On Fri, 20 Mar 2009 14:51:22 -0700 lorenzo linux@nethere.com wrote:
I'm running the stock firewall on F10 and when I run the sectool the firewall always fails, It says.
Error, Firewall, No firewall rules in IPv4 INPUT chain and policy is set to ACCEPT.
There is always one active connection, even when I'm not accessing the net, no IM, NO browser, NO twitter etc. What is really strange, when I type anything network history shows an increase in data packets flowing out.
My brother is the linux geek, but he is in iraq
The first thing you want is a tool called "chkrootkit", which is basically a scanner for known trojans and attack tools used against Linux boxes.
tcpdump might also give you some idea what is going out and where