So for no problem, but how we tell Declude or DecludeProc that he should
connect to the service instead of executing the exe?

Markus
 

> -----Original Message-----
> From: [EMAIL PROTECTED] 
> [mailto:[EMAIL PROTECTED] On Behalf Of 
> Panda Consulting S.A. Luis Alberto Arango
> Sent: Wednesday, January 18, 2006 1:15 PM
> To: Declude.JunkMail@declude.com
> Subject: [Declude.JunkMail] Sniffer in Persistent Mode using 
> Windows Resource Kit Tools
> 
> Here is another method to install sniffer in persistent mode.
>  
> I just want to share it with you and others out there. I hope 
> it is useful.
> I am not sure if there is information about how to install 
> persistent mode using the windows resource kit tools in this 
> list. So I decided to post it just in case.
> 
> I have tested for a week and it works fine for me under Windows 2003
>  
> I switched to it, since RunSvcExe started to show some errors 
> in my event viewer
>  
>  
> ==Sniffer in Persistent Mode Using Windows Resource Kit Tools==
> 
> 1. Create a directory in C: called for example reskit c:\reskit
>  
> 2. Place the following windows NT/2000/2003 windows resource 
> kit files (they are free). Download the kit from 
> microsoft.com instsrv.exe srvany.exe
>  
> 3. Run the following command line
> c:\reskit\instsrv.exe "Declude Sniffer" c:\reskit\Srvany.exe
>  
> that will set a service under the name  Declude Sniffer
>  
> 4. Open your registry
> and look for the key
> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Declude Sniffer
>  
> 5. Then add a key and name it Parameters
> 
> 6. Next Add a Value and type this information Value 
> Name:Application Data Type: REG_SZ (String)
> String: [full path of your sniffer installation]\snfrv2r3.exe
> xnk05x5vmipeaof7 persistent
>  
> Note for licensed users: replace snfrv2re.exe with your 
> licenced sniffer application name and xnk05x5vmipeaof7 with 
> the licenced code.
>  
> 7. In your Services Manager locate the service named Declude 
> Sniffer and start it. 
>  
> 8. Set the Startup Type to Automatic.
>  
> You are set to go.
>  
> ----TO REMOVE THE SERVICE---
> if you want to remove the service just type the following 
> command line c:\reskit\instsrv.exe "Declude Sniffer" REMOVE
> 
>       -Luis Arango
> 
> ______
> [Email scanned for viruses]
> [Email escaneado contra virus]
> 
> 
> ---
> [This E-mail was scanned for viruses by Declude EVA www.declude.com]
> 
> ---
> This E-mail came from the Declude.JunkMail mailing list.  To 
> unsubscribe, just send an E-mail to [EMAIL PROTECTED], and 
> type "unsubscribe Declude.JunkMail".  The archives can be 
> found at http://www.mail-archive.com.
> 

---
[This E-mail was scanned for viruses by Declude EVA www.declude.com]

---
This E-mail came from the Declude.JunkMail mailing list.  To
unsubscribe, just send an E-mail to [EMAIL PROTECTED], and
type "unsubscribe Declude.JunkMail".  The archives can be found
at http://www.mail-archive.com.

Reply via email to