The Ethereal network protocol analyzer has changed its name to Wireshark.
The name might be new, but the software is the same. Wireshark's powerful features make it the tool of choice for network troubleshooting, protocol development, and education worldwide.
Wireshark was written by networking experts around the world, and is an example of the power of open source. It runs on Windows, Linux, UNIX, and other platforms. This download is for Windows only.
Wireshark can read live data from Ethernet, Token-Ring, FDDI, serial (PPP and SLIP) (if the OS on which it's running allows Wireshark to do so), 802.11 wireless LAN (if the OS on which it's running allows Wireshark to do so) and ATM connections (if the OS on which it's running allows Wireshark to do so).
| File Size: | 20.31M |
| License: | Open Source |
| Released: | Feb 28, 2008 |
| Downloads: | 333 (All versions: 3586) |
| OS Support: | Windows 2000/XP/2003/Vista/XP64/Vista64 |
| Plugins: | None |
| Publisher: | Wireshark.org![]() |
| Homepage: | ![]() |
| MD5 Checksum: | 2a7c6c9167518a98bbad51da3f1bc9bb |
Bug Fixes
The following vulnerabilities have been fixed. See the [1]security
advisory for details and a workaround.
o The SCTP dissector could crash.
Versions affected: 0.99.5 to 0.99.7
o The SNMP dissector could crash.
Versions affected: 0.99.6 to 0.99.7
o The TFTP dissector could crash Wireshark on Ubuntu 7.10. (This
appears to be a bug in the Cairo library on that platform.)
Reported by Noam Rathaus.
Versions affected: 0.6.0 to 0.99.7
The following bugs have been fixed:
o Wireshark could crash when saving I/O graphs.
o Wireshark could crash when editing table-based preferences.
o Wireshark could crash when trying to play RTP streams.
o Wireshark could crash when trying to apply a display filter
macro.
o Wireshark could crash in Turkish and other locales.
New and Updated Features
The following features are new (or have been significantly
updated) since the last release:
o You can now have multiple configuration profiles.
o Temporary coloring rules have been added, which let you color
or filter on a conversation.
o I/O graphs have been improved.
o Wireshark now has WLAN traffic statistics.
o The Wireshark GUI now supports RPCAP.
o Conversations and endopoints can now be limited to the current
display filter.
o Experimental support for the NTAR/PcapNG file format has been
added.
New Protocol Support
AiroPeek Remote Capture, China Mobile Point to Point, Distributed
Lock Manager 3, EUTRAN X2 Application Protocol, Fieldbus
Foundation, International Passenger Airline Reservation
System/Airline Link Control, Microsoft DirectPlay, Path
Computation Element communication Protocol, Real Time Messaging
Protocol, S1 Application Protocol, Scripting Service Protocol,
Societe Internationale de Telecommunications Aeronautiques, Unisys
Transmittal System, Wi-fi Protected Setup,
Updated Protocol Support
3G A11, 3GPP, ACN, ACP133, ALCAP, AMR, ANSI A, ANSI IS-637-A, ANSI
MAP, ARP, ASAP, AVS WLAN, BACapp, BER, BOOTP, Bluetooth (HCI ACL,
HCI CMD, HCI EVT, HCI SCO, L2CAP, SDP), CDP, CFM, CMS, COPS,
Camel, Cisco ERSPAN, DAP, DCERPC SPOOLSS, DCERPC, DHCP, DHCPv6,
DIAMETER, DMP, DTLS, E.164, EAP, ENIP, ENRP, EtherCAT, Ethernet,
FMP, FTAM, GMRP, GRE, GSM MAP, GSM SMS, GSS-API, GTP, Gryphon,
H.223, H.225, H.245, H.263, H.264, H.460, HCI H1, HTTP, ICMP, IEEE
802.11, IGMP, IPP, ISAKMP, ISUP, JFIF, JPEG, JXTA, Kerberos, LDAP,
MP2T, MS MMS, MTP3MG, NBAP, NFS, NHRP, NetFlow, P7, PER, PIM,
PKCS12, PPPoE, PTP, P_Mul, Q.932, Quakeworld, RANAP, RMT ALC, RMT
LCT, ROS, RPC, RPL, RRC, RTCP, RTP, SCCP, SCTP, SDP, SLL, SMB,
SMB2, SMPP, SMTP, SNMP, SRVLOC, SSL, STUN2, T.38, TCAP, TCP, TFTP,
TiVoConnect, UCP, UDP-Lite, USB, VLAN, WBXML, X.411, X.420,
X.509if, X.509sat
New and Updated Capture File Support
Catapult DCT2000, DBS Etherwatch, NTAR/PcapNG, TamoSoft CommView,
Visual Networks