post by Giraffe }{unter »

What's a good packet siffing software to analize network traffic that could be peaking network traffic. something with a little more detail than ethereal?
[url=http://www.dumpt.com][img]http://www.giraffe-hunter.com/images/dumpt.gif[/img][/url]
[size=85]DUMPT.com fully revamped, simple image hosting/dumping ground
No registration required![/size]
User avatar
raw
Posts: 2742
Joined: Tue Nov 16, 1999 8:00 am

Post by raw »

Giraffe }{unter
Posts: 2941
Joined: Fri Mar 17, 2000 8:00 am

Post by Giraffe }{unter »

yeah... good stuff, but I need software based, I am trying to avoid a trip to our Florida office.
[url=http://www.dumpt.com][img]http://www.giraffe-hunter.com/images/dumpt.gif[/img][/url]
[size=85]DUMPT.com fully revamped, simple image hosting/dumping ground
No registration required![/size]
Underpants?
Posts: 4755
Joined: Mon Oct 22, 2001 7:00 am

Re: Packet sniffing software

Post by Underpants? »

Giraffe }{unter wrote:What's a good packet siffing software to analize network traffic that could be peaking network traffic. something with a little more detail than ethereal?
if you just want to scan all open ports on your network,
http://www.insecure.org
nmap is for you.
as far as sniffing, snort works fair to middlin' together with tethereal
User avatar
raw
Posts: 2742
Joined: Tue Nov 16, 1999 8:00 am

Post by raw »

It is software based, I downloaded the trial (like 300 mb) and tested it. It's quite detailed. They cut back some of the features on the trial but it's better than paying the $10,000+ price on it.
^misantropia^
Posts: 4022
Joined: Sat Mar 12, 2005 6:24 pm

Post by ^misantropia^ »

snort does a good job. Heavy traffic can put a strain on the network and/or box it's running on, though.
+JuggerNaut+
Posts: 22175
Joined: Sun Oct 14, 2001 7:00 am

Post by +JuggerNaut+ »

both nmap and snort are very good choices, i use both. haven't tried raw's suggestion.

what's the matter? donkey boy acting up again?
[img]http://i26.photobucket.com/albums/c113/ChipV/peso3.jpg[/img]
User avatar
duffman91
Posts: 1278
Joined: Thu Jan 25, 2001 8:00 am

Post by duffman91 »

http://www.ethereal.com/

Ethereal is your only choice for a packet sniffer that's free.
User avatar
plained
Posts: 16366
Joined: Thu Jun 13, 2002 7:00 am

Post by plained »

far as i know, y'all are a bunch of package sniffers :lol:
+JuggerNaut+
Posts: 22175
Joined: Sun Oct 14, 2001 7:00 am

Post by +JuggerNaut+ »

ffs, i totally forgot about ethereal. out in the field it's awesome. been awhile since i used it. directions say to install winpcap first, then ehtereal.exe. but it seems that ethereal.exe comes with the latest beta version of winpcap? you using 3.1, Duff? is it pretty stable?
[img]http://i26.photobucket.com/albums/c113/ChipV/peso3.jpg[/img]
+JuggerNaut+
Posts: 22175
Joined: Sun Oct 14, 2001 7:00 am

Post by +JuggerNaut+ »

nevermind, had to update to beta anyway. 3.0 wouldn't work on my system.
[img]http://i26.photobucket.com/albums/c113/ChipV/peso3.jpg[/img]
User avatar
duffman91
Posts: 1278
Joined: Thu Jan 25, 2001 8:00 am

Post by duffman91 »

We use whatever the latest is +JuggerNaut+, we've never had a problem at work.
+JuggerNaut+
Posts: 22175
Joined: Sun Oct 14, 2001 7:00 am

Post by +JuggerNaut+ »

duffman91 wrote:We use whatever the latest is +JuggerNaut+, we've never had a problem at work.
cool. we have hardware based sniffers at work, this is just for home use. thanks man.
[img]http://i26.photobucket.com/albums/c113/ChipV/peso3.jpg[/img]
Post Reply