IP Sniffer 1.98.0.3



IP Sniffer is a suite of IP Tools built around a packet sniffer.IP Sniffer

The packet sniffer can work on all Windows versions using either the new raw socket implementation of Windows2000 (driverless) or WinPcap (needs to be installed) or a NDIS protocol (needs to be installed , no reboot).
The sniffer has basic features like filter, decode, replay, parse…

The packet sniffer can work on all Windows versions using either:

* the new raw socket implementation of Windows2000 (driverless),
* WinPcap (needs to be installed),
* a NDIS protocol (needs to be installed , no reboot).

The sniffer has basic features like filter, decode, replay, parse, etc.

The IP tools are:

* Bandwidth monitor. view
* Adapter statistics (IP & NDIS). view
* Wireless Stumbler.
* List and manage ARP entries, resolve IP from/to MAC, ARP scan, Create ARP proxy, send a WAKEUP call, RARP client / server, ARP Watch. view
* List and manage routes, enable & disable host as a router. view
* List and manage open ports and attached processes. view view
* View network config (interfaces, adapters, parameters).
* Hook winsock calls.
* Spoof ARP (and do ARP cache poisoning), TCP, UDP, ICMP, DHCP.
* Change MAC address. view
* SNMP Get & Set, List interfaces, Switch port mapper, Media Attachment Unit table, Net to media table, network stats, connection table.
* WINS Query.
* DNS (advanced) Query, DNS Server, Local resolver.
* DHCP Server (with PXE support), DHCP Discover.
* Whois Query, IP Geo Location.
* Mail client (SMTP & MAPI).
* TCP tools:
o TCP ping, TCP half scan, Time-Daytime client/server.
o HTTP Server, FTP Server.
o HTTP Proxy, Telnet Bouncer, FTP Bouncer.
o LPR Client.
* UDP tools (MSSQL Ping, SNMP ping, SSDP ping, Syslog client/server, Time-Daytime client/server, TFTP server).
* ICMP tools (Ping, GetBestRoute, GetRTTAndHopCount).
* TCP/UDP bounce port.
* MS Networks:
o Spoof net send, Shutdown remote windows, Display remote windows properties, Netapi services, Terminal Services processes and sessions, Winspool services, remote drivers, remote AT jobs, remote scheduled tasks, Logged on users, Dump remote users, manage DHCP services, MS SQL processes, MS Perf counters, remote processes, remote event logs.
* Password tools:
o Protected storage (IE, Outlook Express, …) , LSA secrets, Dialup Passwords , XP Credentials ( MSN, network shares, …) , IE history, Reveal asterisks / hidden passwords, RDP passwords, MSAccess passwords, enum WEP keys, MS SQL enterprise manager passwords, Known default passwords.
* Other / System tools :
o Manage processes, Opened files, Windows Handles, Events for processes/events/files changes, bandwidth tester (based on iperf), manage windows devices, VBS script editor, WMI browser, Create maps with Graphviz, manage ACL’s.

What’s New in version 1.98.0.3:

* added : loadfromdb and savetodb will keep table history
* added : save cap file with same link type as loaded cap file
* added : find user / computer in ad browser
* added : lastlogontimestamp in ad browser
* added : update/add/delete db one item in bookmark
* added : add/delete/create group & user in ad browser
* added : winsock hook will display 127.0.0.1 traffic
* added : winsock hook can save datas to cap file
* added : more reports : devices, printers ports/drivers/monitors, local admins
* added : reports from a list of servers
* added : update line from vbs in bookmark window
* added : new unit = hashes
* added : SIO_RCVALL IOCTL option (to be tested against different nics)
* added : modified savetreeview to be able to reload via loadlistview
* added : remove column, search and replace in bookmark
* fixed : winsock hook (recv functions were nulling the buffer)
* todo : switch to virtual view?
* todo : add mssql processes,ts services, dhcp bails to host report?
* todo : winspool helper with ureport unit
* todo : sid to account
* todo : snmp reports for windows hosts?

Size: 6.53MB
Publisher: Visit Website
Release Date: 2008-12-25
Submit Date: 2008-12-25
OS: Win 9x/ME/NT/2K/XP/2K3
Download here



If you enjoyed this post, please consider to leave a comment or subscribe to the feed and get future articles delivered to your feed reader.

Comments

No comments yet.

Leave a comment

(required)

(required)