Snort mailing list archives

Re: BotHunter Question


From: Maverick <myeaddress () gmail com>
Date: Mon, 25 Apr 2011 22:38:26 -0400

Never mind my earlier post, I found out that bothunter has its own
snort with bothunter specific rule. I was using files generated from
an independent snort. Still if you are a bothunter user I would love
to get in touch.

Best.
JJ
On Mon, Apr 25, 2011 at 3:26 PM, Maverick <myeaddress () gmail com> wrote:
Hi,

Has anyone used the Snortlogs with Bothunter ? I am trying to use
alert files generated by my snort in Batch mode of BotHunter but it
seems its not able to parse those logs successfully. However when I
run logs given on BotHunter site
(http://www.bothunter.net/samples-new/AdRotator1.A.pcap.alerts) it
runs successfully and generates output file.

Also , please let me know if you have used pcap files directly with BotHunter.

Thanks
John


------------------------------------------------------------------------------
WhatsUp Gold - Download Free Network Management Software
The most intuitive, comprehensive, and cost-effective network 
management toolset available today.  Delivers lowest initial 
acquisition cost and overall TCO of any competing solution.
http://p.sf.net/sfu/whatsupgold-sd
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: