Michael at mcwresearch.com has a good post about finding a bot infected machine on his network. He outlines how he was alerted to the problem, the steps he took in investigating it, how it was resolved and lessons learned. Go check it out.
Wednesday, May 02, 2007
Finding bots and learning from them
Andy ITGuy|bots|information security|mcwresearch|
This work is licensed under a Creative Commons Attribution-NC-SA 3.0.