<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Network Packet Sniffer Software for Windows XP, Vista, 7</title>
	<atom:link href="http://packetsniffer.wordpress.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://packetsniffer.wordpress.com</link>
	<description>All about network packet sniffer software, shareware, and freeware, for those IT administrators ease their work</description>
	<lastBuildDate>Wed, 24 Jun 2009 10:06:11 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='packetsniffer.wordpress.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://s2.wp.com/i/buttonw-com.png</url>
		<title>Network Packet Sniffer Software for Windows XP, Vista, 7</title>
		<link>http://packetsniffer.wordpress.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://packetsniffer.wordpress.com/osd.xml" title="Network Packet Sniffer Software for Windows XP, Vista, 7" />
	<atom:link rel='hub' href='http://packetsniffer.wordpress.com/?pushpress=hub'/>
		<item>
		<title>How to Detect Email Worm with Colasoft Packet Sniffer</title>
		<link>http://packetsniffer.wordpress.com/2009/06/24/how-to-detect-email-worm-with-colasoft-packet-sniffer/</link>
		<comments>http://packetsniffer.wordpress.com/2009/06/24/how-to-detect-email-worm-with-colasoft-packet-sniffer/#comments</comments>
		<pubDate>Wed, 24 Jun 2009 10:06:11 +0000</pubDate>
		<dc:creator>K.Zhou</dc:creator>
				<category><![CDATA[howto]]></category>
		<category><![CDATA[email worm]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://packetsniffer.wordpress.com/?p=39</guid>
		<description><![CDATA[What Is an Email Worm In networking, an email worm is a computer worm which can copy itself to the shared folder in system. And it will keep sending infected emails to stochastic email addresses. In this way, it spreads fast via SMTP mail servers. What Is the Harm of Email Worm An email worm [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=packetsniffer.wordpress.com&amp;blog=7217633&amp;post=39&amp;subd=packetsniffer&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><strong>What Is an Email Worm</strong><br />
In networking, an email worm is a computer worm which can copy itself to the shared folder in system. And it will keep sending infected emails to stochastic email addresses. In this way, it spreads fast via SMTP mail servers.</p>
<p><strong>What Is the Harm of Email Worm</strong><br />
An email worm can send lots of infected emails in a very short time and it will never stop unless it’s removed. It will cause a large traffic and make the system go slowly. Sometimes it even makes the mail server crash.</p>
<p><strong>How to Detect Email Worm</strong><br />
If you are suspicious some host in your network is infected with an email worm, here is a process how we can <strong><a title="how to detect email worm" href="http://blog.colasoft.com/how-to-detect-email-worm-with-colasoft-packet-sniffer/">detect email worm</a></strong> in network with Colasoft <a title="Colasoft Packet Sniffer" href="http://www.colasoft.com/capsa/?prid=csblog" target="_blank">Packet Sniffer</a>, step by step.</p>
<p>&gt;<em>Step1. <a title="Download Colasoft Packet Sniffer" href="http://www.colasoft.com/download/products/capsa.php?prid=csblog" target="_blank">Download a free trial</a> and <a title="deploy colasoft packet sniffer correct" href="http://www.colasoft.com/support/installation.php?prid=csblog" target="_blank">deploy it properly</a>.</em></p>
<p>&gt;<em>Step2. Launch a Project and Start Capturing Some Traffic.</em></p>
<p>&gt;<em>Step3. Switch to “Diagnosis” Tab</em><br />
Diagnosis tab is a view we can see all the network issues automatically detected by Colasoft Packet Sniffer, also some causes and solutions are suggested.</p>
<div id="attachment_289" class="wp-caption aligncenter" style="width: 490px"><a href="http://blog.colasoft.com/wp-content/uploads/2009/06/detect-email-worm-ss1.gif"><img class="size-full wp-image-289" title="Click to View Large" src="http://blog.colasoft.com/wp-content/uploads/2009/06/detect-email-worm-ss1.gif" alt="Diagnosis Tab Screenshot" width="480" height="360" /></a><p class="wp-caption-text">Diagnosis Tab Screenshot</p></div>
<p>If there is a host infected with an email worm, we should be able to see SMTP events in the application layer like this:</p>
<div id="attachment_291" class="wp-caption aligncenter" style="width: 411px"><a href="http://blog.colasoft.com/wp-content/uploads/2009/06/detect-email-worm-ss2.jpg"><img class="size-full wp-image-291" title="SMTP Events in Application Layer" src="http://blog.colasoft.com/wp-content/uploads/2009/06/detect-email-worm-ss2.jpg" alt="SMTP Events in Application Layer" width="401" height="138" /></a><p class="wp-caption-text">SMTP Events in Application Layer</p></div>
<p>&gt;<em>Step4. Locate the Source IP</em><br />
Possibly the source IP is the host infected with an email worm as it is sending too many emails in a short period of time with SMTP. So let’s locate the source IP in the “Explorer” with the “Locate” shortcut in the right-click menu.</p>
<div id="attachment_293" class="wp-caption aligncenter" style="width: 490px"><a href="http://blog.colasoft.com/wp-content/uploads/2009/06/detect-email-worm-ss3.gif"><img class="size-full wp-image-293" title="Click to view large" src="http://blog.colasoft.com/wp-content/uploads/2009/06/detect-email-worm-ss3.gif" alt="Locate Source IP" width="480" height="360" /></a><p class="wp-caption-text">Locate Source IP</p></div>
<p>&gt;<em>Step5. Switch to “Logs” Tab</em><br />
Check if the host is sending emails to a large number of recipients in a very short period of time. If so, we can determine the host is infected with an email worm and should be handled immediately. We should be able to see logs in the Tab like this:</p>
<div id="attachment_294" class="wp-caption aligncenter" style="width: 443px"><a href="http://blog.colasoft.com/wp-content/uploads/2009/06/detect-email-worm-ss4.jpg"><img class="size-full wp-image-294" title="View Email Logs in &quot;Logs&quot; Tab" src="http://blog.colasoft.com/wp-content/uploads/2009/06/detect-email-worm-ss4.jpg" alt="View Email Logs in &quot;Logs&quot; Tab" width="433" height="117" /></a><p class="wp-caption-text">View Email Logs in &quot;Logs&quot; Tab</p></div>
<p>No doubt the final step is to isolate the host and kill the email worm with some AV software</p>
<p>Also there will be some other process to detect email worm with Colasoft Packet Sniffer, this is the shortest one.</p>
<br />Posted in howto Tagged: email worm, howto, Security <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/packetsniffer.wordpress.com/39/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/packetsniffer.wordpress.com/39/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/packetsniffer.wordpress.com/39/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/packetsniffer.wordpress.com/39/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/packetsniffer.wordpress.com/39/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/packetsniffer.wordpress.com/39/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/packetsniffer.wordpress.com/39/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/packetsniffer.wordpress.com/39/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/packetsniffer.wordpress.com/39/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/packetsniffer.wordpress.com/39/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/packetsniffer.wordpress.com/39/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/packetsniffer.wordpress.com/39/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/packetsniffer.wordpress.com/39/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/packetsniffer.wordpress.com/39/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=packetsniffer.wordpress.com&amp;blog=7217633&amp;post=39&amp;subd=packetsniffer&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://packetsniffer.wordpress.com/2009/06/24/how-to-detect-email-worm-with-colasoft-packet-sniffer/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/874a69b7038dc9a24ed7f38d8b110954?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">K.Zhou</media:title>
		</media:content>

		<media:content url="http://blog.colasoft.com/wp-content/uploads/2009/06/detect-email-worm-ss1.gif" medium="image">
			<media:title type="html">Click to View Large</media:title>
		</media:content>

		<media:content url="http://blog.colasoft.com/wp-content/uploads/2009/06/detect-email-worm-ss2.jpg" medium="image">
			<media:title type="html">SMTP Events in Application Layer</media:title>
		</media:content>

		<media:content url="http://blog.colasoft.com/wp-content/uploads/2009/06/detect-email-worm-ss3.gif" medium="image">
			<media:title type="html">Click to view large</media:title>
		</media:content>

		<media:content url="http://blog.colasoft.com/wp-content/uploads/2009/06/detect-email-worm-ss4.jpg" medium="image">
			<media:title type="html">View Email Logs in &#34;Logs&#34; Tab</media:title>
		</media:content>
	</item>
		<item>
		<title>Recommend 5 Nice FREE Network Analysis Tools to Network Admins</title>
		<link>http://packetsniffer.wordpress.com/2009/06/23/recommend-5-nice-free-network-analysis-tools-to-network-admins/</link>
		<comments>http://packetsniffer.wordpress.com/2009/06/23/recommend-5-nice-free-network-analysis-tools-to-network-admins/#comments</comments>
		<pubDate>Tue, 23 Jun 2009 10:28:52 +0000</pubDate>
		<dc:creator>K.Zhou</dc:creator>
				<category><![CDATA[articles]]></category>
		<category><![CDATA[colasoft]]></category>
		<category><![CDATA[MAC Scanner Pro]]></category>
		<category><![CDATA[network analyzer]]></category>

		<guid isPermaLink="false">http://packetsniffer.wordpress.com/?p=37</guid>
		<description><![CDATA[Colasoft, with its all-in-one &#38; easy-to-use network analyzer -Capsa, has been known and recognized in network analysis industry. Today let me recommend 5 nice Colasoft network analysis tools to all network administrators, the tools are totally free and very simple but helpful. Colasoft MAC Scanner Pro List MAC addresses and IP addresses in your local [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=packetsniffer.wordpress.com&amp;blog=7217633&amp;post=37&amp;subd=packetsniffer&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Colasoft, with its all-in-one &amp; easy-to-use <a href="http://www.colasoft.com/?prid=03060003">network analyzer</a> -Capsa, has been known and recognized in network analysis industry. Today let me <a href="http://topnetworksniffers.blogspot.com/2009/06/recommend-5-nice-free-network-analysis.html">recommend 5 nice Colasoft network analysis tools</a> to all network administrators, the tools are totally free and very simple but helpful.</p>
<ul>
<li><a href="http://www.colasoft.com/mac_scanner/index.php?act=recommend"><strong>Colasoft MAC Scanner Pro </strong>
<p></a><a href="http://www.colasoft.com/mac_scanner/index.php?act=recommend"><img style="float:right;width:182px;height:232px;margin:0 0 10px 10px;" src="http://2.bp.blogspot.com/_LCrZaQE-Vo8/SkCXP3SQI5I/AAAAAAAAFEo/yRjW1QtfeuY/s400/get_mac_scanner_ad.jpg" border="0" alt="Colasoft MAC Scanner Pro" /></a><br />
List MAC addresses and IP addresses in your local subnet in seconds. Network administration will never become efficient before you know exactly who is the user and where is the computer. MAC Scanner Pro will do it for you.</p>
<p>Core Values:</p>
<p>.Scan MAC addresses and IP addresses<br />
.Save Scan Results into database for future reference and network maintenance.<br />
.Add attributes (such as users name and physical location of the host) to scan results and save in database.<br />
.Automatically compares new MAC scan results with database records and notifies difference and new records (illegal access).<br />
.Print and Print Review MAC Scan Results</p>
<p><strong>Special Notice:</strong></p>
<p>Colasoft is launching a campaign this month,<strong> you can get a license key of MAC Scanner Pro edition for free as long as you recommend a friend to download MAC Scanner free editon successfully</strong>.</p>
<p>Find out more information about this ,please go to http://www.colasoft.com/mac_scanner/index.php?act=recommend.</li>
<li><strong>Colasoft Ping Tool</strong><br />
Colasoft Ping Tool is powerful in supporting to ping multiple IP addresses simultaneously and comparing response time in a graphic chart. Users can view historical charts and save the charts to a *.bmp file. With this build-in tool, users are able to ping the IP addresses of captured packets in a protocol analyzer (e.g. Colasoft Capsa) conveniently, including resource IP, destination IP or both.</li>
<li><strong>Colasoft Packet Builder</strong><br />
Colasoft Packet Builder enables creating custom network packets; users can use this tool to check their network protection against attacks and intruders.Colasoft Packet Builder includes a very powerful editing feature. Besides common HEX editing raw data, it features a Decoding Editor allowing users to edit specific protocol field values much easier.</li>
<li><strong>Colasoft Packet Player </strong><strong><br />
</strong>Colasoft Packet Player is a packet replayer which allows users to open captured packet trace files and play them back in the network. It supports many packet trace file formats created by sniffer softwares such as Colasoft Capsa, Ethereal, Network General Sniffer and WildPackets EtherPeek/OmniPeek, etc.</p>
<p>Except sending packet files in original interval between loops, Colasoft Packet Player also supports sending packet files in burst mode and defining the delay between loops if the loop count is more than one.</li>
</ul>
<br />Posted in articles Tagged: colasoft, MAC Scanner Pro, network analyzer <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/packetsniffer.wordpress.com/37/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/packetsniffer.wordpress.com/37/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/packetsniffer.wordpress.com/37/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/packetsniffer.wordpress.com/37/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/packetsniffer.wordpress.com/37/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/packetsniffer.wordpress.com/37/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/packetsniffer.wordpress.com/37/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/packetsniffer.wordpress.com/37/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/packetsniffer.wordpress.com/37/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/packetsniffer.wordpress.com/37/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/packetsniffer.wordpress.com/37/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/packetsniffer.wordpress.com/37/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/packetsniffer.wordpress.com/37/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/packetsniffer.wordpress.com/37/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=packetsniffer.wordpress.com&amp;blog=7217633&amp;post=37&amp;subd=packetsniffer&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://packetsniffer.wordpress.com/2009/06/23/recommend-5-nice-free-network-analysis-tools-to-network-admins/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/874a69b7038dc9a24ed7f38d8b110954?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">K.Zhou</media:title>
		</media:content>

		<media:content url="http://2.bp.blogspot.com/_LCrZaQE-Vo8/SkCXP3SQI5I/AAAAAAAAFEo/yRjW1QtfeuY/s400/get_mac_scanner_ad.jpg" medium="image">
			<media:title type="html">Colasoft MAC Scanner Pro</media:title>
		</media:content>
	</item>
		<item>
		<title>14 Tips to Protect Your Organization&#8217;s Network</title>
		<link>http://packetsniffer.wordpress.com/2009/06/17/14-tips-to-protect-your-organizations-network/</link>
		<comments>http://packetsniffer.wordpress.com/2009/06/17/14-tips-to-protect-your-organizations-network/#comments</comments>
		<pubDate>Wed, 17 Jun 2009 10:29:44 +0000</pubDate>
		<dc:creator>K.Zhou</dc:creator>
				<category><![CDATA[articles]]></category>

		<guid isPermaLink="false">http://packetsniffer.wordpress.com/2009/06/17/14-tips-to-protect-your-organizations-network/</guid>
		<description><![CDATA[Network security is an infinitely complex and dynamic subject, implementing these simple measures will go a long way to protecting your Organization&#8217;s LAN. 1, Run Network Analyzer Frequently.Recommend an easy-to-use network analyzer, Colasoft Capsa. 2, Disable drives isable floppy drive access, USB ports and serial ports on networked computers. 3, Restrict Permissions: Windows 2000 and [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=packetsniffer.wordpress.com&amp;blog=7217633&amp;post=35&amp;subd=packetsniffer&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.colasoft.com/?prid=00060003"><img style="float:right;width:125px;height:125px;margin:0 0 10px 10px;" alt="Colasoft Network Analyzer" src="http://3.bp.blogspot.com/_LCrZaQE-Vo8/SjdshqFnnLI/AAAAAAAAFEg/WgJ38NcmnmM/s400/125_125_2.gif" border="0"></a></p>
<p>Network security is an infinitely complex and dynamic subject, implementing these <a href="http://topnetworksniffers.blogspot.com/2009/06/14-tips-to-protect-your-organizations.html">simple measures </a>will go a long way to protecting your Organization&#8217;s LAN.</p>
<p>1,<b> Run <a href="http://www.colasoft.com/?prid=00060003">Network Analyzer</a> Frequently.</b>Recommend an easy-to-use network analyzer, <a href="http://www.colasoft.com/capsa/?prid=00060003">Colasoft Capsa</a>. </p>
<p>2, <b>Disable drives</b> <img src='http://s0.wp.com/wp-includes/images/smilies/icon_biggrin.gif' alt=':D' class='wp-smiley' /> isable floppy drive access, USB ports and serial ports on networked computers.</p>
<p>3,<b> Restrict Permissions</b>: Windows 2000 and 2003 server allow you to set permissions so that users can&#8217;t run downloaded &#8216;exe&#8217; or other executable files. </p>
<p>4,<b> Block Instant Messenger</b>:IM and its cousins, ICQ and Yahoo Messenger, sends messages and attachments out to a server and then back to its clients. You lose control when this happens.</p>
<p>5,<b> Password Protect Your BIOS</b>:A BIOS without an administrator password is an invitation to mischief. </p>
<p>6,<b> Run AV Software</b>: Run anti-virus software on all your computers.</p>
<p>7,<b> Build Your Defenses</b>: Install a firewall or a proxy server.</p>
<p>8,<b> Beware Of Attachments From Unknown, Untrusted Sources</b> <img src='http://s0.wp.com/wp-includes/images/smilies/icon_biggrin.gif' alt=':D' class='wp-smiley' /> o not open attachments to email unless you trust the sender.</p>
<p>9,<b> Monitor Your Ports</b>:Install a port monitor to prevent your ports from being scanned.</p>
<p>10,<b> Encrypt Wireless Access</b>.</p>
<p>11,<b> Keep Back Office Systems Off The Organization Network</b></p>
<p>12,<b> Require passwords to be changed frequently</b></p>
<p>13,<b> Use CTRL+ALT+DEL to logon</b></p>
<p>14,<b> Keep your networking skills up to date.</b></p>
<br />Posted in articles  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/packetsniffer.wordpress.com/35/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/packetsniffer.wordpress.com/35/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/packetsniffer.wordpress.com/35/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/packetsniffer.wordpress.com/35/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/packetsniffer.wordpress.com/35/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/packetsniffer.wordpress.com/35/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/packetsniffer.wordpress.com/35/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/packetsniffer.wordpress.com/35/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/packetsniffer.wordpress.com/35/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/packetsniffer.wordpress.com/35/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/packetsniffer.wordpress.com/35/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/packetsniffer.wordpress.com/35/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/packetsniffer.wordpress.com/35/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/packetsniffer.wordpress.com/35/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=packetsniffer.wordpress.com&amp;blog=7217633&amp;post=35&amp;subd=packetsniffer&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://packetsniffer.wordpress.com/2009/06/17/14-tips-to-protect-your-organizations-network/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/874a69b7038dc9a24ed7f38d8b110954?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">K.Zhou</media:title>
		</media:content>

		<media:content url="http://3.bp.blogspot.com/_LCrZaQE-Vo8/SjdshqFnnLI/AAAAAAAAFEg/WgJ38NcmnmM/s400/125_125_2.gif" medium="image">
			<media:title type="html">Colasoft Network Analyzer</media:title>
		</media:content>
	</item>
		<item>
		<title>How to detect the network malfunction via the end-point view with Colasoft Packet Sniffer</title>
		<link>http://packetsniffer.wordpress.com/2009/06/11/how-to-detect-the-network-malfunction-via-the-end-point-view-with-colasoft-packet-sniffer/</link>
		<comments>http://packetsniffer.wordpress.com/2009/06/11/how-to-detect-the-network-malfunction-via-the-end-point-view-with-colasoft-packet-sniffer/#comments</comments>
		<pubDate>Thu, 11 Jun 2009 07:33:20 +0000</pubDate>
		<dc:creator>K.Zhou</dc:creator>
				<category><![CDATA[howto]]></category>
		<category><![CDATA[end point]]></category>
		<category><![CDATA[large traffic]]></category>
		<category><![CDATA[network malfunction]]></category>
		<category><![CDATA[traffic analytics]]></category>

		<guid isPermaLink="false">http://packetsniffer.wordpress.com/?p=33</guid>
		<description><![CDATA[`Brief introduction about the Endpoint view in Colasoft Packet Sniffer It is divided into Mac endpoint and IP endpoint in Colasoft 6.9. Users can detect the IP/Mac endpoint in the largest traffic in a short time by the endpoint analytics. And also, The system supply clear statistics of traffic ranking(Top 5 IP endpoint under HTTP [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=packetsniffer.wordpress.com&amp;blog=7217633&amp;post=33&amp;subd=packetsniffer&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p style="text-align:left;"><strong>`Brief introduction about the Endpoint view in <a title="Colasoft Packet Sniffer 6.9" href="http://www.colasoft.com/capsa/?prid=00060001" target="_self">Colasoft Packet Sniffer</a></strong><br />
It is divided into Mac endpoint and IP endpoint in Colasoft 6.9. Users can detect the IP/Mac endpoint in the largest traffic in a short time by the endpoint analytics. And also, The system supply clear statistics of traffic ranking(Top 5 IP endpoint under HTTP protocol).</p>
<p>In the Endpoint view, we can see the specific traffic situation clearly of all the hosts(Including a network segment, a Mac address, and a IP address) in the currently network. Like the hosts with the largest total traffic, hosts that send/receive the largest traffic, hosts that send/receive the most packets, etc.</p>
<p>According to this information, we can confirm that if there are Broadcast / multicast storm, and help users detecting the network malfunctions about network slow, network disconnect, worm attack, DOS attack, and all the malfunctions besides.</p>
<p><strong>Application case study</strong><br />
Once we meet the network malfunction or attack, what the most important thing we should pay attention to, is the currently total network traffic, sent/received traffic, network connection etc, to get a clear direction to find the problem. And, all of this information are included in the endpoint view in Colasoft Packet Sniffer 6.9(figure 1):</p>
<div id="attachment_31" class="wp-caption alignnone" style="width: 561px"><img class="size-full wp-image-31" title="endponit_view_1" src="http://protocolanalyzer.files.wordpress.com/2009/06/untitled-11.jpg?w=500" alt="endponit_view_1"   /><p class="wp-caption-text">endponit_view_1</p></div>
<p>In figure 1 we can make a compositor on the total traffic, network connection and other related information, to find and locate the host with largest traffic or most connections in the network. For example, at present, the host with the largest network connection is  , we can locate the host, then check the related connection information(figure 2):</p>
<p>The connection information shown as the figure 2, we can know that  has set up a large amount of TCP connection with other hosts, and the destination address and destination endpoint are indefinite, and Many of the state is to connect client requests synchronization.</p>
<p style="text-align:left;">
<div id="attachment_32" class="wp-caption alignnone" style="width: 560px"><img class="size-full wp-image-32" title="endpoint_view_2" src="http://protocolanalyzer.files.wordpress.com/2009/06/untitled-2.jpg?w=500" alt="endpoint_view_2"   /><p class="wp-caption-text">endpoint_view_2</p></div>
<p style="text-align:left;">Next, check the  TCP packets, we can check them out in Summary and Graphic as follows:</p>
<p style="text-align:left;">
<div id="attachment_33" class="wp-caption alignnone" style="width: 561px"><img class="size-full wp-image-33" title="endpoint_view_3" src="http://protocolanalyzer.files.wordpress.com/2009/06/untitled-3.jpg?w=500" alt="endpoint_view_3"   /><p class="wp-caption-text">endpoint_view_3</p></div>
<div id="attachment_34" class="wp-caption alignnone" style="width: 556px"><img class="size-full wp-image-34" title="endpoint_view_4" src="http://protocolanalyzer.files.wordpress.com/2009/06/untitled-4.jpg?w=500" alt="endpoint_view_4"   /><p class="wp-caption-text">endpoint_view_4</p></div>
<p style="text-align:left;">In the TCP packets information, we found  has sent   TCP synchronization packet, and the TCP FIN packets and TCP Reset packets are, this is deviant in the network.</p>
<p style="text-align:left;">Please go to the <a title="Capsa FAQ" href="http://www.colasoft.com/capsa/network_solution.php?prid=00060001" target="_blank">Colasoft Official FAQ page</a> for more &#8220;How-tos&#8221;</p>
<br />Posted in howto Tagged: end point, large traffic, network malfunction, traffic analytics <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/packetsniffer.wordpress.com/33/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/packetsniffer.wordpress.com/33/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/packetsniffer.wordpress.com/33/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/packetsniffer.wordpress.com/33/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/packetsniffer.wordpress.com/33/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/packetsniffer.wordpress.com/33/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/packetsniffer.wordpress.com/33/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/packetsniffer.wordpress.com/33/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/packetsniffer.wordpress.com/33/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/packetsniffer.wordpress.com/33/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/packetsniffer.wordpress.com/33/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/packetsniffer.wordpress.com/33/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/packetsniffer.wordpress.com/33/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/packetsniffer.wordpress.com/33/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=packetsniffer.wordpress.com&amp;blog=7217633&amp;post=33&amp;subd=packetsniffer&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://packetsniffer.wordpress.com/2009/06/11/how-to-detect-the-network-malfunction-via-the-end-point-view-with-colasoft-packet-sniffer/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/874a69b7038dc9a24ed7f38d8b110954?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">K.Zhou</media:title>
		</media:content>

		<media:content url="http://protocolanalyzer.files.wordpress.com/2009/06/untitled-11.jpg" medium="image">
			<media:title type="html">endponit_view_1</media:title>
		</media:content>

		<media:content url="http://protocolanalyzer.files.wordpress.com/2009/06/untitled-2.jpg" medium="image">
			<media:title type="html">endpoint_view_2</media:title>
		</media:content>

		<media:content url="http://protocolanalyzer.files.wordpress.com/2009/06/untitled-3.jpg" medium="image">
			<media:title type="html">endpoint_view_3</media:title>
		</media:content>

		<media:content url="http://protocolanalyzer.files.wordpress.com/2009/06/untitled-4.jpg" medium="image">
			<media:title type="html">endpoint_view_4</media:title>
		</media:content>
	</item>
		<item>
		<title>How to Track BitTorrent User in Network with Colasoft Packet Sniffer</title>
		<link>http://packetsniffer.wordpress.com/2009/06/10/how-to-track-bittorrent-user-in-network-with-colasoft-packet-sniffer/</link>
		<comments>http://packetsniffer.wordpress.com/2009/06/10/how-to-track-bittorrent-user-in-network-with-colasoft-packet-sniffer/#comments</comments>
		<pubDate>Wed, 10 Jun 2009 10:04:27 +0000</pubDate>
		<dc:creator>K.Zhou</dc:creator>
				<category><![CDATA[howto]]></category>
		<category><![CDATA[bandwidth]]></category>
		<category><![CDATA[BitTorrent]]></category>
		<category><![CDATA[traffic]]></category>

		<guid isPermaLink="false">http://packetsniffer.wordpress.com/?p=31</guid>
		<description><![CDATA[BitTorrent Consumes Big Bandwidth Based on the working principle of BitTorrent protocol, if somebody is downloading big files with BitTorrent software, it will be a disaster for other users who need bandwidth for business operations as the user will consume large amount of bandwidth, thus causing long time network slowness, intermittence, even disconnections; because meantime [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=packetsniffer.wordpress.com&amp;blog=7217633&amp;post=31&amp;subd=packetsniffer&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><strong>BitTorrent Consumes Big Bandwidth</strong><br />
Based on the working principle of BitTorrent protocol, if somebody is downloading big files with BitTorrent software, it will be a disaster for other users who need bandwidth for business operations as the user will consume large amount of bandwidth, thus causing long time network slowness, intermittence, even disconnections; because meantime the user downloading files from others, others are downloading files from him.</p>
<p>So it is necessary for IT administrators to track BitTorrent user at first place to regain network bandwidth for business operations. Blocking BitTorrent protocol can be one way; this article is to discuss how to how to <a title="how to track BitTorrent user" href="http://blog.colasoft.com/how-to-track-bittorrent-user-in-network-with-colasoft-packet-sniffer/">track BitTorrent user</a> with <a title="colasoft packet sniffer" href="http://www.colasoft.com/capsa/?prid=00060003" target="_blank">Colasoft Packet Sniffer</a>.</p>
<p><strong>How to Track BitTorrent User?</strong></p>
<p><em>&gt;Step1. <a title="Download Colasoft Packet Sniffer Free Trial" href="http://www.colasoft.com/download/products/capsa.php?prid=00060003" target="_blank">Download a free trial</a> and <a title="implement packet sniffer correct" href="http://www.colasoft.com/support/installation.php?prid=00060003" target="_blank">implement it correctly</a></em></p>
<p><em>&gt;Step2. Launch a project and start capturing data</em></p>
<p><em>&gt;Step3. Find BitTorrent Protocol in the &#8220;Protocols&#8221; Tab</em></p>
<div id="attachment_190" class="wp-caption aligncenter" style="width: 490px"><a href="http://blog.colasoft.com/wp-content/uploads/2009/06/track-bittorrent-user-ss1.jpg"><img class="size-full wp-image-190" title="Track BitTorrent User Screenshot 1" src="http://blog.colasoft.com/wp-content/uploads/2009/06/track-bittorrent-user-ss1.jpg" alt="Track BitTorrent User Screenshot 1" width="480" height="359" /></a><p class="wp-caption-text">Track BitTorrent User Screenshot 1</p></div>
<p><em>&gt;Setp4. Locate BitTorrent Protocol in the &#8220;Explorer&#8221;</em><br />
Use the &#8220;Locate&#8221; function to locate BitTorrent protocol in the &#8220;Explorer&#8221; to analyze dedicated data.</p>
<div id="attachment_191" class="wp-caption aligncenter" style="width: 490px"><a href="http://blog.colasoft.com/wp-content/uploads/2009/06/track-bittorrent-user-ss2.jpg"><img class="size-full wp-image-191" title="Track BitTorrent User Screenshot 2" src="http://blog.colasoft.com/wp-content/uploads/2009/06/track-bittorrent-user-ss2.jpg" alt="Track BitTorrent User Screenshot 2" width="480" height="359" /></a><p class="wp-caption-text">Track BitTorrent User Screenshot 2</p></div>
<p><em>&gt;Step5. Track BitTorrent User in LAN in the &#8220;Endpoint&#8221; Tab</em><br />
This is the way how to track the BitTorrent user in our network and who are connected with him. There is a lot more we can see from this tab, such as how much data has been downloaded and uploaded via BitTorrent protocol.</p>
<div id="attachment_192" class="wp-caption aligncenter" style="width: 490px"><a href="http://blog.colasoft.com/wp-content/uploads/2009/06/track-bittorrent-user-ss3.jpg"><img class="size-full wp-image-192" title="Track BitTorrent User Screenshot 3" src="http://blog.colasoft.com/wp-content/uploads/2009/06/track-bittorrent-user-ss3.jpg" alt="Track BitTorrent User Screenshot 3" width="480" height="359" /></a><p class="wp-caption-text">Track BitTorrent User Screenshot 3</p></div>
<p><strong>View how many connections have been built in &#8220;Matrix&#8221;</strong><br />
You’ll be shocked to see how many connections have been built in the &#8220;Matrix&#8221; Tab. In this case, we can see this user has built more than 1000 connections with other hosts.</p>
<div id="attachment_193" class="wp-caption aligncenter" style="width: 490px"><a href="http://blog.colasoft.com/wp-content/uploads/2009/06/track-bittorrent-user-ss4.jpg"><img class="size-full wp-image-193" title="Track BitTorrent User Screenshot 4" src="http://blog.colasoft.com/wp-content/uploads/2009/06/track-bittorrent-user-ss4.jpg" alt="Track BitTorrent User Screenshot 4" width="480" height="359" /></a><p class="wp-caption-text">Track BitTorrent User Screenshot 4</p></div>
<p><strong>About BitTorrent</strong><br />
BitTorrent is a peer-to-peer file sharing protocol used for distributing large amounts of data. BitTorrent is one of the most common protocols for transferring large files.</p>
<p>The protocol works when a file provider initially makes his/her file (or group of files) available to the network. This is called a seed and allows others, named peers, to connect and download the file. Each peer that downloads a part of the data makes it available to other peers to download. After the file is successfully downloaded by a peer, many continue to make the data available, becoming additional seeds. This distributed nature of BitTorrent leads to a viral spreading of a file throughout peers. As more peers join the swarm, the likelihood of a successful download increases. Relative to standard Internet hosting, this provides a significant reduction in the original distributor&#8217;s hardware and bandwidth resource costs. It also provides redundancy against system problems and reduces dependence on the original distributor.</p>
<p><strong>Next Step</strong><br />
<a title="Download Colasoft Packet Sniffer Free Trial" href="http://www.colasoft.com/download/products/capsa.php?prid=00060003" target="_blank">&gt;&gt;Download a Free Trial</a></p>
<br />Posted in howto Tagged: bandwidth, BitTorrent, howto, traffic <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/packetsniffer.wordpress.com/31/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/packetsniffer.wordpress.com/31/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/packetsniffer.wordpress.com/31/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/packetsniffer.wordpress.com/31/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/packetsniffer.wordpress.com/31/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/packetsniffer.wordpress.com/31/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/packetsniffer.wordpress.com/31/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/packetsniffer.wordpress.com/31/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/packetsniffer.wordpress.com/31/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/packetsniffer.wordpress.com/31/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/packetsniffer.wordpress.com/31/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/packetsniffer.wordpress.com/31/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/packetsniffer.wordpress.com/31/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/packetsniffer.wordpress.com/31/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=packetsniffer.wordpress.com&amp;blog=7217633&amp;post=31&amp;subd=packetsniffer&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://packetsniffer.wordpress.com/2009/06/10/how-to-track-bittorrent-user-in-network-with-colasoft-packet-sniffer/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/874a69b7038dc9a24ed7f38d8b110954?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">K.Zhou</media:title>
		</media:content>

		<media:content url="http://blog.colasoft.com/wp-content/uploads/2009/06/track-bittorrent-user-ss1.jpg" medium="image">
			<media:title type="html">Track BitTorrent User Screenshot 1</media:title>
		</media:content>

		<media:content url="http://blog.colasoft.com/wp-content/uploads/2009/06/track-bittorrent-user-ss2.jpg" medium="image">
			<media:title type="html">Track BitTorrent User Screenshot 2</media:title>
		</media:content>

		<media:content url="http://blog.colasoft.com/wp-content/uploads/2009/06/track-bittorrent-user-ss3.jpg" medium="image">
			<media:title type="html">Track BitTorrent User Screenshot 3</media:title>
		</media:content>

		<media:content url="http://blog.colasoft.com/wp-content/uploads/2009/06/track-bittorrent-user-ss4.jpg" medium="image">
			<media:title type="html">Track BitTorrent User Screenshot 4</media:title>
		</media:content>
	</item>
		<item>
		<title>How to Monitor MSN Chat with Free Unipeek MSN Monitor</title>
		<link>http://packetsniffer.wordpress.com/2009/06/08/how-to-monitor-msn-chat-with-free-unipeek-msn-monitor/</link>
		<comments>http://packetsniffer.wordpress.com/2009/06/08/how-to-monitor-msn-chat-with-free-unipeek-msn-monitor/#comments</comments>
		<pubDate>Mon, 08 Jun 2009 08:00:46 +0000</pubDate>
		<dc:creator>K.Zhou</dc:creator>
				<category><![CDATA[howto]]></category>

		<guid isPermaLink="false">http://packetsniffer.wordpress.com/2009/06/08/how-to-monitor-msn-chat-with-free-unipeek-msn-monitor/</guid>
		<description><![CDATA[For some purposes we want to monitor MSN chat around the network, for example, parents want to monitor MSN chat of their kids to ensure their safety; bosses want to monitor MSN chat of employees for company assets security and to improve work efficiency by minimizing none-business chat during working hours. You may still remember [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=packetsniffer.wordpress.com&amp;blog=7217633&amp;post=30&amp;subd=packetsniffer&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>For some purposes we want to monitor MSN chat around the network, for example, parents want to monitor MSN chat of their kids to ensure their safety; bosses want to monitor MSN chat of employees for company assets security and to improve work efficiency by minimizing none-business chat during working hours. You may still remember Colasoft MSN Monitor, now it is called <a title="Unipeek MSN Monitor" href="http://www.msn-monitor.com/index.php" target="_blank">Unipeek MSN Monitor</a> and it is distributed <strong>completely Free</strong> for none commercial users.</p>
<p>
Now let’s see how we can <a title="How to Monitor MSN Chat" href="http://blog.colasoft.com/how-to-monitor-msn-chat-with-free-unipeek-msn-monitor/" target="_blank">monitor MSN chat</a> with Unipeek MSN Monitor, the free tool.</p>
<p>
<strong>Step1. Download Unipeek MSN Monitor</strong></p>
<p>
<a title="Download Unipeek MSN Monitor" href="http://www.msn-monitor.com/download_msn_monitor.php" target="_blank">Download Unipeek MSN Monitor</a>, the free edition; from the website. As a matter of fact there is no function difference between Unipeek MSN Monitor the free edition and the commercial edition. The only difference is Unipeek MSN Monitor Free Edition only supports 10 MSN accounts maximum, but quite enough for family users.</p>
<p>
<strong>Step2. Install and Deploy Unipeek MSN Monitor</strong></p>
<p>
The installation is quick and simple, just click “next” all the way to complete the installation. But the deployment is somewhat different. As Unipeek MSN Monitor is designed based on <a title="Colasoft Network Analyzer Software for Windows" href="http://www.colasoft.com/prid=00060003" target="_blank">Colasoft</a>’s packet capturing technology, so it has to be <a title="how to deploy packet sniffer" href="http://www.colasoft.com/support/installation.php?prid=00060003" target="_blank">deployed properly</a> like a packet sniffer if you want to monitor all MSN chat around the network. Of course, you don’t have to do it if you only want to monitor MSN chat of a single computer. To monitor multiple computers, you can install multiple copies.</p>
<p>
<a href="http://blog.colasoft.com/wp-content/uploads/2009/06/monitor-msn-chat-ss1.jpg"><img class="size-full wp-image-179" title="How to Monitor MSN Chat Screenshot 1" src="http://blog.colasoft.com/wp-content/uploads/2009/06/monitor-msn-chat-ss1.jpg" alt="How to Monitor MSN Chat Screenshot 1" width="526" height="376" /></a></p>
<p>
<strong>Setp3. Run it and Start Monitor MSN Chat</strong></p>
<p>
After proper installation and deployment, we can start monitoring MSN chat right away.</p>
<p>
<a href="http://blog.colasoft.com/wp-content/uploads/2009/06/monitor-msn-chat-ss2.jpg"><img class="size-full wp-image-180" title="How to Monitor MSN Chat Screenshot 2" src="http://blog.colasoft.com/wp-content/uploads/2009/06/monitor-msn-chat-ss2.jpg" alt="How to Monitor MSN Chat Screenshot 2" width="544" height="408" /></a></p>
<p>
<strong>About Unipeek MSN Monitor</strong></p>
<p>Unipeek MSN Monitor (MSN sniffer) is Free MSN monitoring software for MSN chat monitoring and MSN message archiving. Based on Colasoft&#8217;s packet analysis technology, Unipeek MSN Monitor is able to deliver the most accurate MSN monitoring statistics, and automatically record data for future reference. You need only install Unipeek MSN Monitor once to monitor all MSN chats over the local network.</p>
<p>
<strong>Key Features include:</strong></p>
<p>• Real-time and 24/7 MSN chat monitoring</p>
<p>• Automatically archive MSN messages for future reference</p>
<p>• Export messages of a custom time range</p>
<p>• Customize MSN account list to be monitored</p>
<p>• Unique Conversation Matrix showing account relations</p>
<p>• Support emotion icons, message font size and color.</p>
<p>
<strong>Download Now</strong></p>
<p><a title="Download Unipeek MSN Monitor" href="http://www.msn-monitor.com/download_msn_monitor.php" target="_blank">Download Unipeek MSN Monitor</a></p>
<br />Posted in howto  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/packetsniffer.wordpress.com/30/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/packetsniffer.wordpress.com/30/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/packetsniffer.wordpress.com/30/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/packetsniffer.wordpress.com/30/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/packetsniffer.wordpress.com/30/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/packetsniffer.wordpress.com/30/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/packetsniffer.wordpress.com/30/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/packetsniffer.wordpress.com/30/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/packetsniffer.wordpress.com/30/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/packetsniffer.wordpress.com/30/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/packetsniffer.wordpress.com/30/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/packetsniffer.wordpress.com/30/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/packetsniffer.wordpress.com/30/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/packetsniffer.wordpress.com/30/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=packetsniffer.wordpress.com&amp;blog=7217633&amp;post=30&amp;subd=packetsniffer&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://packetsniffer.wordpress.com/2009/06/08/how-to-monitor-msn-chat-with-free-unipeek-msn-monitor/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/874a69b7038dc9a24ed7f38d8b110954?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">K.Zhou</media:title>
		</media:content>

		<media:content url="http://blog.colasoft.com/wp-content/uploads/2009/06/monitor-msn-chat-ss1.jpg" medium="image">
			<media:title type="html">How to Monitor MSN Chat Screenshot 1</media:title>
		</media:content>

		<media:content url="http://blog.colasoft.com/wp-content/uploads/2009/06/monitor-msn-chat-ss2.jpg" medium="image">
			<media:title type="html">How to Monitor MSN Chat Screenshot 2</media:title>
		</media:content>
	</item>
		<item>
		<title>How Public Key Encryption Can Make Email More Private</title>
		<link>http://packetsniffer.wordpress.com/2009/05/07/how-public-key-encryption-can-make-email-more-private/</link>
		<comments>http://packetsniffer.wordpress.com/2009/05/07/how-public-key-encryption-can-make-email-more-private/#comments</comments>
		<pubDate>Thu, 07 May 2009 07:20:01 +0000</pubDate>
		<dc:creator>K.Zhou</dc:creator>
				<category><![CDATA[articles]]></category>
		<category><![CDATA[Email Privacy]]></category>
		<category><![CDATA[packet sniffer]]></category>
		<category><![CDATA[Public Key Encryption]]></category>

		<guid isPermaLink="false">http://packetsniffer.wordpress.com/?p=28</guid>
		<description><![CDATA[When you are entering your credit card number, talking with your lover, chatting with your business partners, can you imagine what will happen if everything you are doing is exposing to everybody? Yes, it is unbelievable but it is quite true, hackers can easily obtain your private information like crecit card number, email logs, chat [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=packetsniffer.wordpress.com&amp;blog=7217633&amp;post=28&amp;subd=packetsniffer&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><a href="http://3.bp.blogspot.com/_LCrZaQE-Vo8/SgKFANEmBlI/AAAAAAAAFC8/0lfM82JogFk/s1600-h/colasoft+network+sniffer+3.jpg"><img style="float:right;cursor:pointer;width:320px;height:211px;margin:0 0 10px 10px;" src="http://3.bp.blogspot.com/_LCrZaQE-Vo8/SgKFANEmBlI/AAAAAAAAFC8/0lfM82JogFk/s320/colasoft+network+sniffer+3.jpg" alt="colasoft packet sniffer" border="0" /></a>When you are entering your credit  card number, talking with your lover, chatting with your business partners, can you imagine what will happen if everything you are doing is exposing to everybody?</p>
<p> Yes, it is unbelievable but it is quite true, hackers can easily obtain your private information like crecit card number, email logs, chat logs  etc. by using some network analytic tools, such as <a href="http://www.colasoft.com/capsa/?prid=00060003">Colasoft Packet Sniffer</a>.</p>
<p><strong>Protect Your Email Secure And Safe<br />
</strong><br />
So if we are helpless with our private  information from being monitored or stolen? Of course not, to keep data sent  via email private, you just need to encrypt it, as only unencrypted content can  be monitored by network analytic tools like <a href="http://www.colasoft.com/?prid=00060003">Network Analyzer</a>. Only the targeted  recipient will be able to decipher the message.  </p>
<p><strong>How to Encrypt Your Message?</strong></p>
<p>Public key  encryption is a special case of encryption, it operates using a combination of  two keys: one is a private key, the other is a public key which together form a  pair of keys. The private key is kept secret on your computer since it  is used for decryption, the public key, which is used for encryption, is  given to anybody who wants to send encrypted mail to you. </p>
<p><strong>How Public Key works?</strong></p>
<p>When you  send public-key encrypted mail, the sender&#8217;s encryption  program uses your public key in combination with the sender&#8217;s private key to  encipher the message. When you  receive public-key encrypted mail, you need to decipher  it.<a href="http://1.bp.blogspot.com/_LCrZaQE-Vo8/SgKDDsVOfxI/AAAAAAAAFC0/5K455Z_NpyE/s1600-h/colasoft+network+sniffer+2.jpg"><img style="float:left;cursor:pointer;width:234px;height:320px;margin:0 10px 10px 0;" src="http://1.bp.blogspot.com/_LCrZaQE-Vo8/SgKDDsVOfxI/AAAAAAAAFC0/5K455Z_NpyE/s320/colasoft+network+sniffer+2.jpg" alt="colasoft packet sniffer" border="0" /></a><br />
Decryption of a message enciphered with a  public key can only be done with the matching private key. This is why the two  keys form a pair, and it is also why it is so important to keep the private key  safe and to make sure it never gets into the wrong hands (or in any hands other  than yours). </p>
<p><strong>Why the Integrity of the Public Key is  Essential</strong></p>
<p>Another crucial point with public key  encryption is the distribution of the public key.<br />
Public key encryption is only safe and  secure if the sender of an enciphered message can be sure that the public key  used for encryption belongs to the recipient.<br />
A third party can produce a public key with  the recipient&#8217;s name and give it to the sender, who uses the key to send important  information in encrypted form. The enciphered message is intercepted by the  third party, and since it was produced using their public key they have no  problem deciphering it with their private key.<br />
This is why it is mandatory that a public  key is either given to you personally or authorized by a certificate authority. </p>
<br />Posted in articles Tagged: Email Privacy, packet sniffer, Public Key Encryption <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/packetsniffer.wordpress.com/28/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/packetsniffer.wordpress.com/28/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/packetsniffer.wordpress.com/28/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/packetsniffer.wordpress.com/28/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/packetsniffer.wordpress.com/28/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/packetsniffer.wordpress.com/28/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/packetsniffer.wordpress.com/28/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/packetsniffer.wordpress.com/28/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/packetsniffer.wordpress.com/28/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/packetsniffer.wordpress.com/28/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/packetsniffer.wordpress.com/28/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/packetsniffer.wordpress.com/28/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/packetsniffer.wordpress.com/28/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/packetsniffer.wordpress.com/28/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=packetsniffer.wordpress.com&amp;blog=7217633&amp;post=28&amp;subd=packetsniffer&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://packetsniffer.wordpress.com/2009/05/07/how-public-key-encryption-can-make-email-more-private/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/874a69b7038dc9a24ed7f38d8b110954?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">K.Zhou</media:title>
		</media:content>

		<media:content url="http://3.bp.blogspot.com/_LCrZaQE-Vo8/SgKFANEmBlI/AAAAAAAAFC8/0lfM82JogFk/s320/colasoft+network+sniffer+3.jpg" medium="image">
			<media:title type="html">colasoft packet sniffer</media:title>
		</media:content>

		<media:content url="http://1.bp.blogspot.com/_LCrZaQE-Vo8/SgKDDsVOfxI/AAAAAAAAFC0/5K455Z_NpyE/s320/colasoft+network+sniffer+2.jpg" medium="image">
			<media:title type="html">colasoft packet sniffer</media:title>
		</media:content>
	</item>
		<item>
		<title>Monitor Your Network Traffic with Colasoft Packet Sniffer</title>
		<link>http://packetsniffer.wordpress.com/2009/05/06/monitor-your-network-traffic-with-colasoft-packet-sniffer/</link>
		<comments>http://packetsniffer.wordpress.com/2009/05/06/monitor-your-network-traffic-with-colasoft-packet-sniffer/#comments</comments>
		<pubDate>Wed, 06 May 2009 10:01:57 +0000</pubDate>
		<dc:creator>K.Zhou</dc:creator>
				<category><![CDATA[howto]]></category>
		<category><![CDATA[monitor]]></category>
		<category><![CDATA[Network]]></category>
		<category><![CDATA[packet sniffer]]></category>
		<category><![CDATA[traffic]]></category>

		<guid isPermaLink="false">http://packetsniffer.wordpress.com/?p=26</guid>
		<description><![CDATA[Importance of Network Monitoring Reading network traffic is essential for system administrators, network engineers, and security analysts. At some point there will be a need to read the network traffic directly instead of monitoring application level details. Examples of situations that might require monitoring network traffic are, auditing network security, debugging network configurations, and analyzing [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=packetsniffer.wordpress.com&amp;blog=7217633&amp;post=26&amp;subd=packetsniffer&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><strong>Importance of Network Monitoring</strong></p>
<p>Reading network traffic is essential for system administrators, network engineers, and security analysts. At some point there will be a need to read the network traffic directly instead of monitoring application level details. Examples of situations that might require monitoring network traffic are, auditing network security, debugging network configurations, and analyzing usage patterns. For this task we use network monitoring software, or packet sniffers, that sniff the traffic your computer is able to see on the network. What exactly your computer can see really depends on how the network is laid out, but the easiest way to figure out what it can see is just start sniffing.</p>
<p>The most common tool to do the job is readily available. One of the most popular and easy – to &#8211; use tool for monitoring network traffic is <a href="http://www.colasoft.com/?prid=00060003">Colasoft Packet Sniffer</a>.</p>
<p><strong>How to Monitor Network Traffic </strong></p>
<p>As a packet sniffer, <a href="http://www.colasoft.com/capsa/?prid=00060003">Capsa</a> make it easy for us to monitor and analyze network traffic in its  intuitive and information-rich tab views. With Capsa&#8217;s network traffic monitor  feature, we can quickly identify network bottleneck and detect network  abnormities. This article is to discuss how we can Monitor Network Traffic with  Capsa&#8217;s network traffic monitor feature.</p>
<p>					<strong>1, Monitor Network Traffic in &#8220;Summary&#8221;					</strong><br />
					<strong>tab					</strong></p>
<p>&#8220;Summary&#8221; is a view that provides general information of the  entire network or the selected node in the &#8220;Explorer&#8221;. In  &#8220;Summary&#8221; we can get a quick view of the total traffic, real-time  traffic, broadcast traffic, multicast traffic and so on. When we switch among  the node from the explorer, corresponding traffic information will be provided.</p>
<p><img src="http://www.colasoft.com/images/screenshots/monitor_network_traffic6.gif" alt="Monitor Network Traffic in Summary" height="481" width="574" />
</p>
<p>(pic 1. monitor-network-traffic-in-summary)
</p>
<p><strong>2, Monitor Network Traffic in &#8220;Endpoints&#8221; tab</strong></p>
<p>In &#8220;Endpoints&#8221; view, we can Monitor Network Traffic  information of each node, both local and remote. With its easy sorting feature  we can easily find out which host is generating or has generated the largest  traffic.</p>
<p><img src="http://www.colasoft.com/images/screenshots/monitor_network_traffic1.gif" alt="Monitor Network Traffic in Endpoints" height="481" width="574" /></p>
<p>(pic 2. monitor-network-traffic-in-endpoints)</p>
<p>                   <strong>3, Monitor Network Traffic in &#8220;Protocols&#8221; tab</strong></p>
<p>&#8220;Protocols&#8221; view will list all protocols applied in network  transmission. In &#8220;Protocols&#8221; view we can Monitor Network Traffic by each protocol. By analyzing network traffic by protocol, we can understand what  applications are using the network bandwidth, for example &#8220;http&#8221;  protocol stands for website browsing, &#8220;pop3&#8243; stands for email, etc.</p>
<p><img src="http://www.colasoft.com/images/screenshots/monitor_network_traffic2.gif" alt="Monitor Network Traffic by Protocol" height="481" width="574" /></p>
<p>(pic 3. monitor-network-traffic-by-protocol)</p>
<p>					<strong>4, Monitor Network Traffic in &#8220;Conversations&#8221; tab</strong></p>
<p>In &#8220;Conversations&#8221; tab we can Monitor Network Traffic by  each conversation and the figure out which conversation has generated the  largest network traffic.</p>
<p><img src="http://www.colasoft.com/images/screenshots/monitor_network_traffic3.gif" alt="Monitor Network Traffic by Conversation" height="481" width="575" /></p>
<p>(pic 4. monitor-network-traffic-by-conversation)</p>
<p>					<strong>5, Monitor Network Traffic in &#8220;Matrix&#8221; tab</strong></p>
<p>&#8220;Matrix&#8221; is a view that visualizes all network connections  and traffic details in one single graph. The weight of the lines between the nodes indicates the traffic volume  and the color indicates the status. As we move the cursor on a specific node,  network traffic details of the node will be provided.</p>
<p><img src="http://www.colasoft.com/images/screenshots/monitor_network_traffic4.gif" alt="Monitor Network Traffic In Matrix" height="481" width="574" /></p>
<p>(pic 5. monitor-network-traffic-in-Matrix)<br />
					<strong><br />
6,Monitor Network Traffic in &#8220;Graphs&#8221; tab</strong></p>
<p>If we want to get a trend chart of the network traffic, then we need  to use the &#8220;Graphs&#8221; tab. &#8220;Graphs&#8221; view allows us view  network statistics dynamically in different chart types, such as ling chart, bar  chart, and pie chart. By selecting &#8220;Utilization&#8221; we get a real-time  traffic trend chart.</p>
<p><img src="http://www.colasoft.com/images/screenshots/monitor_network_traffic5.gif" alt="Monitor Network Traffic in Graphs" height="481" width="574" /></p>
<p>(pic 6. monitor-network-traffic-in-graphs)</p>
<p>As we can see, with <a href="http://www.colasoft.com/download/?prid=00060003">Capsa</a> we can not only Monitor Network Traffic in  convenience, but also analyze network traffic in deferent levels, thus enables  us quickly and efficiently detect network abnormities and troubleshoot network  problems. </p>
<br />Posted in howto Tagged: monitor, Network, packet sniffer, traffic <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/packetsniffer.wordpress.com/26/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/packetsniffer.wordpress.com/26/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/packetsniffer.wordpress.com/26/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/packetsniffer.wordpress.com/26/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/packetsniffer.wordpress.com/26/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/packetsniffer.wordpress.com/26/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/packetsniffer.wordpress.com/26/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/packetsniffer.wordpress.com/26/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/packetsniffer.wordpress.com/26/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/packetsniffer.wordpress.com/26/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/packetsniffer.wordpress.com/26/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/packetsniffer.wordpress.com/26/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/packetsniffer.wordpress.com/26/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/packetsniffer.wordpress.com/26/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=packetsniffer.wordpress.com&amp;blog=7217633&amp;post=26&amp;subd=packetsniffer&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://packetsniffer.wordpress.com/2009/05/06/monitor-your-network-traffic-with-colasoft-packet-sniffer/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/874a69b7038dc9a24ed7f38d8b110954?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">K.Zhou</media:title>
		</media:content>

		<media:content url="http://www.colasoft.com/images/screenshots/monitor_network_traffic6.gif" medium="image">
			<media:title type="html">Monitor Network Traffic in Summary</media:title>
		</media:content>

		<media:content url="http://www.colasoft.com/images/screenshots/monitor_network_traffic1.gif" medium="image">
			<media:title type="html">Monitor Network Traffic in Endpoints</media:title>
		</media:content>

		<media:content url="http://www.colasoft.com/images/screenshots/monitor_network_traffic2.gif" medium="image">
			<media:title type="html">Monitor Network Traffic by Protocol</media:title>
		</media:content>

		<media:content url="http://www.colasoft.com/images/screenshots/monitor_network_traffic3.gif" medium="image">
			<media:title type="html">Monitor Network Traffic by Conversation</media:title>
		</media:content>

		<media:content url="http://www.colasoft.com/images/screenshots/monitor_network_traffic4.gif" medium="image">
			<media:title type="html">Monitor Network Traffic In Matrix</media:title>
		</media:content>

		<media:content url="http://www.colasoft.com/images/screenshots/monitor_network_traffic5.gif" medium="image">
			<media:title type="html">Monitor Network Traffic in Graphs</media:title>
		</media:content>
	</item>
		<item>
		<title>Kismet, an 802.11 Layer2 Wireless Network Detector and Packet Sniffer</title>
		<link>http://packetsniffer.wordpress.com/2009/05/05/kismet-an-80211-layer2-wireless-network-detector-and-packet-sniffer/</link>
		<comments>http://packetsniffer.wordpress.com/2009/05/05/kismet-an-80211-layer2-wireless-network-detector-and-packet-sniffer/#comments</comments>
		<pubDate>Tue, 05 May 2009 06:55:38 +0000</pubDate>
		<dc:creator>K.Zhou</dc:creator>
				<category><![CDATA[articles]]></category>
		<category><![CDATA[kismet]]></category>
		<category><![CDATA[packet sniffer]]></category>
		<category><![CDATA[wireless]]></category>

		<guid isPermaLink="false">http://packetsniffer.wordpress.com/?p=24</guid>
		<description><![CDATA[What is Kismet Kismet is an 802.11 layer2 wireless network detector, packet sniffer, and intrusion detection system. Kismet will work with any wireless card which supports raw monitoring (rfmon) mode, and can sniff 802.11b, 802.11a, 802.11n, and 802.11g traffic (devices and drivers permitting). Kismet identifies networks by passively collecting packets and detecting standard named networks, [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=packetsniffer.wordpress.com&amp;blog=7217633&amp;post=24&amp;subd=packetsniffer&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<div id="attachment_41" class="wp-caption alignright" style="width: 310px"><a href="http://packetsniffer.blog.com/files/2009/05/kismet1.png"><img class="size-medium wp-image-41" title="Kismet Screeshot" src="http://packetsniffer.blog.com/files/2009/05/kismet1-300x210.png" alt="Kismet Screeshot" width="300" height="210" /></a><p class="wp-caption-text">Kismet Screeshot</p></div>
<p>
<strong>What is Kismet</strong></p>
<p>
Kismet is an 802.11 layer2 wireless network detector, <a title="Colasoft packet sniffer" href="http://www.colasoft.com/capsa/?prid=00060001" target="_blank">packet sniffer</a>, and intrusion detection system.  Kismet will work with any wireless card which supports raw monitoring (rfmon) mode, and can sniff 802.11b, 802.11a, 802.11n, and 802.11g traffic (devices and drivers permitting). Kismet identifies networks by passively collecting packets and detecting standard named networks, detecting (and given time, decloaking) hidden networks, and inferring the presence of non-beaconing networks via data traffic.</p>
<p>
<strong>Feature Overview</strong></p>
<p>
Kismet has many features useful in different situations for monitoring wireless networks:</p>
<p>
- Ethereal/Tcpdump compatible data logging<br />
<br />- Airsnort compatible weak-iv packet logging<br />
<br />- Network IP range detection<br />
<br />- Built-in channel hopping and multicard split channel hopping<br />
<br />- Hidden network SSID decloaking<br />
<br />- Graphical mapping of networks<br />
<br />- Client/Server architecture allows multiple clients to view a single Kismet server simultaneously<br />
<br />- Manufacturer and model identification of access points and clients<br />
<br />- Detection of known default access point configurations<br />
<br />- Runtime decoding of WEP packets for known networks<br />
<br />- Named pipe output for integration with other tools, such as a layer3 IDS like Snort<br />
<br />- Multiplexing of multiple simultaneous capture sources on a single Kismet instance<br />
<br />- Distributed remote drone sniffing<br />
<br />- XML output</p>
<p>
<strong>Typical Uses</strong></p>
<p>
Common applications Kismet is useful for:</p>
<p>
- Wardriving:  Mobile detection of wireless networks, logging and mapping of network location, WEP, etc.<br />
<br />- Site survey:  Monitoring and graphing signal strength and location.<br />
<br />- Distributed IDS:  Multiple Remote Drone sniffers distributed throughout an installation monitored by a single server, possibly combined with a layer3 IDS like Snort.<br />
<br />- Rogue AP Detection:  Stationary or mobile sniffers to enforce site policy against rogue access points.</p>
<p>
<strong>Download</strong></p>
<p>
Kismet can be downloaded <a title="Kismet download" href="http://www.kismetwireless.net/download.shtml" target="_blank">here</a></p>
<br />Posted in articles Tagged: kismet, packet sniffer, wireless <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/packetsniffer.wordpress.com/24/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/packetsniffer.wordpress.com/24/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/packetsniffer.wordpress.com/24/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/packetsniffer.wordpress.com/24/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/packetsniffer.wordpress.com/24/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/packetsniffer.wordpress.com/24/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/packetsniffer.wordpress.com/24/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/packetsniffer.wordpress.com/24/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/packetsniffer.wordpress.com/24/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/packetsniffer.wordpress.com/24/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/packetsniffer.wordpress.com/24/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/packetsniffer.wordpress.com/24/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/packetsniffer.wordpress.com/24/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/packetsniffer.wordpress.com/24/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=packetsniffer.wordpress.com&amp;blog=7217633&amp;post=24&amp;subd=packetsniffer&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://packetsniffer.wordpress.com/2009/05/05/kismet-an-80211-layer2-wireless-network-detector-and-packet-sniffer/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/874a69b7038dc9a24ed7f38d8b110954?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">K.Zhou</media:title>
		</media:content>

		<media:content url="http://packetsniffer.blog.com/files/2009/05/kismet1-300x210.png" medium="image">
			<media:title type="html">Kismet Screeshot</media:title>
		</media:content>
	</item>
		<item>
		<title>How to Monitor Internet Traffic with Packet Sniffer</title>
		<link>http://packetsniffer.wordpress.com/2009/05/05/how-to-monitor-internet-traffic-with-packet-sniffer/</link>
		<comments>http://packetsniffer.wordpress.com/2009/05/05/how-to-monitor-internet-traffic-with-packet-sniffer/#comments</comments>
		<pubDate>Tue, 05 May 2009 06:05:10 +0000</pubDate>
		<dc:creator>K.Zhou</dc:creator>
				<category><![CDATA[howto]]></category>
		<category><![CDATA[colasoft]]></category>
		<category><![CDATA[internet]]></category>
		<category><![CDATA[packet sniffer]]></category>
		<category><![CDATA[traffic]]></category>

		<guid isPermaLink="false">http://packetsniffer.wordpress.com/?p=22</guid>
		<description><![CDATA[Internet traffic is the flow of data around the Internet. It includes web traffic, which is the amount of that data that is related to the World Wide Web, along with the traffic from other major uses of the Internet, such as electronic mail and peer-to-peer networks. In case we want to monitor internet traffic [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=packetsniffer.wordpress.com&amp;blog=7217633&amp;post=22&amp;subd=packetsniffer&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Internet traffic is the flow of data around the Internet. It includes web traffic, which is the amount of that data that is related to the World Wide Web, along with the traffic from other major uses of the Internet, such as electronic mail and peer-to-peer networks.</p>
<p>In case we want to <strong>monitor internet traffic</strong> generated or is generating in LAN, here is a detailed process how we can do it with <a title="Colasoft Packet Sniffer Software" href="http://www.colasoft.com/?prid=00060001" target="_blank">Colasoft Packet Sniffer</a> – Capsa.</p>
<p>Again we must make sure the packet sniffer software is correctly implemented so we can capture all the traffic in LAN, if you don’t know how to do it, please make sure you read <a title="How to Implement a Packet Sniffer" href="http://www.colasoft.com//support/installation.php?prid=00060001" target="_blank">how to implement a packet sniffer</a>.</p>
<p>First let’s launch a new project with Colasoft Packet Sniffer, then do some online activities, such as chatting, browsing a website, sending and receiving emails, downloading some files. All these activities will generate different kinds of internet traffic. We may keep the project running to continuously <a title="How to Monitor Internet Traffic with Colasoft Packet Sniffer" href="http://blog.colasoft.com/how-to-monitor-internet-traffic-with-colasoft-packet-sniffer/" target="_self">monitor internet traffic</a> or stop the project to do some analysis.</p>
<p>To monitor internet traffic, we’d better first select the “Internet Addresses” in the “Explorer” on the left window:</p>
<div id="attachment_78" class="wp-caption aligncenter" style="width: 495px"><a href="http://blog.colasoft.com/wp-content/uploads/2009/04/monitor-internet-traffic-ss1.jpg"><img class="size-full wp-image-78" src="http://blog.colasoft.com/wp-content/uploads/2009/04/monitor-internet-traffic-ss1.jpg" alt="Monitor Internet Traffic Screenshot1" width="485" height="375" /></a><p class="wp-caption-text">Monitor Internet Traffic Screenshot1</p></div>
<p>We can see that all the internet addresses are listed by countries, to monitor internet traffic of a specific country, we just need click on it; If we want to monitor internet traffic of a specific IP address within one country, we need to expand the country node and select the IP address in it.</p>
<p>Also we can monitor internet traffic aggregated or internet traffic in real-time</p>
<div id="attachment_79" class="wp-caption aligncenter" style="width: 473px"><a href="http://blog.colasoft.com/wp-content/uploads/2009/04/monitor-internet-traffic-ss2.jpg"><img class="size-full wp-image-79" src="http://blog.colasoft.com/wp-content/uploads/2009/04/monitor-internet-traffic-ss2.jpg" alt="Monitor Internet Traffic Screenshot2" width="463" height="350" /></a><p class="wp-caption-text">Monitor Internet Traffic Screenshot2</p></div>
<p>To view what online activities have generated or are generating internet traffic, we need to use the “Protocols” Tab.</p>
<div id="attachment_80" class="wp-caption aligncenter" style="width: 516px"><a href="http://blog.colasoft.com/wp-content/uploads/2009/04/monitor-internet-traffic-ss3.jpg"><img class="size-full wp-image-80" src="http://blog.colasoft.com/wp-content/uploads/2009/04/monitor-internet-traffic-ss3.jpg" alt="Monitor Internet Traffic Screenshot1" width="506" height="364" /></a><p class="wp-caption-text">Monitor Internet Traffic Screenshot1</p></div>
<p>We can see there are protocols which separately stand for different internet activities:</p>
<p>HTTP – Website browsing<br />
MSN – online chatting with Live Messenger<br />
POP3 – Email<br />
HTTPS &#8211; Website browsing via a secure link<br />
QQ- online chatting with QQ<br />
DNS – Domain Name System</p>
<p><strong>About Capsa</strong></p>
<p>Colasoft Capsa is a network analyzer (packet sniffer or protocol analyzer) designed for network monitoring and troubleshooting. It performs packet capturing, network monitoring, protocol analyzing, packet decoding, and automatic diagnosing. By giving users insights into all of network&#8217;s operations, Capsa makes it easy to isolate and solve network problems, identify network bottleneck and bandwidth use, and detect network vulnerabilities. Learn more about Capsa, please visit <a href="http://www.colasoft.com/capsa/?prid=00060001">http://www.colasoft.com/capsa/</a></p>
<br />Posted in howto Tagged: colasoft, howto, internet, packet sniffer, traffic <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/packetsniffer.wordpress.com/22/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/packetsniffer.wordpress.com/22/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/packetsniffer.wordpress.com/22/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/packetsniffer.wordpress.com/22/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/packetsniffer.wordpress.com/22/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/packetsniffer.wordpress.com/22/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/packetsniffer.wordpress.com/22/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/packetsniffer.wordpress.com/22/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/packetsniffer.wordpress.com/22/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/packetsniffer.wordpress.com/22/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/packetsniffer.wordpress.com/22/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/packetsniffer.wordpress.com/22/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/packetsniffer.wordpress.com/22/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/packetsniffer.wordpress.com/22/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=packetsniffer.wordpress.com&amp;blog=7217633&amp;post=22&amp;subd=packetsniffer&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://packetsniffer.wordpress.com/2009/05/05/how-to-monitor-internet-traffic-with-packet-sniffer/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/874a69b7038dc9a24ed7f38d8b110954?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">K.Zhou</media:title>
		</media:content>

		<media:content url="http://blog.colasoft.com/wp-content/uploads/2009/04/monitor-internet-traffic-ss1.jpg" medium="image">
			<media:title type="html">Monitor Internet Traffic Screenshot1</media:title>
		</media:content>

		<media:content url="http://blog.colasoft.com/wp-content/uploads/2009/04/monitor-internet-traffic-ss2.jpg" medium="image">
			<media:title type="html">Monitor Internet Traffic Screenshot2</media:title>
		</media:content>

		<media:content url="http://blog.colasoft.com/wp-content/uploads/2009/04/monitor-internet-traffic-ss3.jpg" medium="image">
			<media:title type="html">Monitor Internet Traffic Screenshot1</media:title>
		</media:content>
	</item>
	</channel>
</rss>
