[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

the identd and backresolving addition



I included strace.out if it helps one out to solve this mistery.

--Roman Shterenzon
========================================================================
Running Windows on a Pentium is like having a brand new Porsche but only
be able to drive backwards with the handbrake on.
(Unknown source)
========================================================================
execve("/usr/sbin/in.identd", ["in.identd", "-b", "-d", "-l", "-N"], [/* 22 vars */]) = 0
mmap(0, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x40006000
mprotect(0x8048000, 18237, PROT_READ|PROT_WRITE|PROT_EXEC) = 0
stat("/etc/ld.so.cache", {st_mode=S_IFREG|0644, st_size=4018, ...}) = 0
open("/etc/ld.so.cache", O_RDONLY)      = 3
mmap(0, 4018, PROT_READ, MAP_SHARED, 3, 0) = 0x40007000
close(3)                                = 0
open("/lib/libc.so.5.4.38", O_RDONLY)   = 3
read(3, "\177ELF\1\1\1\0\0\0\0\0\0\0\0\0\3"..., 4096) = 4096
mmap(0, 770048, PROT_NONE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x40008000
mmap(0x40008000, 537347, PROT_READ|PROT_EXEC, MAP_PRIVATE|MAP_FIXED, 3, 0) = 0x40008000
mmap(0x4008c000, 19952, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED, 3, 0x83000) = 0x4008c000
mmap(0x40091000, 207068, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_ANONYMOUS, -1, 0) = 0x40091000
close(3)                                = 0
mprotect(0x40008000, 537347, PROT_READ|PROT_WRITE|PROT_EXEC) = 0
munmap(0x40007000, 4018)                = 0
mprotect(0x8048000, 18237, PROT_READ|PROT_EXEC) = 0
mprotect(0x40008000, 537347, PROT_READ|PROT_EXEC) = 0
personality(PER_LINUX)                  = 0
geteuid()                               = 0
getuid()                                = 0
getgid()                                = 0
getegid()                               = 0
ioctl(0, TCGETS, {B9600 opost isig icanon echo ...}) = 0
brk(0x804fae0)                          = 0x804fae0
brk(0x8050000)                          = 0x8050000
open("/etc/identd.conf", O_RDONLY)      = -1 ENOENT (No such file or directory)
socket(PF_INET, SOCK_STREAM, IPPROTO_IP) = 3
dup2(3, 0)                              = 0
setsockopt(0, SOL_SOCKET, SO_REUSEADDR, [1], 4) = 0
bind(0, {sin_family=AF_INET, sin_port=htons(113), sin_addr=inet_addr("0.0.0.0")}, 16) = 0
listen(0, 3)                            = 0
sigaction(SIGCHLD, {SIG_IGN}, {SIG_DFL}) = 0
oldselect(1024, [0], NULL, NULL, NULL)  = 1 (in [0])
accept(0, {sin_family=AF_INET, sin_port=htons(63749), sin_addr=inet_addr("132.68.7.4")}, [16]) = 4
fork()                                  = 2472
[pid  2470] close(4)                    = 0
[pid  2470] oldselect(1024, [0], NULL, NULL, NULL <unfinished ...>
[pid  2472] dup2(4, 0)                  = 0
[pid  2472] dup2(4, 1)                  = 1
[pid  2472] dup2(4, 2)                  = 2
[pid  2472] getpeername(0, {sin_family=AF_INET, sin_port=htons(63749), sin_addr=inet_addr("132.68.7.4")}, [16]) = 0
[pid  2472] stat("/etc/locale/C/libc.cat", 0xbfffea18) = -1 ENOENT (No such file or directory)
[pid  2472] stat("/usr/share/locale/C/libc.cat", 0xbfffea18) = -1 ENOENT (No such file or directory)
[pid  2472] stat("/usr/share/locale/libc/C", 0xbfffea18) = -1 ENOENT (No such file or directory)
[pid  2472] stat("/usr/share/locale/C/libc.cat", 0xbfffea18) = -1 ENOENT (No such file or directory)
[pid  2472] stat("/usr/local/share/locale/C/libc.cat", 0xbfffea18) = -1 ENOENT (No such file or directory)
[pid  2472] open("/etc/host.conf", O_RDONLY) = 5
[pid  2472] fstat(5, {st_mode=S_IFREG|0644, st_size=47, ...}) = 0
[pid  2472] fcntl(5, F_GETFL)           = 0 (flags O_RDONLY)
[pid  2472] fstat(5, {st_mode=S_IFREG|0644, st_size=47, ...}) = 0
[pid  2472] mmap(0, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x40007000
[pid  2472] lseek(5, 0, SEEK_CUR)       = 0
[pid  2472] read(5, "order hosts,bind\nmulti on\ntrim"..., 4096) = 47
[pid  2472] gettimeofday({886894835, 165775}, NULL) = 0
[pid  2472] getpid()                    = 2472
[pid  2472] open("/etc/resolv.conf", O_RDONLY) = 6
[pid  2472] fstat(6, {st_mode=S_IFREG|0644, st_size=125, ...}) = 0
[pid  2472] mmap(0, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x400c4000
[pid  2472] read(6, "domain mapc.dyn.ml.org\nnameserv"..., 4096) = 125
[pid  2472] read(6, "", 4096)           = 0
[pid  2472] close(6)                    = 0
[pid  2472] munmap(0x400c4000, 4096)    = 0
[pid  2472] read(5, "", 4096)           = 0
[pid  2472] close(5)                    = 0
[pid  2472] munmap(0x40007000, 4096)    = 0
[pid  2472] open("/etc/hosts", O_RDONLY) = 5
[pid  2472] fstat(5, {st_mode=S_IFREG|0644, st_size=91, ...}) = 0
[pid  2472] mmap(0, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x40007000
[pid  2472] read(5, "127.0.0.1\tlocalhost\tlocalhost."..., 4096) = 91
[pid  2472] read(5, "", 4096)           = 0
[pid  2472] close(5)                    = 0
[pid  2472] munmap(0x40007000, 4096)    = 0
[pid  2472] socket(PF_INET, SOCK_DGRAM, IPPROTO_IP) = 5
[pid  2472] connect(5, {sin_family=AF_INET, sin_port=htons(53), sin_addr=inet_addr("194.90.1.5")}, 16) = 0
[pid  2472] send(5, "~\325\1\0\0\1\0\0\0\0\0\0\0014\001"..., 41, 0) = 41
[pid  2472] oldselect(6, [5], NULL, NULL, {5, 0}) = 1 (in [5], left {4, 640000})
[pid  2472] recvfrom(5, "~\325\201\200\0\1\0\1\0\3\0\3\001"..., 1024, 0, {sin_family=AF_INET, sin_port=htons(53), sin_addr=inet_addr("194.90.1.5")}, [16]) = 201
[pid  2472] close(5)                    = 0
[pid  2472] uname({sys="Linux", node="mapc.dyn.ml.org", ...}) = 0
[pid  2472] open("/etc/hosts", O_RDONLY) = 5
[pid  2472] fstat(5, {st_mode=S_IFREG|0644, st_size=91, ...}) = 0
[pid  2472] mmap(0, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x40007000
[pid  2472] read(5, "127.0.0.1\tlocalhost\tlocalhost."..., 4096) = 91
[pid  2472] read(5, "", 4096)           = 0
[pid  2472] close(5)                    = 0
[pid  2472] munmap(0x40007000, 4096)    = 0
[pid  2472] socket(PF_INET, SOCK_DGRAM, IPPROTO_IP) = 5
[pid  2472] connect(5, {sin_family=AF_INET, sin_port=htons(53), sin_addr=inet_addr("194.90.1.5")}, 16) = 0
[pid  2472] send(5, "~\326\1\0\0\1\0\0\0\0\0\0\003199"..., 33, 0) = 33
[pid  2472] oldselect(6, [5], NULL, NULL, {5, 0}) = 1 (in [5], left {3, 910000})
[pid  2472] recvfrom(5, "~\326\205\203\0\1\0\0\0\1\0\0\003"..., 1024, 0, {sin_family=AF_INET, sin_port=htons(53), sin_addr=inet_addr("194.90.1.5")}, [16]) = 106
[pid  2472] close(5)                    = 0
[pid  2472] socket(PF_INET, SOCK_DGRAM, IPPROTO_IP) = 5
[pid  2472] connect(5, {sin_family=AF_INET, sin_port=htons(53), sin_addr=inet_addr("194.90.1.5")}, 16) = 0
[pid  2472] send(5, "~\327\1\0\0\1\0\0\0\0\0\0\003199"..., 50, 0) = 50
[pid  2472] oldselect(6, [5], NULL, NULL, {5, 0}) = 1 (in [5], left {4, 780000})
[pid  2472] recvfrom(5, "~\327\205\203\0\1\0\0\0\1\0\0\003"..., 1024, 0, {sin_family=AF_INET, sin_port=htons(53), sin_addr=inet_addr("194.90.1.5")}, [16]) = 117
[pid  2472] close(5)                    = 0
[pid  2472] socket(PF_INET, SOCK_DGRAM, IPPROTO_IP) = 5
[pid  2472] connect(5, {sin_family=AF_INET, sin_port=htons(53), sin_addr=inet_addr("194.90.1.5")}, 16) = 0
[pid  2472] send(5, "~\330\1\0\0\1\0\0\0\0\0\0\003199"..., 48, 0) = 48
[pid  2472] oldselect(6, [5], NULL, NULL, {5, 0}) = 1 (in [5], left {4, 690000})
[pid  2472] recvfrom(5, "~\330\205\203\0\1\0\0\0\1\0\0\003"..., 1024, 0, {sin_family=AF_INET, sin_port=htons(53), sin_addr=inet_addr("194.90.1.5")}, [16]) = 116
[pid  2472] close(5)                    = 0
[pid  2472] sigaction(SIGPIPE, {0x4003efc4, [], 0}, {SIG_DFL}) = 0
[pid  2472] socket(PF_UNIX, SOCK_STREAM, 0) = 5
[pid  2472] connect(5, {sun_family=AF_UNIX, sun_path="/dev/log"}, 10) = 0
[pid  2472] time([886894837])           = 886894837
[pid  2472] open("/usr/lib/zoneinfo/localtime", O_RDONLY) = 6
[pid  2472] read(6, "\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0"..., 6460) = 413
[pid  2472] close(6)                    = 0
[pid  2472] time(NULL)                  = 886894837
[pid  2472] getpid()                    = 2472
[pid  2472] write(5, "<30>Feb  8 01:40:37 identd[2472]"..., 61) = 61
[pid  2472] sigaction(SIGPIPE, {SIG_DFL}, NULL) = 0
[pid  2472] getsockname(0, {sin_family=AF_INET, sin_port=htons(113), sin_addr=inet_addr("199.203.102.100")}, [16]) = 0
[pid  2472] sigaction(SIGPIPE, {0x4003efc4, [], 0}, {SIG_DFL}) = 0
[pid  2472] time([886894837])           = 886894837
[pid  2472] getpid()                    = 2472
[pid  2472] write(5, "<31>Feb  8 01:40:37 identd[2472]"..., 54) = 54
[pid  2472] sigaction(SIGPIPE, {SIG_DFL}, NULL) = 0
[pid  2472] sigaction(SIGPIPE, {0x4003efc4, [], 0}, {SIG_DFL}) = 0
[pid  2472] time([886894837])           = 886894837
[pid  2472] getpid()                    = 2472
[pid  2472] write(5, "<31>Feb  8 01:40:37 identd[2472]"..., 52) = 52
[pid  2472] sigaction(SIGPIPE, {SIG_DFL}, NULL) = 0
[pid  2472] fstat(0, {st_mode=S_IFSOCK, st_size=0, ...}) = 0
[pid  2472] mmap(0, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x40007000
[pid  2472] read(0, "7718,23\r\n", 1024) = 9
[pid  2472] open("/etc/hosts", O_RDONLY) = 6
[pid  2472] fstat(6, {st_mode=S_IFREG|0644, st_size=91, ...}) = 0
[pid  2472] mmap(0, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x400c4000
[pid  2472] read(6, "127.0.0.1\tlocalhost\tlocalhost."..., 4096) = 91
[pid  2472] read(6, "", 4096)           = 0
[pid  2472] close(6)                    = 0
[pid  2472] munmap(0x400c4000, 4096)    = 0
[pid  2472] socket(PF_INET, SOCK_DGRAM, IPPROTO_IP) = 6
[pid  2472] connect(6, {sin_family=AF_INET, sin_port=htons(53), sin_addr=inet_addr("194.90.1.5")}, 16) = 0
[pid  2472] send(6, "~\331\1\0\0\1\0\0\0\0\0\0\0014\001"..., 41, 0) = 41
[pid  2472] oldselect(7, [6], NULL, NULL, {5, 0}) = 1 (in [6], left {4, 750000})
[pid  2472] recvfrom(6, "~\331\201\200\0\1\0\1\0\3\0\3\001"..., 1024, 0, {sin_family=AF_INET, sin_port=htons(53), sin_addr=inet_addr("194.90.1.5")}, [16]) = 201
[pid  2472] close(6)                    = 0
[pid  2472] uname({sys="Linux", node="mapc.dyn.ml.org", ...}) = 0
[pid  2472] open("/etc/hosts", O_RDONLY) = 6
[pid  2472] fstat(6, {st_mode=S_IFREG|0644, st_size=91, ...}) = 0
[pid  2472] mmap(0, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x400c4000
[pid  2472] read(6, "127.0.0.1\tlocalhost\tlocalhost."..., 4096) = 91
[pid  2472] read(6, "", 4096)           = 0
[pid  2472] close(6)                    = 0
[pid  2472] munmap(0x400c4000, 4096)    = 0
[pid  2472] socket(PF_INET, SOCK_DGRAM, IPPROTO_IP) = 6
[pid  2472] connect(6, {sin_family=AF_INET, sin_port=htons(53), sin_addr=inet_addr("194.90.1.5")}, 16) = 0
[pid  2472] send(6, "~\332\1\0\0\1\0\0\0\0\0\0\003199"..., 33, 0) = 33
[pid  2472] oldselect(7, [6], NULL, NULL, {5, 0}) = 1 (in [6], left {4, 800000})
[pid  2472] recvfrom(6, "~\332\205\203\0\1\0\0\0\1\0\0\003"..., 1024, 0, {sin_family=AF_INET, sin_port=htons(53), sin_addr=inet_addr("194.90.1.5")}, [16]) = 106
[pid  2472] close(6)                    = 0
[pid  2472] socket(PF_INET, SOCK_DGRAM, IPPROTO_IP) = 6
[pid  2472] connect(6, {sin_family=AF_INET, sin_port=htons(53), sin_addr=inet_addr("194.90.1.5")}, 16) = 0
[pid  2472] send(6, "~\333\1\0\0\1\0\0\0\0\0\0\003199"..., 50, 0) = 50
[pid  2472] oldselect(7, [6], NULL, NULL, {5, 0}) = 1 (in [6], left {4, 780000})
[pid  2472] recvfrom(6, "~\333\205\203\0\1\0\0\0\1\0\0\003"..., 1024, 0, {sin_family=AF_INET, sin_port=htons(53), sin_addr=inet_addr("194.90.1.5")}, [16]) = 117
[pid  2472] close(6)                    = 0
[pid  2472] socket(PF_INET, SOCK_DGRAM, IPPROTO_IP) = 6
[pid  2472] connect(6, {sin_family=AF_INET, sin_port=htons(53), sin_addr=inet_addr("194.90.1.5")}, 16) = 0
[pid  2472] send(6, "~\334\1\0\0\1\0\0\0\0\0\0\003199"..., 48, 0) = 48
[pid  2472] oldselect(7, [6], NULL, NULL, {5, 0}) = 1 (in [6], left {4, 790000})
[pid  2472] recvfrom(6, "~\334\205\203\0\1\0\0\0\1\0\0\003"..., 1024, 0, {sin_family=AF_INET, sin_port=htons(53), sin_addr=inet_addr("194.90.1.5")}, [16]) = 116
[pid  2472] close(6)                    = 0
[pid  2472] sigaction(SIGPIPE, {0x4003efc4, [], 0}, {SIG_DFL}) = 0
[pid  2472] time([886894838])           = 886894838
[pid  2472] getpid()                    = 2472
[pid  2472] write(5, "<30>Feb  8 01:40:38 identd[2472]"..., 80) = 80
[pid  2472] sigaction(SIGPIPE, {SIG_DFL}, NULL) = 0
[pid  2472] sigaction(SIGPIPE, {0x4003efc4, [], 0}, {SIG_DFL}) = 0
[pid  2472] time([886894838])           = 886894838
[pid  2472] getpid()                    = 2472
[pid  2472] write(5, "<31>Feb  8 01:40:38 identd[2472]"..., 68) = 68
[pid  2472] sigaction(SIGPIPE, {SIG_DFL}, NULL) = 0
[pid  2472] sigaction(SIGPIPE, {0x4003efc4, [], 0}, {SIG_DFL}) = 0
[pid  2472] time([886894838])           = 886894838
[pid  2472] getpid()                    = 2472
[pid  2472] write(5, "<31>Feb  8 01:40:38 identd[2472]"..., 70) = 70
[pid  2472] sigaction(SIGPIPE, {SIG_DFL}, NULL) = 0
[pid  2472] open("/proc/net/tcp", O_RDONLY) = 6
[pid  2472] fstat(6, {st_mode=S_IFREG|0444, st_size=0, ...}) = 0
[pid  2472] mmap(0, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x400c4000
[pid  2472] read(6, "  sl  local_address rem_address "..., 1024) = 1024
[pid  2472] close(6)                    = 0
[pid  2472] munmap(0x400c4000, 4096)    = 0
[pid  2472] sigaction(SIGPIPE, {0x4003efc4, [], 0}, {SIG_DFL}) = 0
[pid  2472] time([886894838])           = 886894838
[pid  2472] getpid()                    = 2472
[pid  2472] write(5, "<31>Feb  8 01:40:38 identd[2472]"..., 72) = 72
[pid  2472] sigaction(SIGPIPE, {SIG_DFL}, NULL) = 0
[pid  2472] open("/etc/passwd", O_RDONLY) = 6
[pid  2472] fstat(6, {st_mode=S_IFREG|0644, st_size=1235, ...}) = 0
[pid  2472] mmap(0, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x400c4000
[pid  2472] read(6, "root:NSaQB/45JR44s:0:0:The Root "..., 4096) = 1235
[pid  2472] close(6)                    = 0
[pid  2472] munmap(0x400c4000, 4096)    = 0
[pid  2472] open("/etc/group", O_RDONLY) = 6
[pid  2472] fstat(6, {st_mode=S_IFREG|0644, st_size=346, ...}) = 0
[pid  2472] mmap(0, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x400c4000
[pid  2472] read(6, "root::0:root\nbin::1:root,bin,da"..., 4096) = 346
[pid  2472] close(6)                    = 0
[pid  2472] munmap(0x400c4000, 4096)    = 0
[pid  2472] sigaction(SIGPIPE, {0x4003efc4, [], 0}, {SIG_DFL}) = 0
[pid  2472] time([886894838])           = 886894838
[pid  2472] getpid()                    = 2472
[pid  2472] write(5, "<31>Feb  8 01:40:38 identd[2472]"..., 82) = 82
[pid  2472] sigaction(SIGPIPE, {SIG_DFL}, NULL) = 0
[pid  2472] stat(ptrace: umoven: I/O error
0x804fd48, 0xbffff49c) = -1 ENOENT (No such file or directory)
[pid  2472] open("/home/romance/.fakeid", O_RDONLY) = 6
[pid  2472] read(6, "island\n", 14)     = 7
[pid  2472] fstat(1, {st_mode=S_IFSOCK, st_size=0, ...}) = 0
[pid  2472] mmap(0, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x400c4000
[pid  2472] write(1, "7718 , 23 : USERID : UNIX :islan"..., 35) = 35
[pid  2472] _exit(0)                    = ?
<... oldselect resumed> )               = ? ERESTARTNOHAND (To be restarted)
--- SIGCHLD (Child exited) ---
oldselect(1024, [0], NULL, NULL, NULL