niXforums Forum Index
 FAQFAQ   SearchSearch   MemberlistMemberlist   UsergroupsUsergroups   RegisterRegister 
 ProfileProfile   PreferencesPreferences   Log in to check your private messagesLog in to check your private messages   Log inLog in 
·  nixdoc.net ·  man pages ·  Linux HOWTOs ·  FreeBSD Tips ·  Forums
navigation Forum index » *nix » AIX
Help with forensics
Post new topic   Reply to topic Page 1 of 1 [4 Posts] View previous topic :: View next topic
Author Message
Jason Mather
*nix forums beginner


Joined: 26 Feb 2005
Posts: 11

PostPosted: Thu Feb 10, 2005 9:18 pm    Post subject: Re: Help with forensics Reply with quote

Concerned Netizen wrote:
Quote:
I have an AIX system that i suspect was hacked. Is there a log file on the system that i can interrogate to find out the IP address of the suspected intruder?


wtmp, unless the intruder wiped it out.

Use the "last" command.

-- Jason
Back to top
Douglas R. Probst
*nix forums addict


Joined: 21 Feb 2005
Posts: 68

PostPosted: Thu Feb 10, 2005 6:40 pm    Post subject: Re: Help with forensics Reply with quote

No
"Concerned Netizen" <SpammeNotDangit@Bewell.com> wrote in message
news:LuNOd.3828$ZZ.3025@newssvr23.news.prodigy.net...
I have an AIX system that i suspect was hacked. Is there a log file on the
system that i can interrogate to find out the IP address of the suspected
intruder?
Back to top
Douglas R. Probst
*nix forums addict


Joined: 21 Feb 2005
Posts: 68

PostPosted: Thu Feb 10, 2005 6:39 pm    Post subject: Re: Help with forensics Reply with quote

"Concerned Netizen" <SpammeNotDangit@Bewell.com> wrote in message
news:LuNOd.3828$ZZ.3025@newssvr23.news.prodigy.net...
I have an AIX system that i suspect was hacked. Is there a log file on the
system that i can interrogate to find out the IP address of the suspected
intruder?
Back to top
Concerned Netizen
*nix forums beginner


Joined: 03 Mar 2005
Posts: 3

PostPosted: Thu Feb 10, 2005 5:12 pm    Post subject: Help with forensics Reply with quote

I have an AIX system that i suspect was hacked. Is there a log file on the system that i can interrogate to find out the IP address of the suspected intruder?
Back to top
Google

Back to top
Display posts from previous:   
Post new topic   Reply to topic Page 1 of 1 [4 Posts] View previous topic :: View next topic
The time now is Fri Jan 09, 2009 12:11 am | All times are GMT
navigation Forum index » *nix » AIX
Jump to:  

Similar Topics
Topic Author Forum Replies Last Post
No new posts Bug#357738: ITP: dcfldd -- enhanced version of dd for for... Kenny Duffus devel 0 Sun Mar 19, 2006 10:40 am
No new posts Computer Security and Forensics FAQ Forum moredoug@gmail.com Setup 0 Sat Mar 18, 2006 3:46 am

Advertising | Bankruptcy | Debt Consolidation | Watch American Dad | Credit Counseling
Copyright © 2004-2005 DeniX Solutions SRL
 
Other DeniX Solutions sites: Unix/Linux blog |  electronics forum |  medicine forum |  science forum | 
Privacy Policy


Powered by phpBB © 2001, 2005 phpBB Group
[ Time: 0.1910s ][ Queries: 17 (0.0922s) ][ GZIP on - Debug on ]