• Skip to main content
  • Skip to primary sidebar
  • Skip to footer
  • Home
  • About Darknet
  • Hacking Tools
  • Popular Posts
  • Darknet Archives
  • Contact Darknet
    • Advertise
    • Submit a Tool
Darknet – Hacking Tools, Hacker News & Cyber Security

Darknet - Hacking Tools, Hacker News & Cyber Security

Darknet is your best source for the latest hacking tools, hacker news, cyber security best practices, ethical hacking & pen-testing.

NetworkMiner – Passive Sniffer & Packet Analysis Tool for Windows

February 27, 2008

Views: 67,585

NetworkMiner is a passive network sniffer/packet capturing tool for Windows with an easy to use interface. It can detect operating systems, sessions, hostnames, open ports etc. without putting any traffic on the network. NetworkMiner can also parse PCAP files for off-line analysis.

NetworkMiner makes use of OS fingerprinting databases from both p0f (by Michal Zalewski) and Ettercap (by Alberto Ornaghi and Marco Valleri) in order to do as correct passive OS fingerprinting as possible. NetworkMiner also uses the MAC-vendor list from Nmap (Fyodor).

The purpose of NetworkMiner is to collect data about hosts on the network rather than to collect data regarding the traffic on the network. The main view is host centric (information grouped per host) rather than packet centric (information showed as a list of packets/frames).

NetworkMiner can extract files transferred over the network by parsing a PCAP file or by sniffing traffic directly from the network. This is a neat function that can be used to extract and save media files (such as audio or video files) which are streamed across a network.

Another very useful feature is that the user can search sniffed or stored data for keywords. NetworkMiner allows the user to insert arbitrary string or byte-patterns that shall be searched for with the keyword search functionality.

A feature the author wants to include in future versions of NetworkMiner is to use statistical methods to do protocol identification (protocol fingerprinting) of a TCP session or UDP data. This means that instead of looking at the port number to guess which protocol is used on top of the TCP/UDP packet NetworkMiner will identify the correct protocol based on the TCP/UDP packet content. In this way NetworkMiner will be able to identify protocols even if the service is run on a non-standard port.

You can download NetworkMiner here:

NetworkMiner-0.82

Or you can read more here.

Share2
Tweet5
Share1
Buffer
WhatsApp
Email
8 Shares

Filed Under: Forensics, Hacking News, Networking Hacking Tools, Windows Hacking Tagged With: hacking-networks, hacking-windows, Network Hacking, network-analysis, packet-sniffer, win32, windows, Windows Hacking



Reader Interactions

Comments

  1. Pantagruel says

    February 27, 2008 at 11:06 am

    Nice one. The first thing I thought was, p0f with an clickerdiclick interface. Definitely one piece of software to watch developing

  2. Le00 says

    February 27, 2008 at 4:29 pm

    That’s nice. Also check http://w3af.sourceforge.net. It’s a really good audit framework, that can be useful for pentests.

  3. eM3rC says

    February 28, 2008 at 12:37 am

    Huge potential for this piece of software. Like Pantagruel will be watching this develop.

  4. Pantagruel says

    March 2, 2008 at 9:40 am

    Took it for a test drive, it works very well and is indeed less intimidating than p0f

  5. James C says

    March 6, 2008 at 3:20 pm

    Works like a charm! love it.

  6. Pantagruel says

    March 8, 2008 at 7:56 pm

    NetworkMiner-0.83 was released 1st of march

  7. fever says

    April 8, 2008 at 6:55 pm

    sounds like something so keep your eyes on.

  8. Erik says

    May 21, 2008 at 6:47 pm

    I released version 0.84 this weekend. So NetworkMiner now supports passive OS fingerprinting through sniffing of DHCP packets (the previous versions only used TCP packets). Network Miner also supports WiFi sniffing of IEEE 802.11 WLAN traffic.

    I’ve updated the NetworkMiner Wiki at:
    http://networkminer.wiki.sourceforge.net/NetworkMiner

  9. Pantagruel says

    May 22, 2008 at 10:01 pm

    @Erik

    Thanks for the heads up, will take the new version for a test drive an see if the OS detection has become more acurate.

Primary Sidebar

Search Darknet

  • Email
  • Facebook
  • LinkedIn
  • RSS
  • Twitter

Advertise on Darknet

Latest Posts

AgentSmith HIDS - Host Based Intrusion Detection

AgentSmith HIDS – Host Based Intrusion Detection

padre - Padding Oracle Attack Tool

padre – Padding Oracle Attack Exploiter Tool

Privacy Implications of Web 3.0 and Darknets

Privacy Implications of Web 3.0 and Darknets

DataSurgeon - Extract Sensitive Information (PII) From Logs

DataSurgeon – Extract Sensitive Information (PII) From Logs

Pwnagotchi - Maximize Crackable WPA Material For Bettercap

Pwnagotchi – Maximize Crackable WPA Key Material For Bettercap

HardCIDR - Network CIDR and Range Discovery Tool

HardCIDR – Network CIDR and Range Discovery Tool

Topics

  • Advertorial (28)
  • Apple (46)
  • Countermeasures (225)
  • Cryptography (82)
  • Database Hacking (89)
  • Events/Cons (7)
  • Exploits/Vulnerabilities (430)
  • Forensics (64)
  • Hacker Culture (8)
  • Hacking News (228)
  • Hacking Tools (681)
  • Hardware Hacking (82)
  • Legal Issues (179)
  • Linux Hacking (72)
  • Malware (238)
  • Networking Hacking Tools (352)
  • Password Cracking Tools (104)
  • Phishing (41)
  • Privacy (218)
  • Secure Coding (118)
  • Security Software (233)
  • Site News (51)
    • Authors (6)
  • Social Engineering (37)
  • Spammers & Scammers (76)
  • Stupid E-mails (6)
  • Telecomms Hacking (6)
  • UNIX Hacking (6)
  • Virology (6)
  • Web Hacking (384)
  • Windows Hacking (169)
  • Wireless Hacking (45)

Security Blogs

  • Dancho Danchev
  • F-Secure Weblog
  • Google Online Security
  • Graham Cluley
  • Internet Storm Center
  • Krebs on Security
  • Schneier on Security
  • TaoSecurity
  • Troy Hunt

Security Links

  • Exploits Database
  • Linux Security
  • Register – Security
  • SANS
  • Sec Lists
  • US CERT

Footer

Most Viewed Posts

  • Brutus Password Cracker – Download brutus-aet2.zip AET2 (2,180,810)
  • Darknet – Hacking Tools, Hacker News & Cyber Security (2,172,333)
  • Top 15 Security Utilities & Download Hacking Tools (2,095,305)
  • 10 Best Security Live CD Distros (Pen-Test, Forensics & Recovery) (1,198,656)
  • Password List Download Best Word List – Most Common Passwords (931,753)
  • wwwhack 1.9 – wwwhack19.zip Web Hacking Software Free Download (774,395)
  • Hack Tools/Exploits (672,571)
  • Wep0ff – Wireless WEP Key Cracker Tool (528,816)

Search

Recent Posts

  • AgentSmith HIDS – Host Based Intrusion Detection August 31, 2023
  • padre – Padding Oracle Attack Exploiter Tool May 28, 2023
  • Privacy Implications of Web 3.0 and Darknets March 31, 2023
  • DataSurgeon – Extract Sensitive Information (PII) From Logs March 21, 2023
  • Pwnagotchi – Maximize Crackable WPA Key Material For Bettercap February 12, 2023
  • HardCIDR – Network CIDR and Range Discovery Tool December 29, 2022

Tags

apple botnets computer-security darknet Database Hacking ddos dos exploits fuzzing google hacking-networks hacking-websites hacking-windows hacking tool Information-Security information gathering Legal Issues malware microsoft network-security Network Hacking Password Cracking pen-testing penetration-testing Phishing Privacy Python scammers Security Security Software spam spammers sql-injection trojan trojans virus viruses vulnerabilities web-application-security web-security windows windows-security Windows Hacking worms XSS

Copyright © 1999–2023 Darknet All Rights Reserved · Privacy Policy