About Us  |  Services  | Recruitment  |  Advertise  | Contact

 

Computer Network Defence Ltd

IDS & IPS Products
Scanning Products
Scanners Overview
Vulnerability Alert Services
Network Enumerators
Passive Fingerprinters
Active Fingerprinters
Vulnerability Exploitation
Network Scanners
Distributed Scanners
Host Scanners
Website Scanners
Database Scanners
Wardialers
Wireless Tools
Bluetooth Scanners
VPN & Firewall Products
Forensics Solutions
Content Protection
Training Courses
Raw Packets
Bug Sweeping / TSCM
Miscellaneous
Services


Network Enumerators

Network Enumeration is the discovery of hosts/devices on a network, they tend to use overt discovery protocols such as ICMP and SNMP to gather information, they may also scan various ports on remote hosts for looking for well known services in an attempt to further identify the function of a remote host and solicit host specific banners. The next stage of enumeration is to fingerprint the Operating System of the remote host.  Whilst products that accomplish this are beyond the scope of this page, they can be found on the Active OS Fingerprinting Page.  Most vulnerability Scanners will also perform network enumeration task and a whole lot more, if you are looking for vulnerability scanners go to
http://www.securitywizardry.com/N_scan.htm
For Wireless network discovery try
http://www.securitywizardry.com/wireless.htm



 

Angry IP Scanner

w32

 

http://www.angryziber.com/ipscan/

Angry IP scanner is a very fast IP scanner for Windows. It can scan IPs in any range. Its binary file size is very small compared to other IP scanners. Angry IP scanner simply pings each IP address to check if it's alive, then optionally it is resolving hostname, scans ports, etc.
It also has additional features, like NetBIOS information (computer name, workgroup name, currently logged in user and MAC address), results saving to CSV, TXT, HTML or XML file, can be used as a command-line utility in a batch file, etc. With help of plugins, Angry IP Scanner can gather any information about scanned IPs. Anybody who can write code is able to write plugins and extend functionality of Angry IP Scanner.

Free

Information Updated: 10 Nov 2003


Network View

 

NetworkView Software

http://www.networkview.com/

Three types of discovery : single address, range of addresses, full subnet. Checkboxes to use DNS, SNMP and/or TCP Ports. Customizable retries and timeouts. ICMP not required to discover behind firewalls. Maps can also be updated using either DNS name or IP address as the permanent identifier. Detailed discovery log.
If you are using NetworkView on a LAN, it will get all MAC addresses from your local ARP table, then will retrieve the NIC manufacturer by comparing the OUI (Organizationally Unique Identifier) with the information in its database (more than 5000 records).

Commercial

Information Updated: 06 Jan 2003

Click Here To Go To The Top Of The Page

NSAT

 

 

http://nsat.sourceforge.net/

NSAT is a robust scanner which is designed for:
Different kinds of wide-ranging scans, keeping stable for days.   Scanning on multi-user boxes (local stealth and non-priority scanning options).   Professional-grade penetration testing and comprehensive auditing.   Easy full-scale archiving of vulnerability and version information for further purposes.    Time-less configuration - as a banner scanner for many known services and protocols.   Virtual host support, host/network exclusion support.   Flexibility and configurable scanning.   Distributed scanning (new feature; beta status)

FREEWARE

Information Updated: 06 Jan 2003


ScanLine

 

Foundstone Labs

http://www.foundstone.com/us/resources/proddesc/scanline.htm

ScanLine is a command-line port scanner for all Windows platforms. It can perform traditional ICMP "pinging", optional additional ICMP TimeStamp scanning, can show host response times and number of hops, do TCP scanning, simple UDP scanning, banner grabbing and hostname resolving. Scanning is performed in a fast highly parallel fashion without resorting to using multiple threads. It can handle huge numbers and ranges of IP addresseswithout a problem.

FREEWARE

Information Updated: 06 Jan 2003


SuperScan

 

Foundstone now McAfee

http://www.foundstone.com/us/resources/proddesc/superscan4.htm

SuperScan is a powerful connect-based TCP port scanner, pinger and hostname resolver. Multithreaded and asynchronous techniques make this program extremely fast and versatile.   Perform ping scans and port scans using any IP range.     Use a text file to extract addresses from.    Scan any port range from a built-in list or any given range.    View responses from connected hosts.   Modify the port list and port descriptions using the built in editor.   Merge port lists to build new ones.    Connect to any discovered open port using user-specified "helper" applications.    Assign a custom helper application to any port.    Save the scan list to a text file.    Transmission speed control.   User friendly interface.   Comprehensive help file.

FREEWARE

Information Updated: 06 Jan 2003

Click Here To Go To The Top Of The Page

Visio

 

Microsoft

http://www.microsoft.com/office/visio/networkcenter/redirect/

Use the Network AutoDiscovery and Layout tool to discover and diagram your enterprise network. The AutoDiscovery technology discovers SNMP based network devices with minimal impact to your network. It then creates a database of network devices from which you can diagram and document your network.
Features
Discovers Layer 2 and Layer 3 network devices.   Discovers Windows Management Instrumentation (WMI) devices.   Provides an easy method for keeping diagrams up to date.   Customizable colors and shapes.

COMMERCIAL

Information Updated: 06 Jan 2003


What's Up Gold

 

Ipswitch Inc

http://www.ipswitch.com/Products/WhatsUp/index.html

Map an accurate rendition of your network in minutes.
Using the auto discovery wizard, WhatsUp Gold creates an accurate representation of your network based on information contained in your computer or on your network -- so you can start monitoring immediately.
SmartScan looks to your router tables and automatically discovers and maps devices according to your network's hierarchy, with separate maps for each sub-network ...or use the IP Address Scan feature which allows you to scan for a range of IP addresses and services and map them. This feature is especially useful for those who wish to monitor only a portion of a network or subnetwork.

COMMERCIAL

Information Updated: 6 Jan 2003


WS_Ping ProPack

 

Ipswitch Inc

http://www.ipswitch.com/Products/WS_Ping/index.html

Verify connectivity to a particular device on your network.   Quantitatively test data connections between your computer and a remote system.   Trace the path to a network host or device.   Obtain information on host names and IP addresses.   Scan your network and list devices and network services.   View summary information about a network host or device including the official hostname, IP address, and contact information (from the Whois database).  View Simple Network Management Protocol values as well as Windows network domains, hosts, and workstations.   Search information (such as user's full names and e-mail addresses) available through LDAP

COMMERCIAL

Information Updated: 06 Jan 2003


NetCrunch

Windows

AdRem Software

http://www.adremsoft.com/netcrunch/index.php

NetCrunch executes network monitoring and correlates real-time topology, network performance and availability data for better understanding of your network's health. It also provides extensive reporting and notification facilities, which means network administrators are always one step ahead of an impending network failure. The overall benefit is the reduced risk of network performance degradation, downtime and overloads; lower network operating costs; plus optimum bandwidth and availability across your entire business IT infrastructure.

COMMERCIAL

Information Updated: 29 Sep 2003


Unicornscan

Linux, NetBSD, FreeBSD, and Solaris   http://www.unicornscan.org
Unicornscan is an attempt at a User-land Distributed TCP/IP stack. It is intended to provide a researcher a superior interface for introducing a stimulus into and measuring a response from a TCP/IP enabled device or network.

GPL

Information Updated: 25 Oct 2005


Paketto Scanrand

nix   http://www.doxpara.com/read.php/code/paketto.html
Part of Paketto, Scanrand is a network service and topology discovery system

 

Information Updated: 25 Oct 2005


Hping2

nix Dan Kaminsky http://sourceforge.net/projects/hping2/
hping2 is an interactive packet costructor and responses analyzer that uses the same CLI of the ping program (but with a lot of extensions). It can be used to performs a lot of tasks, like testing of firewall rules, (spoofed) port scanning, et cetera.

GPL

Information Updated: 25 Oct 2005

Click Here To Go To The Top Of The Page

Last page update: 25 Oct 2007

Computer Network Defence Ltd
Information Security Consultancy and Recruiting
enquiries@securitywizardry.com 

Copyright © 2004 Computer Network Defence Ltd. All Rights Reserved.

PO Box 2680, Corsham, Wiltshire, SN13 0ZR, UK
Phone       0870 3219014
International +44 (0) 1225 811806