Section: .. / sniffers /
| /// File Name: |
promiscdetect.exe |
Description:
|
PromiscDetect for Windows NT 4.0 / 2000 / XP checks if your network adapter(s) is in promiscuous mode or not (that is, in most cases, if a sniffer is running on the computer or not). Of course the attacker might be intercepting the communication between the tool and the adapter, making the result unreliable, but there are probably many more cases out there where the tool will really detect a sniffer.
| | Author: | Arne Vidstrom | | Homepage: | http://ntsecurity.nu/toolbox/promiscdetect/ | | File Size: | 28672 | | Last Modified: | Apr 23 01:21:10 2002 |
| MD5 Checksum: | 117ec27602980ae13307a7c2021a5d90 |
|
| /// File Name: |
packetsniffer20.zip |
Description:
|
The TWLC packet sniffer for Windows 2000 / NT / XP is an advanced packet sniffer. Features filtering rules, dns lookups, interface selection, and more.
| | Author: | LucisFero | | Homepage: | http://www.twlc.net | | File Size: | 64911 | | Last Modified: | Jan 2 01:07:04 2002 |
| MD5 Checksum: | 48d8e8f809da9d3ebe723e9c75ec7783 |
|
| /// File Name: |
slsnif-0.4.0.tar.gz |
Description:
|
Serial Line Sniffer is a serial port logging utility. It listens to the specified serial port and logs all data going through this port in both directions.
| | Homepage: | http://www.azstarnet.com/~ymg/software.html | | Changes: | A real serial port can now be used (instead of a pty), device(s) can now optionally be locked, port parameters are now automatically synchronized between the ports, the timestamping code now gives more precise output, options can now be read from rc files, and some minor bugs were fixed. | | File Size: | 59463 | | Last Modified: | Jan 1 06:19:55 2002 |
| MD5 Checksum: | a14a292fc4e1e14ebc698a539ae65cb9 |
|
| /// File Name: |
sniffer-0.2.0.tar.gz |
Description:
|
The sniffer project is designed to be an extremely powerful, configurable, and versatile tool for monitoring network traffic. Uses a ncurses interface.. It can be used as a plain sniffer, as a tool for accounting, dynamic firewall updates, and many more things. It features scripting support and an event-driven architecture.
| | Homepage: | http://stev.org/sniffer.html | | Changes: | Threading engine was redesigned. Changes were made to the scripting engine. Bug were fixed. | | File Size: | 57552 | | Last Modified: | Jan 1 05:50:07 2002 |
| MD5 Checksum: | 8c1443350175f5d19ad7f340fcfc145b |
|
| /// File Name: |
aldebaran-3.0.2.tar.gz |
Description:
|
Aldebaran is an advanced libpcap-based network TCP, UDP, ICMP, and ARP network sniffer which gives a user only a payload from captured data and basic info about addresses and ports (nothing about flags, etc.). This is useful for monitoring data sent by connections and sniffing passwords. It supports filtering packets with not only simple port/address libpcap rules but also payload contents and can send captured data to another host via UDP. It can also encrypt data written to a dump file, analyze interface traffic, and present statistics (packet count, sizes, average speed, etc.) in HTML or a plain text file.
| | Homepage: | http://www.rogala.3d.pl/ | | Changes: | This release has ICMP protocol support, the ability to change the process name, kernel support (for hiding in system), server mode (sniffer detection in LAN), sending logs via mail, and switch MAC table overflowing (experimental). | | File Size: | 43151 | | Last Modified: | Dec 8 22:58:35 2001 |
| MD5 Checksum: | 8540089f155cc6886538819e128884d8 |
|
| /// File Name: |
aldebaran-3.0.1.tar.gz |
Description:
|
Aldebaran is an advanced libpcap-based network TCP, UDP, and ARP network sniffer which gives a user only a payload from captured data and basic info about addresses and ports (nothing about flags, etc.). This is useful for monitoring data sent by connections and sniffing passwords. It supports filtering packets with not only simple port/address libpcap rules but also payload contents and can send captured data to another host via UDP. It can also encrypt data written to a dump file, analyze interface traffic, and present statistics (packet count, sizes, average speed, etc.) in HTML or a plain text file.
| | Homepage: | http://www.rogala.3d.pl/ | | File Size: | 4096 | | Last Modified: | Jul 17 17:01:53 2001 |
| MD5 Checksum: | 9388ccc391f69ec63a81b66803856dca |
|
| /// File Name: |
slsnif-0.3.1.tar.gz |
Description:
|
Serial Line Sniffer is a serial port logging utility. It listens to the specified serial port and logs all data going through this port in both directions.
| | Homepage: | http://www.azstarnet.com/~ymg/software.html | | Changes: | A fix for an infinite loop generated by searching for the next available pty. | | File Size: | 52587 | | Last Modified: | Apr 26 17:42:10 2001 |
| MD5 Checksum: | 9a12d565bbc7de487fc4647260c1a625 |
|
| /// File Name: |
slsnif-0.3.0.tar.gz |
Description:
|
Serial Line Sniffer is a serial port logging utility. It listens to the specified serial port and logs all data going through this port in both directions.
| | Homepage: | http://www.azstarnet.com/~ymg/software.html | | Changes: | Options to timestamp output and to print number of bytes transmitted added. | | File Size: | 52507 | | Last Modified: | Apr 25 16:39:16 2001 |
| MD5 Checksum: | 5020a8eb85b96d7ea3f645e29f5f4339 |
|
| /// File Name: |
shijack.tgz |
Description:
|
Shijack is a TCP connection hijacking tool for Linux, FreeBSD, and Solaris. Uses Libnet.
| | Author: | Spwny | | File Size: | 479014 | | Last Modified: | Apr 16 20:58:52 2001 |
| MD5 Checksum: | 65d499f3d9381b2bf399eab3992a10c0 |
|
| /// File Name: |
slsnif-0.2.8.tar.gz |
Description:
|
Serial Line Sniffer is a serial port logging utility. It listens to the specified serial port and logs all data going through this port in both directions.
| | Homepage: | http://www.azstarnet.com/~ymg/software.html | | Changes: | Command line parameter handling was rewritten. A couple of output messages were added. | | File Size: | 51971 | | Last Modified: | Apr 11 00:04:19 2001 |
| MD5 Checksum: | c15d0529ef5bf2562c1507765f936a4e |
|
| /// File Name: |
trafdisp.tgz |
Description:
|
Trafdisp is a sniffer which allows you to monitor the amount of incoming/outgoing KBps on a selected network interface(s) from at least one machine. It allows a network administrator to monitor the traffic that is generated by all the hosts on the network. The traffic is viewable in neat graphs that are generated by a PHP-enabled Web-server. The logs are stored in a MySQL table.
| | Homepage: | http://thegod.bsd.org.il/projects.php | | File Size: | 29051 | | Last Modified: | Apr 6 17:37:28 2001 |
| MD5 Checksum: | b38a9aa186a68fb96025ab683a900709 |
|
| /// File Name: |
iplayer-0.1.tgz |
Description:
|
Iplayer (pronounced ip-layer) is a libpcap sniffer based on ipgrab. It is useful for building custom TCP/IP packets that will be injected by NASL scripts or by other raw socket-building tools such as sendip.
| | Homepage: | http://www.trinux.org/iplayer | | File Size: | 65606 | | Last Modified: | Mar 28 19:51:44 2001 |
| MD5 Checksum: | 0f5fa4167ad70082d5d227118803fd99 |
|
| /// File Name: |
sniffer-0.5.tar.gz |
Description:
|
Sniffer is a packet sniffer with a ncurses user interface. Shows network statistics, active TCP connections, UDP and ICMP packets. Features the ability to view and log the 48bit arp protocol. Multithreaded so that the user interface does not interfere with any of the packet capturing methods. View and log the following user space protocols FTP, POP3, HTTP, and more.
| | Homepage: | http://stev.org/sniffer.html | | File Size: | 64603 | | Last Modified: | Mar 16 20:33:36 2001 |
| MD5 Checksum: | 70637fa8ab16c1f7a8e7fdee190803aa |
|
| /// File Name: |
sw-mitm.tar.gz |
Description:
|
Sw-mitm v0.2 is a 'Man in the Middle' tool for level2 switches which can redirect traffic between two hosts on a LAN.
| | Author: | Noah | | Homepage: | http://ns2.crw.se/~tm | | File Size: | 3373 | | Last Modified: | Jan 31 15:28:20 2001 |
| MD5 Checksum: | fa66d4a711e0b9e6318200bf1561db8f |
|
| /// File Name: |
sncs.c |
Description:
|
Sncs.c is a simple SNMP Community name sniffer. Although many sniffers sniff the community names, this one is dedicated to it.
| | Author: | Delorean | | Homepage: | http://www.s0ftpj.org | | File Size: | 3527 | | Last Modified: | Dec 8 04:01:11 2000 |
| MD5 Checksum: | 30dc44603aacd95be5dd4e22eba8c1ff |
|
| /// File Name: |
A-SnIf.c |
Description:
|
A-Snif is a simple packet sniffer, for learning.
| | Author: | Asynchro | | Homepage: | http://www.pkcrew.org | | File Size: | 9500 | | Last Modified: | Dec 2 21:26:45 2000 |
| MD5 Checksum: | 901ef4d027ef03c5eaa9486a363983ac |
|
| /// File Name: |
pcapture.tar.gz |
Description:
|
Simple pcap dumper (just to learn on how to use libpcap).
| | Author: | Cthuluh | | Homepage: | http://www.pkcrew.org | | File Size: | 130473 | | Last Modified: | Dec 2 21:20:15 2000 |
| MD5 Checksum: | 19fa555c68dba57d3e05a98b99cb19a6 |
|
| /// File Name: |
anger-1.33.tgz |
Description:
|
Anger v1.33 implements a PPTP challenge/response sniffer. These c/r can be input into L0phtcrack to obtain the password, and b) An active attack on PPTP logons via the MS-CHAP vulnerability to obtain the users password hashes. Notice that this also generates the password hashes of the new password the user wanted to use, which can be put into L0phtcrack to get passwords, into a modified smbclient to logon onto a SMB sever, or into a modified PPP client for use with the Linux PPTP client.
| | Author: | Aleph One | | Homepage: | http://www.securityfocus.com/tools/ | | File Size: | 11006 | | Last Modified: | Nov 29 04:20:44 2000 |
| MD5 Checksum: | 3b7bc29328e437c8ba2b02a9985b6c89 |
|
| /// File Name: |
ssldump-0.9b1.tar.gz |
Description:
|
sldump is an SSLv3/TLS network protocol analyzer. It identifies TCP connections on the chosen network interface and attempts to interpret them as SSLv3/TLS traffic. When it identifies SSLv3/TLS traffic, it decodes the records and displays them in a textual form to stdout. If provided with the appropriate keying material, it will also decrypt the connections and display the application data traffic. Tested on Linux, Solaris, FreeBSD, and HP/UX.
| | Author: | Eric Rescorla | | Homepage: | http://www.rtfm.com/ssldump/ | | File Size: | 121403 | | Last Modified: | Nov 13 04:21:00 2000 |
| MD5 Checksum: | ace8f1b4f8bfa4cd494a3e546655c5e7 |
|
| /// File Name: |
linux-sniff1.1.c |
Description:
|
Linux-sniff v1.1 - Linux eth/tcp/ip sniffer. This tool logs printable data in the packet or it gives detailed info about the eth/tcp/ip packet headers.
| | Author: | Xphere | | Homepage: | http://www.casema.net/~gin | | File Size: | 9031 | | Last Modified: | Nov 5 16:00:02 2000 |
| MD5 Checksum: | 8c51a1b4b28d4c746086a9f7fb931b5f |
|
| /// File Name: |
natas.zip |
Description:
|
Natas v3.00.01 beta is an advanced network packet capturing and analysis programm designed for Windows 2000 which works with the new winsock v2.2. Features the ability to filter traffic by address and port, log packets, parse out passwords, and requires no driver. Includes source and binary.
| | Author: | Bjorn Stickler | | Homepage: | http://intex.ath.cx/natas.shtml | | File Size: | 57255 | | Last Modified: | Nov 4 19:47:27 2000 |
| MD5 Checksum: | 7ffb91715f6f86ed8253d74ed165235f |
|
| /// File Name: |
nicedump-0.9.1b.tgz |
Description:
|
nicedump is a network sniffer which tries to display the entire packet contents. Nicedump can be configured to adapt or add new protocols (with its language) without any re-compilation phase. It can be useful for network developers, to help them to debug there applications, or to teach network and protocols, or like every network analyzer, to debug a network problem.
| | Author: | Bertrand Wallrich | | File Size: | 98391 | | Last Modified: | Nov 1 14:55:38 2000 |
| MD5 Checksum: | 21ca4fc195a25d8b01d6d3725e0a1a5b |
|
| /// File Name: |
assitch-2.6.tgz |
Description:
|
Assitch is a remote packetfilter analyzer, that detects in and OUT rules by doing ACK scanning. (It's useless against state-full filters.) Assitch is 3 years old, but still useful for debugging filter rules.
| | Author: | Thomas Biege | | Homepage: | | | File Size: | 26132 | | Last Modified: | Oct 30 18:46:50 2000 |
| MD5 Checksum: | 3d88df3f893dc36c738211b59fa86817 |
|
| /// File Name: |
net-acct-0.71-glibc2.tar.gz |
Description:
|
net-acct logs network traffic. It provides a daemon (nacctd) that logs all traffic passing through the machine it runs on, and the level of detail of output is configurable.
| | Homepage: | http://richard.iguana.co.nz/net-acct | | File Size: | 44741 | | Last Modified: | Oct 28 04:12:45 2000 |
| MD5 Checksum: | 87daae6d4b06144534205b3fc201c058 |
|
| /// File Name: |
wsc11.zip |
Description:
|
Winsniffer is a packet sniffer for the Windows console designed to be effecient and flexible. Screenshot available here. This is a trial version.
| | Homepage: | http://winsniff.hypermart.net | | File Size: | 102335 | | Last Modified: | Sep 30 21:45:10 2000 |
| MD5 Checksum: | 86e3294892d57e11ec7d6235a112e971 |
|
|
|
|
|