1.0: Difference between revisions
Jump to navigation
Jump to search
No edit summary |
|||
(10 intermediate revisions by the same user not shown) | |||
Line 1: | Line 1: | ||
<pre> | |||
SYSLOG TIMESTAMP 419.12.24 | SYSLOG TIMESTAMP 419.12.24 | ||
[TRANS.CODE.6752591999.SYSCOM.DAT] | [TRANS.CODE.6752591999.SYSCOM.DAT] | ||
Line 10: | Line 10: | ||
* * * SYSTEM ALERT * * * | * * * SYSTEM ALERT * * * | ||
POSSIBLE INTRUSION | POSSIBLE INTRUSION | ||
/PROC/SYS/KERNEL/ | /PROC/SYS/KERNEL/Z/O/SECURE/KERNEL.BZ.1 | ||
CHECKSUM ERROR | CHECKSUM ERROR | ||
/SYS/ | /PROC/SYS/KERNEL/Z/O/SECURE/KERNEL.BZ.LOG | ||
/SYS/LOG/419.12.24.8310293 | |||
/SYS/PASSWD | /SYS/PASSWD | ||
/PROC/SYS/LOG | /PROC/SYS/LOG/SYSLOG/419.12.24.8310293 | ||
CHECKSUM ERROR | |||
* * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * | * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * | ||
* * * SECURITY ALERT * * * SECURITY ALERT * * * SECURITY ALERT * * * | * * * SECURITY ALERT * * * SECURITY ALERT * * * SECURITY ALERT * * * | ||
Line 51: | Line 53: | ||
PROGRAM TERMINATED WITH SIGNAL 33 | PROGRAM TERMINATED WITH SIGNAL 33 | ||
INTIATING REBOOT SEQUENCE | INTIATING REBOOT SEQUENCE | ||
. . . . . . . . . . . | |||
. . . . . . . | |||
. . . | . . . | ||
Z-BOOT 5332478399 00:00:00 | |||
CPU: THETACORP BLUE DIAMOND BD-402 AT 63.77 THz | |||
BOARD: CC-999AI NERO-NET “LUIGI” + XLINK UL2100L + Positron Quadstream | |||
SYSRAM: 10008 YB | |||
FLASH: 32 TB | |||
IN: | |||
OUT: | |||
ERR: | |||
MAC: 98-8B-D0-F9-2B-6E | |||
IP: FD5C:F6AD:42A0::/48 | |||
AUTOBOOT | |||
USING OPEN_NET DEVICE | |||
RECEIVING NET_WAKE SIGNAL | |||
TFTP FROM SERVER FD3C:BA22:8576::/48 | |||
OUR ADDRESS IS FD5C:F6AD:42A0::/48 | |||
FILENAME ‘zImage.sys.boot.kernel.iam.bz’. | |||
LOAD ADDRESS: 0xd0000000 | |||
LOADING: ##### | |||
DONE | |||
BYTES TRANSFERRED 6048 TB | |||
AUTOMATIC BOOT OF IMAGE AT 0xd0000000 | |||
BOOTING KERNEL FROM LEGACY IMAGE AT 0xd0000000 | |||
IMAGE NAME: IAM | |||
IMAGE TYPE: BZIP COMPRESSED | |||
DATA SIZE: 6048 TB | |||
LOAD ADDRESS: d0000000 | |||
ENTRY POINT: d0000000 | |||
VERIFYING CHECKSUM . . . OK | |||
UNCOMPRESSING KERNEL IMAGE . . . OK | |||
TRANSFERRING CONTROL TO KERNEL IAM AT ADDRESS 0xd0000000 | |||
</pre> |
Latest revision as of 09:24, 9 December 2016
SYSLOG TIMESTAMP 419.12.24 [TRANS.CODE.6752591999.SYSCOM.DAT] * * * ALERT * * * * * * ALERT * * * LOGIN DETECTED CREDENTIALS UV-01 REACTIVATED /opt/bin/secure /pub/usr/ * * * SYSTEM ALERT * * * POSSIBLE INTRUSION /PROC/SYS/KERNEL/Z/O/SECURE/KERNEL.BZ.1 CHECKSUM ERROR /PROC/SYS/KERNEL/Z/O/SECURE/KERNEL.BZ.LOG /SYS/LOG/419.12.24.8310293 /SYS/PASSWD /PROC/SYS/LOG/SYSLOG/419.12.24.8310293 CHECKSUM ERROR * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * SECURITY ALERT * * * SECURITY ALERT * * * SECURITY ALERT * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * INTRUSION DETECTED * * * /PROC/SYS/KERNEL/CORE SEGMENT FAULT 2M3qyTGeOm3N6u8icC5D KiejKdHMYh9zsuCdpjC0 FmHpSZGL6ICx2ni3cXdu kDH9RCikt4zAtuVFGrbt DeiRdD2iGCrafR0lzyb4 z80Fa4BfZ71rEr4UBhmB EZQe8guFfj6D5J8KCfDO 91iOBVBAAgWbAcLWbN0G 6ouARa7ZVJHMSfEuQu30 Y8SKGAwcmPt8ALGz8VzB YzR1oVNp7viBHX1rglal BacQ6JO7QxX3TW8eoVjR Is9V4VFfyYjbREKSeMKx lWEGv8JnW1deTkIZKVLd QmXBUujdKH5VR6mHUzfB RvQhvFGXgyhl5LGIxYPb YNSzdbLNWCLoUTA4t8OD sBK9XnmrxpCSngeQAXcV Qz2c8BlE7fH907Kxl7jX qZvB68OpjJYOFRZKi3YY SEGMENTATION FAULT * * * INTRUSION DETECTED * * * * * * INTRUSION DETECTED * * * * * * INTRUSION DETECTED * * * 00105e0 e6 b0 08 04 e7 9e 08 04-e7 bc 08 04 e7 d5 08 04 00105f0 e7 e4 08 04 e6 b0 08 04-e7 f0 08 04 e7 ff 08 04 0010600 e8 0b 08 04 e8 1a 08 04-e6 b0 08 04 e6 b0 08 04 `./CRASH -P PARAM1 -O PARAM2’ SEGMENTATION FAULT CORE GENERATED PROGRAM TERMINATED WITH SIGNAL 1 SEGMENTATION FAULT PROGRAM TERMINATED WITH SIGNAL 5 SEGMENTATION FAULT PROGRAM TERMINATED WITH SIGNAL 11 SEGMENTATION FAULT PROGRAM TERMINATED WITH SIGNAL 23 SEGMENTATION FAULT PROGRAM TERMINATED WITH SIGNAL 33 INTIATING REBOOT SEQUENCE . . . . . . . . . . . . . . . . . . . . . Z-BOOT 5332478399 00:00:00 CPU: THETACORP BLUE DIAMOND BD-402 AT 63.77 THz BOARD: CC-999AI NERO-NET “LUIGI” + XLINK UL2100L + Positron Quadstream SYSRAM: 10008 YB FLASH: 32 TB IN: OUT: ERR: MAC: 98-8B-D0-F9-2B-6E IP: FD5C:F6AD:42A0::/48 AUTOBOOT USING OPEN_NET DEVICE RECEIVING NET_WAKE SIGNAL TFTP FROM SERVER FD3C:BA22:8576::/48 OUR ADDRESS IS FD5C:F6AD:42A0::/48 FILENAME ‘zImage.sys.boot.kernel.iam.bz’. LOAD ADDRESS: 0xd0000000 LOADING: ##### DONE BYTES TRANSFERRED 6048 TB AUTOMATIC BOOT OF IMAGE AT 0xd0000000 BOOTING KERNEL FROM LEGACY IMAGE AT 0xd0000000 IMAGE NAME: IAM IMAGE TYPE: BZIP COMPRESSED DATA SIZE: 6048 TB LOAD ADDRESS: d0000000 ENTRY POINT: d0000000 VERIFYING CHECKSUM . . . OK UNCOMPRESSING KERNEL IMAGE . . . OK TRANSFERRING CONTROL TO KERNEL IAM AT ADDRESS 0xd0000000