WinPCAP

onthebrink

New member
Anyone out there no of a PCAP that will work on 7??
 

My Computer

Computer Manufacturer/Model Number
IBM ThinkPad T60
OS
Window 7 - 7100
CPU
T2300 1.66Ghz
Memory
4Gb
Graphics Card(s)
AT!
Screen Resolution
1024x768
WinPcap 4.1 beta5 works

I've just downloaded WinPcap 4.1 beta5 from here: WinPcap, the Packet Capture and Network Monitoring Library for Windows

Set the compatibility mode to Windows Vista (right click on the installer executable then select Properties; on the Compatibility tab, check "Run this program in compatibility mode for", select Windows Vista SP1 from the dropdown list, then finally click OK =)) and it will install as it should.

For me it worked flawlessly so far.
 

My Computer

OS
Windows 7 RC
Thank you! Worked perfectly!
 

My Computer

Computer Manufacturer/Model Number
IBM ThinkPad T60
OS
Window 7 - 7100
CPU
T2300 1.66Ghz
Memory
4Gb
Graphics Card(s)
AT!
Screen Resolution
1024x768
Dude I did this, it installed fine, but when I try to run wireshark it tells me that the NPF driver isnt loaded, so then I tried "net start npf" after some googling and it says something about system error 5 has occurred "access denied"

meh :(
 

My Computer

OS
Windows 7
Dude I did this, it installed fine, but when I try to run wireshark it tells me that the NPF driver isnt loaded, so then I tried "net start npf" after some googling and it says something about system error 5 has occurred "access denied"

meh :(

Run Wireshark as an admin (right-click the WS shortcut, select "run as admin").
 

My Computer

Computer Manufacturer/Model Number
Multiple machines in various stages of decomposition.
OS
Win7x64
thank you! worked like a charm!!!

LOL though on a side note, the problem I was trying to trouble shoot doesnt happen when im capturing packets, go figure!#$#$%$@)(*@#(&%
 

My Computer

OS
Windows 7
thank you! worked like a charm!!!

LOL though on a side note, the problem I was trying to trouble shoot doesnt happen when im capturing packets, go figure!#$#$%$@)(*@#(&%

Do you mean the act of capturing literally makes the symptom go away? That would make it interesting. What's the symptom?
 

My Computer

Computer Manufacturer/Model Number
Multiple machines in various stages of decomposition.
OS
Win7x64
I run this software called notepad++ to do all my code editing in, and I use the FTP_synchronize plugin to work with remote files. On this computer and this computer only, (and it does work fine on my other win7 machines (i have 3)), it only downloads partial files yet reports success, it also cannot fully download large directory lists. Its very strange...

Anyway, the packet capture fix seemed to be a fluke because its back to doing it again, even if the packets are being captured. I still havent figured out what the problem is though :(
 

My Computer

OS
Windows 7
I run this software called notepad++ to do all my code editing in, and I use the FTP_synchronize plugin to work with remote files. On this computer and this computer only, (and it does work fine on my other win7 machines (i have 3)), it only downloads partial files yet reports success, it also cannot fully download large directory lists. Its very strange...

Anyway, the packet capture fix seemed to be a fluke because its back to doing it again, even if the packets are being captured. I still havent figured out what the problem is though :(

You really don't want to be in a situation where capturing packets completely alters the outcome. Those can be very nasty problems to understand :)

Given you can now repro while capturing, what does the capture tell you? Can you see which side is truncating the large directory lists, and similar?

If you can't get any answers from the trace, try doing all this in [safe mode + net]. If that works, the most likely culprit is an anti-virus or firewall driver which is buggy. The reason you don't see its activities in the trace is because it occupies the same "NDIS intermediate" level as the packet sniffer driver - WinPCap in this case.
 

My Computer

Computer Manufacturer/Model Number
Multiple machines in various stages of decomposition.
OS
Win7x64
Depending on what you are using it for, it would be easier to install Linux. You can dual boot 7 and Fedora 11. That is how I have mine set up. Linux is far superior to windows when using programs like this. I can give you a few sites that explain the process in linux if you want.

I hope I don't piss anyone off by suggesting Linux, but it is a lot easier to do certain functions in Linux than windows. And it's free.
 

My Computer

OS
Windows 7
I run this software called notepad++ to do all my code editing in, and I use the FTP_synchronize plugin to work with remote files. On this computer and this computer only, (and it does work fine on my other win7 machines (i have 3)), it only downloads partial files yet reports success, it also cannot fully download large directory lists. Its very strange...

Anyway, the packet capture fix seemed to be a fluke because its back to doing it again, even if the packets are being captured. I still havent figured out what the problem is though :(

You really don't want to be in a situation where capturing packets completely alters the outcome. Those can be very nasty problems to understand :)

Given you can now repro while capturing, what does the capture tell you? Can you see which side is truncating the large directory lists, and similar?

If you can't get any answers from the trace, try doing all this in [safe mode + net]. If that works, the most likely culprit is an anti-virus or firewall driver which is buggy. The reason you don't see its activities in the trace is because it occupies the same "NDIS intermediate" level as the packet sniffer driver - WinPCap in this case.

I really couldnt figure much out with the capture, I'm not a pro with wireshark by any means so.... I tried your suggestion of starting in safe+net and it worked flawlessly.... That being said I'm still stumped because I run this EXACT setup on my desktop at home (same antivirus (avast home), disabled windows firewall + windows firewall) - I also tried completely disabling the firewall before as i suspected that might be the problem... the only thing i havent tried yet is disabling my AV and....................................

EUREKA! Avast was the problem!!!!!!!!! holy crap!

Because I use avast on all of my computers I never suspected it! I just realized now though, that there was a new version that came out right before I set this computer up and this is the only one on my setups that have this new version!

****. WTF am i suppose to do now? I dont think I can downgrade it...

What are the free antiviruses that are as good?
 

My Computer

OS
Windows 7

My Computer

Computer Manufacturer/Model Number
Gateway, Toshiba Laptop, and Home Brew
OS
Windows 7 x64 HP, Windows 7 HP, Windows 7 Ult
CPU
Intel I3, Cerelon, Pentium 4 @ 3Ghz
Motherboard
Intel, Intel, Asus
Memory
8G, 3G, 3G
Graphics Card(s)
On-board Intel, On-board nVidia, nVIDIA card
Sound Card
on-board, on-board, SoundBlaster
Monitor(s) Displays
Hannspree HF237, Toshiba, SyncMaster 931B
Screen Resolution
default (all)
Hard Drives
1T internal, 320G internal, 160G internal, 1T networked
PSU
300w, unk, 650w
Case
black, black, grey
Cooling
air (all)
Keyboard
standard wired (all)
Mouse
standard wired (all)
Internet Speed
6M down, 768K up
Other Info
Home LAN through Linksys hub to 4 port and wireless switch/router. Networked HP 2600n. Wife's computer running Windows 7, and spare laptop running Ubuntu "Karmic Kola" (9.10).
Yes I just installed that in place of avast as I read about it /. last week. Seemed to be the logical choice once I thought of it.

Everything seems to be working now. The issues still pops up once in a while but its tolerable and I'm now able to do my work the way I am accustom to doing it!

Thanks for the help guys!

FTR, i tried upgrading the avast program before switching and it had no effect. The 'bug' if you will, is still present. I suppose I will write their support department regarding the issue though its a pretty isolated case so I doubt they'll actually do anything about it.
 

My Computer

OS
Windows 7
FTR, i tried upgrading the avast program before switching and it had no effect. The 'bug' if you will, is still present. I suppose I will write their support department regarding the issue though its a pretty isolated case so I doubt they'll actually do anything about it.

Glad to hear it's all better!

For what it's worth, the AV filter driver has an incredibly complex task: be everywhere, check everything, suspect everyone, flag all wrong-doing ... and do it without consuming resources. Inevitably, there are going to be breakdowns. The fact that a similar setup may work on another machine is gratifying, but it doesn't in any way rule out problems in the ever-so-slightly different environment of the computer in question. For example, the "bug" may not even be in Avast itself. There's a chance that its presence merely exposes a flaw in another driver you've got down there in kernel-mode.
 

My Computer

Computer Manufacturer/Model Number
Multiple machines in various stages of decomposition.
OS
Win7x64

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Alienware Aurora ALX R4
OS
Windows 10 Pro (x64)
CPU
Intel Core i7-3930K (3.2GHz - 4.5GHz)
Motherboard
Alienware Aurora-R4 x79
Memory
4x Samsung 4GB PC3-12800 DDR3 (16GB 1600MHz)
Graphics Card(s)
Nvidia Geforce GTX 690
Sound Card
SteelSeries Siberia Elite
Monitor(s) Displays
Dell UltraSharp U3011
Screen Resolution
2560x1600
Hard Drives
Samsung 850 Pro 256 GB, Seagate 1TB Desktop Hybrid HDD, 2x Western Digital 4TB Green HDD
PSU
875W Some Dell PSU <.<
Case
Alienware Aurora ALX
Cooling
Custom Liquid Cooling (EK CPU & GPU blocks) dual EK 480RAD
Keyboard
Logitech G710+ Mechanical
Mouse
Logitech G700s
Internet Speed
Verizon Fios (50 mbps average)
Other Info
Server: Intel NUC D54250WYK: i5-4250U, 16GB, 256 GB mSATA, Windows Server 2012 R2
?????

I have to install Wireshark and WinPCap on multiple PCs within our company through SCCM. I understand WinPCap does not support sielnt installs and from this post it appears it will not install silently on Windows 7!? Any thoughts or help on this one? :confused:

Thanks
 

My Computer

OS
windows 7 32 bit
Back
Top