Please click our sponsor
UNIX Network Scanning Utilities Section  
7thportscan.zip
7th Sphere Portscan.
AsmodRelease_1.04.zi..>
Sorry, a description is unavailable.
CA-97.27.FTP_bounce...>
Sorry, a description is unavailable.
Cgichk.c
Scans for common CGI vulnerabilities. By ech0 Security.
Checkos.tgz
Sorry, a description is unavailable.
HTTP-XpsScanner.tgz
HTTP-XpsScanner scans a remote webserver for 77 vulnerable cgi scripts. By Wildcoyote
MDAC-scan.c
Msadc scanner written in C. By Xphere
MDAC-scan.pl
Msadc scanner written in perl. Homepage here. By Xphere
NSS_2000pre1.tar.gz
Narrow Security Scanner 2000 searches for 249 remote vulnerabilities. Written in perl, tested on Redhat, FreeBSD, and OpenBSD, Slackware, and SuSE. By Narrow
NSS_2000pre10-unx.ta..>
Narrow Security Scanner 2000 (unix / perl) searches for 367 remote vulnerabilities. Tested on Redhat, FreeBSD, and OpenBSD, Slackware, and SuSE. Changes: POP2/SSH plugin added, "Single host scan" function added. Homepage here. By Narrow
NSS_2000pre10-win.ta..>
Narrow Security Scanner 2000 (windows / perl) searches for 367 remote vulnerabilities. Tested on Windows 95 / 98 / NT. Changes: POP2/SSH plugin added, "Single host scan" function added. Homepage here. By Narrow
NSS_2000pre2.tar.gz
Narrow Security Scanner 2000 searches for 260 remote vulnerabilities. Written in perl, tested on Redhat, FreeBSD, and OpenBSD, Slackware, and SuSE. Changes: 11 new vulnerabilities from Bugtraq, and code changes. By Narrow
NSS_2000pre3.tar.gz
Narrow Security Scanner 2000 searches for 260 remote vulnerabilities. Written in perl, tested on Redhat, FreeBSD, and OpenBSD, Slackware, and SuSE. Changes: New plugin added "Rootshell", Updated plugins: httpd, pop3, cgi, rootshell and trojan, some peace of code changed in *ALL* plugins, and should scan faster now. By Narrow
NSS_2000pre4.tar.gz
Narrow Security Scanner 2000 searches for 289 remote vulnerabilities. Written in perl, tested on Redhat, FreeBSD, and OpenBSD, Slackware, and SuSE. Changes: Plugins updated: HTTPD, CGI, FTPD, RPC and TROJAN, Descriptions of holes added, code cleaning, last minute updates. By Narrow
NSS_2000pre7.tar.gz
Narrow Security Scanner 2000 searches for 297 remote vulnerabilities. Written in perl, tested on Redhat, FreeBSD, and OpenBSD, Slackware, and SuSE. Changes: Fixes: SSH plugin & Named/Bind plugin, new config file, updated rootshell plugin. By Narrow
NSS_2000pre71.tar.gz
Narrow Security Scanner 2000 searches for 341 remote vulnerabilities. Written in perl, tested on Redhat, FreeBSD, and OpenBSD, Slackware, and SuSE. Changes: This is now the correct binary. Bug fixed in Auto Detect function. By Narrow
NSS_2000pre8.tar.gz
Narrow Security Scanner 2000 searches for 365 remote vulnerabilities. Written in perl, tested on Redhat, FreeBSD, and OpenBSD, Slackware, and SuSE. Changes: More vulnerabilities added. Homepage here. By Narrow
NSS_2000pre9.tar.gz
Narrow Security Scanner 2000 searches for 365 remote vulnerabilities. Written in perl, tested on Redhat, FreeBSD, and OpenBSD, Slackware, and SuSE. Changes: Removed plugins: SSH & Linuxconf and Fixed Windows Scan. Homepage here. By Narrow
NSS_23.tar.gz
Narrow Security Scanner is a perl script which checks for 168 remote vulnerabilities. Tested on Red Hat (4.2, 5.0, 6.0), FreeBSD 3.0 & OpenBSD 2.5. By Narrow
NSS_25.tar.gz
Sorry, a description is unavailable.
NSS_251.tar.gz
Narrow Security Scanner is a perl script which checks for 177 remote vulnerabilities. Tested on Slackware 4.0, Red Hat (4.2, 5.0, 6.0), SuSE 6.1, FreeBSD 3.0 & OpenBSD 2.5. Changes: Bugfix release. By Narrow
NSS_252.tar.gz
Narrow Security Scanner is a perl script which checks for 177 remote vulnerabilities. Tested on Slackware 4.0, Red Hat (4.2, 5.0, 6.0), SuSE 6.1, FreeBSD 3.0 & OpenBSD 2.5. Changes: Drasticly updated readme. By Narrow
NSS_253.tar.gz
Narrow Security Scanner is a perl script which checks for 190 remote vulnerabilities. Tested on Slackware 4.0, Red Hat (4.2, 5.0, 6.0), SuSE 6.1, FreeBSD 3.0 & OpenBSD 2.5. Changes: 13 new vulnerability checks added. By Narrow
PortScanner-1.0.tar...>
Sorry, a description is unavailable.
PortScanner-1.2.tar...>
Excellent port/subnet scanner with 3 levels of verbosity and strobe scan options. Under 300 lines of code, fast, accurate, optional GTK interface. By Tennessee Carmel-Veilleux.
Ports.c
Handy TCP Portscanner - Simple TCP port scanner. Allows you to choose the range of ports to scan. Tested on slackware. Homepage here. By Zinc_Sh
SATAN_Extensions.tar..>
Sorry, a description is unavailable.
UScan12.zip
UltraScan v1.2 - Fast as hell class C TCP port scanner.
UltraScan-15.exe
Latest release of the superfast portscanner for Win95/98/NT.
VeteScan-03-21-2000...>
VeteScan is a bulk vunerability scanner containing programs to scan Windows NT and UNIX systems for the latest trojans/remote exploits, a scanner for the vulnerabilities of single hosts (with or without host checking), a tool for scanning multiple hosts, a scanner for class A/B/C networks, and fixes for various vulnerablities. Changes: A few new exploits / scans, more recent versions of scanning tools, and fixes for Red Hat users. Homepage here. By Vetesgirl
VeteScan-12-26-99.ta..>
VeteScan is a bulk vunerability scanner containing programs to scan Windows NT and UNIX systems for the latest trojans/remote exploits, a scanner for the vulnerabilities of single hosts (with or without host checking), a tool for scanning multiple hosts, a scanner for class A/B/C networks, and fixes for various vulnerablities. Changes: Fixes for a few errors, scans for glFtpD, LinuxConf, and ssh, a new admbind exploit and patch, and new scans for amd z0ne, cmsd z0ne, mountd z0ne, and sadmin z0ne. Homepage here. By Vetesgirl
WhoishOstFast-0.0.2...>
WhoiShOstFast is multi-process TCP port scanner - Now in english. Homepage here. By Wh01X DuMP
aai.zip
All Around Internet scanner.
admbin.zip
Sorry, a description is unavailable.
amdscan.c
AMD (amd V1) Automountd tiny Scanner by Bjunk. Works on a single host or a class C network.
amdscanner.tar.gz
Automount (amd) vulnerability scanner. By VetesGirl.
ascan13.pl
Ascan 1.3 is a tiny port scanner written in perl. Homepage here. By Zucco
autofdscan.c
rpc.AutoFS tiny Scanner. By Bjunk
avscan.pl
AVscan is a perl script which submits garbage queries to altavista in order to find hosts to scan. By Vade79
b00ger-rpc.tar.gz
Remove RPC vulnerability scanner, optimized for speed. It scans for rstatd, nfsd, ypserv, mountd, rexd, ypudated, cmsd, ttdbserver, autofsd, pcnfsd and amd. It also checks what os the remote host is using, and then uses this info to work out whether it's likely to be vulnerable or not. By B00ger
banner.c
Banner.c is an improved banner grabber - It is faster then existing banner grabbers, and compiles on many platforms. By Cyber_Bob
bascan-1.5.tar.gz
Sorry, a description is unavailable.
bass-1.0.7.tar.gz
BASS, The Bulk Auditing Security Scanner Version 1.0.7. Reliable, efficent, and sneaky way to scan mass amounts of hosts.
bips.sh
IP Broadcast scanner.
blue_globeportscan.z..>
Blue globe 30 day trial portscanner, not very fast.
brdcast-scan-smurf.s..>
P Broadcast Scanner Package - with addition of smurf code.
broadscan.c
Broadscan v0.31 - DUP broadcast IP scanner, for use in conjunction with smurf, fraggle, papasmurf to create the requisite broadcast.txt files. By vacuum of Technotronic Full Disclosure Security Information.
broadscan05.c
Updated broadscan.c which is used to search for broadcast ip addresses. For use with smurf.c, fraggle.c, and papasmurf.c. By vacuum.
bronc-vs-mjackson.ta..>
Bronc Buster vs. Michael Jackson is an ultra fast Class B style vulnerability scanner. It impliments 'argv' (joke) technology to keep up with the ever-expanding horde of so-called 0-day exploits hackers utilize to penetrate your vital network infrastructure. By Ambient Empire.
brscan06.c
Broad Scan 0.6 something I wrote when I wanted to search my internal network for systems running certain services but didnt want to run a full blown portscanner. This allows you to scan an IP address range for a specific port. By Larry W. Cashdollar
bsdscan-0.4.tar.gz
BsdScan is a light-weight port-scanner designed for the BSD operating system. It currently supports scanning single hosts, subnets, logging results, scanning ports in a random order, specifying a port range, and a speed option to only scan commonly used ports. By Fflewddur
bsdscan-0.5.1.tar.gz
BsdScan is a light-weight port-scanner designed for the BSD operating system. It currently supports scanning single hosts, subnets, logging results, scanning ports in a random order, specifying a port range, and a speed option to only scan commonly used ports. Changes: Fixes for some errors in the argument-parsing code, and -l, -p, and -i options should work properly now. By Fflewddur
bsdscan-0.5.tar.gz
BsdScan is a light-weight port-scanner designed for the BSD operating system. It currently supports scanning single hosts, subnets, logging results, scanning ports in a random order, specifying a port range, and a speed option to only scan commonly used ports. Changes: A start on implementing syn/ack stealth scanning, and lots of code cleanup. By Fflewddur
cabdomscan.zip
Final release of Cabral Domain scanner for Win95/98/NT.
cattscanner-0.6.tar...>
Cattscanner v0.6 - CATTscanner or Configurable Autonomous Threaded Topography scanner is a compilation of common networking tools rewritten into one massively configurable, massively portable, independent, fast package. CATTscanner is also written in 100% ANSI C and uses no external libraries so it will compile on most every operating system and platform. Features support for RPC, NFS, and NBT mapping, and support for version queries, extremely readable code, and output to interlinked HTML files. Homepage here. By Optyx
cattscanner-0.61.tar..>
Cattscanner v0.61 - CATTscanner or Configurable Autonomous Threaded Topography scanner is a compilation of common networking tools rewritten into one massively configurable, massively portable, independent, fast package. CATTscanner is also written in 100% ANSI C and uses no external libraries so it will compile on most every operating system and platform. Features support for RPC, NFS, and NBT mapping, and support for version queries, extremely readable code, and output to interlinked HTML files. Changes: linux thread problems fixed. Homepage here. By Optyx
cgi-check99.3.r
Sorry, a description is unavailable.
cgi-check99v4.r
CGI Check 99 v0.4. Checks for 119 remote CGI vulnerabilities and other remote issues. Written in rebol to be extremely portable (37 os's). Changes: Now gives the Bugtraq ID or X-Force ID when available. Homepage here. By Deepquest
cgiS.c
Simple CGI scanner which works on Linux, OpenBSD, and others. Updated to fix y2k problem. By Zinc_sh
cgichk-s.pl
Cgichk CGI scanner written in perl, modified to scan class C networks. By Vladimir Lohov
cgichk1_36.c
Y2k fix for cgicgk-1_35, which would return false positives on any server with a date of 2000. By su1d sh3ll of UnlG
cheops-0.5.tar.gz
Cheops is a network "swiss army knife". It's a combination of a variety of network tools to provide system adminstrators and users with a simple interface to managing and accessing their networks. Cheops aims to do for the network what the file manager did for the filesystem. Features include: Network mapping via UDP and/or ICMP packets, port detection using half-open tcp connections (ala halfscan), OS detection using invalid flags on TCP packets (ala queso), Domain scans, ICMP pings, much more. Requires GTK. By Mark Spencer.
cheops-0.51.tar.gz
See description above.
cheops-0.55.tar.gz
See description above. Many new features in this latest release.
cheops-0.56.tar.gz
See description above.
cheops-0.57.tar.gz
See description above.
cheops-0.58.tar.gz
Cheops is a network "swiss army knife". It's a combination of a variety of network tools to provide system adminstrators and users with a simple interface to managing and accessing their networks. Cheops aims to do for the network what the file manager did for the filesystem. Features include: Network mapping via UDP and/or ICMP packets, port detection using half-open tcp connections (ala halfscan), OS detection using invalid flags on TCP packets (ala queso), Domain scans, ICMP pings, much more. This version has excellent SNMP support. Requires GTK. By Mark Spencer.
cheops-0.59a.tar.gz
Cheops v0.59a - Cheops is a network "swiss army knife". It's "network neighborhood" done right (or gone out of control, depending on your perspective). It's a combination of a variety of network tools to provide system adminstrators and users with a simple interface to managing and accessing their networks. Cheops aims to do for the network what the file manager did for the filesystem. This version includes plugin monitor support, and monitors are included for FTP, SMTP, HTTP, PING, and DNS. A generalized event logger logs to a file, an event window, and optionally sends e-mail. Gnome support is enhanced, but Gnome is not required to run it.One of the few "5-star, must-have" software releases. By Mark Spencer.
cheops-0.60pre1.tar...>
Cheops Network User Interface: Cheops is a network "swiss army knife". It's "network neighborhood" done right (or gone out of control, depending on your perspective). It's a combination of a variety of network tools to provide system adminstrators and users with a simple interface to managing and accessing their networks. Cheops aims to do for the network what the file manager did for the filesystem. Additionally, cheops has taken on the role of a network management system, in the same category as one might put HP Openview. Mechanics: Simple ICMP "ping" packets are used to initially search a network for hosts that are alive (ping). Domain Name Transfers are used to list hosts in a domain (nslookup). OS detection is done using invalid flags on TCP packets (queso). Port detection is done (somewhat) silently using half-open TCP connections in order to avoid unnecessarily starting services or logging on the remote machine (halfscan). Mapping is done using UDP (or optionally ICMP) packets with small time-to-live values (traceroute and mtr, respectively). Monitoring is done using normal connect() sequences using sets of chained stages centerd around the gtk_input_add routine. This release includes the following changes: Add auto-refresh option, Change "Page" to "Viewspace", Allow verbose display mode, more. Requires gtk. By Mark Spencer.
cheops-0.60pre2.tar...>
Cheops Network User Interface: Cheops is a network "swiss army knife". It's "network neighborhood" done right (or gone out of control, depending on your perspective). It's a combination of a variety of network tools to provide system adminstrators and users with a simple interface to managing and accessing their networks. Cheops aims to do for the network what the file manager did for the filesystem. Additionally, cheops has taken on the role of a network management system, in the same category as one might put HP Openview. Mechanics: Simple ICMP "ping" packets are used to initially search a network for hosts that are alive (ping). Domain Name Transfers are used to list hosts in a domain (nslookup). OS detection is done using invalid flags on TCP packets (queso). Port detection is done (somewhat) silently using half-open TCP connections in order to avoid unnecessarily starting services or logging on the remote machine (halfscan). Mapping is done using UDP (or optionally ICMP) packets with small time-to-live values (traceroute and mtr, respectively). Monitoring is done using normal connect() sequences using sets of chained stages centerd around the gtk_input_add routine. Changes: added auto-refresh option, changed "Page" to "Viewspace", verbose display mode, much more. Requires gtk. By Mark Spencer.
cheops-0.60pre3.tar...>
See description above.
cheops-0.60pre4.tar...>
See description above.
cheops-0.60pre5.tar...>
Cheops 0.60pre5 - Cheops is a network "swiss army knife". It's "network neighborhood" done right (or gone out of control, depending on your perspective). It's a combination of a variety of network tools to provide system adminstrators and users with a simple interface to managing and accessing their networks. Cheops aims to do for the network what the file manager did for the filesystem. Additionally, cheops has taken on the role of a network management system, in the same category as one might put HP Openview. Mechanics: Simple ICMP "ping" packets are used to initially search a network for hosts that are alive (ping). Domain Name Transfers are used to list hosts in a domain (nslookup). OS detection is done using invalid flags on TCP packets (queso). Port detection is done (somewhat) silently using half-open TCP connections in order to avoid unnecessarily starting services or logging on the remote machine (halfscan). Mapping is done using UDP (or optionally ICMP) packets with small time-to-live values (traceroute and mtr, respectively). Monitoring is done using normal connect() sequences using sets of chained stages centerd around the gtk_input_add routine. Requires GTK. Changes: Stability enhancements. This version should be more stable with GTK 1.2. By Mark Spencer.
cmsdscanner.tar.gz
rpc.cmsd scanner. By VetesGirl.
cr0n.c
CGI vulnerability scanner which checks for 97 holes. By cyrax of code red
cracker.tgz
cracker randomly generates class A,B,C (your choice), portscans for 111, does queso os check for linux, and attempts to exploit it. The ADMmountd has been modded to add a user 'moof' to the password file with no password and uid/gid 0. By ryan.
crazy.c
Crazy Scan is a unix based scanner which scans for NT web vulnerabilties. Checks for about 30 cold fusion files, some cgi's, IIS / iisadmin scripts, msadc, and many other url's that indicate a remote vulnerability. Checks for 140 paths in all. Bug list available here. Homepage here. By Freddy Laplaine
dms.pl
Small banner scanner written in perl. Grabs banners from a list of hosts or a class C network. Homepage here. By Initzero
dns-scanner.sh
Sorry, a description is unavailable.
dnscan
Sorry, a description is unavailable.
dnsscan.zip
Sorry, a description is unavailable.
domscan-2.0.pl
Latest version of the quick domain scanner by Pavel Aubchon-Mendoza.
domscan.c
Domain Scanner v2.0, by HoGs HeaD, of sinnerz.com.
domscan.pl
Perl domain scanner. Any platform. Coded by Pavel Aubuchon-Mendoza, of deviance.org.
domscan.tar
Perl domain scanner. Any platform. Coded by Pavel Aubuchon-Mendoza, of deviance.org.
domscan.zip
Sorry, a description is unavailable.
drpcscan.tgz
Scans ranges of IPs for known RPC services.
exo-0.3.tgz
Exo is a handy little tool that 'sweeps' a range of ports on a list of hosts. It works by sending out raw packets and waiting for replies with two separate threads. This method makes exo able to find open ports without any delay, i.e. effectively at the rate that your bandwidth allows. A 56k dialup connection can scan for one open port on 65280 hosts in 160 seconds. Homepage here. By Mixter
exscan-0.2.tgz
exscan is a network/Internet port scanner. It uses the "strobe-scan" technique, which means exscan only scans for certain services, instead of scanning a range of ports. By PolarRoot.
exscan-0.3.tar.gz
exscan v0.3 - exscan is a network/Internet port scanner, that uses the strobe-scan technique of only scanning certain ports. With some services (such as finger and HTTP) exscan queries the server for information (such as the users on finger; and the server version on HTTP). On other services (such as FTP, SMTP, and others) exscan displays the information returned by the server (usually including the server type and version). v0.3 features remote OS identification functionality from QueSO integrated into the exscan interface. By PolarRoot.
exscan-0.4.tar.gz
exscan v0.4 is a network/Internet port scanner, that uses the strobe-scan technique of only scanning certain ports, instead of a full blown port scan. exscan is not only a port scanner, though. With some services (such as finger and HTTP) exscan queries the server for information (such as the users on finger; and the server version on HTTP). On other services (such as FTP, SMTP and others) exscan displays the information returned by the server, sometimes called a banner, and usually including the server type and version. Remote OS identification functionality from QueSO is also integrated into the exscan interface. This release features improved support for BSD/Sun/Solaris UNIX flavors. By PolarRoot.
findhosts.pl
Given a base ip address of xxx.xxx.xxx. it will list all 255 host names under that base.
fizzbounce-0.2.tar.g..>
maps connections over proxies (courtesy of teso)
frontpage.pl
Everybody knows about the _vti_pvt password files, but what about those misconfigured Frontpage servers that allow remote login and authoring without a login and password? This script will check for both vulnerabilties. Homepage here. By Banish33
ftp-scan.zip
Sorry, a description is unavailable.
ftpcheck-0.3.pl
ftpcheck scans hosts and networks for FTP and anonymous FTP archives. ftpcheck is very fast: it can effectively scan a class C network for anonymous FTP sites in less than 5 seconds. Requires perl, libnet, MD5, MIME-Base64, HTML Parser, libwww.
ftpcheck-0.31.pl
ftpcheck v0.31. see above for details. see below for requirements.
ftpcheck.pl
Ftpcheck version 0.32 scans hosts and networks for FTP and anonymous FTP archives. It was written as a security analysis tool. ftpcheck is very fast. It can effectively scan a class C network for anonymous FTP sites in less than 5 seconds. It does this by starting a new process for each connection. ftpcheck requires perl and libnet (from CPAN). Changes: Fixed misclassification of "a.b.c" hostnames as class C IP addresses. Homepage By David Weekly
ftpscan.c
ftpscan v1.0 will open a specific file [-f file], get the IPs from it, then, check if FTP port [ -p 21 ] is open and log the version. If you specify the [ -o ] flag it will try to log into the FTP server and execute the LIST command [recursive] (useful for checking for existence of world writeable directories). By vENOMOUS of rdC.
fts-rvscan.v1-b1.tgz
rvscan v1b1 (remote vulnerability scanner) determines the remote operating system, then procedes to find common vulnerabilites. Checks for over 30 cgi scripts, and 15 exploits. By ben-z.
fts-rvscan.v1-r1.tgz
rvscan v1r1 (remote vulnerability scanner) determines the remote operating system, then procedes to find common vulnerabilites. New features: dual OS guessing [telnet banner grabbing + nmap OSScan], remote exploit checks [bind, imap, wuftpd, rpc.mountd, qpop, sendmail, iquery], multiple pop3 authentication, anonymous ftp services, httpd exploits [cold fusion, website pro, frontpage extensions, 52 vulnerable cgis], icmp echo filters, nfs exports, and over 10 sendmail holes. By ben-z.
fts-rvscan.v2-b3.tgz
rvscan v2b3 (remote vulnerability scanner) determines the remote operating system, then procedes to find common vulnerabilites. New features: scans for more exploits, code optimizations. By ben-z.
gHost.v1-a1.tgz
The gHost project is a very thorough set of remote security scanning scripts thrown together by various members of the group gH. This is the first alpha release. Homepage here.
gen.c
Class A, B, and C IP address list generator. By Irony
gnit_rc1.zip
GNITvse rc1: GNIT Vulnerability Scanning Engine Release Candidate One - (for WIN2K and NT systems). Performs a port scan, and based on those findings, calls other functions. Checks for MANY windows based vulnerabilities, and grabs banners. Homepage here. By Glitch
grabbb-0.0.1.tar.gz
very fast non blocking banner scanner (courtesy of teso)
grabbb-0.0.5.tar.gz
Clean, functional, and fast banner scanner. Homepage here. By Scut
grabbb-0.0.7.tar.gz
Clean, functional, and fast banner scanner. Changes: Portability fix: Now works on Linux, BSD and Solaris. Homepage here. By Scut
grabbb-0.1.0.tar.gz
Clean, functional, and fast banner scanner. Changes: Code fixes, portability fixes. Should run really well now. By Scut of Team Teso
grinder.pl
Grinder.pl scans a range of IP's looking for a URL. Could be used to search for sites with a certain URL or CGI program. Homepage here. By Bansh33
halfscan.c
Halflife's port scanner.
hobbit.ftpbounce.txt
Sorry, a description is unavailable.
hostscan.zip
Sorry, a description is unavailable.
hping.c
hping can send any kind of tcp flags and display the target replies in numerous formats. Useful for ACL discovery and testing, port scanning, hide pinging, raw fingerprints, etc... By Salvatore Sanfilippo.
hping066.tgz
hping v0.66 - Yet another excellent security tool! hping is a complex program that allows you to send customized pings to remote hosts, gathering raw fingerprint data, utilizing the concept of "tcp specific firewalks", and more. Get this one too! By antirez.
hping067.tgz
hping is a complex ping-based program that allows you to send customized pings to remote hosts, gathering raw fingerprint data, utilizing the concept of "tcp specific firewalks", and more. For Linux only. This is one of those "must have" tools. Get it! By antirez.
hping070-linux.tar.g..>
hping is a complex ping-based program that allows you to send customized pings to remote hosts and networks, gathering raw fingerprint data, utilizing the concept of "tcp specific firewalks", and more. Linux libpcap based port. This is one of those "must have" tools. Get it! By antirez.
hping070-solaris.tar..>
hping is a complex ping-based program that allows you to send customized pings to remote hosts, gathering raw fingerprint data, utilizing the concept of "tcp specific firewalks", and more. This is one of those "must have" tools. Get it! Solaris libpcap based port. By antirez.
hping2-beta52.tar.gz
Hping is a software to do TCP/IP stack auditing, to uncover firewall policy, to scan TCP port in a lot of different modes, to transfer files accross a firewall, test network performance, test of TOS is handled, etc. Homepage here. By Antirez
hping2-beta53.tar.gz
Hping is a software to do TCP/IP stack auditing, to uncover firewall policy, to scan TCP port in a lot of different modes, to transfer files accross a firewall, test network performance, test of TOS is handled, etc. Changes: Major bugs fixed and enhanced configure / Makefile. Homepage here. By Antirez
httpdtype-0.02.tar.g..>
httpdtype is a utility for finding out which type of web server is running on a given host. By Steffen Solyga.
httpdtype-0.05.tar.g..>
httpdtype v0.05 is a utility used to find out what type of web server a remote host is running. By Steffen Solyga.
httpdtype-0.07.tar.g..>
httpdtype v0.05 is a utility used to find out what type of web server a remote host is running. By Steffen Solyga.
httpscan-v200.c
Httpscan scans web servers for version and server type. Takes input from a file. Changes for v2.01 some options for diferent ports and logging. By Skemet
httpscan.c
Httpscan scans web servers for version and server type. Takes input from a file. By Skemet
httpservertype-0.01...>
httpservertype is a utility used to determine (fingerprint) the type of web server a remote host is running (ala Netcraft.com). By Steffen Solyga.
httpver.c
Sorry, a description is unavailable.
icmp177.tgz
program to send spoofed/hacked ICMP packets (Redirect, Unreach, Time Exceeded ...). By Slayer (Spain).
icmp206.tgz
See above. More recent version here, with improvements.
icmp21.tgz
Latest release of program to send spoofed/hacked ICMP packets (Redirect, Unreach, Time Exceeded ...). This version has added support for ICMP Echo Request/Reply. By Slayer (Spain).
icmpquery.c
send and receive ICMP queries for address mask and current time. By Dave Andersen.
icmpscan2.zip
Sorry, a description is unavailable.
icmpsnif.zip
Sorry, a description is unavailable.
icmpush22.tgz
ICMPush v2.2 is a program that sends icmp error packets and obtains remote info throught icmp packets. Supports spoof and broadcasting. This new release supports the following ICMP error types: Unreach, Parameter Problem, Redirect and Source Quench; ICMP information types: Timestamp, Address Mask Request, Information Request, Router Solicitation (Router Discovery), Router Advertisement (Router Discovery) and Echo Request. This program features an excellent interface with a wide number of options (flags) and values. As an added bonus, Slayer has included a mini-script called try_reset that tries to reset existing telnet or rlogin connections. Your security auditing toolkit is not complete without this program! One of the few 5-star programs. By Slayer of !Hispahack.
ident-scan.c
Sorry, a description is unavailable.
idlescan-v0.1-alpha3..>
Idlescan is a IP id port scanner, written to demonstrate that machines should not have a predictable ip.id increments. Features: Target never sees your ip address, No limit in the number of sensors working in parallel, Automatic windows ip.id increment detection (windows counts in little endian), and Auto-dropping sensors with traffic. Homepage here. By LiquidK
imapvuln.tar.gz
Scans for imap vulnerabilities and can be used with mscan.
imp-range.c
Tool for scanning networks which generates an list of IP addresses between a starting and ending ip. By Shake
infinity-expcgi.zip
The Infinity Exploit Scanner is a CGI script that allows visitors to your site to scan remote webservers for CGI vulnerabilities. The HTML output is configurable, and a log of all vulnerabilities your users find is kept. Homepage here. By Azrael
infinity-portcgi.zip
The Infinity Port Scanner is a CGI script that allows your visitors to remotely scan servers for open ports. Homepage here. By Azrael
infinity-t-3.00b.pl
The Infinity Perl/Tk Scanner features scanners for exploits, trojans, ports, subnets, server info, and protocols all in one, using perl/tk for a GUI. Features a hex http query to avoid IDS systems. Homepage here. By Azrael
ip-zoner2.2.tar.gz
Mass resolver/IP scanner; can be used to diag multiple IP blocks.
ipidscan-0.1beta1.ta..>
IP 'id' port scanner - Totally untracable portscanner. Uses the IP id and a silent host to port scan a host with a forged source address. By Marvin
ipprober.zip
IPprober - small tcp portscanner.