> So you can do forensics later on and Identify running rootkit code? Well, I don't know of techniques of analyzing RAM dump. > for the country people if you copy the RAM then you can service more > sheep and get more lambs. :) -- .~. http://toylet.homeip.net / v \ Linux 2.4.26 /( _ )\ 10:06pm up 6 days 14:26 ^ ^ load average: 1.13 1.21 1.11