From: "home user" <mattisonw@xxxxxxxxxxx>
Date: Monday, 30 November 2020 at 18:57:40
To: "users@xxxxxxxxxxxxxxxxxxxxxxx" <users@xxxxxxxxxxxxxxxxxxxxxxx>
Subject: mysterious/suspicious internet activity.
Fedora-32 home workstation; gnome.
In ksysguard, I've been noticing internet activity that I can't explain. This has been going on for weeks, and it's making me uncomfortable.
What I do:
1. After the system has been powered down overnight, I boot it up.
2. I sign in to a user account.
3. My .bash_profile sources my .bashrc, sets PATH, and launches xeyes. My .bashrc sources /etc/bashrc, sets PS1 and PATH, and defines aliases.
4. I launch ksysguard, then Spectacle.
5. I wait several seconds, then take a screen-capture of ksysguard's display.
To get a good sample, I did five screen-captures. Here are the google drive links to them:
"https://drive.google.com/file/d/1EdlSgKY0fJpU7r3nbstWA7G_2C93gOgO/view?usp=sharing"
"https://drive.google.com/file/d/1jfocTMRnwguRdDIchoBtsNYYwQZr647i/view?usp=sharing"
"https://drive.google.com/file/d/1Tx3kDEMbL_TCZZ-F0YOVOXSy2D9G3MAM/view?usp=sharing"
"https://drive.google.com/file/d/157KU27QtsJTZghyRgeuafYSnvxR85im4/view?usp=sharing"
"https://drive.google.com/file/d/1AyZDRvcKYHYypNSU6AF9Fh34rh_l3q2J/view?usp=sharing"
This is way outside my knowledge and experience. I need good step-by-step instructions on this.
Thank-you in advance.
Bill.
_______________________________________________
Hi,
What puzzles me, is that you don’t refer to the firewall.
It’s the firewall responsibility to block unexpected incoming, but also outgoing traffic.
Often people trust all outgoing traffic on 443 and 80 (and corresponding replies), but you can initially LOG it all, and subsequently change your rules to DROP all you don’t want to see. (Before logging the uncaught)
Dit bericht kan informatie bevatten die niet voor u is bestemd. Indien u niet de geadresseerde bent of dit bericht abusievelijk aan u is toegezonden, wordt u verzocht dat aan de afzender te melden en het bericht te verwijderen. De Staat aanvaardt geen aansprakelijkheid voor schade, van welke aard ook, die verband houdt met risico's verbonden aan het elektronisch verzenden van berichten.
This message may contain information that is not intended for you. If you are not the addressee or if this message was sent to you by mistake, you are requested to inform the sender and delete the message. The State accepts no liability for damage of any kind resulting from the risks inherent in the electronic transmission of messages.
_______________________________________________ users mailing list -- users@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe send an email to users-leave@xxxxxxxxxxxxxxxxxxxxxxx Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/users@xxxxxxxxxxxxxxxxxxxxxxx