Extracting Files from PCAPs with Wireshark // Lesson 9 // Wireshark Tutorial @ChrisGreer
Extracting Files from PCAPs with Wireshark // Lesson 9 // Wireshark Tutorial  @ChrisGreer
Uploaded October 2021 | Updated September 2026, 4 hours ago
If we are doing a CTF or performing Malware analysis with Wireshark, we usually need to extract files from PCAPs at some point. In this video, we will look at how to do it.

Download the sample trace file here:
community.cloudshark.io/captures/a9472fbe700a
(Select Export | Download to pull the trace down locally)

Please smash the like button to let me know if you enjoy this content!

// Get Wireshark Certified //
Check out the official training course
📘 GET TRAINING: packetschool.teachable.com/l/pdp/official-wireshark-certified-analyst?coupon_code=PACKETHEAD50

== Private Wireshark Training ==
Let's get in touch - packetpioneer.com/product/private-virtual-classroom
Extracting Files from PCAPs with Wireshark // Lesson 9 // Wireshark TutorialQuick filtering with Wireshark - Drag n DROP!Let’s learn TCP Duplicate AcknowledgementsHow TCP Works - Window Scaling GraphHow TCP Works - The HandshakeSharkfest 2013 - Inside the TCP Handshake (Betty DuBois)How TCP RETRANSMISSIONS Work // Analyzing Packet LossHOW QUIC WORKS - Intro to the QUIC Transport ProtocolTCP Duplicate Acks Explained // How to Troubleshoot ThemThe TOP THREE Wireshark Filters! #shortsAnalyzing Conversations - Wireshark QUICK TIP!TCP Congestion Control // Hands-On Deep Dive TCP Analysis with Wireshark
Chris Greer |

Extracting Files from PCAPs with Wireshark // Lesson 9 // Wireshark Tutorial

SHARE TO X SHARE TO REDDIT SHARE TO FACEBOOK WALLPAPER