Forums

Skip to content

Advanced search
  • Quick links
    • Unanswered topics
    • Active topics
    • Search
  • FAQ
  • Login
  • Register
  • Board index Assistance Networking & Security
  • Search

Got my box hit today something to do with vadimII

Having problems getting connected to the internet or running a server? Wondering about securing your box? Ask here.
Post Reply
Advanced search
2 posts • Page 1 of 1
Author
Message
Slynix
n00b
n00b
User avatar
Posts: 67
Joined: Sun May 11, 2003 5:44 am
Contact:
Contact Slynix
Website

Got my box hit today something to do with vadimII

  • Quote

Post by Slynix » Sat Mar 12, 2005 4:48 pm

Damn suddenly today I get a call. At my second work we have 50mbit line and like 3 C ipadress networks. Everything was unreachable. I was there pretty fast and after some minuts I could confirm that the only linux computer there was causing this problem. Iv been having work in another place etc and havent had time to update the machine. Feels bad sense Iv always preached about Internet security and how Gentoo linux can be very secure. Sense I had some restrictions I felt pretty ok letting it be for the moment. It now has backfired on me and being a more frequent updater could have prevented this. Strange how this little useless machine could cause so much trouble.

I havent had the time to scan trought all logs and backup of logs etc but ill get into it more soon. What appeared to me was that the computer was flooded and I had a few processes called vadimII which Iv heard isnt good.

I could be able to see traces theyv erased sense I have a backup system for the machine which run on daily basis.

Found this post on gentoo: http://forums.gentoo.org/viewtopic-t-26 ... dimii.html
a big bear hug
Top
Slynix
n00b
n00b
User avatar
Posts: 67
Joined: Sun May 11, 2003 5:44 am
Contact:
Contact Slynix
Website

  • Quote

Post by Slynix » Sat Mar 12, 2005 8:00 pm

seems im not rootkitted because of chk does return anything about it but who knows.. :/

Anyways i think its done with safe_mode = off in php.ini and theyv made something with php :/
a big bear hug
Top
Post Reply

2 posts • Page 1 of 1

Return to “Networking & Security”

Jump to
  • Assistance
  • ↳   News & Announcements
  • ↳   Frequently Asked Questions
  • ↳   Installing Gentoo
  • ↳   Multimedia
  • ↳   Desktop Environments
  • ↳   Networking & Security
  • ↳   Kernel & Hardware
  • ↳   Portage & Programming
  • ↳   Gamers & Players
  • ↳   Other Things Gentoo
  • ↳   Unsupported Software
  • Discussion & Documentation
  • ↳   Documentation, Tips & Tricks
  • ↳   Gentoo Chat
  • ↳   Gentoo Forums Feedback
  • ↳   Duplicate Threads
  • International Gentoo Users
  • ↳   中文 (Chinese)
  • ↳   Dutch
  • ↳   Finnish
  • ↳   French
  • ↳   Deutsches Forum (German)
  • ↳   Diskussionsforum
  • ↳   Deutsche Dokumentation
  • ↳   Greek
  • ↳   Forum italiano (Italian)
  • ↳   Forum di discussione italiano
  • ↳   Risorse italiane (documentazione e tools)
  • ↳   Polskie forum (Polish)
  • ↳   Instalacja i sprzęt
  • ↳   Polish OTW
  • ↳   Portuguese
  • ↳   Documentação, Ferramentas e Dicas
  • ↳   Russian
  • ↳   Scandinavian
  • ↳   Spanish
  • ↳   Other Languages
  • Architectures & Platforms
  • ↳   Gentoo on ARM
  • ↳   Gentoo on PPC
  • ↳   Gentoo on Sparc
  • ↳   Gentoo on Alternative Architectures
  • ↳   Gentoo on AMD64
  • ↳   Gentoo for Mac OS X (Portage for Mac OS X)
  • Board index
  • All times are UTC
  • Delete cookies

© 2001–2026 Gentoo Foundation, Inc.

Powered by phpBB® Forum Software © phpBB Limited

Privacy Policy

 

 

magic