# whereis trafshow trafshow: /usr/local/bin/trafshow /usr/local/man/man1/trafshow.1.gz /usr/ports/net/trafshow # cd /usr/ports/net/trafshow ; make ; make install ; make clean # /usr/ports/devel/ncurses # /usr/ports/net/ettercap ACC3-NOC# ./ettercap Loading plugins... Done. Building host list for netmask 255.255.255.252, please wait... Sending 3 ARP request... Listening for replies... Resolving 2 hostnames... SSH1 support : you can sniff User and Pass, and even the data of an SSH1 connection. ettercap is the first software capable to sniff an SSH connection in FULL-DUPLEX