Thanks in advance for tips & support. I'm not able to figure out why the process "inetd" is using so much cpu resources. Below output of top
Code: Select all
top - 14:40:11 up 25 days, 13:02, 1 user, load average: 4.61, 4.16, 3.73
Tasks: 283 total, 2 running, 280 sleeping, 0 stopped, 1 zombie
%Cpu(s): 2.9 us, 2.9 sy, 94.1 ni, 0.0 id, 0.0 wa, 0.0 hi, 0.0 si, 0.0 st
KiB Mem : 3881584 total, 1013392 free, 1387396 used, 1480796 buff/cache
KiB Swap: 1048572 total, 963160 free, 85412 used. 1883772 avail Mem
PID USER PR NI VIRT RES SHR S %CPU %MEM TIME+ COMMAND
436 root 20 0 65536 844 608 S 193.8 0.0 93:08.42 inetd
20163 root 20 0 157860 2364 1496 R 6.2 0.1 0:00.01 top
1 root 20 0 199096 3328 2036 S 0.0 0.1 8:22.58 systemd
2 root 20 0 0 0 0 S 0.0 0.0 0:00.34 kthreadd
3 root 20 0 0 0 0 S 0.0 0.0 0:49.58 ksoftirqd/0
5 root 0 -20 0 0 0 S 0.0 0.0 0:00.00 kworker/0:0H
7 root rt 0 0 0 0 S 0.0 0.0 0:04.32 migration/0
8 root 20 0 0 0 0 S 0.0 0.0 0:00.00 rcu_bh
9 root 20 0 0 0 0 S 0.0 0.0 8:49.77 rcu_sched
10 root rt 0 0 0 0 S 0.0 0.0 0:08.63 watchdog/0
11 root rt 0 0 0 0 S 0.0 0.0 0:07.08 watchdog/1
12 root rt 0 0 0 0 S 0.0 0.0 0:04.87 migration/1
13 root 20 0 0 0 0 S 0.0 0.0 1:05.10 ksoftirqd/1
15 root 0 -20 0 0 0 S 0.0 0.0 0:00.00 kworker/1:0H
17 root 20 0 0 0 0 S 0.0 0.0 0:00.00 kdevtmpfs
18 root 0 -20 0 0 0 S 0.0 0.0 0:00.00 netns
19 root 20 0 0 0 0 S 0.0 0.0 0:00.70 khungtaskd
20 root 0 -20 0 0 0 S 0.0 0.0 0:00.02 writeback
21 root 0 -20 0 0 0 S 0.0 0.0 0:00.00 kintegrityd
22 root 0 -20 0 0 0 S 0.0 0.0 0:00.00 bioset
23 root 0 -20 0 0 0 S 0.0 0.0 0:00.00 kblockd
24 root 0 -20 0 0 0 S 0.0 0.0 0:00.00 md
30 root 20 0 0 0 0 S 0.0 0.0 5:37.47 kswapd0
31 root 25 5 0 0 0 S 0.0 0.0 0:00.00 ksmd
32 root 39 19 0 0 0 S 0.0 0.0 0:02.76 khugepaged
33 root 0 -20 0 0 0 S 0.0 0.0 0:00.00 crypto
41 root 0 -20 0 0 0 S 0.0 0.0 0:00.00 kthrotld
43 root 0 -20 0 0 0 S 0.0 0.0 0:00.00 kmpath_rdacd
44 root 0 -20 0 0 0 S 0.0 0.0 0:00.00 kpsmoused
45 root 0 -20 0 0 0 S 0.0 0.0 0:00.00 ipv6_addrconf
64 root 0 -20 0 0 0 S 0.0 0.0 0:00.00 deferwq
98 root 20 0 0 0 0 S 0.0 0.0 0:05.80 kauditd
283 root 0 -20 0 0 0 S 0.0 0.0 0:00.00 ata_sff
289 root 20 0 0 0 0 S 0.0 0.0 0:00.00 scsi_eh_0
290 root 0 -20 0 0 0 S 0.0 0.0 0:00.00 scsi_tmf_0
291 root 20 0 0 0 0 S 0.0 0.0 0:00.00 scsi_eh_1
292 root 0 -20 0 0 0 S 0.0 0.0 0:00.00 scsi_tmf_1
294 root 0 -20 0 0 0 S 0.0 0.0 0:00.00 ttm_swap
361 root 0 -20 0 0 0 S 0.0 0.0 0:00.00 kdmflush
362 root 0 -20 0 0 0 S 0.0 0.0 0:00.00 bioset
373 root 0 -20 0 0 0 S 0.0 0.0 0:00.00 kdmflush
374 root 0 -20 0 0 0 S 0.0 0.0 0:00.00 bioset
387 root 0 -20 0 0 0 S 0.0 0.0 0:00.00 bioset
388 root 0 -20 0 0 0 S 0.0 0.0 0:00.00 xfsalloc
389 root 0 -20 0 0 0 S 0.0 0.0 0:00.00 xfs_mru_cache
390 root 0 -20 0 0 0 S 0.0 0.0 0:00.00 xfs-buf/dm-0
391 root 0 -20 0 0 0 S 0.0 0.0 0:00.00 xfs-data/dm-0
392 root 0 -20 0 0 0 S 0.0 0.0 0:00.00 xfs-conv/dm-0
393 root 0 -20 0 0 0 S 0.0 0.0 0:00.01 xfs-cil/dm-0
394 root 0 -20 0 0 0 S 0.0 0.0 0:00.00 xfs-reclaim/dm-
395 root 0 -20 0 0 0 S 0.0 0.0 0:00.00 xfs-log/dm-0
396 root 0 -20 0 0 0 S 0.0 0.0 0:00.00 xfs-eofblocks/d
397 root 20 0 0 0 0 S 0.0 0.0 6:34.12 xfsaild/dm-0
435 root 20 0 1656 36 4 S 0.0 0.0 0:00.27 inetd
466 root 20 0 37248 7128 6848 S 0.0 0.2 15:12.54 systemd-journal
484 root 20 0 200776 600 600 S 0.0 0.0 0:00.00 lvmetad
Icon name: computer-vm
Chassis: vm
Virtualization: kvm
Operating System: CentOS Linux 7 (Core)
CPE OS Name: cpe:/o:centos:centos:7
Kernel: Linux 3.10.0-693.21.1.el7.x86_64
Architecture: x86-64
Any suggestions how to start finding what is causing this ?
edit: type in subject
Edit: Solved, server was compremissed with mining software. Data = moved, server trashed.