Re: TCP 6006 and echo (port 7) Mandrake (possible new trojan?)
From: Wojtek Walczak (gminick@hacker.pl)
Date: 12/10/02
- Next message: Timothy Murphy: "Re: Wireless LAN"
- Previous message: Alessandro Selli: "Re: (Q) rdate or ntpdate ?"
- In reply to: Joshua Kuo: "Re: TCP 6006 and echo (port 7) Mandrake (possible new trojan?)"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
From: Wojtek Walczak <gminick@hacker.pl> Date: Tue, 10 Dec 2002 15:04:22 +0000 (UTC)
Dnia Mon, 09 Dec 2002 13:51:17 -0800, Joshua Kuo napisał(a):
> listerally one minute later, i am doing it again to show it to my
> co-worker, and it didn't come up this time. and it hasn't been so far
> (been 40 minutes).
> so does that mean someone is now logged on to my box? when i nmap myself
> 6006 is still open.
What about telnetting in there ?
ps. <http://www.chkrootkit.org/>
pss. DO NOT top post!
-- [ ] gminick (at) underground.org.pl http://gminick.linuxsecurity.pl/ [ ] [ "Po prostu lubie poranna samotnosc, bo wtedy kawa smakuje najlepiej." ]
- Next message: Timothy Murphy: "Re: Wireless LAN"
- Previous message: Alessandro Selli: "Re: (Q) rdate or ntpdate ?"
- In reply to: Joshua Kuo: "Re: TCP 6006 and echo (port 7) Mandrake (possible new trojan?)"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|