On 21/07/00 12:42 +0530, Sharad Joshi spewed into the LI bitstream:

> yaksha:~$ ps ux
> [snip] 
>   118 ?        S      0:00 /usr/X11R6/bin/xdm -nodaemon
>   125 ?        R     14:03 /usr/X11R6/bin/X -auth 
>/usr/X11R6/lib/X11/xdm/authdir/authfiles/A:0-a001
>   126 ?        S      0:00 -:0                         

> How about process 126? Now who on earth will name a thing like that.
> Funny, its ppid is 118. Any clues as to what is this?

Sounds like a trojan of some sort.  Shut down your box and scan your
tripwire checksums etc - I *think* you've been hacked.

-- 
Suresh Ramasubramanian + [EMAIL PROTECTED]
Finagle's First Law:
        If an experiment works, something has gone wrong.

-----------------------------------------------------------------------
For information on this and other Linux India mailing lists check out
http://lists.linux-india.org/

Reply via email to