[Snort-users] Worm detection in LAN

Balasubramaniam Natarajan bala150985 at ...11827...
Tue Dec 11 11:33:05 EST 2012


On Tue, Dec 11, 2012 at 5:43 AM, reshma purushothaman <
reshmapurushothaman at ...11827...> wrote:

> hai...
>     Thankx  for your responds..
>  we only need the IP address of the client who send worm affected packet,
> also want to get the file name of th rejected packet with confirmation,
> from the snort tool. we don't want all the details regarding  data
> transmission in LAN with and without affected packets..
>

Ok Do you have a sample PCAP ?

-- 
Regards,
Balasubramaniam Natarajan
www.blog.etutorshop.com
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.snort.org/pipermail/snort-users/attachments/20121211/565b299c/attachment.html>


More information about the Snort-users mailing list