Fport v2.0 is powerful windows tool which reports all open TCP/IP and UDP ports and maps them to the owning application. This is the same information you would see using the 'netstat -an' command, but it also maps those ports to running processes with the PID, process name and path. Fport can be used to quickly identify unknown open ports and their associated applications. Supports Windows NT4, Windows 2000 and Windows XP.
a279608c63ed6d10fe9b87e1e2f80d6d98e87abd33df72324dd3cb7bccb75064
Blast v2.0 - A small, quick TCP service stress test tool. Blast does a good amount of work very quickly and can help spot potential weaknesses in your network servers.
4748961063184db9300cb0e92b5327c7001591c319c6cac0ad3f148a0474d49f
NTOMax v2.0 - A scriptable, server stress testing tool.This tool takes a text file as input and runs a server through a series of tests based on the input. The purpose of this tool is to find buffer overflows and DOS points in a server.
ef34377a85529f26bafd7fc023eda8fc64b8470ac6e53c53e19d8e7325857bf9
Forensic Toolkit v2.0 is a file properties analyzer designed to examine the files on a disk drive for unauthorized activity. Lists files by their last access time, search for access times between certain time frames, and scan the disk for hidden files and data streams.
4d29428f9ff309f7b8d1dae8cf523a7dcbcace17b6b2fa9a7708117299dc0fa4
NTLast v3.0 is a security audit tool for Windows NT. It can help identify and track who has gained access to your system, and document the details. Includes raw time output for Excel analysis and additional features for Webmasters.
8ec05251c3081e25c2859714a5a176605e31ea2408b766257b565cc544361ff6
NTOMax v1.0 - A scriptable, server stress testing tool.This tool takes a text file as input and runs a server through a series of tests based on the input. The purpose of this tool is to find buffer overflows and DOS points in a server.
67706ebf49993f04d67f291331b9d20efa84b717acc0cb97a856eec2bbf2198b
Paper detailing a successful attack against a NT server running the avirt mail service. In powerpoint, html, and text format.
05dd4f84800e47a958684354f2cdd13df2ce3b91bf48643d83f12d755dae7c78
Blast - a small, quick TCP service stress test tool. Blast does a good amount of work very quickly and can help spot potential weaknesses in your network servers.
7e30726cd777c2975e738acdc0b4d360919d62ad57b2c22ba6aa932509a8e8ba
NT OBJECTives, Inc. Presents - Seek and Destroy Network Tools. NTO Tools includes four new tools: Lservers[tm], NTOLog[tm] and NPList[tm] and NTODrv[tm]. NTOLog[tm] is a Powerful, network wide backup/clear utility for NT logs.i LServers[tm] is a NetBIOS name dumper. NPList[tm] is a NT network process dumper. NTODrv[tm] is a NT network driver/service dumper. Download NTO Seek/Destroy Tools[tm].
ed8828e22d4b2702b5da0a6830008e334e58b0e5d79651ef004727657c22c2e0
PacketX 1.0 is a native Windows NT firewall testing tool that allows for complete TCP/IP packet creation. It creates packets to be 'fired' at a firewall in validation tests so that firewall rules can be confirmed. PacketX[tm] contains complete TCP/IP packet spoofing technology in order to verify the approval/denial of internet domain address against firewall ACL's. Freeware version.
4c35e611d93dad2d380a1e9f3e54a132c151acf2d5fc5d0e14e626923b7725b3
Updated paper on Intrusion Detection under Windows NT. This should make things a bit clearer. Microsoft Powerpoint presentation.
a45c068425c0bf5d041f5c876d0ebd0469a3d384c7bcf037e4daf643457ae7c9
3 NT tools - lservers is a NetBIOS name dumper that quickly lists names of PDC's, BDC's, NT boxes, etc. NTOLog backs up or copies NT log files. Can use stdin or input from lservers. NPList can dump all processes on the network. Example: lservers \\HOSTX XDOMAIN /nt | nplist | grep l0phtcrack.
22b2147a1dca1952b2dc95d5a17cf49b74ebb379f3069d8e27118b30fec529e3
Documentation for NTOtools2.
31041d0a2f491b5caa008e694bb0febefe2aef971f313bec7aed62ddc60702f2
A word document discussing the possibilities of defeating encryption programs such as PGP using LanMan under NT.
36075d5ad515b3cc6df89ff4093cd14678327dc9bfa487d7c98880cc7bd36e16
Intrusion Auditing Under Windows NT. Microsoft PowerPoint presentation.
1f6a7a3596b2ad9381e38f460158d1b5ac70433e7354b9021b4a40bdeeff3891
NTLast 1.6 is a security audit tool for Windows NT. It's a Win32 command line utility with several switches that search the event log for Interactive/Remote/Failed logon stats. In it's simplist form, it reports the last ten successful logons at your computer. NTLast does two significant things that event viewer does not. It can distinguish remote/interactive logons and it matches logon times with logoff times. NTLast is designed to assist your efforts in tracking down logon/logoff data.
f4714562db9789cff915e2fdb7578a6c93cb3878834211ba13fda28f127c0952
Excellent detailed explanation describing how to programmatically connect to NT Server NULL Sessions and extract the name of the true administrator account.
385e5b27d636bd14505e27e7fb7bbe9aae23dcdffcaf95f465b255d4a5c97685