Ethereal-dev: [Ethereal-dev] Re: is any one sniffing comports on win2k or XP? (forw)

Note: This archive is from the project's previous web site, ethereal.com. This list is no longer active.

From: Joerg Mayer <jmayer@xxxxxxxxx>
Date: Sat, 27 Jul 2002 16:01:52 +0200
Moin List,

as the question of sniffing serial lines on Win2k/xp has been asked time
and again, maybe the link included below can help people interested in
such a feature to implement it (note that the page only mentions nt, so
I don't know about XP).

  Ciao
     Jörg

----- Forwarded message from Catfish <catfish@xxxxxxxxxxxxxxxxxx> -----

Mailing-List: contact vuln-dev-help@xxxxxxxxxxxxxxxxx; run by ezmlm
Precedence: bulk
Delivered-To: mailing list vuln-dev@xxxxxxxxxxxxxxxxx
Delivered-To: moderator for vuln-dev@xxxxxxxxxxxxxxxxx
From: "Catfish" <catfish@xxxxxxxxxxxxxxxxxx>
To: "KF" <dotslash@xxxxxxxxxxx>, <vuln-dev@xxxxxxxxxxxxxxxxx>
Subject: Re: is any one sniffing comports on win2k or XP?
Date: Fri, 26 Jul 2002 21:17:02 -0400

Try this. It says it works fine in Win2k but doesn't mention WinXP. I have
used this in the past and it worked great for watching trafic from an old
sharp databank device I use to have. Never did figured out the protocol but
I used it for exporting data from the device (using a replay "attack")

http://www.sysinternals.com/ntw2k/freeware/portmon.shtml


> I have an application that I need to steal data from. This application
> is initalizing a bar code reader and I would like to see the escape
> sequences that are used to initialize this particular device. There are
> bajillions of DOS apps that claim to spy on a com port but I have had no
> luck with them. Every app I try to use results in a com port in use
> error when I fire up the app I want to sniff. Does anyone have any
> applications to try? I need one that will allow me to monitor a comport
> passively in win2k or XP and it must at the same time allow another
> application to query or connect to the com port. I need to be able to
> see the data being passed back and forth between the application and the
> device.



----- End forwarded message -----

--
Joerg Mayer                                          <jmayer@xxxxxxxxx>
I found out that "pro" means "instead of" (as in proconsul). Now I know
what proactive means.