gozal2
October 29th, 2013, 00:05
درود
اساتید کمک
چندروز پیش csf نصب کردم روی سرورم .اما مطلب اینجاست که روزی هزارتا از این پیامهای این شکلی میاد برام .میخواستم بدونم این پیام ها چی میگن و چه باید بکنم
Time: Sun Oct 27 00:00:01 2013 -0400
PID: 1149 (Parent PID:1149)
Account: rpc
Uptime: 18621 seconds
Executable:
/sbin/rpcbind
Command Line (often faked in exploits):
rpcbind
Network connections by the process (if any):
udp: 0.0.0.0:111 -> 0.0.0.0:0
udp: 0.0.0.0:900 -> 0.0.0.0:0
tcp: 0.0.0.0:111 -> 0.0.0.0:0
udp6: 0.0.0.0:111 -> 0.0.0.0:0
udp6: 0.0.0.0:900 -> 0.0.0.0:0
tcp6: 0.0.0.0:111 -> 0.0.0.0:0
Files open by the process (if any):
/dev/null
/dev/null
/dev/null
/var/run/rpcbind.lock
Memory maps by the process (if any):
7f8d27001000-7f8d2700d000 r-xp 00000000 fd:00 130848 /lib64/libnss_files-2.12.so
7f8d2700d000-7f8d2720d000 ---p 0000c000 fd:00 130848 /lib64/libnss_files-2.12.so
7f8d2720d000-7f8d2720e000 r--p 0000c000 fd:00 130848 /lib64/libnss_files-2.12.so
7f8d2720e000-7f8d2720f000 rw-p 0000d000 fd:00 130848 /lib64/libnss_files-2.12.so
7f8d2720f000-7f8d27398000 r-xp 00000000 fd:00 130832 /lib64/libc-2.12.so
7f8d27398000-7f8d27597000 ---p 00189000 fd:00 130832 /lib64/libc-2.12.so
7f8d27597000-7f8d2759b000 r--p 00188000 fd:00 130832 /lib64/libc-2.12.so
7f8d2759b000-7f8d2759c000 rw-p 0018c000 fd:00 130832 /lib64/libc-2.12.so
7f8d2759c000-7f8d275a1000 rw-p 00000000 00:00 0
7f8d275a1000-7f8d275b8000 r-xp 00000000 fd:00 130856 /lib64/libpthread-2.12.so
7f8d275b8000-7f8d277b8000 ---p 00017000 fd:00 130856 /lib64/libpthread-2.12.so
7f8d277b8000-7f8d277b9000 r--p 00017000 fd:00 130856 /lib64/libpthread-2.12.so
7f8d277b9000-7f8d277ba000 rw-p 00018000 fd:00 130856 /lib64/libpthread-2.12.so
7f8d277ba000-7f8d277be000 rw-p 00000000 00:00 0
7f8d277be000-7f8d277c0000 r-xp 00000000 fd:00 130838 /lib64/libdl-2.12.so
7f8d277c0000-7f8d279c0000 ---p 00002000 fd:00 130838 /lib64/libdl-2.12.so
7f8d279c0000-7f8d279c1000 r--p 00002000 fd:00 130838 /lib64/libdl-2.12.so
7f8d279c1000-7f8d279c2000 rw-p 00003000 fd:00 130838 /lib64/libdl-2.12.so
7f8d279c2000-7f8d279cb000 r-xp 00000000 fd:00 130892 /lib64/libgssglue.so.1.0.0
7f8d279cb000-7f8d27bca000 ---p 00009000 fd:00 130892 /lib64/libgssglue.so.1.0.0
7f8d27bca000-7f8d27bcb000 rw-p 00008000 fd:00 130892 /lib64/libgssglue.so.1.0.0
7f8d27bcb000-7f8d27be1000 r-xp 00000000 fd:00 130842 /lib64/libnsl-2.12.so
7f8d27be1000-7f8d27de0000 ---p 00016000 fd:00 130842 /lib64/libnsl-2.12.so
7f8d27de0000-7f8d27de1000 r--p 00015000 fd:00 130842 /lib64/libnsl-2.12.so
7f8d27de1000-7f8d27de2000 rw-p 00016000 fd:00 130842 /lib64/libnsl-2.12.so
7f8d27de2000-7f8d27de4000 rw-p 00000000 00:00 0
7f8d27de4000-7f8d27e0a000 r-xp 00000000 fd:00 130896 /lib64/libtirpc.so.1.0.10
7f8d27e0a000-7f8d2800a000 ---p 00026000 fd:00 130896 /lib64/libtirpc.so.1.0.10
7f8d2800a000-7f8d2800c000 rw-p 00026000 fd:00 130896 /lib64/libtirpc.so.1.0.10
7f8d2800c000-7f8d28014000 r-xp 00000000 fd:00 131016 /lib64/libwrap.so.0.7.6
7f8d28014000-7f8d28214000 ---p 00008000 fd:00 131016 /lib64/libwrap.so.0.7.6
7f8d28214000-7f8d28215000 r--p 00008000 fd:00 131016 /lib64/libwrap.so.0.7.6
7f8d28215000-7f8d28216000 rw-p 00009000 fd:00 131016 /lib64/libwrap.so.0.7.6
7f8d28216000-7f8d28217000 rw-p 00000000 00:00 0
7f8d28217000-7f8d28237000 r-xp 00000000 fd:00 130822 /lib64/ld-2.12.so
7f8d2842a000-7f8d2842f000 rw-p 00000000 00:00 0
7f8d28435000-7f8d28436000 rw-p 00000000 00:00 0
7f8d28436000-7f8d28437000 r--p 0001f000 fd:00 130822 /lib64/ld-2.12.so
7f8d28437000-7f8d28438000 rw-p 00020000 fd:00 130822 /lib64/ld-2.12.so
7f8d28438000-7f8d28439000 rw-p 00000000 00:00 0
7f8d28439000-7f8d28446000 r-xp 00000000 fd:00 523291 /sbin/rpcbind
7f8d28645000-7f8d28646000 rw-p 0000c000 fd:00 523291 /sbin/rpcbind
7f8d28646000-7f8d28647000 rw-p 00000000 00:00 0
7f8d2967c000-7f8d2969d000 rw-p 00000000 00:00 0 [heap]
7fff31554000-7fff31569000 rw-p 00000000 00:00 0 [stack]
7fff315b6000-7fff315b7000 r-xp 00000000 00:00 0 [vdso]
ffffffffff600000-ffffffffff601000 r-xp 00000000 00:00 0 [vsyscall]
ممنون
اساتید کمک
چندروز پیش csf نصب کردم روی سرورم .اما مطلب اینجاست که روزی هزارتا از این پیامهای این شکلی میاد برام .میخواستم بدونم این پیام ها چی میگن و چه باید بکنم
Time: Sun Oct 27 00:00:01 2013 -0400
PID: 1149 (Parent PID:1149)
Account: rpc
Uptime: 18621 seconds
Executable:
/sbin/rpcbind
Command Line (often faked in exploits):
rpcbind
Network connections by the process (if any):
udp: 0.0.0.0:111 -> 0.0.0.0:0
udp: 0.0.0.0:900 -> 0.0.0.0:0
tcp: 0.0.0.0:111 -> 0.0.0.0:0
udp6: 0.0.0.0:111 -> 0.0.0.0:0
udp6: 0.0.0.0:900 -> 0.0.0.0:0
tcp6: 0.0.0.0:111 -> 0.0.0.0:0
Files open by the process (if any):
/dev/null
/dev/null
/dev/null
/var/run/rpcbind.lock
Memory maps by the process (if any):
7f8d27001000-7f8d2700d000 r-xp 00000000 fd:00 130848 /lib64/libnss_files-2.12.so
7f8d2700d000-7f8d2720d000 ---p 0000c000 fd:00 130848 /lib64/libnss_files-2.12.so
7f8d2720d000-7f8d2720e000 r--p 0000c000 fd:00 130848 /lib64/libnss_files-2.12.so
7f8d2720e000-7f8d2720f000 rw-p 0000d000 fd:00 130848 /lib64/libnss_files-2.12.so
7f8d2720f000-7f8d27398000 r-xp 00000000 fd:00 130832 /lib64/libc-2.12.so
7f8d27398000-7f8d27597000 ---p 00189000 fd:00 130832 /lib64/libc-2.12.so
7f8d27597000-7f8d2759b000 r--p 00188000 fd:00 130832 /lib64/libc-2.12.so
7f8d2759b000-7f8d2759c000 rw-p 0018c000 fd:00 130832 /lib64/libc-2.12.so
7f8d2759c000-7f8d275a1000 rw-p 00000000 00:00 0
7f8d275a1000-7f8d275b8000 r-xp 00000000 fd:00 130856 /lib64/libpthread-2.12.so
7f8d275b8000-7f8d277b8000 ---p 00017000 fd:00 130856 /lib64/libpthread-2.12.so
7f8d277b8000-7f8d277b9000 r--p 00017000 fd:00 130856 /lib64/libpthread-2.12.so
7f8d277b9000-7f8d277ba000 rw-p 00018000 fd:00 130856 /lib64/libpthread-2.12.so
7f8d277ba000-7f8d277be000 rw-p 00000000 00:00 0
7f8d277be000-7f8d277c0000 r-xp 00000000 fd:00 130838 /lib64/libdl-2.12.so
7f8d277c0000-7f8d279c0000 ---p 00002000 fd:00 130838 /lib64/libdl-2.12.so
7f8d279c0000-7f8d279c1000 r--p 00002000 fd:00 130838 /lib64/libdl-2.12.so
7f8d279c1000-7f8d279c2000 rw-p 00003000 fd:00 130838 /lib64/libdl-2.12.so
7f8d279c2000-7f8d279cb000 r-xp 00000000 fd:00 130892 /lib64/libgssglue.so.1.0.0
7f8d279cb000-7f8d27bca000 ---p 00009000 fd:00 130892 /lib64/libgssglue.so.1.0.0
7f8d27bca000-7f8d27bcb000 rw-p 00008000 fd:00 130892 /lib64/libgssglue.so.1.0.0
7f8d27bcb000-7f8d27be1000 r-xp 00000000 fd:00 130842 /lib64/libnsl-2.12.so
7f8d27be1000-7f8d27de0000 ---p 00016000 fd:00 130842 /lib64/libnsl-2.12.so
7f8d27de0000-7f8d27de1000 r--p 00015000 fd:00 130842 /lib64/libnsl-2.12.so
7f8d27de1000-7f8d27de2000 rw-p 00016000 fd:00 130842 /lib64/libnsl-2.12.so
7f8d27de2000-7f8d27de4000 rw-p 00000000 00:00 0
7f8d27de4000-7f8d27e0a000 r-xp 00000000 fd:00 130896 /lib64/libtirpc.so.1.0.10
7f8d27e0a000-7f8d2800a000 ---p 00026000 fd:00 130896 /lib64/libtirpc.so.1.0.10
7f8d2800a000-7f8d2800c000 rw-p 00026000 fd:00 130896 /lib64/libtirpc.so.1.0.10
7f8d2800c000-7f8d28014000 r-xp 00000000 fd:00 131016 /lib64/libwrap.so.0.7.6
7f8d28014000-7f8d28214000 ---p 00008000 fd:00 131016 /lib64/libwrap.so.0.7.6
7f8d28214000-7f8d28215000 r--p 00008000 fd:00 131016 /lib64/libwrap.so.0.7.6
7f8d28215000-7f8d28216000 rw-p 00009000 fd:00 131016 /lib64/libwrap.so.0.7.6
7f8d28216000-7f8d28217000 rw-p 00000000 00:00 0
7f8d28217000-7f8d28237000 r-xp 00000000 fd:00 130822 /lib64/ld-2.12.so
7f8d2842a000-7f8d2842f000 rw-p 00000000 00:00 0
7f8d28435000-7f8d28436000 rw-p 00000000 00:00 0
7f8d28436000-7f8d28437000 r--p 0001f000 fd:00 130822 /lib64/ld-2.12.so
7f8d28437000-7f8d28438000 rw-p 00020000 fd:00 130822 /lib64/ld-2.12.so
7f8d28438000-7f8d28439000 rw-p 00000000 00:00 0
7f8d28439000-7f8d28446000 r-xp 00000000 fd:00 523291 /sbin/rpcbind
7f8d28645000-7f8d28646000 rw-p 0000c000 fd:00 523291 /sbin/rpcbind
7f8d28646000-7f8d28647000 rw-p 00000000 00:00 0
7f8d2967c000-7f8d2969d000 rw-p 00000000 00:00 0 [heap]
7fff31554000-7fff31569000 rw-p 00000000 00:00 0 [stack]
7fff315b6000-7fff315b7000 r-xp 00000000 00:00 0 [vdso]
ffffffffff600000-ffffffffff601000 r-xp 00000000 00:00 0 [vsyscall]
ممنون