>So I think what's needed is probably something along the lines of an
>host-based IDS, AV, or network scanner which captures an image of a clean
>system's network port profile, ie. which ports it listens to. I know I do
>this on a regular basis by just issuing a "netstat -an | grep LISTENING"
>(sorry for mixing a unix tool with an NT example, but you get my drift).

It also can be used over ICMP, which will not show up in such a list.

                              Ryan






-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]

Reply via email to