즐겨찾기
  검색     질문하기 | 도와주세요
Tip&Tech  | OS Install  | 하드웨어  | 소프트웨어  | 주변기기  | 홈페이지  | 조립  | OpenMarket  | Talk  | Download
조회 81266댓글 0날짜 2007-07-13 13:41:37
SmartSniff v1.30 자신의 랜카드 모니터링 프로그램
(영자) IP: 222.120.95.98  추천: 1032
파일명: smsniff.exe 용량: 0.096 MB 다운로드: 1336       
SmartSniff v1.30
Copyright (c) 2004 - 2006 Nir Sofer
Web site: http://www.nirsoft.net


Description
SmartSniff allows you to capture TCP/IP packets that pass through your network adapter, and view the captured data as sequence of conversations between clients and servers. You can view the TCP/IP conversations in Ascii mode (for text-based protocols, like HTTP, SMTP, POP3 and FTP.) or as hex dump. (for non-text base protocols, like DNS)
SmartSniff provides 2 methods for capturing TCP/IP packets :
Raw Sockets (Only for Windows 2000/XP or greater): Allows you to capture TCP/IP packets on your network without installing a capture driver. This method has some limitations and problems.
WinPcap Capture Driver: Allows you to capture TCP/IP packets on all Windows operating systems. (Windows 98/ME/NT/2000/XP/2003) In order to use it, you have to download and install WinPcap Capture Driver from this Web site. (WinPcap is a free open-source capture driver.)
This method is generally the preferred way to capture TCP/IP packets with SmartSniff, and it works better than the Raw Sockets method.

System Requirements
SmartSniff can capture TCP/IP packets on any 32-bit Windows operating system (Windows 98/ME/NT/2000/XP) as long as WinPcap capture driver is installed and works properly with your network adapter.
Under Windows 2000/XP (or greater), SmartSniff also allows you to capture TCP/IP packets without installing any capture driver, by using 'Raw Sockets' method. However, this capture method has some limitations and problems:
Outgoing UDP and ICMP packets are not captured.
On Windows XP SP1 outgoing packets are not captured at all - Thanks to Microsoft's bug that appeared in SP1 update...
This bug was fixed on SP2 update.

Versions History
Version 1.30:
New option: Only display TCP/IP statistic, do not store the captured data in file.
New option: Retrieve process information while capturing packets.
In 'Load Packets Data From File', you can now choose to load tcpdump/libpcap file saved by Ethereal or by other capture programs.
A tooltip is displayed when a string in a column is longer than the column length.
When running SmartSniff in the first time, the first found network adapter with IP address is now automatically selected. (In previous versions, the user had to select an adapter in order to start capturing)
Version 1.21:
Fixed Bug: packets in TCP/IP conversations sometimes displayed in wrong order.
Version 1.20:
New option in Live Mode: Display the beginning of TCP/IP conversation content while capturing.
Save / Load SmartSniff configuration.
Filters are now saved when you exit from SmartSniff, and loaded again in the next time that you run it.
Significant improvement in performances of Live Mode when there are a lots of TCP/IP conversations.
Fixed bug: pressing F2/F3/F4 while capturing packets in live mode caused the capture to be corrupted.
Version 1.11: Improve in performances while capturing with WinPcap driver.
Version 1.10:
Performances - Large TCP/IP conversations are now displayed much faster than in previous version.
Live Mode - View the TCP/IP conversation list while capturing.
Capture and display filters.
New option: Resolve IP Addresses to host names (displayed in 'Local Host' and 'Remote Host' columns)
New option: On Automatic display mode, don't display data in hex format if the data size is larger than... (The default is 100 KB)
New option: In the lower pane, don't display items with data size larger than... (The default is 1000 KB)
Added more accelerator keys.
XP style support.
Version 1.00: First release.

Using SmartSniff
In order to start using SmartSniff, simply copy the executable (smsniff.exe) to any folder you like, and run it (installation is not needed).
After running SmartSniff, select "Start Capture" from the File menu, or simply click the green play button in the toolbar. If it's the first time that you use SmartSniff, you'll be asked to select the capture method and the network adapter that you want to use. If WinPcap is installed on your computer, it's recommended to use this method to capture packets.
After selecting the capture method and your network adapter, click the 'OK' button to start capturing TCP/IP packets. while capturing packets, try to browse some Web sites, or retrieve new emails from your email software. After stopping the capture (by clicking the red stop button) SmartSniff displays the list of all TCP/IP conversations the it captured. When you select a specific conversation in the upper pane, the lower pane displays the TCP/IP streams of the selected client-server conversation.
If you want the save the captured packets for viewing them later, use "Save Packets Data To File" option from the File menu.


Display Mode
SmartSniff provides 3 modes to display the captured data: Automatic, Ascii, and Hex Dump. On Automatic mode (the default), SmartSniff checks the first bytes of the data stream - If it contains characters lower than 0x20 (excluding CR, LF and tab characters), it displays the data in Hex mode. otherwise, it displays it in Ascii mode.
You can easily switch between display modes by selecting them from the menu, or by using F2 - F4 keys. Be aware that 'Hex Dump' mode is much slower than Ascii mode.

Exporting the captured data
SmartSniff allows you to easily export the captured data for using it in other applications:
The upper pane: you can select one or more items in the upper pane, and then copy them to the clipboard (You can paste the copied items into Excel or into spreadsheet of OpenOffice.org) or save them to text/HTML/XML file (by using 'Save Packet Summaries').
The lower pane: You can select any part of the TCP/IP streams (or select all text, by using Ctrl+A), copy the selected text to the clipboard, and then paste it to Notepad, Wordpad, MS-Word or any other editor. When you paste the selected streams to document of Wordpad, OpenOffice.org, or MS-Word, the colors are also transferred.
Your can also export the TCP/IP streams to text file, HTML file, or raw data file, by using "Export TCP/IP Streams" option.

Displaying characters above ASCII 127
By default, characters above ASCII 127 are not displayed in the TCP/IP streams. You can enable high ASCII characters by using "Display Characters Above ASCII 127". When you use this option, the TCP/IP streams are displayed without colors. Be aware that when working in this mode, the loading process of the lower pane might be very slow.

Capture and Display Filters
Starting from version 1.10, you can filter unwanted TCP/IP activity during the capture process (Capture Filter), or when displaying the captured TCP/IP data (Display Filter).
For both filter types, you can add one or more filter strings (separated by spaces or CRLF) in the following syntax:
[include | exclude] : [local | remote | both] : [tcp | udp | tcpudp | icmp | all] : [IP Range | Ports Range]

Here's some examples that demonstrate how to create a filter string:

Display only packets with remote tcp port 80 (Web sites):
include:remote:tcp:80
Display only packets with remote tcp port 80 (Web sites) and udp port 53 (DNS):
include:remote:tcp:80
include:remote:udp:53
Display only packets originated from the following IP address range: 192.168.0.1 192.168.0.100:
include:remote:all:192.168.0.1-192.168.0.100
Display only TCP and UDP packets that use the following port range: 53 - 139:
include:both:tcpudp:53-139
Filter most BitTorrent packets (port 6881):
exclude:both:tcpupd:6881
Filter all ICMP packets (Ping/Traceroute activity):
exclude:both:icmp
Notice: A single filter string must not include spaces !

Live Mode
Starting from version 1.10, a new option was added to 'Advanced Options' section - 'Live Mode'. When SmartSniff capture packets in live mode, the TCP/IP conversations list is updated while capturing the packets, instead of updating it only after the capture is finished. Be aware that "Live Mode" requires more CPU resources than non-live mode. So if your computer is slow, or your have a very high traffic on your network, it's recommended to turn off this option.
Starting from version 1.20, you can also view the content of each TCP/IP conversation (in the lower pane) while capturing the packets. However, if the TCP/IP conversation is too large, you won't be able to watch the entire TCP/IP conversation until the capture is stopped.

Viewing process information
Starting from version 1.30, you can view the process information (ProcessID and process filename) for captured TCP packets. However, this feature have some limitations and problems:
Process information is only displayed for TCP packets (It doesn't work with UDP)
Process information may not be displayed for TCP connections that closed after short period of time.
Retrieving process information consume more CPU resources and may slow down your computer. It's not recommended to use this feature if you have intensive network traffic.
Process information is currently not saved in ssp file.
In order to activate this feature, go to 'Advanced Options' dialog-box, check the "Retrieve process information while capturing packets" option and click the 'OK' button. 2 new columns will be added: ProcessID and Process Filename. Start capturing, and process information will be displayed for the captured TCP conversations.

Translating to other languages
SmartSniff allows you to easily translate all dialog-boxes, menus, and strings to other language.
In order to do that, follow the instructions below:
Run SmartSniff with /savelangfile parameter:
smsniff.exe /savelangfile
A file named smsniff_lng.ini will be created in the folder of SmartSniff utility.
Open the created language file in Notepad or in any other text editor.
Translate all menus, dialog-boxes, and string entries to the desired language.
After you finish the translation, Run SmartSniff, and all translated strings will be loaded from the language file.
If you want to run SmartSniff without the translation, simply rename the language file, or move it to another folder.

Command-Line Options
Command Description
/NoCapDriver Starts SmartSniff without loading the WinPcap Capture Driver.
/NoLoadSettings Starts SmartSniff without loading your last settings.


License
This utility is released as freeware. You are allowed to freely distribute this utility via floppy disk, CD-ROM, Internet, or in any other way, as long as you don't charge anything for this. If you distribute this utility, you must include all files in the distribution package, without any modification !

Disclaimer
The software is provided "AS IS" without any warranty, either expressed or implied, including, but not limited to, the implied warranties of merchantability and fitness for a particular purpose. The author will not be liable for any special, incidental, consequential or indirect damages due to loss of data or any other reason.

Feedback
If you have any problem, suggestion, comment, or you found a bug in my utility, you can send a message to nirsofer@yahoo.com


* 참고자료:
1. 웹 트래픽 뷰어-DUMeter version 3

 
1 2
댓글
이글에 대한 본문/댓글이 도움이 되었다면 평가해주세여 !
Good
    Download ( 851 건 )
[Download] FinalData_Enterprise(파일복구)v2.0.1.1028_한글판    2007.06.03 | 조회수 277507 | 댓글 81 | 추천 212
삭제,포멧,파티션 분할 했던 하드도 복구를 해줍니다. 시리얼 번호를 입력해야만 사용이 가능합니다. ㅡ.ㅡ;; 플레쉬메모리카드의 사진이 삭제되었으면 일반적으로 복구가 불가능합니다. 이 프로그램은 포멧된 또는 복구 하고자하는 드라이브에 설치를 권장하지 않습니다. 복구하고자하는 하드 내용이 덮어쒸우기가 되므로 파일 복구율이 떨어지기 때문입니다. * 참고자료: 1. 기본적인 하드 데이타 복구율 2.
작성자: 운영자
[Download] 그래픽,사운드,메인보드, 드라이버 찾아주는 프로그램 v16.10    2016.11.07 | 조회수 206599 | 댓글 9 | 추천 531
www.vga.pe.kr 퍼왔습니다. vga.pe.kr 사이트가 안열리면~ ^^; 드라이브 검색은 http://simfile.chol.com/ http://pds.hanafos.com 에서 해주세요~ * 브랜드PC경우 해당사이트에서 모델명으로 검색해 쉽게 설치가 가능합니다.
작성자: 운영자
[Download] High Definition Audio Codec- realtek 사운드 드라이버 R266    2012.01.03 | 조회수 137448 | 댓글 3 | 추천 441
출처: http://www.realtek.com.tw 다운로드 출처 :
작성자: 영자
[Download] 윈도우용 sendmail 프로그램    2008.05.28 | 조회수 114741 | 댓글 3 | 추천 951
출처: www.glob.com.au/sendmail fake sendmail for windows fake sendmail © 2004-2008 byron jones bsd license glob.com.au/sendmail sendmail @ glob.com.au about sendmail.exe is a simple windows console application that emulates sendmail's "-t" option to deliver emails piped via stdin. it is intended to ease running un..
작성자: 운영자
[Download] 윈도우 7,8 암호 초기화 하기    2014.04.10 | 조회수 107423 | 댓글 0 | 추천 1074
프로그램출처: http://pogostick.net/~pnh/ntpasswd/ This is a utility to reset the password of any user that has a valid local account on your Windows system. Supports all Windows from NT3.5 to Win8.1, also 64 bit and also the Server versions (like 2003, 2008, 2012) You do not need to know the old password to set a new one. ..
작성자: 운영자
[Download] Change Mac Address 5.3 맥주소 변경 프로그램    2007.07.13 | 조회수 88721 | 댓글 71 | 추천 351
랜카드의 물리적인 주소를 변경할 수 있는 프로그램입니다. Register 코드를 입력해야 정상 사용가능하며 기본사용은 '0a0a0a0aXXXX' 중에서 뒷자리 4자리만 변경가능합니다. ^^ 변경되면 전 맥주소로 복귀가 안되므로 적어두세요 출처: http://hackersnews.org/hn/read.cgi?board=hn_hack&y_number=1773&nnew=2
작성자: 영자
[Download] CPU-Z 1.15 컴퓨터 사양 보는 프로그램 -초간단 설치 필요없음    2009.07.19 | 조회수 82318 | 댓글 1 | 추천 345
cpp 성능을 알 수 있습니다. 아래 사진 ↓ 메인보드 명,그래픽카드 슬롯을 알 수 있습니다. 아래 사진↓ 메모리 형식을 알 수 있습니다.↓ 종합적인 정보를 html문서로 출력해줍니다. ↓ * 참고자료: 1. ..
작성자: 운영자
[Download] 시모스,바이오스 패스워드 복구툴 -CmosPwd    2007.06.13 | 조회수 81682 | 댓글 0 | 추천 1572
========================= CmosPwd Christophe GRENIER grenier@cgsecurity.org http://www.cgsecurity.org ========================= CmosPwd is a cmos/bios password recovery tool. CmosPwd is under GNU Public License. You can freely distribute it. It can be compiled under Dos, Windows, Linux, FreeBSD and NetBSD. Platforms - Dos-Windo..
작성자: 영자
[Download] SmartSniff v1.30 자신의 랜카드 모니터링 프로그램    2007.07.13 | 조회수 81266 | 댓글 0 | 추천 1032
SmartSniff v1.30 Copyright (c) 2004 - 2006 Nir Sofer Web site: http://www.nirsoft.net Description SmartSniff allows you to capture TCP/IP packets that pass through your network adapter, and view the captured data as sequence of conversations between clients and servers. You can view the TCP/IP conversations in Ascii mode (for text-b..
작성자: 영자
[Download] d3d9.dll 파일    2007.05.30 | 조회수 79288 | 댓글 10 | 추천 142
DirectX 9.0c 중 dll 파일
작성자: 영자
[Download] 윈도우 7 XP 모드 사용하기(가상화 XP모드-Windows Virtual PC) -정품인증없이다운가능    2011.02.15 | 조회수 76688 | 댓글 0 | 추천 829
출처: http://snoopybox.co.kr/1169MS 다운로드 사이트: http://www.microsoft.com/windows/virtual-pc/download.aspx 윈도우 7의 XP 모드 기능은 프로페셔널 에디션 이상에서만 사용 가능한 것으로 다들 알고 계실 것입니다. 하지만 정확히 표현하자면 버추얼 PC의 통합 기능 사용을 프로페셔널 에디션 이상으로만 제한해둔 것이 아닙니다. XP 모드의 사..
작성자: 운영자
[Download] 인텔칩셋 Intel® ME 8: Management Engine Driver for Intel 6 & 7 Series Chipset-Based Desktop Boards    2012.08.09 | 조회수 75838 | 댓글 0 | 추천 338
출처: http://downloadcenter.intel.com/Detail_Desc.aspx?agr=Y&DwnldID=21527&lang=eng&OSVersion=Windows%207%20(32-bit)*&DownloadType=Drivers%20 Operating Systems:Windows 7 (32-bit)*, Wind..
작성자: 운영자
[Download] PC에 저장된 비밀번호 추출 프로그램 Protected Storage PassView v1.60 패스워드 뷰어    2007.10.30 | 조회수 75605 | 댓글 2 | 추천 761
Protected Storage PassView v1.60 Copyright (c) 2002 - 2003 Nir Sofer www.nirsoft.net Description Protected Storage PassView is a small utility that reveals the passwords stored on your computer by Internet Explorer, Outlook Express and MSN Explorer. The passwords are revealed by reading the information from the Protected Storage. Star..
작성자: 영자
[Download] Canon 레이저 프린터 PCL5 통합드라이버 v8.0 for Windows 2000/xp/2003/vista 32bit    2011.06.10 | 조회수 73351 | 댓글 0 | 추천 1219
출처: http://www.windowdrv.com/bbs/board.php?bo_table=drv_printer&wr_id=614캐논 PCL5e/PCL5c 프린터 드라이버 VER 8.0 (한글버전) 입니다. 파일을 다운 받은 후 압축을 풀면 C:\CANON 디렉토리에 자동으로 압축이 풀립니다. 프린터 드라이버 설치는 제어판 --> 프린터--> 프린터 추가를 실행한 후 제조업체 선택 화면에서 "디스크 있음"을 선택한 후 "c:\canon" 디렉토리를 지정..
작성자: 운영자
[Download] 아리 프로그램 -시간제한 프로그램 V1.77    2008.12.10 | 조회수 73024 | 댓글 11 | 추천 584
출처: http://www.jonetech.net/* 프로그램 특징 * 1. 별도의 장치없이 프로그램 만으로 컴퓨터 사용시간을 제한할 수 있습니다.2. 컴퓨터 시간이 실제 현재 시간으로 자동 동기화 됩니다.3. 암호 없이 설정을 변경하거나 절대 제거할 수 없습니다.4. 사용방법이 매우 간단하고 쉽습니다.5. 전일 컴퓨터 사용시간을 메일로 받아 볼 수 있습니다.6. 다중 사용자를 지원합니다.7. 사용시간 제한 외에 기능에는 제한을 두지 않았으므로 사용에 불편이 없습니다.    (예, 레지스..
작성자: 운영자
[Download] IEFix 1.6v 웹브라우저 문제(오류등)발생시 복원해주는 프로그램    2007.06.30 | 조회수 72578 | 댓글 3 | 추천 516
웹브라우저 사용시 오류를 수정해주는 프로그램입니다. 익스플로러 7.0은 테스트되지 않았습니다. 윈도우 exploer 삽입하라고 나올경우 cd없는분들 윈도우 xp 파일은 아래 다운받아 위치 선정하세요 2번 나오는데 중요:-->>> 파일 선택하시면됩니다. [XP_CD 없는분들 다운로드] 윈도우98은 필요없음~ * 참고: 프로그램 실행시 429 런타..
작성자: 운영자
[Download] 무설치 단일 파일 무료 원격 접속 프로그램 수프리모 Supremo    2013.01.27 | 조회수 71621 | 댓글 1 | 추천 120
링크: http://www.supremofree.com/free-remote-desktop-download-en.aspx
작성자: 운영자
[Download] 한글 파티션매직 v8.0 Kor (PowerQuest PartitionMagic 8.0)    2007.06.07 | 조회수 70511 | 댓글 3 | 추천 912
시디키가 있어야 합니다. ^^ PowerQuest(R) PartitionMagic(R) 버전 8.0 목차 ---- 1. 시스템 백업 2. 일반적인 사용법 3. 알려진 문제점 - Windows NT/2000/XP에만 해당 4. 알려진 문제점 - Windows 9x에만 해당 5. Windows Me 제거 6. PowerQuest Storage Manager 소식지 1. 시스템 백업 -------------- PartitionMagic을 사용하기 전에 하드 드라이브를 백업해야 합니다. PartitionMagic은 철저한 테스트를 거쳤지만 정전, 운영 체제 버그 및 ..
작성자: 영자
[Download] 드라이버 팩키지 - 무선랜    2008.11.12 | 조회수 69286 | 댓글 0 | 추천 1642
출처: http://driverpacks.net 3Com 3CRPAG175 PCMCIA a/b/g 07/11/2003,1.0.0.25 3a 3Com 3CRSHEW696 USB b 1/28/2003, 1.0.1.14 3b 3Com 3CRDAG675 PCI  a/b/g 08/01/2003, 1.0.0.25 3c 3Com 3CRWE154A72 PCMCIA  a/b/g 04/07/2004, 3.0.0.46 3d 3Com 3CRWE62092B PCMCIA  b 08/04/2003, 2.1.1.3005 3e 3Com 3CRWE62..
작성자: 운영자
[Download] C-Media AC97 Audio 드라이버    2008.03.22 | 조회수 67611 | 댓글 3 | 추천 185

작성자: 영자
[1] [2] [3] [4] [5] [6] [7] [8] [9] [10]  ▷
QABoard - SmartSniff v1.30 자신의 랜카드 모니터링 프로그램

↖감추기

↖채팅 감추기

상담 채팅: 접속자(1)
대화창:
주소: 경기도 고양시 일산서구 대화동 1474-1번지
사업자등록번호: 128-25-69877 대표자: 김현수 개인정보관리자:운영자
고객센터:031-917-9979 E-mail: bigfood77@naver.com