What is WinPcap?

WinPcap is software application developed by Riverbed Technology, Inc.. It is most commonly found on computers running Windows 7 with nearly 50.93% of installations running this operating system. WinPcap's installer is typically 469.00 MB in size and installs around 14 files. The most common release is 4.1.0.2980 with 38.09% of all installations currently using this version.

WinPcap is most popular in the United States with 41.02% of installations residing in this country.

WinPcap adds 1 scheduled task to the Windows Task Scheduler launching the program at randomly scheduled times. When using a computer that is connected to the internet, WinPcap is known to create 1 firewall exception to allow inbound and outbound connectivity.

About WinPcap?

WinPcap is a Windows-compatible version of the libpcap library and includes a driver for packet capturing support. It provides implementations of a lower-level library for various operating systems to communicate with the respective drivers. Additionally, WinPcap incorporates a port of libpcap that utilizes the API offered by the low-level library implementations. This software utilizes NDIS to directly read packets from a network adapter.

Software Behaviors

Services:
  • rpcapd.exe runs as a service named 'rpcapd' (rpcapd) "Allows to capture traffic on this machine from a remote machine.".
Firewall:
  • Uninstall.exe is added as a firewall exception for 'C:\Program Files\WinPcap\Uninstall.exe'.
Scheduled tasks:
  • rpcapd.exe is scheduled as a task with the class '{6A94A70F-DA5E-4E9D-958C-AEF0E27CCAAA}' (runs on registration).

Software Details

URL:
https://www.riverbed.com
Support:
Installation path:
C:\Program Files\winpcap
Uninstaller:
C:\Program Files\WinPcap\uninstall.exe
Size:
469.00 MB
Language:
English

WinPcap Executable Details

Primary executable:
uninstall.exe
Name:
WinPcap
Path:
C:\Program Files\winpcap\uninstall.exe
MD5:
c0f94449e113fa3f7eb420c64108b58b
SHA-1:
SHA-256:
Files installed by WinPcap
File Type Filename MD5
DLL
837e1ef227c1985457c59247b0171cdf
EXE
9060131650c1225693671dd8e99c42fd
EXE
a4dce14b8c4c3626b4f0b3511bb91e4f
EXE
7e230d5b17cb188f2659805c8f4e25f6