05-15-2002 05:20 AM - edited 03-08-2019 10:38 PM
I'd like my Cisco IDS to alarm on traffic from any of these spyware products:
http://www.spy-software-online.com/index.html
Can Cisco IDS do this?
I consider them trojans and espionage aids. I've contacted Symantec. They won't consider them virus trojans. I'm finding it difficult to ascertain how these 'trojans' communicate back to the master. If I knew more port info, I could block at fw also.
05-15-2002 02:13 PM
We will add put this to our list of potential signatures. If you have a specific example of a signature that you need, please let us know, and we'll try to look into it more expidiously.
05-22-2002 09:18 AM
How can you have a signature that can capture this sort of spyware? As I understand it this sort of application is strickly host based and does not traverse the network.
06-06-2002 02:27 PM
Here are two lists that are very complete:
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide