| Author |
Message |
Jason Mather *nix forums beginner
Joined: 26 Feb 2005
Posts: 11
|
Posted: Thu Feb 10, 2005 9:18 pm Post subject:
Re: Help with forensics
|
|
|
Concerned Netizen wrote:
| Quote: | I have an AIX system that i suspect was hacked. Is there a log file on the system that i can interrogate to find out the IP address of the suspected intruder?
|
wtmp, unless the intruder wiped it out.
Use the "last" command.
-- Jason |
|
| Back to top |
|
 |
Douglas R. Probst *nix forums addict
Joined: 21 Feb 2005
Posts: 68
|
Posted: Thu Feb 10, 2005 6:40 pm Post subject:
Re: Help with forensics
|
|
|
No
"Concerned Netizen" <SpammeNotDangit@Bewell.com> wrote in message
news:LuNOd.3828$ZZ.3025@newssvr23.news.prodigy.net...
I have an AIX system that i suspect was hacked. Is there a log file on the
system that i can interrogate to find out the IP address of the suspected
intruder? |
|
| Back to top |
|
 |
Douglas R. Probst *nix forums addict
Joined: 21 Feb 2005
Posts: 68
|
Posted: Thu Feb 10, 2005 6:39 pm Post subject:
Re: Help with forensics
|
|
|
"Concerned Netizen" <SpammeNotDangit@Bewell.com> wrote in message
news:LuNOd.3828$ZZ.3025@newssvr23.news.prodigy.net...
I have an AIX system that i suspect was hacked. Is there a log file on the
system that i can interrogate to find out the IP address of the suspected
intruder? |
|
| Back to top |
|
 |
Concerned Netizen *nix forums beginner
Joined: 03 Mar 2005
Posts: 3
|
Posted: Thu Feb 10, 2005 5:12 pm Post subject:
Help with forensics
|
|
|
|
I have an AIX system that i suspect was hacked. Is there a log file on the system that i can interrogate to find out the IP address of the suspected intruder? |
|
| Back to top |
|
 |
Google
|
|
| Back to top |
|
 |
|