Click Install.
The WinPcap installation will now begin. Click Next.
210 Practical Hacking Techniques and Countermeasures
On the License Agreement screen click I Agree.
The WinPcap will complete installing. Click Finish.
Sniffing Traffic 211
The installation of Ethereal will complete. Click Next.
Select Run Ethereal 0.10.13. Click Finish.
212 Practical Hacking Techniques and Countermeasures
The Ethereal application will start.
The Ethereal application functions in the same manner as in Linux at this
point. Refer to the first part of this lab for a review of the operation of this
application.
*Note: Ethereal is widely used as a packet capturing application and will be referenced
throughout the remainder of this book. It is important that you have
the basic understanding of Ethereal in order to verify the result of future labs.
Sniffing Traffic 213
Lab 42: Packet Capture ??” Sniffer
Exploit Data from Network Traffic: Ngrep
Prerequisites: NULL Session
Countermeasures: Encryption, various sniffer detector applications
Description: Ngrep is a network sniffer that currently recognizes IP, Transfer
Control Protocol (TCP), User Datagram Protocol (UDP), Internet
Control Messenger Protocol (ICMP), Internet Group Management Protocol
(IGMP), PPP, Serial Line Interface Protocol (SLIP), FDDI, Token
Ring, and NULL interfaces. It also understands Berkley Packet Filter
(BPF) logic like other packet-sniffing tools. Remember that all commands
in Linux are case sensitive.
Pages:
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103