The Files view displays the files that have been written to disk from the captures. You can perform a Forensic search on these files, or download the files to view in other applications.
The parts of the Files view are described below.
- Files: Displays the list of files for each capture and the total number of files that have been written to disk. Select the menu to the right of each line to view additional options. In the header, additional options lets you choose the columns to display. In the list of files, additional options lets you choose a Forensic search, Download, Delete, Move, and Copy.
- Search: Type the text string to search for in the list of files.
- Open file: Select to upload a capture file and display the Forensic Search dialog.
- Upload Packets: Select to upload a capture file.
- Synchronize: Select to synchronize all files on disk with the packet file database.
- Expand all: Select to expand the list of files displayed.
- Collapse all: Select to collapse the list of files displayed.
- Group by: Select how you want the list of files grouped.
- Refresh: Select to refresh the view.