[ubuntu-it] Due strani risultati con "chkrootkit" e "rkhunter --checkall"

Nakinub nakinub a autistici.org
Dom 19 Feb 2006 23:04:29 UTC


>se vuoi sapere che programma la stia usando usa:
>
>netstat -anp -t tcp
>
>e poi cerca la porta 4369. Così a naso direi che sulla 4369 possa girare
>un server jabber a cui è attacato un client jabber, ma potrei
>decisamente sbagliarmi. 
>
>ciao,
>
>  
>


Si avevi proprio ragione, è jabber infatti io uso Gaim (adesso cosa 
dovei fare???):

xxx a ubuntu:~$ netstat -anp -t tcp
(Not all processes could be identified, non-owned process info
 will not be shown, you would have to be root to see it all.)
Active Internet connections (servers and established)
Proto Recv-Q Send-Q Local Address           Foreign Address         
State PID/Program name
tcp        0      0 0.0.0.0:5280            0.0.0.0:*               
LISTEN     -
tcp        0      0 127.0.0.1:32769         0.0.0.0:*               
LISTEN     -
tcp        0      0 127.0.0.1:32770         0.0.0.0:*               
LISTEN     -
tcp        0      0 0.0.0.0:5222            0.0.0.0:*               
LISTEN     -
tcp        0      0 0.0.0.0:32774           0.0.0.0:*               
LISTEN     -
tcp        0      0 0.0.0.0:5223            0.0.0.0:*               
LISTEN     -
tcp        0      0 127.0.0.1:32776         0.0.0.0:*               
LISTEN     -
tcp        0      0 127.0.0.1:3306          0.0.0.0:*               
LISTEN     -
tcp        0      0 0.0.0.0:19150           0.0.0.0:*               
LISTEN     -
tcp        0      0 0.0.0.0:4369            0.0.0.0:*               
LISTEN     -
tcp        0      0 0.0.0.0:5269            0.0.0.0:*               
LISTEN     -
tcp        0      0 0.0.0.0:4662            0.0.0.0:*               
LISTEN     1 1134/amule
tcp        0      0 127.0.0.1:8118          0.0.0.0:*               
LISTEN     -
tcp        0      0 127.0.0.1:631           0.0.0.0:*               
LISTEN     -
tcp        0      0 0.0.0.0:25              0.0.0.0:*               
LISTEN     -
tcp        0      0 127.0.0.1:9050          0.0.0.0:*               
LISTEN     -
tcp        0      0 0.0.0.0:538             0.0.0.0:*               
LISTEN     -
tcp        0      0 0.0.0.0:32797           0.0.0.0:*               
LISTEN     1 1122/skype
tcp        0      0 127.0.0.1:631           127.0.0.1:44998         
ESTABLISHED-
tcp        0      0 39.2.1.33:33325         1.255.188.175:4662      
TIME_WAIT  -
tcp        0      0 39.2.1.33:51979         87.2.124.100:4662       
TIME_WAIT  -
tcp        0      0 39.2.1.33:55532         82.49.10.207:4662       
TIME_WAIT  -
tcp        0      0 39.2.1.33:39157         82.61.2.203:4662        
TIME_WAIT  -
tcp        0 164456 39.2.1.33:38786         87.1.250.205:4662       
ESTABLISHED1 1134/amule
tcp        0      0 39.2.1.33:33226         11.244.90.137:4662      
TIME_WAIT  -
tcp        0      0 39.2.1.33:45887         64.12.162.201:5190      
ESTABLISHED1 1219/gaim
tcp        0      0 127.0.0.1:32775         127.0.0.1:4369          
ESTABLISHED-
tcp        0      0 127.0.0.1:32769         127.0.0.1:58324         
ESTABLISHED-
tcp        0      0 39.2.1.33:50142         87.1.17.82:4662         
TIME_WAIT  -
tcp        0      0 39.2.1.33:36625         195.245.244.243:4661    
ESTABLISHED1 1134/amule
tcp        0      0 127.0.0.1:4369          127.0.0.1:32775         
ESTABLISHED-
tcp        0      0 39.2.1.33:51427         85.113.253.175:3233     
ESTABLISHED1 1122/skype
tcp        0      0 127.0.0.1:44998         127.0.0.1:631           
ESTABLISHED7 906/gnome-cups-ico
tcp        0      0 39.2.1.33:44424         81.211.254.249:14777    
TIME_WAIT  -
tcp        0      0 39.2.1.33:58669         80.183.174.202:4662     
ESTABLISHED1 1134/amule
tcp        0      0 39.2.1.33:46938         82.59.200.50:4662       
TIME_WAIT  -
tcp        0      0 127.0.0.1:58324         127.0.0.1:32769         
ESTABLISHED-
tcp        0      0 39.2.1.33:35283         80.182.87.91:4662       
TIME_WAIT  -
tcp        0 165072 39.2.1.33:43889         62.123.193.210:4662     
ESTABLISHED1 1134/amule
tcp        0      0 39.2.1.33:57643         87.5.223.188:4662       
TIME_WAIT  -
tcp        0      0 39.2.1.33:49939         87.7.49.175:4662        
TIME_WAIT  -
tcp        0      0 39.2.1.33:47144         212.171.39.173:4662     
TIME_WAIT  -
tcp        0      0 39.2.1.33:34323         23.250.81.245:4662      
ESTABLISHED1 1134/amule
tcp        0      0 39.2.1.33:55180         82.48.115.116:4662      
TIME_WAIT  -
tcp        0      0 39.2.1.33:4662          37.9.84.137:4527        
ESTABLISHED1 1134/amule
tcp        0      0 39.2.1.33:33321         82.59.12.22:4662        
TIME_WAIT  -
tcp        0      0 39.2.1.33:38847         207.46.6.38:1863        
ESTABLISHED1 1219/gaim
tcp        0      0 39.2.1.33:34999         82.94.249.234:5222      
ESTABLISHED1 1219/gaim
tcp6       0      0 :::19150                :::*                    
LISTEN     -
tcp6       0      0 :::80                   :::*                    
LISTEN     -





Maggiori informazioni sulla lista ubuntu-it