Section: .. / sniffers /
| /// File Name: |
scapy-0.9.17.tar.gz |
Description:
|
Scapy is a powerful interactive packet manipulation tool, packet generator, network scanner, network discovery tool, and packet sniffer. It provides classes to interactively create packets or sets of packets, manipulate them, send them over the wire, sniff other packets from the wire, match answers and replies, and more. Interaction is provided by the Python interpreter, so Python programming structures can be used (such as variables, loops, and functions). Report modules are possible and easy to make. It is intended to do about the same things as ttlscan, nmap, hping, queso, p0f, xprobe, arping, arp-sk, arpspoof, firewalk, irpas, tethereal, tcpdump, etc.
| | Author: | Philippe Biondi | | Homepage: | http://www.secdev.org/projects/scapy | | File Size: | 53855 | | Last Modified: | Jul 27 19:03:19 2004 |
| MD5 Checksum: | c7b0363d646fbdee7fd09042de6fb0a7 |
|
| /// File Name: |
tcpick-0.1.23.tar.gz |
Description:
|
tcpick is a textmode sniffer that can track TCP streams and saves the data captured in files or displays them in the terminal. It is useful for picking files in a passive way. It can store all connections in different files, or it can display all the stream on the terminal with colors.
| | Author: | DuskDruid | | Homepage: | http://tcpick.sourceforge.net | | Changes: | Bug fixes, feature enhancements, and slight tuning. | | File Size: | 108910 | | Last Modified: | Jun 7 23:22:46 2004 |
| MD5 Checksum: | af9d339c52be21445056e0e919ee9c20 |
|
| /// File Name: |
tvark-0.3.tar.gz |
Description:
|
Tvark is a network monitoring tool with a GUI front-end and is tied to a MySQL database. The GUI provides a view of traffic activity that can be seen from the machine/interface that Tvark is run on. What the end user sees is a list of source nodes on the left, destination nodes on the right, and lines drawn, left to right, showing traffic flow. Tvark runs in realtime, meaning the traffic is shown roughly as it happens with a small delay between it and the display being created.
| | Author: | Fenris | | Homepage: | http://tvark.com/ | | File Size: | 42579 | | Last Modified: | May 25 19:29:07 2004 |
| MD5 Checksum: | b0d3ece87007dbc28f4c63dda304d117 |
|
| /// File Name: |
tcptrack-1.1.1.tar.gz |
Description:
|
tcptrack is a packet sniffer which passively watches for connections on a specified network interface, tracking their states and listing them in a manner similar to the top command. It displays source and destination addresses and ports, connection state, idle time, and bandwidth usage. Screenshot available here.
| | Author: | Steve Benson | | Homepage: | http://www.rhythm.cx/~steve/devel/tcptrack | | Changes: | Fixed a problem where tcptrack would silently not work on certain PPP connections, Support for NULL and RAW pcap interface types was added, tcptrack should now work on all Linux PPP, Ethernet, TUN/TAP, and local loopback interfaces. Tcptrack now compiles properly with gcc 3.4. An EXAMPLES section and a few extra notes were added to the man page about guessing, pause/sort options. | | File Size: | 107124 | | Last Modified: | May 17 09:38:53 2004 |
| MD5 Checksum: | df5b7498e85c0e2a1ae514406c46d580 |
|
| /// File Name: |
tcpick-0.1.22.tar.gz |
Description:
|
tcpick is a textmode sniffer that can track TCP streams and saves the data captured in files or displays them in the terminal. It is useful for picking files in a passive way. It can store all connections in different files, or it can display all the stream on the terminal with colors.
| | Author: | DuskDruid | | Homepage: | http://tcpick.sourceforge.net | | Changes: | Bug fixes and slight tuning. | | File Size: | 105062 | | Last Modified: | Apr 8 20:04:32 2004 |
| MD5 Checksum: | 77b991a686e83cb716fd241aaa6ea432 |
|
| /// File Name: |
tcpick-0.1.21.tar.gz |
Description:
|
tcpick is a textmode sniffer that can track TCP streams and saves the data captured in files or displays them in the terminal. It is useful for picking files in a passive way. It can store all connections in different files, or it can display all the stream on the terminal with colors.
| | Author: | DuskDruid | | Homepage: | http://tcpick.sourceforge.net | | Changes: | Added src directory, flags struct, various other improvements. | | File Size: | 104454 | | Last Modified: | Feb 28 12:33:00 2004 |
| MD5 Checksum: | d9c6351d4875635cfbca705606948a5e |
|
| /// File Name: |
nast-0.2.0.tgz |
Description:
|
Nast is a packet sniffer and a LAN analyzer based on Libnet and Libpcap. It can sniff the packets on a network interface in normal mode or in promiscuous mode. It dumps the headers of packets and the payload in ASCII or ASCII-hex format. Various packet filters can be applied. The data sniffed can be saved in a separate file. As an analysis tool, it can check for other NICs on the network which are set in promiscuous mode, build a list of all hosts on a LAN, find a gateway, perform port scanning on a multiple hosts, catch daemon banners, follow the TCP data stream, reset a connection, and determine whether a link type is a hub or switch.
| | Author: | embyte | | Homepage: | http://nast.berlios.de | | File Size: | 147548 | | Last Modified: | Feb 16 08:44:00 2004 |
| MD5 Checksum: | e6c0a59448a74d48fa28ee784d863854 |
|
| /// File Name: |
promisc20030313.tar.gz |
Description:
|
Promisc is a sniffer based on the AF_PACKET domain socket. It parses the IP, TCP, UDP, ICMP, and ARP protocols. A GTK graphical user interface has been written in order to simplify its use.
| | Author: | binary man | | Homepage: | http://psycho-hazard.net/~binarym/projet/promisc/ | | Changes: | Various updates. | | File Size: | 12247 | | Last Modified: | Feb 14 14:04:00 2004 |
| MD5 Checksum: | e9c25e4e9fc77183d4495cd40ae30ff2 |
|
| /// File Name: |
tcpick-0.1.20.tar.gz |
Description:
|
tcpick is a textmode sniffer that can track TCP streams and saves the data captured in files or displays them in the terminal. It is useful for picking files in a passive way. It can store all connections in different files, or it can display all the stream on the terminal with colors.
| | Author: | DuskDruid | | Homepage: | http://tcpick.sourceforge.net | | File Size: | 100138 | | Last Modified: | Feb 2 21:40:00 2004 |
| MD5 Checksum: | 86e3fa09a3b15a85f3e1bdb4fb71f833 |
|
| /// File Name: |
promisc220103.tgz |
Description:
|
Promisc is a sniffer based on the AF_PACKET domain socket. It parses the IP, TCP, UDP, ICMP, and ARP protocols. A GTK graphical user interface has been written in order to simplify its use.
| | Author: | binary man | | Homepage: | http://gerald.colangelo.free.fr/ | | File Size: | 11803 | | Last Modified: | Jan 16 04:44:00 2004 |
| MD5 Checksum: | 8539ffd37b2b5685a8338d2790d2201c |
|
| /// File Name: |
ipdump.c |
Description:
|
IP Dump is a simple network traffic dump program for Linux 2.x; although it is similar to tcpdump, it does not require the libpcap library.
| | Author: | Christophe Devine | | Homepage: | http://www.cr0.net:8040/about | | File Size: | 5540 | | Last Modified: | Dec 15 00:03:22 2003 |
| MD5 Checksum: | 633e04d0c22d956a4305b222935ff46e |
|
| /// File Name: |
tcptrack-1.0.2.tar.gz |
Description:
|
tcptrack is a packet sniffer which passively watches for connections on a specified network interface, tracking their states and listing them in a manner similar to the top command. It displays source and destination addresses and ports, connection state, idle time, and bandwidth usage. Screenshot available here.
| | Author: | Steve Benson | | Homepage: | http://www.rhythm.cx/~steve/devel/tcptrack | | Changes: | Fixed compile problems with GCC and on Solaris. | | File Size: | 89062 | | Last Modified: | Dec 14 07:46:37 2003 |
| MD5 Checksum: | a661a8a53558c2b72189151e6e992153 |
|
| /// File Name: |
brian.c |
Description:
|
Brian.c is a simple tool to effectively convert a switched network (or a part of it) into a shared network so that sniffing can take place. Allows ARP spoofing of any number of machines, includes an internal relay process for relaying packets to the correct destination, provides a gateway switch for spoofing routers, includes various timing options, and includes a DOS switch for spoofing without relaying. Includes everything to turn a switched network into a shared network so that sniffing can take place, in one easy to use tool. Based on ARP poisoning from Ettercap, but unlike Ettercap it works in many-to-many scenarios which are present in shared networks. Tested on Redhat 8, it compiles under Linux. Requires libnet and libpcap.
| | Author: | Kev | | Homepage: | http://www.bournemouthbynight.co.uk | | File Size: | 33848 | | Last Modified: | Dec 2 22:58:35 2003 |
| MD5 Checksum: | fb9951c00ae07464d20360666ecce380 |
|
| /// File Name: |
tcptrack-1.0.0.tar.gz |
Description:
|
tcptrack is a packet sniffer which passively watches for connections on a specified network interface, tracking their states and listing them in a manner similar to the top command. It displays source and destination addresses and ports, connection state, idle time, and bandwidth usage. Screenshot available here.
| | Author: | Steve Benson | | Homepage: | http://www.rhythm.cx/~steve/devel/tcptrack | | File Size: | 61791 | | Last Modified: | Nov 24 15:00:47 2003 |
| MD5 Checksum: | fddd89cf5711a56dc03f5df8c9fb9e75 |
|
| /// File Name: |
iosniff.tgz |
Description:
|
Cisco Systems IOS 11.x UDP echo memory leak remote sniffer. The UDP echo service (UDP port 7) has to be enabled on the device. The bug will cause the Cisco router to send about 20 kilobytes of data from the interface buffer pools containing packets in the send/recv/forward queues. This tool will identify IOS memory blocks, find the router specific offset for packets in the block and decode the packet to the screen. Note that this is not a full dump of the traffic through the remote router but rather a subset of received data. Features include a packet checksum cache to prevent repeated output of the same packet, auto identification of packets and buffer offsets, and IPv4 decoding.
| | Author: | FX | | Homepage: | http://www.phenoelit.de | | File Size: | 14594 | | Last Modified: | Aug 10 16:35:45 2003 |
| MD5 Checksum: | ad960f073fda285b82dea6d8225ec6f8 |
|
| /// File Name: |
icopy.tgz |
Description:
|
This utility provides a datalink bridge working in userspace that allows captured packets from one ethernet interface to be retransmitted over a non-ethernet interface.
| | Author: | xenion | | Homepage: | http://xenion.antifork.org | | File Size: | 4286 | | Last Modified: | Jun 24 22:51:42 2003 |
| MD5 Checksum: | 2ac6a902e2a85f26389e97b24217456e |
|
| /// File Name: |
svtun-1.2.tar.gz |
Description:
|
SVtun is a simple and powerful distributed sniffer which is based on virtual tunnels. It extends the basic encryption and compression functionality of vtun to support a new interface type "sniff" and provides simple and efficient packet filtering and basic assymetric processing for client/server roles. SVtun is useful for delivering traffic captures from probes to the central server, so that traffic analysis, disk-logging and/or intrusion detection can be performed there. Installation, setup and running is easy.
| | Author: | Silvio,Vadim | | Homepage: | http://www.cs.tau.ac.il/~nnavi/vtun | | File Size: | 111673 | | Last Modified: | Jun 22 08:34:30 2003 |
| MD5 Checksum: | 7890226b06d21deeb449ce9eb056f9da |
|
| /// File Name: |
kripp-0.5.tar.gz |
Description:
|
KRIPP is a simple and light-weight network passwords sniffer written in Perl, which uses tcpdump to intercept traffic. Can sniff and display ICQ, FTP and POP3 passwords.
| | Author: | Konstantin Klyagin | | Homepage: | http://konst.org.ua/kripp | | Changes: | CVS password sniffing and some minor bugfixes. | | File Size: | 10942 | | Last Modified: | May 29 00:52:39 2003 |
| MD5 Checksum: | 697c66aad367def18c9e8165b64ae4ca |
|
| /// File Name: |
ethersniff.c |
Description:
|
A simple utility to probe for the etherleak vulnerability discussed in the Atstake paper where multiple platforms have ethernet Network Interface Card (NIC) device drivers that incorrectly handle frame padding, allowing an attacker to view slices of previously transmitted packets or portions of kernel memory due to poor programming practices.
| | Author: | Michael Komm | | File Size: | 10097 | | Last Modified: | May 23 04:52:20 2003 |
| MD5 Checksum: | 70dd9dbffbad3141f5757645274305aa |
|
| /// File Name: |
eth0sniff.c.gz |
Description:
|
A simple and versatile sniffer utility to monitor ports 21 (FTP) and 110 (POP) for quick accumulation of user and password strings.
| | Author: | SolarIce | | File Size: | 1252 | | Last Modified: | May 7 17:35:45 2003 |
| MD5 Checksum: | e350b27a52157915388532b0f7f02e5a |
|
| /// File Name: |
getdatang.tar.gz |
Description:
|
Getdata Protocol Analyzer is another sniffer made with libpcap that supports multiple protocols like TCP, UDP, ICMP, IGMP, etc.
| | Author: | Victor Pereira | | Changes: | Added experimental support for traffic statistics and various bugfixes. | | File Size: | 16498 | | Last Modified: | Apr 30 10:12:59 2003 |
| MD5 Checksum: | e0779d4543df512cd6808c01ebb8e920 |
|
| /// File Name: |
nagini.c |
Description:
|
A simple TCP packetlogger/sniffer for Linux which includes background logging.
| | Author: | Sacrine | | Homepage: | http://www.netric.org | | File Size: | 6678 | | Last Modified: | Apr 29 23:39:23 2003 |
| MD5 Checksum: | 1fd4d09775f7679f37c9758b4eb7aecc |
|
| /// File Name: |
kripp-0.2.tar.gz |
Description:
|
KRIPP is a simple and light-weight network passwords sniffer written in Perl, which uses tcpdump to intercept traffic. Can sniff and display ICQ, FTP and POP3 passwords.
| | Author: | Konstantin Klyagin | | Homepage: | http://konst.org.ua/kripp | | Changes: | New version includes HTTP support and a few bug fixes. Added support for more flavors of Unix. | | File Size: | 9958 | | Last Modified: | Apr 21 13:35:47 2003 |
| MD5 Checksum: | 68e3f5a5a11a64ab59033b25317d5f01 |
|
| /// File Name: |
passifist_src_1.0.0.tgz |
Description:
|
Passifist is a tool for passive network discovery. It could be used for a number of different things, but was mainly written to discover hosts without actively probing a network. The tool analyzes broadcast traffic and has a plugin architecture through which it dissects and reports services found. Initial version holds support for the following protocols and plugins: CDP, CIM, HSRP, IPX, NETOP, SMB, TFTP.
| | Author: | Patrik Karlsson | | Homepage: | http://www.cqure.net/tools.jsp?id=14 | | File Size: | 47424 | | Last Modified: | Apr 3 11:09:43 2003 |
| MD5 Checksum: | f0a993b8873691afbd384ffd1449a727 |
|
| /// File Name: |
ferret.exe |
Description:
|
LinkFerret is a monitoring tool that provides all of the major functionality required in a wireless monitor. This includes packet capture and decoding, channel scanning, AP detection, and WEP decryption. Note: This is a 30 day evaluation copy.
| | Homepage: | http://www.linkferret.ws | | File Size: | 3279353 | | Last Modified: | Mar 4 01:00:58 2003 |
| MD5 Checksum: | f9eeeec2bb5782d0afc4d609f0bc4472 |
|
|
|
|
|