Lines Matching full:capture
4 # sniffer: file(1) magic for packet capture files
10 # Microsoft Network Monitor 1.x capture files.
12 0 string RTSS NetMon capture file
23 # Microsoft Network Monitor 2.x capture files.
25 0 string GMBU NetMon capture file
41 # Network General Sniffer capture files.
42 # Sorry, make that "Network Associates Sniffer capture files."
43 # Sorry, make that "Network General old DOS Sniffer capture files."
45 0 string TRSNIFF\040data\040\040\040\040\032 Sniffer capture file
61 # Cinco Networks NetXRay capture files.
62 # Sorry, make that "Network General Sniffer Basic capture files."
63 # Sorry, make that "Network Associates Sniffer Basic capture files."
65 # Sniffer Pro", capture files."
66 # Sorry, make that "Network General Sniffer capture files."
67 # Sorry, make that "NetScout Sniffer capture files."
69 0 string XCP\0 NetXRay capture file
79 # "libpcap" capture files.
81 # (We call them "libpcap capture file(s)", as "libpcap" is
83 # that use "libpcap", or that use the same capture file format.)
262 >20 belong&0x03FFFFFF 279 (Elektrobit High Speed Capture and Replay (EBHSCR)
281 >16 belong x \b, capture length %u)
284 0 ubelong 0xa1b2c3d4 pcap capture file, microseconds ts (big-endian)
287 0 ulelong 0xa1b2c3d4 pcap capture file, microsecond ts (little-endian)
292 0 ubelong 0xa1b23c4d pcap capture file, nanosecond ts (big-endian)
295 0 ulelong 0xa1b23c4d pcap capture file, nanosecond ts (little-endian)
300 # "libpcap"-with-Alexey-Kuznetsov's-patches capture files.
302 0 ubelong 0xa1b2cd34 pcap capture file, microsecond ts, extensions (big-endian)
304 0 ulelong 0xa1b2cd34 pcap capture file, microsecond ts, extensions (little-endian)
308 # "pcapng" capture files.
314 >8 ubelong 0x1a2b3c4d pcapng capture file
318 >8 ulelong 0x1a2b3c4d pcapng capture file
323 # AIX "iptrace" capture files.
325 0 string iptrace\0401.0 AIX iptrace capture file
326 0 string iptrace\0402.0 AIX iptrace capture file
329 # Novell LANalyzer capture files.
346 >0 leshort x Novell LANalyzer capture file
368 # HP-UX "nettl" capture files.
374 0 string \x00\x00\x00\x01\x00\x00\x00\x00\x00\x07\xD0\x00 HP/UX 9.x nettl capture file
378 0 string \x54\x52\x00\x64\x00 HP/UX nettl capture file
405 # RADCOM WAN/LAN Analyzer capture files.
407 0 string \x42\xd2\x00\x34\x12\x66\x22\x88 RADCOM WAN/LAN Analyzer capture file
418 # *Peek tagged capture files.
420 0 string \177ver EtherPeek/AiroPeek/OmniPeek capture file
423 # Visual Networks traffic capture files.
425 0 string \x05VNF Visual Networks traffic capture file
428 # Network Instruments Observer capture files.
430 0 string ObserverPktBuffe Network Instruments Observer capture file
441 # Note: called "5View capture" by TrID and
442 # "Wireshark capture file" on Windows or
443 # "Packet Capture (Accellent/InfoVista 5view)" by shared MIME-info database
452 >0 ulelong x 5View capture file
462 # filetype; type of the capture file like: 18001000h