Section: .. / Win /
|
Windows tools - This directory contains hundreds of assorted Windows security tools. Try them out first on a test machine first unless you are sure you know what you are doing.
|
| /// File Name: |
httprint_win32_200.zip |
Description:
|
httprint is a web server fingerprinting tool. It relies on web server characteristics to accurately identify web servers, despite the fact that they may have been obfuscated by changing the server banner strings, or by plug-ins such as mod_security or servermask. httprint can also be used to detect web enabled devices which do not have a server banner string, such as wireless access points, routers, switches, cable modems, etc. httprint uses text signature strings and it is very easy to add signatures to the signature database. httprint can import web servers from nmap network scans, if they are saved in XML format. The current version adds the ability to save reports in CSV and XML formats, and features a completely new method of scoring by confidence ratings to minimize false positives. This version is the Windows release.
| | Author: | Saumil Shah | | Homepage: | http://net-square.com/httprint/ | | File Size: | 844613 | | Last Modified: | Jan 8 00:39:43 2004 |
| MD5 Checksum: | 483f22a5e6ad0041e7920303632012aa |
|
| /// File Name: |
httprint_win32_202.zip |
Description:
|
httprint is a web server fingerprinting tool. It relies on web server characteristics to accurately identify web servers, despite the fact that they may have been obfuscated by changing the server banner strings, or by plug-ins such as mod_security or servermask. httprint can also be used to detect web enabled devices which do not have a server banner string, such as wireless access points, routers, switches, cable modems, etc. httprint uses text signature strings and it is very easy to add signatures to the signature database. httprint can import web servers from nmap network scans, if they are saved in XML format. The current version adds the ability to save reports in CSV and XML formats, and features a completely new method of scoring by confidence ratings to minimize false positives. This version is the Windows release.
| | Author: | Saumil Shah | | Homepage: | http://net-square.com/httprint/ | | Changes: | Version 202 has a completely rewritten engine, internally, to increase efficiency and portability across platforms. A minor feature enhancement in version 202 is the ability to automatically follow 301 and 302 redirections. | | File Size: | 797036 | | Last Modified: | May 25 17:55:14 2004 |
| MD5 Checksum: | 20bc7ccb135a893b243cf4ebf624a8a1 |
|
| /// File Name: |
httprint_win32_301.zip |
Description:
|
httprint is a web server fingerprinting tool. It relies on web server characteristics to accurately identify web servers, despite the fact that they may have been obfuscated by changing the server banner strings, or by plug-ins such as mod_security or servermask. httprint can also be used to detect web enabled devices which do not have a server banner string, such as wireless access points, routers, switches, cable modems, etc. httprint uses text signature strings and it is very easy to add signatures to the signature database. httprint can import web servers from nmap network scans, if they are saved in XML format. The current version adds the ability to save reports in CSV and XML formats, and features a completely new method of scoring by confidence ratings to minimize false positives. This version is the Windows release.
| | Author: | Saumil Shah | | Homepage: | http://net-square.com/httprint/ | | Changes: | New multi-threaded engine. SSL in formation gathering. Automatic SSL port detection. Various bug fixes. | | File Size: | 811893 | | Last Modified: | Dec 28 18:16:18 2005 |
| MD5 Checksum: | a66408308c3f540030bbb0d59716b032 |
|
| /// File Name: |
hwing.zip |
Description:
|
hwing is a win32 version of the ever favorite utility hping. It allows an administrator the ability to send customized pings, gather raw fingerprinting data, and more. Original Linux version is available here. Original Solaris version is available here.
| | Author: | snooq | | Homepage: | http://www.angelfire.com/linux/snooq | | File Size: | 32392 | | Last Modified: | Nov 30 21:44:51 2003 |
| MD5 Checksum: | 3d1590eecaf0a8d36ec6c1119e6f24f0 |
|
| /// File Name: |
icmp_tunnel.h |
Description:
|
Covert Tunnelling in ICMP 0x00 ECHO REPLY messages for Windows.
| | Author: | Dark Schneider | | File Size: | 4716 | | Last Modified: | Jan 10 14:16:44 2000 |
| MD5 Checksum: | b13a7e398e176106aec24e9a357ab0fe |
|
| /// File Name: |
IEreg.zip |
Description:
|
Registry updates for Microsoft Windows that help to prevent priorly unknown IE flaws from compromising a machine due to cross zone access flaws.
| | Author: | http-equiv, Christopher V. Calderon | | File Size: | 505 | | Last Modified: | Jun 14 06:45:25 2004 |
| MD5 Checksum: | d4be5b8effb7a0704e84810788258652 |
|
| /// File Name: |
ifstat.zip |
Description:
|
Ifstat is a command line bandwidth monitor for Windows.
| | Author: | Cys | | File Size: | 16656 | | Last Modified: | Sep 17 18:34:46 2002 |
| MD5 Checksum: | 319932c9b13de5e6ef00776bb00623e2 |
|
| /// File Name: |
IISS_ap.ZIP |
Description:
|
Microsoft Access database password cracker. Works on Access 97 or Access 2000.
| | Author: | Icer | | Homepage: | http://ic3d.tsx.org | | File Size: | 8655 | | Last Modified: | Nov 15 21:06:09 1999 |
| MD5 Checksum: | 921ecb9144bdf5278c5b5332caadbb05 |
|
| /// File Name: |
incntrl3.zip |
Description:
|
InCtrl 3 lets you track system changes made by Windows 95 and Windows NT installation programs. It tracks file additions and deletions as well as changes made to .INI files. In addition, it handles long filenames and tracks changes to the Registry.
| | File Size: | 244285 | | Last Modified: | Aug 16 20:04:14 1999 |
| MD5 Checksum: | c2ce08acdcb732d56cefa7bffd4f380a |
|
| /// File Name: |
IP_Converter.exe |
Description:
|
Dotted IP to 32 bit long IP converter, for Windows. Binary only.
| | Author: | Negative9 | | File Size: | 315392 | | Last Modified: | Nov 8 20:10:35 2003 |
| MD5 Checksum: | c946cdc87a9f3f2001fbaa1a70172251 |
|
| /// File Name: |
ipeyegui.rar |
Description:
|
This is a GUI for the windows TCP portscanning tool ipEye. ipEye GUI comes with a copy of ipEye, and include visual basic 6 source code.
| | Author: | Digital Blast Inc. | | Homepage: | http://digitalblast.shinranet.com/ | | File Size: | 42893 | | Last Modified: | Oct 18 19:24:58 2005 |
| MD5 Checksum: | 97dde445e1208c331949d061f490080c |
|
| /// File Name: |
IRCR.zip |
Description:
|
IRCR is a collection of tools that gathers and/or analyzes forensic data on a Microsoft Windows system. You can think of this as a snapshot of the system in the past. It is similar to TCT by Dan Farmer and Wietse Venema, as most of the tools are oriented towards data collection rather than analysis. The idea of IRCR is that anyone could run the tool and send the output to a skilled Windows forensic security person for further analysis.
| | Author: | John McLeod | | Homepage: | http://www.incident-response.org/IRCR.htm | | File Size: | 1054972 | | Last Modified: | Apr 24 21:10:04 2001 |
| MD5 Checksum: | 59c334066248e963dc735f43cbbd76dd |
|
| /// File Name: |
IRCRv2.1.zip |
Description:
|
The Incident Response Collection Report is a script to call a collection of tools that gathers and/or analyzes data on a Microsoft Windows system. You can think of this as a snapshot of the system in the past. Most of the tools are oriented towards data collection rather than analysis.
| | Author: | John McLeod | | Homepage: | http://tools.phantombyte.com/ | | Changes: | IRCR version 2 is a complete code change from Perl to DOS batch file. Anyone should be able to modify the batch file to suite their needs. Requires the HELIX (www.e-fense.com/helix) IR folder to run. | | File Size: | 32300 | | Last Modified: | Aug 13 03:06:23 2005 |
| MD5 Checksum: | 7061fd54ada29878c7b513b9cff1bc39 |
|
| /// File Name: |
IRCRv2.3.zip |
Description:
|
The Incident Response Collection Report is a script to call a collection of tools that gathers and/or analyzes data on a Microsoft Windows system. You can think of this as a snapshot of the system in the past. Most of the tools are oriented towards data collection rather than analysis.
| | Author: | John McLeod | | Homepage: | http://tools.phantombyte.com/ | | Changes: | Fixed all path and command locations to meet Helix version 1.8 areas. | | File Size: | 35580 | | Last Modified: | Nov 20 11:56:52 2006 |
| MD5 Checksum: | 98d72034d5d39c40a39cc6fb8b2c53ea |
|
| /// File Name: |
k-mac.zip |
Description:
|
K-MAC is an ethernet MAC address changer for Microsoft Windows. Binary only is included.
| | Author: | M. Neset KABAKLI | | Homepage: | http://www.neset.com/ | | File Size: | 481691 | | Last Modified: | Aug 24 04:35:56 2004 |
| MD5 Checksum: | f4dabed5c32b2c12d1d80e85cc3c5e4a |
|
| /// File Name: |
k9-setup.exe |
Description:
|
K9 is a Windows tool for passive OS detection. It uses WinPCAP to capture network traffic and a user friendly interface to handle results, fingerprint database, etc.
| | Author: | Robota | | Homepage: | http://www.robota.net | | File Size: | 204920 | | Last Modified: | Apr 25 01:10:24 2002 |
| MD5 Checksum: | d3be655ac792af0cab135030a967cf03 |
|
| /// File Name: |
KeepAlive.tar.gz |
Description:
|
This is a Cygwin port of keepalive.c, which sends a null character every couple minutes, keeping alive telnet/ssh connections forever. Ported by Luigi Grandini
| | File Size: | 354205 | | Last Modified: | Jun 5 12:43:58 2002 |
| MD5 Checksum: | 4472d085e13103da05fe144501464e36 |
|
| /// File Name: |
keylog25.exe |
Description:
|
MS-DOS keystroke logger.
| | File Size: | 56569 | | Last Modified: | Aug 16 20:04:12 1999 |
| MD5 Checksum: | 48a08dea850e752696f9d06e34d9008e |
|
| /// File Name: |
KILLOE.zip |
Description:
|
KillOE is a modified msoe.dll which gets rid of the MSN Outlook Express 5.5 Banner when used in conjunction with hotmail accounts. Replacing C:\program files\Outlook Express\msoe.dll with this version of the DLL will allow you to use whatever HTML code you wish to see in place of the banner. No longer supported by author.
| | Author: | Digital Vampire | | File Size: | 640301 | | Last Modified: | Feb 27 03:14:57 2001 |
| MD5 Checksum: | 9d781337839c84e4a5fde52f6fb44fc5 |
|
| /// File Name: |
KNOCK-0-81.ZIP |
Description:
|
The Doorman is a port-knocking listener daemon which helps users secure private servers. It allows a server to run invisibly, with all TCP ports closed. This version is the Microsoft Windows binary executable release.
| | Author: | Bruce Ward | | Homepage: | http://doorman.sourceforge.net/ | | Changes: | Fixed the silent doorman problem. | | File Size: | 36738 | | Last Modified: | Sep 7 04:36:53 2005 |
| MD5 Checksum: | c299f069aded9f65d74c37de0c93e031 |
|
| /// File Name: |
Kohlea.exe |
Description:
|
Unavailable.
| | File Size: | 547840 | | Last Modified: | Dec 4 02:57:18 2002 |
| MD5 Checksum: | 66319c09cf0bbeb389182434acadfb95 |
|
| /// File Name: |
KomodiaLSP.zip |
Description:
|
A repacked version of the Microsoft free LSP sample and Komodia's LSP guide. LSP is a technology that allows to intercepts all commands between an application and winsock (ws2_32.dll) thus allowing to log all network data, modify network commands and even change inbound/outbound data.
| | Author: | Barak Weichselbaum | | Homepage: | http://www.komodia.com/ | | File Size: | 347055 | | Last Modified: | Dec 21 18:03:58 2006 |
| MD5 Checksum: | 081cca7fedf92a49ec20deae011b2235 |
|
| /// File Name: |
languard.exe |
Description:
|
LANguard Internet Access Control monitors all Internet traffic to prevent unproductive use of the Internet. Its rules engine allows you to specify which sites are allowed, and what type of content your users can search for or read. LANguard has extensive internet usage reporting tools. Because LANguard uses a sniffer engine, it is easy to install and does not affect Internet performance or require you to reconfigure your network clients. It also protects against; External threats (hackers), Internal threats (users accessing shares they are not authorized).
| | Homepage: | http://www.languard.com | | File Size: | 3116762 | | Last Modified: | Mar 11 18:37:00 2000 |
| MD5 Checksum: | 1106d8ff30114479d14721a57d966703 |
|
|
|
|
|