全球主机交流论坛

 找回密码
 注册

QQ登录

只需一步,快速开始

IP归属甄别会员请立即修改密码
查看: 3317|回复: 7
打印 上一主题 下一主题

[疑问] 进程里多了个1007用户的进程,怎么回事啊!

[复制链接]
跳转到指定楼层
1#
发表于 2010-6-27 00:32:58 | 只看该作者 回帖奖励 |倒序浏览 |阅读模式
刚去看了下,发现多了个1007这个用户的进程,我装的是kloxo的。我自己没加多这个用户啊。而且vps我都是用来SSH反强的,没其他什么用途。是不是被人入侵了啊?靠。
2#
发表于 2010-6-27 00:59:32 | 只看该作者
也是登录SSH,去用户管理看下,有没有这个用户
3#
发表于 2010-6-27 01:03:04 | 只看该作者
我刚进了一个人的VPS
不过是windows vps, 应该不是楼主的
密码居然是123456
看了一下没什么有价值的东西就退了出来了
4#
发表于 2010-6-27 01:20:44 | 只看该作者

回复 3# 的帖子

~!额
5#
发表于 2010-6-27 08:15:12 | 只看该作者
PM我你的SSH,我帮你看看。
6#
发表于 2010-6-27 08:20:10 | 只看该作者
  1. vi /var/log/secure
复制代码
看看日志

评分

参与人数 1威望 +5 收起 理由
鸿星尔克 + 5 代码不错,收了

查看全部评分

7#
 楼主| 发表于 2010-6-27 10:25:50 | 只看该作者
原帖由 霸武邪皇 于 2010-6-27 08:20 发表
vi /var/log/secure看看日志

看了日志都是这个,不会看。。我自己没创建过这个1007用户的,我到面板看也没有这个用户,怎么回事呢。

Jun 27 03:36:07 ssh sshd[19746]: refused connect from ::ffff:117.81.236.79 (::ffff:117.81.236.79)
Jun 27 03:36:08 ssh sshd[20180]: refused connect from ::ffff:58.41.2.138 (::ffff:58.41.2.138)
Jun 27 03:36:15 ssh sshd[21737]: refused connect from ::ffff:58.41.2.138 (::ffff:58.41.2.138)
Jun 27 03:36:16 ssh sshd[21738]: refused connect from ::ffff:117.81.236.79 (::ffff:117.81.236.79)
Jun 27 03:36:20 ssh sshd[21739]: refused connect from ::ffff:58.41.2.138 (::ffff:58.41.2.138)
Jun 27 03:36:21 ssh sshd[21741]: refused connect from ::ffff:58.41.2.138 (::ffff:58.41.2.138)
Jun 27 03:36:25 ssh sshd[21743]: refused connect from ::ffff:117.81.236.79 (::ffff:117.81.236.79)
Jun 27 03:36:28 ssh sshd[21745]: refused connect from ::ffff:58.41.2.138 (::ffff:58.41.2.138)
Jun 27 03:36:33 ssh sshd[21756]: refused connect from ::ffff:117.81.236.79 (::ffff:117.81.236.79)
Jun 27 03:36:34 ssh sshd[21760]: refused connect from ::ffff:58.41.2.138 (::ffff:58.41.2.138)
Jun 27 03:36:39 ssh sshd[21764]: refused connect from ::ffff:58.41.2.138 (::ffff:58.41.2.138)
Jun 27 03:36:41 ssh sshd[21770]: refused connect from ::ffff:58.41.2.138 (::ffff:58.41.2.138)
Jun 27 03:36:42 ssh sshd[21774]: refused connect from ::ffff:117.81.236.79 (::ffff:117.81.236.79)
Jun 27 03:36:48 ssh sshd[21786]: refused connect from ::ffff:58.41.2.138 (::ffff:58.41.2.138)
Jun 27 03:36:50 ssh sshd[21792]: refused connect from ::ffff:117.81.236.79 (::ffff:117.81.236.79)
Jun 27 03:36:54 ssh sshd[21816]: refused connect from ::ffff:58.41.2.138 (::ffff:58.41.2.138)
Jun 27 03:36:56 ssh sshd[24490]: pam_unix(sshd:session): session closed for user www.fanqiang.cc
Jun 27 03:36:58 ssh sshd[21842]: refused connect from ::ffff:58.41.2.138 (::ffff:58.41.2.138)
Jun 27 03:36:58 ssh sshd[21845]: refused connect from ::ffff:117.81.236.79 (::ffff:117.81.236.79)
Jun 27 03:37:01 ssh sshd[21863]: refused connect from ::ffff:58.41.2.138 (::ffff:58.41.2.138)
Jun 27 03:37:07 ssh sshd[21871]: refused connect from ::ffff:58.41.2.138 (::ffff:58.41.2.138)
Jun 27 03:37:07 ssh sshd[21873]: refused connect from ::ffff:117.81.236.79 (::ffff:117.81.236.79)
Jun 27 03:37:14 ssh sshd[21883]: refused connect from ::ffff:58.41.2.138 (::ffff:58.41.2.138)
Jun 27 03:37:15 ssh sshd[21884]: refused connect from ::ffff:117.81.236.79 (::ffff:117.81.236.79)
Jun 27 03:37:17 ssh sshd[21885]: refused connect from ::ffff:58.41.2.138 (::ffff:58.41.2.138)
Jun 27 03:37:21 ssh sshd[21892]: refused connect from ::ffff:58.41.2.138 (::ffff:58.41.2.138)
Jun 27 03:37:24 ssh sshd[21898]: refused connect from ::ffff:117.81.236.79 (::ffff:117.81.236.79)
Jun 27 03:37:26 ssh sshd[21900]: refused connect from ::ffff:58.41.2.138 (::ffff:58.41.2.138)
Jun 27 03:37:31 ssh sshd[21916]: refused connect from ::ffff:117.81.236.79 (::ffff:117.81.236.79)
Jun 27 03:37:33 ssh sshd[21918]: refused connect from ::ffff:58.41.2.138 (::ffff:58.41.2.138)
Jun 27 03:37:36 ssh sshd[21919]: refused connect from ::ffff:58.41.2.138 (::ffff:58.41.2.138)
Jun 27 03:37:40 ssh sshd[21921]: refused connect from ::ffff:117.81.236.79 (::ffff:117.81.236.79)
Jun 27 03:37:41 ssh sshd[21924]: refused connect from ::ffff:58.41.2.138 (::ffff:58.41.2.138)
Jun 27 03:37:45 ssh sshd[21929]: refused connect from ::ffff:58.41.2.138 (::ffff:58.41.2.138)
Jun 27 03:37:48 ssh sshd[21931]: refused connect from ::ffff:117.81.236.79 (::ffff:117.81.236.79)
Jun 27 03:37:53 ssh sshd[21939]: refused connect from ::ffff:58.41.2.138 (::ffff:58.41.2.138)
Jun 27 03:37:55 ssh sshd[21941]: refused connect from ::ffff:58.41.2.138 (::ffff:58.41.2.138)
Jun 27 03:37:57 ssh sshd[21942]: refused connect from ::ffff:117.81.236.79 (::ffff:117.81.236.79)
Jun 27 03:38:00 ssh sshd[21952]: refused connect from ::ffff:58.41.2.138 (::ffff:58.41.2.138)
Jun 27 03:38:05 ssh sshd[22013]: refused connect from ::ffff:58.41.2.138 (::ffff:58.41.2.138)
Jun 27 03:38:05 ssh sshd[22014]: refused connect from ::ffff:117.81.236.79 (::ffff:117.81.236.79)
Jun 27 03:38:13 ssh sshd[22035]: refused connect from ::ffff:58.41.2.138 (::ffff:58.41.2.138)
Jun 27 03:38:14 ssh sshd[22039]: refused connect from ::ffff:117.81.236.79 (::ffff:117.81.236.79)
8#
发表于 2010-6-27 13:26:58 | 只看该作者
kill 1007
userdel -r 1007
您需要登录后才可以回帖 登录 | 注册

本版积分规则

Archiver|手机版|小黑屋|全球主机交流论坛

GMT+8, 2026-1-8 05:08 , Processed in 0.210298 second(s), 13 queries , Gzip On, MemCache On.

Powered by Discuz! X3.4

© 2001-2023 Discuz! Team.

快速回复 返回顶部 返回列表