Sunday, July 10, 2011

CaptureBAT

http://www.honeynet.org/node/315

Using this file we can capture the network activity and all the shift deleted files.

capturebat -n -c

 We need to have the following pre-requisites so that capture bat will run properly.

http://www.microsoft.com/download/en/details.aspx?id=3387

http://www.winpcap.org/install/default.htm

1 comment:

  1. Hi, I was running CaptureBAT in a winxp VM and it wasn't starting up correctly. I downloaded it a few times from honeypots website and it still wasn't working. It turns out you were correct; I downloaded both prereqs and it now runs. Thanks for that.

    ReplyDelete