[Tfug] Security-related question

Andrew Ayre andy at britishideas.com
Tue Feb 22 09:26:26 MST 2011


I interpreted Earl's suggestion as to capture all the traffic with XP 
uninfected then do the same with XP infected and compare the two. Not 
only will that allow you to identify the traffic from the virus, but it 
proves it is from the virus.

Andy

Jim March wrote:
> Well yeah, but...hmmm...right now I'm trying to nail down all network 
> traffic from the Ubuntu side.  How do I figure out which process is 
> talking to the 'net and kill it?
> 
> Jim
> 
> On Tue, Feb 22, 2011 at 9:15 AM, <earljviolet at deserthowler.com 
> <mailto:earljviolet at deserthowler.com>> wrote:
> 
>     Jim,
> 
>     Can you drop back to the uninfected version of XP and see what
>     happens there?




More information about the tfug mailing list