Sniffing

Speak about anything here

Sniffing

Postby alaa-78 » Sun Jan 08, 2006 5:29 pm


Hey guys .

I was sniffing a lan and got the packets between two pcs , the data stream i got in hexadecimal , the tool i was using can convert some of the data into characters leaving the unknown to it as dots .... Now my question is does any one know a tool that can:
1- know the start and the end of the packet
2- the type of data inside
3- the data itself( in clear plain text or readable to me no machine language nor hex or binary ) ,
4- the size of the packet ....
5- some other details ( encrypted data or not --- decryption options etc.... )

thanks guys ..
alaa-78
imFiles Newbie
imFiles Newbie
 
Posts: 12
Joined: Tue Oct 11, 2005 4:20 pm

Postby alaa-78 » Sun Jan 08, 2006 6:23 pm

here a sample of what i am talking about ......

Packet data:
0000: 00 50 FC 75 5D 1F 00 04 75 F2 7B 88 08 00 45 00 .P.u]...u.{...E.
0010: 00 30 F1 0F 40 00 80 06 EE C9 D4 0C B9 61 D4 0C .0..@........a..
0020: B9 73 04 9F 1F 90 00 16 35 E3 00 00 00 00 70 02 .s......5.....p.
0030: 20 00 EE 08 00 00 02 04 05 B4 01 01 04 02 .............

Packet data:
0000: 00 04 75 F2 7B 88 00 50 FC 75 5D 1F 08 00 45 00 ..u.{..P.u]...E.
0010: 00 30 3A 67 40 00 40 06 E5 72 D4 0C B9 73 D4 0C .0:g@.@..r...s..
0020: B9 61 1F 90 04 9F CE 7D 4A D8 00 16 35 E4 70 12 .a.....}J...5.p.
0030: 7D 78 77 29 00 00 02 04 05 B4 01 01 04 02 }xw)..........

the colored portions are the MAC adresses of the pcs communicating...
alaa-78
imFiles Newbie
imFiles Newbie
 
Posts: 12
Joined: Tue Oct 11, 2005 4:20 pm

Postby Crashypoo » Mon Jan 09, 2006 12:17 am

use Ethereal packet sniffer
it will show u packet headers and some encrypted data n more

at least when i sniff paltalk client
User avatar
Crashypoo
NINJA PALTALK GOD
NINJA PALTALK GOD
 
Posts: 470
Joined: Sun Jan 02, 2005 7:53 am

Postby alaa-78 » Mon Jan 09, 2006 3:29 pm

Thanks crashypoo

this program is fine and has lots of options and covers alot of protocols .

they also offer advanced training courses online .

it has a drawback which is speed and memory usage . Which i think it would be better to capture the packets by another software and load them using ethereal ( then decode and analyse) .
alaa-78
imFiles Newbie
imFiles Newbie
 
Posts: 12
Joined: Tue Oct 11, 2005 4:20 pm


Return to General

Who is online

Users browsing this forum: No registered users and 0 guests