Wireshark is not the tool you are looking for. Check out https://docs.microsoft.com/en-us/sysinternals/