It struck me that Qubes could be very useful for Detection of "malware" by placing a monitoring capability . My question is in two parts:
(1) Is Wireshark the best tool to use for this within Qubes (2) Should it be placed in Dom 0 (if indeed thats possible) or in the sys-net or sys-firewall -- You received this message because you are subscribed to the Google Groups "qubes-users" group. To unsubscribe from this group and stop receiving emails from it, send an email to qubes-users+unsubscr...@googlegroups.com. To post to this group, send email to qubes-users@googlegroups.com. To view this discussion on the web visit https://groups.google.com/d/msgid/qubes-users/34752164-f1de-4429-93d6-b07a38e589ae%40googlegroups.com. For more options, visit https://groups.google.com/d/optout.