Wireshark-users: [Wireshark-users] [offtopic] spyware

From: Boaz Galil <boaz20@xxxxxxxxx>
Date: Fri, 12 Feb 2010 14:24:19 +0200

Hi experts

I have seen this question on other forum and I was wonder what do you have to say about it.

Does most spyware (built to transfer data from computer A to some other location) use TCP or UDP and why?   My opinion without knowing the real statistics is that most spyware are probably using UDP due to the nature of the connectionless of this protocol.

Any ideas?

Thanks in advance,



--
Boaz.