Microolap TCPDUMP for Windows® 4.9.2

Command-line sniffer (packet capture tool) for Windows®

TCPDUMP for Windows® is a clone of TCPDUMP, the most used network sniffer/analyzer for UNIX, compiled with the original tcpdump code (tcpdump.org), and Microolap Packet Sniffer SDK (no libpcap/WinPcap).

TCPDUMP for Windows® uses almost the same stack of network traffic capture technologies as EtnerSensor, the network traffic analysis platform that helps our customers solve many Security Operation Center tasks in combination with DLP, SIEM, U(E)BA, eDiscovery, Enterprise Archiving, and DAG systems.

What does it look like?

Nothing unusual: it looks the same as on Unix-like operating systems.

The main features of the TCPDUMP for Windows®

Microolap TCPDUMP for Windows® accurately reproduces all features of the original tcpdump by LBNL's Network Research Group, developed for the UNIX systems.

Since Microolap TCPDUMP for Windows® is compiled with the Packet Sniffer SDK, it has the following advantages:

It is portable

Microolap TCPDUMP for Windows® does not require installation and could be ran from any removable device: it is compiled with Packet Sniffer SDK, so no pre-installed third-party packet capture drivers are required. Just run tcpdump.exe, and use original tcpdump command-line interface you're already familiar with.


Here is a list of the Windows family operating systems supported by Microolap TCPDUMP for Windows®: Windows XP, WinXP x64, Windows Vista, Vista x64, Windows 2003, Win2003 x64, Windows 2008, Windows 2012, Windows 8, Windows 10, Windows Server 2016. Please let us know if any of the Windows updates shortens this list.

Small footprint

Microolap TCPDUMP for Windows® comes as a single 600Kb .EXE file, that could be uploaded to a remote Windows PC box network traffic of which you need to analyze, and then run it using any remote administration tool.

TCPDUMP for Windows version 4.9.2

TCPDUMP for Windows version 4.9.2

TCPDUMP for Windows version 4.5.1

TCPDUMP for Windows version 4.5.1 (PSSDK 6.1): Loopback adapter support is disabled.

TCPDUMP for Windows version 3.9.8

TCPDUMP for Windows version 3.9.8 (PSSDK 4.1)

TCPDUMP for Windows version 3.9.8

TCPDUMP for Windows version 3.9.8 (PSSDK 4.0).

TCPDUMP for Windows version 3.9.7

TCPDUMP for Windows version 3.9.7 (PSSDK 3.1.1)

