OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Ng, Kenneth (US) (kenngKPMG.COM)
Date: Thu Apr 12 2001 - 17:20:48 CDT

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    www.ethereal.com, an open source packet sniffer that works in multiple
    environments (Solaris, Linux, and even Windows) and can open most types of
    tracer files. Note: Black Ice 2.5 is almost useless because in the evidence
    log it logs the response packet instead of the triggering packet. So I can
    see that someone probed one of my tcp ports, but Black Ice doesn't record
    which one!

    -----Original Message-----
    From: Kristofer Magstadt [mailto:MagstadtMCN.NET]
    Sent: Wednesday, April 11, 2001 6:42 PM
    To: FOCUS-MSSECURITYFOCUS.COM
    Subject: .enc files

    ok i was attacked both with trojan's and dos'ed for 5 hours lastnight and
    one of my firewalls that i use well 1 of the 3 blackice puts all its logs in
    .enc format could someone tell me how or where to get a program to open that
    file with

    thanks
    kris
    *****************************************************************************
    The information in this email is confidential and may be legally privileged.
    It is intended solely for the addressee. Access to this email by anyone else
    is unauthorized.

    If you are not the intended recipient, any disclosure, copying, distribution
    or any action taken or omitted to be taken in reliance on it, is prohibited
    and may be unlawful. When addressed to our clients any opinions or advice
    contained in this email are subject to the terms and conditions expressed in
    the governing KPMG client engagement letter.
    *****************************************************************************