Lansweeper wrote:
You can ignore the buffer overflow.
Did you run procmon on the server or on the client?
You should run it on the server when the server tries to scan the client.
ops, I did it on the workstation to be scanned.
I tried now to issue a "trigger scan" command from the website.
on the server, process lansweeper30 makes operations on
\\targetpc\PIPE\winreg and on
\\targetpc\IPC$\winreg .
All operation are "success". No other operations are tracked for process lansweeper30.exe.