Re: [twincling] System intrusion and detection

2009-07-28 Thread Saifi Khan
On Mon, 6 Jul 2009, sridhar Reddy wrote: Hi Saifi, My problem is spam is generated from my email system from the pool of address allocated. Even though we do not use all the IP addresses form the pool of addresses it specifically generating spam form one of my system and ISP complained

Re: [twincling] System intrusion and detection

2009-07-05 Thread Saifi Khan
On Sat, 4 Jul 2009, skommar21 wrote: Hi All, How can one detect/ Check whether his system has been intruded? can any body please explain the task / activities required to check whether his system has been compromised. Are there any good open source software which are good

Re: [twincling] System intrusion and detection

2009-07-05 Thread Navneet Thillaisthanam
You can also try a HIDS (Host-based IDS) like Ossec. It differs from Snort (NIDS) by analysing logs instead of network traffic like Snort. So you see they look at different things for detection. Ossec is client-server model that is available for Linux and Windows. The last time I worked with it,

Re: [twincling] System intrusion and detection

2009-07-05 Thread sridhar Reddy
Hi Saifi, My problem is spam is generated from my email system from the pool of address allocated. Even though we do not use all the IP addresses form the pool of addresses it specifically generating spam form one of my system and ISP complained that he is receiving lot of complaints regarding