Mostrando entradas con la etiqueta Software. Mostrar todas las entradas
Mostrando entradas con la etiqueta Software. Mostrar todas las entradas

SuperAntiSpyware Professional 4.27.1000 (MultiLenguaje - Final - Full)



SUPERAntiSpyware es el explorador más cuidadoso en el mercado. Nuestro multidimensional de la exploración y la Tecnología de la interrogación detectará el spyware la otra falta de los productos. Eliminar fácilmente las plagas, como WinFixer, SpyAxe, SpyFalcon, y miles más. SUPERAntiSpyware será detectar y eliminar miles de Spyware, Adware, Malware, troyanos, keyloggers, dialers, Hi-Jackers, y gusanos. SUPERAntiSpyware muchas características únicas y poderosas tecnologías elimina los programas espía y otras amenazas que las aplicaciones no eliminar.

SUPERAntiSpyware Professional incluye bloqueo en tiempo real de amenazas programadas de escaneo, ilimitado y gratuito de Atención al Cliente por e-mail. También incluye una característica de reparación que le permite restaurar la configuración de diferentes que a menudo son cambiadas por programas malware, pero normalmente no se corrige por la simple eliminación de los parásitos. Reparación de las conexiones quebradas del Internet, PCs, registro que corrige y más con nuestro sistema único de la reparación. Dedicado equipo de investigación de amenazas rastrea la web para las nuevas amenazas y proporciona actualizaciones diarias de la definición.

Eliminar fácilmente más de 1 millón de plagas y componentes, tales como amenaza VirusRay, AntiVirGear, VirusProtectPro, DriveCleaner, SmitFraud, Vundo, WinFixer, SpyAxe, SpyFalcon, WinAntiVirus, AntiVermins, AntiSpyGolden y miles más!

Características:

* Rápido, completo y personalizado de escaneo de discos duros, unidades extraíbles, memoria, registro, carpetas individuales y más! Incluye artículos y Confiando Excluyendo carpetas para completar la personalización de la digitalización!
* Detectar y eliminar Spyware, Adware, Malware, troyanos, dialers, gusanos, keyloggers, secuestradores y otros muchos tipos de amenazas.
* Luz en los recursos del sistema y no ralentizar el equipo al igual que muchos otros productos anti-spyware. No en conflicto con su actual anti-spyware o anti-virus para el!
* Reparación de las conexiones quebradas del Internet, PCs, registro que corrige y más con nuestro sistema único de la reparación!
* El bloqueo en tiempo real de las amenazas! Evitar posibles software de la instalación o volver a instalar!
* Multidimensional de la exploración detecta las amenazas existentes, así como las amenazas del futuro mediante el análisis de la amenaza características, además de patrones de código.
* Primera Oportunidad Prevención examina más de 50 puntos críticos de su sistema cada vez que su sistema arranca y se apaga para eliminar las amenazas antes de que tengan la oportunidad de infectar y de infiltrarse en su sistema.
* Tecnología de la interrogación del proceso permite que las amenazas a ser detectado sin importar donde se esconden en su sistema.
* Calendario bien rápida, completa o personalizada Escanea diario o semanal para asegurarse de que su ordenador esté libre de software dañino.
* Equipo de investigación dedicado de la amenaza friega la tela para las nuevas amenazas y proporciona actualizaciones diarias de la definición

Tamaño: 6,6 MB

http://anonym.to/?http://uploading.com/files/X54JQGAD/SUPERAS.rar.htmlhttp://anonym.to/?http://uploading.com/files/X54JQGAD/SUPERAS.rar.html

http://anonym.to/?http://hotfile.com/dl/9966609/de4106c/SUPERAS.rar.html

Software para particionar tu disco duro en Linux

Gparted Logo

En Linux existen diferentes maneras de realizar particiones en tu disco duro, aunque los programas estrella no sean más que interfaces de uno solo: parted.

Para los puristas de KDE hay que decir que existió un particionar específico para KDE, el llamado KParted, pero parece ser que éste cayó en el olvido.

Así que nos queda, que no es poco, qtparted, que como su propio nombre indica utiliza librerías qt. Qtparted es un particionar sencillo, fácil de manejar y que se instala desde repositorio. Tiene un grave problema: hace mucho tiempo que no se actualiza (2005) con lo que le auguro un futuro tan oscuro como Kparted.

QT-parted

La verdadera estrella entre los particionadores de Linux es GParted, que como su inicial indica es propia de Gnome pero que funciona perfectamente en KDE. Su aspecto es prácticamente igual a qtparted pero tiene muchas más funciones, manteniendo siempre la sencillez como bandera.

Gparted

Además, dispone de un LiveCD (y Live USB) utilísimo para poder utilizar Gparted como herramienta antes de instalar un Sistema operativo, como veremos en próximos artículos.

Algunas distribuciones, como Ubuntu, ofrecen GParted como utilidad dentro de su LiveCD con lo que si aprendemos a utilizar dicho programa podemos particionar correctamente nuestros discos para disponer de dos o más sistemas operativos en nuestros PC o a tener la información mejor organizada.

Fuente: http://www.kdeblog.com/software-para-particionar-tu-disco-duro-en-linux.html

Manual Hdd Regenerator v1.61

A continuación voy a explicar el uso de HDD Regenerator una herramienta de uso sencillo pero que puede sacarnos de muchos apuros.

HDD Regenerator es una utilidad que permite arreglar los sectores defectuosos que pueda tener nuestro disco duro.

Descargamos el Programa Aqui Hdd Regenerator 1.61 El password es digicorp

1) Ejecutamos uno de los tres archivos que hay en el rar llamado hr161.exe y el programa se instalará en “X:/archivos de programa/HDD Regenerator/” dentro de esa carpeta copiamos el archivo Crack.exe y lo ejecutamos.



El programa se encargará de parchearlo auto, si no pulsamos en “Apply Patch”



A continuación abrimos el programa, Hdd regenerator1.61.exe y después el archivo KeyMaker.exe que tenemos en el rar.



Tenemos que introducir el Serial, pulsamos donde pone Full Version y Serial Number, copiamos y pegamos el Serial que hemos creado con el nombre que hemos elegido y pulsamos OK, cuando el proceso haya concluido y hayamos reiniciado el programa en la esquina inferior derecha nos debería poner Registered.



Ya está nuestro programa registrado ahora lo iniciamos: Pulsamos en Regeneration y a continuación en Start Process under Windows:



Y nos saldrá la siguiente pantalla con los discos duros que tenemos conectados hacemos doble clic al que queremos escanear y aparecerá una pantalla en Ms-dos con 4 opciones.

Si en la anterior selección de discos duros nos aparece ésta advertencia :



Pulsamos a OK y nos aparecerá ésta otra:



Pulsamos de nuevo en Ok y el programa se abrirá sin problemas. ( Éstas dos advertencias anteriores se deben a que intentamos realizar una comprobación en un disco duro que el sistema windows lo está usando como sistema de instalación ó como sistema raiz, es conveniente desconectar el disco duro dañado y usar una segunda máquina para hacer el escaner).
Pulsamos la Opcion 1 (Scan and Repair) y nos aparecerá la siguiente pantalla:



Se deja ese valor como nos indica la imagen Pulsamos Enter para comenzar con la reparación:



El proceso puede tardar bastantes horas dependiendo del tamaño del disco. Ejemplo: Un Hdd de 200Gb. sin errores tarda entre 40 y 60 minutos, si hay encuentra errores vamos sumando 5 minutos Aprox. por sector defectuoso encontrado.

Espero que este manual sea de utilidad.

Fuente: http://reparasoft.foroactivo.com/windows-xp-f11/manual-hdd-regenerator-v161-t11.htm

10 Best Hacking and Security Software Tools for Linux

Linux is a hacker’s dream computer operating system. It supports tons of tools and utilities for cracking passwords, scanning network vulnerabilities, and detecting possible intrusions. I have here a collection of 10 of the best hacking and security software tools for Linux. Please always keep in mind that these tools are not meant to harm, but to protect.

1. John the Ripper

John the Ripper is a free password cracking software tool initially developed for the UNIX operating system. It is one of the most popular password testing/breaking programs as it combines a number of password crackers into one package, autodetects password hash types, and includes a customizable cracker. It can be run against various encrypted password formats including several crypt password hash types most commonly found on various Unix flavors (based on DES, MD5, or Blowfish), Kerberos AFS, and Windows NT/2000/XP/2003 LM hash. Additional modules have extended its ability to include MD4-based password hashes and passwords stored in LDAP, MySQL and others.


2. Nmap

Nmap is my favorite network security scanner. It is used to discover computers and services on a computer network, thus creating a "map" of the network. Just like many simple port scanners, Nmap is capable of discovering passive services on a network despite the fact that such services aren't advertising themselves with a service discovery protocol. In addition Nmap may be able to determine various details about the remote computers. These include operating system, device type, uptime, software product used to run a service, exact version number of that product, presence of some firewall techniques and, on a local area network, even vendor of the remote network card.

Nmap runs on Linux, Microsoft Windows, Solaris, and BSD (including Mac OS X), and also on AmigaOS. Linux is the most popular nmap platform and Windows the second most popular.


3. Nessus

Nessus is a comprehensive vulnerability scanning software. Its goal is to detect potential vulnerabilities on the tested systems such as:

-Vulnerabilities that allow a remote cracker to control or access sensitive data on a system.
-Misconfiguration (e.g. open mail relay, missing patches, etc).
-Default passwords, a few common passwords, and blank/absent passwords on some system accounts. Nessus can also call Hydra (an external tool) to launch a dictionary attack.
-Denials of service against the TCP/IP stack by using mangled packets

Nessus is the world's most popular vulnerability scanner, estimated to be used by over 75,000 organizations worldwide. It took first place in the 2000, 2003, and 2006 security tools survey from SecTools.Org.


4. chkrootkit

chkrootkit (Check Rootkit) is a common Unix-based program intended to help system administrators check their system for known rootkits. It is a shell script using common UNIX/Linux tools like the strings and grep commands to search core system programs for signatures and for comparing a traversal of the /proc filesystem with the output of the ps (process status) command to look for discrepancies.

It can be used from a "rescue disc" (typically a Live CD) or it can optionally use an alternative directory from which to run all of its own commands. These techniques allow chkrootkit to trust the commands upon which it depend a bit more.

There are inherent limitations to the reliability of any program that attempts to detect compromises (such as rootkits and computer viruses). Newer rootkits may specifically attempt to detect and compromise copies of the chkrootkit programs or take other measures to evade detection by them.


5. Wireshark

Wireshark is a free packet sniffer computer application used for network troubleshooting, analysis, software and communications protocol development, and education. In June 2006, the project was renamed from Ethereal due to trademark issues.

The functionality Wireshark provides is very similar to tcpdump, but it has a GUI front-end, and many more information sorting and filtering options. It allows the user to see all traffic being passed over the network (usually an Ethernet network but support is being added for others) by putting the network interface into promiscuous mode.

Wireshark uses the cross-platform GTK+ widget toolkit, and is cross-platform, running on various computer operating systems including Linux, Mac OS X, and Microsoft Windows. Released under the terms of the GNU General Public License, Wireshark is free software.


6. netcat

netcat is a computer networking utility for reading from and writing to network connections on either TCP or UDP.

Netcat was voted the second most useful network security tool in a 2000 poll conducted by insecure.org on the nmap users mailing list. In 2003, it gained fourth place, a position it also held in the 2006 poll.

The original version of netcat is a UNIX program. Its author is known as *Hobbit*. He released version 1.1 in March of 1996.

Netcat is fully POSIX compatible and there exist several implementations, including a rewrite from scratch known as GNU netcat.


7. Kismet

Kismet is a network detector, packet sniffer, and intrusion detection system for 802.11 wireless LANs. Kismet will work with any wireless card which supports raw monitoring mode, and can sniff 802.11a, 802.11b and 802.11g traffic.

Kismet is unlike most other wireless network detectors in that it works passively. This means that without sending any loggable packets, it is able to detect the presence of both wireless access points and wireless clients, and associate them with each other.

Kismet also includes basic wireless IDS features such as detecting active wireless sniffing programs including NetStumbler, as well as a number of wireless network attacks.


8. hping

hping is a free packet generator and analyzer for the TCP/IP protocol. Hping is one of the de facto tools for security auditing and testing of firewalls and networks, and was used to exploit the idle scan scanning technique (also invented by the hping author), and now implemented in the Nmap Security Scanner. The new version of hping, hping3, is scriptable using the Tcl language and implements an engine for string based, human readable description of TCP/IP packets, so that the programmer can write scripts related to low level TCP/IP packet manipulation and analysis in very short time.

Like most tools used in computer security, hping is useful to both system administrators and crackers (or script kiddies).


9. Snort

Snort is a free and open source Network Intrusion prevention system (NIPS) and network intrusion detection (NIDS) capable of performing packet logging and real-time traffic analysis on IP networks.

Snort performs protocol analysis, content searching/matching, and is commonly used to actively block or passively detect a variety of attacks and probes, such as buffer overflows, stealth port scans, web application attacks, SMB probes, and OS fingerprinting attempts, amongst other features. The software is mostly used for intrusion prevention purposes, by dropping attacks as they are taking place. Snort can be combined with other software such as SnortSnarf, sguil, OSSIM, and the Basic Analysis and Security Engine (BASE) to provide a visual representation of intrusion data. With patches for the Snort source from Bleeding Edge Threats, support for packet stream antivirus scanning with ClamAV and network abnormality with SPADE in network layers 3 and 4 is possible with historical observation.


10. tcpdump

tcpdump is a common computer network debugging tool that runs under the command line. It allows the user to intercept and display TCP/IP and other packets being transmitted or received over a network to which the computer is attached.

In some Unix-like operating systems, a user must have superuser privileges to use tcpdump because the packet capturing mechanisms on those systems require elevated privileges. However, the -Z option may be used to drop privileges to a specific unprivileged user after capturing has been set up. In other Unix-like operating systems, the packet capturing mechanism can be configured to allow non-privileged users to use it; if that is done, superuser privileges are not required.

The user may optionally apply a BPF-based filter to limit the number of packets seen by tcpdump; this renders the output more usable on networks with a high volume of traffic.


Do you have a favorite security software tool for Linux? Feel free to comment and tell us about it.

Source: http://www.junauza.com/2008/07/10-best-hacking-and-security-software.html

Utilidades Hackers [TEU]

UTILIDADES HACKERS (TEU)

Es un paquete de Utilidades Hackers el cual lo puede utilizar cualquier persona, no es para hacer uso indebido es para aprender y conocer mas del segundo mundo que hay en el Internet, el conocimiento es para compartirlo no para cobrar por el…

Principal

2

3

4

Contenedor: MegaUpload Y RapidShare

Link: Intercambiables

Peso: 1022 Mb - 1.0 Gb

Contraseña: chakl

Los archivos para los que desconocen del tema se bajan de los links que aparecen en la parte de abajo que estan en formato RAR, luego se descomprime con la contraseña mencionada arriba, queda una imagen ISO y queda lista para grabar con Nero o con cualquier otro grabador que deseen si quieren ser prevenidos antes de quemarlo lo pueden montar con el Daemon Tools que estara en la parte de abajo con el Winrar.

Hay archivos que cuando los abran como por ejemplo keylogger u otros dentro del (TEU), el Antivirus los detecta como Virus pero no hace ningun daño al PC, para que puedan trabajar sin comodidad desactivenlo os explico esto para que sepan y luego no vayan a decirmes cosas sin antes leer.


El Todo En Uno (TEU) de Utilidades Hackers contiene lo siguiente:

Utilidades Hackers:

HACKER

Anti Keylogger

Anti key

Camuflage

Camouflage Kamaleon

Camouflage v. 1.2.1

Congelador

Deep Freeze v. 4.20

Deep Freeze v. 6.30

Deep Unfreezer v. 1.1

Fuck Deep Freeze v. 5.0

Rompe Hielo v. 1.0

Crackeadores

Advance Archive Password Recovey

Proactive Password Auditor

Encryptacion Join y Binder

Advanced File Joiner

Allok Video Joiner v. 2.0

Binder

Blinder

B-Protector v. 1.0

Kamaleon v. 2.0

Open Crypter

I Crypt

Minke

Themida

Escaneador

CyberKit

IP Tools

N-Stealth

SuperScan v. 2.04

Hacker

Cain y Abel

Hack Office 2000 v. 0.1.8.1

Putty v. 0.60

TCP View

Tola´s Patching Engine v. 2.03

xHacker

X-nestat v. 4.0 Professional

Keylogger

Douglas Keylogger v. 2.0

Keylogger Ardamax v. 2.42

N3ck – Keylogger v. 1.0

Perfecto Keylogger v. 1.61

Mail Anonyme

Dragon Mail

Uby Anonyme Mail v. 3.0

MSN

BlooD MSN

FakeMSN6

MadMSN6

MSN Flooder

msnNightmare

SniffIM

MSN v. 8.5 y Plus

CEDY Stealer

Fenix MSN

MSN Cleaner

MSN Tool

Ratero MSN

Tools 336 MSN

Desbloquear MSN

Nick Creator

Troyanos

Bifrost v. 1.2.1

Turkojan 4

Shark v. 3.1

Remote WebCam

Net Bus v. 1.7

SUB – Seven v. 2.1

Back Orifice 2000 v. 1.0

The FOG 0.5 by IMPosTOR

Optix Pro v. 1.33

Vampire v. 1.2

Juegos de Hacker

DarkSings

Hack The Game

Hacker v. 3.1 - Cyber Warefare

Street Hacker

Hacker Evolution v. 1.00.0083

Nuke Virus y Bromas

Account Dismantel

Crooked – Convict

IceCold Reloaded v. 1.0

Nuke Attack

Nuke MSN v. 1.5

NSNUKE

Antiboots

El Hechicero

NukeIt

Nuke Nabber v. 2.9

Trollin Arounds Deny a Buddy

CRACKER

Analysis

File insPEctor

Hack ASM

ProtectionID v. 5.0

RDG Packer Detector

Sheeps Array of Sushine

Smart Check

W32Dism v. 8.93

Compilers

Dev-C++

Masm32

Source Boots IDE

Game Tools

FileStripper

Game Extract

Magic Extractor

Mini I. Ripper

MultiEx Commander

UnsafediscX

UnSecuromNJ

Hex – Editors

Hex Workshop

WinHex

Misc

ASPR CRCI

Customiz

Hash Tools

Res Grabber

Resource Hacker

Snd Tools

Credit Card Tools

BKInline

Date Cracker

Process Explorer

Net Based

Access Diver v. 4.120

Brute Forcer

Nifty

Proxy Hunter Zibi

Packers

FSG

Graphical & Scrambler v. 1.33

Patchers

ABEL

aPE

Dza

Liquid2

Patch Wizard

Patch FX

Graphical – Patch Maker

PGPE

RJD Patcher

TolasPE

Universal Loader

UPP

YPP

PE Stuff

PEditor

PEiJ

PEOptimizer

PETools

Stud – Pe

Rebuilding

ImpRec

Lord PE

Un – Packers

ACProtect

Armadillo

EXEStealth

PECompact

PESpin

unPEcrypt

VB

Anti AS pack

DBPE


http://www.megaupload.com/?d=6RFURG3J
http://www.megaupload.com/?d=MXCWDQ79
http://www.megaupload.com/?d=1W8EYPWR
http://www.megaupload.com/?d=N3Z50X5R
http://www.megaupload.com/?d=BCTNDN76
http://www.megaupload.com/?d=AQ0O2RZT

http://rapidshare.de/files/47383817/Utilidades_Hacker.part1.rar.html
http://rapidshare.de/files/47385160/Utilidades_Hacker.part2.rar.html
http://rapidshare.de/files/47386270/Utilidades_Hacker.part3.rar.html
http://rapidshare.de/files/47387305/Utilidades_Hacker.part4.rar.html
http://rapidshare.de/files/47397067/Utilidades_Hacker.part5.rar.html
http://rapidshare.de/files/47380974/Utilidades_Hacker.part6.rar.html

Winrar v. 4.6

http://www.megaupload.com/?d=C4M5M65J
http://rapidshare.de/files/47419499/WinRAR_v._4.6.rar.html

Daemon Tools Lite v. 4.30.1

http://www.megaupload.com/?d=R6V4B0W2
http://rapidshare.de/files/47419555/Daemon_Tools_Lite_v._4.30.1.rar.html

Subido por CHAKL

Kit de Herramientas para el Análisis Forense

Outport

Programa que permite exportar los datos desde Outlook a otros clientes de correo (p.e. Evolution). Probado por el autor con Outlook 2000 y Evolution 1.0.x y 1.2.x.


AIRT (Advanced incident response tool)
Conjunto de herramientas para el analisis y respuesta ante incidentes, utiles para localizar puertas traseras. Los 5 programas que lo componen son:


  • mod_hunter: busca modulos ocultos
  • process_hunter: busca procesos ocultos
  • sock_hunter: busca puertos ocultos
  • modumper: vuelca el contenido de un modulo oculto en un fichero
  • dismod: permite analizar el volcado anterior


Foremost
Utilidad para linux que permite realizar analisis forenses. Lee de un fichero de imagen o una particion de disco y permite extraer ficheros.


WebJob

Permite descargar un programa mediante HTTP/HTTPS y ejecutarlo en una misma operacion. La salida, en caso de haberla, puede dirigirse a stdout/stderr o a un recurso web. Soporta administracion centralizada, monitoreo de procesos, comprobacion de la integridad de ficheros, etc.


HashDig

Automatiza el proceso de calculo de los hashes MD5 y comprobacion de integridad, distinguiendo entre ficheros conocidos y no conocidos tras compararlos con una base de datos de referencia.


md5deep

Conjunto de programas que permiten calcular resumenes MD5, SHA-1, SHA-256, Tiger Whirlpool de un numero arbitrario de ficheros. Funciona sobre Windows. Linux, Cygwin, *BSD, OS X, Solaris y seguro algunos mas. Similar en funcionalidad al programa md5sum se diferencia en las siguientes caracteristicas:

  • Recursividad.
  • Estimacion del tiempo de duracion del proceso.
  • Modo comparitivo.
  • Permite trabajar sobre un tipo de fichero determinado.


Automated Forensic Analysis

Herramienta para analisis automatizado de volcados vfat o ntfs compuesta por un conjunto de scripts que buscan informacion interesante para un analisis forense.


Gpart

Programa que permite recuperar la tabla de particiones de un disco cuyo sector 0 este dañado, sea incorrecto o haya sido eliminado, pudiendo escribir el resultado obtenido a un fichero o dispositivo.


TestDisk

Programa que permite chequear y recuperar una particion eliminada. Soporta BeFS (BeOS), BSD disklabel (FreeBSD/OpenBSD/NetBSD), CramFS (Sistema de Ficheros Comprimido), DOS/Windows FAT12, FAT16, FAT32, HFS, JFS, Ext2, Ext3, Linux Raid, Linux Swap (versiones 1 y 2), LVM, LVM2, Netware NSS, NTFS (Windows NT/2K/XP/2003), ReiserFS 3.5, ReiserFS 3.6, UFS, XFS y SGI's Journaled File System.


Dump Event Log

Herramienta de linea de comandos que vuelca el log de eventos de un sistema local o remoto en un fichero de texto separado por tabuladores. Tambien puede utilizarse como filtro en la busqueda de determinados tipos de eventos.


fccu-docprop

Utilidad de linea de comandos que muestra las propiedades de ficheros MS OLE como son los DOC o XLS. Utiliza la libreria libgsf para obtener los metadatos y pyede utilizarse en investigaciones forenses.


fccu.evtreader

Herramienta para analisis forense que permite al investigador analizar ficheros de log de eventos de Windows. Se trata de un script de perl que puede funcionar bajo Linux, y que deberia funcionar en otros sistemas.


GrokEVT

Conjunto de scripts en python que permiten analizar ficheros de registros de eventos de Windows NT. Tambien permite extraer cualquier otro tipo de log y convertirlo en un formato legible.


Event Log Parser

Script PHP que, pasandole un fichero de log de Windows, permite extraer su contenido en un fichero de texto ASCII.


srprint

Herramienta que permite volcar el contenido de los ficheros de log de la utilidad de restauracion del sistema de Windows XP. Este tipo de logs permiten averiguar la fecha de creacion y borrado de ficheros que ya no esten presentes en el sistema.


iDetect Toolkit

Utilidad que asiste a un investigador forense en el analisis de la memoria de un sistema comprometido.


Galleta

Una herramienta para el analisis forense de las cookies del Internet Explorer. Parsea la informacion de un fichero de cookie obteniendo como resultado campos separados por tabuladores que pueden importarse facilmente a una hoja de calculo.


Pasco

Permite analizar los ficheros de registro de la actividad del Internet Explorer. Parsea la informacion de un fichero index.dat obteniendo como resultado campos separados por tabuladores que pueden importarse facilmente a una hoja de calculo.


Web Historian

Asiste en la recuperacion de las URLs de los sitios almacenados en los ficheros historicos de los navegadores mas habituales, incluyendo: MS Internet Explorer, Mozilla Firefox, Netscape, Opera y Safari.


Rifiuti

Herramienta para el analisis forense de la informacion almacenada en la Papelera de Reciclaje de un sistema Windows. Parsea la informacion de un fichero INFO2 obteniendo como resultado campos separados por tabuladores que pueden importarse facilmente a una hoja de calculo.


Reg Viewer

GUI en GTK 2.2 para la navegacion de ficheros de registro de Windows. Es independiente de la plataforma en que se ejecute.


RegParse

Script de perl que realiza el parseo de los datos de ficheros de registro de Windows en crudo. Abre el fichero en modo binario y parsea la informacion registro a registro. Escrito originalmente para Windows esta especialmente recomendado para el parseo del fichero NTUSER.DAT, system32\config\SYSTEM y system32\config\SOFTWARE.


Regutils

Herramientas para la manipulacion de ficheros ini y de registro de sistemas Windows 9x desde UNIX.


allimage

Esta herramienta para Windows nos permitira crear imagenes bit a bit de cualquier tipo de dispositivo de almacenamiento de datos (diskettes, cdroms, unidades usb, discos duros, etc). Cabe destacar que incluye un gestor para montaje de particiones de forma que puede resultar muy util para asignar una letra de unidad a un fichero de imagen de un sistema Windows de forma que pueda realizarse un analisis post-mortem.

Como "pega" pues que se trata de un problema comercial. Dispondremos de 14 dias para probar el software, tiempo mas que suficiente para lo que nos traemos entre manos


ProDiscover Basic Edition

Completo entorno grafico para el analisis forense de sistemas bajo entornos Windows. Permite realizar imagenes, preservar, analizar y realizar informes de los elementos contenidos en el dispositivo sujeto del analisis. Esta version, mas limitada que su hermano mayor, es completamente gratuita.

NOTA: He tenido problemas al intentar iniciar la ultima version liberada en un sistema Windows configurado para utilizar el español como idioma predeterminado del sistema, por lo que, en caso de tener problemas, descargar la version anterior.

NOTA: Para conseguir que se inicie la ultima version de la aplicacion (v5) es necesario entrar a la "Configuracion regional y de idioma", a traves del panel de control, y seleccionar "Ingles (Estados Unidos)" dentro de la opcion "Estandares y formatos".


FTK Imager

Herramienta que nos permitira realizar imagenes de un dispositivo comprometido. Entre sus caracteristicas tambien esta la conversion entre diferentes formatos de imagen, p.e. imagen dd a imagen de Encase, etc. Herramienta disponible de forma gratuita. Tambien existe una version lite, cuya funcionalidad es mas reducida.


PyFlag

Avanzada herramienta para el anslisis forense de grandes volumenes o imagenes de log. Desarrollada en python posee una interfaz accesible mediante navegador web. Entre sus caracteristicas posee la de integrar volatility, facilitando de esta forma el analisis de ficheros de imagen de la memoria fisica de un sistema Windows.

En principio esta pensada para ejecutarse bajo sistemas Linux pero en su ultima version tambien estan disponibles los paquetes necesarios para ejecutarla bajo un sistema Windows.


PlainSight

Completo entorno para el analisis forense de sistemas. Se trata de un sistema Linux que podemos ejecutar desde un CD y que contiene muchas utilidades opensource. Todavia se encuentra en sus inicios por lo que puede resultar un proyecto muy interesante al que seguirle la pista.


SmartMount

Herramienta que permite montar diferentes tipos de formatos de imagen, entre otras funcionalidades, y que se encuentra disponible tanto para linux como para Windows. Dado que todavia esta en fase beta es muy presumible que poco a poco vaya incluyendo nuevas funcionalidades.


Volatility Framework

Completo framework desarrollado en Python que nos permitir el analisis de un volcado de la memoria fisica de un sistema Windows. Ademas de ser multiplataforma ofrece las siguientes funcionalidades:

  • Obtener fecha y hora del contenido de la imagen
  • Listado de los procesos en ejecucion
  • Sockets de red abiertos
  • Conexiones de red abiertas
  • DLLs cargadas por cada proceso
  • Ficheros abiertos por cada proceso
  • Claves del registro abiertas por cada proceso
  • Direcciones de memoria asignadas a cada proceso
  • Modulos del kernel
  • Extraccion de ejecutables almacenados en memoria



Mantech Memory DD

Herramienta gratuita que nos permitira obtener un volcado en formato dd del contenido de la memoria fisica de un sistema Windows 2k, 2k3, XP, Vista y 2k8, tanto en sus versiones de 32 como de 64 bits. El fichero resultante es facilmente analizable con Volatility, con toda la potencia que ello implica.


win32dd

Herramienta open source que, al igual que la anterior, nos permitira obtener un volcado en formato dd del contenido de la memoria fisica de un sistema Windows.


Sandman Framework

Libreria desarrollada en C que, entre otras caracteristicas, nos permitira la conversion de un fichero hiberfil.sys a formato dd, de forma que podamos analizarlo con Volatility. Actualmente unicamente soporta los ficheros hiberfil.sys de sistemas Windows XP a 2008 en sus versiones de 32 bits. Tambien incluye un port de la libreria de forma que pueda ser utilizada por scripts generados en python.

Fuente: http://www.wadalbertia.org/phpBB2/viewtopic.php?t=662

10 extraordinarias herramientas para hacer copias de seguridad en Linux

En TechRepublic han publicado un interesante artículo en el que muestran 10 de las herramientas más utilizadas a la hora de hacer copias de seguridad, para sistemas GNU/Linux. El artículo se encuentra en Inglés.

1. fwbackups

fwbackups 10 extraordinarias herramientas para hacer copias de seguridad en Linux




Esta es, de lejos, la más sencilla de las soluciones de Linux para hacer copias de seguridad. Es multiplataforma, tiene una interfaz amigable para el usuario, y puede hacer backups individuales ó recurrir a backups programados. También te permite hacer backups tanto local como remótamente en formato tar, tar.gz, tar.bz2 ó rsync. Puedes sacar copias de un sólo archivo hasta un equipo entero. A diferencia de muchas otras utilidades, fwbackups es fácil de instalar debido a que se encuentra en los repositorios de muchas distribuciones. Tanto hacer copias como restaurarlas es increíblemente fácil (así como programar backups remotos). También puedes hacer backups incrementales ó diferenciales para acelerar el proceso.

2. Bacula

bat2mini 10 extraordinarias herramientas para hacer copias de seguridad en Linux



Bacula es una poderosa herramienta para hacer copias de seguridad, y además, una de las pocas open source verdaderamente preparadas para funcionar en entornos empresariales. Pero con esta preparación también viene un nivel de complejidad que seguramente no encontrarás en ninguna otra solución. Bacula contiene varios componentes que le hacen única:

* Director — Esta es la aplicación que se encarga de supervisar todo lo relacionado con Bacula.
* Console — Es la encargada de comunicarse con Bacula Director.
* File — Esta es la aplicación que debe estar instalada en la máquina a hacer backup.
* Storage — Esta aplicación realiza la lectura y escritura a tu espacio de almacenamiento.
* Catalog — Esta aplicación es la responsable de las bases de datos usadas.
* Monitor — Esta permite al administrador mantener el historial de el estado de las varias herramientas de Bacula.

Bacula no es la herramienta más fácil de configurar y usar. Sin embargo, es una de las más poderosas. Si estás buscando poder y no estás preocupado en el tiempo a gastar en la configuración, Bacula es tu solución.

3. rsync

Rsync es una de las herramientas más usadas en Linux al hablar de backups. Con rsync, puedes hacer copias incrementales flexíblemente, tanto local como remotamente. Rsync puede actualizar sistemas de archivos completos; preservando los enlaces, dueños, permisos y privilegios; usa rsh, ssh, ó sockets directos para establecer las conexiones; y soporta conexiones anónimas. Rsync es una herramienta de línea de comandos, aunque hay varios front ends disponibles (como Grsync) pero estos anulan la flexibilidad de tener una simple herramienta de línea de comandos para hacer backups. Una de las grandes ventajas de tener una herramienta de línea de comandos es que puedes crear scripts simples para usar, en conjunto con cron, puedes crear backups automatizados. Para esto, rsync es perfecto.


4. Mondorescue

screenshotsf 10 extraordinarias herramientas para hacer copias de seguridad en Linux



Mondorescue es una de esas herramientas que hay para recuperarse de desastres, porque uno de sus fuertes es hacer backups a una instalación entera. Otra de las capacidades de Mondorescue es que puede copiar la información a casi cualquier medio: CD, DVD, casset, NFS, disco duro, etc. y soporta muchos sistemas de archivos como LVM 1/2, RAID, ext2, ext3, ext4, JFS, XFS, ReiserFS, y VFAT. Si tu sistema de archivos no está listado, hay una opción en el sitio web de Mondo para pedir a los desarrolladores el soporte y probáblemente ellos lo harán. Mondo es usado por muchas compañías como Lockheed-Martin, así que es confiable.

5. Simple Backup Solution

dbimage 10 extraordinarias herramientas para hacer copias de seguridad en Linux



Simple Backup Solution está enfocado priméramente a los backups en escritorios. Puede hacer backup de archivos y directorios y permite usar expresiones regulares para propósitos de exclusión. Debido a que SBS usa archivos comprimidos, no es la mejor solución para hacer backup a grandes cantidades de datos precomprimidos (como archivos multimedia). One de las bellezas de SBS es que incluye soluciones predefinidas que pueden ser usadas para hacer backup a directorios, como /var/, /etc/, /usr/local/. SBS no está limitado a backups predefinidos. Puedes hacer copias personalizadas, manuales y programadas. Tiene una interfaz amigable para el usuario. Un punto en su contra es que no incluye una herramienta para restaurar la información como lo hace fwbackups.

6. Amanda

Amanda le permite a un administrador hacer un backup individual a un servidor y también a múltiples hosts. Es robusto, confiable, y flexible. Amanda usa . It’s robust, reliable, and flexible. Amanda usa dumps nativos de Linux y/o tar para facilitar el proceso de hacer copias de seguridad. Una útil capacidad es la de usar Samba para hacer backup clientes Windows a el mismo servidor Amanda. Es importante recalcar que con Amanda, hay aplicaciones separadas para el cliente y el servidor. Para el servidor, sólo se necesita Amanda. Para el cliente, la aplicación Amanda-Client debe ser usada.

7. Arkeia

clipimage002kne 10 extraordinarias herramientas para hacer copias de seguridad en Linux


Arkeia es uno de los chicos grandes en la industria del backup. Si estás buscando una solución de copia-restauración a nivel empresarial (e incluso replicación de servidores) y no te importa pagar, Arkeia es tu herramienta. Si te preguntas el precio, El pack ’starter’ de Arkeia cuesta $1,300.00 USD – lo cual debe indicar la seriedad de esta solución. Aunque Arkeia dice que funciona bien para soluciones de tamaño medio, Arkeia está mejor dotada para grandes negocios y necesidades empresariales.

8. Back In Time

backintimen 10 extraordinarias herramientas para hacer copias de seguridad en Linux



Back In Time te permite tomar capturas de directorios predefinidos, los cuales también pueden ser programados. Esta herramienta tiene una extraordinaria interfaz y se integra bien con GNOME y KDE. BIT hace un gran trabajo creando capturas que servirán como backups. Sin embargo, no usa ninguna compresión para los backups, ni tampoco incluye una herramienta automatizada de restauración. Sólo para escritorios.

9. Box Backup

Box Backup es único en esta labor no sólo porque todo es complétamente automátizado sino porque puede encriptar y asegurar tus backups. Box Backup usa dos demonios: cliente y servidor, así como una utilidad para restaurar. Box Backup usa certificados SSL para autenticar los clientes, de manera que las conexiones son seguras. Aunque Box Backup es una solución de línea de comandos, es simple de configurar y usar. Los directorios de los datos son cofigurados, los demonios escanean esos directorios, y si algún dato nuevo es encontrado, entonces es subido al servidor. Hay tres componentes para instalar: bbstored (demonio del servidor), bbackupd (demonio del cliente), and bbackupquery (herramienta para consultar y restaurar los backups). Box Backup está disponible para Linux, OpenBSD, Windows (sólo nativo), NetBSD, FreeBSD, Darwin (OS X), y Solaris.

10. Kbackup

Kbackup es una simple utilidad que hace copias localmente a cualquier medio (disco duro ó dispositivo montado) en el que se pueda escribir. Está diseñado para ser un dispositivo para copias del que cualquier usuario pueda sacar provecho. Por ese fin, es simple y no tiene una gran lista de capacidades. Fuera de ser capaz de hacer copias de archivos y directorios, permite guardar perfiles que pueden ser posteriormente abiertos y copiados rápidamente. Kbackup usa el formato tar para restaurar los backups, lo cual es tan sencillo como usar ARK como GUI para extraer los backups.


Fuente: http://www.dragonjar.org/

Listado de herramientas de Seguridad

Les presentamos el listado denominado " Security Tools List - The security list from security auditors for security auditors " que actualiza la web securitytoolslist.domandhost.com donde se muestra las principales herramientas de seguridad que se utilizan en la actualidad para auditoría informática y cumplimiento de medidas relacionadas con la seguridad de la Información.

Num Tool name License Platform License price
1 BRO-IDS Free (Unrestricted free. License type GPL, GNU,...) *NIX (Any system derived of UNIX) Free!
Type of tool Sniffer / network analyzer
Description Bro is an open-source, Unix-based Network Intrusion Detection System
URL http://www.bro-ids.org/
2 Acunetix Non-free (free with restrictions) Windows Free!
Type of tool Analysis of web environments
Description Acunetix is a web vulnerability scanner. Can check XSS, SQL injection, and much more attacks
URL http://www.acunetix.com/
3 IceSword Free (Unrestricted free. License type GPL, GNU,...) Windows Free!
Type of tool rootkits detectors
Description IceSword has a Windows Explorer-like interface but displays hidden processes and resources that Windows Explorer would never show.
URL http://www.antirootkit.com
4 FTester Free (Unrestricted free. License type GPL, GNU,...) *NIX (Any system derived of UNIX) Free!
Type of tool Firewall / perimetral security testing
Description The Firewall Tester (FTester) is a tool designed for testing firewalls filtering policies and Intrusion Detection System (IDS) capabilities
URL http://dev.inversepath.com/trac/ftester
5 GMER Free (Unrestricted free. License type GPL, GNU,...) Windows Free!
Type of tool rootkits detectors
Description GMER is an application that detects and removes
URL http://www.gmer.net/
6 GFI Languard Non-free (free with restrictions) Windows Free!
Type of tool Exploitation / vulnerability analysis
Description GFI LANguard is the award-winning network and security scanner.
URL http://www.gfi.com/lannetscan
7 FG-Injector Free (Unrestricted free. License type GPL, GNU,...) Multiplatform (Run in different environments: Linux, Windows, MAC OS... Free!
Type of tool Exploitation / vulnerability analysis
Description Injection Framework is a security tool designed to detect and research SQL injections.
URL http://sourceforge.net/projects/injection-fwk/
8 netcat Non-free (free with restrictions) Linux Free!
Type of tool Management
Description netcat is a computer networking utility for reading from and writing to network connections using either TCP or UDP. It goes by the tag-line of "The Swiss-army knife for TCP/IP
URL http://netcat.sourceforge.net/
9 rkhunter Free (Unrestricted free. License type GPL, GNU,...) Linux Free!
Type of tool rootkits detectors
Description Rootkit scanner is scanning tool to ensure you for about 99.9%* you're clean of nasty tools. This tool scans for rootkits, backdoors and local exploits.
URL http://www.rootkit.nl/projects/rootkit_hunter.html
10 Secure Auditor Commercial Windows $300-1500
Type of tool Exploitation / vulnerability analysis
Description Secure Auditor is a Unified Risk Management Solution which enables user to perform Enumeration, Scanning, Auditing, Penetration Testing and Forensics on different operational systems
URL http://www.secure-bytes.com/
11 metasploit Non-free (free with restrictions) Independent (Languages like java, python, perl, ruby...) Free!
Type of tool Exploitation / vulnerability analysis
Description Metasploit provides useful information to people who perform penetration testing, IDS signature development, and exploit research
URL http://www.metasploit.com/
12 OpenSQLi-NG Free (Unrestricted free. License type GPL, GNU,...) Independent (Languages like java, python, perl, ruby...) Free!
Type of tool Analysis of web environments
Description OpenSQLi-NG (pronounced Open SQLi N-G) is the next generation open source sql injection tool,
URL http://opensqling.sourceforge.net/?page_id=8
13 OpenVAS Free (Unrestricted free. License type GPL, GNU,...) Linux Free!
Type of tool Exploitation / vulnerability analysis
Description OpenVAS stands for Open Vulnerability Assessment System and is a network security scanner with associated tools like a graphical user front-end. OpenVAS products are Free Software under GNU GPL and a fork of Nessus.
URL http://www.openvas.org/
14 Cain & Abel Free (Unrestricted free. License type GPL, GNU,...) Windows Free!
Type of tool multiuse
Description Cain & Abel is a password recovery tool for Microsoft Operating Systems. It allows easy recovery of various kind of passwords by sniffing the network, cracking encrypted passwords using Dictionary, Brute-Force and Cryptanalysis attacks, recording VoIP conversations, decoding scrambled passwords, recovering wireless network keys, revealing password boxes, uncovering cached passwords and analyzing routing protocols
URL http://www.oxid.it/cain.html
15 tor Free (Unrestricted free. License type GPL, GNU,...) Linux Free!
Type of tool anonymity / security
Description Tor is a network of virtual tunnels that allows people and groups to improve their privacy and security on the Internet
URL https://www.torproject.org/
16 XPL Non-free (free with restrictions) Linux Free!
Type of tool Exploitation / vulnerability analysis
Description ISO custom for pentest
URL www.ginux.ufla.br/~sandro
17 p0f Free (Unrestricted free. License type GPL, GNU,...) Linux Free!
Type of tool Protocols scanner/ fingerprinting
Description passive OS fingerorinting
URL http://lcamtuf.coredump.cx/p0f.shtml
18 oSpy Free (Unrestricted free. License type GPL, GNU,...) Windows Free!
Type of tool Exploitation / vulnerability analysis
Description oSpy is a tool which aids in reverse-engineering software running on the Windows platform.
URL http://code.google.com/p/ospy/
19 sqlbrute Free (Unrestricted free. License type GPL, GNU,...) Multiplatform (Run in different environments: Linux, Windows, MAC OS... Free!
Type of tool Exploitation / vulnerability analysis
Description Blind SQL injection
URL http://www.justinclarke.com/security/sqlbrute.py
20 Gamja Free (Unrestricted free. License type GPL, GNU,...) Independent (Languages like java, python, perl, ruby...) Free!
Type of tool Scanner / VPN detector
Description Gamja will find XSS(Cross site scripting) & SQL Injection weak point also URL parameter validation error. Who knows that which parameter is weak parameter? Gamja will be helpful for finding vulnerability[ XSS , Validation Error , SQL Injection].
URL gamja.sf.net
21 AuditPro Enterprise Commercial Multiplatform (Run in different environments: Linux, Windows, MAC OS... Free!
Type of tool multiuse
Description AuditPro® is a comprehensive enterprise security assessment solution featuring critical asset identification, policy compliance, risk analysis, real time vulnerability views, enhanced reporting capability, graphical progress analysis and more. Supporting multiple operating systems and databases, AuditPro® brings you the state-of-the-art in information systems security evaluation and risk management.
URL http://www.niiconsulting.com/products/auditpro.html
22 Firesec Commercial Windows Free!
Type of tool Management
Description Firesec is a comprehensive solution for firewall rulebase analysis in medium to large enterprise environments. It addresses the problems inherent with large rule sets and helps purge and update a rule base as per network requirements. Firesec provides multiple functions such as removing redundant rules, grouping similar rules, and searching for vulnerable rule patterns.
URL http://www.niiconsulting.com/products/Firesec.html
23 Technitium MAC Address Changer Free (Unrestricted free. License type GPL, GNU,...) Windows Free!
Type of tool Management
Description Technitium MAC Address Changer allows you to change Media Access Control (MAC) Address of your Network Interface Card (NIC) irrespective to your NIC manufacturer or its driver. It has a very simple user interface and provides ample information regarding each NIC in the machine. Every NIC has a MAC address hard coded in its circuit by the manufacturer. This hard coded MAC address is used by windows drivers to access Ethernet Network (LAN). This tool can set a new MAC address to your NIC, bypassing the original hard coded MAC address. Technitium MAC Address Changer is a must tool in every security professionals tool box. Technitium MAC Address Changer is coded in Visual Basic 6.0.
URL http://www.technitium.com/tmac/index.html
24 sam spade Free (Unrestricted free. License type GPL, GNU,...) Windows Free!
Type of tool target information gain
Description Tool that provides various tools for obtaining information on a given objective
URL http://preview.samspade.org/ssw/download.html
25 scanssh Free (Unrestricted free. License type GPL, GNU,...) *NIX (Any system derived of UNIX) Free!
Type of tool Scanner / VPN detector
Description The network scanner more versatile and extended
URL http://monkey.org/~provos/scanssh/
26 THC amap Free (Unrestricted free. License type GPL, GNU,...) Multiplatform (Run in different environments: Linux, Windows, MAC OS... Free!
Type of tool Scanner / VPN detector
Description network scanner. The perfect complement to nmap
URL http://freeworld.thc.org/thc-amap/
27 superscan Free (Unrestricted free. License type GPL, GNU,...) Windows Free!
Type of tool Scanner / VPN detector
Description A Foundstone tool. Powerful TCP port scanner, pinger, resolver.
URL http://www.foundstone.com/us/resources/proddesc/superscan.htm
28 nbtscan Free (Unrestricted free. License type GPL, GNU,...) Multiplatform (Run in different environments: Linux, Windows, MAC OS... Free!
Type of tool Scanner / VPN detector
Description Netbios scanner
URL http://unixwiz.net/tools/nbtscan.html#download
29 Xprobe2 Free (Unrestricted free. License type GPL, GNU,...) *NIX (Any system derived of UNIX) Free!
Type of tool Scanner / VPN detector
Description fingerprinting OS tool
URL http://xprobe.sourceforge.net/
30 Ike-scan Free (Unrestricted free. License type GPL, GNU,...) Multiplatform (Run in different environments: Linux, Windows, MAC OS... Free!
Type of tool Scanner / VPN detector
Description IPsec VPN scanning, fingerprinting and testing tool
URL http://www.nta-monitor.com/tools/ike-scan/
31 unicornscan Free (Unrestricted free. License type GPL, GNU,...) *NIX (Any system derived of UNIX) Free!
Type of tool Scanner / VPN detector
Description A very fast information gathering and correlation engine.
URL http://www.unicornscan.org/
32 scanrand Free (Unrestricted free. License type GPL, GNU,...) *NIX (Any system derived of UNIX) Free!
Type of tool Scanner / VPN detector
Description An unusually fast stateless network service and topology discovery system, part of Paketto Keiretsu suite
URL http://www.doxpara.com/read.php/code/paketto.html
33 upnpscan Free (Unrestricted free. License type GPL, GNU,...) *NIX (Any system derived of UNIX) Free!
Type of tool Scanner / VPN detector
Description A tool that scans the LAN or a given address range for UPnP capable devices
URL http://www.cqure.net/wp/upnpscan/
34 netifera Free (Unrestricted free. License type GPL, GNU,...) Independent (Languages like java, python, perl, ruby...) Free!
Type of tool Security Framework for create custom tools
Description Netifera is a new modular open source platform for creating network security tools
URL http://netifera.com/downloads/
35 usb-watcher Free (Unrestricted free. License type GPL, GNU,...) Windows Free!
Type of tool cryptography
Description USB-Watcher makes a system-shut-down if hardware-changes were noticed. Some police are using USB-Exploits to access running systems with encrypted filesystems (f.e. by TrueCrypt) and USB-Watcher (not only listening on USB) blocks the intruder.
URL http://keksa.de/?q=usb_watcher
36 proslo Free (Unrestricted free. License type GPL, GNU,...) Windows Free!
Type of tool Management
Description Proslo (process slowdown) uses an undocumented function in the windows-API to choke a process. It freezes the process and resumes it in a self-defined time period.
URL http://keksa.de/?q=proslo
37 mangleme in PHP Free (Unrestricted free. License type GPL, GNU,...) Windows Free!
Type of tool Exploitation / vulnerability analysis
Description mangleme (original coded by http://lcamtuf.coredump.cx/) is a HTML-fuzzer. I redesigned it in PHP to make fast code-changes and additions possible.
URL http://keksa.de/?q=mangleme_fuzzing_in_php
38 GreenSQL Free (Unrestricted free. License type GPL, GNU,...) Independent (Languages like java, python, perl, ruby...) Free!
Type of tool Management
Description GreenSQL is an Open Source database firewall used to protect databases from SQL injection attacks
URL http://www.greensql.net/
39 AutoRuns Non-free (free with restrictions) Windows Free!
Type of tool Forensic
Description Allows the user to view all software that automatically runs when windows starts up.
URL www.sysinternals.com
40 txdns Free (Unrestricted free. License type GPL, GNU,...) Windows Free!
Type of tool Target information gain
Description TXDNS is a Win32 aggressive multithreaded DNS digger. Capable of placing, on the wire, thousands of DNS queries per minute. TXDNS main goal is to expose a domain namespace trough a number of techniques: Typos, TLD rotation, Dictionary attack, Brute force.
URL http://www.txdns.net/
41 txdns Free (Unrestricted free. License type GPL, GNU,...) Windows Free!
Type of tool Protocols scanner/ fingerprinting
Description dns brute force
URL www.txdns.net
42 nmap Free (Unrestricted free. License type GPL, GNU,...) Multiplatform (Run in different environments: Linux, Windows, MAC OS... Free!
Type of tool Protocols scanner/ fingerprinting
Description A popular tool that is probably already on the list
URL http://nmap.org/
43 Lynis Free (Unrestricted free. License type GPL, GNU,...) *NIX (Any system derived of UNIX) Free!
Type of tool Management
Description System and security auditing tool for UNIX based systems.
URL http://www.rootkit.nl/projects/lynis.html
44 Cenzic Hailstorm Non-free (free with restrictions) Windows Starting at $13K
Type of tool Exploitation / vulnerability analysis
Description Cenzic Hailstorm is a Web application scanner. The product integrates with source code scanners and Web application firewalls as well as VMWare for virtualization of production apps
URL http://www.cenzic.com/products/overview/
45 dirb Free (Unrestricted free. License type GPL, GNU,...) Linux Free!
Type of tool Analysis of web environments
Description Website directory discovery via brute force. Supply your own dictionary file. I have a difficult time finding much support, as the name is not easily searchable. If you know how to use it, it's a good tool to add to the arsenal.
URL http://dirb.sourceforge.net/
46 UCSniff Free (Unrestricted free. License type GPL, GNU,...) Linux Free!
Type of tool Sniffer / network analyzer
Description UCSniff is an exciting new VoIP Security Assessment tool that leverages existing open source software into several useful features
URL http://ucsniff.sourceforge.net/
47 voiphopper Free (Unrestricted free. License type GPL, GNU,...) Linux Free!
Type of tool Creation / manipulation packet network
Description VoIP Hopper is a GPLv3 licensed security tool, written in C, that rapidly runs a VLAN Hop into the Voice VLAN on specific Ethernet switches
URL http://voiphopper.sourceforge.net/
48 sipp Free (Unrestricted free. License type GPL, GNU,...) Multiplatform (Run in different environments: Linux, Windows, MAC OS... Free!
Type of tool multiuse
Description SIPp is a free Open Source test tool / traffic generator for the SIP protocol
URL http://sipp.sourceforge.net/
49 Protos Free (Unrestricted free. License type GPL, GNU,...) Independent (Languages like java, python, perl, ruby...) Free!
Type of tool Creation / manipulation packet network
Description The purpose of this test-suite is to evaluate implementation level security and robustness of numerous protocols: WAP-wsp-request, WAP-wmlc, HTTP-reply, LDAPv3, SNMPv1, SIP, H2250v4, ISAKMP, DNS.
URL http://www.ee.oulu.fi/research/ouspg/protos/
50 firebug Free (Unrestricted free. License type GPL, GNU,...) Multiplatform (Run in different environments: Linux, Windows, MAC OS... Free!
Type of tool Firefox pluggins
Description You can edit, debug, and monitor CSS, HTML, and JavaScript live in any web page.
URL http://getfirebug.com/
51 grendal-scan Non-free (free with restrictions) Windows Free!
Type of tool Management
Description Hi test
URL www.grendal.cm
52 Nikto Non-free (free with restrictions) Multiplatform (Run in different environments: Linux, Windows, MAC OS... Free!
Type of tool Scanner / VPN detector
Description Nikto is an Open Source (GPL) web server scanner which performs comprehensive tests against web servers for multiple items, including over 3500 potentially dangerous files/CGIs, versions on over 900 servers, and version specific problems on over 250 servers. Scan items and plugins are frequently updated and can be automatically updated (if desired).
URL http://www.cirt.net/nikto2
53 wireshark Free (Unrestricted free. License type GPL, GNU,...) Multiplatform (Run in different environments: Linux, Windows, MAC OS... Free!
Type of tool Sniffer / network analyzer
Description Wireshark is the world's foremost network protocol analyzer
URL http://www.wireshark.org
54 kismet Free (Unrestricted free. License type GPL, GNU,...) Multiplatform (Run in different environments: Linux, Windows, MAC OS... Free!
Type of tool Sniffer / network analyzer
Description Kismet is an 802.11 layer2 wireless network detector, sniffer, and intrusion detection system
URL http://www.kismetwireless.net/
55 tcpdump Free (Unrestricted free. License type GPL, GNU,...) Multiplatform (Run in different environments: Linux, Windows, MAC OS... Free!
Type of tool Sniffer / network analyzer
Description tcpdump is a common packet sniffer that runs under the command line. It allows the user to intercept and display TCP/IP and other packets being transmitted or received over a network to which the computer is attached
URL http://www.tcpdump.org/
56 windump Free (Unrestricted free. License type GPL, GNU,...) Windows Free!
Type of tool Sniffer / network analyzer
Description WinDump is the Windows version of tcpdump, the command line network analyzer for UNIX.
URL http://www.winpcap.org/windump/
57 Ettercap Free (Unrestricted free. License type GPL, GNU,...) Multiplatform (Run in different environments: Linux, Windows, MAC OS... Free!
Type of tool Sniffer / network analyzer
Description Ettercap is a suite for man in the middle attacks on LAN. It features sniffing of live connections, content filtering on the fly and many other interesting tricks
URL http://ettercap.sourceforge.net/
58 dsniff Free (Unrestricted free. License type GPL, GNU,...) Multiplatform (Run in different environments: Linux, Windows, MAC OS... Free!
Type of tool Sniffer / network analyzer
Description Dsniff is a collection of tools for network auditing and penetration testing: dsniff, filesnarf, mailsnarf, msgsnarf, urlsnarf, webspy, arpspoof, dnsspoof, macof, sshmitm and webmitm.
URL http://monkey.org/~dugsong/dsniff/
59 ngrep Free (Unrestricted free. License type GPL, GNU,...) Multiplatform (Run in different environments: Linux, Windows, MAC OS... Free!
Type of tool Sniffer / network analyzer
Description ngrep strives to provide most of GNU grep's common features, applying them to the network layer
URL http://ngrep.sourceforge.net/
60 Ntop Free (Unrestricted free. License type GPL, GNU,...) Multiplatform (Run in different environments: Linux, Windows, MAC OS... Free!
Type of tool Sniffer / network analyzer
Description ntop is a network traffic probe that shows the network usage, similar to what the popular top Unix command does
URL http://www.ntop.org/
61 EtherApe Free (Unrestricted free. License type GPL, GNU,...) *NIX (Any system derived of UNIX) Free!
Type of tool Sniffer / network analyzer
Description EtherApe is a graphical network monitor for Unix modeled after etherman
URL http://etherape.sourceforge.net/
62 SolarWinds Commercial Windows Starting at $199
Type of tool Sniffer / network analyzer
Description Network Management Software for All
URL http://www.solarwinds.com/
63 firewalk Free (Unrestricted free. License type GPL, GNU,...) Multiplatform (Run in different environments: Linux, Windows, MAC OS... Free!
Type of tool Sniffer / network analyzer
Description Firewalk is an active reconnaissance network security tool that attempts to determine what layer 4 protocols a given IP forwarding device.
URL www.packetfactory.net/projects/firewalk/
64 Cheops-ng Free (Unrestricted free. License type GPL, GNU,...) *NIX (Any system derived of UNIX) Free!
Type of tool Sniffer / network analyzer
Description Cheops-ng is a Network management tool for mapping and monitoring your network
URL http://cheops-ng.sourceforge.net/
65 fping Free (Unrestricted free. License type GPL, GNU,...) *NIX (Any system derived of UNIX) Free!
Type of tool Sniffer / network analyzer
Description fping is a ping(1) like program which uses the Internet Control Message Protocol (ICMP). fping is different from ping in that you can specify any number of hosts on the command line, or specify a file containing the lists of hosts to ping.
URL http://fping.sourceforge.net/
66 tcptraceroute Free (Unrestricted free. License type GPL, GNU,...) *NIX (Any system derived of UNIX) Free!
Type of tool Sniffer / network analyzer
Description tcptraceroute is a traceroute implementation using TCP packets
URL http://michael.toren.net/code/tcptraceroute/
67 MBSA Non-free (free with restrictions) Windows Free!
Type of tool Exploitation / vulnerability analysis
Description Microsoft Baseline Security Analyzer (MBSA) is an easy-to-use tool that helps small and medium businesses determine their security state in accordance with Microsoft security recommendations and offers specific remediation guidance.
URL http://technet.microsoft.com/en-us/security/cc184924.aspx
68 w3af Free (Unrestricted free. License type GPL, GNU,...) Independent (Languages like java, python, perl, ruby...) Free!
Type of tool Analysis of web environments
Description w3af, is a Web Application Attack and Audit Framework. The w3af core and it's plugins are fully written in python. The project has more than 130 plugins, which check for SQL injection, cross site scripting (xss), local and remote file inclusion and much
URL http://sourceforge.net/projects/w3af/
69 MSAT Non-free (free with restrictions) Windows Free!
Type of tool Management of risk / methodologies / ISO
Description The Microsoft Security Assessment Tool (MSAT) is a free tool designed to help organizations like yours assess weaknesses in your current IT security environment, reveal a prioritized list of issues, and help provide specific guidance to minimize those risks
URL http://technet.microsoft.com/en-us/security/cc185712.aspx
70 paros Free (Unrestricted free. License type GPL, GNU,...) Independent (Languages like java, python, perl, ruby...) Free!
Type of tool Analysis of web environments
Description Through Paros's proxy nature, all HTTP and HTTPS data between server and client, including cookies and form fields, can be intercepted and modified
URL http://www.parosproxy.org/
71 WebScarab Free (Unrestricted free. License type GPL, GNU,...) Independent (Languages like java, python, perl, ruby...) Free!
Type of tool Analysis of web environments
Description WebScarab is a HTTP and HTTPS proxy. Has several modes of operation and implement numbers plugins:Fragments, Proxy, Manual, Beanshell, Revealhiddenfields, Bandwidthsimulator, Spider, Manualrequest, SessionIDanalysis, Scripted, Parameterfuzzer, Search, Compare, SOAP, Extensions, XSS/CRLF.
URL http://www.owasp.org/index.php/Category:OWASP_WebScarab_Project
72 WebInspect Commercial Windows Free!
Type of tool Analysis of web environments
Description Webinspect is an URLchecker. This is a service that test your website or special pages of your website and warn you when if an important status change is made or if the page is not reachable from the internet
URL http://www.webinspect.net/
73 SPIKE Proxy Free (Unrestricted free. License type GPL, GNU,...) Independent (Languages like java, python, perl, ruby...) Free!
Type of tool Analysis of web environments
Description SPIKE Proxy is a tool for looking for application-level vulnerabilities in web applications. SPIKE Proxy covers the basics, such as SQL Injection and cross-site-scripting
URL http://www.immunitysec.com/resources-freesoftware.shtml
74 QualysGuard Commercial Windows Starting at $2500
Type of tool Analysis of web environments
Description The QualysGuard Security and Compliance Suite automates the process of vulnerability management and policy compliance across the enterprise, providing network discovery and mapping, asset prioritization, vulnerability assessment reporting and remediation tracking according to business risk.
URL http://www.qualys.com/products/qg_suite/
75 BurpSuite Non-free (free with restrictions) Independent (Languages like java, python, perl, ruby...) Free!
Type of tool Analysis of web environments
Description Burp Suite is an integrated platform for attacking web applications. It contains a Suite tools: Proxy, Spider, Scanner, Intruder, Repeater, Sequencer, Decoder, Comparer.
URL http://portswigger.net/suite/
76 Wikto Non-free (free with restrictions) Windows Free!
Type of tool Analysis of web environments
Description Wikto is a Web Server Assessment Tool. It works by trying to find interesting directories and files on the web site, it looks for sample scripts that can be abused or finds known vulnerabilities in the web server implementation itself.
URL http://www.sensepost.com/research/wikto/
77 Watchfire AppScan Commercial Windows Starting at $14,000
Type of tool Analysis of web environments
Description From IBM Rational automate content scanning and analysis to help ensure compliance with privacy, accessibility, and key industry regulations such as Sarbanes-Oxley and HIPAA, as well as internal Web quality standards
URL http://www.watchfire.com
78 N-Stealth Non-free (free with restrictions) Windows Free!
Type of tool Analysis of web environments
Description N-Stalker is a Web Application Security Scanner with 18,000 signatures, web Server security check, Backup check, XSS...
URL http://www.nstalker.com/products
79 SpiDynamics WebInspect Commercial Windows Starting at $2500
Type of tool Exploitation / vulnerability analysis
Description WebInspect complements firewalls and intrusion detection systems by identifying Web application vulnerabilities
URL http://www.whitehatinc.com/products/spi_dynamics/webinspect/
80 NetStumbler Free (Unrestricted free. License type GPL, GNU,...) Windows Free!
Type of tool Wifi password cracker / sniffer / others wifi tools
Description Tool for Windows that allows you to detect Wireless Local Area Networks (WLANs) using 802.11b, 802.11a and 802.11g
URL http://stumbler.net/
81 Airsnort Free (Unrestricted free. License type GPL, GNU,...) Multiplatform (Run in different environments: Linux, Windows, MAC OS... Free!
Type of tool Wifi password cracker / sniffer / others wifi tools
Description AirSnort is a wireless LAN (WLAN) tool which recovers encryption keys. AirSnort operates by passively monitoring transmissions, computing the encryption key when enough packets have been gathered
URL http://airsnort.shmoo.com/
82 Aircrack-ng Free (Unrestricted free. License type GPL, GNU,...) Multiplatform (Run in different environments: Linux, Windows, MAC OS... Free!
Type of tool Wifi password cracker / sniffer / others wifi tools
Description Aircrack-ng is an 802.11 WEP and WPA-PSK keys cracking program that can recover keys once enough data packets have been captured.
URL http://aircrack-ng.org/
83 KisMAC Free (Unrestricted free. License type GPL, GNU,...) MAC OS Free!
Type of tool Wifi password cracker / sniffer / others wifi tools
Description KisMAC is an open-source and free stumbler/scanner application for Mac OS X. It has an advantage over MacStumbler / iStumbler / NetStumbler in that it uses monitor mode and passive scanning
URL http://trac.kismac-ng.org/
84 Hping2 Free (Unrestricted free. License type GPL, GNU,...) Multiplatform (Run in different environments: Linux, Windows, MAC OS... Free!
Type of tool Creation / manipulation packet network
Description Hping is a command-line oriented TCP/IP packet assembler/analyzer. The interface is inspired to the ping unix command, but hping isn't only able to send ICMP echo requests. It supports TCP, UDP, ICMP and RAW-IP protocols, has a traceroute mode, the ability to send files between a covered channel, and many other features.
URL http://www.hping.org/
85 Scapy Free (Unrestricted free. License type GPL, GNU,...) Independent (Languages like java, python, perl, ruby...) Free!
Type of tool Creation / manipulation packet network
Description Scapy is a powerful interactive, and easy to use, packet manipulation program. It is able to forge or decode packets of a wide number of protocols, send them on the wire, capture them, match requests and replies, and much more. It is writen in python.
URL http://www.secdev.org/projects/scapy/
86 Scaperl Free (Unrestricted free. License type GPL, GNU,...) Independent (Languages like java, python, perl, ruby...) Free!
Type of tool Creation / manipulation packet network
Description Scaperl is a clon of scapy, but it's writen in perl
URL http://sylv1.tuxfamily.org/projects/scaperl.html
87 nemesis Free (Unrestricted free. License type GPL, GNU,...) Multiplatform (Run in different environments: Linux, Windows, MAC OS... Free!
Type of tool Creation / manipulation packet network
Description Nemesis is a command-line network packet crafting and injection utility. Nemesis, is well suited for testing Network Intrusion Detection Systems, firewalls, IP stacks and a variety of other tasks. As a command-line driven utility, Nemesis is perfect for automation and scripting.
URL http://nemesis.sourceforge.net/
88 yersinia Free (Unrestricted free. License type GPL, GNU,...) Multiplatform (Run in different environments: Linux, Windows, MAC OS... Free!
Type of tool Creation / manipulation packet network
Description Yersinia is a network tool designed to take advantage of some weakeness in different network protocols. It pretends to be a solid framework for analyzing and testing the deployed networks and systems
URL http://www.yersinia.net/
89 Tcpreplay Free (Unrestricted free. License type GPL, GNU,...) *NIX (Any system derived of UNIX) Free!
Type of tool Creation / manipulation packet network
Description Tcpreplay si part of ndisbench suite. Tcpreplay is aimed at testing the performance of a NIDS by replaying real background network traffic in which to hide attacks.
URL http://packetstormsecurity.nl/UNIX/IDS/nidsbench/nidsbench.html
90 fragrouter Free (Unrestricted free. License type GPL, GNU,...) *NIX (Any system derived of UNIX) Free!
Type of tool Creation / manipulation packet network
Description Fragrouter is aimed at testing the correctness of a NIDS, according to the specific TCP/IP attacks listed in the Secure Networks NIDS evasion paper
URL http://packetstormsecurity.nl/UNIX/IDS/nidsbench/nidsbench.html
91 Retina Commercial Windows Starting at $575.00
Type of tool Exploitation / vulnerability analysis
Description Retina Network Security Scanner is a vulnerability assessment, identifies known network and machine security vulnerabilities and assists in prioritizing threats for remediation.
URL http://www.eeye.com/
92 Core Impact Commercial Windows $25000
Type of tool Exploitation / vulnerability analysis
Description Core impact allow you to see your network, endpoint, email-user and web application security as an attacker would.
URL http://www.coresecurity.com/
93 ISS Internet scanner Commercial Windows Free!
Type of tool Exploitation / vulnerability analysis
Description Internet Scanner can identify more than 1,300 types of networked devices on your network, including desktops, servers, routers/switches, firewalls, security devices and application routers
URL http://www-935.ibm.com/services/us/index.wss/offerfamily/iss/a1026710
94 X-scan Free (Unrestricted free. License type GPL, GNU,...) Windows Free!
Type of tool Exploitation / vulnerability analysis
Description X-Scan is a general scanner for scanning network vulnerabilities for specific IP address scope or stand-alone computer by multi-threading method, plug-ins are supportable
URL http://www.xfocus.org/programs/200507/18.html
95 Sara Free (Unrestricted free. License type GPL, GNU,...) Independent (Languages like java, python, perl, ruby...) Free!
Type of tool Exploitation / vulnerability analysis
Description SARA is a third generation network security analysis tool that that has been available and actively updated for over 10 years
URL http://www-arc.com/sara/
96 CANVAS Commercial Independent (Languages like java, python, perl, ruby...) $1450
Type of tool Exploitation / vulnerability analysis
Description CANVAS makes available hundreds of exploits, an automated exploitation system, and a comprehensive, reliable exploit development framework to penetration testers.
URL http://www.immunitysec.com/products-canvas.shtml
97 Saint Commercial Independent (Languages like java, python, perl, ruby...) Starting at $425
Type of tool Exploitation / vulnerability analysis
Description SAINT offers the only integrated vulnerability assessment and penetration testing tools available anywhere
URL http://www.saintcorporation.com/
98 Nessus Non-free (free with restrictions) Multiplatform (Run in different environments: Linux, Windows, MAC OS... Free!
Type of tool Exploitation / vulnerability analysis
Description Nessus is the world-leader in active scanners, featuring high speed discovery, configuration auditing, asset profiling, sensitive data discovery and vulnerability analysis of your security posture
URL http://www.nessus.org
99 john the ripper Free (Unrestricted free. License type GPL, GNU,...) Multiplatform (Run in different environments: Linux, Windows, MAC OS... Free!
Type of tool password cracker
Description John the Ripper is a fast password cracker
URL http://www.openwall.com/john/
100 THC hydra Free (Unrestricted free. License type GPL, GNU,...) Multiplatform (Run in different environments: Linux, Windows, MAC OS... Free!
Type of tool password cracker
Description A very fast network logon cracker which support many different services
URL http://freeworld.thc.org/thc-hydra/
101 brutus Free (Unrestricted free. License type GPL, GNU,...) Windows Free!
Type of tool password cracker
Description It works online, trying to break telnet, POP3, FTP, HTTP, RAS or IMAP by simply trying to login as a legitimate users. Brutus imitates a real outside attack (unlike other password cracking applications that simulate an internal attack) and thus serves as a valuable security-auditing tool.
URL http://www.bujarra.com/Brutus.html
102 RainbowCrack Free (Unrestricted free. License type GPL, GNU,...) Multiplatform (Run in different environments: Linux, Windows, MAC OS... Free!
Type of tool password cracker
Description The RainbowCrack software is a hash cracker that use time-memory tradeoff algorithm
URL http://project-rainbowcrack.com/index.htm
103 Ophcrack Commercial Windows Free!
Type of tool password cracker
Description Ophcrack is a free Windows password cracker based on rainbow tables
URL http://ophcrack.sourceforge.net/
104 Angry IP scanner Free (Unrestricted free. License type GPL, GNU,...) Independent (Languages like java, python, perl, ruby...) Free!
Type of tool password cracker
Description Angry IP Scanner (or simply ipscan) is a network scanner designed to be fast and simple to use. It scans IP addresses and ports as well as has many other features.
URL http://www.angryziber.com/
105 pwdump Free (Unrestricted free. License type GPL, GNU,...) Windows Free!
Type of tool password cracker
Description This handy utility dumps the password database of an NT machine that is held in the NT registry.
URL http://samba.org/samba/ftp/pwdump/
106 pwdump2 Free (Unrestricted free. License type GPL, GNU,...) Windows Free!
Type of tool password cracker
Description PWDump2 is an application which dumps the password hashes (OWFs) from NT's SAM database, whether or not SYSKEY is enabled on the system
URL http://www.securiteam.com/tools/5ZQ0G000FU.html
107 pwdump3v2 Free (Unrestricted free. License type GPL, GNU,...) Windows Free!
Type of tool password cracker
Description It works in a similar way of pwdump2, but works over the network.
URL http://limestone.truman.edu/pub/win32/apps/pwdump3/
108 pwdump6 Free (Unrestricted free. License type GPL, GNU,...) Windows Free!
Type of tool password cracker
Description Improvement of pwdump3e
URL http://www.foofus.net/fizzgig/pwdump/
109 fgdump Free (Unrestricted free. License type GPL, GNU,...) Windows Free!
Type of tool password cracker
Description .improvement of pwdump6 with addons
URL http://www.foofus.net/fizzgig/fgdump/
110 pwdump7 Free (Unrestricted free. License type GPL, GNU,...) Windows Free!
Type of tool password cracker
Description It works as pwdump6 but uses own filesystem drivers.
URL http://www.tarasco.org/atarasco/2007/06/pwdump7.html


Fuente: http://seguridad-informacion.blogspot.com/2009/05/listado-de-herramientas-de-seguridad.html