Wireshark (formerly Ethereal) is a network protocol analyzer for Unix and Windows. It allows you to examine data from a live network or from a capture file on disk. You can interactively browse the capture data, viewing summary and detail information for each packet. Has several powerful features, including a rich display filter language and the ability to view the reconstructed stream of a TCP session.
- Display filters now autocomplete
- A 64-bit Windows (x64) installer is now provided
- Support for the c-ares resolver library has been added. It has many advantages over ADNS
- Many new protocol dissectors and capture file formats have been added
- GeoIP database lookups
- OpenStreetMap + GeoIP integration
Reviewing 1.1.2 (Jan 16, 2009)
excellent program, does what I need and helps me resolve connection issues and more..
UI on this site sucks, if I wanted neowin.net I'd go to neowin.net
Reviewing 1.00 (Apr 30, 2008)
"Save maximized sate" is useless. Does nothing! :(
New website sucks!!
Reviewing 0.99.7 (Dec 18, 2007)
Wireshark 0.99.7 has been released. Many security-related vulnerabilities have been fixed.
This release improves the privilege separation between the capture code and interface code. It also lets you filter directly on SNMP OIDs, follow UDP streams, and has improved Vista support.
Reviewing 0.99.6a (Jul 12, 2007)
This software is extraordinary. Open-source, free and give you maximum visibility into pcap files, etc.
Reviewing 0.99.5 (Jun 4, 2007)
ethereal is cool, applu filters and have fun, or do some work, anyways it is a great toy or tool :)
No comments yet