.:[ packet storm ]:.
                             
the last unbiased stronghold
the last unbiased stronghold

 Section:  .. / UNIX / scan_detect  /

Page 1 of 2
<< 1 2 >> Files 1 - 25 of 42
Currently sorted by: Last ModifiedSort By: File Name, File Size

 ///  File Name: scanlogd-2.2.6.tar.gz
Description:
Scanlogd is a TCP port scan detection tool originally designed to illustrate various attacks an IDS developer has to deal with, for a Phrack Magazine article. It is designed to be safe to use, and will recognize all of the latest nmap scans. HTML man page available here.
Author:Solar Designer
Homepage:http://www.openwall.com
Changes:Check changelog.
File Size:10975
Last Modified:Mar 15 05:55:02 2006
MD5 Checksum:7b8187ea718ebe47f22805b921b909ab

 ///  File Name: scanlogd-2.2.5.tar.gz
Description:
Scanlogd is a TCP port scan detection tool originally designed to illustrate various attacks an IDS developer has to deal with, for a Phrack Magazine article. It is designed to be safe to use, and will recognize all of the latest nmap scans. HTML man page available here.
Author:Solar Designer
Homepage:http://www.openwall.com
Changes:Tuned code.
File Size:10809
Last Modified:Jul 5 12:10:00 2004
MD5 Checksum:6b53ad390a51f0835e66b1efa84d710a

 ///  File Name: scanlogd-2.2.4.tar.gz
Description:
Scanlogd is a TCP port scan detection tool originally designed to illustrate various attacks an IDS developer has to deal with, for a Phrack Magazine article. It is designed to be safe to use, and will recognize all of the latest nmap scans. HTML man page available here.
Author:Solar Designer
Homepage:http://www.openwall.com
File Size:10769
Last Modified:Jun 3 19:47:58 2004
MD5 Checksum:69b8e9051f5119439bfdddc13abd8315

 ///  File Name: scanlogd-2.2.tar.gz
Description:
Scanlogd v2.1 is a TCP port scan detection tool for linux, originally designed to illustrate various attacks an IDS developer has to deal with, for a Phrack Magazine article. It is designed to be safe to use, and will recognize all of the latest nmap scans. HTML man page available here.
Author:Solar Designer
Homepage:http://www.openwall.com
Changes:Support for Libnids 1.14, bug fixes.
File Size:9029
Last Modified:Nov 13 09:05:04 2000
MD5 Checksum:bb4586e116c579dbdd359da9c6560556

 ///  File Name: scanlogd-2.1.tar.gz
Description:
Scanlogd v2.1 is a TCP port scan detection tool for linux, originally designed to illustrate various attacks an IDS developer has to deal with, for a Phrack Magazine article. It is designed to be totally safe to use, and will recognize all of the latest nmap scans. HTML man page available here.
Author:Solar Designer
Homepage:http://www.openwall.com/scanlogd/
File Size:8789
Last Modified:Apr 25 22:51:47 2000
MD5 Checksum:63ffab643c61f932faabed8c6aa2b68e

 ///  File Name: scandetd-1.1.3.tar.gz
Description:
Watches for TCP connection, records state for the past 1 second - if multiple connections occur from the same host, an internal counter is increased for that IP. If the counter reaches some value (which can be changed in #define) scandetd will send email to administrator. Information sent includes time, ip address, number of connections made, first and last connection times, and guessed type of scan (syn/fin). Logs to syslog by default. Configurable to allow trusted addresses. Tested under linux - possibly sunos and freebsd.
File Size:11776
Last Modified:Dec 16 22:42:23 1999
MD5 Checksum:49e46dec1be32115ddc605960a380dbf

 ///  File Name: klaxon12.tar.gz
Description:
Modified rexec source - captures ident information upon being portscanned. Does not actually emulate services other than listening at certain tcp ports. This is reported to work under Solarix 2.x and possibly linux. Now modified to provide limited counterintelligence (ident query back to source).
Homepage:http://www.eng.auburn.edu/users/doug/second.html
File Size:10397
Last Modified:Dec 12 23:30:35 1999
MD5 Checksum:dd6eab901fadb0f386c97e3be850a33c

 ///  File Name: tcplogd.0.0.tar.gz
Description:
tcplogd v0.0 is a stealth-scan detector (TCP only). Configurable. 15k.
Author:CyberPsychotic, K.A.L.U.G..
File Size:14852
Last Modified:Aug 17 02:06:07 1999
MD5 Checksum:4aa8e83e36457d4800eb2bd71e7286fa

 ///  File Name: tcplogd-patch-0.1.4a
Description:
Patch for tcplogd-0.1.4a.tar.gz
File Size:435
Last Modified:Aug 17 02:06:07 1999
MD5 Checksum:4ec703ec2f7c94782071040ccea9b171

 ///  File Name: tcplogd-0.1.tar.gz
Description:
tcplogd v0.1 is a stealth-scan detecting daemon that is designed to detect most nmap sX/sN/sS scans, queso and other network scanners.
Author:CyberPsychotic, K.A.L.U.G..
File Size:14452
Last Modified:Aug 17 02:06:07 1999
MD5 Checksum:2789fdec90c42eaaeb46b976d28d80e9

 ///  File Name: tcplogd-0.1.5pre1.tar.gz
Description:
tcplogd v0.1.5pre1 is a stealth-scan detecting daemon that is designed to detect most nmap sX/sN/sS scans, queso and other network scanners. "trusted hosts" feature added in this release.
Author:CyberPsychotic, Kyrgyzstani Anarchy Linux Users Group.
File Size:42361
Last Modified:Aug 17 02:06:07 1999
MD5 Checksum:e21ce321839a92c555a43f0e96e103a1

 ///  File Name: tcplogd-0.1.4b.tar.gz
Description:
See description above.
File Size:40845
Last Modified:Aug 17 02:06:07 1999
MD5 Checksum:bdc1c88c5d082d561cf1f457750ced90

 ///  File Name: tcplogd-0.1.4a.tar.gz
Description:
See description above.
File Size:41165
Last Modified:Aug 17 02:06:07 1999
MD5 Checksum:1260c11424dfbae48f54794098c66cc7

 ///  File Name: tcplogd-0.1.4.tar.gz
Description:
tcplogd v0.1.4 is a stealth-scan detecting daemon that is designed to detect most nmap sX/sN/sS scans, queso and other network scanners. This release includes fixes for the port range bugs.
Author:CyberPsychotic, Kyrgyzstani Anarchy Linux Users Group.
File Size:39661
Last Modified:Aug 17 02:06:07 1999
MD5 Checksum:24e3d3179645e3d05f0432435bcff939

 ///  File Name: tcplogd-0.1.3.tar.gz
Description:
See description above.
File Size:39622
Last Modified:Aug 17 02:06:07 1999
MD5 Checksum:07070bb2a2c8cace49a450bcaddae3f1

 ///  File Name: tcplogd-0.1.2.tar.gz
Description:
See description above.
File Size:6655
Last Modified:Aug 17 02:06:07 1999
MD5 Checksum:696d26b61c7ef65d41130da7b3f3795c

 ///  File Name: tcplogd-0.1.1.tar.gz
Description:
See description above.
File Size:6513
Last Modified:Aug 17 02:06:07 1999
MD5 Checksum:baf8a0fa54e27de371f53dfec78ee7b2

 ///  File Name: scanlogd.c.gz
Description:
scanlogd v1.1 - Linux scanlogd port scan detector.
Author:Solar Designer.
File Size:3754
Last Modified:Aug 17 02:06:07 1999
MD5 Checksum:af22383446f9f40cc6d2957a4014899d

 ///  File Name: scanlogd-v1.3.c.gz
Description:
Linux scanlogd v1.3 is a port scan detector daemon for Linux that is designed to recognize all of the latest nmap scans.
Author:Solar Designer.
File Size:3876
Last Modified:Aug 17 02:06:07 1999
MD5 Checksum:8f11895bb7b2c9f0e107a39363f22013

 ///  File Name: scanlogd-v1.2.c.gz
Description:
Linux scanlogd v1.2 - Linux scanlogd port scan detector. Use to detect many of the latest nmap scans.
Author:Solar Designer.
File Size:3861
Last Modified:Aug 17 02:06:07 1999
MD5 Checksum:8ee915390d9d79e04002389634d3dc24

 ///  File Name: scandetect1.1.pl.txt
Description:
Latest release of J-Dog's portscan detector, now with the following features: uses nmap, queso, and nmbnamex to resolve remote "attacking/scanning" IP to a hostname, perform a tcp connect() scan on the remote host, grab the NetBIOS name of the scanner, and then use Queso to determine the OS of the remote host.
Author:J-Dog.
File Size:5598
Last Modified:Aug 17 02:06:07 1999
MD5 Checksum:5fee9b4630ce5115eee8c0e82f286409

 ///  File Name: scandetect.pl.txt
Description:
Basic, but effective perl-based portscan detector.
Author:J-Dog.
File Size:3450
Last Modified:Aug 17 02:06:07 1999
MD5 Checksum:363cef4ee97ec41ad8cac88f27843f7f

 ///  File Name: scandetd.c
Description:
Scandetd is a port scan detection daemon that waits for incoming tcp connections and tries to recognize port scans. If tripped, scandetd sends email to root[at]127.0.0.1 with the time, attacking host, number of connections made, port of the first and last connections. Easy on system resources; for Linux; initial release. 6k.
Author:Michal Suszycki.
File Size:7342
Last Modified:Aug 17 02:06:07 1999
MD5 Checksum:2544ba52168d810e58c9b0b5dded8081

 ///  File Name: rwxbo.c
Description:
RWX Back Orifice Sweep Scanner - RWXBO is a simple program that will log attempts to scan your ip range, and logs some commands that the attacker might type.
Author:KByte, of RwX Net Security.
File Size:2635
Last Modified:Aug 17 02:06:07 1999
MD5 Checksum:88d5fe7bb1063a45a2ca784185d39328

 ///  File Name: portwatch.zip
Description:
Portwatch - acts a server, just sits on a port and waits for connections.
File Size:23586
Last Modified:Aug 17 02:06:07 1999
MD5 Checksum:53c07cd3f96deb78c5021419467dc330