Who uses snort IDS under Windows

Reachable and workable from your command prompt, good to run through logs.
Works on your lower stacks.

Been tested here: https://events.ccc.de/congress/2006-static/static/s/n/o/Snortattack.html

polonus