

Like other protocol analyzers, Wireshark's main window shows 3 views of a packet. Wireshark recognizes this directly from the file the '.gz' extension is not required for this purpose. Wireshark is also capable of reading any of these file formats if they are compressed using gzip. There is no need to tell Wireshark what type of file you are reading it will determine the file type by itself. MPEG-2 Transport Streams as defined in ISO/IEC 13818-1.802.15.4 traces from Daintree’s Sensor Network Analyzer.Unigraf DPA-400 DisplayPort AUX channel monitor traces.Colasoft Capsa and PacketBuilder captures.Android Logcat binary and text format logs.Captures from Aethra Telecommunications' PC108 software for their test instruments.Tektronix K12 text file format captures.IBM Series (OS/400) Comm traces (ASCII & UNICODE).Gammu generated text output from Nokia DCT3 phones in Netmonitor mode.Linux Bluez Bluetooth stack hcidump -w traces.Endace Measurement Systems' ERF format captures.the output from InfoVista (previously Accellent) 5View LAN agents.Visual Networks' Visual UpTime traffic capture.the text output from the DBS Etherwatch VMS utility.the output from VMS’s TCPIPtrace/ TCPtrace/ UCX$TRACE utilities.the IPLog format output from the Cisco Secure Intrusion Detection System.the output from i4btrace from the ISDN4BSD project.Viavi (previously Network Instruments) Observer captures.LiveAction (previously WildPackets/Savvius) *Peek/ EtherHelp/ PacketGrabber captures.Network General/Network Associates DOS-based Sniffer captures (compressed or uncompressed).NETSCOUT (previously Network Associates/Network General) Windows-based Sniffer captures.Finisar (previously Shomiti) Surveyor captures.Oracle (previously Sun) snoop and atmsnoop captures.Wireshark can also read / import the following file formats: pcap format is also the format used by tcpdump and various other tools tcpdump, when using newer verions of the libpcap library, can also read some pcapng files, and, on newer versions of macOS, can read all pcapng files and can write them as well. Wireshark's native capture file formats are pcapng format and pcap format it can read and write both formats. It lets you interactively browse packet data from a live network or from a previously saved capture file. Wireshark is a GUI network protocol analyzer. Interactively dump and analyze network traffic Synopsis
