Ethereal-users: Re: [Ethereal-users] Sniffing for Viruses

Note: This archive is from the project's previous web site, ethereal.com. This list is no longer active.

From: "jon baer" <ethereal@xxxxxxxxxxx>
Date: Tue, 4 Nov 2003 04:38:39 -0500
Not really because you will need to learn how to write signatures anyway
(Snort comes with them) so if you download the app from winsnort.com and run
it out of the box you will be able to do detection, the only thing you need
is WinPCap but if Ethereal on Windows runs ok, you probably already have it.

The only other tools would be Windump or NGrep with a filter.

- jon

----- Original Message -----
From: "Nick Marques" <muzicman9382@xxxxxxxxxxx>
To: <ethereal-users@xxxxxxxxxxxx>
Sent: Tuesday, November 04, 2003 10:35 AM
Subject: RE: [Ethereal-users] Sniffing for Viruses


> Are there programs LIKE Snort that can act as simple stand alone
product...
> a GUI would be wonderfull.. .it could be just that I am unfamiliar with
> Snort, but I checked out the site... I'm running Windows XP as a client on
> the LAN.
>
> _______________________________________________
> Ethereal-users mailing list
> Ethereal-users@xxxxxxxxxxxx
> http://www.ethereal.com/mailman/listinfo/ethereal-users
>