How can you tell if you have been or are part of a botnet?
From what I have been reading, most botnets use IRC, so would a simple netstat with ports like 6667 being open lead me to believe I've been comprimised? Note: I haven't used IRC in years, so I have no reason to be using that port. Also, that port is not really open on my machine, just a hypothetical question.
What other signs can a user look for, or be aware of, to protect themselves from botnets?
Thanks in advance.
From what I have been reading, most botnets use IRC, so would a simple netstat with ports like 6667 being open lead me to believe I've been comprimised? Note: I haven't used IRC in years, so I have no reason to be using that port. Also, that port is not really open on my machine, just a hypothetical question.
What other signs can a user look for, or be aware of, to protect themselves from botnets?
Thanks in advance.