Snort mailing list archives

Re: spyware


From: Joe Giles <jgiles () joeman1 com>
Date: Fri, 14 Jan 2005 18:10:33 +0000

Miner, Jonathan W (CSC) (US SSA) wrote:

Yes, I've found that the bleedingsnort.com rules have been very effective at detecting spyware.

-----Original Message-----
From: spiv007 [mailto:spiv007 () gmail com] Sent: Tuesday, January 11, 2005 1:54 PM
To: Snort-users () lists sourceforge net
Subject: [Snort-users] spyware

Can  I use snort to dectect spyware, viruses, and spam on my network?




-------------------------------------------------------
The SF.Net email is sponsored by: Beat the post-holiday blues
Get a FREE limited edition SourceForge.net t-shirt from ThinkGeek.
It's fun and FREE -- well, almost....http://www.thinkgeek.com/sfshirt
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=ort-users
Isn't there a Snort app that will work with your firewal (iptables) that will detect a problem and drop the packet before it gets to your machine? I seem to remember seeing something like that once. This would be great for spyware, malware, and viruses; among other intrusions.

Joe


-------------------------------------------------------
The SF.Net email is sponsored by: Beat the post-holiday blues
Get a FREE limited edition SourceForge.net t-shirt from ThinkGeek.
It's fun and FREE -- well, almost....http://www.thinkgeek.com/sfshirt
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: