Richard, if you have another spare box, just install it like the first one and try all the exploits you got from the intruder. You have most likely a complete history file, so where's the problem? Remember, one of these binaries seems to be infected with RST, so erase that box afterwards..;) After that we hopefully can get rid of this thread...
regards, andreas _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.netsys.com/full-disclosure-charter.html
