Hi,
If you are talking about the packet timestamps they are delivered by Winpcap 
together with the packet data in case of real time capturing.
Google "winpcap time stamps" for further reading.
Regards
Anders

From: [email protected] 
[mailto:[email protected]] On Behalf Of Vishnu Bhatt
Sent: den 26 juni 2014 15:47
To: [email protected]
Subject: [Wireshark-dev] Absolute arrvial time of packet in wireshark

Hello,

I need to know how does Wireshark gets the absolute arrival time of a packet in 
windows system? I saw in the code and found that GetSystemTimeAsFileTime() is 
used to get the system time in windows but the code at that point doesn't hit. 
From where is the time being taken by Wireshark while capturing?

Any help would be appreciated.

Thanks
"DISCLAIMER: This message is proprietary to Aricent and is intended solely for 
the use of the individual to whom it is addressed. It may contain privileged or 
confidential information and should not be circulated or used for any purpose 
other than for what it is intended. If you have received this message in error, 
please notify the originator immediately. If you are not the intended 
recipient, you are notified that you are strictly prohibited from using, 
copying, altering, or disclosing the contents of this message. Aricent accepts 
no responsibility for loss or damage arising from the use of the information 
transmitted by this email including damage from virus."
___________________________________________________________________________
Sent via:    Wireshark-dev mailing list <[email protected]>
Archives:    http://www.wireshark.org/lists/wireshark-dev
Unsubscribe: https://wireshark.org/mailman/options/wireshark-dev
             mailto:[email protected]?subject=unsubscribe

Reply via email to