How to use

This is my favorites website show at the blog. So you can index in here and find the web link. All Links focus on Information Security, especially for Incident Response include Computer Forensics.

2009-05-18

Online Link Scan

Online Link Scan - Virus, Trojan, Adware and Malware Scanner
http://onlinelinkscan.com/
Prevent infection and data theft! Scan links for viruses, malware, spyware, and trojans with OnlineLinkScan.
Use our arsenal of tools to prevent infection, data theft and find out the trust score of a link.
Click to scan this page

2009-04-08

Malware Hash

Malware Hash is a free service offered by NoVirusThanks.org that collects the malicious MD5 hash of the files that are analyzed in the Malware & Virus Scan Service.
http://www.malwarehash.com/

DEFT Linux

DEFT (acronym of “Digital Evidence & Forensic Toolkit) is a customized distribution of the Xubuntu live Linux CD.
http://www.deftlinux.net/

2009-04-05

Filterbit™

Using Filterbit, you can upload a file and get results from 9 different scanners.
http://www.filterbit.com/

2009-01-12

瑞星恶意网站监测网

主要監控網站掛馬的攻擊行為。
http://mwm.rising.com.cn/
* 恶意网站TOP5
* 恶意网站分布示意图
* 恶意网站攻击风险标示
* 恶意网站影响地区排行

2008-12-08

Identify File (**) by MD5, SHA1 or Others

FileAdvisor: MD-5 or SHA-1 hash of any file
http://fileadvisor.bit9.com/

CastleCops: SHA-1, MD5, and CRC32 hash of file
http://hashes.castlecops.com/

RunScanner: Filename / Process / Guid / CLSID / MD5 hash
http://www.runscanner.net/

Prevx: (need to login)
http://www.prevx.com/

VirusTotal: hash by md5/sha1/sha256
http://www.virustotal.com/zh-tw/buscaHash.html

2008-12-04

Malware Domain List

*注意!!以下網站中的連結,若不知其原理會有相當危險性*

Malicious Web site Labs (恶意网站实验室) (**)
http://www.mwsl.org.cn/

Malware Domain List (***)
All domains on this website should be considered dangerous.
http://www.malwaredomainlist.com/

Malware Block List
The Malware Block List is a free, automated and user contributed system for checking URLs for the presence of Viruses, Trojans, Worms, or any other software considered Malware. The list is available in 29 formats.
http://www.malware.com.br/

DNS-BH - Malware Domain Blocklist
The DNS-BH project creates and maintains a listing of domains that are known to be used to propagate malware and spyware.
http://malwaredomains.com/

StopBadware (***)
StopBadware.org is a "Neighborhood Watch" campaign aimed at fighting badware.
http://www.stopbadware.org/

2008-11-08

www.winsiderss.com

MemInfo is a tool to query information on the state of the memory manager page lists, page frame number (PFN) database entries, per-component and per-process memory usage, and for mapping virtual to physical addresses (for certain kinds of kernel-mode pointers).
http://www.winsiderss.com/tools/meminfo/meminfo.htm

ScTagQuery allows you to obtain precise information on which threads in the system are being used by what service, in order to better gauge CPU and resource usage as well as to help in debugging service-related problems.
http://www.winsiderss.com/tools/sctagquery/sctagquery.htm

Alex Ionescu’s Blog
http://www.alex-ionescu.com/

2008-11-05

Forensics Wiki

focused on the tools and techniques used by investigators.
http://www.forensicswiki.org/wiki/Main_Page

2008-11-03

be hacked URL of information (被黑網站資料)

Zone-H.org (***)
http://www.zone-h.org/
天罣--輪迴的阿修羅 (****)
http://tw.myblog.yahoo.com/edward_205_6/
中国被黑站点统计系统 (*)
http://www.zone-h.com.cn/
Zone-H 本週被黑 .tw 網站整理
http://outian.net/zone-h/
TW 網站淪陷資料庫 | 資安之眼 (*)
http://www.itis.tw/compromised
Turk Hack World Analyse and Attack Mirror Service (*)
http://turk-h.org/
PhishTank See all suspected phish submissions (*)
http://www.phishtank.com/phish_archive.php
Serapis.net
http://www.serapis.net/
XSSed: XSS (cross-site scripting) information and vulnerable websites archive
http://www.xssed.com/archive
WWW Check -- by Chroot
http://www.chroot.org/wwwcheck/
大砲開講
http://rogerspeaking.com/