.:[ packet storm ]:.
                             
never stop questioning
never stop questioning

 Section:  .. / UNIX / loggers  /

Also see UNIX IDS Utilities.

Page 1 of 11
<< 1 2 3 4 5 6 7 8 9 10 11 >> Files 1 - 25 of 256
Currently sorted by: Last ModifiedSort By: File Name, File Size

 ///  File Name: ttyrpld-2.52.tar.bz2
Description:
ttyrpld is a kernel-based TTY shell, screen, and key logger for Linux, FreeBSD/PCBSD, and OpenBSD. It has a real-time log analyzer. It supports any TTY type (vc (console), BSD/Unix98 pty (xterm/SSH), serial, ISDN, USB, etc.).
Author:Jan Engelhardt
Homepage:http://ttyrpld.sourceforge.net/
Changes:Updated kernel components for Linux 2.6.27 and updated userspace code for libHX 1.25.
File Size:184626
Last Modified:Sep 8 11:28:55 2008
MD5 Checksum:322674047f27652702ba35a196ca3c74

 ///  File Name: ttyrpld-2.51.tar.bz2
Description:
ttyrpld is a kernel-based TTY shell, screen, and key logger for Linux, FreeBSD/PCBSD, and OpenBSD. It has a real-time log analyzer. It supports any TTY type (vc (console), BSD/Unix98 pty (xterm/SSH), serial, ISDN, USB, etc.).
Author:Jan Engelhardt
Homepage:http://ttyrpld.sourceforge.net/
Changes:Updated rpldhk and rpldev for Linux 2.6.25, OpenBSD 4.3, FreeBSD 7.0, NetBSD 4.0.
File Size:183529
Last Modified:May 19 14:52:33 2008
MD5 Checksum:cc635d7f709c96115111b64185eaccf4

 ///  File Name: tenshi-0.10.tar.gz
Description:
Tenshi is a log monitoring program, designed to watch a log file for lines matching user defined regular expression and report on the matches. The regular expressions are assigned to queues which have an alert interval and a list of mail recipients. Queues can be set to send a notification as soon as there is a log line assigned to it, or to send periodic reports.
Author:Andrea Barisani
Homepage:http://dev.inversepath.com/trac/tenshi
Changes:Multiple bug fixes and some improvements.
File Size:26131
Last Modified:Mar 14 13:29:09 2008
MD5 Checksum:cc6abbcd1bf563fa31771b7d4b05fe65

 ///  File Name: os-sim-0.9.9.tar.gz
Description:
Os-sim attempts to unify network monitoring, security, correlation, and qualification in one single tool. It combines Snort, Acid, MRTG, NTOP, OpenNMS, nmap, nessus, and rrdtool to provide the user with full control over every aspect of networking or security. Supported platform is Linux.
Author:Dominique Karg,David Gil,Fabio Ospitia Trujillo,Julio Casal,Jesus D. Munoz
Homepage:http://sourceforge.net/projects/os-sim/
Changes:Various bug fixes and feature enhancements.
File Size:10710699
Last Modified:Feb 25 11:07:04 2008
MD5 Checksum:36006e6db4b43d1f5ebd163af68e2bd9

 ///  File Name: ttyrpld-2.50.tar.bz2
Description:
ttyrpld is a kernel-based TTY shell, screen, and key logger for Linux, FreeBSD/PCBSD, and OpenBSD. It has a real-time log analyzer. It supports any TTY type (vc (console), BSD/Unix98 pty (xterm/SSH), serial, ISDN, USB, etc.).
Author:Jan Engelhardt
Homepage:http://ttyrpld.sourceforge.net/
Changes:Changed the packet format to be compatible between 32-bit and 64-bit. Added rplcvt utility. Explicit blacklists added.
File Size:183137
Last Modified:Jan 2 14:47:22 2008
MD5 Checksum:da3ca86e18f73f18030f92f8423d8000

 ///  File Name: nuhe-0.06.tar.gz
Description:
Nuhe is a rule based log monitoring system which is capable of taking action when rules are matched against log activity. By default, Nuhe runs in the background (as a daemon), but it can also be used in the foreground in a log analyzer mode.
Author:Tuomo Makinen
Homepage:http://nuhe.sourceforge.net/
Changes:Multiple bug fixes and improvements.
File Size:170547
Last Modified:Dec 17 20:07:39 2007
MD5 Checksum:4c08a59908e5db54b56ec73ef77fccb9

 ///  File Name: nuhe-0.05.tar.gz
Description:
Nuhe is a rule based log monitoring system which is capable of taking action when rules are matched against log activity. By default, Nuhe runs in the background (as a daemon), but it can also be used in the foreground in a log analyzer mode.
Author:Tuomo Makinen
Homepage:http://nuhe.sourceforge.net/
Changes:Added multiple sources functionality for actions. Various other fixes and changes.
File Size:169615
Last Modified:Nov 30 00:43:20 2007
MD5 Checksum:45c37c6df91532733e53d67d257c10db

 ///  File Name: honeytrap-1.0.0.tar.gz
Description:
Honeytrap is a network security tool written to observe attacks against TCP services. As a low-interactive honeypot, it collects information regarding known or unknown network-based attacks and thus can provide early-warning information. The daemon monitors the network stream for incoming connections and dynamically starts server processes if it detects a request to an unbound port. Honeytrap can also be set up as a meta honeypot that forwards several attacks to other systems or, in mirror mode, redirects a connection back to the initiator. Several plugins are available for automated attack analysis.
Author:Tillmann Werner
Homepage:http://honeytrap.sourceforge.net/
Changes:New plugins added, various improvements and bug fixes.
File Size:852512
Last Modified:Oct 29 11:20:36 2007
MD5 Checksum:2d07e1efcae1b64011c60547544f1f80

 ///  File Name: tenshi-0.9.1.tar.gz
Description:
Tenshi is a log monitoring program, designed to watch a log file for lines matching user defined regular expression and report on the matches. The regular expressions are assigned to queues which have an alert interval and a list of mail recipients. Queues can be set to send a notification as soon as there is a log line assigned to it, or to send periodic reports.
Author:Andrea Barisani
Homepage:http://dev.inversepath.com/trac/tenshi
Changes:Improved debug messages, fixed buggy multiple tail processes handling.
File Size:25845
Last Modified:Oct 5 22:45:40 2007
MD5 Checksum:17a2f5f72b232b81b01f800e0e932a99

 ///  File Name: tenshi-0.9.tar.gz
Description:
Tenshi is a log monitoring program, designed to watch a log file for lines matching user defined regular expression and report on the matches. The regular expressions are assigned to queues which have an alert interval and a list of mail recipients. Queues can be set to send a notification as soon as there is a log line assigned to it, or to send periodic reports.
Author:Andrea Barisani
Homepage:http://dev.inversepath.com/trac/tenshi
Changes:Added tail_multiple option, added csv option for comma separated output to custom parser, merged tailargs and filterargs features in tail, filter ones, added FAQ file, another round of rpm spec fixes + fd leak fix.
File Size:25535
Last Modified:Sep 19 12:04:57 2007
MD5 Checksum:7cc328d940d6f6a3f36540d7f16de23d

 ///  File Name: ttyrpld-2.19.tar.bz2
Description:
ttyrpld is a kernel-based TTY shell, screen, and key logger for Linux, FreeBSD/PCBSD, and OpenBSD. It has a real-time log analyzer. It supports any TTY type (vc (console), BSD/Unix98 pty (xterm/SSH), serial, ISDN, USB, etc.).
Author:Jan Engelhardt
Homepage:http://ttyrpld.sourceforge.net/
Changes:The kernel interface has been reduced. Various other tweaks and fixes.
File Size:177655
Last Modified:Sep 18 22:41:18 2007
MD5 Checksum:ca4d1473082eb5a38582a626d5b9360d

 ///  Directory: / syslog-ng /
Description:
syslog-ng is a very configurable syslogd replacment
Total Files:60
Last Modified:Sep 5 21:24:16 2007

 ///  File Name: nuhe-0.04.tar.gz
Description:
Nuhe is a rule based log monitoring system which is capable of taking action when rules are matched against log activity. By default, Nuhe runs in the background (as a daemon), but it can also be used in the foreground in a log analyzer mode.
Author:Tuomo Makinen
Homepage:http://nuhe.sourceforge.net/
Changes:Multiple fixes and changes.
File Size:159292
Last Modified:Aug 29 00:31:10 2007
MD5 Checksum:e78e7ec3a35935da8296bafc7800541b

 ///  File Name: tenshi-0.8.tar.gz
Description:
Tenshi is a log monitoring program, designed to watch a log file for lines matching user defined regular expression and report on the matches. The regular expressions are assigned to queues which have an alert interval and a list of mail recipients. Queues can be set to send a notification as soon as there is a log line assigned to it, or to send periodic reports.
Author:Andrea Barisani
Homepage:http://dev.inversepath.com/trac/tenshi
Changes:Fixed some rpm spec issues. Added support for queue escalation.
File Size:21692
Last Modified:Aug 21 15:58:37 2007
MD5 Checksum:45a85db41c7a19893662940e1605bf33

 ///  File Name: devialog-0.9.0.tgz
Description:
devialog is a behavior/anomaly/signature-based syslog intrusion detection system which can detect new, unknown attacks. It fits comfortably in a heterogeneous Unix/Linux/BSD environment at the core of a central syslog server. devialog can generate its own signatures and can act upon anomalies as configured by the system administrator. In addition, devialog can function as a traditional syslog parsing utility in which known signatures trigger actions.
Author:Jeff Yestrumskas
Homepage:http://devialog.sourceforge.net/
Changes:See changelog.
File Size:18261
Last Modified:Jul 7 00:37:31 2007
MD5 Checksum:23a4ddf4b5e27adb4d2a2f2244ad1f73

 ///  File Name: honeytrap-0.7.0.tar.gz
Description:
Honeytrap is a network security tool written to observe attacks against TCP services. As a low-interactive honeypot, it collects information regarding known or unknown network-based attacks and thus can provide early-warning information. The daemon monitors the network stream for incoming connections and dynamically starts server processes if it detects a request to an unbound port. Honeytrap can also be set up as a meta honeypot that forwards several attacks to other systems or, in mirror mode, redirects a connection back to the initiator. Several plugins are available for automated attack analysis.
Author:Tillmann Werner
Homepage:http://honeytrap.sourceforge.net/
Changes:Plugins can be prioritized. x86 CPU emulation module for generic shellcode analysis. Various other additions and improvements.
File Size:796053
Last Modified:May 21 21:36:39 2007
MD5 Checksum:d2e765e15a4959d0155ba9b83f2fef7a

 ///  File Name: tenshi-0.7.tar.gz
Description:
Tenshi is a log monitoring program, designed to watch a log file for lines matching user defined regular expression and report on the matches. The regular expressions are assigned to queues which have an alert interval and a list of mail recipients. Queues can be set to send a notification as soon as there is a log line assigned to it, or to send periodic reports.
Author:Andrea Barisani
Homepage:http://dev.inversepath.com/trac/tenshi
Changes:fifo option can be specified multiple times, logfile and fifo mode can be simultaneous, added sort_order option, added listen option for syslog server mode, see Changelog for full details.
File Size:22118
Last Modified:Mar 19 23:07:04 2007
MD5 Checksum:dad412c7fbf6923f0992a0b6b13d6e53

 ///  File Name: honeytrap-0.6.4.tar.gz
Description:
Honeytrap is a network security tool written to observe attacks against TCP services. As a low-interactive honeypot, it collects information regarding known or unknown network-based attacks and thus can provide early-warning information. The daemon monitors the network stream for incoming connections and dynamically starts server processes if it detects a request to an unbound port. Honeytrap can also be set up as a meta honeypot that forwards several attacks to other systems or, in mirror mode, redirects a connection back to the initiator. Several plugins are available for automated attack analysis.
Author:Tillmann Werner
Homepage:http://honeytrap.sourceforge.net/
Changes:PoC plugin for locality sensitive hashing, Clean solution for giving packet control back to the kernel when using the ip_queue connection monitor, Fixed a segfault in the bpf filter string assembling routine, Failed mirror connections did not fall back to normal mode sometimes due to wrong return value handling for a non-blocking connect(). Fixed. The dynamic server code was redesigned. UDP support added.
File Size:371797
Last Modified:Jan 26 22:17:16 2007
MD5 Checksum:b5aad87bff055fde350a1913baeabdc8

 ///  File Name: sh2log-1.0.tgz
Description:
sh2log is a PTY sniffing program that captures all keystrokes and console output of physical and virtual consoles. sh2log works as a userland keylogger and does not require installation of a kernel module. Consequently, it can be run on a wide range of different UNIX platforms: Linux, SunOS, BSD, AIX, etc. The essential method of use here is that it man in the middles standard shells.
Author:Christophe Devine
File Size:80240
Last Modified:Nov 8 21:43:57 2006
MD5 Checksum:3742a060f5fdc97ee21bd8387a4bb80b

 ///  File Name: honeytrap-0.6.3.1.tar.gz
Description:
Honeytrap is a network security tool written to observe attacks against TCP services. As a low-interactive honeypot, it collects information regarding known or unknown network-based attacks and thus can provide early-warning information. The daemon monitors the network stream for incoming connections and dynamically starts server processes if it detects a request to an unbound port. Honeytrap can also be set up as a meta honeypot that forwards several attacks to other systems or, in mirror mode, redirects a connection back to the initiator. Several plugins are available for automated attack analysis.
Author:Tillmann Werner
Homepage:http://honeytrap.sourceforge.net/
File Size:348247
Last Modified:Oct 12 01:00:27 2006
MD5 Checksum:e81c42c4f69046911bd38e255ab66ee7

 ///  File Name: tenshi-0.6.tar.gz
Description:
Tenshi is a log monitoring program, designed to watch a log file for lines matching user defined regular expression and report on the matches. The regular expressions are assigned to queues which have an alert interval and a list of mail recipients. Queues can be set to send a notification as soon as there is a log line assigned to it, or to send periodic reports.
Author:Andrea Barisani
Homepage:http://dev.inversepath.com/trac/tenshi
Changes:added group_host feature for selective hostname matching
File Size:18782
Last Modified:Oct 4 16:05:37 2006
MD5 Checksum:2722d5bb4538b313347fafbb06eed3e0

 ///  File Name: ttyrpld-2.18.tar.bz2
Description:
ttyrpld is a kernel-based TTY shell, screen, and key logger for Linux, FreeBSD/PCBSD, and OpenBSD. It has a real-time log analyzer. It supports any TTY type (vc (console), BSD/Unix98 pty (xterm/SSH), serial, ISDN, USB, etc.).
Author:Jan Engelhardt
Homepage:http://ttyrpld.sourceforge.net/
Changes:Fixed OpenBSD 3.9 kpatch. Readded workaround for OpenBSD/NetBSD EINTR signal handling that got lost in 2.17.
File Size:139982
Last Modified:Jul 2 06:15:29 2006
MD5 Checksum:b704ad4834e4b88c8979f5daf8f53ed1

 ///  File Name: nuhe-0.01.tar.gz
Description:
Nuhe is a rule based log monitoring system which is capable of taking action when rules are matched against log activity. By default, Nuhe runs in the background (as a daemon), but it can also be used in the foreground in a log analyzer mode.
Author:Tuomo Makinen
Homepage:http://nuhe.sourceforge.net/
File Size:107205
Last Modified:Jul 2 06:03:16 2006
MD5 Checksum:af5e2a365f60ce8320f4d8c1a47321ce

 ///  File Name: tenshi-0.5.1.tar.gz
Description:
Tenshi is a log monitoring program, designed to watch a log file for lines matching user defined regular expression and report on the matches. The regular expressions are assigned to queues which have an alert interval and a list of mail recipients. Queues can be set to send a notification as soon as there is a log line assigned to it, or to send periodic reports.
Author:Andrea Barisani
Homepage:http://dev.inversepath.com/trac/tenshi
Changes:Fixed buggy noprefix queue implementation.
File Size:18871
Last Modified:Jun 26 23:42:11 2006
MD5 Checksum:44361d5d8defc5170146f467a8825413

 ///  File Name: tenshi-0.5.tar.gz
Description:
Tenshi is a log monitoring program, designed to watch a log file for lines matching user defined regular expression and report on the matches. The regular expressions are assigned to queues which have an alert interval and a list of mail recipients. Queues can be set to send a notification as soon as there is a log line assigned to it, or to send periodic reports.
Author:Andrea Barisani
Homepage:http://dev.inversepath.com/trac/tenshi
Changes:Improved sanity checks, Added debug levels, level 2 enables Net::SMTP debug messages, Replaced Getopt::Std with Getopt::Long, and various other additions and tweaks.
File Size:19220
Last Modified:Jun 26 01:04:08 2006
MD5 Checksum:f296c8bde034ef379f6a6f62003ff8a2