1. Linux
2. Windows
-
Download the latest stable versions from https://www.wireshark.org/download.html.
2.1. Portable
-
Install WinPcap.
-
Run the WiresharkPortable_2.6.6.paf.exe file.
-
Select English.
-
Click OK.
-
Click Next.
C:\WiresharkPortable
-
Click Install.
□ Run Wireshark Portable
-
Click Finish.
2.2. Installation
-
Install WinPcap.
-
32-bit: Run the Wireshark-win32-2.6.6.exe file with administrative privileges.
-
64-bit: Run the Wireshark-win64-2.6.6.exe file with administrative privileges.
-
Click Next.
-
Click I Agree.
-
Expand Plugins & Extensions.
-
Expand Tools.
-
Check Tools | UDPdump.
■ Wireshark ■ TShark □ Wireshark 1 ■ Plugins & Extensions ■ Dissector Plugins ■ Tree Statistics Plugin ■ Mate - Meta Analysis and Tracing Engine ■ TRANSUM - network and application performance analysis ■ File type plugins - capture file support ■ Codec plugins ■ Configuration Profiles ■ SNMP MIBs ■ Tools ■ Editcap ■ Text2Pcap ■ Mergecap ■ Reordercap ■ DFTest ■ Capinfos ■ Rawshark ■ MMDBResolve □ Androiddump □ SSHdump ■ UDPdump □ Randpktdump ■ User’s Guide -
Click Next.
-
Uncheck Wireshark Quick Launch Icon.
Create Shortcuts ■ Wireshark Start Menu Item □ Wireshark Desktop Icon □ Wireshark Quick Launch Icon □ Wireshark Legacy Start Menu Icon □ Wireshark Legacy Desktop Icon □ Wireshark Legacy Quick Launch Icon File Extensions ● Associate trace file extensions to Wireshark ○ Associate trace file extensions to Wireshark Legacy ○ None
-
Click Next.
C:\Program files\Wireshark
-
Click Next.
□ Install WinPcap 4.1.3
-
Click Next.
□ Install USBPcap 1.2.0.4
-
Click Install.
-
Click Next.
□ Run Wireshark 2.6.6 64-bit □ Show News
-
Click Finish.
2.3. Usage
-
Portable: Start Wireshark (C:\WiresharkPortable\WiresharkPortable.exe).
-
Installed: Start Wireshark.
-
Select Capture | Interfaces.
-
Check Local Area Connection.
-
Click Close.
-
Select Capture | Start.
-
Select Edit | Find Packet.
-
Choose String.
Filter: <some password>
-
Close Wireshark.
-
Click Find.
-
Start Wireshark.
-
Select Local Area Connection.
-
Click Expression.
-
Select WOL - Wake On LAN.
-
Click OK.
-
Select Capture | Start.
-
Wait.
-
Select Capture | Stop.
-
Close Wireshark.