Security threats Toolkit
Story: Security experts: Botnets biggest threat on net
Protection in depth
We have a database of traffic profiles for each server/client vs the installed applications. Therefore additional traffic and open ports show up using the delta differences between the old profile and the new one.
This gives us a list of suspect machines, we then look at the NAC complicance logs, Altiris Software/Hardware inventory and AV alerts for indications of the source of the differences.
Full Talkback thread





