Bug 10904 - connection hacking or worm virus i hope this helps
Summary: connection hacking or worm virus i hope this helps
Status: CLOSED NOTABUG
Alias: None
Product: IPFire
Classification: Unclassified
Component: --- (show other bugs)
Version: 2
Hardware: all All
: - Unknown - - Unknown -
Assignee: Assigned to nobody - feel free to grab it and work on it
QA Contact:
URL:
Keywords:
Depends on:
Blocks:
 
Reported: 2015-07-25 14:35 UTC by robert fairbrother
Modified: 2017-11-08 16:47 UTC (History)
2 users (show)

See Also:


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description robert fairbrother 2015-07-25 14:35:56 UTC
so im using a shaw buisness connection with a static ip address i have installed ipfire ontwodifferent machines the current oneis a inteld915 motherboard with a broadcom nextreme BCM5071 gigabit ethernet and a realtek rtl8169 pci gigabit ethernet and a broadcom ssl encryption accellorator

symptoms of my machine are nextmachine is leasing the subnet mask in agarbeldipaddress websiteipaddresses are being redirected through the loopback interface 3 packets in connections are showing ff:ff for all the mac addresses this machine was recording logs and bandwidth through nowis not showing bandwidth and there are no log entry's forthe last3days 
i have mounted the usb hard drive under system rescue cd and have created detailed backupsofthe filesystem for your inspection stored it on my drop box account
https://www.dropbox.com/s/4htnzs3x7vi84lc/sda4%20ipfire.000?dl=0
https://www.dropbox.com/s/eegh9l5ryyxhp4y/ipfire%20backup%20of%20sda3.000?dl=0
https://www.dropbox.com/s/4htnzs3x7vi84lc/sda4%20ipfire.000?dl=0

ill be xpecting an email ill hold on to the ssd drive for now please let me know if theres anything more i can do i have gotten in toutch with the owners ofcertain ipaddresses found in the logs and we are building a case for legal suit due to the damages of our hardware
i hope it helps
Comment 1 robert fairbrother 2015-07-29 09:04:02 UTC
Here is some of the filesystem from the second ipfire installation 
The subnet mask may not have been coded properly it was on my todo lst. 

A fedora installation would appear to have its 
software updates tainted. A previous fedora 21 installation had a virus in the software directory's it was removed and the package reinstalled without problems

Im having a hell of a time trying to backup sda4 the crash data of xarchiver is sayin something about outputting to a mac address 

https://bugzilla.redhat.com/show_bug.cgi?id=1247455

https://bugzilla.redhat.com/show_bug.cgi?id=1247456

https://bugzilla.redhat.com/show_bug.cgi?id=1247457

here is some of the backups of the file system

https://www.dropbox.com/s/y6megh14weayspo/filter1%20sda1%20backup.000?dl=0

https://www.dropbox.com/s/h5j7fci2gyals3j/backup%20of%20filter1%20sda3.000?dl=0
Comment 2 Peter Müller 2017-11-08 16:47:03 UTC
Closing this since it does not seem to be a bug (I am afraid I did not get what you want to say, please use some punctiuation marks next time. :-) ).