LinuxQuestions.org
Help answer threads with 0 replies.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 06-22-2014, 12:08 AM   #1
kekegt2
LQ Newbie
 
Registered: Jun 2014
Posts: 1

Rep: Reputation: Disabled
.IptabLes process keeps uploading at max speed


Hi, I ran into an issue last night. I’m running opensuse 13.1 with all recent updates installed. My network connection was a bit sloppy so I called my ISP’s tech support. After an hour on the phone, we didn’t find anything that was hardware related and we noticed that when the pc I have issues with was disconnected from the network, everything was fine. So, I searched into the active processes in ksysguard and saw that iptables was using a lot of cpu power, and that my upload rate was about 6.4 mbps. So, I killed iptables (the process) and everything was fine. But, each time I want to access the network, the process turns on again and my up rate goes back to max speed… I wondered if this is a known bug from recent updates or… please replie soon.
 
Old 06-22-2014, 04:01 AM   #2
unSpawn
Moderator
 
Registered: May 2001
Posts: 29,415
Blog Entries: 55

Rep: Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600
Quote:
Originally Posted by kekegt2 View Post
(..) I searched into the active processes in ksysguard and saw that iptables was using a lot of cpu power, and that my upload rate was about 6.4 mbps. So, I killed iptables (the process) and everything was fine. But, each time I want to access the network, the process turns on again and my up rate goes back to max speed… I wondered if this is a known bug from recent updates or… please replie soon.
Installing those files required root rights. So I'm sorry to say but your machine has been compromised. (See https://www.linuxquestions.org/quest...ptables-36083/ and anything else I tagged as "iptablex".)

What remains is:
0) finding out how and when they got in,
1) marking backups (you do keep backups, right?) from that date on as "tainted",
2) reviewing any (personal) information they could have had access to for change,
3) install the OS from scratch, change all pass phrases and keys, harden your OS properly.

Any questions, please ask.
 
  


Reply

Tags
iptablex



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
chassis fan at max speed, no speed control? gtludwig Slackware 2 10-04-2010 05:29 PM
poor uploading speed in Openvpn ajayan Linux - Newbie 3 08-25-2010 02:15 AM
How do you determine max interface speed? Blinker_Fluid Solaris / OpenSolaris 1 05-14-2008 11:12 AM
vmstat so/si testing max speed. MikeyCarter Linux - Software 1 01-09-2008 06:56 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 07:06 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration