This is our old Q&A Site. Please post any new questions and answers at ask.wireshark.org.

I want to assemble all tcp sessions from pcap file and save payload to file. I know about 2 decisions: 1)libnids 2) tcpflow, but all of them can be used only for linux. Could you advise me any such decision for windows.

asked 18 Oct '12, 14:24

vensan%20vega's gravatar image

vensan vega
1222
accept rate: 0%


If you are using Windows, Splitcap might be the one for you. You can download it from this link

permanent link

answered 07 Dec '12, 07:55

fates's gravatar image

fates
35459
accept rate: 0%

Your answer
toggle preview

Follow this question

By Email:

Once you sign in you will be able to subscribe for any updates here

By RSS:

Answers

Answers and Comments

Markdown Basics

  • *italic* or _italic_
  • **bold** or __bold__
  • link:[text](http://url.com/ "title")
  • image?![alt text](/path/img.jpg "title")
  • numbered list: 1. Foo 2. Bar
  • to add a line break simply add two spaces to where you would like the new line to be.
  • basic HTML tags are also supported

Question tags:

×752
×10
×6
×2

question asked: 18 Oct '12, 14:24

question was seen: 2,787 times

last updated: 07 Dec '12, 07:55

p​o​w​e​r​e​d by O​S​Q​A