转:http://www.cnblogs.com/findyou/p/3491035.html
写的相当详细且完整,业界良心。
adb push d:\tcpdump /data/local/
adb pull /sdcard/ThinkDrive.pcap E:\ //不行
adb pull /sdcard/ThinkDrive.pcap . //可以
/data/local/tcpdump -p -vv -s 0 -w /sdcard/momo0717_2100.pcap
//wiresshark的过滤语句
ip.dst==10.66.117.231 && tcp.dstport==37620 && ip.src==14.215.231.166 && tcp.srcport==80