detective work...

topic posted Fri, October 29, 2004 - 4:02 PM by  Philen, Larry
Share/Save/Bookmark
Advertisement
Hi, I've been involved with some strange people. I won't go into the specifics, but, I run a Mac and I can close my Internet connection (DSL) and whenever I open certain applications, I see activity on my modem. All my IP apps show there is no connection, but certain programs seem to be able to send info anyway. When I do have the connection open, every 30 seconds or so, I show activity on my modem. I've checked all the settings I know of and none are set to "keep connection open" so there's no reason my machine should be sending packets.
I'd really like to be able to figure out who is getting this info, but without their knowledge.
I don't have a firewall installed because I want to find out what's happening without blocking these guys from my computer.
Any suggestions?
Advertisement
Advertisement
  • Re: detective work...

    Fri, October 29, 2004 - 4:06 PM
    If you had a PC, I'd suggest Sygate Personal Firewall Pro. Let's you intercept data packets.

    Sorry, don't know Mac firewall products.
  • Unsu...
     

    Re: detective work...

    Sat, October 30, 2004 - 7:13 PM
    I suggest findng a packet sniffer for a mac (perhaps ettercap has a mac port) and actually seeing what traffic is passing through.

    I would be willing to look at the packet capture if you manage to get that far.

    I don't look at this tribe frequently, so if you do that, make sure you send me a private message.

Recent topics in "Computer Forensics"

Topic Author Replies Last Post
Phoenix OWASP July/August Meetings obnosis 0 July 2, 2009
Forensic schools? Nathan 8 March 27, 2009
Serious Problems..... Brennesiology 2 July 15, 2007
Getting real-world experience Noah 0 February 24, 2006