How can I capture PTP / MTP / WPD traffic RRS feed

  • Question

  • Hi,

    I'm trying to investigate some protocol specifics for a PTP / MTP camera connected to Windows 10.

    The problems I'm facing are:

    • I can't get MTPMon to work, even when messing with permissions and run-as-admin it will not capture traffic
    • I followed the MSDN instructions to get NetMon up and running for post process captured traffic via enabling logman for WPD. In Contrary to the documentation I don't see the data payload sent and received.

    Any advice how to trace data sent and received for certain MTP commands? 


    Friday, April 15, 2016 8:52 AM

All replies

  •  I think USBLyzer captures MTP traffic.
    Tuesday, April 19, 2016 5:43 AM
  • You might try the Microsoft Message Analyzer (free download). It may support MTP, and if it doesn't, you can provide the protocol definition


    Azius Developer Training Windows device driver, internals, security, & forensics training and consulting. Blog at

    Tuesday, April 19, 2016 7:05 PM