hello
I have Debian 4.0 and possibly a rootkit. does []s indicate
a rootkit in ps aux result? I suppose [] does not belong to
regular ps aux result.
ls -la /bin/ps prints this:
-rwxr-xr-x 1 root root 65292 2006-09-13 04:54 /bin/ps
ps --version prints this:
procps version 3.2.7
md5sum /bin/ps prints this:
7ccfcd49105666c1fce8ee5b88cad6ae /bin/ps
ps aux prints this:
USER PID %CPU %MEM VSZ RSS TTY STAT START TIME COMMAND
root 1 0.0 0.0 1948 644 ? Ss 09:18 0:01 init [2]
root 2 0.0 0.0 0 0 ? S 09:18 0:00 [migration/0]
root 3 0.0 0.0 0 0 ? SN 09:18 0:00 [ksoftirqd/0]
root 4 0.0 0.0 0 0 ? S 09:18 0:00 [migration/1]
root 5 0.0 0.0 0 0 ? SN 09:18 0:00 [ksoftirqd/1]
root 6 0.0 0.0 0 0 ? S< 09:18 0:00 [events/0]
root 7 0.0 0.0 0 0 ? S< 09:18 0:00 [events/1]
root 8 0.0 0.0 0 0 ? S< 09:18 0:00 [khelper]
root 9 0.0 0.0 0 0 ? S< 09:18 0:00 [kthread]
root 13 0.0 0.0 0 0 ? S< 09:18 0:00 [kblockd/0]
root 14 0.0 0.0 0 0 ? S< 09:18 0:00 [kblockd/1]
root 15 0.0 0.0 0 0 ? S< 09:18 0:00 [kacpid]
root 163 0.0 0.0 0 0 ? S< 09:18 0:00 [kseriod]
root 208 0.0 0.0 0 0 ? S 09:18 0:00 [pdflush]
root 209 0.0 0.0 0 0 ? S 09:18 0:00 [pdflush]
root 210 0.0 0.0 0 0 ? S< 09:18 0:00 [kswapd0]
root 211 0.0 0.0 0 0 ? S< 09:18 0:00 [aio/0]
root 212 0.0 0.0 0 0 ? S< 09:18 0:00 [aio/1]
root 365 0.0 0.0 0 0 ? S 09:18 0:00 [kirqd]
root 710 0.0 0.0 0 0 ? S< 09:18 0:00 [khubd]
root 791 0.0 0.0 0 0 ? S< 09:18 0:00 [khpsbpkt]
root 835 0.0 0.0 0 0 ? S 09:18 0:00 [knodemgrd_0]
root 873 0.0 0.0 0 0 ? S< 09:18 0:00 [scsi_eh_0]
root 874 0.0 0.0 0 0 ? S< 09:18 0:00 [usb-storage]
root 1431 0.0 0.0 0 0 ? S< 09:18 0:00 [reiserfs/0]
root 1432 0.0 0.0 0 0 ? S< 09:18 0:00 [reiserfs/1]
root 1620 0.0 0.0 2696 1140 ? S<s 09:18 0:00
udevd --daemon
root 2173 0.0 0.0 0 0 ? S< 09:18 0:00 [kpsmoused]
root 2321 0.0 0.0 0 0 ? S 09:18 0:00 [saa7133[0]]
root 2356 0.0 0.0 0 0 ? S< 09:18 0:00 [hda_codec]
root 2632 0.0 0.0 0 0 ? S< 09:18 0:00 [kmirrord]
daemon 2996 0.0 0.0 1684 372 ? Ss 09:18 0:00 /sbin/portmap
root 3249 0.0 0.0 1752 640 ? Ss 09:18 0:00 /sbin/syslogd
root 3255 0.0 0.0 1700 376 ? Ss 09:18
0:00 /sbin/klogd -x
root 3330 0.0 0.0 5008 912 ? Ss 09:19
0:00 /usr/sbin/hpiod
hplip 3342 0.0 0.3 9844 4912 ? S 09:19 0:00
python /usr/sbin/hpssd
root 3390 0.0 0.0 2672 1328 ? S 09:19
0:00 /bin/sh /usr/bin/mysqld_safe
mysql 3427 0.0 1.0 126980 16536 ? Sl 09:19
0:00 /usr/sbin/mysqld --basedir=/usr --data$root 3428 0.0 0.0 1560
500 ? S 09:19 0:00 logger -p daemon.err -t mysqld_safe -i$root
3559 0.0 0.0 1708 568 ? Ss 09:19
0:00 /usr/sbin/acpid -c /etc/acpi/events -s$root 3591 0.0 0.1 4644
1852 ? Ss 09:19 0:00 /usr/sbin/cupsd
103 3599 0.0 0.0 2384 960 ? Ss 09:19
0:00 /usr/bin/dbus-daemon --system
105 3607 0.0 0.3 6312 4752 ? Ss 09:19
0:01 /usr/sbin/hald
root 3608 0.0 0.0 2896 1044 ? S 09:19 0:00 hald-runner
105 3614 0.0 0.0 2020 852 ? S 09:19 0:00
hald-addon-acpi: listening on acpid so$105 3628 0.0 0.0 2020
860 ? S 09:19 0:00 hald-addon-keyboard: listening on /dev$105
3632 0.0 0.0 2020 860 ? S 09:19 0:00 hald-addon-keyboard:
listening on /dev$105 3635 0.0 0.0 2020 864 ? S 09:19
0:01 hald-addon-keyboard: listening on /dev$root 3644 0.0 0.0 1808
616 ? S 09:19 0:00 hald-addon-storage: polling /dev/sde
root 3646 0.0 0.0 1812 620 ? S 09:19 0:00
hald-addon-storage: polling /dev/sdd
root 3648 0.0 0.0 1808 616 ? S 09:19 0:00
hald-addon-storage: polling /dev/sdc
root 3650 0.0 0.0 1812 620 ? S 09:19 0:00
hald-addon-storage: polling /dev/sdb
root 3652 0.0 0.0 1812 620 ? S 09:19 0:00
hald-addon-storage: polling /dev/sda
root 3654 0.0 0.0 1808 728 ? S 09:19 0:00
hald-addon-storage: polling /dev/hdc
root 3669 0.0 0.0 1864 804 ? Ss 09:19
0:00 /usr/sbin/dhcdbd --system
root 3676 0.0 0.1 13204 1984 ? Ssl 09:19
0:00 /usr/sbin/NetworkManager --pid-file /v$avahi 3691 0.0 0.0 2552
1352 ? Ss 09:19 0:00 avahi-daemon: running [pc.local]
avahi 3692 0.0 0.0 2552 476 ? Ss 09:19 0:00 avahi-daemon:
chroot helper
root 3699 0.0 0.0 2936 1224 ? Ss 09:19
0:00 /usr/sbin/NetworkManagerDispatcher --p$100 3748 0.0 0.0 5368
1008 ? Ss 09:19 0:00 /usr/sbin/exim4 -bd -q30m
root 3785 0.0 0.0 1748 564 ? Ss 09:19
0:00 /usr/sbin/inetd
root 3825 0.0 0.1 11528 1724 ? Ss 09:19 0:00 /usr/sbin/gdm
root 3826 0.0 0.1 12012 2640 ? S 09:19 0:00 /usr/sbin/gdm
statd 3834 0.0 0.0 1756 736 ? Ss 09:19
0:00 /sbin/rpc.statd
root 3850 0.0 0.0 2300 1032 ? S 09:19
0:00 /sbin/dhclient -1 -lf /var/lib/dhcp3/d$ntp 3855 0.0 0.0 4144
1252 ? Ss 09:19 0:00 /usr/sbin/ntpd -p /var/run/ntpd.pid -u$daemon
3878 0.0 0.0 1952 416 ? Ss 09:19 0:00 /usr/sbin/atd
root 3885 0.0 0.0 2316 864 ? Ss 09:19
0:00 /usr/sbin/cron
root 3915 0.0 0.0 1576 496 tty1 Ss+ 09:19 0:00 /sbin/getty
38400 tty1
root 3916 0.0 0.0 1572 492 tty2 Ss+ 09:19 0:00 /sbin/getty
38400 tty2
root 3917 0.0 0.0 1576 496 tty3 Ss+ 09:19 0:00 /sbin/getty
38400 tty3
root 3918 0.0 0.0 1572 492 tty4 Ss+ 09:19 0:00 /sbin/getty
38400 tty4
root 3919 0.0 0.0 1576 496 tty5 Ss+ 09:19 0:00 /sbin/getty
38400 tty5
root 3920 0.0 0.0 1576 496 tty6 Ss+ 09:19 0:00 /sbin/getty
38400 tty6
root 3933 1.7 2.6 46696 40696 tty7 Ss+ 09:19
2:27 /usr/bin/X :0 -dpi 96 -audit 0 -auth /$mika 3997 0.0 0.7 21640
11452 ? Ss 09:20 0:00 x-session-manager
mika 4040 0.0 0.0 4136 692 ? Ss 09:20
0:00 /usr/bin/ssh-agent /usr/bin/dbus-launc$mika 4043 0.0 0.0 2568
620 ? S 09:20 0:00 /usr/bin/dbus-launch --exit-with-sessi$mika
4044 0.0 0.0 2248 900 ? Ss 09:20
0:00 /usr/bin/dbus-daemon --fork --print-pi$mika 4046 0.0 0.2 6304
3776 ? S 09:20 0:00 /usr/lib/libgconf2-4/gconfd-2 5
mika 4049 0.0 0.0 2556 780 ? S 09:20
0:00 /usr/bin/gnome-keyring-daemon
mika 4051 0.0 0.1 6592 3064 ? Ss 09:20
0:00 /usr/lib/bonobo-activation/bonobo-acti$mika 4053 0.0 0.6 29356
9688 ? Sl 09:20 0:00 /usr/lib/control-center/gnome-settings$mika
4056 0.0 0.6 17044 10360 ? Ss 09:20
0:05 /usr/bin/metacity --sm-client-id=defau$mika 4067 0.0 1.0 26240
15672 ? Ssl 09:20 0:01 gnome-panel --sm-client-id default1
mika 4069 0.0 1.2 58040 19304 ? Ssl 09:20 0:01
nautilus --no-default-window --sm-clie$mika 4072 0.0 0.3 17448
5292 ? Ss 09:20 0:00 gnome-volume-manager --sm-client-id de$mika
4077 0.0 0.4 17076 6448 ? Ss 09:20 0:00
vino-session --sm-client-id default5
mika 4080 0.0 0.3 12376 5064 ? Ss 09:20 0:00
bluetooth-applet
mika 4085 0.0 0.8 21920 12604 ? Ss 09:20 0:00
update-notifier
mika 4088 0.0 0.2 9956 4420 ? Sl 09:20
0:00 /usr/lib/gnome-vfs-2.0/gnome-vfs-daemo$mika 4092 0.0 0.6 18908
9608 ? Ss 09:20 0:00 nm-applet --sm-disable
mika 4097 0.0 0.8 22668 13532 ? S 09:20
0:02 /usr/lib/gnome-panel/wnck-applet --oaf$mika 4099 0.0 0.5 54564
7880 ? Ss 09:20 0:00 gnome-cups-icon --sm-client-id default3mika
4100 0.0 0.3 17912 5640 ? Ss 09:20 0:00 gnome-power-manager
mika 4107 0.0 0.0 2472 920 ? S 09:20
0:00 /usr/lib/nautilus-cd-burner/mapping-da$mika 4112 0.0 0.4 17444
7464 ? S 09:20 0:00 /usr/lib/gnome-panel/notification-area$mika
4114 0.0 0.8 22864 12504 ? S 09:20
0:00 /usr/lib/gnome-applets/mixer_applet2 -$mika 4116 0.0 0.7 24092
10980 ? S 09:20 0:00 /usr/lib/gnome-panel/clock-applet --oa$mika
4132 0.0 0.4 16908 6512 ? Ss 09:21 0:01 gnome-screensaver
mika 4136 0.0 0.4 25004 7140 ? Ss 09:21 0:00 kdeinit
Running...
mika 4140 0.0 0.4 24748 6880 ? S 09:21 0:00 dcopserver
[kdeinit] --nosid --suicide
mika 4142 0.0 0.5 26164 8864 ? S 09:21 0:00 klauncher
[kdeinit]
mika 4144 0.0 0.7 27828 11724 ? S 09:21 0:00 kded
[kdeinit]
mika 4149 0.0 0.8 33456 13548 ? S 09:21 0:00 knotify
[kdeinit]
mika 4156 0.0 0.3 11404 5720 ? S 09:21
0:00 /usr/bin/artsd -F 10 -S 4096 -s 60 -m $mika 4521 0.0 0.6 18184
10224 ? S 09:26 0:00 /usr/lib/notification-daemon/notificat$mika
4598 0.0 0.9 30472 14744 ? S 09:29 0:00 kio_uiserver [kdeinit]
mika 4604 1.4 4.3 136576 66968 ? Sl 09:29
1:58 /usr/bin/epiphany http://www.cs.tut.fi$mika 5010 0.0 0.9 33952
15332 ? Sl 09:45 0:02 gnome-terminal
mika 5012 0.0 0.0 2480 784 ? S 09:45 0:00
gnome-pty-helper
mika 5013 0.0 0.1 5488 3008 pts/0 Ss 09:45 0:00 bash
mika 5151 0.7 1.7 53836 26980 ? Sl 09:49 0:50
ktorrent --icon=ktorrent -caption KTor$mika 5154 0.0 0.4 25608
7712 ? S 09:49 0:00 kio_file [kdeinit] file /tmp/ksocket-m$mika
5156 0.0 0.6 53288 9360 ? S 09:49 0:00 kio_http [kdeinit]
http /tmp/ksocket-m$mika 5158 0.0 0.6 52264 9352 ? S 09:49
0:00 kio_http [kdeinit] http /tmp/ksocket-m$root 6589 0.0 4.6 94084
73084 pts/0 Sl 10:27 0:03 evince /mnt/400gt/kirjat_20.9.2007/emu$root
6591 0.0 0.2 6180 3604 pts/0 S 10:27
0:00 /usr/lib/libgconf2-4/gconfd-2 12
mika 6933 0.2 1.7 37764 27904 ? S 10:35
0:09 /usr/games/sol
root 8823 0.0 0.0 3716 1080 pts/0 S 11:19 0:00 su
root 8827 0.0 0.1 4016 1772 pts/0 S 11:19 0:00 bash
root 23182 0.0 0.1 4740 2456 pts/0 S+ 11:25
0:00 /bin/sh /usr/bin/rkhunter -c
mika 26398 0.0 0.1 5544 3068 pts/1 Ss 11:28 0:00 bash
mika 26481 3.2 4.6 91828 71644 ? Sl 11:29 0:24 evince
file:///media/cdrom0/arkisto/ti$mika 26943 0.0 0.0 3552 996 pts/1
R+ 11:42 0:00 ps aux
USER PID %CPU %MEM VSZ RSS TTY STAT START TIME COMMAND
root 1 0.0 0.0 1948 644 ? Ss 09:18 0:01 init [2]
root 2 0.0 0.0 0 0 ? S 09:18 0:00 [migration/0]
root 3 0.0 0.0 0 0 ? SN 09:18 0:00 [ksoftirqd/0]
root 4 0.0 0.0 0 0 ? S 09:18 0:00 [migration/1]
root 5 0.0 0.0 0 0 ? SN 09:18 0:00 [ksoftirqd/1]
root 6 0.0 0.0 0 0 ? S< 09:18 0:00 [events/0]
root 7 0.0 0.0 0 0 ? S< 09:18 0:00 [events/1]
root 8 0.0 0.0 0 0 ? S< 09:18 0:00 [khelper]
root 9 0.0 0.0 0 0 ? S< 09:18 0:00 [kthread]
root 13 0.0 0.0 0 0 ? S< 09:18 0:00 [kblockd/0]
root 14 0.0 0.0 0 0 ? S< 09:18 0:00 [kblockd/1]
root 15 0.0 0.0 0 0 ? S< 09:18 0:00 [kacpid]
root 163 0.0 0.0 0 0 ? S< 09:18 0:00 [kseriod]
root 208 0.0 0.0 0 0 ? S 09:18 0:00 [pdflush]
root 209 0.0 0.0 0 0 ? S 09:18 0:00 [pdflush]
root 210 0.0 0.0 0 0 ? S< 09:18 0:00 [kswapd0]
root 211 0.0 0.0 0 0 ? S< 09:18 0:00 [aio/0]
root 212 0.0 0.0 0 0 ? S< 09:18 0:00 [aio/1]
root 365 0.0 0.0 0 0 ? S 09:18 0:00 [kirqd]
root 710 0.0 0.0 0 0 ? S< 09:18 0:00 [khubd]
root 791 0.0 0.0 0 0 ? S< 09:18 0:00 [khpsbpkt]
root 835 0.0 0.0 0 0 ? S 09:18 0:00 [knodemgrd_0]
root 873 0.0 0.0 0 0 ? S< 09:18 0:00 [scsi_eh_0]
root 874 0.0 0.0 0 0 ? S< 09:18 0:00 [usb-storage]
root 1431 0.0 0.0 0 0 ? S< 09:18 0:00 [reiserfs/0]
root 1432 0.0 0.0 0 0 ? S< 09:18 0:00 [reiserfs/1]
root 1620 0.0 0.0 2696 1140 ? S<s 09:18 0:00 udevd --daemon
root 2173 0.0 0.0 0 0 ? S< 09:18 0:00 [kpsmoused]
root 2321 0.0 0.0 0 0 ? S 09:18 0:00 [saa7133[0]]
root 2356 0.0 0.0 0 0 ? S< 09:18 0:00 [hda_codec]
root 2632 0.0 0.0 0 0 ? S< 09:18 0:00 [kmirrord]
daemon 2996 0.0 0.0 1684 372 ? Ss 09:18 0:00 /sbin/portmap
root 3249 0.0 0.0 1752 640 ? Ss 09:18 0:00 /sbin/syslogd
root 3255 0.0 0.0 1700 376 ? Ss 09:18 0:00 /sbin/klogd -x
root 3330 0.0 0.0 5008 912 ? Ss 09:19 0:00 /usr/sbin/hpiod
hplip 3342 0.0 0.3 9844 4912 ? S 09:19 0:00 python
/usr/sbin/hpssd
root 3390 0.0 0.0 2672 1328 ? S 09:19 0:00 /bin/sh
/usr/bin/mysqld_safe
mysql 3427 0.0 1.0 126980 16536 ? Sl 09:19 0:00
/usr/sbin/mysqld --basedir=/usr --datadir=/var/lib/mysql --user=mysql
--pid-file=/var/run/mysqld/mysqld.pid --skip-external-locking --port=3306
--socket=/var/run/mysqld/mysqld.sock
root 3428 0.0 0.0 1560 500 ? S 09:19 0:00 logger -p
daemon.err -t mysqld_safe -i -t mysqld
root 3559 0.0 0.0 1708 568 ? Ss 09:19 0:00
/usr/sbin/acpid -c /etc/acpi/events -s /var/run/acpid.socket
root 3591 0.0 0.1 4644 1852 ? Ss 09:19 0:00 /usr/sbin/cupsd
103 3599 0.0 0.0 2384 960 ? Ss 09:19 0:00
/usr/bin/dbus-daemon --system
105 3607 0.0 0.3 6312 4752 ? Ss 09:19 0:01 /usr/sbin/hald
root 3608 0.0 0.0 2896 1044 ? S 09:19 0:00 hald-runner
105 3614 0.0 0.0 2020 852 ? S 09:19 0:00
hald-addon-acpi: listening on acpid socket /var/run/acpid.socket
105 3628 0.0 0.0 2020 860 ? S 09:19 0:00
hald-addon-keyboard: listening on /dev/input/event4
105 3632 0.0 0.0 2020 860 ? S 09:19 0:00
hald-addon-keyboard: listening on /dev/input/event1
105 3635 0.0 0.0 2020 864 ? S 09:19 0:01
hald-addon-keyboard: listening on /dev/input/event0
root 3644 0.0 0.0 1808 616 ? S 09:19 0:00
hald-addon-storage: polling /dev/sde
root 3646 0.0 0.0 1812 620 ? S 09:19 0:00
hald-addon-storage: polling /dev/sdd
root 3648 0.0 0.0 1808 616 ? S 09:19 0:00
hald-addon-storage: polling /dev/sdc
root 3650 0.0 0.0 1812 620 ? S 09:19 0:00
hald-addon-storage: polling /dev/sdb
root 3652 0.0 0.0 1812 620 ? S 09:19 0:00
hald-addon-storage: polling /dev/sda
root 3654 0.0 0.0 1808 728 ? S 09:19 0:00
hald-addon-storage: polling /dev/hdc
root 3669 0.0 0.0 1864 804 ? Ss 09:19 0:00
/usr/sbin/dhcdbd --system
root 3676 0.0 0.1 13204 1984 ? Ssl 09:19 0:00
/usr/sbin/NetworkManager --pid-file /var/run/NetworkManager/NetworkManager.pid
avahi 3691 0.0 0.0 2552 1352 ? Ss 09:19 0:00 avahi-daemon:
running [pc.local]
avahi 3692 0.0 0.0 2552 476 ? Ss 09:19 0:00 avahi-daemon:
chroot helper
root 3699 0.0 0.0 2936 1224 ? Ss 09:19 0:00
/usr/sbin/NetworkManagerDispatcher --pid-file
/var/run/NetworkManager/NetworkManagerDispatcher.pid
100 3748 0.0 0.0 5368 1008 ? Ss 09:19 0:00
/usr/sbin/exim4 -bd -q30m
root 3785 0.0 0.0 1748 564 ? Ss 09:19 0:00 /usr/sbin/inetd
root 3825 0.0 0.1 11528 1724 ? Ss 09:19 0:00 /usr/sbin/gdm
root 3826 0.0 0.1 12012 2640 ? S 09:19 0:00 /usr/sbin/gdm
statd 3834 0.0 0.0 1756 736 ? Ss 09:19 0:00 /sbin/rpc.statd
root 3850 0.0 0.0 2300 1032 ? S 09:19 0:00 /sbin/dhclient
-1 -lf /var/lib/dhcp3/dhclient.eth1.leases -pf /var/run/dhclient.eth1.pid -q -e
dhc_dbus=31 -d eth1
ntp 3855 0.0 0.0 4144 1252 ? Ss 09:19 0:00 /usr/sbin/ntpd
-p /var/run/ntpd.pid -u 108:112 -g
daemon 3878 0.0 0.0 1952 416 ? Ss 09:19 0:00 /usr/sbin/atd
root 3885 0.0 0.0 2316 864 ? Ss 09:19 0:00 /usr/sbin/cron
root 3915 0.0 0.0 1576 496 tty1 Ss+ 09:19 0:00 /sbin/getty
38400 tty1
root 3916 0.0 0.0 1572 492 tty2 Ss+ 09:19 0:00 /sbin/getty
38400 tty2
root 3917 0.0 0.0 1576 496 tty3 Ss+ 09:19 0:00 /sbin/getty
38400 tty3
root 3918 0.0 0.0 1572 492 tty4 Ss+ 09:19 0:00 /sbin/getty
38400 tty4
root 3919 0.0 0.0 1576 496 tty5 Ss+ 09:19 0:00 /sbin/getty
38400 tty5
root 3920 0.0 0.0 1576 496 tty6 Ss+ 09:19 0:00 /sbin/getty
38400 tty6
root 3933 1.7 2.6 46696 40696 tty7 Ss+ 09:19 2:27 /usr/bin/X :0
-dpi 96 -audit 0 -auth /var/lib/gdm/:0.Xauth -nolisten tcp vt7
mika 3997 0.0 0.7 21640 11452 ? Ss 09:20 0:00
x-session-manager
mika 4040 0.0 0.0 4136 692 ? Ss 09:20 0:00
/usr/bin/ssh-agent /usr/bin/dbus-launch --exit-with-session x-session-manager
mika 4043 0.0 0.0 2568 620 ? S 09:20 0:00
/usr/bin/dbus-launch --exit-with-session x-session-manager
mika 4044 0.0 0.0 2248 900 ? Ss 09:20 0:00
/usr/bin/dbus-daemon --fork --print-pid 4 --print-address 6 --session
mika 4046 0.0 0.2 6304 3776 ? S 09:20 0:00
/usr/lib/libgconf2-4/gconfd-2 5
mika 4049 0.0 0.0 2556 780 ? S 09:20 0:00
/usr/bin/gnome-keyring-daemon
mika 4051 0.0 0.1 6592 3064 ? Ss 09:20 0:00
/usr/lib/bonobo-activation/bonobo-activation-server --ac-activate
--ior-output-fd=18
mika 4053 0.0 0.6 29356 9688 ? Sl 09:20 0:00
/usr/lib/control-center/gnome-settings-daemon
--oaf-activate-iid=OAFIID:GNOME_SettingsDaemon --oaf-ior-fd=26
mika 4056 0.0 0.6 17044 10360 ? Ss 09:20 0:05
/usr/bin/metacity --sm-client-id=default0
mika 4067 0.0 1.0 26240 15672 ? Ssl 09:20 0:01 gnome-panel
--sm-client-id default1
mika 4069 0.0 1.2 58040 19304 ? Ssl 09:20 0:01 nautilus
--no-default-window --sm-client-id default2
mika 4072 0.0 0.3 17448 5292 ? Ss 09:20 0:00
gnome-volume-manager --sm-client-id default4
mika 4077 0.0 0.4 17076 6448 ? Ss 09:20 0:00 vino-session
--sm-client-id default5
mika 4080 0.0 0.3 12376 5064 ? Ss 09:20 0:00
bluetooth-applet
mika 4085 0.0 0.8 21920 12604 ? Ss 09:20 0:00 update-notifier
mika 4088 0.0 0.2 9956 4420 ? Sl 09:20 0:00
/usr/lib/gnome-vfs-2.0/gnome-vfs-daemon
--oaf-activate-iid=OAFIID:GNOME_VFS_Daemon_Factory --oaf-ior-fd=32
mika 4092 0.0 0.6 18908 9608 ? Ss 09:20 0:00 nm-applet
--sm-disable
mika 4097 0.0 0.8 22668 13532 ? S 09:20 0:02
/usr/lib/gnome-panel/wnck-applet
--oaf-activate-iid=OAFIID:GNOME_Wncklet_Factory --oaf-ior-fd=34
mika 4099 0.0 0.5 54564 7880 ? Ss 09:20 0:00
gnome-cups-icon --sm-client-id default3
mika 4100 0.0 0.3 17912 5640 ? Ss 09:20 0:00
gnome-power-manager
mika 4107 0.0 0.0 2472 920 ? S 09:20 0:00
/usr/lib/nautilus-cd-burner/mapping-daemon
mika 4112 0.0 0.4 17444 7464 ? S 09:20 0:00
/usr/lib/gnome-panel/notification-area-applet
--oaf-activate-iid=OAFIID:GNOME_NotificationAreaApplet_Factory --oaf-ior-fd=38
mika 4114 0.0 0.8 22864 12504 ? S 09:20 0:00
/usr/lib/gnome-applets/mixer_applet2
--oaf-activate-iid=OAFIID:GNOME_MixerApplet_Factory --oaf-ior-fd=39
mika 4116 0.0 0.7 24092 10980 ? S 09:20 0:00
/usr/lib/gnome-panel/clock-applet
--oaf-activate-iid=OAFIID:GNOME_ClockApplet_Factory --oaf-ior-fd=41
mika 4132 0.0 0.4 16908 6512 ? Ss 09:21 0:01
gnome-screensaver
mika 4136 0.0 0.4 25004 7140 ? Ss 09:21 0:00 kdeinit
Running...
mika 4140 0.0 0.4 24748 6880 ? S 09:21 0:00 dcopserver
[kdeinit] --nosid --suicide
mika 4142 0.0 0.5 26164 8864 ? S 09:21 0:00 klauncher
[kdeinit]
mika 4144 0.0 0.7 27828 11724 ? S 09:21 0:00 kded [kdeinit]
mika 4149 0.0 0.8 33456 13548 ? S 09:21 0:00 knotify
[kdeinit]
mika 4156 0.0 0.3 11404 5720 ? S 09:21 0:00 /usr/bin/artsd
-F 10 -S 4096 -s 60 -m artsmessage -l 3 -f
mika 4521 0.0 0.6 18184 10224 ? S 09:26 0:00
/usr/lib/notification-daemon/notification-daemon
mika 4598 0.0 0.9 30472 14744 ? S 09:29 0:00 kio_uiserver
[kdeinit]
mika 4604 1.4 4.3 136576 66968 ? Sl 09:29 1:58
/usr/bin/epiphany http://www.cs.tut.fi/~talatalo/
mika 5010 0.0 0.9 33952 15332 ? Sl 09:45 0:02 gnome-terminal
mika 5012 0.0 0.0 2480 784 ? S 09:45 0:00
gnome-pty-helper
mika 5013 0.0 0.1 5488 3008 pts/0 Ss 09:45 0:00 bash
mika 5151 0.7 1.7 53836 26980 ? Sl 09:49 0:50 ktorrent
--icon=ktorrent -caption KTorrent
mika 5154 0.0 0.4 25608 7712 ? S 09:49 0:00 kio_file
[kdeinit] file /tmp/ksocket-mika/klauncher2YwC4a.slave-socket
/tmp/ksocket-mika/ktorrentHYk8Tb.slave-socket
mika 5156 0.0 0.6 53288 9360 ? S 09:49 0:00 kio_http
[kdeinit] http /tmp/ksocket-mika/klauncher2YwC4a.slave-socket
/tmp/ksocket-mika/ktorrent7lLXTb.slave-socket
mika 5158 0.0 0.6 52264 9352 ? S 09:49 0:00 kio_http
[kdeinit] http /tmp/ksocket-mika/klauncher2YwC4a.slave-socket
/tmp/ksocket-mika/ktorrentYt1Bza.slave-socket
root 6589 0.0 4.6 94084 73084 pts/0 Sl 10:27 0:03 evince
/mnt/400gt/kirjat_20.9.2007/emule-tiedostoja
root 6591 0.0 0.2 6180 3604 pts/0 S 10:27 0:00
/usr/lib/libgconf2-4/gconfd-2 12
mika 6933 0.2 1.7 37764 27904 ? S 10:35 0:09 /usr/games/sol
root 8823 0.0 0.0 3716 1080 pts/0 S 11:19 0:00 su
root 8827 0.0 0.1 4016 1772 pts/0 S 11:19 0:00 bash
root 23182 0.0 0.1 4740 2456 pts/0 S+ 11:25 0:00 /bin/sh
/usr/bin/rkhunter -c
mika 26398 0.0 0.1 5544 3068 pts/1 Ss 11:28 0:00 bash
mika 26481 3.2 4.6 91828 71644 ? Sl 11:29 0:24 evince
file:///media/cdrom0/arkisto/tietokone/TK2_06.pdf
mika 26943 0.0 0.0 3552 996 pts/1 R+ 11:42 0:00 ps aux
-------------------------------------------------------------------------
Check out the new SourceForge.net Marketplace.
It's the best place to buy or sell services for
just about anything Open Source.
http://ad.doubleclick.net/clk;164216239;13503038;w?http://sf.net/marketplace
_______________________________________________
Rkhunter-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/rkhunter-users