Security Concerns

Started by sbhasin, June 15, 2005, 01:24:41 PM

Previous topic - Next topic

sbhasin

So, getting straight to the point:

I don't know (and pardon my ignorance) if this is exactly related to the toaster or not but I see extremely strange entries when I perform a "Last" command on my FreeBSD 5.4 box. The reason why I am posting here is becuase this is happening since right after I installed/configured the toaster on my box. I'd really appreciate any help and thanks for your time.


Here's a sample output :

hostname# last -20
1                Ðn°Bttyp                  Wed Dec 31 16:00   still logged in
1                K°Bttyp                  Wed Dec 31 16:00   still logged in
0                F=°Bttyp                  Wed Dec 31 16:00   still logged in
0                6Û¯Bttyp                  Wed Dec 31 16:00   still logged in
0                mÚ¯Bttyp                  Wed Dec 31 16:00   still logged in
7                mÚ¯Bttyv                  Wed Dec 31 16:00   still logged in
0                ¯Bttyp                  Wed Dec 31 16:00   still logged in
0                (o¯Bttyp                  Wed Dec 31 16:00   still logged in
2                ëg¯Bttyp                  Wed Dec 31 16:00   still logged in

sbhasin

so, this is not exactly related to the toaster. I did all sorts of checks to make sure that the box was not borken into. I did arrive at the conclusion that this happens as a result of a corrupt /var/log/wtmp and simply re-creating that (obviously after backup of the original was made) fixed this problem.

The file appears to have gotten corrupted after a reboot (and a manual fsck was required).