Section: .. / UNIX / IDS /
| /// File Name: |
claymore.tar.gz |
Description:
|
Claymore v0.3 is an intrusion detection and integrity monitoring system. To accomplish its task, it runs from cron and reads in a list of files stored in flat ASCII, and uses md5sum to check their integrity against that recorded earlier in a database. If the database is placed on a read-only medium such as a write-protected floppy, then it should provide an infallible record against remotely installed trojan horses.
| | Author: | Sam Carter | | Homepage: | http://linux.rice.edu/magic/claymore/ | | Changes: | This release adds ownership / permission tracking and switches to the Digest::MD5 instead of md5sum. | | File Size: | 6239 | | Last Modified: | Oct 3 17:38:28 2000 |
| MD5 Checksum: | 1288658c2152454fa372ceffd319d9fe |
|
| /// File Name: |
clobberd-4.3-1.tar.bz2 |
Description:
|
User/Resource Monitor. Used to keep tabs on users.
| | Author: | Jason Nunn | | File Size: | 36426 | | Last Modified: | Aug 16 20:02:34 1999 |
| MD5 Checksum: | 042a2b284c49537a75b6fa2d1d7e32a0 |
|
| /// File Name: |
clownids.tgz |
Description:
|
ClownIDS v1.0 verifies the md5 checksums of files and mails the admin and runs scripts when a problem is found.
| | Author: | Mimayin | | Homepage: | http://lsa.mine.nu | | File Size: | 5189 | | Last Modified: | Jul 5 20:30:27 2002 |
| MD5 Checksum: | 866ca32bbd6963b29101fa3e3a2a7889 |
|
| /// File Name: |
coderedwarn0.0b.tar.gz |
Description:
|
Code Red Warn is a perl script which runs as a daemon and watches apache logs to notify you each time you are scanned with code red.
| | Author: | Jonathan Hayward | | Homepage: | http://JonathansCorner.com | | File Size: | 4896 | | Last Modified: | Aug 11 05:33:21 2001 |
| MD5 Checksum: | 3a2b8840b784ba2af90b3188be12c8e2 |
|
| /// File Name: |
coderedwarn0_0b2.tar.gz |
Description:
|
Code Red Warn is a perl script which runs as a daemon and watches apache logs to notify you each time you are scanned with code red.
| | Author: | Jonathan Hayward | | Homepage: | http://JonathansCorner.com | | Changes: | The recipient list has been adjusted to be more SMTP-compliant. A suggested way to run without keeping bounce messages in queue has been provided. SMTP connections are tested on the remote host before sending, and the 404 on home page download has been fixed. | | File Size: | 5185 | | Last Modified: | Aug 11 17:09:52 2001 |
| MD5 Checksum: | 6fe77e9e6963429809eeb9bc90c79f54 |
|
| /// File Name: |
covert-tcp-channels.zip |
Description:
|
Unavailable.
| | File Size: | 25179 | | Last Modified: | Aug 16 20:02:15 1999 |
| MD5 Checksum: | a3af54ba614e8cb5743f3850ef482124 |
|
| /// Directory: |
/ cpm / |
Description:
|
Tool for checking network nterfaces in promisc mode.
| | Total Files: | 8 | | Last Modified: | Sep 5 21:20:48 2007 |
|
| /// File Name: |
ctm-1.0.tar.gz |
Description:
|
CTM 1.0 is your basic SNMP Traffic Monitor.
| | Author: | CTM web site | | File Size: | 28903 | | Last Modified: | Aug 16 20:02:46 1999 |
| MD5 Checksum: | 1ca5b5279411facaddef1fd5d002fdfe |
|
| /// File Name: |
ctm-1.1.tar.gz |
Description:
|
CTM 1.1 is your basic SNMP Traffic Monitor.
| | Author: | CTM web site | | File Size: | 29164 | | Last Modified: | Aug 16 20:02:46 1999 |
| MD5 Checksum: | 8904a579f247d4ee16a172c387e7d2c6 |
|
| /// File Name: |
ctm-1.2.tar.gz |
Description:
|
ctm 1.2 - CTM is an SNMP interface statistics gatherer which works as a daemon and polls SNMP capable routers in regular intervals and puts the gathered information into a database. Information gathered includes operational status of the interface, octets and packets sent and received, line errors, and queue discards, but CTM can easily be changed to log any interface specific SNMP variable. CTM comes with an example report script which gives traffic and line error summaries for certain periods of time.
| | Author: | Lars Fenneberg | | Changes: | Version 1.2 corrects delta counters accordingly when the router is rebooted. | | File Size: | 29374 | | Last Modified: | Aug 16 20:02:47 1999 |
| MD5 Checksum: | 31d9138ff9dc261b78c50092649863e1 |
|
| /// File Name: |
darc-0.2.tgz |
Description:
|
Darc is a utility for managing large Aide installations in heterogeneous environments. It eliminates the need to maintain read-only media on every system, and provides unified reporting on filesystem changes across all machines.
| | Author: | Jacob Martinson | | Homepage: | http://www.info234.com/~jmartinson/darc.html | | File Size: | 13830 | | Last Modified: | Aug 14 18:21:46 2005 |
| MD5 Checksum: | d889f51c71280ea7a1829799379e58c9 |
|
| /// File Name: |
darc-0.3.42.tgz |
Description:
|
Darc is a utility for managing large Aide installations in heterogeneous environments. It eliminates the need to maintain read-only media on every system, and provides unified reporting on filesystem changes across all machines.
| | Author: | Jacob Martinson | | Homepage: | http://icculus.org/projects/darc/ | | File Size: | 11273 | | Last Modified: | Apr 25 18:30:27 2006 |
| MD5 Checksum: | 6f2b6fe69bb39970a14925a415612724 |
|
| /// File Name: |
darc-0.3.47.tgz |
Description:
|
Darc is a utility for managing large Aide installations in heterogeneous environments. It eliminates the need to maintain read-only media on every system, and provides unified reporting on filesystem changes across all machines.
| | Author: | Jacob Martinson | | Homepage: | http://icculus.org/projects/darc/ | | File Size: | 11683 | | Last Modified: | Apr 29 06:11:10 2006 |
| MD5 Checksum: | 64d89f53bfc800b92b3b8fea9903b4d5 |
|
| /// File Name: |
decfingerd-0.6.tar.gz |
Description:
|
dfingerd v0.6 takes the place of your original finger service, providing totally false information to clients. This can be useful to catch people trying to crack your server, or to just really confuse them. You can define output for individual users, empty requests, and forward requests to another system.
| | Author: | Jon Beaton | | File Size: | 3164 | | Last Modified: | Aug 16 20:02:47 1999 |
| MD5 Checksum: | def43c1a780975756a13905667886685 |
|
| /// File Name: |
decfingerd-0.7.tar.gz |
Description:
|
decfingerd 0.7: The Deception Finger Daemon. This program will take place of the original finger service, providing totally false information to clients. This can be useful to catch people trying to crack your server, or to just really confuse them. You can define output for individual users, empty requests, and forward requests to another system. Tested on: Linux 2.2.7 -- GCC 2.7.2.3, Solaris 2.7 -- EGCS 1.1.1, OpenBSD 2.5 -- GCC 2.8.1.
| | Author: | Jon Beaton | | File Size: | 3665 | | Last Modified: | Oct 4 15:53:28 1999 |
| MD5 Checksum: | e23d3683edd18ead71ac04d9708aa0d6 |
|
| /// File Name: |
demarc-1.05-stable.tar.gz |
Description:
|
Unavailable.
| | File Size: | 199214 | | Last Modified: | Nov 12 21:16:23 2001 |
| MD5 Checksum: | c7e9585b1c50df16c7c97566dffbc9e6 |
|
| /// File Name: |
detect-satan.pl |
Description:
|
detect-satan.pl
| | File Size: | 6541 | | Last Modified: | Aug 16 20:02:15 1999 |
| MD5 Checksum: | f7a7467e452cef02bbf5a2ad6a041655 |
|
| /// File Name: |
detect-satan.tar |
Description:
|
Unavailable.
| | File Size: | 10240 | | Last Modified: | Aug 16 20:02:16 1999 |
| MD5 Checksum: | bef823cc3f22aa411694cb5d7f0327e7 |
|
| /// File Name: |
detect-scans-060.tar.gz |
Description:
|
This logs and notifies you of portscans run against your host. Some kinds of D.o.S attacks might also get logged.
| | File Size: | 7310 | | Last Modified: | Aug 16 20:02:25 1999 |
| MD5 Checksum: | d28524ca853ef0809de3ba50e212b7bf |
|
| /// File Name: |
dirwatch101.c |
Description:
|
dirwatch101 monitors a directory and all the files in it for any changes, any files that have new data added to them, that data logged to a file.
| | Author: | ajax | | File Size: | 5072 | | Last Modified: | Aug 16 20:02:38 1999 |
| MD5 Checksum: | 169413ea791c3b169daba6b03e99bcea |
|
| /// File Name: |
distack-1.1.0-dev.tar.gz |
Description:
|
Distack is a framework for local and distributed attack detection and traffic analysis. It can run on live interfaces or traces files, as well as in simulation environments. Therefore it provides easy ways to develop attack detection mechanisms and evaluate them on a large-scale in simulated networks.
| | Homepage: | http://www.tm.uka.de/distack | | File Size: | 114712 | | Last Modified: | Sep 3 17:27:17 2008 |
| MD5 Checksum: | 3fb4c5502309f3badd504a961d5c19db |
|
| /// File Name: |
drawbridge-2.0.1.tar.gz |
Description:
|
Packet filter that allows you to control IP packets going to and from your LAN and the Internet.
| | File Size: | 429364 | | Last Modified: | Aug 16 20:03:15 1999 |
| MD5 Checksum: | 575fa565254832e202340636c7d72b1f |
|
| /// File Name: |
dtk-0.6.tar |
Description:
|
Deception Toolkit v0.6 - Tools and tactics based on deception to counter hacking/cracking attacks. DTK Version 0.6 adds the 'slowly' pragma to 'orders'. V0.6 also adds logging of accesses by IP address and retrieval of roll-up information from these log files via the deception port in a manner similar to that of InfoCon information. V0.6 also adds time-based passwords (also can be used in a use-based mode if desired) and the utility program tbp.pl. TBP allows remote systems to authenticate themselves automatically over time without reuse of the same old passwords. Too many more features to list in this major release. 400k.
| | Author: | Fred Cohen and Associates | | File Size: | 399360 | | Last Modified: | Aug 16 20:02:27 1999 |
| MD5 Checksum: | ae64a9f31e388ac3410ed79ad3f8a1e4 |
|
| /// File Name: |
dtk-0.7.tar |
Description:
|
Deception Toolkit v0.7 - Tools and tactics based on deception to counter hacking/cracking attacks. Excellent collection of security-related perl scripts; if you're going to lose sleep worrying about the hackers and crackers, then at least have some fun with them too. DTK Version 0.7 adds improved deceptions for http attacks (port 80) including a nicer .phf form. UDP deception states added to all scripts also.
| | Author: | Fred Cohen and Associates | | File Size: | 481280 | | Last Modified: | Aug 16 20:02:29 1999 |
| MD5 Checksum: | 5bb93082285a759055be9dc25b2aac02 |
|
| /// File Name: |
dtk-0.8.tar |
Description:
|
Deception Toolkit v0.8 - Too many new improvements and code optimizations in this release to list. Just get it.
| | File Size: | 860160 | | Last Modified: | Aug 16 20:02:33 1999 |
| MD5 Checksum: | 9f25ae3c734677990ea21754354541c5 |
|
|
|
|
|