Network traffic in Process Monitor (TCP Connect/Send/TCPCopy/Recieve)

Jun Gao 5 Reputation points
2023-06-01T07:56:22.5633333+00:00

Hi, I'm using Process Monitor as well as Microsoft Network Monitor to monitor the Chrome process activities and network traffic for a file uploading failure issue troubleshooting. From the below screenshots, you can see there were many TCP Connect/Send/TCPCopy/Recieve activities in Process Monitor. However, when I checked the same in Microsoft Network Monitor, I don't see any traffic sent to this destination 52.80.148.132. So my question is, what do TCP Connect/Send/TCPCopy/Recieve mean here in Process Monitor? Can I understand the Chrome was trying to establish connection with 52.80.148.132 and send/recieve data? If yes, I have a confusion, why these activites were not capture in Microsoft Network Monitor...

Process Monitor filter

Process Monitor of Chrome process

destination 52.80.148.132

Microsoft Network Monitor 1

Microsoft Network Monitor 2

Sysinternals
Sysinternals
Advanced system utilities to manage, troubleshoot, and diagnose Windows and Linux systems and applications.
1,095 questions
0 comments No comments
{count} vote