Download

Download PCAP Surgery

Download the current desktop build of PCAP Surgery. This page is the official download entry for users who want to install, evaluate, or update the application.

When to use this page

PCAP Surgery is built for focused desktop work rather than a cloud account workflow. Use this page when you need the latest installer, want to confirm platform support, or need a stable link before activating a license.

Before installing

Check that your operating system matches the available build. If SmartScreen, Gatekeeper, antivirus software, or an endpoint policy blocks the app, verify that the installer came from this page and review the release notes before retrying.

License note

A license is not required just to read this page. If the product requires activation after install, use the license page for email, license key, offline use, and machine transfer details.

Hannes Software protocol diagnostics desktop tools for RTSP, USB, and PCAP workflows
PCAP editor
packet analyzer
anonymize PCAP
stable

Latest version 0.1.8

Scope-aware export preflight, bounded privacy evidence, and review reports tied to the exact artifact plan.

Windows1

Use the NSIS setup executable for the Windows desktop build.

  • Windows setup pcap-surgery-0.1.8-windows-x64-setup.exe v0.1.8 · x86_64 · 4.3 MB 8679ba2b96a0b1a588ce1cfef00d5b422001a5556f1b47ec1304c34d64afe643 Download
Linux3

Use the DEB package on Debian/Ubuntu, RPM on Fedora/RHEL, or AppImage when you want a portable build.

  • Debian / Ubuntu package pcap-surgery-0.1.8-linux-x64.deb v0.1.8 · x86_64 · 6.7 MB 47c0307855d9d7925748a8a781603dfadc3bbfdc139a33a0ca17be9e9a35add0 Download
  • Fedora / RHEL package pcap-surgery-0.1.8-linux-x64.rpm v0.1.8 · x86_64 · 6.7 MB 8e1d1768eb65ffe5ad839e30bdda9bc11f8df747f31902e8285ade9786f45a78 Download
  • Portable AppImage pcap-surgery-0.1.8-linux-x64.AppImage v0.1.8 · x86_64 · 80.2 MB 34708f9fdd2ed3bd6a50b25211fb80342cb2986b5401973e78b02f9b15ceec0b Download

PCAP repair and editing

Turn noisy captures into focused, reviewable support artifacts.

Isolate the flow that matters, preview controlled changes, and export a minimal repro or regression fixture without overwriting the source capture.

A local capture-transformation workbench for the step after Wireshark analysis and before vendor escalation or lab replay. It is not a live sniffer, a full protocol analyzer, or a complete payload-sanitization system.

PCAP and basic PCAPNG import

Open classic PCAP and basic single-interface Ethernet PCAPNG, then index packet metadata without uploading capture content.

Packet timeline and filters

Filter by protocol, endpoint, direction, packet number, time range, and text while preserving a dense packet table.

Decoded packet detail

Inspect Ethernet, IP, TCP, UDP, DNS, ICMP, ARP, payload bytes, offsets, and copyable evidence for the selected packet.

Installers

Linux users can choose DEB, RPM, or AppImage. Windows users can install with the setup executable.

Checksums

Use the SHA-256 value beside each artifact to verify downloaded packages before installation.

License

Paid desktop capabilities activate online in the app with Email + License Key after purchase.