Artifact Content

Artifact b0b677202c544ccdeb9b536df0550135033eeccb:

Wiki page [More Information] by rkeene on 2014-01-27 07:07:55.
D 2014-01-27T07:07:55.145
L More\sInformation
N text/x-markdown
P 1f18a3deb5fc1db7ef06593894b68c53bdbbf44e
U rkeene
W 380
How it Works
============

It is a "[`tcpdump`](http://www.tcpdump.org/)" executable, [WinPcap](http://www.winpcap.org/) library and driver wrapped in a simple executable that:

   1. Unpacks the files to a temporary directory;
   2. Installs and starts the "`npf`" driver (from [WinPcap](http://www.winpcap.org/));
   3. Runs `tcpdump.exe`; and
   4. Cleans up everything
Z 252a2e4456b6095419718f99e34806b9