« Previous Next »

Thread: how can i query netmon capture files to get processID

Last post 09-29-2009 12:08 PM by besmart. 2 replies.

Average Rating Rate It (5)

RSS

Page 1 of 1 (3 items)

Sort Posts:

  • 09-18-2009, 4:20 PM

    • besmart
    • Not Ranked
    • Joined on 07-25-2008, 12:11 PM
    • Posts 9

    how can i query netmon capture files to get processID

    i use netmon version 3.3

    when i run logparser  -h -i:NETMON , i didn't find processId field

    how can i query netmon  capture files to get processID

  • 09-28-2009, 11:43 AM In reply to

    • ksingla
    • Top 25 Contributor
    • Joined on 06-14-2006, 3:02 AM
    • Redmond, WA
    • Posts 863

    Re: how can i query netmon capture files to get processID

    ProcessId is not in the list of fields in logparser help when input is netmon. Its probably not extracted from netmon logs because its not even available. If you know that ProcessId is available, can you paste the some part of the log and I can help you write the query to extract the information.

    Thanks,
    Kanwal

    Follow me on twitter at http://twitter.com/kjsingla
  • 09-29-2009, 12:08 PM In reply to

    • besmart
    • Not Ranked
    • Joined on 07-25-2008, 12:11 PM
    • Posts 9

    Re: how can i query netmon capture files to get processID

    Thanks  Kanwal.

     when i use the netmon, and save to cap file , i see on the tree , the process name , and i can view the traffic for that process only.

    so i assume that process name on the cap file.

    can i know the file format of the cap file.

Page 1 of 1 (3 items)
Microsoft Communities