The tcpdump and wireshark utilities both use a well known packet capture format called Pcap. Pcap (packet capture) consists of an application programming interface (API) for capturing network traffic. Windows uses a port of libpcap known as WinPcap while Unix like systems uses pcp in the libpcap library.