📦
Drop PCAP file here or click to browse
Supports .pcap · .pcapng · .cap | Max 200 MB | 100% local — no upload
.pcap.pcapng.capWiresharktcpdump
Protocol Distribution
Bandwidth Over Time (bytes/sec)
Packet Timeline (packets/interval)
TTL Distribution
Top Source IPs
Top Destination IPs
Packet Size Distribution
Top Ports
Conversation Heatmap (src IP × dst IP)
| # | Time (s) | Source | Destination | Proto | TTL | Len | Info | Hex |
|---|
Reconstructed TCP streams from captured data. Blue = client→server, Pink = server→client.
Node size = packet count. Drag nodes to reposition. Thicker edges = more traffic.
IP geolocation uses public ip-api.com — requires internet. Private/RFC1918 IPs shown as Local.
ICMP Type Breakdown
ICMP Code Distribution
⚠ For educational and authorised network analysis only. Only plaintext credentials visible in unencrypted protocols (FTP, Telnet, HTTP Basic) are detected.
🛡 VirusTotal IP Scanner — Your API key is pre-configured. Click "Scan All IPs" to check public IPs against VirusTotal database.
✓ API key ready
Images reconstructed from HTTP response traffic (Content-Type: image/*). Only real website images served over unencrypted HTTP are shown — not random binary data.
HTTPS/TLS traffic cannot be decoded.