Skip to content

Instantly share code, notes, and snippets.

@furiml
Last active May 11, 2021 18:49
Show Gist options
  • Save furiml/560178ce2c844a74f009f5d0355c62e6 to your computer and use it in GitHub Desktop.
Save furiml/560178ce2c844a74f009f5d0355c62e6 to your computer and use it in GitHub Desktop.
tools mentionned in cehv9 courses
CEH useful tools / sites :
--- footprinting & reconnaissance
Cheops (enhanced traceroute)
- find infos on webserver
www.netcraft.com
www.shodan.com
- find someone
www.anywho.com
www.ussearch.com (us only)
www.intelius.com
www.411.com
www.peoplefinders.com
www.peoplesmart.com
www.veromi.com
www.privateye.com
www.peoplesearchnow.com
www.publicbackgroundchecks.com
- watch, alert
www.google.com/alerts
alerts.yahoo.com
twitter.com/alerts
www.gigaalert.com
- google hacking database
www.exploit-db.com/google-hacking-database/
www.hackersofrcharity.org
- website footprinting
burpsuite
zaproxy
paros proxy
website informer
firebug
- spiders
gsa email spider
web data extractor
- mirrors
httrack web site copier (www.httrack.com)
blackwidow (solftbytelabs.com)
surfoffline (www.surfoffline.com)
ncollector studio (www.calluna-software.com)
teleport pro (www.tenmax.com)
website ripper copier (www.tensons.com)
portable offline browser (www.metaproducts.com)
pagenest (www.pagenest.com)
backstreet browser (www.spadlxbd.com)
offline explorer enterprise (www.metaproducts.com)
gnu wget (www.gnu.org)
hooeey webprint (www.hooeeywebprint.com)
- watchers
change detection (www.changedetection.com)
follow that page (www.followthatpage.com)
page2rss (page2rss.com)
watch that page (www.watchthatpage.com)
check4change (addons.mozilla.org)
onwebchange (onwebchange.com)
infominder (www.infodminder.com)
trackedcontent (trackedcontent.com)
websnitcher (websnitcher.com)
update scanner (addons.mozilla.org)
- email footprinting
emailtrackerpro (www.emailtrackerpro.com)
politemail (www.politemail.com)
email lookup (www.ipaddresslocation.org)
yesware (www.yesware.com)
contactmonkey (contactmonkey.com)
read notify (www.readnotify.com)
didtheyreadit (www.didtheyreadit.com)
trace email (whatsmyipaddress.com)
znedio (www.zendio.com)
pointofmail (www.pointofmail.com)
whoreadme (whoreadme.com)
getnotify (www.getnotify.com)
g-lock analytics (glockanalytics.com)
- competitive intelligence footprinting
edgar database (www.sec.gov/edgar.shtml)
hoover's (www.hoovers.com/about-us.html)
lexisnexis (www.lexisnexis.com)
business wire (www.businesswire.com)
- plans
marketwatch (www.marketwatch.com)
the wall street transcript (www.twst.com)
lipper marketplace (www.lippermarketplace.com)
euromonitor (www.euromonitor.com)
experian (www.experian.com)
sec info (www.secinfo.com)
the search monitor (www.thesearchmonitor.com)
- opinions
copernic tracker (www.copernic.com)
semrush (www.semrush.com)
jobitorial (www.jobitorial.com)
attentionmeter (www.attentionmeter.com)
abi/inform global (www.proquest.com)
compete pro (www.compete.com)
- online reputation
rankur (www.rankur.com)
social mention (www.socialmention.com)
reputation defender (www.reputation.com)
naymz (www.naymz.com)
brandyourself (brandyourself.com)
google alerts (www.google.com)
whostalkin (www.whostalking.com)
pr software (www.cision.com)
brandseye (www.brandseye.com)
talkwalker (www.talkwalker.com)
- rirs
afrinic (www.afrinic.net)
arin (www.arin.net)
apnic (www.apnic.net)
ripe ncc (www.ripe.net)
lacnic (www.lacnic.net)
- whois footprinting
lanwhois (lantricks.com)
batch ip converter (www.networkmost.com)
callerip (www.callerippro.com)
whois lookup multiple addresses (www.sobolsoft.com)
whois analyzer pro (www.whoisanalyzer.com)
hotwhois (www.tialsoft.com)
activewhois (www.johnru.com)
whoisthisdomain (www.nirsoft.net)
softfuse whois (www.softfuse.com)
whois (technet.microsoft.com)
domain dossier (centralops.net)
betterwhois (www.betterwhois.com)
whois online (whois.online-domain-tools.com)
web wiz (www.webwiz.co.uk/domain-tools/whois-lookup.htm)
network-tools.com (network-tools.com)
whois (tools.whois.net)
dnsstuff (www.dnsstuff.net)
network solutions whois (www.networksolutions.com)
webtoolhub (www.webtoolhub.com/tn561381-whois-lookup.aspx)
ultratools (www.ultratools.com/whois.home)
- mobile
dns tools (www.dnssniffer.com)
ultratools mobile (www.ultratools.com)
whois lookup tool (www.whois.com.au)
- dns footprinting
domain dossier (centralops.net)
dns lookup tool (network-tools.webwiz.co.uk)
dig (www.kloth.net)
mydnstools (www.mydnstools.info)
professional toolset (www.dnsstuff.com)
dns records (network-tools.com)
dnsdata view (www.nirsoft.net)
dnswatch (www.dnswatch.info)
domaintools (www.domaintools.com)
dns query utility (www.dnsqueries.com)
dns lookup (www.ultratools.com)
dns query utility (www.webmaster-toolkit.com)
- network footprinting
- traceroute
path analyzer pro (www.pathanalyzer.com)
visualroute (www.visualroute.com)
network pinger (www.networkpinger.com)
geospider (www.oreware.com)
vtrace (vtrace.pl)
trout (www.macafee.com)
roadkil's trace route (www.roadkil.net)
magic nettrace (www.tialsoft.com)
3d traceroute (www.d3tr.de)
analogx hypertrace (www.analogx.com)
network systems traceroute (www.net.princeton.edu)
ping plotter (www.pingplotter.com)
- general footprinting tools
maltego
recon-ng
foca (fingerprinting organizations with collected archives)
prefix whois (pwhois.org)
netscantools pro (www.netscantools.com)
tctrace (www.phenoelit.org)
autonomous system scanner (ass) (www.phenoelit.org)
dns-digger (www.dnsdigger)
netmask (www.phenoelit.org)
binging (www.blueinfy.com)
searchbug (www.searchbug.com)
tineye (www.tineye.com)
robtex (www.robtex.com)
dig web interface (www.digwebinterface.com)
white pages (whitepages.com)
email tracking tool (www.filley.com)
yoname (yoname.com)
ping-probe (www.ping-probe.com)
spiderfoot (www.spiderfoot.net)
nslookup (www.kloth.net)
zabasearch (www.zabasearch.com)
geotrace (www.nabber.org)
domainhostingview (www.nirsoft.com)
metagoofil (www.edge-seurity.com)
wikto (research.sensepost.com)
sitedigger (www.mcafee.com)
google hacks (code.google.com)
bile suite (www.sensepost.com)
gmapcatcher (code.google.com)
searchdiggity (www.bishopfox.com)
goog hack db (www.secpoint.com)
gooscan (www.darknet.org.uk)
trellian (ci.trellian.com)
--- scanning networks
- ping sweep
angry ip scanner (www.angryip.org)
solarwinds engineer's toolset (www.solarwinds.com)
colasoft ping tool (www.colasoft.com)
visual ping tester - standard (www.pingtester.net)
ping scanner pro (www.digilextechnologies.com)
oputils (www.manageengine.com)
pinginfoview (www.nirsoft.com)
advanced ip scanner (www.radmin.com)
ping sweep (www.whatsupgold.com)
network ping (www.greenline-soft.com)
ping monitor (www.niliand.com)
pinkie (www.ipuptime.net)
- port scanning
netscan tools pro (www.netscantools)
superscan (www.mcafee.com)
prtg network monitor (www.paessler.com)
net tools (mabsoft.com)
ip-tools (www.ks-soft.net)
megaping (www.magnetosoft.com)
network inventory explorer (www.10-strike.com)
global network inventory scanner (www.magnetosoft.com)
softperfect network scanner (www.softperfect.com)
advanced port scanner (www.radmin.com)
currports (www.nirsoft.net)
- mobile
umit network scanner (www.umitproject.org)
fing (www.overlooksoft.com)
ip network scanner (10base-t.com)
portdroid network analysis (www.stealthcopter.com)
pamn ip scanner (pips.wjholden.com)
network discovery (rorist.github.io)
- banner grabbing
id serve
netcraft
netcat (netcat.sourceforge.net)
telnet
- countermeasure
servermask (www.port80software.com)
- vulnerability scanning
nessus (www.tenable.com)
gfi languard
gualys freescan (www.qualys.com)
retina cs (www.beyondtrust.com)
core impact professional (www.coresecurity.com)
mbsa (www.microsoft.com)
shadow security scanner (www.safety-lab.com)
nsauditor network security auditor (www.nsauditor.com)
openvas (www.openvas.org)
security manager plus (www.manageengine.com)
nexpose (www.rapid7.com)
saint (www.saintcorporation.com)
security auditor's research assistant (www-arc.com
- mobile
retina cs for mobile (www.beyondtrust.com)
securitymetrics mobilescan (www.securitymetrics.com)
nessus vulnerability scanner (www.tenable.com)
- network mapping
opmanager (www.manageengine.com)
network discovery tool: networkview (www.networkview.com)
the dude (www.mikrotik.com)
lanstate (www.10-strike.com)
friendly pinger (www.kilievich.com)
ipsonar (www.lumeta.com)
whatsconnected (www.whatsupgold.com)
switch center enterprise (www.lan-secure.com)
intermapper (www.intermapper.com)
netmapper (www.opnet.com)
netbrain enterprise suite (www.netbraintech.com)
spiceworks-network mapper (www.spiceworks.com)
- mobile
net master (www.nutecapps.com)
scany (happymagenta.com)
network "swiss-army-knife" (foobang.weebly.com)
- proxies
proxy switcher (www.proxyswitcher.com)
proxy workbench (proxyworkbench.com)
tor (www.torproject.org)
cyberghost (www.cyberghostvpn.com)
sockschain (ufasoft.com)
burp suite (www.portswigger.net)
proxifier (www.proxifier.comà
proxy tool windows app (webproxylist.com)
charles (www.charlesproxy.com)
fiddler (www.telerik.com)
proxy (www.analogx.com)
protoport proxy chain (www.protoport.com)
proxycap (www.proxycap.com)
ccproxy (www.youngzsoft.net)
- mobile
proxy browser for android (play.google.com)
proxydroid (github.com)
netshade( www.raynersw.com)
- censorship circumvention
tails
g-zapper (www.dummysoftware.com)
proxify (proxify.com)
psiphon (psiphon.ca)
anonymous web surfing tool (www.anonymous-surfing.com)
hide your ip address (www.hideyouripaddress.net)
anonymizer universal (www.anonymizer.com)
guardster (www.guardster.com)
spotflux (www.spotflux.com)
ultrasurf (ultrasurf.us)
head proxy (www.headproxy.com)
hope proxy (www.hopeproxy.com)
- mobile
orbot (quardianproject.info)
psiphon (s3.amazonaws.com)
opendoor (itunes.apple.com)
--- enumeration
- netbios
nbtstat (technet.microsoft.com)
superscan (www.mcafee.com)
Hyena (www.systemtools.com)
Winfingerprint (www.winfingerprint.com)
NetBIOS Enumerator (nbtenum.sourceforge.net)
Nsauditor Network Security Auditor (www.nsauditor.com)
>netbios - user accounts (technet.microsoft.com)
`PsExec`
`PsFile`
`PsFetSid`
`PsKill`
`PsInfo`
`PsList`
`PsLoggedOn`
`PsLogList`
`PsPasswd`
`PsShutdown`
>netbios - shared resources (technet.microsoft.com)
Net View
- snmp
OpUtils (www.manageengine.com)
Engineer's Toolset (www.solarwinds.com)
SNMP Scanner (www.secure-bytes.com)
Getif (www.wtcs.org)
OiDViEW SNMP MID Browser (www.oidview.com)
iReasoning MIB Browser (tl1.ireasoning.com)
SNScan (www.mcafee.com)
SoftPerfect Network Scanner (www.softperfect.com)
SNMP Informant (www.snmp-informant.com)
Net-SNMP (www.net-snmp.org)
Nsauditor Network Security Auditor (www.nsauditor.com)
Spiceworks (www.spiceworks.com)
- ldap
Softerra LDAP Administrator (www.ldapadministrator.com)
JXplorer (www.jxplorer.org)
LDAP Admin Tool (www.ldapsoft.com)
LDAP Account Manager (www.ldap-account-manager.org)
LEX - The LDAP Explorer (www.ldapexplorer.comà
LDAP Admin (www.ldapadmin.org)
Active Directory Explorer (technet.microsoft.com)
LDAP Administration Tool (sourceforge.net)
LDAP Search (securityxploded.com)
Active Directory Domain Services Management Pack (www.microsoft.com)
LDAP Browser/Editor (www.novell.com)
- ntp
`ntptrace`
`ntpdc`
`ntpq`
NTP Server Scanner (www.bytefusion.com)
Nmap (nmap.org)
Wireshark (www.wireshark.org)
AtomSync (www.atomsync.com)
NTPQuery (www.bytefusion.com)
PresenTense NTP Auditor (www.bytefusion.com)
PresenTense Time Server (www.bytefusion.com)
PresenTense Time Client (www.bytefusion.com)
NTP Time Server Monitor (www.meinbergglobal.com)
LAN Time Analyzer (www.bytefusion.com)
- smtp
NetScanTools Pro (www.netscantools.com)
`smtp-user-enum`
`telnet`
- dns
`nslookup`
@ruurtjan
Copy link

Ultratools has been taken offline, you can use nslookup for DNS lookup instead.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment