Overclock.net - Overclocking.net
     
 
Home Gallery Reviews Blogs Register Today's Posts Mark Forums Read Members List


Go Back   Overclock.net - Overclocking.net > Software, Programming and Coding > Operating Systems > Linux, Unix

Reply
 
LinkBack Thread Tools
Old 07-03-09   #1 (permalink)
Crimson Mantle Commander
 
reezin14's Avatar
 
intel nvidia

Join Date: Feb 2008
Location: 42* 30.7minN 89* 1.8minW
Posts: 3,630

Rep: 486 reezin14 is a proven memberreezin14 is a proven memberreezin14 is a proven memberreezin14 is a proven memberreezin14 is a proven member
Unique Rep: 368
Folding Team Rank: 648
Trader Rating: 7
Default Attacked??

I just received this message a few minutes ago, I'm I being probed/attacked(what I'm thinking)or is this just a glitch with the software? I installed Fedora 11 2 days ago.TIA + rep for helpful post.
Attached Thumbnails
Attacked??-screenshot.png   Attacked??-screenshot-setroubleshoot-browser.png  

System: Green Lantern II
CPU
Q9550
Motherboard
750i FTW
Memory
OCZ LV 1066
Graphics Card
XFX gtx275
Hard Drive
WD aaks 320
Sound Card
Onboard
Power Supply
Corsair 750TX
Case
Storm Scout
CPU cooling
Dark Knight
GPU cooling
stock
OS
Vista 32-bit/Fedora 11
Monitor
Samsung 2333SW

Last edited by reezin14 : 07-03-09 at 04:33 PM
reezin14 is offline I fold for Overclock.net Overclocked Account reezin14's Gallery   Reply With Quote
Old 07-03-09   #2 (permalink)
Overclocker
 
blooder11181's Avatar
 
amd nvidia

Join Date: Jun 2007
Location: portugal, porto
Posts: 1,179

Rep: 20 blooder11181 is acknowledged by some
Unique Rep: 19
Trader Rating: 0
Default

Quote:
Originally Posted by reezin14 View Post
I just received this message a few minutes ago, I'm I being probed/attacked(what I'm thinking)or is this just a glitch with the software? I installed Fedora 11 2 days ago.TIA + rep for helpful post.
what anti virus are you using?
and the firewall is active
__________________


System: NOX BLACK X4BE/gtx280
CPU
phenom x4 9950 BE 125watts
Motherboard
asus m3a78
Memory
kingstone hyperX 1066mhz 4x1gb KHX8500D2K2/2G
Graphics Card
msi n280gtx super oc
Hard Drive
2x160gb sata2 maxtor+samsung
Sound Card
vt1708b
Power Supply
nox urano sli 600watts
Case
NOX COOLBAY BASIC
CPU cooling
revoltec pipetower pro
GPU cooling
stock
OS
windows 7 64bits
Monitor
asus wv222u 22"
blooder11181 is offline blooder11181's Gallery   Reply With Quote
Old 07-03-09   #3 (permalink)
Linux Lobbyist
 
Dawlish7's Avatar
 
intel nvidia

Join Date: Sep 2007
Location: Stoke UK
Posts: 1,318

Rep: 104 Dawlish7 is acknowledged by manyDawlish7 is acknowledged by many
Unique Rep: 78
Trader Rating: 3
Default

Quote:
Originally Posted by blooder11181 View Post
what anti virus are you using?
and the firewall is active
This is linux mate, it looks like se linux is blocking maybe in intruder or software searching your home etc, i hate se linux personally but have you installed anything recently
__________________
R.I.P - XAslanX Amigos

System: it does play crysis...
CPU
e8400 @ 4ghz
Motherboard
Asus p5q pro
Memory
4gb 1066 ocz
Graphics Card
4870 1GB
Hard Drive
seagate 500gb + 160gb
Sound Card
Creative extreme music
Power Supply
modular 520w corsair
Case
Antec 900
CPU cooling
TRUE
GPU cooling
stock
OS
Vista x64/Linux/win7
Monitor
Dell 24" + 20"
Dawlish7 is online now   Reply With Quote
Old 07-03-09   #4 (permalink)
Crimson Mantle Commander
 
reezin14's Avatar
 
intel nvidia

Join Date: Feb 2008
Location: 42* 30.7minN 89* 1.8minW
Posts: 3,630

Rep: 486 reezin14 is a proven memberreezin14 is a proven memberreezin14 is a proven memberreezin14 is a proven memberreezin14 is a proven member
Unique Rep: 368
Folding Team Rank: 648
Trader Rating: 7
Default

Quote:
Originally Posted by Dawlish7 View Post
This is linux mate, it looks like se linux is blocking maybe in intruder or software searching your home etc, i hate se linux personally but have you installed anything recently
Just the updates, that I downloaded when I first installed. BTW I use clam anti-virus(which wasn't active..... but now is). You don't like se huh,is there something else I can use instead?

System: Green Lantern II
CPU
Q9550
Motherboard
750i FTW
Memory
OCZ LV 1066
Graphics Card
XFX gtx275
Hard Drive
WD aaks 320
Sound Card
Onboard
Power Supply
Corsair 750TX
Case
Storm Scout
CPU cooling
Dark Knight
GPU cooling
stock
OS
Vista 32-bit/Fedora 11
Monitor
Samsung 2333SW

Last edited by reezin14 : 07-03-09 at 05:00 PM
reezin14 is offline I fold for Overclock.net Overclocked Account reezin14's Gallery   Reply With Quote
Old 07-03-09   #5 (permalink)
Need a New Protocol
 
Hueristic's Avatar
 
Join Date: Jul 2008
Location: Bottom_Of_A_Bottle
Posts: 7,758

Rep: 317 Hueristic is a proven memberHueristic is a proven memberHueristic is a proven memberHueristic is a proven member
Unique Rep: 214
Folding Team Rank: 65
Trader Rating: 2
Default

Looks like a spider to me, I'm no linux head but I would say whatever it is was probing and you blocked it.

I wouldn't be worried about the c1a.net, it's probally spoofed. BTW if the gov was checking you out it would be the n$a. And you would more than likely see all your traffic being redirected from your isp through las alemos.
__________________
I seldom argue my advice, It's free take it or leave it. READ this thread before starting your first build!!!
ALWAYS power up a Mobo Before installing it! Consider Less than helpful posts as Free Bumps.
¡¡¡ʍʇɟ qn1ɔ uoıʇɐıɔǝɹddɐ 939 ʇǝʞɔos ǝɥʇ:
[Official]November Foldathon Retro Rulez
This goes without saying but
1. If you can't afford to lose it don't mod or OC it.
2. At least read the OP before commenting.

Semper Fi
Overclock.net - 2009 Chimp Challenge Champions 2 Million+ Folding at Home points
Hueristic is offline I fold for Overclock.net Overclocked Account Hueristic's Gallery   Reply With Quote
Old 07-03-09   #6 (permalink)
Linux Lobbyist
 
Dawlish7's Avatar
 
intel nvidia

Join Date: Sep 2007
Location: Stoke UK
Posts: 1,318

Rep: 104 Dawlish7 is acknowledged by manyDawlish7 is acknowledged by many
Unique Rep: 78
Trader Rating: 3
Default

Quote:
Originally Posted by reezin14 View Post
Just the updates, that I downloaded when I first installed. BTW I use clam anti-virus(which wasn't active..... but now is). You don't like se huh,is there something else I can use instead?
I would keep whats active and working but with linux you wont need an anti virus, i personally dont use any internet security accept for spybot search and destroy on windows, but i have years of pure luck under my belt, i think after a while of blocked they will give up or move on, thank you for the rep
__________________
R.I.P - XAslanX Amigos

System: it does play crysis...
CPU
e8400 @ 4ghz
Motherboard
Asus p5q pro
Memory
4gb 1066 ocz
Graphics Card
4870 1GB
Hard Drive
seagate 500gb + 160gb
Sound Card
Creative extreme music
Power Supply
modular 520w corsair
Case
Antec 900
CPU cooling
TRUE
GPU cooling
stock
OS
Vista x64/Linux/win7
Monitor
Dell 24" + 20"
Dawlish7 is online now   Reply With Quote
Old 07-03-09   #7 (permalink)
Linux Lobbyist
 
Mr Pink57's Avatar
 
intel ati

Join Date: Jun 2006
Location: a van down by the river
Posts: 3,659

Rep: 229 Mr Pink57 is acknowledged by manyMr Pink57 is acknowledged by manyMr Pink57 is acknowledged by many
Unique Rep: 178
Trader Rating: 8
Default

From what little I've read about what Gconf is it's a daemon for gnome to auto applies new settings to apps. My guess is it does not have root priv and failed to update something.

pink
__________________
Quote:
Even a broken clock is right twice a day.
Quote:
Diplomacy without force is like music without instruments.
http://valid.canardpc.com/show_oc.php

System: Vadar
CPU
Core 2 Duo e6300
Motherboard
Gigabyte GA-EP45-UD3R
Memory
2 x 2gb G.Skill
Graphics Card
Powercolor HD4870 1gb w/ Ageia PhysX 128MB PCI-E
Hard Drive
[2]36gb Raptor RAID0 + 150gb Raptor
Sound Card
Auzentech X-Fi Prelude 7.1
Power Supply
Silverstone DA750 60a
Case
Antec P180B
CPU cooling
[Lapped] Noctua NH-U12P w/NF-P12 Push/Pull
GPU cooling
Zerotherm PCS+
OS
Winblows XP x64
Monitor
Acer X223Wbd
Mr Pink57 is offline Mr Pink57's Gallery   Reply With Quote
Old 07-04-09   #8 (permalink)
Crimson Mantle Commander
 
reezin14's Avatar
 
intel nvidia

Join Date: Feb 2008
Location: 42* 30.7minN 89* 1.8minW
Posts: 3,630

Rep: 486 reezin14 is a proven memberreezin14 is a proven memberreezin14 is a proven memberreezin14 is a proven memberreezin14 is a proven member
Unique Rep: 368
Folding Team Rank: 648
Trader Rating: 7
Default

Quote:
Originally Posted by Hueristic View Post
Looks like a spider to me, I'm no linux head but I would say whatever it is was probing and you blocked it.

I wouldn't be worried about the c1a.net, it's probally spoofed. BTW if the gov was checking you out it would be the n$a. And you would more than likely see all your traffic being redirected from your isp through las alemos.
LOL not @ you though,CIA is just part of my naming convention for my network.NSA is my server,and there is also FBI,MI-6,KGB,and CTU in the mix.

Quote:
Originally Posted by Mr Pink57 View Post
From what little I've read about what Gconf is it's a daemon for gnome to auto applies new settings to apps. My guess is it does not have root priv and failed to update something.

pink
Yeah,I started a daemon on my server to sync certain files today,so I think that's what's going on here.I'm not 100% sure so I'll keep an eye on it.

Thanks all for the info guys. + 1 all.

System: Green Lantern II
CPU
Q9550
Motherboard
750i FTW
Memory
OCZ LV 1066
Graphics Card
XFX gtx275
Hard Drive
WD aaks 320
Sound Card
Onboard
Power Supply
Corsair 750TX
Case
Storm Scout
CPU cooling
Dark Knight
GPU cooling
stock
OS
Vista 32-bit/Fedora 11
Monitor
Samsung 2333SW
reezin14 is offline I fold for Overclock.net Overclocked Account reezin14's Gallery   Reply With Quote
Old 07-04-09   #9 (permalink)
Linux Lobbyist
 
intel ati

Join Date: May 2009
Location: San Diego, CA
Posts: 233

Rep: 42 BLinux is acknowledged by some
Unique Rep: 34
Trader Rating: 0
Default

i don't think this is any indication of an attack really. there are several possibilities that could result in this, but this is what i think is most likely:

Did you recently apply an update that involved the SELinux targeted policies? If so, the developers may have made some improvements or updates to the policy and some of the security contexts of files need to be changed accordingly. When you update the policy, it doesn't automatically update the security context of all the files in the system, especially not files in home directories. You can usually correct this type of situation by doing the following:

1. Edit /etc/sysconfig/selinux and disable SELINUX (for now)
2. Reboot without SELinux running.
3. Now, as root, run 'fixfiles relabel' and give it some time to complete.
4. Next, edit /etc/sysconfig/selinux again and enable SELinux
5. Reboot again with SELinux running

Now go about your usual business. If the error appears again, post it again. The 'fixfiles' command will reset all the security context of all files to what *should* be appropriate based on the new file context policy. The steps above typically fix problems after SELinux policies have been changed/updated.

Another possibility is that a updated SELinux policy has an error in it. This is not uncommon, but usually if enough folks complain a new update to fix it will be released soon.
__________________
System: AURORA
CPU
Dual Quad-core E5420 2.5Ghz 12mb cache
Motherboard
Intel 5000 chipset
Memory
48GB FBDIMM DDR2 PC2-5300 667Mhz
Graphics Card
ATI ES1000
Hard Drive
8x500GB WD5002ABYS/RAID5 PERC6/I 256MB cache
Power Supply
950W x2
OS
CentOS 5.3
BLinux is offline   Reply With Quote
Old 07-04-09   #10 (permalink)
Linux Lobbyist
 
thiussat's Avatar
 
amd nvidia

Join Date: Apr 2008
Location: USA
Posts: 1,213

Rep: 186 thiussat is acknowledged by manythiussat is acknowledged by many
Unique Rep: 130
Trader Rating: 0
Default

Not an attack. It's just gconf trying to access something that wasn't predefined in the SELinux policy. This sometimes happens. The instructions of how to fix it are in the message itself.

BTW, did you modify the SELinux policies in any way? If you don't know exactly what you're doing, you shouldn't mess around with the policies.
__________________


"I can't bring myself to try Linux Mint because they keep naming the OS after ex-girlfriends or women I've had bad run ins with. Cassandra was a sexual harassing shift manager. And Felicia was a stalker who knew how to turn a good day into a hellish experience in 0-60." -- Anub1s from BBR forums

System: Windows Immune
CPU
X2 4000+ Brisbane@2.8 GHZ
Motherboard
Gigabyte GA-M57SLI-S4
Memory
1x2 GB Corsair XMS2 PC6400
Graphics Card
Geforce 8400GS
Hard Drive
WD5000AAKS 500GB SATA
Sound Card
Soundblaster Live! 5.1
Power Supply
Xclio X14-S4P3 500W
Case
NZXT Lexa Blackline
CPU cooling
Rosewill RCX-Z940-LX (lapped)
OS
Gentoo X86_64
Monitor
Asus VH242 24" 1920x1080p
thiussat is offline   Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools



All times are GMT -5. The time now is 12:43 PM.


Overclock.net is a Carbon Neutral Site Creative Commons License

Terms of Service / Forum Rules | Privacy Policy | DMCA Info | Advertising | Become an Official Vendor
Copyright © 2009 Shogun Interactive Development. Most rights reserved.
Page generated in 0.17636 seconds with 9 queries