Hi Keith,
Try NetworkMiner by NetreseC:
http://www.netresec.com/?page=NetworkMiner
Interesting links:
http://support.jodohost.com/showthread.php?t=11351
http://www.motobit.com/util/base64-decoder-encoder.asp
Best regards
Joke
On Sat, 24 Dec 2011 14:41:41 +0000 (GMT) Keith Roberts wrote:
>Hi All.
>
>Is it possible to use wireshark to reconstruct (file
>carving?) email messages and their MIME attachments send
>across a network card, and also things like multimedia
>downloaded via TCP/IP protocols please? If so, how do I go
>about doing this from within Wireshark?
>
>I'm talking about using a pcap file for this - not a live
>capture.
>
>Kind Regards,
>
>Keith Roberts