1. 程式人生 > 實用技巧 >基於windows 10打造的kali工具集-ICS Windows v2.0

基於windows 10打造的kali工具集-ICS Windows v2.0

ICS Windows v2.0

距離上一次IRTeam釋出ICS windows v1.0已經差不多一年了,根據很多安全小夥伴的要求,釋出更新版本基於原來的kali windows v1.1,更新了Windows 10 1909版本,同時增加了一些工具並加入一些ICS攻擊工具。這是一種為網路安全從業人員打造的免費安全研究平臺。

首先,從百度網盤下載ICS.ova(檔案連結:https://pan.baidu.com/s/1znkAD4i3v0qyw3zytAYPQA提取碼:6diu)可以匯入vmware,vbox和kvm,配置需求,2個vCPU,8G記憶體,60G硬碟,網絡卡手動。

張貼後會進入登陸介面:輸入使用者名稱和密碼(密碼是:jiansiting),進入介面後可以看到相應的版本資訊。

在底部選單欄裡有一個可以看到這個平臺所帶有工具分類和列表。可以看到我們常用的brup,msf,nmap等我們常用的安全工具。這裡要介紹一下ICS基於工控安全的一些研究工具,例如hsl這款能夠和眾多工控裝置通訊測試的工具,它主要是完成控制裝置IO的和記憶體地址的讀寫。同時,還提供了MODBUS TCP的伺服器模擬器和客戶端,S7協議的伺服器的模擬器和客戶端,同時還提供了基於的Profinet和乙太網/ IP的協議線上分析同時ICS Windows v2.0還封裝了一個ICS命令列,把一些常用的工具和命令提前整合進去,直接使用tab鍵就可以快速輸入,推薦網路安全小夥伴從這個控制檯進入使用安全工具。

ICS Windows v2.0工具平臺提供以下工具集:

DOS攻擊

abdal-loris
hping
apachedos
memcrashed
perlflood
slowloris
slowloris6

開發工具

ExploitPack_12
msfconsole
nc
nc64
Netsparker Pro
Nmap – Zenmap GUI
nosqlmap
PowerSploit
shodansploit
sqlmap
wepwnise
winexs
xsstrike
XAttacker
Acunetix Pro

法證

Acunetix Pro
adb
Autoruns
Autoruns64
awatch
BluetoothView
BrowsingHistoryView
Cain
CFF Explorer
ChromeCacheView
cloudfail
cports
CredentialsFileView
DataProtectionDecryptor
Diskmon
DNSDataView
DNSQuerySniffer
DownloadMgrPasswordDump
DownTester
DriverList_x64
DriverList_x86
Elcomsoft eXplorer for WhatsApp
Elcomsoft Internet Password Breaker
Ettercap-0.7.4
FastResolver
FullEventLogView
HTTP Debugger Pro
HTTPNetworkSniffer
httprecon
hydra
ILSpy
Immunity Debugger
iOS Forensic Toolkit
LiveContactsView
logonsessions
logonsessions64
MegaDumper
mimikatz
MozillaHistoryView
MyLastSearch
mzcv
ncat
ndiff
NetConnectChoose
NetResView
NetRouteView
Netsparker
NetworkLatencyView
NetworkTrafficView
nmap
nping
ntfsinfo
ntfsinfo64
PE Detective
PingInfoView
portmon
Process Hacker 2
procexp
procexp64
Procmon
PsExec
PsExec64
psfile
psfile64
PsGetsid
PsGetsid64
PsInfo
PsInfo64
pskill
pskill64
pslist
pslist64
PsLoggedon
PsLoggedon64
psloglist
psloglist64
pspasswd
pspasswd64
psping
psping64
PsService
PsService64
psshutdown
pssuspend
pssuspend64
QuickSetDNS
RAMMap
Registrar Registry Manager (64-bit)
ResourceHacker
Restorator 2018
smsniff
Sysmon
Sysmon64
TcpLogView
Tcpvcon
Tcpview
USBDeview
VaultPasswordView
Volumeid
Volumeid64
webscreenshot
whoistd
WifiChannelMonitor
WifiInfoView
WinDump
Winobj
WirelessNetView
Wireshark
WNetWatcher
Network Scanner
IDA Pro
habu

硬體黑客

adb
apktool
Arduino
Elcomsoft eXplorer for WhatsApp
iOS Forensic Toolkit
UEFIFind
USBDeview
Andriller

ICS攻擊

EIPExporer
HslCommunication
ModScan32
ModSim32
nmap-scada
password
profinetExplorer
S7 client
S7 Server
OPC Client

資訊收集

Cain
cloudfail
crawler
DNSDataView
DNSQuerySniffer
DownTester
Ettercap-0.7.4
FastResolver
FOCA
HTTP Debugger Pro
HTTPNetworkSniffer
httprecon
InSpy
inSSIDer 4
IP List Generator 2 (x64)
IP Subnet Calculator
ipnetinfo
mimikatz
nc
nc64
NetConnectChoose
NetResView
NetRouteView
netscan
Netsparker
NetworkLatencyView
NetworkTrafficView
Nmap – Zenmap GUI
nmap
PingInfoView
portmon
RouterScan
shodansploit
SmartWhois
smsniff
snmptest
sublist3r
TcpLogView
theharvester
ubntdiscovery
whoistd
WifiChannelMonitor
WifiInfoView
winexs
WirelessNetView
WNetWatcher
wpgrab
th3inspector
hashid

惡意軟體分析工具

adb
Andriller
AndroChef Java Decompiler 1.0
APK Easy Tool
apk-editor-studio
apk-icon-editor
apktool
Arduino
Burp Suite Community Edition
CFF Explorer
Cheat Engine
cstool
de4dot-x64
de4dot
dnSpy
DriverList_x64
DriverList_x86
Elcomsoft eXplorer for WhatsApp
HTTP Debugger Pro
HTTPNetworkSniffer
httprecon
hzmd5cracker
ILSpy
Immunity Debugger
iOS Forensic Toolkit
MegaDumper
Nmap – Zenmap GUI
ollydbg
PE Detective
ProcessActivityView32
ProcessActivityView64
RAMMap
Registrar Registry Manager (64-bit)
ResourceHacker
Restorator 2018
TcpLogView
Tcpvcon
Tcpview
UEFIFind
USBDeview
VaultPasswordView
Wi-Fi Scanner
WifiChannelMonitor
WirelessNetView
Wireshark
IDA Pro

行動工具

adb
AndroChef Java Decompiler 1.0
APK Easy Tool
apk-editor-studio
apk-icon-editor
apktool
Odin3
Andriller

多媒體

AIMP
PotPlayer 64 bit

網路與網際網路

aria2c
awatch
BluetoothView
Cain
Cisco AnyConnect Secure Mobility Client
cports
DNSDataView
DNSQuerySniffer
DownTester
Ettercap-0.7.4
FastResolver
HTTPNetworkSniffer
hydra
IP List Generator 2 (x64)
IP Subnet Calculator
ipnetinfo
logonsessions
logonsessions64
Mozilla Thunderbird
msfconsole
nc
nc64
ncat
ncrack
ndiff
NetConnectChoose
NetResView
NetRouteView
netscan
NetworkLatencyView
NetworkTrafficView
Nmap – Zenmap GUI
nmap
nping
OpenConnect-GUI VPN client
PingInfoView
plink
portmon
Proxifier
Proxy Checker
pscp
psftp
putty
puttygen
puttytel
QuickSetDNS
RouterScan
shodansploit
SmartWhois
smsniff
snmptest
sublist3r
TcpLogView
Tcpvcon
Tcpview
ubntdiscovery
whoistd
WifiChannelMonitor
WifiInfoView
WirelessNetView
Wireshark
WNetWatcher
Firefox
Google Chrome
MantraPortable
Tor Browser
Colasoft Packet Builder 2.0
Telegram
NBMonitor
Network Scanner

密碼攻擊

Advanced Archive Password Recovery
Advanced Office Password Recovery
Advanced PDF Password Recovery
aircrack-ng
bruteforcer
BulletsPassView
Cain
ChromePass
crunch
Dialupass
DownloadMgrPasswordDump
Elcomsoft Internet Password Breaker
hashcat32
hashcat64
hydra
iepv
john
mailpv
mkbrutus
msfconsole
mspass
ncrack
netpass
Nmap – Zenmap GUI
OperaPassView
PasswordFox
pspv
PstPassword
rcrack
rcrack_cl
rcrack_cl_gui
rcrack_cuda
rcrack_cuda_gui
rcrack_gui
rdpv
RouterPassView
rt2rtc
rtc2rt
rtgen
rtmerge
rtsort
Sentry_MBA
SniffPass
VNCPassView
WebBrowserPassView
WirelessKeyView
Wireshark
wpbrutexmlrpc
xattacker
xsspwn
xbruteforcer
hzmd5cracker
Acunetix Pro
patator

程式設計工具

Advanced BAT to EXE Converter PRO v2.83
AndroChef Java Decompiler 1.0
APK Easy Tool
apk-editor-studio
apk-icon-editor
Byte_Adder
Git Bash
HeidiSQL
mysql
mysqldump
pgAdmin 4
php
ProcessActivityView32
ProcessActivityView64
SNSRemover
SQL Shell (psql)
premake

老鼠與間諜軟體

Black Stealer
Costex FTP Keylogger
Costex SMTP Keylogger
DarkComet
DarkCometRAT Remover
Nano File Binder
Spoofer-Binder
UST

遙控

AnyDesk
pageant
plink
pscp
psftp
putty
puttygen
puttytel
winbox
Xftp
Xlpd
Xmanager
Xshell
nc64
nc
VNC Viewer

報告工具

Kainet LogViewPro
ndiff
Netsparker
serpico

逆向工程

AndroChef Java Decompiler 1.0
APK Easy Tool
apk-editor-studio
apk-icon-editor
Burp Suite Community Edition
CFF Explorer
Cheat Engine
cstool
de4dot-x64
de4dot
dnSpy
DriverList_x64
DriverList_x86
ILSpy
Immunity Debugger
MegaDumper
Nmap – Zenmap GUI
ollydbg
PE Detective
ProcessActivityView32
ProcessActivityView64
Registrar Registry Manager (64-bit)
ResourceHacker
Restorator 2018
adb
apktools
hzmd5cracker
IDA Pro
yara
yarac
HxD
cutter
wxHexEditor
binwalk

安全

Abdal Anti GiliSoft USB Lock 5x-4x-3x
Abdal Anti GiliSoft USB Lock 7.x
Autoruns
Autoruns64
Diskmon
KeePass 2
logonsessions
logonsessions64
procexp
procexp64
Procmon
RunPEDetector
sdelete
sdelete64
VeraCrypt
WinAuth
XArp
NBMonitor
Flash Memory Protector

嗅探與欺騙

Burp Suite Community Edition
Change MAC Address
Byte_Adder
Cain
Colasoft Packet Builder 2.0
HTTP Debugger Pro
nc
nc64
NetworkLatencyView
NetworkTrafficView
Nmap – Zenmap GUI
nmap
smsniff
snmptest
TcpLogView
Tcpvcon
Tcpview
whoistd
WifiChannelMonitor
WifiInfoView
WirelessNetView
Wireshark
WNetWatcher
YouTube View Increaser v3
habu

效用

7-Zip File Manager
Acrobat Reader DC
Advanced BAT to EXE Converter PRO v2.83
AIMP
Autologon
Cisco AnyConnect Secure Mobility Client
Desktops
FileZilla Server Interface
FileZilla
Hard Disk Sentinel
hostseditor
Internet Download Manager
IP List Generator 2 (x64)
IP Subnet Calculator
Mozilla Thunderbird
OpenConnect-GUI VPN client
pgAdmin 4
plink
PotPlayer 64 bit
Proxifier
Proxy Checker
pscp
psftp
puttygen
puttytel
Rainmeter
SQL Shell (psql)
UltraISO
Telegram
PowerISO
Your Unin-staller!
rufus
Flash Memory Protector
aria2c

病毒編碼

Abdal Autoit Cryptor
Abdal Autoit IDE
Abdal Autoit Info
Abdal Autoit Info_x64
Byte_Adder
JetBrains CLion 2019.1.3
JetBrains GoLand 2019.1 x64
JetBrains GoLand 2019.1
Nano File Binder
Spoofer-Binder
UST

網路應用

Burp Suite Community Edition
cloudfail
crawler
ExploitMyUnion
FOCA
HTTP Debugger Pro
hydra
msfconsole
ncrack
Netsparker Pro
nikto
nosqlmap
OWASP ZAP 2.7.0
Sentry_MBA
sqlmap
sublist3r
Vega
webscreenshot
Wireshark
wpscan
pwpscan
xattacker
xbruteforcer
xsspwn
xsspy
xsssniper
xsstrike
Acunetix Pro

網頁瀏覽器

Firefox
Google Chrome
Mantra
Tor Browser

無線攻擊

airbase-ng
aircrack-ng
airdecap-ng
airdecloak-ng
aireplay-ng
airodump-ng
airolib-ng
airserv-ng
airtun-ng
airventriloquist-ng
besside-ng
buddy-ng
CommView for WiFi
easside-ng
Ekahau HeatMapper
inSSIDer 4
ivstools
kstats
makeivs-ng
Network Stumbler
packetforge-ng
tkiptun-ng
wesside-ng
wpaclean

程式設計支援

Python3
python2
c++
c
VC++
GO
Perl
Java
PHP
Ruby
Scala
PostgreSQL
MYSQL