Split and capture data on windows

Foreword: When viewing the captured packet data, the data of the packet is often too large, which will cause the system to become stuck and affect the efficiency. Now teach you to use a method, you can directly split the data packet on windows. The operation is as follows:

1. Put the data package on the D drive, use the administrator authority to open the command line and enter the D drive.

Insert picture description here

2. Enter the command
"C:\Program Files\Wireshark\editcap" -i  60  mstp712020_0910_1626_56.pcap output.pcap
#注意了C:\Program Files\Wireshark是抓包工具所在文件夹,60代表以60秒为一个时间段进行分割

Then open the D drive and you can see a lot of output.pcap output packages, select the package you want for the time period and it's ok!

Guess you like

Origin blog.csdn.net/qq_43316775/article/details/111686607