by Sleeve on Tue Apr 15, 2003 5:49 pm
Firedaemon.exe is a program used to run virtually any
application as a NT service. Often times Hackers will use
this to hide FTP servers on a compromised machine.
To see if you have been hacked, open up your service
manager console and look for a service starting with the
name "Firedaemon" or "Fire Service" then open the folder
containing the exe and see if it is supposed to be there
or not. My guess is that you have been compromised at
some point.
FYI. to use firedaemon, open cmd.exe, drag firedaemon.exe
into it then use the switch -p i.e. "c:\winit\system32
\config\firedaemon.exe -p"
Good luck and remember to password every user account!
Don't be afraid to use "@!#$%^&*()_" in your passwords for
added security.