[Winpcap-users] Winpcap in Intanium machine

Renato Araújo Ferreira marina.peixe at terra.com.br
Wed Oct 7 13:07:54 PDT 2009

 I added the reference to IA64 in NPF.RC VERSIONINFO with:

#elif defined(_IA64_)
   VALUE "FileDescription",   "npf.sys (NT5/6 IA64) Kernel Driver"

After I changed the refferences to AMD64 (appear only two times and refers to hUserEvent32Bit) from:

#ifdef _AMD64_


#if defined(_AMD64_) || defined(_IA64_)

The compilation was sucessful, the "net start npf" works fine and the interfaces is now appearing in return of "windump -D". But when I tried to open wireshark, the interface list was OK showing all of then, but before I click at buttom to start capture (i think that was when it started to count packets) the server went down with this message:

*** STOP: 0x0000008E (0xFFFFFFFF80000002,0xE00001626B738834,0xE000016276387410,0x0000000000000000)

***       NPF.sys - Address E00001626B738834 base at E00001626B730000, DateStamp 4acce5bf

I'm still trying with the DLL's (wpcap.dll and packet.dll) that I got unpacking the installer, but they has the same name and I dont know if I choose the right one between vista, 2000 or amd64.

I will now try to compile these DLL's before try again.


Renato A. Ferreira

More information about the Winpcap-users mailing list