Use Rpcdump for Intrusion detection
"lee forrest" <[email protected]>
| Newsgroups | gmane.comp.security.intrusions |
|---|---|
| Message-ID | <[email protected]> |
Just a reminder. Netstat -ao shows which PID's are opening ports on your machine however if you really want to check the rpc end point mapper database , use RPCDUMP.EXE. So you can quickly check which servers are registered on your machine or a target machine and which interfaces. _________________________________________________________________ Express yourself with cool new emoticons http://www.msn.co.uk/specials/myemo _______________________________________________ Intrusions mailing list [email protected] http://www.dshield.org/mailman/listinfo/intrusions