Skip to main content

NetworkTrafficView 2.05

 NetworkTrafficView 2.05


NetworkTrafficView is a network monitoring tool that captures the packets that pass through your network adapter, and displays general statistics about your network traffic.







The packets statistics is grouped by the Ethernet Type, IP Protocol, Source/Destination Addresses, and Source/Destination ports.

For every statistics line, the following information is displayed: Ethernet Type (IPv4, IPv6, ARP), IP Protocol (TCP, UDP, ICMP), Source Address, Destination Address, Source Port, Destination Port, Service Name (http, ftp, and so on), Packets Count, Total Packets Size, Total Data Size, Data Speed, Maximum Data Speed, Average Packet Size, First/Last Packet Time, Duration, and process ID/Name (For TCP connections). 




System Requirements

    This utility works on any version of Windows, starting from Windows 2000 and up to Windows 7, including 64-bit systems.
    One of the following capture drivers is required to use NetworkTrafficView:
        WinPcap Capture Driver: WinPcap is an open source capture driver that allows you to capture network packets on any version of Windows. You can download and install the WinPcap driver from this Web page.
        Microsoft Network Monitor Driver version 2.x (Only for Windows 2000/XP/2003): Microsoft provides a free capture driver under Windows 2000/XP/2003 that can be used by NetworkTrafficView, but this driver is not installed by default, and you have to manually install it, by using one of the following options:
            Option 1: Install it from the CD-ROM of Windows 2000/XP according to the instructions in Microsoft Web site
            Option 2 (XP Only) : Download and install the Windows XP Service Pack 2 Support Tools. One of the tools in this package is netcap.exe. When you run this tool in the first time, the Network Monitor Driver will automatically be installed on your system. 
        Microsoft Network Monitor Driver version 3.x: Microsoft provides a new version of Microsoft Network Monitor driver (3.x) that is also supported under Windows 7/Vista/2008.
        The new version of Microsoft Network Monitor (3.x) is available to download from Microsoft Web site. 
    You can also try to use NetworkTrafficView without installing any driver, by using the 'Raw Sockets' method. Unfortunately, Raw Sockets method has many problems:
        It doesn't work in all Windows systems, depending on Windows version, service pack, and the updates installed on your system. On some systems, Raw Sockets works only partially and captures only the incoming packets. On some other systems, it doesn't work at all.
        On systems that 'Raw Sockets' method works properly, it can only capture IPv4 TCP/UDP packets. It cannot capture other type of packets, like the other capture drivers.
        On Windows 7 with UAC turned on, 'Raw Sockets' method only works when you run NetworkTrafficView with 'Run As Administrator'. 

Start Using NetworkTrafficView
Except of a capture driver needed for capturing network packets, NetworkTrafficView doesn't require any installation process or additional dll files. In order to start using it, simply run the executable file - NetworkTrafficView.exe

After running NetworkTrafficView in the first time, the 'Capture Options' window appears on the screen, and you're requested to choose the capture method and the desired network adapter. In the next time that you use NetworkTrafficView, it'll automatically start capturing packets with the capture method and the network adapter that you previously selected. You can always change the 'Capture Options' again by pressing F9.

After choosing the capture method and network adapter, NetworkTrafficView starts to display your current network traffic, grouped by the Ethernet Type, IP Protocol, Source/Destination Addresses, and Source/Destination ports.

You can press F6 to stop the network traffic capture, F5 to start it again, or Ctrl+X to clear the current network traffic statistics.

Change the Grouping Mode
In the 'Advanced Options' window (F8), you can change the grouping settings, which affects the way that the network traffic statistics is accumulated and displayed on the screen:

    Packet Direction Grouping:
        Display both packet directions in a single line: When you choose this option, packets sent in both directions (client to server and server to client) are accumulated in the same statistics line.
        Display the 2 packet directions in 2 separated lines: When you choose this option, packets sent from client to server and packets sent from server to client are accumulated and displayed in 2 different statistics lines. 
    General Grouping:
        Group by combination of Ethernet Type, IP Protocol, Addresses, and TCP/UDP Ports: When this option is selected, every TCP connection is accumulated and displayed separately. For example, if your Web browser opens 5 connections to the same server, 5 or 10 statistics lines (depending on the Packet Direction Grouping) will be displayed on the screen.
        Group by combination of Ethernet Type, IP Protocol, and Addresses. Ignore TCP/UDP Ports: When this option is selected, all TCP connections with the same client and server are accumulated and displayed in the same statistics line. For example, if your Web browser opens 5 connections to the same server, 1 or 2 statistics lines (depending on the Packet Direction Grouping) will be displayed on the screen.
        Group by process: When this option is selected, all TCP connections came from the same process are accumulated and displayed in the same statistics line. 

IP Address Country/City Information
NetworkTrafficView allows you to view country/city information for every IP address. In order to activate this feature, you have to download one of the following external files, and put the file in the same folder of NetworkTrafficView.exe:

    http://software77.net/geo-ip/: Download the IPv4 CSV file, extract it from the zip/gz file, and put it in the same folder of NetworkTrafficView.exe as IpToCountry.csv
    GeoLite City database: Download the GeoLite City in Binary / gzip (GeoLiteCity.dat.gz) and put it in the same folder of NetworkTrafficView.exe
    If you want to get faster loading process, extract the GeoLiteCity.dat from the GeoLiteCity.dat.gz and put it in the same folder of NetworkTrafficView.exe 

Integration with IPNetInfo utility
If you want to get more information about the destination IP address displayed in NetworkTrafficView utility, you can use the Integration with IPNetInfo utility in order to easily view the IP address information loaded directly from WHOIS servers:

    Download and run the latest version of IPNetInfo utility.
    Select the desired connections, and then choose "IPNetInfo - Destination IP" from the File menu (or simply click Ctrl+I).
    IPNetInfo will retrieve the information about destination IP addresses of the selected items. 

Homepage – http://www.nirsoft.net/utils/network_traffic_view.html

Size: 1 MB





Comments

Popular posts from this blog

JDownloader

  JDownloader JDownloader is a free, open-source download management tool with a huge community that makes downloading as easy and fast as it should be. Users can start, stop or pause downloads, set bandwith limitations, auto-extract archives and much more. It's an easy-to-extend framework that can save hours of your valuable time every day!

Microsoft Process Explorer 17.00

 Microsoft Process Explorer 17.00 Ever wondered which program has a particular file or directory open? Now you can find out. Process Explorer shows you information about which handles and DLLs processes have opened or loaded. The Process Explorer display consists of two sub-windows. The top window always shows a list of the currently active processes, including the names of their owning accounts, whereas the information displayed in the bottom window depends on the mode that Process Explorer is in: if it is in handle mode you'll see the handles that the process selected in the top window has opened; if Process Explorer is in DLL mode you'll see the DLLs and memory-mapped files that the process has loaded. Process Explorer also has a powerful search capability that will quickly show you which processes have particular handles opened or DLLs loaded. The unique capabilities of Process Explorer make it useful for tracking down DLL-version problems or handle leaks, and provide insig

OBS Studio 28.1

OBS Studio 28.1 Free and open source software for video recording and live streaming. Download and start streaming quickly and easily on Windows, Mac or Linux. OBS Studio (Open Broadcaster) is a free and open source software for video recording and live streaming. It features high-performance real-time video/audio capturing and mixing with unlimited scenes you can switch seamlessly via custom transitions. Filters for video sources are available, including image masking, color correction, chroma/color keying, an intuitive audio mixer with filter functions such as noise gate, noise suppression, and gain can improve the quality. OBS Studio is equipped with a powerful API, enabling plugins and scripts to provide further customization and functionality specific to your needs. Utilize native plugins for high performance integrations or scripts written with Lua or Python that interface with existing sources. Work with developers in the streaming community to get the features you need with end