LOCAL NETWORK FORENSICS

See which apps appear in a capture

Inspect an authorized PCAP and receive evidence-backed Android and iOS app suggestions. Sign in with your approved Google account to access the analyser.

QUICK GUIDE

From capture to evidence in three steps

01

Select the capture

Choose or drag in a .pcap or .pcapng file you are authorized to inspect.

02

Confirm the device

Select the phone or its NAT host from the ranked private IP addresses. The suggested address has the strongest traffic signal.

03

Review the evidence

Compare suggested apps, confidence, identification method, activity timestamps, domains, request order, and directly visible identifiers.

TRY A REAL EXAMPLE

Inspect the capture and compare the report

Download a labeled capture used by the active model. Use it in PCAP Analyser, then compare your result with the report generated from its real network evidence.

PCAP

Example capture

A real Android training capture labeled as Solitaire Associations Journey.

Download PCAP
REPORT

Example analysis

Review the model result, confidence, activity periods, supporting signals, and contacted domains.

View report

PRIVATE BY DESIGN

Your capture stays in the analysis environment

Raw uploads are removed after inspection, cancellation, or failure. Results are estimates: encrypted or shared background traffic can affect accuracy.