Nmap Development mailing list archives

Re: npcap causing no network connectivity for a minute or two after boot on Win 7 32


From: 食肉大灰兔V5 <hsluoyz () gmail com>
Date: Wed, 7 Sep 2016 17:53:10 +0800

OK.

On Wed, Sep 7, 2016 at 5:38 PM, Michael D. Lawler <mdlawler () lawlers us>
wrote:

This version works perfectly.

At 01:03 AM 9/7/2016, you wrote:

Please try this version:Â https://github.com/nmap/npcap/
releases/download/v0.09-r3/npcap-0.09-r3-no-wifi.exe

On Wed, Sep 7, 2016 at 11:34 AM, Michael D. Lawler <mdlawler () lawlers us>
wrote:
Here are the logs

At 11:20 PM 9/6/2016, you wrote:

Hi,

On Wed, Sep 7, 2016 at 9:12 AM, Michael D. Lawler <mdlawler () lawlers us>
wrote: I'll be glad to get you the logs.  Can I just attach them in a
zip to a message sent directly to you?  Did you see this folow up
message?


OK. You can zip them and send the zip to me.
 I believe I've proven my install theory.  I've done the
following:   1.  Install 0.08-R9. 2.  Make a copy of
c:\program files\npcap to c:\program files\npcap.good and
c:\windows\system32\npcap to c:\windows\system32\npcap.good. 3.ÂÂ
Remove 0.08-R9. 4.  Install 0.09-R3. 5.  Make a copy of c:\program
files\npcap to c:\program files\npcap.bad and c:\windows\system32\npcap to
c:\windows\system32\npcap.bad. 6.  Remove 0.09-R3. 7.  Install
0.08-R9. 8.  stop the service net stop npcap. 9.  Rename c:\program
files\npcap to c:\program files\npcap.test and c:\windows\system32\npcap to
c:\windows\system32\npcap.test.  This preserves my 0.08-R9 install so
I can rename it back and cleanly remove. 10.  Rename
c:\program\files\npcap.bad to c:\program files\npcap and
c:\windows\system32\npcap.bad to c:\windows\system32\npcap.  This is
really 0.09-R3.


There's no use to copy the "C:\Program Files\Npcap" files. Actually those
files have no use after Npcap's installation. Only the installed driver
(not the sys file in drivers folder) and the DLLs (Packet.dll, wpcap.dll in
System32/SysWOW64) matter. But your disconnecting seems to have no relation
with DLLs. Can you split the steps and see which step is really mattering?
 11.  Copy c:\program files\npcap\npcap.sys to
c:\windows\system32\drivers.  This puts back the 0.09-R3 driver.


This is definitely NOT right. Because the Npcap driver needs to be
installed via NPFInstall.exe (NetCfg API). It can't be just copying the sys
file. Your working again won't be affected by this 11. step. You can omit
this step and redo again. Your result won't change.

Cheers,
Yang
 12.  Reboot and everything works correctly.  This procedure
allows me to run 0.09-R3 with the install from 0.08-R9 and it works
something must have changed in what the install does between 0.08-R9 and
0.08-R10 which is causing my problem. Â
At 08:24 PM 9/6/2016, you wrote:

Hi Michael,
Thanks for reporting this. Please install the latest Npcap 0.09 r3, and
provide your DiagReport output, install.log and setupapi.dev.log. They are
described here:Â https://htmlpreview.github.io/?https://github.com/nmap/
npcap/blob/master/docs/npcap-guide-wrapper.html#npcap-issues

Cheers, Yang
On Tue, Sep 6, 2016 at 9:39 PM, Michael D. Lawler <mdlawler () lawlers us>
wrote: If I use npcap 0.8-R9 everything works fine.   Versions
0.08-R10 through 0.09-R3 have the problem.  The pproblem happens
whether or not I set the npcap driver to load at boot or not.  When
I use the problematic versions and boot I have no network connectivity for
a minute or two (I haven't timed it down to the second) and then network
connectivity just starts working on it's own.  If I set the driver
not to start at boot and then once the system boots I do

net start npcap The driver starts, but connectivity still is not
available.  If I uninstall npcap while there is no connectivity then
connectivity returns immediately upon the uninstall.  My guesss is
that something changed between 0.08-R9 and 0.08-R10 in the way the driver
is registered in the registry that is causing my problem, but I don't know
where to look further. -- Michael D. Lawler email
mailto:mdlawler () lawlers us <mdlawler () lawlers us>
_______________________________________________ Sent through the dev
mailing list https://nmap.org/mailman/listinfo/dev Archived at
http://seclists.org/nmap-dev/

--
Michael D. Lawler
email mailto:mdlawler () lawlers us
<mdlawler () lawlers us>
--
Michael D. Lawler
email mailto:mdlawler () lawlers us
<mdlawler () lawlers us>

--
Michael D. Lawler
email mailto:mdlawler () lawlers us
<mdlawler () lawlers us>

_______________________________________________
Sent through the dev mailing list
https://nmap.org/mailman/listinfo/dev
Archived at http://seclists.org/nmap-dev/

Current thread: