p0f

Passive OS fingerprinting and masquerade detection tool

brewmacoslinux
Try with needOr install directly
Source

About

Versatile passive OS fingerprinting, masquerade detection tool

Commands

p0f

Examples

Capture and analyze packets on default interface$ p0f -i eth0
Read packets from pcap file and fingerprint OS$ p0f -r captured.pcap
Monitor traffic with verbose output and write to log$ p0f -i eth0 -w p0f.log -v