Update of "More Information"
Overview

Artifact ID: b0b677202c544ccdeb9b536df0550135033eeccb
Page Name:More Information
Date: 2014-01-27 07:07:55
Original User: rkeene
Mimetype:text/x-markdown
Parent: 1f18a3deb5fc1db7ef06593894b68c53bdbbf44e
Content

How it Works

It is a "tcpdump" executable, WinPcap library and driver wrapped in a simple executable that:

  1. Unpacks the files to a temporary directory;
  2. Installs and starts the "npf" driver (from WinPcap);
  3. Runs tcpdump.exe; and
  4. Cleans up everything