For HTTP files:
1. open the
.pcap
file in Wireshark2. go to
File -> Export Objects -> HTTP...
3. a file list would pop-up and you can save the desired files
For FTP files:
1. look for the
FTP-DATA
protocol block of the file you are interested in2. right-click,
Follow > TCP Stream
3. change Show and save data as
Raw
4. click
Save as...
5. enter the expected file name and extension
No comments:
Post a Comment