[Snort-users] Odd packets... maybe a new Trojan?

Dan Hollis goemon at ...20...
Wed Oct 25 22:23:23 EDT 2000

On Wed, 25 Oct 2000, Joe McAlerney wrote:
> This seemed to be a good explanation:
> http://www.securityfocus.com/templates/archive.pike?list=1&mid=77042
> If anyone finds anything else, please let me know - be it on or off the
> list.

Anyone have honeypot/trojan daemons we can throw up easily on rpc.statd
and 9704/tcp in order to catch these lamers?


More information about the Snort-users mailing list