- systemd New Fork (PID: 5172, Parent: 1)
- logrotate (PID: 5172, Parent: 1, MD5: ff9f6831debb63e53a31ff8057143af6) Arguments: /usr/sbin/logrotate /etc/logrotate.conf
- gzip (PID: 5221, Parent: 5172, MD5: beef4e1f54ec90564d2acd57c0b0c897) Arguments: /bin/gzip
- sh (PID: 5222, Parent: 5172, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: sh -c "\n\t\tinvoke-rc.d --quiet cups restart > /dev/null\n" logrotate_script "/var/log/cups/*log "
- sh New Fork (PID: 5223, Parent: 5222)
- invoke-rc.d (PID: 5223, Parent: 5222, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: invoke-rc.d --quiet cups restart
- runlevel (PID: 5224, Parent: 5223, MD5: 4deddfb6741481f68aeac522cc26ff4b) Arguments: /sbin/runlevel
- systemctl (PID: 5225, Parent: 5223, MD5: 4deddfb6741481f68aeac522cc26ff4b) Arguments: systemctl --quiet is-enabled cups.service
- ls (PID: 5226, Parent: 5223, MD5: e7793f15c2ff7e747b4bc7079f5cd4f7) Arguments: ls /etc/rc[S2345].d/S[0-9][0-9]cups
- systemctl (PID: 5227, Parent: 5223, MD5: 4deddfb6741481f68aeac522cc26ff4b) Arguments: systemctl --quiet is-active cups.service
- gzip (PID: 5228, Parent: 5172, MD5: beef4e1f54ec90564d2acd57c0b0c897) Arguments: /bin/gzip
- sh (PID: 5231, Parent: 5172, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: sh -c /usr/lib/rsyslog/rsyslog-rotate logrotate_script /var/log/syslog
- sh New Fork (PID: 5232, Parent: 5231)
- rsyslog-rotate (PID: 5232, Parent: 5231, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: /usr/lib/rsyslog/rsyslog-rotate
- systemctl (PID: 5233, Parent: 5232, MD5: 4deddfb6741481f68aeac522cc26ff4b) Arguments: systemctl kill -s HUP rsyslog.service
- systemd New Fork (PID: 5173, Parent: 1)
- install (PID: 5173, Parent: 1, MD5: 55e2520049dc6a62e8c94732e36cdd54) Arguments: /usr/bin/install -d -o man -g man -m 0755 /var/cache/man
- systemd New Fork (PID: 5191, Parent: 1)
- find (PID: 5191, Parent: 1, MD5: b68ef002f84cc54dd472238ba7df80ab) Arguments: /usr/bin/find /var/cache/man -type f -name *.gz -atime +6 -delete
- systemd New Fork (PID: 5220, Parent: 1)
- mandb (PID: 5220, Parent: 1, MD5: 1dda5ea0027ecf1c2db0f5a3de7e6941) Arguments: /usr/bin/mandb --quiet
- psO5Q4nOUG (PID: 5249, Parent: 5105, MD5: 5e11432c30783b184dc2bf27aa1728b4) Arguments: /tmp/psO5Q4nOUG
- sh (PID: 5250, Parent: 5249, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: sh -c "id -u"
- sh New Fork (PID: 5251, Parent: 5250)
- id (PID: 5251, Parent: 5250, MD5: 36f29256a85dfd77d931750f1335b7ab) Arguments: id -u
- sh (PID: 5252, Parent: 5249, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: sh -c whoami
- sh New Fork (PID: 5253, Parent: 5252)
- whoami (PID: 5253, Parent: 5252, MD5: dbc1888ae50bb5d4d9a7a210d51be710) Arguments: whoami
- sh (PID: 5254, Parent: 5249, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: sh -c "crontab -l | egrep -v \"^(#|$)\" | grep -e \"@reboot (/.Library/SystemServices/updateSystem)\""
- sh New Fork (PID: 5255, Parent: 5254)
- crontab (PID: 5255, Parent: 5254, MD5: 66e521d421ac9b407699061bf21806f5) Arguments: crontab -l
- sh New Fork (PID: 5256, Parent: 5254)
- egrep (PID: 5256, Parent: 5254, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: egrep -v ^(#|$)
- grep (PID: 5256, Parent: 5254, MD5: 1e6ebb9dd094f774478f72727bdba0f5) Arguments: grep -E -v ^(#|$)
- sh New Fork (PID: 5257, Parent: 5254)
- grep (PID: 5257, Parent: 5254, MD5: 1e6ebb9dd094f774478f72727bdba0f5) Arguments: grep -e "@reboot (/.Library/SystemServices/updateSystem)"
- sh (PID: 5258, Parent: 5249, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: sh -c "(crontab -l; echo \"@reboot (/.Library/SystemServices/updateSystem)\") | crontab -"
- sh New Fork (PID: 5259, Parent: 5258)
- sh New Fork (PID: 5261, Parent: 5259)
- crontab (PID: 5261, Parent: 5259, MD5: 66e521d421ac9b407699061bf21806f5) Arguments: crontab -l
- sh New Fork (PID: 5260, Parent: 5258)
- crontab (PID: 5260, Parent: 5258, MD5: 66e521d421ac9b407699061bf21806f5) Arguments: crontab -
- sh (PID: 5262, Parent: 5249, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: sh -c "cp -rf '/tmp/psO5Q4nOUG' '/.Library/SystemServices/updateSystem'"
- sh New Fork (PID: 5263, Parent: 5262)
- cp (PID: 5263, Parent: 5262, MD5: 40f10ae7ea3e44218d1a8c306f79c83f) Arguments: cp -rf /tmp/psO5Q4nOUG /.Library/SystemServices/updateSystem
- sh (PID: 5264, Parent: 5249, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: sh -c "nohup '/.Library/SystemServices/updateSystem' >/dev/null 2>&1 &"
- sh New Fork (PID: 5265, Parent: 5264)
- nohup (PID: 5265, Parent: 1860, MD5: d8d3ce4d7f4b1e3ac3c3e7c9790f22ca) Arguments: nohup /.Library/SystemServices/updateSystem
- updateSystem (PID: 5265, Parent: 1860, MD5: 5e11432c30783b184dc2bf27aa1728b4) Arguments: /.Library/SystemServices/updateSystem
- sh (PID: 5267, Parent: 5265, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: sh -c "id -u"
- sh New Fork (PID: 5268, Parent: 5267)
- id (PID: 5268, Parent: 5267, MD5: 36f29256a85dfd77d931750f1335b7ab) Arguments: id -u
- sh (PID: 5269, Parent: 5265, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: sh -c whoami
- sh New Fork (PID: 5270, Parent: 5269)
- whoami (PID: 5270, Parent: 5269, MD5: dbc1888ae50bb5d4d9a7a210d51be710) Arguments: whoami
- sh (PID: 5271, Parent: 5265, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: sh -c "crontab -l | egrep -v \"^(#|$)\" | grep -e \"@reboot (/.Library/SystemServices/updateSystem)\""
- sh New Fork (PID: 5272, Parent: 5271)
- crontab (PID: 5272, Parent: 5271, MD5: 66e521d421ac9b407699061bf21806f5) Arguments: crontab -l
- sh New Fork (PID: 5273, Parent: 5271)
- egrep (PID: 5273, Parent: 5271, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: egrep -v ^(#|$)
- grep (PID: 5273, Parent: 5271, MD5: 1e6ebb9dd094f774478f72727bdba0f5) Arguments: grep -E -v ^(#|$)
- sh New Fork (PID: 5274, Parent: 5271)
- grep (PID: 5274, Parent: 5271, MD5: 1e6ebb9dd094f774478f72727bdba0f5) Arguments: grep -e "@reboot (/.Library/SystemServices/updateSystem)"
- sh (PID: 5277, Parent: 5265, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: sh -c "ifconfig | grep -v 127.0.0.1 | grep -E \"inet ([0-9]{1,3}.[0-9]{1,3}.[0-9]{1,3}.[0-9]{1,3})\" | awk '{print $2}'"
- sh New Fork (PID: 5278, Parent: 5277)
- ifconfig (PID: 5278, Parent: 5277, MD5: 78235087bb226bccf9669e7ea95c0846) Arguments: ifconfig
- sh New Fork (PID: 5279, Parent: 5277)
- grep (PID: 5279, Parent: 5277, MD5: 1e6ebb9dd094f774478f72727bdba0f5) Arguments: grep -v 127.0.0.1
- sh New Fork (PID: 5280, Parent: 5277)
- grep (PID: 5280, Parent: 5277, MD5: 1e6ebb9dd094f774478f72727bdba0f5) Arguments: grep -E "inet ([0-9]{1,3}.[0-9]{1,3}.[0-9]{1,3}.[0-9]{1,3})"
- sh New Fork (PID: 5281, Parent: 5277)
- awk (PID: 5281, Parent: 5277, MD5: 7e9b2ed1272331cfbd2aac2e5eb3f84b) Arguments: awk "{print $2}"
- sh (PID: 5282, Parent: 5265, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: sh -c "ip address | awk '/ether/{print $2}'"
- sh New Fork (PID: 5283, Parent: 5282)
- ip (PID: 5283, Parent: 5282, MD5: cd92bd28c8337a4dc4e8b3433befe7e2) Arguments: ip address
- sh New Fork (PID: 5284, Parent: 5282)
- awk (PID: 5284, Parent: 5282, MD5: 7e9b2ed1272331cfbd2aac2e5eb3f84b) Arguments: awk "/ether/{print $2}"
- sh (PID: 5285, Parent: 5265, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: sh -c "uname -mrs"
- sh New Fork (PID: 5286, Parent: 5285)
- uname (PID: 5286, Parent: 5285, MD5: 4ac7c634c5bec95753c480e9d421dcc2) Arguments: uname -mrs
- dash New Fork (PID: 5296, Parent: 4331)
- cat (PID: 5296, Parent: 4331, MD5: 7e9d213e404ad3bb82e4ebb2e1f2c1b3) Arguments: cat /tmp/tmp.Q8Xy6IVkIu
- dash New Fork (PID: 5297, Parent: 4331)
- head (PID: 5297, Parent: 4331, MD5: fd96a67145172477dd57131396fc9608) Arguments: head -n 10
- dash New Fork (PID: 5298, Parent: 4331)
- tr (PID: 5298, Parent: 4331, MD5: fbd1402dd9f72d8ebfff00ce7c3a7bb5) Arguments: tr -d \\000-\\011\\013\\014\\016-\\037
- dash New Fork (PID: 5299, Parent: 4331)
- cut (PID: 5299, Parent: 4331, MD5: d8ed0ea8f22c0de0f8692d4d9f1759d3) Arguments: cut -c -80
- dash New Fork (PID: 5300, Parent: 4331)
- cat (PID: 5300, Parent: 4331, MD5: 7e9d213e404ad3bb82e4ebb2e1f2c1b3) Arguments: cat /tmp/tmp.Q8Xy6IVkIu
- dash New Fork (PID: 5301, Parent: 4331)
- head (PID: 5301, Parent: 4331, MD5: fd96a67145172477dd57131396fc9608) Arguments: head -n 10
- dash New Fork (PID: 5302, Parent: 4331)
- tr (PID: 5302, Parent: 4331, MD5: fbd1402dd9f72d8ebfff00ce7c3a7bb5) Arguments: tr -d \\000-\\011\\013\\014\\016-\\037
- dash New Fork (PID: 5303, Parent: 4331)
- cut (PID: 5303, Parent: 4331, MD5: d8ed0ea8f22c0de0f8692d4d9f1759d3) Arguments: cut -c -80
- dash New Fork (PID: 5304, Parent: 4331)
- rm (PID: 5304, Parent: 4331, MD5: aa2b5496fdbfd88e38791ab81f90b95b) Arguments: rm -f /tmp/tmp.Q8Xy6IVkIu /tmp/tmp.IvmgDS2E93 /tmp/tmp.bl8wKDFCTb
|