基于python的npcap库与dpkt库实现抓包及存储
import pcap
import dpkt
import socket
import sys
import getopt
import os
"""实现了捕获底层数据包并储存为pcap文件"""
devs = pcap.findalldevs()
pc = pcap.pcap(devs[4], promisc = True, immediate = False, timeout_ms = 50)
pcap_filepath = 'capyuretest.pcap'
pcap_file = open(pcap_filepath,'wb')
writer = dpkt.pcap.Writer(pcap_file)
try:
counts = 0
for ptime, pdata in pc:
writer.writepkt(pdata, ptime)
counts += 1
except KeyboardInterrupt as e:
writer.close()
pcap_file.close()
if not counts:
os.remove(pcap_filepath)
print('%d packets received'%(counts))