Wireshark-users: Re: [Wireshark-users] PID as column on Wireshark
From: Martin Visser <martinvisser99@xxxxxxxxx>
Date: Mon, 28 Sep 2009 10:00:29 +1000
I'm afraid not. Wireshark works on a network interface level, analysing packets that as they pass by. It has no knowledge of the process sending and receiving packets.

The only program that I that can do this is Microsoft Network Monitor, which of course only runs on Windows (and obviously has hooks into the host operating system)

Regards, Martin

MartinVisser99@xxxxxxxxx


On Mon, Sep 28, 2009 at 9:01 AM, IT eSTUDANT <root.ng@xxxxxxxxx> wrote:
Dear

I would like to put the Process ID as a column item to be displayed on Wireshark. I`ve looking around but didn`t get answer. Is this possible?

Thank you

___________________________________________________________________________
Sent via:    Wireshark-users mailing list <wireshark-users@xxxxxxxxxxxxx>
Archives:    http://www.wireshark.org/lists/wireshark-users
Unsubscribe: https://wireshark.org/mailman/options/wireshark-users
            mailto:wireshark-users-request@xxxxxxxxxxxxx?subject=unsubscribe