[Last Call] Learn how to a build a cloud-first strategyRegister Now

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 6173
  • Last Modified:

Urgent - I need a utility to read .cap capture files but not be a sniffer itself.

Hi,

I have some .cap capture files that i can open in MS network monitor with no problems.  Some of my developers need to be able to read these .cap files, but I don't want them to have to install a sniffer such as Ethereal.  

Does anyone know of any utility (windows based) that can only read and maybe manipulate capture files but can't create or sniff new ones ?

I need to nkow this one quickly so its 500 points..

thanks,

Simon,

0
simonenticott
Asked:
simonenticott
1 Solution
 
pseudocyberCommented:
No, I've never heard of any.  If you want to read capture file, you have to have a packet analyzer.

However, you might be able to export the file.  I used Ethereal to export to a .txt file a quick capture.  Here's the first two packets:

No.     Time        Source                Destination           Protocol Info
      1 0.000000    x.x.242.130       Broadcast             ARP      Who has x.x.242.234?  Tell x.x.242.130

Frame 1 (60 bytes on wire, 60 bytes captured)
Ethernet II, Src: 00:04:38:a2:b6:02, Dst: ff:ff:ff:ff:ff:ff
Address Resolution Protocol (request)

No.     Time        Source                Destination           Protocol Info
      2 0.741103    x.x.242.131       224.0.0.18            VRRP     Announcement (v2)

Frame 2 (60 bytes on wire, 60 bytes captured)
Ethernet II, Src: 00:00:5e:00:01:f2, Dst: 01:00:5e:00:00:12
Internet Protocol, Src Addr: x.x.242.131 (x.x.242.131), Dst Addr: 224.0.0.18 (224.0.0.18)
Virtual Router Redundancy Protocol
0
 
snerkelCommented:
Try notepad or excel, right click the file and select open with... then choose program. Quick way to open is change the extension to .txt  or .csv
0
 
simonenticottAuthor Commented:
hi Snerkel,
i've tried that but the files are binary so just show up as gibberish on the screen with a few bits of legible text.
thanks anyway,

Simon.
0
Nothing ever in the clear!

This technical paper will help you implement VMware’s VM encryption as well as implement Veeam encryption which together will achieve the nothing ever in the clear goal. If a bad guy steals VMs, backups or traffic they get nothing.

 
pseudocyberCommented:
... just going to say that - Ethereal saved and then changed to a .txt extension opens as garbage.

How about exporting the file, Simon?
0
 
simonenticottAuthor Commented:
i've tried exporting from network monitor but it doesn't give me any useful format to export to, and when i open them they're still binary anyway.  

I'm just downloading Ethereal now to take a look at what i can do in there.  I did read that without winPcap Ethereal wont capture packets so i may end up having to give them Ethereal and not winPcap, but i'd rather give them just a viewer if i can find one.

0
 
xrokCommented:
No program will open file. if file is part of a program.

Best thing to do is, Open with your program and capture screen and send it to them.

0
 
simonenticottAuthor Commented:
its 7000+ lines this time :(  
(on the plus side, i dont have to analyse it)
0
 
simonenticottAuthor Commented:
I'm off home for the day now, but will pick up on this again in the morning,

thanks for the helps so far, and keep those ideas coming in ...

simon,
0
 
pseudocyberCommented:
They really need the full packet analyzer.  Then they can create their own display filters and possibly use whatever intelligence is built into the software.  I don't think this functionality in a viewer type app exists.
0
 
simonenticottAuthor Commented:
thanks guys,
i took psedocybers suggestion and used Ethereal to export the capture as a text file.  Its a shame there isnt' a cut down version of Ethereal that can analyse only.  Maybe i'll suggest to the authors,

thanks everyone.

Simon,
0

Featured Post

Veeam and MySQL: How to Perform Backup & Recovery

MySQL and the MariaDB variant are among the most used databases in Linux environments, and many critical applications support their data on them. Watch this recorded webinar to find out how Veeam Backup & Replication allows you to get consistent backups of MySQL databases.

Tackle projects and never again get stuck behind a technical roadblock.
Join Now