Security Basics mailing list archives

Security tools for analysing malicious websites


From: "Kamat, Jitesh" <jitesh.kamat () gs com>
Date: Wed, 2 May 2007 16:33:36 -0400

Hello,
Can the experts in this list please share their experience on some useful tools/resources for analyzing if a website is 
hosting malicious exploits?

Some of the things I use today are:
For info gathering
http://www.domaintools.com/      
http://samspade.org/      
http://isc.sans.org/         IP lookup utility
http://uptime.netcraft.com/up/     

For analysis
http://www.siteadvisor.com/analysis/       
http://linkscanner.explabs.com/linkscanner/default.asp     
http://securecomputing.com/sfwhere/index.cfm     
BURP proxy suite
Wget 

Most of these (except the last 2) are for offline (no touch) analysis. I'm interested in more in-depth online (touch) 
analysis. 

- JK


Current thread: