| Tool |
NetScanTools LE |
NetScanTools Pro |
| Bulk Translate |
-Bulk translate IP/Hostnames |

-Bulk translate IP/Hostnames
-DNS Verify
-Bulk IP to AS Number Queries |
| DNS Tools - Core |

-Simple Query
-Who Am I?
-Test Default DNS
-NSLOOKUP (11 resource record types)
-DiG +trace
-Get Basic DNS Records
-Zone Transfer (Auto and Manual) |

-Simple Query
-Who Am I?
-Test Default DNS
-NSLOOKUP (47 resource record types)
-DiG +trace
-Get Basic DNS Records
-Zone Transfer (Auto and Manual)
-DiG (47 resource record types)
-Batch Processing |
| Email Validate |
All
features identical |
All
features identical |
| Finger |
All
features identical |
All
features identical |
| IP to Country |
All
features identical |
All
features identical |
| Ping |

-MS ICMP Ping only
-Control packet timing, length and data payload |

-MS ICMP Ping
-ICMP Ping (WinPcap)
-UDP Ping (WinPcap)
-TCP Ping (WinPcap)
-UDP Mixed Mode
-TCP/UDP header bit and field control
-Continuous Ping
-Control packet timing, length and data payload |
| Ping Sweep |

-Ping range of IPs with ICMP packets |

-Ping range of IPs with ICMP packets
-Use ARP and NetBIOS to retrieve MAC address information
-Send and receive ICMP Subnet Mask queries
-Hosts file editor |
| Port Scanner |

-TCP Full Connect
-UDP ICMP Port Unreachable
-TCP/UDP Combined
-Scan Common Ports
-Scans a Single IP at a time
-Ping before scan option |

-TCP Full Connect
-UDP ICMP Port Unreachable
-TCP/UDP Combined
-TCP SYN Scan
-User define TCP Stealth Scan with control over packet
header
-Ping before scan option
-Scan multiple IPs
-Four Scan Modes |
| Real Time Blacklist Check |
All
features identical |
All
features identical |
| Text Only Web Page Grabber |
All
features identical except web server timing is not
present |
All
features identical |
| Traceroute |

-MS ICMP Traceroute only
-Control packet timing, length and data payload
-Country displayed for each hop |

-MS ICMP Traceroute
-ICMP Traceroute (WinPcap)
-UDP Variable Port Traceroute
-UDP Fixed Port Traceroute
-TCP Traceroute (WinPcap)
-TCP/UDP header bit and field control
-Control packet timing, length and data payload
-Country displayed for each hop
-IP to AS number queries |
| Whois |

-Whois query for domains and IP addresses
-Batch Whois queries
-Multi-domain queries
-Remove legal notices and advertising |

-Whois query for domains and IP addresses
-RWhois queries
-Batch Whois queries
-Multi-domain queries
-Remove legal notices and advertising |
| Packet Viewer (output files are compatible with Wireshark) |

Use to validate evidence received by capture network
traffic during the time the tools are used. |
 |
| ARP Cache Tool and ARP Scan
(sometimes called MAC Scan) |
|
 |
| ARP Ping with duplicate IP detection |
|
 |
| Cache Forensics (URL Cache Viewer and
Protected Storage Viewer) |
|
 |
| Connection Detection (TCP/UDP
Honeypot listening ports) |
|
 |
| Database Tests (services and
protocols and lookups) |
|
 |
| DHCP Server Discovery |
|
 |
| Passive Discovery of active hosts on
subnet |
|
 |
| DNS Tools - Advanced |
|
 |
| IP/MAC Address Management database |
|
 |
| Launcher |
|
 |
| Net Topography using traceroute |
|
 |
| NetBios Info - Shares |
|
 |
| NetBios Info - Advanced |
|
 |
| Network Statistics including
connection list |
|
 |
| OS Fingerprinting |
|
 |
| Packet Generator (TCP/UDP/ICMP/CDP) |
|
 |
| Graphical Ping |
|
 |
| Promiscuous Mode Scanner |
|
 |
| RFC Reference |
|
 |
| RPC Info (Unix/Linux) |
|
 |
| Simple Services Client (quote,
daytime, echo, chargen) |
|
 |
| SMTP Email and Relay Test |
|
 |
| SNMP Tools (walk, get, set, and
others) |
|
 |
| SNMP Dictionary Attack (finds SNMP v1
and v2c community names) |
|
 |
| Subnet Calculator |
|
 |
| TCP Term |
|
 |
| TimeSync |
|
 |
| TTCP |
|
 |
| Wake-on-LAN |
|
 |
| Winsock Info |
|
 |