Free version of NetWitness Investigator released - try it if you use Wireshark

Discussion in 'other anti-malware software' started by MrBrian, Nov 17, 2008.

Thread Status:
Not open for further replies.
  1. MrBrian

    MrBrian Registered Member

    Joined:
    Feb 24, 2008
    Posts:
    6,032
    Location:
    USA
    See http://www.netwitness.com/products/investigator.aspx

    Credit to http://isc.sans.org/diary.html?storyid=5351 for bringing it to my attention.

     
    Last edited: Nov 17, 2008
  2. jmonge

    jmonge Registered Member

    Joined:
    Mar 20, 2008
    Posts:
    13,744
    Location:
    Canada
  3. Meriadoc

    Meriadoc Registered Member

    Joined:
    Mar 28, 2006
    Posts:
    2,642
    Location:
    Cymru
    jmonge it's a sniffer for network traffic.

    Thanks MrBrian. Looks a good tool.

    edit : Had some time and discovered that this is quite a nice sniffer.
     
    Last edited: Nov 18, 2008
  4. MrBrian

    MrBrian Registered Member

    Joined:
    Feb 24, 2008
    Posts:
    6,032
    Location:
    USA
    It's for analyzing network data.
     
  5. ThunderZ

    ThunderZ Registered Member

    Joined:
    May 1, 2006
    Posts:
    2,459
    Location:
    North central Ohio, U.S.A.
    Basically it is a network monitoring tool.
     
  6. vijayind

    vijayind Registered Member

    Joined:
    Aug 9, 2008
    Posts:
    1,413
    Thanks MrBrain, I tried it. Maybe its good for home or single PC use, I tried to check on the network for the the ARP flood and BAM !! my system became slow as hell !!

    I think WireShark/Ethereal is still best for high volume traffic. Thats my observation.
     
  7. MrBrian

    MrBrian Registered Member

    Joined:
    Feb 24, 2008
    Posts:
    6,032
    Location:
    USA
    You're welcome :)

    By the way, the listed minimum specs for processor: "Single 2Ghz Intel-based processor (Dual-core recommended)"
     
  8. vijayind

    vijayind Registered Member

    Joined:
    Aug 9, 2008
    Posts:
    1,413
    My laptop is a Core2 Duo 2.2Ghz with 2GB RAM, still seems be the lower end of the specs spectrum for NetWitness.:doubt:

    Should have looked the minimum specs up, before babbling :mad:
    But with such high specs, I wonder where they are aiming with product ??
     
  9. jmonge

    jmonge Registered Member

    Joined:
    Mar 20, 2008
    Posts:
    13,744
    Location:
    Canada
    ah i see thanks for repliying:thumb:
     
  10. jmonge

    jmonge Registered Member

    Joined:
    Mar 20, 2008
    Posts:
    13,744
    Location:
    Canada
    thanks
     
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.