Windows 10 has an integrated network sniffer called pktmon

Posted on Tuesday, May 19 2020 @ 12:38 CEST by Thomas De Maesschalck
MSFT logo
Bleeping Computer pulls attention to the fact that Microsoft added a network packet sniffer to Windows 10 with the release of the October 2018 Update. This feature has gone pretty unnoticed since then, it's a small tool that can be used by administrators to diagnose network issues and see what type programs are used on the network. Furthermore, this sort of software can also be used to snoop on traffic that doesn't use encryption. Called Packet Monitor, this new tool can be used via the command line by executing pktmon. It's a light-weight alternative to Wireshark and Microsoft Network Monitor.
This program has a description of "Monitor internal packet propagation and packet drop reports", which indicates it is designed for diagnosing network problems.

Similar to the Windows 'netsh trace' command, it can be used to perform full packet inspection of data being sent over the computer.


About the Author

Thomas De Maesschalck

Thomas has been messing with computer since early childhood and firmly believes the Internet is the best thing since sliced bread. Enjoys playing with new tech, is fascinated by science, and passionate about financial markets. When not behind a computer, he can be found with running shoes on or lifting heavy weights in the weight room.



Loading Comments