You can create a filter that manually looks at the mac address fields in the ethernet header. Here is what the normal 'ether host 11:22:33:44:55:66' looks like in BPF code:

So in your case, you want to look at the ethernet destination address, which starts at offset o in the ethernet header and you will need the first 4 octets. This can be done with ether[0:4], then you need to mask all the bits in which you are not interested, this can be done with ether[0:4] & 0xffffff0f. Then compare this with your specific address range 0x0009fb06. The same goes for the ethernet source address which can be found at offset 6. This will result in the filter:

This filter will result in the following BPF code:

