Reply To: Need to know what application is associated with a packet

Home Forums Discussions Support Portal Need to know what application is associated with a packet Reply To: Need to know what application is associated with a packet

#5472

sanjeev
Participant

Thanks a lot Smilish. I have bought the winpkfilter driver and downloaded the trial version of TDI filter for NT platform. I know I’m not so technicaly strong in this area 🙁 . Can you please tell me 2 things.

1. How to identify underlaying services (e.g. http, dns. as per your sugession I need to trap DNS request only) request and modify the DNS request.

2. How to compare data in INTERMEDIATE_BUFFER as the data is in other format. In example PassThru we can block the packet based on data contents. But contents are not in readable format. I want to search a specific word within packet data if word found then drop this packet.

Thanks in advance..