
coder at fluzo
Feb 19, 2008, 5:14 AM
Post #3 of 5
(2074 views)
Permalink
|
|
Re: Strange occurrence of sendmail and disk I/O in background....
[In reply to]
|
|
> I found vulnerabilities associated with a lower version of > sendmail but none with the version I've installed right now. > > Any suggestions, ideas, or explanations are welcomed. It seems you could be owned by someone, maybe due to a combination of a web-app vulnerability which led to an apache shell which led to a kernel exploit execution, which led to root, which led to executing whatever, in that case, making your machine to be a spammer zombie or so. You know, the usual shit nowadays. Run the usual tools, chkrootkit, rkhunter, etc. Good luck. -- echo "dpefsAgmv{p/psh" | perl -pe 's/(.)/chr(ord($1)-1)/ge' GnuPG key ID 0x6D2FF8B5 @ pgp.rediris.es http://www.fluzo.org/ <ยบ ))))><
|