• Welcome to Valhalla Legends Archive.
 

Packet logger

Started by Stealth, January 17, 2003, 03:45 PM

Previous topic - Next topic

Stealth

Can anyone recommend a packet logging program?

Many thanks in advance.
- Stealth
Author of StealthBot

Spht

#1
CommView is decent and easy to use with a number of features.

Yoni

#2

Mesiah / haiseM

#3
ill go with ethereal myself, it has a horrible gtk UI, but thats what u get for using something made on some crappy unix platform.

But aside its looks, it is awesome, it has like intellegence, it knew all the frame names, and layers for oscar protocol when i logged aim, and pretty much parsed it out. It is the best.
]HighBrow Innovations
Coming soon...

AIM Online Status: 

Banana fanna fo fanna

#4
Crappy unix platform lol.

Spht

#5
Ethereal enjoys harassing my computer by periodically forcing it to reboot randomly.

So therefore, CommView > Ethereal.

l)ragon

#6
QuoteEthereal enjoys harassing my computer by periodically forcing it to reboot randomly.

So therefore, CommView > Ethereal.

I have yet to find a packet logger that likes my network card neither of those do. ^^
*^~·.,¸¸,.·´¯`·.,¸¸,.-·~^*ˆ¨¯¯¨ˆ*^~·.,l)ragon,.-·~^*ˆ¨¯¯¨ˆ*^~·.,¸¸,.·´¯`·.,¸¸,.-·~^*

UserLoser

#7
WPE PRO!

Spht

#8
QuoteWPE

WPE is a piece of *bleap* that logs by program instead of IP / Port / Protocol / etcetera. I believe it only has the ability log TCP messages, aswell.

Mesiah / haiseM

yes i use wpe pro also, cause i dunno how etheral filters work yet, so i just target the program with wpe, and read the logs :-p

i guess its alright if u know how the protocol works, but no, theres nothing special about it.

also, wpe pro does log udp protocol, but doesnt show very much on it.
]HighBrow Innovations
Coming soon...

AIM Online Status: 

iago

#10
WPE is handy if you're downloading a file, or have a network passing through your computer (which is what happens to me unless I feel like getting a router (which I don't)), since it'll only log from the target program :-)
This'll make an interesting test for broken AV:
QuoteX5O!P%@AP[4\PZX54(P^)7CC)7}$EICAR-STANDARD-ANTIVIRUS-TEST-FILE!$H+H*


Naem

#11
Ethereal stopped working once I got WinXP Pro.
(yeah, I have the newest winpcap stuff)

Therefore, WPE > Ethereal. :)
اگر بتوانید این را بهخوابید ، من را "پی ام" کنید

Yoni

#12
Your conclusion is wrong.
It should say:

"Therefore, Ethereal > WinXP Pro"

iago

#13
I have winxp pro and ethereal works fine :P
This'll make an interesting test for broken AV:
QuoteX5O!P%@AP[4\PZX54(P^)7CC)7}$EICAR-STANDARD-ANTIVIRUS-TEST-FILE!$H+H*


Noodlez

#14
commview and wpe = thx
if only i didnt lose commview in a format