Process Monitor: Display and Capture Filtering

It's the ability to use sophisticated filters when analyzing network traces that makes Wireshark so powerful. Luckily, procmon has display and capture filtering that's very similar.

In this week's blog we take a look at the basics of Process Monitor filtering. We also discover how we can add and remove columns from the summary pane.

In the next blog we'll explore filtering a bit further and look at some neat shortcuts.

Best regards...Paul

