    eggdrops and irc scripts

    how can i scan my linux server for eggdrops and irc scripts?

    Jun 2003
    you could run "netstat -np" and check if some process does connect to some irc port like 6667, 7000 etc. If so, grab the pid and "ls -l /proc/pid/", check executable name and path, location

    what do you mean with "irc scripts" ?
    scripts for eggdrops? tcl?

    Not tha sure. Im as Noob as you can be with linux servers but i got i mail from my server provider that talked about eggdrops and irc scripts which im not allowed to run on the serve (and wasn't) the problem this time have been solved but i would like to learn how to scan for the problem mself.

    Jul 2003
    North Carolina USA
    ps aux|grep bnc
    ps aux|grep ircd
    ps aux|grep eggdrop
    ps aux|grep bitchx

    thats most common irc releated background proccess run in *nix

    those commands will list all running proccess that match your search

    Mar 2003
    California USA
    most of the time these days they ar ebeing hidden as other processes such as sendmail
    Sep 2004
    Flint, Michigan
    A good start would be to block all the common irc ports at your firewall.
    Apr 2003
    block 6665-6669 + 7000 outgoing and half the time you'll be laughing

    ok. how do i block those ports? using APF firwall

    Edit /etc/apf/conf.apf

    Enable Egress filtering, and add the ports you need to Egress ports. I would assume ingress to be blocked already.
