Wireshark is one of the tools or applications of "Network Analyzer" or Network Analyzer. The Network Performance Analyzer can cover many things, from capturing packets of data or information passing through the network, to sniffing (obtaining important information such as email passwords, etc.). Wireshark itself is a free tool for Network Analyzer that exist today. And the look of this wireshark itself is quite friendly with the user because it uses a graphical display or GUI (Graphical User Interface).
Actually Wireshark is not designed for hackers. Its main function is not intended for hacking. Wireshark is primarily created for Network Administrators to be able to track what's happening within their network or to make sure the network is working properly, and no one does anything bad on the network.
as for how the work of the wire shark itself consists of two stages:
1. Record all packets that pass through the selected interface (Interface is a device connecting between networks, via wifi or ethernet / lan card)
2.The results of the tape can be analyzed. here we can filter out what protocol we want like tcp, http, udp and so on. Wireshark can also record cookies, posts and requests.
The package recorded by wireshark is a package through our interface only. That's why you can not record the data packets of friends next to you when both are connected on the same network. This is very often the case because many do not know how to work wireshark
source
Lack of wire shark :
In Windows OS, wireshark application can not detect wireless driver because it is in library wincap can not detect it. Even if it can, this driver is known by the name of Microsoft. Running will only get the packet over the WLAN protocol (802.11). the radiotab package and IEEE 802.11 can not be detected properly.聽