.:[ packet storm ]:.
                           
the internet security encyclopedia
the internet security encyclopedia

 Section:  .. / UNIX / loggers  /

Also see UNIX IDS Utilities.

Page 2 of 11
<< 1 2 3 4 5 6 7 8 9 10 11 >> Files 25 - 50 of 256
Currently sorted by: Last ModifiedSort By: File Name, File Size

 ///  File Name: ttyrpld-2.17.tar.bz2
Description:
ttyrpld is a kernel-based TTY shell, screen, and key logger for Linux, FreeBSD/PCBSD, and OpenBSD. It has a real-time log analyzer. It supports any TTY type (vc (console), BSD/Unix98 pty (xterm/SSH), serial, ISDN, USB, etc.).
Author:Jan Engelhardt
Homepage:http://ttyrpld.sourceforge.net/
Changes:Added support for Linux 2.6.17, FreeBSD 6.1, OpenBSD 3.9.
File Size:142065
Last Modified:Jun 20 04:11:22 2006
MD5 Checksum:490714fea6757cb72876bbacf9466963

 ///  File Name: ttyrpld-2.16.tbz2
Description:
ttyrpld is a kernel-based TTY shell, screen, and key logger for Linux, FreeBSD/PCBSD, and OpenBSD. It has a real-time log analyzer. It supports any TTY type (vc (console), BSD/Unix98 pty (xterm/SSH), serial, ISDN, USB, etc.).
Author:Jan Engelhardt
Homepage:http://ttyrpld.sourceforge.net/
Changes:Added various support and tweaks.
File Size:160465
Last Modified:Apr 29 05:18:29 2006
MD5 Checksum:7b64785ff828c4f93341afbbe07186cc

 ///  File Name: ttyrpld-2.15-src.tbz2
Description:
ttyrpld is a kernel-based TTY shell, screen, and key logger for Linux, FreeBSD/PCBSD, and OpenBSD. It has a real-time log analyzer. It supports any TTY type (vc (console), BSD/Unix98 pty (xterm/SSH), serial, ISDN, USB, etc.).
Author:Jan Engelhardt
Homepage:http://ttyrpld.sourceforge.net/
Changes:Added support for NetBSD 3.0. Various fixes.
File Size:137813
Last Modified:Mar 15 00:04:39 2006
MD5 Checksum:4e4c8ffa170ea1cd7c31e5443d39039c

 ///  File Name: ttyrpld-2.12.tbz2
Description:
ttyrpld is a kernel-based TTY shell, screen, and key logger for Linux, FreeBSD/PCBSD, and OpenBSD. It has a real-time log analyzer. It supports any TTY type (vc (console), BSD/Unix98 pty (xterm/SSH), serial, ISDN, USB, etc.).
Author:Jan Engelhardt
Homepage:http://ttyrpld.sourceforge.net/
Changes:Bugfixes for FreeBSD, Doc updates.
File Size:127243
Last Modified:Jan 27 15:39:50 2006
MD5 Checksum:f7f0e2c54bf2c18674394a77eb142b6c

 ///  File Name: ttyrpld-2.11.tbz2
Description:
ttyrpld is a kernel-based TTY shell, screen, and key logger for Linux, FreeBSD/PCBSD, and OpenBSD. It has a real-time log analyzer. It supports any TTY type (vc (console), BSD/Unix98 pty (xterm/SSH), serial, ISDN, USB, etc.).
Author:Jan Engelhardt
Homepage:http://ttyrpld.sourceforge.net/
Changes:Added support back in for the latest releases of the previous generation of kernels.
File Size:127215
Last Modified:Jan 15 12:32:51 2006
MD5 Checksum:02b5b1356cfd06046fb289249940febc

 ///  File Name: tenshi-0.4.tar.gz
Description:
Tenshi is a log monitoring program, designed to watch a log file for lines matching user defined regular expression and report on the matches. The regular expressions are assigned to queues which have an alert interval and a list of mail recipients. Queues can be set to send a notification as soon as there is a log line assigned to it, or to send periodic reports.
Author:Andrea Barisani
Homepage:http://dev.inversepath.com/trac/tenshi
Changes:Added uid, gid options for setting effective UID, GID / added colourization of debug messages / added filter, filterargs options for report pre-processing / added pager, and mailto syntax for sending pager friendly reports / added mailtimeout option / fixed tail, tailargs incorrectly being treated as dynamic options.
File Size:24541
Last Modified:Jan 4 20:46:31 2006
MD5 Checksum:3b614e5eed200d93c205cf46d17f3a2d

 ///  File Name: ttyrpld-2.10.tbz2
Description:
ttyrpld is a kernel-based TTY shell, screen, and key logger for Linux, FreeBSD/PCBSD, and OpenBSD. It has a real-time log analyzer. It supports any TTY type (vc (console), BSD/Unix98 pty (xterm/SSH), serial, ISDN, USB, etc.).
Author:Jan Engelhardt
Homepage:http://ttyrpld.sourceforge.net/
File Size:122607
Last Modified:Dec 9 12:15:17 2005
MD5 Checksum:00de381c0bda39dee054d05550bc1313

 ///  File Name: thumper-0.2.tar.gz
Description:
Thumper is a file monitor that highlights services and keywords dependent on its configuration file.
Author:hyakuhei
Homepage:http://www.r0n1n.co.uk/new/new.php?view=Projects
File Size:3403
Last Modified:Oct 7 01:16:07 2005
MD5 Checksum:765fc346c5f8787c563ecc3f37f69e78

 ///  File Name: thumper.tar.gz
Description:
Thumper is a file monitor that highlights services and keywords dependent on its configuration file.
Author:hyakuhei
Homepage:http://www.r0n1n.co.uk/new/new.php?view=Projects
File Size:2537
Last Modified:Aug 28 16:06:15 2005
MD5 Checksum:c07a3d5f7684464af6e5ee7a5c94990f

 ///  File Name: proboscis.c
Description:
Proof of concept event interface keystroke logger that records everything coming through /dev/input/event*.
Author:Eddie Bell
File Size:5169
Last Modified:Aug 28 15:49:55 2005
MD5 Checksum:bc68b7a480acd4bf0030d3c228cedfa5

 ///  File Name: snaresquid-1.2.tar.gz
Description:
Snare for Squid provides a remote distribution facility for Squid proxy server logs, and is known to run on most Unix variations, including Linux, Solaris, AIX, Tru64, and Irix. Snare for Squid can be used to send data to either a remote or local SYSLOG server, or the Snare Server for centralized collection, analysis, and archival.
Homepage:http://www.intersectalliance.com/projects/SnareSquid/index.html
File Size:4242
Last Modified:Jul 19 11:24:54 2005
MD5 Checksum:d757c89e24ed354d7633893b8d607f93

 ///  File Name: snaretext-1.1.tar.gz
Description:
Snare for Apache provides a remote distribution facility for Apache Web server logs. It is known to run on most Unix variations, including Linux, Solaris, AIX, Tru64, and Irix. Snare for Apache can be used to send data to either a remote or local SYSLOG server, or the Snare Server for centralized collection, analysis, and archival.
Homepage:http://www.intersectalliance.com/projects/SnareApache/index.html
File Size:3962
Last Modified:Jul 19 11:23:24 2005
MD5 Checksum:8c1cb82d5696977ffde02e978004e149

 ///  File Name: devialog-0.8.5.tgz
Description:
devialog is a behavior/anomaly/signature-based syslog intrusion detection system which can detect new, unknown attacks. It fits comfortably in a heterogeneous Unix/Linux/BSD environment at the core of a central syslog server. devialog can generate its own signatures and can act upon anomalies as configured by the system administrator. In addition, devialog can function as a traditional syslog parsing utility in which known signatures trigger actions.
Author:Jeff Yestrumskas
Homepage:http://devialog.sourceforge.net/
Changes:See changelog.
File Size:22517
Last Modified:Jun 18 14:24:28 2005
MD5 Checksum:695fe211a3cc46e3cfddc0db6d6fc029

 ///  File Name: tenshi-0.3.4.tar.gz
Description:
Tenshi is a log monitoring program, designed to watch a log file for lines matching user defined regular expression and report on the matches. The regular expressions are assigned to queues which have an alert interval and a list of mail recipients. Queues can be set to send a notification as soon as there is a log line assigned to it, or to send periodic reports.
Author:Andrea Barisani
Homepage:http://dev.inversepath.com/trac/tenshi
Changes:Added include, includedir options for parsing external configuration files, added multiple queues feature, fixed missing USR1 signal handler, added filetest pragma for proper perms check when using POSIX ACL, added a Debian init file.
File Size:22737
Last Modified:Jun 17 04:50:43 2005
MD5 Checksum:f3e875540833a85c43052d96c5698463

 ///  File Name: os-sim-0.9.8.tar.gz
Description:
Os-sim attempts to unify network monitoring, security, correlation, and qualification in one single tool. It combines Snort, Acid, MRTG, NTOP, OpenNMS, nmap, nessus, and rrdtool to provide the user with full control over every aspect of networking or security. Supported platform is Linux.
Author:Dominique Karg,David Gil,Fabio Ospitia Trujillo,Julio Casal,Jesus D. Munoz
Homepage:http://sourceforge.net/projects/os-sim/
Changes:Various bug fixes and feature enhancements.
File Size:3384891
Last Modified:Jun 1 03:36:19 2005
MD5 Checksum:bf666cb502d46697e80a9cf786b4e964

 ///  File Name: devialog-0.8.4.tgz
Description:
devialog is a behavior/anomaly/signature-based syslog intrusion detection system which can detect new, unknown attacks. It fits comfortably in a heterogeneous Unix/Linux/BSD environment at the core of a central syslog server. devialog can generate its own signatures and can act upon anomalies as configured by the system administrator. In addition, devialog can function as a traditional syslog parsing utility in which known signatures trigger actions.
Author:Jeff Yestrumskas
Homepage:http://devialog.sourceforge.net/
Changes:Enabled mail queueing, added suggested signature logfile.
File Size:21658
Last Modified:Apr 18 03:06:44 2005
MD5 Checksum:3e631fddf0ff65b835412cf317d3accc

 ///  File Name: os-sim-0.9.8rc2.tgz
Description:
Os-sim attempts to unify network monitoring, security, correlation, and qualification in one single tool. It combines Snort, Acid, MRTG, NTOP, OpenNMS, nmap, nessus, and rrdtool to provide the user with full control over every aspect of networking or security. Supported platform is Linux.
Author:Dominique Karg,David Gil,Fabio Ospitia Trujillo,Julio Casal,Jesus D. Munoz
Homepage:http://sourceforge.net/projects/os-sim/
Changes:Various bug fixes and feature enhancements.
File Size:3263967
Last Modified:Mar 22 01:22:37 2005
MD5 Checksum:9897f1ef71fd233b25be47393d31a315

 ///  File Name: tenshi-0.3.3.tar.gz
Description:
Tenshi is a log monitoring program, designed to watch a log file for lines matching user defined regular expression and report on the matches. The regular expressions are assigned to queues which have an alert interval and a list of mail recipients. Queues can be set to send a notification as soon as there is a log line assigned to it, or to send periodic reports.
Author:Andrea Barisani
Homepage:http://dev.inversepath.com/trac/tenshi
Changes:Fixed whitespaces only lines handling in configuration file, added configuration check mode and checkconfig target in init scripts.
File Size:21778
Last Modified:Mar 22 01:15:02 2005
MD5 Checksum:ed14e115ca19b5d1e548ef03a546362e

 ///  File Name: devialog-0.8.3.tgz
Description:
devialog is a behavior/anomaly/signature-based syslog intrusion detection system which can detect new, unknown attacks. It fits comfortably in a heterogeneous Unix/Linux/BSD environment at the core of a central syslog server. devialog can generate its own signatures and can act upon anomalies as configured by the system administrator. In addition, devialog can function as a traditional syslog parsing utility in which known signatures trigger actions.
Author:Jeff Yestrumskas
Homepage:http://devialog.sourceforge.net/
File Size:20165
Last Modified:Mar 1 23:01:00 2005
MD5 Checksum:970e953fbfb3c17d85ec27950e5a6553

 ///  File Name: iotrace-1.3.tgz
Description:
iotrace is a userspace read()/write() logger daemon for Linux, OSF1, OpenBSD, and FreeBSD. It works with su, ssh, ftp, telnet, rsh, scp, rlogin, rexec, passwd, adduser, mysql, gpg and uses strace.
Author:Michele Dallachiesa
Homepage:http://www.acidlife.com/~xenion/
File Size:17718
Last Modified:Jan 2 13:43:42 2005
MD5 Checksum:f50816667442879e383eeb1bcbd5e208

 ///  File Name: tenshi-0.3.2.tar.gz
Description:
Tenshi is a log monitoring program, designed to watch a log file for lines matching user defined regular expression and report on the matches. The regular expressions are assigned to queues which have an alert interval and a list of mail recipients. Queues can be set to send a notification as soon as there is a log line assigned to it, or to send periodic reports.
Author:Andrea Barisani
Homepage:http://dev.inversepath.com/trac/tenshi
Changes:Added X-tenshi-version, X-tenshi-hostname, X-tenshi-report-start headers, various bug fixes and enhancements.
File Size:21785
Last Modified:Nov 12 19:16:14 2004
MD5 Checksum:8a7e47105e1936f18ba7bca21f711b72

 ///  File Name: LogrepSource-1.4.5.tar.gz
Description:
Logrep is a secure multi-platform tool for the collection, extraction, and presentation of information from various log files. It includes HTML reports, multi-dimensional analysis, overview pages, SSH communication, and graphs. Supports 18 popular systems including Snort, Squid, Postfix, Apache, Sendmail, syslog, iptables/ipchains, xferlog, NT event logs, Firewall-1, wtmp, Oracle listener, and Cisco Pix.
Author:Tevfik Karagulle
Homepage:http://logrep.sourceforge.net
Changes:Now supports Watchguard firewall, WinInstall software distribution, Cisco VPN Concentrator, Microsoft SUS and Snort syslogs. Bugfixes and updated binaries.
File Size:283452
Last Modified:Nov 10 20:46:28 2004
MD5 Checksum:cb6b48d81f88a2055ee5bf802fb652f1

 ///  File Name: os-sim-0.9.7.tar.gz
Description:
Os-sim attempts to unify network monitoring, security, correlation, and qualification in one single tool. It combines Snort, Acid, MRTG, NTOP, OpenNMS, nmap, nessus, and rrdtool to provide the user with full control over every aspect of networking or security. Supported platform is Linux.
Author:Dominique Karg,David Gil,Fabio Ospitia Trujillo,Julio Casal,Jesus D. Munoz
Homepage:http://sourceforge.net/projects/os-sim/
Changes:Various bug fixes and feature enhancements.
File Size:3053163
Last Modified:Oct 28 11:04:10 2004
MD5 Checksum:6db9d84c49699f9213bcacc5c5841c94

 ///  File Name: uml.c
Description:
UmL - Userspace Logger. This is functioning code based on the the example given in the article in Phrack 51 entitled "Shared Library Redirection". The following functions are logged: read()/recv() output and intercepts open(), open64(), close(), socket(), connect(), exit(). This is an effective keystroke logger, among other things, despite that the author says it is only at the Proof-of-Concept phase. License: GPL2. Version 0.0.2 testing.
Author:embyte
Homepage:http://www.spine-group.org/sources/uml.c
File Size:8425
Last Modified:Oct 24 17:02:54 2004
MD5 Checksum:4d0daaf5175ae1178b6aaaccc1616df1

 ///  File Name: os-sim-0.9.7rc1.tar.gz
Description:
Os-sim attempts to unify network monitoring, security, correlation, and qualification in one single tool. It combines Snort, Acid, MRTG, NTOP, OpenNMS, nmap, nessus, and rrdtool to provide the user with full control over every aspect of networking or security. Supported platform is Linux.
Author:Dominique Karg,David Gil,Fabio Ospitia Trujillo,Julio Casal,Jesus D. Munoz
Homepage:http://sourceforge.net/projects/os-sim/
Changes:Various bug fixes.
File Size:1224704
Last Modified:Sep 29 03:04:10 2004
MD5 Checksum:0f3ee2e02fc74f19b4acf2608a3a485a