mohitd2000

Q: MacBook Pro Suddenly Can't Connect to the Internet

I have a 2013 Retina MacBook Pro, and, until recently, all of the networking was running just fine. In addition to the OS X Mavericks, I also have the Developer Preview of OS X Yosemite on another partition. A couple of days ago, when I booted up in the Mavericks partition, I had full signal on my Wi-Fi, but I couldn't open any webpages or the App Store, etc. The strange thing is that the Yosemite partition can connect to the Internet, but the Mavericks partition cannot. All of my other devices can utilize the Wi-Fi so it isn't an issue with my router or modem. I've tried recreating the Yosemite settings on the Mavericks partition, but that hasn't worked either.

 

I've tried several things to no success:

  1. Fixing Permissions
  2. Adding 8.8.8.8 to my DNS
  3. Checking to make sure no Proxies are selected (nothing was selected).
  4. Checking to make sure I'm using DHCP, which I was.
  5. Pinging several websites to see if I get a result, which I did.
  6. Removing and re-adding Wi-Fi to the Network Services.
  7. Switching to Ethernet.

 

Any suggestions about something I haven't already tried? Like I said, Yosemite can connect just fine, but Mavericks cannot.

MacBook Pro (Retina, 13-inch, Late 2013), OS X Mavericks (10.9.4)

Posted on Aug 30, 2014 6:59 AM

Close

Q: MacBook Pro Suddenly Can't Connect to the Internet

  • All replies
  • Helpful answers

  • by Linc Davis,

    Linc Davis Linc Davis Aug 30, 2014 8:36 AM in response to mohitd2000
    Level 10 (207,915 points)
    Applications
    Aug 30, 2014 8:36 AM in response to mohitd2000

    Please read this whole message before doing anything.

    This procedure is a diagnostic test. It’s unlikely to solve your problem. Don’t be disappointed when you find that nothing has changed after you complete it.

    The purpose of the test is to determine whether the problem is caused by third-party software that loads automatically at startup or login, by a peripheral device, by a font conflict, or by corruption of the file system or of certain system caches.

    Disconnect all wired peripherals except those needed for the test, and remove all aftermarket expansion cards, if applicable. Start up in safe mode and log in to the account with the problem. You must hold down the shift key twice: once when you turn on the computer, and again when you log in.

    Note: If FileVault is enabled, or if a firmware password is set, or if the startup volume is a software RAID, you can’t do this. Ask for further instructions.

    Safe mode is much slower to start up and run than normal, with limited graphics performance, and some things won’t work at all, including sound output and Wi-Fi on certain models. The next normal startup may also be somewhat slow.

    The login screen appears even if you usually login automatically. You must know your login password in order to log in. If you’ve forgotten the password, you will need to reset it before you begin.

    Test while in safe mode. Same problem?

    After testing, restart as usual (not in safe mode) and verify that you still have the problem. Post the results of the test.

  • by mohitd2000,

    mohitd2000 mohitd2000 Aug 30, 2014 9:00 AM in response to Linc Davis
    Level 1 (0 points)
    Aug 30, 2014 9:00 AM in response to Linc Davis

    Hello Linc and thanks for replying so quickly! After booting into Safe Mode, all of my network connections were restored and fully functioning. Going back into the non-Safe Mode Mavericks partition, my network connections were no longer working. Do you think the issue is related to the startup items?

  • by Linc Davis,Helpful

    Linc Davis Linc Davis Aug 30, 2014 9:09 AM in response to mohitd2000
    Level 10 (207,915 points)
    Applications
    Aug 30, 2014 9:09 AM in response to mohitd2000

    1. This procedure is a diagnostic test. It changes nothing, for better or worse, and therefore will not, in itself, solve the problem. But with the aid of the test results, the solution may take a few minutes, instead of hours or days.

    Don't be put off merely by the seeming complexity of these instructions. The process is much less complicated than the description. You do harder tasks with the computer all the time.

    2. If you don't already have a current backup, back up all data before doing anything else. The backup is necessary on general principle, not because of anything in the test procedure. Backup is always a must, and when you're having any kind of trouble with the computer, you may be at higher than usual risk of losing data, whether you follow these instructions or not.

    There are ways to back up a computer that isn't fully functional. Ask if you need guidance.

    3. Below are instructions to run a UNIX shell script, a type of program. As I wrote above, it changes nothing. It doesn't send or receive any data on the network. All it does is to generate a human-readable report on the state of the computer. That report goes nowhere unless you choose to share it. If you prefer, you can read it yourself without disclosing the contents to me or anyone else.

    You should be wondering whether you can believe me, and whether it's safe to run a program at the behest of a stranger. In general, no, it's not safe and I don't encourage it.

    In this case, however, there are a couple of ways for you to decide whether the program is safe without having to trust me. First, you can read it. Unlike an application that you download and click to run, it's transparent, so anyone with the necessary skill can verify what it does.

    You may not be able to understand the script yourself. But variations of the script have been posted on this website thousands of times over a period of years. The site is hosted by Apple, which does not allow it to be used to distribute harmful software. Any one of the millions of registered users could have read the script and raised the alarm if it was harmful. Then I would not be here now and you would not be reading this message.

    Nevertheless, if you can't satisfy yourself that these instructions are safe, don't follow them. Ask for other options.

    4. Here's a summary of what you need to do, if you choose to proceed:

    ☞ Copy a line of text in this window to the Clipboard.

    ☞ Paste into the window of another application.

    ☞ Wait for the test to run. It usually takes a few minutes.

    ☞ Paste the results, which will have been copied automatically, back into a reply on this page.

    The sequence is: copy, paste, wait, paste again. You don't need to copy a second time. Details follow.

    5. You may have started the computer in "safe" mode. Preferably, these steps should be taken in “normal” mode, under the conditions in which the problem is reproduced. If the system is now in safe mode and works well enough in normal mode to run the test, restart as usual. If you can only test in safe mode, do that.

    6. If you have more than one user, and the one affected by the problem is not an administrator, then please run the test twice: once while logged in as the affected user, and once as an administrator. The results may be different. The user that is created automatically on a new computer when you start it for the first time is an administrator. If you can't log in as an administrator, test as the affected user. Most personal Macs have only one user, and in that case this section doesn’t apply. Don't log in as root.

    7. The script is a single long line, all of which must be selected. You can accomplish this easily by triple-clicking anywhere in the line. The whole line will highlight, though you may not see all of it in the browser window, and you can then copy it. If you try to select the line by dragging across the part you can see, you won't get all of it.

    Triple-click anywhere in the line of text below on this page to select it:

    PATH=/usr/bin:/bin:/usr/sbin:/sbin:/usr/libexec;clear;cd;p=(Software Hardware Memory Diagnostics Power FireWire Thunderbolt USB Fonts SerialATA 4 1000 25 5120 KiB/s 1024 85 \\b%% 20480 1 MB/s 25000 ports ' com.clark.\* \*dropbox \*GoogleDr\* \*k.AutoCAD\* \*k.Maya\* vidinst\* ' DYLD_INSERT_LIBRARIES\ DYLD_LIBRARY_PATH -86 "` route -n get default|awk '/e:/{print $2}' `" 25 N\\/A down up 102400 25600 recvfrom sendto CFBundleIdentifier 25 25 25 1000 MB com.apple.AirPortBaseStationAgent 464843899 51 5120 files );N5=${#p[@]};p[N5]=` networksetup -listnetworkserviceorder|awk ' NR>1 { sub(/^\([0-9]+\) /,"");n=$0;getline;} $NF=="'${p[26]}')" { sub(/.$/,"",$NF);print n;exit;} ' `;f=('\n%s: %s\n' '\n%s\n\n%s\n' '\nRAM details\n%s\n' %s\ %s '%s\n-\t%s\n' );S0() { echo ' { q=$NF+0;$NF="";u=$(NF-1);$(NF-1)="";gsub(/^ +| +$/,"");if(q>='${p[$1]}') printf("%s (UID %s) is using %s '${p[$2]}'",$0,u,q);} ';};s=(' /^ *$|CSConfigDot/d;s/^ */   /;s/[-0-9A-Fa-f]{22,}/UUID/g;s/(ochat)\.[^.]+(\..+)/\1\2/;/Shared/!s/\/Users\/[^/]+/~/g ' ' s/^ +//;/de: S|[nst]:/p;' ' {sub(/^ +/,"")};/er:/;/y:/&&$2<'${p[10]} ' 1s/://;3,6d;/[my].+:/d;s/^ {4}//;H;${ g;s/\n$//;/s: [^EO]|x([^08]|02[^F]|8[^0])/p;} ' ' 5h;6{ H;g;/P/!p;} ' ' ($1~/^Cy/&&$3>'${p[11]}')||($1~/^Cond/&&$2!~/^N/) ' ' /:$/{ N;/:.+:/d;s/ *://;b0'$'\n'' };/^ *(V.+ [0N]|Man).+ /{ s/ 0x.... //;s/[()]//g;s/(.+: )(.+)/ (\2)/;H;};$b0'$'\n'' d;:0'$'\n'' x;s/\n\n//;/Apple[ ,]|Genesy|Intel|SMSC/d;s/\n.*//;/\)$/p;' ' s/^.*C/C/;H;${ g;/No th|pms/!p;} ' '/= [^GO]/p' '{$1=""};1' ' /Of/!{ s/^.+is |\.//g;p;} ' ' $0&&!/ / { n++;print;} END { if(n<200) print "com.apple.";} ' ' $3~/[0-9]:[0-9]{2}$/ { gsub(/:[0-9:a-f]{14}/,"");} { print|"tail -n'${p[12]}'";} ' ' NR==2&&$4<='${p[13]}' { print $4;} ' ' END { $2/=256;if($2>='${p[15]}') print int($2) } ' ' NR!=13{next};{sub(/[+-]$/,"",$NF)};'"`S0 21 22`" 'NR!=2{next}'"`S0 37 17`" ' NR!=5||$8!~/[RW]/{next};{ $(NF-1)=$1;$NF=int($NF/10000000);for(i=1;i<=3;i++){$i="";$(NF-1-i)="";};};'"`S0 19 20`" 's:^:/:p' '/\.kext\/(Contents\/)?Info\.plist$/p' 's/^.{52}(.+) <.+/\1/p' ' /Launch[AD].+\.plist$/ { n++;print;} END { print "'${p[41]}'";if(n<200) print "/System/";} ' '/\.xpc\/(Contents\/)?Info\.plist$/p' ' NR>1&&!/0x|\.[0-9]+$|com\.apple\.launchctl\.(Aqua|Background|System)$|'${p[41]}'/ { print $3;} ' ' /\.(framew|lproj)|\):/d;/plist:|:.+(Mach|scrip)/s/:[^:]+//p ' '/^root$/p' ' !/\/Contents\/.+\/Contents|Applic|Autom|Frameworks/&&/Lib.+\/Info.plist$/ { n++;print;} END { if(n<1100) print "/System/";} ' '/^\/usr\/lib\/.+dylib$/p' ' /Temp|emac/{next};/(etc|Preferences|Launch[AD].+)\// { sub(".(/private)?","");n++;print;} END { print "'${p[41]}'.plist\t'${p[42]}'";if(n<500) print "Launch";} ' ' /\/(Contents\/.+\/Contents|Frameworks)\/|\.wdgt\/.+\.([bw]|plu)/d;p;' 's/\/(Contents\/)?Info.plist$//;p' ' { gsub("^| |\n","\\|\\|kMDItem'${p[35]}'=");sub("^...."," ") };1 ' p '{print $3"\t"$1}' 's/\'$'\t''.+//p' 's/1/On/p' '/Prox.+: [^0]/p' '$2>'${p[43]}'{$2=$2-1;print}' ' BEGIN { i="'${p[26]}'";M1='${p[16]}';M2='${p[18]}';M3='${p[31]}';M4='${p[32]}';} !/^A/{next};/%/ { getline;if($5<M1) a="user "$2"%, system "$4"%";} /disk0/&&$4>M2 { b=$3" ops/s, "$4" blocks/s";} $2==i { if(c) { d=$3+$4+$5+$6;next;};if($4>M3||$6>M4) c=int($4/1024)" in, "int($6/1024)" out";} END { if(a) print "CPU: "a;if(b) print "I/O: "b;if(c) print "Net: "c" (KiB/s)";if(d) print "Net errors: "d" packets/s";} ' ' /r\[0\] /&&$NF!~/^1(0|72\.(1[6-9]|2[0-9]|3[0-1])|92\.168)\./ { print $NF;exit;} ' ' !/^T/ { printf "(static)";exit;} ' '/apsd|BKAg|OpenD/!s/:.+//p' ' (/k:/&&$3!~/(255\.){3}0/ )||(/v6:/&&$2!~/A/ ) ' ' $1~"lR"&&$2<='${p[25]}';$1~"li"&&$3!~"wpa2";' ' BEGIN { FS=":";p="uniq -c|sed -E '"'s/ +\\([0-9]+\\)\\(.+\\)/\\\2 x\\\1/;s/x1$//'"'";} { n=split($3,a,".");sub(/_2[01].+/,"",$3);print $2" "$3" "a[n]$1|p;b=b$1;} END { close(p) if(b) print("\n\t* Code injection");} ' ' NR!=4{next} {$NF/=10240} '"`S0 27 14`" ' END { if($3~/[0-9]/)print$3;} ' ' BEGIN { L='${p[36]}';} !/^[[:space:]]*(#.*)?$/ { l++;if(l<=L) f=f"\n   "$0;} END { F=FILENAME;if(!F) exit;if(!f) f="\n   [N/A]";"file -b "F|getline T;if(T!~/^(AS.+ (En.+ )?text$|(Bo|PO).+ sh.+ text ex)/) F=F" ("T")";printf("\nContents of %s\n%s\n",F,f);if(l>L) printf("\n   ...and %s more line(s)\n",l-L);} ' ' /^ +[NP].+ =/h;/^( +D.+[{]|[}])/{ g;s/.+= //p;};' 's/0/Off/p' ' END{print NR} ' ' /id: N|te: Y/{i++} END{print i} ' ' / / { print "'"${p[28]}"'";exit;};1;' '/ en/!s/\.//p' ' NR!=13{next};{sub(/[+-M]$/,"",$NF)};'"`S0 39 40`" ' $10~/\(L/&&$9!~"localhost" { sub(/.+:/,"",$9);print $1": "$9;} ' '/^ +r/s/.+"(.+)".+/\1/p' 's/(.+\.wdgt)\/(Contents\/)?Info\.plist$/\1/p' 's/^.+\/(.+)\.wdgt$/\1/p' ' /l: /{ /DVD/d;s/.+: //;b0'$'\n'' };/s: /{ /V/d;s/^ */- /;H;};$b0'$'\n'' d;:0'$'\n'' x;/APPLE [^:]+$/d;p;' ' /^find: /d;p;' "`S0 44 45`" );c1=(system_profiler pmset\ -g nvram fdesetup find syslog df vm_stat sar ps sudo\ crontab sudo\ iotop top pkgutil 'PlistBuddy 2>&1 -c "Print' whoami cksum kextstat launchctl sudo\ launchctl crontab 'sudo defaults read' stat lsbom mdfind ' for i in ${p[24]};do ${c1[18]} ${c2[27]} $i;done;' defaults\ read scutil sudo\ dtrace sudo\ profiles sed\ -En awk /S*/*/P*/*/*/C*/*/airport networksetup mdutil sudo\ lsof test );c2=(com.apple.loginwindow\ LoginHook '" /L*/P*/loginw*' '" L*/P*/*loginit*' 'L*/Ca*/com.ap*.Saf*/E*/* -d 1 -name In*t -exec '"${c1[14]}"' :CFBundleDisplayName" {} \;|sort|uniq' '~ $TMPDIR.. \( -flags +sappnd,schg,uappnd,uchg -o ! -user $UID -o ! -perm -600 \)' '.??* -path .Trash -prune -o -type d -name *.app -print -prune' :${p[35]}\" :Label\" '{/,}L*/{Con,Pref}* -type f ! -size 0 -name *.plist -exec plutil -s {} \;' "-f'%N: %l' Desktop L*/Keyc*" therm sysload boot-args status " -F '\$Time \$Message' -k Sender kernel -k Message Req 'bad |Beac|caug|dead[^bl]|FAIL|fail|GPU |hfs: Ru|inval|jnl:|last value [1-9]|n Cause: -|NVDA\(|pagin|proc: t|Roamed|rror|ssert|Thrott|tim(ed? ?|ing )o|WARN' -k Message Rne 'Goog|ksadm|SMC:| VALI|xpma' -o -k Sender fseventsd -k Message Req 'SL' " '-du -n DEV -n EDEV 1 10' 'acrx -o comm,ruid,%cpu' '-t1 10 1' '-f -pfc /var/db/r*/com.apple.*.{BS,Bas,Es,J,OSXU,Rem,up}*.bom' '{/,}L*/Lo*/Diag* -type f -regex .\*[cgh] ! -name *ag \( -exec grep -lq "^Thread c" {} \; -exec printf \* \; -o -true \) -execdir stat -f:%Sc:%N -t%F {} \;|sort -t: -k2 |tail -n'${p[38]} '-L {/{S*/,},}L*/Lau* -type f' '-L /{S*/,}L*/StartupItems -type f -exec file {} +' '-L /S*/L*/{C*/Sec*A,E}* {/,}L*/{A*d,Ca*/*/Ex,Co{mpon,reM},Ex,Inter,iTu*/*P,Keyb,Mail/B,Pr*P,Qu*T,Scripti,Sec,Servi,Spo,Widg}* -path \\*s/Resources -prune -o -type f -name Info.plist' '/usr/lib -type f -name *.dylib' `awk "${s[31]}"<<<${p[23]}` "/e*/{auto,{cron,fs}tab,hosts,{[lp],sy}*.conf,pam.d/*,ssh{,d}_config,*.local} {,/usr/local}/etc/periodic/*/* /L*/P*{,/*}/com.a*.{Bo,sec*.ap}*t /S*/L*/Lau*/*t .launchd.conf" list getenv /Library/Preferences/com.apple.alf\ globalstate --proxy '-n get default' -I --dns -getdnsservers\ "${p[N5]}" -getinfo\ "${p[N5]}" -P -m\ / '' -n1 '-R -l1 -n1 -o prt -stats command,uid,prt' '--regexp --only-files --files com.apple.pkg.*|sort|uniq' -kl -l -s\ / '-R -l1 -n1 -o mem -stats command,uid,mem' '+c0 -i4TCP:0-1023' com.apple.dashboard\ layer-gadgets '-d /L*/Mana*/$USER&&echo On' '-app Safari WebKitDNSPrefetchingEnabled' "+c0 -l|awk '{print(\$1,\$3)}'|sort|uniq -c|sort -n|tail -1|awk '{print(\$2,\$3,\$1)}'" );N1=${#c2[@]};for j in {0..9};do c2[N1+j]=SP${p[j]}DataType;done;N2=${#c2[@]};for j in 0 1;do c2[N2+j]="-n ' syscall::'${p[33+j]}':return { @out[execname,uid]=sum(arg0) } tick-10sec { trunc(@out,1);exit(0);} '";done;l=(Restricted\ files Hidden\ apps 'Elapsed time (s)' POST Battery Safari\ extensions Bad\ plists 'High file counts' User Heat System\ load boot\ args FileVault Diagnostic\ reports Log 'Free space (MiB)' 'Swap (MiB)' Activity 'CPU per process' Login\ hook 'I/O per process' Mach\ ports kexts Daemons Agents launchd Startup\ items Admin\ access Root\ access Bundles dylibs Apps Font\ issues Inserted\ dylibs Firewall Proxies DNS TCP/IP Wi-Fi Profiles Root\ crontab User\ crontab 'Global login items' 'User login items' Spotlight Memory Listeners Widgets Parental\ Controls Prefetching SATA Descriptors );N3=${#l[@]};for i in 0 1 2;do l[N3+i]=${p[5+i]};done;N4=${#l[@]};for j in 0 1;do l[N4+j]="Current ${p[29+j]}stream data";done;A0() { id -G|grep -qw 80;v[1]=$?;((v[1]==0))&&sudo true;v[2]=$?;v[3]=`date +%s`;clear >&-;date '+Start time: %T %D%n';};for i in 0 1;do eval ' A'$((1+i))'() { v=` eval "${c1[$1]} ${c2[$2]}"|'${c1[30+i]}' "${s[$3]}" `;[[ "$v" ]];};A'$((3+i))'() { v=` while read i;do [[ "$i" ]]&&eval "${c1[$1]} ${c2[$2]}" \"$i\"|'${c1[30+i]}' "${s[$3]}";done<<<"${v[$4]}" `;[[ "$v" ]];};A'$((5+i))'() { v=` while read i;do '${c1[30+i]}' "${s[$1]}" "$i";done<<<"${v[$2]}" `;[[ "$v" ]];};';done;A7(){ v=$((`date +%s`-v[3]));};B2(){ v[$1]="$v";};for i in 0 1;do eval ' B'$i'() { v=;((v['$((i+1))']==0))||{ v=No;false;};};B'$((3+i))'() { v[$2]=`'${c1[30+i]}' "${s[$3]}"<<<"${v[$1]}"`;} ';done;B5(){ v[$1]="${v[$1]}"$'\n'"${v[$2]}";};B6() { v=` paste -d: <(printf "${v[$1]}") <(printf "${v[$2]}")|awk -F: ' {printf("'"${f[$3]}"'",$1,$2)} ' `;};B7(){ v=`grep -Fv "${v[$1]}"<<<"$v"`;};C0(){ [[ "$v" ]]&&echo "$v";};C1() { [[ "$v" ]]&&printf "${f[$1]}" "${l[$2]}" "$v";};C2() { v=`echo $v`;[[ "$v" != 0 ]]&&C1 0 $1;};C3() { v=`sed -E "$s"<<<"$v"`&&C1 1 $1;};for i in 1 2;do for j in 0 2 3;do eval D$i$j'(){ A'$i' $1 $2 $3; C'$j' $4;};';done;done;{ A0;D20 0 $((N1+1)) 2;D10 0 $N1 1;B0;C2 27;B0&&! B1&&C2 28;D12 15 37 25 8;A1 0 $((N1+2)) 3;C0;D13 0 $((N1+3)) 4 3;D23 0 $((N1+4)) 5 4;D13 0 $((N1+9)) 59 50;for i in 0 1 2;do D13 0 $((N1+5+i)) 6 $((N3+i));done;D13 1 10 7 9;D13 1 11 8 10;D22 2 12 9 11;D12 3 13 10 12;D23 4 19 44 13;D23 5 14 12 14;D22 6 36 13 15;D22 7 37 14 16;D23 8 15 38 17;D22 9 16 16 18;B1&&{ D22 35 49 61 51;D22 11 17 17 20;for i in 0 1;do D22 28 $((N2+i)) 45 $((N4+i));done;};D22 12 44 54 45;D22 12 39 15 21;A1 13 40 18;B2 4;B3 4 0 19;A3 14 6 32 0;B4 0 5 11;A1 17 41 20;B7 5;C3 22;B4 4 6 21;A3 14 7 32 6;B4 0 7 11;B3 4 0 22;A3 14 6 32 0;B4 0 8 11;B5 7 8;B1&&{ A2 19 26 23;B7 7;C3 23;};A2 18 26 23;B7 7;C3 24;A2 4 20 21;B7 6;B2 9;A4 14 7 52 9;B2 10;B6 9 10 4;C3 25;D13 4 21 24 26;B4 4 12 26;B3 4 13 27;A1 4 22 29;B7 12;B2 14;A4 14 6 52 14;B2 15;B6 14 15 4;B3 0 0 30;C3 29;A1 4 23 27;B7 13;C3 30;D13 24 24 32 31;D13 25 37 32 33;A2 23 18 28;B2 16;A2 16 25 33;B7 16;B3 0 0 34;B2 21;A6 47 21&&C0;B1&&{ D13 21 0 32 19;D13 10 42 32 40;D22 29 35 46 39;};D13 14 1 48 42;D12 34 43 53 44;D22 0 $((N1+8)) 51 32;D13 4 8 41 6;D12 26 28 35 34;D13 27 29 36 35;A2 27 32 39&&{ B2 19;A2 33 33 40;B2 20;B6 19 20 3;};C2 36;D23 33 34 42 37;B1&&D23 35 45 55 46;D23 32 31 43 38;D12 36 47 32 48;D13 20 42 32 41;D13 14 2 48 43;D13 4 5 32 1;D13 4 3 60 5;D12 26 48 49 49;B3 4 22 57;A1 26 46 56;B7 22;B3 0 0 58;C3 47;D22 4 4 50 0;D23 22 9 37 7;A7;C2 2;} 2>/dev/null|pbcopy;exit 2>&-

    Copy the selected text to the Clipboard by pressing the key combination command-C.

    8. Launch the built-in Terminal application in any of the following ways:

    ☞ Enter the first few letters of its name into a Spotlight search. Select it in the results (it should be at the top.)

    ☞ In the Finder, select Go ▹ Utilities from the menu bar, or press the key combination shift-command-U. The application is in the folder that opens.

    ☞ Open LaunchPad. Click Utilities, then Terminal in the icon grid.

    Click anywhere in the Terminal window and paste by pressing command-V. The text you pasted should vanish immediately. If it doesn't, press the return key.

    9. If you see an error message in the Terminal window such as "Syntax error" or "Event not found," enter

    exec bash

    and press return. Then paste the script again.

    10. If you're logged in as an administrator, you'll be prompted for your login password. Nothing will be displayed when you type it. You will not see the usual dots in place of typed characters. Make sure caps lock is off. Type carefully and then press return. You may get a one-time warning to be careful. If you make three failed attempts to enter the password, the test will run anyway, but it will produce less information. In most cases, the difference is not important. If you don't know the password, or if you prefer not to enter it, press the key combination control-C or just press return  three times at the password prompt. Again, the script will still run.

    If you're not logged in as an administrator, you won't be prompted for a password. The test will still run. It just won't do anything that requires administrator privileges.

    11. The test may take a few minutes to run, depending on how many files you have and the speed of the computer. A computer that's abnormally slow may take longer to run the test. While it's running, there will be nothing in the Terminal window and no indication of progress. Wait for the line

    [Process completed]

    to appear. If you don't see it within half an hour or so, the test probably won't complete in a reasonable time. In that case, close the Terminal window and report what happened. No harm will be done.

    12. When the test is complete, quit Terminal. The results will have been copied to the Clipboard automatically. They are not shown in the Terminal window. Please don't copy anything from there. All you have to do is start a reply to this comment and then paste by pressing command-V again.

    At the top of the results, there will be a line that begins with the words "Start time." If you don't see that, but instead see a mass of gibberish, you didn't wait for the "Process completed" message to appear in the Terminal window. Please wait for it and try again.

    If any private information, such as your name or email address, appears in the results, anonymize it before posting. Usually that won't be necessary.

    13. When you post the results, you might see an error message on the web page: "You have included content in your post that is not permitted," or "You are not authorized to post." That's a bug in the forum software. Please post the test results on Pastebin, then post a link here to the page you created.

    14. This is a public forum, and others may give you advice based on the results of the test. They speak only for themselves, and I don't necessarily agree with them.

    ______________________________________________________________

    Copyright © 2014 by Linc Davis. As the sole author of this work, I reserve all rights to it except as provided in the Use Agreement for the Apple Support Communities website ("ASC"). Readers of ASC may copy it for their own personal use. Neither the whole nor any part may be redistributed.

  • by mohitd2000,

    mohitd2000 mohitd2000 Aug 30, 2014 9:46 AM in response to Linc Davis
    Level 1 (0 points)
    Aug 30, 2014 9:46 AM in response to Linc Davis

    I probably could have saved you some time mentioning that I'm a UNIX-based developer so I apologize for that. I read through the script, and, although it might appear complicated, it doesn't do anything malicious. The log it generates it also immensely helpful and I was able to figure out the issue. Here are the relevant log statements:

    Log
    
       Aug 30 10:10:34 ALF: ifnet_get_address_list_family error 12
       Aug 30 10:10:34 ALF: ifnet_get_address_list_family error 12
       Aug 30 10:10:35 ALF: ifnet_get_address_list_family error 12
       Aug 30 10:10:35 ALF: ifnet_get_address_list_family error 12
       Aug 30 10:10:36 ALF: ifnet_get_address_list_family error 12
       Aug 30 10:10:36 ALF: ifnet_get_address_list_family error 12
       Aug 30 10:10:36 ALF: ifnet_get_address_list_family error 12
       Aug 30 10:10:37 ALF: ifnet_get_address_list_family error 12
       Aug 30 10:10:37 ALF: ifnet_get_address_list_family error 12
       Aug 30 10:10:37 ALF: ifnet_get_address_list_family error 12
       Aug 30 10:10:37 ALF: ifnet_get_address_list_family error 12
       Aug 30 10:10:37 ALF: ifnet_get_address_list_family error 12
       Aug 30 10:10:38 ALF: ifnet_get_address_list_family error 12
       Aug 30 10:10:38 ALF: ifnet_get_address_list_family error 12
       Aug 30 10:10:38 ALF: ifnet_get_address_list_family error 12
       Aug 30 10:10:49 process Cisco AnyConnect[1322] caught causing excessive wakeups. Observed wakeups rate (per sec): 242; Maximum permitted wakeups rate (per sec): 150; Observation period: 300 seconds; Task lifetime number of wakeups: 45096
       Aug 30 10:13:29 SIOCPROTODETACH_IN6: utun0 error=6
       Aug 30 10:17:49 CoreStorageFamily::unlockVEKs() failed to unwrap the vek, status = e00002bc
       Aug 30 10:20:25 process backupd[1597] thread 69198 caught burning CPU! It used more than 50% CPU (Actual recent usage: 71%) over 180 seconds. thread lifetime cpu usage 90.045735 seconds, (48.625393 user, 41.420342 system) ledger info: balance: 90000412160 credit: 90000412160 debit: 0 limit: 90000000000 (50%) period: 180000000000 time since last refill (ns): 125584625667 
       Aug 30 11:39:19 SATA WARNING: IDENTIFY DEVICE checksum not implemented.
       Aug 30 11:45:54 SATA WARNING: IDENTIFY DEVICE checksum not implemented.
       Aug 30 11:46:06 SIOCPROTODETACH_IN6: utun0 error=6
       Aug 30 11:54:03 process acwebsecagent[287] caught causing excessive wakeups. Observed wakeups rate (per sec): 254; Maximum permitted wakeups rate (per sec): 150; Observation period: 300 seconds; Task lifetime number of wakeups: 89596
       Aug 30 12:20:27 SATA WARNING: IDENTIFY DEVICE checksum not implemented.
       Aug 30 12:20:38 SIOCPROTODETACH_IN6: utun0 error=6
    

     

    The issue was with the Cisco AnyConnect VPN Client. After uninstalling that, my network connections were fully functioning and back to normal. Thanks Linc!

  • by quadrinary,

    quadrinary quadrinary Jan 12, 2015 12:39 PM in response to mohitd2000
    Level 1 (0 points)
    Jan 12, 2015 12:39 PM in response to mohitd2000

    All - I have a solution for this problem.

     

    In your AnyConnect Group Policy, go to Advanced > Split Tunneling

     

    for "DNS Names" uncheck "inherit" and manually define your LAN's internal DNS domain name.

     

    for "Send All DNS Lookups Through Tunnel" uncheck "inherit" and manually select "no". 

     

    For reasons I've not yet figured out, Yosemite does not like tunneling all DNS lookups through the tunnel.

     

    If this is a sticking point for your environment, you may need to define a separate Group Policy for your OS X users until Cisco/Apple figure out their bug.

     

    It should work immediately after disconnecting/reconnecting to AnyConnect.

     

    Don't forget to save your changes!

     

    -Tim

  • by Artur Mac,

    Artur Mac Artur Mac Oct 20, 2015 7:26 AM in response to Linc Davis
    Level 1 (0 points)
    Oct 20, 2015 7:26 AM in response to Linc Davis

    Thank you very much. This helps tons when diagnosing issues. Wish I knew how to write that. It's like knowing a language! Thank you again, anc congratulations on your outstanding ability.

  • by WIZARD1325,

    WIZARD1325 WIZARD1325 May 3, 2016 6:46 PM in response to Linc Davis
    Level 1 (4 points)
    May 3, 2016 6:46 PM in response to Linc Davis

    Start time: 21:32:00 05/03/16

     

     

    Model Identifier: iMac11,1

    System Version: OS X 10.11.4 (15E65)

    Kernel Version: Darwin 15.4.0

    Boot Mode: Safe

    System Integrity Protection: Enabled

    Time since boot: 17 minutes

     

     

    SATA

     

     

       ST31000528AS                           

     

     

    Log

     

     

       May  3 21:15:18 Failed to load kext com.apple.driver.CoreCaptureResponder (error 0xdc008012).

       May  3 21:15:18 Kext com.apple.iokit.IOFireWireIP failed to load (0xdc008012).

       May  3 21:15:18 Failed to load kext com.apple.iokit.IOFireWireIP (error 0xdc008012).

       May  3 21:15:18 Kext com.apple.driver.AppleHDAController failed to load (0xdc008012).

       May  3 21:15:18 Failed to load kext com.apple.driver.AppleHDAController (error 0xdc008012).

       May  3 21:15:18 Kext com.apple.driver.AppleFIVRDriver failed to load (0xdc008012).

       May  3 21:15:18 Failed to load kext com.apple.driver.AppleFIVRDriver (error 0xdc008012).

       May  3 21:15:18 Kext com.apple.iokit.IOBluetoothSerialManager failed to load (0xdc008012).

       May  3 21:15:18 Failed to load kext com.apple.iokit.IOBluetoothSerialManager (error 0xdc008012).

       May  3 21:15:18 Kext com.apple.driver.AppleMikeyDriver failed to load (0xdc008012).

       May  3 21:15:18 Failed to load kext com.apple.driver.AppleMikeyDriver (error 0xdc008012).

       May  3 21:15:18 Kext com.apple.ATIRadeonX2000 failed to load (0xdc008012).

       May  3 21:15:18 Failed to load kext com.apple.ATIRadeonX2000 (error 0xdc008012).

       May  3 21:15:18 Kext com.apple.iokit.IOUserEthernet failed to load (0xdc008012).

       May  3 21:15:18 Failed to load kext com.apple.iokit.IOUserEthernet (error 0xdc008012).

       May  3 21:15:18 Kext com.apple.driver.pmtelemetry failed to load (0xdc008012).

       May  3 21:15:18 Failed to load kext com.apple.driver.pmtelemetry (error 0xdc008012).

       May  3 21:15:18 Kext com.apple.driver.AppleUpstreamUserClient failed to load (0xdc008012).

       May  3 21:15:18 Failed to load kext com.apple.driver.AppleUpstreamUserClient (error 0xdc008012).

       May  3 21:15:18 Kext com.apple.driver.AppleOSXWatchdog failed to load (0xdc008012).

       May  3 21:15:18 Failed to load kext com.apple.driver.AppleOSXWatchdog (error 0xdc008012).

       May  3 21:15:22 Kext com.apple.driver.AppleTyMCEDriver failed to load (0xdc008012).

       May  3 21:15:22 Failed to load kext com.apple.driver.AppleTyMCEDriver (error 0xdc008012).

       May  3 21:15:25 IOHIDSystem: Seize of AppleMultitouchHIDEventDriver failed.

       May  3 21:15:25 IOHIDSystem: Seize of IOHIDPointing failed.

     

     

    CPU per process: WindowServer (UID 0) is using 144.8  %

     

     

    launchd

     

     

       /Library/LaunchDaemons/com.apple.installer.osmessagetracing.plist

       - com.apple.installer.osmessagetracing

     

     

    Contents of /etc/hosts

     

     

       127.0.0.1 localhost

       255.255.255.255 broadcasthost

       ::1             localhost

     

     

    Contents of /etc/pf.conf

     

     

       scrub-anchor "com.apple/*"

       nat-anchor "com.apple/*"

       rdr-anchor "com.apple/*"

       dummynet-anchor "com.apple/*"

       anchor "com.apple/*"

       load anchor "com.apple" from "/etc/pf.anchors/com.apple"

     

     

    Contents of /etc/syslog.conf

     

     

       install.* @127.0.0.1:32376

     

     

    Contents of /etc/pam.d/authorization

     

     

       auth       optional       pam_krb5.so use_first_pass use_kcminit

       auth       optional       pam_ntlm.so use_first_pass

       auth       required       pam_opendirectory.so use_first_pass nullok

       account    required       pam_opendirectory.so

     

     

    Contents of /etc/pam.d/checkpw

     

     

       auth       required       pam_opendirectory.so use_first_pass nullok

       account    required       pam_opendirectory.so no_check_home no_check_shell

     

     

    Contents of /etc/pam.d/chkpasswd

     

     

       auth       required       pam_opendirectory.so

       account    required       pam_opendirectory.so

       password   required       pam_permit.so

       session    required       pam_permit.so

     

     

    Contents of /etc/pam.d/cups

     

     

       auth       required       pam_opendirectory.so

       account    required       pam_permit.so

       password   required       pam_deny.so

       session    required       pam_permit.so

     

     

    Contents of /etc/pam.d/ftpd

     

     

       auth       required       pam_opendirectory.so

       account    required       pam_permit.so

       password   required       pam_deny.so

       session    required       pam_permit.so

     

     

    Contents of /etc/pam.d/login

     

     

       auth       optional       pam_krb5.so use_kcminit

       auth       optional       pam_ntlm.so try_first_pass

       auth       optional       pam_mount.so try_first_pass

       auth       required       pam_opendirectory.so try_first_pass

       account    required       pam_nologin.so

       account    required       pam_opendirectory.so

       password   required       pam_opendirectory.so

       session    required       pam_launchd.so

       session    required       pam_uwtmp.so

       session    optional       pam_mount.so

     

     

    Contents of /etc/pam.d/login.term

     

     

       account    required       pam_nologin.so

       account    required       pam_opendirectory.so

       session    required       pam_uwtmp.so

     

     

    Contents of /etc/pam.d/other

     

     

       auth       required       pam_deny.so

       account    required       pam_deny.so

       password   required       pam_deny.so

       session    required       pam_deny.so

     

     

    Contents of /etc/pam.d/passwd

     

     

       auth       required       pam_permit.so

       account    required       pam_opendirectory.so

       password   required       pam_opendirectory.so

       session    required       pam_permit.so

     

     

    Contents of /etc/pam.d/rshd

     

     

       auth        required       pam_permit.so

       account     required       pam_nologin.so

       account     required       pam_opendirectory.so

       session     required       pam_launchd.so

     

     

    Contents of /etc/pam.d/screensaver

     

     

       auth       optional       pam_krb5.so use_first_pass use_kcminit

       auth       required       pam_opendirectory.so use_first_pass nullok

       account    required       pam_opendirectory.so

       account    sufficient     pam_self.so

       account    required       pam_group.so no_warn group=admin,wheel fail_safe

       account    required       pam_group.so no_warn deny group=admin,wheel ruser fail_safe

     

     

    Contents of /etc/pam.d/smbd

     

     

       account required pam_sacl.so sacl_service=smb allow_trustacct

       session required pam_permit.so

     

     

    Contents of /etc/pam.d/sshd

     

     

       auth       optional       pam_krb5.so use_kcminit

       auth       optional       pam_ntlm.so try_first_pass

       auth       optional       pam_mount.so try_first_pass

       auth       required       pam_opendirectory.so try_first_pass

       account    required       pam_nologin.so

       account    required       pam_sacl.so sacl_service=ssh

       account    required       pam_opendirectory.so

       password   required       pam_opendirectory.so

       session    required       pam_launchd.so

       session    optional       pam_mount.so

     

     

    Contents of /etc/pam.d/su

     

     

       auth       sufficient     pam_rootok.so

       auth       required       pam_opendirectory.so

       account    required       pam_group.so no_warn group=admin,wheel ruser root_only fail_safe

       account    required       pam_opendirectory.so no_check_shell

       password   required       pam_opendirectory.so

       session    required       pam_launchd.so

     

     

    Contents of /etc/pam.d/sudo

     

     

       auth       required       pam_opendirectory.so

       account    required       pam_permit.so

       password   required       pam_deny.so

       session    required       pam_permit.so

     

     

    Contents of /etc/periodic/daily/110.clean-tmps

     

     

       if [ -r /etc/defaults/periodic.conf ]

       then

           . /etc/defaults/periodic.conf

           source_periodic_confs

       fi

       case "$daily_clean_tmps_enable" in

           [Yy][Ee][Ss])

        if [ -z "$daily_clean_tmps_days" ]

        then

           echo '$daily_clean_tmps_enable is set but' \

        '$daily_clean_tmps_days is not'

           rc=2

        else

           echo ""

           echo "Removing old temporary files:"

           set -f noglob

           args="-atime +$daily_clean_tmps_days -mtime +$daily_clean_tmps_days"

           args="${args} -ctime +$daily_clean_tmps_days"

           dargs="-empty -mtime +$daily_clean_tmps_days"

           dargs="${dargs} ! -name .vfs_rsrc_streams_*"

           [ -n "$daily_clean_tmps_ignore" ] && {

        args="$args "`echo " ${daily_clean_tmps_ignore% }" |

           sed 's/[ ][ ]*/ ! -name /g'`

        dargs="$dargs "`echo " ${daily_clean_tmps_ignore% }" |

           sed 's/[ ][ ]*/ ! -name /g'`

     

     

       ...and 21 more line(s)

     

     

    Contents of /etc/periodic/daily/130.clean-msgs

     

     

       if [ -r /etc/defaults/periodic.conf ]

       then

           . /etc/defaults/periodic.conf

           source_periodic_confs

       fi

       case "$daily_clean_msgs_enable" in

           [Yy][Ee][Ss])

        if [ ! -d /var/msgs ]

        then

           echo '$daily_clean_msgs_enable is set but /var/msgs' \

        "doesn't exist"

           rc=2

        else

           echo ""

           echo "Cleaning out old system announcements:"

           [ -n "$daily_clean_msgs_days" ] &&

        arg=-${daily_clean_msgs_days#-} || arg=

           msgs -c $arg && rc=0 || rc=3

        fi;;

           *)  rc=0;;

       esac

       exit $rc

     

     

    Contents of /etc/periodic/daily/140.clean-rwho

     

     

       if [ -r /etc/defaults/periodic.conf ]

       then

           . /etc/defaults/periodic.conf

           source_periodic_confs

       fi

       case "$daily_clean_rwho_enable" in

           [Yy][Ee][Ss])

        if [ -z "$daily_clean_rwho_days" ]

        then

           echo '$daily_clean_rwho_enable is enabled but' \

        '$daily_clean_rwho_days is not set'

           rc=2

        elif [ ! -d /var/rwho ]

        then

           echo '$daily_clean_rwho_enable is enabled but /var/rwho' \

        "doesn't exist"

           rc=2

        else

           echo ""

           echo "Removing stale files from /var/rwho:"

           case "$daily_clean_rwho_verbose" in

        [Yy][Ee][Ss])

           print=-print;;

        *)

           print=;;

     

     

       ...and 14 more line(s)

     

     

    Contents of /etc/periodic/daily/199.clean-fax

     

     

       if [ -r /etc/defaults/periodic.conf ]

       then

           . /etc/defaults/periodic.conf

           source_periodic_confs

       fi

       if [ -d /var/spool/fax ]; then

           echo ""

           echo "Removing scratch fax files"

           cd /var/spool/fax && \

           find . -type f -name '[0-9]*.[0-9][0-9][0-9]' -mtime +7 -delete >/dev/null 2>&1;

       fi

     

     

    Contents of /etc/periodic/daily/310.accounting

     

     

       if [ -r /etc/defaults/periodic.conf ]

       then

           . /etc/defaults/periodic.conf

           source_periodic_confs

       fi

       case "$daily_accounting_enable" in

           [Yy][Ee][Ss])

        if [ ! -f /var/account/acct ]

        then

           echo '$daily_accounting_enable is set but /var/account/acct' \

        "doesn't exist"

           rc=2

        elif [ -z "$daily_accounting_save" ]

        then

           echo '$daily_accounting_enable is set but ' \

        '$daily_accounting_save is not'

           rc=2

        else

           echo ""

           echo "Rotating accounting logs and gathering statistics:"

           cd /var/account

           rc=0

           n=$daily_accounting_save

           rm -f acct.$n.gz acct.$n || rc=3

           m=$n

     

     

       ...and 18 more line(s)

     

     

    Contents of /etc/periodic/daily/400.status-disks

     

     

       if [ -r /etc/defaults/periodic.conf ]

       then

           . /etc/defaults/periodic.conf

           source_periodic_confs

       fi

       case "$daily_status_disks_enable" in

           [Yy][Ee][Ss])

        echo ""

        echo "Disk status:"

        df $daily_status_disks_df_flags && rc=1 || rc=3

        ;;

           *)  rc=0;;

       esac

       exit $rc

     

     

    Contents of /etc/periodic/daily/420.status-network

     

     

       if [ -r /etc/defaults/periodic.conf ]

       then

           . /etc/defaults/periodic.conf

           source_periodic_confs

       fi

       case "$daily_status_network_enable" in

           [Yy][Ee][Ss])

        echo ""

        echo "Network interface status:"

        case "$daily_status_network_usedns" in

           [Yy][Ee][Ss])

        netstat -i && rc=0 || rc=3;;

           *)

        netstat -in && rc=0 || rc=3;;

        esac;;

           *)  rc=0;;

       esac

       exit $rc

     

     

    Contents of /etc/periodic/daily/430.status-rwho

     

     

       if [ -r /etc/defaults/periodic.conf ]

       then

           . /etc/defaults/periodic.conf

           source_periodic_confs

       fi

       case "$daily_status_rwho_enable" in

           [Yy][Ee][Ss])

        rwho=$(echo /var/rwho/*)

               if [ -f "${rwho%% *}" ]

               then

           echo ""

           echo "Local network system status:"

           prog=ruptime

        else

           echo ""

           echo "Local system status:"

           prog=uptime

        fi

        rc=$($prog | tee /dev/stderr | wc -l)

        if [ $? -eq 0 ]

        then

           [ $rc -gt 1 ] && rc=1

        else

           rc=3

        fi;;

     

     

       ...and 3 more line(s)

     

     

    Contents of /etc/periodic/daily/999.local

     

     

       if [ -r /etc/defaults/periodic.conf ]

       then

           . /etc/defaults/periodic.conf

           source_periodic_confs

       fi

       rc=0

       for script in $daily_local

       do

           echo ''

           case "$script" in

        /*)

           if [ -f "$script" ]

           then

        echo "Running $script:"

        sh $script || rc=3

           else

        echo "$script: No such file"

        [ $rc -lt 2 ] && rc=2

           fi;;

        *)

           echo "$script: Not an absolute path"

           [ $rc -lt 2 ] && rc=2;;

           esac

       done

       exit $rc

     

     

    Contents of /etc/periodic/monthly/199.rotate-fax

     

     

       if [ -r /etc/defaults/periodic.conf ]

       then

           . /etc/defaults/periodic.conf

           source_periodic_confs

       fi

       echo ""

       printf %s "Rotating fax log files:"

       cd /var/log/fax

       for i in *.log; do

           if [ -f "${i}" ]; then

           echo -n " $i"

           if [ -x /usr/bin/gzip ]; then gzext=".gz"; else gzext=""; fi

           if [ -f "${i}.3${gzext}" ]; then mv -f "${i}.3${gzext}" "${i}.4${gzext}"; fi

           if [ -f "${i}.2${gzext}" ]; then mv -f "${i}.2${gzext}" "${i}.3${gzext}"; fi

           if [ -f "${i}.1${gzext}" ]; then mv -f "${i}.1${gzext}" "${i}.2${gzext}"; fi

           if [ -f "${i}.0${gzext}" ]; then mv -f "${i}.0${gzext}" "${i}.1${gzext}"; fi

           if [ -f "${i}" ]; then mv -f "${i}" "${i}.0" && if [ -x /usr/bin/gzip ]; then gzip -9 "${i}.0"; fi; fi

           touch "${i}" && chmod 640 "${i}" && chown root:admin "${i}"

           fi

       done

       echo ""

     

     

    Contents of /etc/periodic/monthly/200.accounting

     

     

       if [ -r /etc/defaults/periodic.conf ]

       then

           . /etc/defaults/periodic.conf

           source_periodic_confs

       fi

       oldmask=$(umask)

       umask 066

       case "$monthly_accounting_enable" in

           [Yy][Ee][Ss])

        W=/var/log/wtmp

        rc=0

        remove=NO

        if [ $rc -eq 0 ]

        then

           echo ""

           echo "Doing login accounting:"

           rc=$(ac -p | sort -nr -k 2 | tee /dev/stderr | wc -l)

           [ $rc -gt 0 ] && rc=1

        fi

        [ $remove = YES ] && rm -f $W.0;;

           *)  rc=0;;

       esac

       umask $oldmask

       exit $rc

     

     

    Contents of /etc/periodic/monthly/999.local

     

     

       if [ -r /etc/defaults/periodic.conf ]

       then

           . /etc/defaults/periodic.conf

           source_periodic_confs

       fi

       rc=0

       for script in $monthly_local

       do

           echo ''

           case "$script" in

        /*)

           if [ -f "$script" ]

           then

        echo "Running $script:"

        sh $script || rc=3

           else

        echo "$script: No such file"

        [ $rc -lt 2 ] && rc=2

           fi;;

        *)

           echo "$script: Not an absolute path"

           [ $rc -lt 2 ] && rc=2;;

           esac

       done

       exit $rc

     

     

    Contents of /etc/periodic/weekly/320.whatis

     

     

       if [ -r /etc/defaults/periodic.conf ]

       then

           . /etc/defaults/periodic.conf

           source_periodic_confs

       fi

       case "$weekly_whatis_enable" in

           [Yy][Ee][Ss])

        echo ""

        echo "Rebuilding whatis database:"

        MANPATH=`/usr/bin/manpath -q`

        if [ $? = 0 ]

        then

           if [ -z "${MANPATH}" ]

           then

        echo "manpath failed to find any manpage directories"

        rc=3

           else

        rc=0

        /usr/libexec/makewhatis.local "${MANPATH}" || rc=3

        if [ X"${man_locales}" != X ]

        then

           for i in ${man_locales}

           do

        LC_ALL=$i /usr/libexec/makewhatis.local -a \

           -L "${MANPATH}" || rc=3

     

     

       ...and 9 more line(s)

     

     

    Contents of /etc/periodic/weekly/999.local

     

     

       if [ -r /etc/defaults/periodic.conf ]

       then

           . /etc/defaults/periodic.conf

           source_periodic_confs

       fi

       rc=0

       for script in $weekly_local

       do

           echo ''

           case "$script" in

        /*)

           if [ -f "$script" ]

           then

        echo "Running $script:"

        sh $script || rc=3

           else

        echo "$script: No such file"

        [ $rc -lt 2 ] && rc=2

           fi;;

        *)

           echo "$script: Not an absolute path"

           [ $rc -lt 2 ] && rc=2;;

           esac

       done

       exit $rc

     

     

    Contents of /Library/Preferences/com.apple.security.appsandbox.plist (XML  document text)

     

     

       <?xml version="1.0" encoding="UTF-8"?>

       <!DOCTYPE plist PUBLIC "-//Apple//DTD PLIST 1.0//EN" "http://www.apple.com/DTDs/PropertyList-1.0.dtd">

       <plist version="1.0">

       <dict>

           <key>UnrestrictSpotlightContainerScope</key>

           <true/>

       </dict>

       </plist>

     

     

    Contents of /Library/Preferences/SystemConfiguration/com.apple.Boot.plist (XML  document text)

     

     

       <?xml version="1.0" encoding="UTF-8"?>

       <!DOCTYPE plist PUBLIC "-//Apple//DTD PLIST 1.0//EN" "http://www.apple.com/DTDs/PropertyList-1.0.dtd">

       <plist version="1.0">

       <dict>

        <key>Kernel Flags</key>

        <string></string>

       </dict>

       </plist>

     

     

    Spotlight: Indexing and searching disabled

     

     

    Restricted files: 2

     

     

    Elapsed time (s): 284

  • by WIZARD1325,

    WIZARD1325 WIZARD1325 May 3, 2016 6:48 PM in response to WIZARD1325
    Level 1 (4 points)
    May 3, 2016 6:48 PM in response to WIZARD1325

    Whats wrong with my computer? I get white screen of death tried everything imaginable

     

    c-p-r

    c-r

    unplugging

    reinstalling

    partitioning

    full format

     

    still i get the white screen of death

    I can boot into safe mode and did your test

    can you tell me whats wrong thanks

  • by jojejj,

    jojejj jojejj Jun 30, 2016 12:54 PM in response to mohitd2000
    Level 1 (4 points)
    Jun 30, 2016 12:54 PM in response to mohitd2000

    Start time: 01:17:12 07/01/16

     

     

    Model Identifier: MacBookPro11,5

    System Version: OS X 10.11.5 (15F34)

    Kernel Version: Darwin 15.5.0

    System Integrity Protection: Enabled

    Time since boot: 1 day 11:57

     

     

    Log

     

     

       Jun 29 15:51:54 process Meeting Center[29346] caught causing excessive wakeups. Observed wakeups rate (per sec): 609; Maximum permitted wakeups rate (per sec): 150; Observation period: 300 seconds; Task lifetime number of wakeups: 45268

       Jun 29 20:27:15 process vmware-vmx[72167] caught causing excessive wakeups. Observed wakeups rate (per sec): 848; Maximum permitted wakeups rate (per sec): 150; Observation period: 300 seconds; Task lifetime number of wakeups: 45015

       Jun 29 20:37:37 process Meeting Center[75368] caught causing excessive wakeups. Observed wakeups rate (per sec): 605; Maximum permitted wakeups rate (per sec): 150; Observation period: 300 seconds; Task lifetime number of wakeups: 45011

       Jun 29 21:25:02 vmnet: netif-vmnet1: SIOCPROTODETACH failed: 16.

       Jun 29 21:25:03 vmnet: netif-vmnet8: SIOCPROTODETACH failed: 16.

       Jun 30 06:06:17 [HID] [ATC] [Error] AppleDeviceManagementHIDEventService::start Could not make a string from out connection notification key

       Jun 30 06:06:17 [HID] [ATC] [Error] AppleDeviceManagementHIDEventService::start Could not make a string from out poweredoff notification key

       Jun 30 07:02:22 [HID] [ATC] [Error] AppleDeviceManagementHIDEventService::start Could not make a string from out connection notification key

       Jun 30 07:02:22 [HID] [ATC] [Error] AppleDeviceManagementHIDEventService::start Could not make a string from out poweredoff notification key

       Jun 30 07:42:26 [HID] [ATC] [Error] AppleDeviceManagementHIDEventService::start Could not make a string from out connection notification key

       Jun 30 07:42:26 [HID] [ATC] [Error] AppleDeviceManagementHIDEventService::start Could not make a string from out poweredoff notification key

       Jun 30 07:49:14 [HID] [ATC] [Error] AppleDeviceManagementHIDEventService::start Could not make a string from out connection notification key

       Jun 30 07:49:14 [HID] [ATC] [Error] AppleDeviceManagementHIDEventService::start Could not make a string from out poweredoff notification key

       Jun 30 12:48:41 [HID] [ATC] [Error] AppleDeviceManagementHIDEventService::start Could not make a string from out connection notification key

       Jun 30 12:48:41 [HID] [ATC] [Error] AppleDeviceManagementHIDEventService::start Could not make a string from out poweredoff notification key

       Jun 30 13:00:34 [HID] [ATC] [Error] AppleDeviceManagementHIDEventService::start Could not make a string from out connection notification key

       Jun 30 13:00:34 [HID] [ATC] [Error] AppleDeviceManagementHIDEventService::start Could not make a string from out poweredoff notification key

       Jun 30 13:01:15 ARPT: 30684.882493: wl0: Beacon Loss Event, last RSSI[-90]

       Jun 30 13:02:45 [HID] [ATC] [Error] AppleDeviceManagementHIDEventService::start Could not make a string from out connection notification key

       Jun 30 13:02:45 [HID] [ATC] [Error] AppleDeviceManagementHIDEventService::start Could not make a string from out poweredoff notification key

       Jun 30 13:02:51 ARPT: 30710.414174: wl0: Roamed or switched channel, reason #0, bssid 94, last RSSI -80

       Jun 30 13:03:14 ARPT: 30733.470835: wl0: Roamed or switched channel, reason #1, bssid 94, last RSSI -79

       Jun 30 13:28:12 process RdrCEF helper[12019] caught causing excessive wakeups. Observed wakeups rate (per sec): 191; Maximum permitted wakeups rate (per sec): 150; Observation period: 300 seconds; Task lifetime number of wakeups: 318155

       Jun 30 21:00:51 process Meeting Center[98435] caught causing excessive wakeups. Observed wakeups rate (per sec): 624; Maximum permitted wakeups rate (per sec): 150; Observation period: 300 seconds; Task lifetime number of wakeups: 45009

       Jul  1 00:15:56 AppleBCM5701Ethernet [en3]:        0        0 enable - failed

     

     

    Swap (MiB): 16245

     

     

    CPU per process: Google Chrome He (UID 97209) is using 61  %

     

     

    Memory: Google Chrome He (UID 97209) is using 1845 MB

     

     

    kexts

     

     

       org.virtualbox.kext.VBoxDrv (5.0.20) UUID

       org.virtualbox.kext.VBoxUSB (5.0.20) UUID

       org.virtualbox.kext.VBoxNetFlt (5.0.20) UUID

       org.virtualbox.kext.VBoxNetAdp (5.0.20) UUID

       com.McAfee.AVKext (1) UUID

     

     

    Daemons

     

     

       com.mcafee.ssm.Eupdate

       com.cisco.anyconnect.vpnagentd

       com.mcafee.agent.macmn

       com.macpaw.CleanMyMac3.Agent

       net.juniper.UninstallPulse

       com.mcafee.virusscan.ssm.ScanFactory

       com.pref.net-preferences

       com.shinleaf.plist

       com.adobe.ARMDC.Communicator

       com.mcafee.realtime.rtclient

       com.druva.inSyncDecom

       com.mcafee.agent.macompat

       com.microsoft.office.licensing.helper

       com.google.keystone.daemon

       /Library/uschiwarkin/uschiwarkin.app/Contents/MacOS/uschiwarkin

       com.oracle.java.Helper-Tool

       com.mcafee.virusscan.fmpd

       net.juniper.AccessService

       com.mcafee.agent.ma

       com.vmware.HorizonWorkspace.hdfseventsd

       com.adobe.fpsaud

       com.adobe.ARMDC.SMJobBlessHelper

       com.mcafee.ssm.ScanManager

       com.tanium.taniumclient

       com.teamviewer.Helper

       com.propertyship.plist

     

     

    Agents

     

     

       net.juniper.pulsetray

       com.bittorrent.uTorrent

       com.adobe.ARM.UUID

       com.google.keystone.system.agent

       com.cisco.anyconnect.gui

       com.mackeeper.MacKeeper.Helper

       com.adobe.ARMDCHelper.UUID

       com.mcafee.reporter

       com.oracle.java.Java-Updater

       com.mcafee.menulet

       com.macpaw.CleanMyMac3.Scheduler

       com.citrixonline.GoToMeeting.G2MUpdate

     

     

    launchd

     

     

       /Library/LaunchAgents/com.adobe.ARMDCHelper.UUID.plist

       - com.adobe.ARMDCHelper.UUID

       /Library/LaunchAgents/com.cisco.anyconnect.gui.plist

       - com.cisco.anyconnect.gui

       /Library/LaunchAgents/com.google.keystone.agent.plist

       - com.google.keystone.system.agent

       /Library/LaunchAgents/com.mcafee.menulet.plist

       - com.mcafee.menulet

       /Library/LaunchAgents/com.mcafee.reporter.plist

       - com.mcafee.reporter

       /Library/LaunchAgents/com.oracle.java.Java-Updater.plist

       - com.oracle.java.Java-Updater

       /Library/LaunchAgents/com.teamviewer.teamviewer.plist

       - com.teamviewer.teamviewer

       /Library/LaunchAgents/com.teamviewer.teamviewer_desktop.plist

       - com.teamviewer.desktop

       /Library/LaunchAgents/net.juniper.pulsetray.plist

       - net.juniper.pulsetray

       /Library/LaunchDaemons/com.adobe.ARMDC.Communicator.plist

       - com.adobe.ARMDC.Communicator

       /Library/LaunchDaemons/com.adobe.ARMDC.SMJobBlessHelper.plist

       - com.adobe.ARMDC.SMJobBlessHelper

       /Library/LaunchDaemons/com.adobe.fpsaud.plist

       - com.adobe.fpsaud

       /Library/LaunchDaemons/com.cisco.anyconnect.vpnagentd.plist

       - com.cisco.anyconnect.vpnagentd

       /Library/LaunchDaemons/com.enchairUpd.plist

       - com.5e275556e95e3ba9.config

       /Library/LaunchDaemons/com.google.keystone.daemon.plist

       - com.google.keystone.daemon

       /Library/LaunchDaemons/com.hatefully.net-preferences.plist

       - com.pref.net-preferences

       /Library/LaunchDaemons/com.macpaw.CleanMyMac3.Agent.plist

       - com.macpaw.CleanMyMac3.Agent

       /Library/LaunchDaemons/com.mcafee.agent.ma.plist

       - N/A

       /Library/LaunchDaemons/com.mcafee.agent.macmn.plist

       - N/A

       /Library/LaunchDaemons/com.mcafee.agent.macompat.plist

       - N/A

       /Library/LaunchDaemons/com.mcafee.realtime.rtclient.plist

       - com.mcafee.realtime.rtclient

       /Library/LaunchDaemons/com.mcafee.ssm.Eupdate.plist

       - N/A

       /Library/LaunchDaemons/com.mcafee.ssm.ScanFactory.plist

       - N/A

       /Library/LaunchDaemons/com.mcafee.ssm.ScanManager.plist

       - N/A

       /Library/LaunchDaemons/com.mcafee.virusscan.fmpd.plist

       - N/A

       /Library/LaunchDaemons/com.microsoft.office.licensing.helper.plist

       - com.microsoft.office.licensing.helper

       /Library/LaunchDaemons/com.oracle.java.Helper-Tool.plist

       - com.oracle.java.Helper-Tool

       /Library/LaunchDaemons/com.propertyship.plist

       - com.propertyship.plist

       /Library/LaunchDaemons/com.shinleaf.plist

       - com.shinleaf.plist

       /Library/LaunchDaemons/com.tanium.taniumclient.plist

       - com.tanium.taniumclient

       /Library/LaunchDaemons/com.teamviewer.Helper.plist

       - com.teamviewer.Helper

       /Library/LaunchDaemons/com.teamviewer.teamviewer_service.plist

       - com.teamviewer.service

       /Library/LaunchDaemons/com.uschiwarkin.plist

       - N/A

       /Library/LaunchDaemons/com.vmware.HorizonWorkspace.hdfseventsd.plist

       - com.vmware.HorizonWorkspace.hdfseventsd

       /Library/LaunchDaemons/inSyncDecommission.plist

       - com.druva.inSyncDecom

       /Library/LaunchDaemons/net.juniper.AccessService.plist

       - net.juniper.AccessService

       /Library/LaunchDaemons/net.juniper.UninstallPulse.plist

       - net.juniper.UninstallPulse

       /Library/LaunchDaemons/org.virtualbox.startup.plist

       - org.virtualbox.startup

       Library/LaunchAgents/com.adobe.ARM.UUID.plist

       - com.adobe.ARM.UUID

       Library/LaunchAgents/com.bittorrent.uTorrent.plist

       - com.bittorrent.uTorrent

       Library/LaunchAgents/com.citrixonline.GoToMeeting.G2MUpdate.plist

       - com.citrixonline.GoToMeeting.G2MUpdate

       Library/LaunchAgents/com.mackeeper.MacKeeper.Helper.plist

       - com.mackeeper.MacKeeper.Helper

       Library/LaunchAgents/com.macpaw.CleanMyMac3.Scheduler.plist

       - com.macpaw.CleanMyMac3.Scheduler

       Library/LaunchAgents/org.virtualbox.vboxwebsrv.plist

       - org.virtualbox.vboxwebsvc

     

     

    Startup items

     

     

       /Library/StartupItems/cma/cma.sh

     

     

    Bundles

     

     

       /System/Library/Extensions/hp_io_enabler_compound.kext

       - com.hp.kext.io.enabler.compound

       /Library/Extensions/hp_io_enabler_compound.kext

       - com.hp.kext.io.enabler.compound

       /Library/Internet Plug-Ins/AdobePDFViewer.plugin

       - com.adobe.acrobat.pdfviewer

       /Library/Internet Plug-Ins/AdobePDFViewerNPAPI.plugin

       - com.adobe.acrobat.pdfviewerNPAPI

       /Library/Internet Plug-Ins/Flash Player.plugin

       - N/A

       /Library/Internet Plug-Ins/JavaAppletPlugin.plugin

       - com.oracle.java.JavaAppletPlugin

       /Library/Internet Plug-Ins/MeetingJoinPlugin.plugin

       - com.microsoft.communicator.meetingjoinplugin

       /Library/Internet Plug-Ins/PepperFlashPlayer/PepperFlashPlayer.plugin

       - com.macromedia.PepperFlashPlayer.pepper

       /Library/Internet Plug-Ins/SharePointBrowserPlugin.plugin

       - com.microsoft.sharepoint.browserplugin

       /Library/Internet Plug-Ins/SharePointWebKitPlugin.webplugin

       - com.microsoft.sharepoint.webkitplugin

       /Library/PreferencePanes/Flash Player.prefPane

       - com.adobe.flashplayerpreferences

       /Library/PreferencePanes/JavaControlPanel.prefPane

       - com.oracle.java.JavaControlPanel

       /Library/PreferencePanes/OSXFUSE.prefPane

       - com.github.osxfuse.OSXFUSEPrefPane

       /Library/Security/SecurityAgentPlugins/TeamViewerAuthPlugin.bundle

       - com.teamviewer.AuthorizationPlugin

       Library/Internet Plug-Ins/CitrixOnlineWebDeploymentPlugin.plugin

       - com.citrixonline.mac.WebDeploymentPlugin

       Library/Internet Plug-Ins/WebEx64.plugin

       - com.cisco_webex.plugin.gpc64

     

     

    Apps

     

     

       /Applications/Google Drive.app

     

     

    Contents of /etc/hosts

     

     

       127.0.0.1 localhost

       255.255.255.255 broadcasthost

       ::1             localhost

     

     

    Contents of /etc/pf.conf

     

     

       scrub-anchor "com.apple/*"

       nat-anchor "com.apple/*"

       rdr-anchor "com.apple/*"

       dummynet-anchor "com.apple/*"

       anchor "com.apple/*"

       load anchor "com.apple" from "/etc/pf.anchors/com.apple"

     

     

    Contents of /etc/syslog.conf

     

     

       install.* @127.0.0.1:32376

     

     

    Contents of /etc/pam.d/authorization

     

     

       auth       optional       pam_krb5.so use_first_pass use_kcminit

       auth       optional       pam_ntlm.so use_first_pass

       auth       required       pam_opendirectory.so use_first_pass nullok

       account    required       pam_opendirectory.so

     

     

    Contents of /etc/pam.d/checkpw

     

     

       auth       required       pam_opendirectory.so use_first_pass nullok

       account    required       pam_opendirectory.so no_check_home no_check_shell

     

     

    Contents of /etc/pam.d/chkpasswd

     

     

       auth       required       pam_opendirectory.so

       account    required       pam_opendirectory.so

       password   required       pam_permit.so

       session    required       pam_permit.so

     

     

    Contents of /etc/pam.d/cups

     

     

       auth       required       pam_opendirectory.so

       account    required       pam_permit.so

       password   required       pam_deny.so

       session    required       pam_permit.so

     

     

    Contents of /etc/pam.d/ftpd

     

     

       auth       required       pam_opendirectory.so

       account    required       pam_permit.so

       password   required       pam_deny.so

       session    required       pam_permit.so

     

     

    Contents of /etc/pam.d/login

     

     

       auth       optional       pam_krb5.so use_kcminit

       auth       optional       pam_ntlm.so try_first_pass

       auth       optional       pam_mount.so try_first_pass

       auth       required       pam_opendirectory.so try_first_pass

       account    required       pam_nologin.so

       account    required       pam_opendirectory.so

       password   required       pam_opendirectory.so

       session    required       pam_launchd.so

       session    required       pam_uwtmp.so

       session    optional       pam_mount.so

     

     

    Contents of /etc/pam.d/login.term

     

     

       account    required       pam_nologin.so

       account    required       pam_opendirectory.so

       session    required       pam_uwtmp.so

     

     

    Contents of /etc/pam.d/other

     

     

       auth       required       pam_deny.so

       account    required       pam_deny.so

       password   required       pam_deny.so

       session    required       pam_deny.so

     

     

    Contents of /etc/pam.d/passwd

     

     

       auth       required       pam_permit.so

       account    required       pam_opendirectory.so

       password   required       pam_opendirectory.so

       session    required       pam_permit.so

     

     

    Contents of /etc/pam.d/rshd

     

     

       auth        required       pam_permit.so

       account     required       pam_nologin.so

       account     required       pam_opendirectory.so

       session     required       pam_launchd.so

     

     

    Contents of /etc/pam.d/screensaver

     

     

       auth       optional       pam_krb5.so use_first_pass use_kcminit

       auth       required       pam_opendirectory.so use_first_pass nullok

       account    required       pam_opendirectory.so

       account    sufficient     pam_self.so

       account    required       pam_group.so no_warn group=admin,wheel fail_safe

       account    required       pam_group.so no_warn deny group=admin,wheel ruser fail_safe

     

     

    Contents of /etc/pam.d/smbd

     

     

       account required pam_sacl.so sacl_service=smb allow_trustacct

       session required pam_permit.so

     

     

    Contents of /etc/pam.d/sshd

     

     

       auth       optional       pam_krb5.so use_kcminit

       auth       optional       pam_ntlm.so try_first_pass

       auth       optional       pam_mount.so try_first_pass

       auth       required       pam_opendirectory.so try_first_pass

       account    required       pam_nologin.so

       account    required       pam_sacl.so sacl_service=ssh

       account    required       pam_opendirectory.so

       password   required       pam_opendirectory.so

       session    required       pam_launchd.so

       session    optional       pam_mount.so

     

     

    Contents of /etc/pam.d/su

     

     

       auth       sufficient     pam_rootok.so

       auth       required       pam_opendirectory.so

       account    required       pam_group.so no_warn group=admin,wheel ruser root_only fail_safe

       account    required       pam_opendirectory.so no_check_shell

       password   required       pam_opendirectory.so

       session    required       pam_launchd.so

     

     

    Contents of /etc/pam.d/sudo

     

     

       auth       required       pam_opendirectory.so

       account    required       pam_permit.so

       password   required       pam_deny.so

       session    required       pam_permit.so

     

     

    Contents of /etc/periodic/daily/110.clean-tmps

     

     

       if [ -r /etc/defaults/periodic.conf ]

       then

           . /etc/defaults/periodic.conf

           source_periodic_confs

       fi

       case "$daily_clean_tmps_enable" in

           [Yy][Ee][Ss])

        if [ -z "$daily_clean_tmps_days" ]

        then

           echo '$daily_clean_tmps_enable is set but' \

        '$daily_clean_tmps_days is not'

           rc=2

        else

           echo ""

           echo "Removing old temporary files:"

           set -f noglob

           args="-atime +$daily_clean_tmps_days -mtime +$daily_clean_tmps_days"

           args="${args} -ctime +$daily_clean_tmps_days"

           dargs="-empty -mtime +$daily_clean_tmps_days"

           dargs="${dargs} ! -name .vfs_rsrc_streams_*"

           [ -n "$daily_clean_tmps_ignore" ] && {

        args="$args "`echo " ${daily_clean_tmps_ignore% }" |

           sed 's/[ ][ ]*/ ! -name /g'`

        dargs="$dargs "`echo " ${daily_clean_tmps_ignore% }" |

           sed 's/[ ][ ]*/ ! -name /g'`

     

     

       ...and 21 more line(s)

     

     

    Contents of /etc/periodic/daily/130.clean-msgs

     

     

       if [ -r /etc/defaults/periodic.conf ]

       then

           . /etc/defaults/periodic.conf

           source_periodic_confs

       fi

       case "$daily_clean_msgs_enable" in

           [Yy][Ee][Ss])

        if [ ! -d /var/msgs ]

        then

           echo '$daily_clean_msgs_enable is set but /var/msgs' \

        "doesn't exist"

           rc=2

        else

           echo ""

           echo "Cleaning out old system announcements:"

           [ -n "$daily_clean_msgs_days" ] &&

        arg=-${daily_clean_msgs_days#-} || arg=

           msgs -c $arg && rc=0 || rc=3

        fi;;

           *)  rc=0;;

       esac

       exit $rc

     

     

    Contents of /etc/periodic/daily/140.clean-rwho

     

     

       if [ -r /etc/defaults/periodic.conf ]

       then

           . /etc/defaults/periodic.conf

           source_periodic_confs

       fi

       case "$daily_clean_rwho_enable" in

           [Yy][Ee][Ss])

        if [ -z "$daily_clean_rwho_days" ]

        then

           echo '$daily_clean_rwho_enable is enabled but' \

        '$daily_clean_rwho_days is not set'

           rc=2

        elif [ ! -d /var/rwho ]

        then

           echo '$daily_clean_rwho_enable is enabled but /var/rwho' \

        "doesn't exist"

           rc=2

        else

           echo ""

           echo "Removing stale files from /var/rwho:"

           case "$daily_clean_rwho_verbose" in

        [Yy][Ee][Ss])

           print=-print;;

        *)

           print=;;

     

     

       ...and 14 more line(s)

     

     

    Contents of /etc/periodic/daily/199.clean-fax

     

     

       if [ -r /etc/defaults/periodic.conf ]

       then

           . /etc/defaults/periodic.conf

           source_periodic_confs

       fi

       if [ -d /var/spool/fax ]; then

           echo ""

           echo "Removing scratch fax files"

           cd /var/spool/fax && \

           find . -type f -name '[0-9]*.[0-9][0-9][0-9]' -mtime +7 -delete >/dev/null 2>&1;

       fi

     

     

    Contents of /etc/periodic/daily/310.accounting

     

     

       if [ -r /etc/defaults/periodic.conf ]

       then

           . /etc/defaults/periodic.conf

           source_periodic_confs

       fi

       case "$daily_accounting_enable" in

           [Yy][Ee][Ss])

        if [ ! -f /var/account/acct ]

        then

           echo '$daily_accounting_enable is set but /var/account/acct' \

        "doesn't exist"

           rc=2

        elif [ -z "$daily_accounting_save" ]

        then

           echo '$daily_accounting_enable is set but ' \

        '$daily_accounting_save is not'

           rc=2

        else

           echo ""

           echo "Rotating accounting logs and gathering statistics:"

           cd /var/account

           rc=0

           n=$daily_accounting_save

           rm -f acct.$n.gz acct.$n || rc=3

           m=$n

     

     

       ...and 18 more line(s)

     

     

    Contents of /etc/periodic/daily/400.status-disks

     

     

       if [ -r /etc/defaults/periodic.conf ]

       then

           . /etc/defaults/periodic.conf

           source_periodic_confs

       fi

       case "$daily_status_disks_enable" in

           [Yy][Ee][Ss])

        echo ""

        echo "Disk status:"

        df $daily_status_disks_df_flags && rc=1 || rc=3

        ;;

           *)  rc=0;;

       esac

       exit $rc

     

     

    Contents of /etc/periodic/daily/420.status-network

     

     

       if [ -r /etc/defaults/periodic.conf ]

       then

           . /etc/defaults/periodic.conf

           source_periodic_confs

       fi

       case "$daily_status_network_enable" in

           [Yy][Ee][Ss])

        echo ""

        echo "Network interface status:"

        case "$daily_status_network_usedns" in

           [Yy][Ee][Ss])

        netstat -i && rc=0 || rc=3;;

           *)

        netstat -in && rc=0 || rc=3;;

        esac;;

           *)  rc=0;;

       esac

       exit $rc

     

     

    Contents of /etc/periodic/daily/430.status-rwho

     

     

       if [ -r /etc/defaults/periodic.conf ]

       then

           . /etc/defaults/periodic.conf

           source_periodic_confs

       fi

       case "$daily_status_rwho_enable" in

           [Yy][Ee][Ss])

        rwho=$(echo /var/rwho/*)

               if [ -f "${rwho%% *}" ]

               then

           echo ""

           echo "Local network system status:"

           prog=ruptime

        else

           echo ""

           echo "Local system status:"

           prog=uptime

        fi

        rc=$($prog | tee /dev/stderr | wc -l)

        if [ $? -eq 0 ]

        then

           [ $rc -gt 1 ] && rc=1

        else

           rc=3

        fi;;

     

     

       ...and 3 more line(s)

     

     

    Contents of /etc/periodic/daily/999.local

     

     

       if [ -r /etc/defaults/periodic.conf ]

       then

           . /etc/defaults/periodic.conf

           source_periodic_confs

       fi

       rc=0

       for script in $daily_local

       do

           echo ''

           case "$script" in

        /*)

           if [ -f "$script" ]

           then

        echo "Running $script:"

        sh $script || rc=3

           else

        echo "$script: No such file"

        [ $rc -lt 2 ] && rc=2

           fi;;

        *)

           echo "$script: Not an absolute path"

           [ $rc -lt 2 ] && rc=2;;

           esac

       done

       exit $rc

     

     

    Contents of /etc/periodic/monthly/199.rotate-fax

     

     

       if [ -r /etc/defaults/periodic.conf ]

       then

           . /etc/defaults/periodic.conf

           source_periodic_confs

       fi

       echo ""

       printf %s "Rotating fax log files:"

       cd /var/log/fax

       for i in *.log; do

           if [ -f "${i}" ]; then

           echo -n " $i"

           if [ -x /usr/bin/gzip ]; then gzext=".gz"; else gzext=""; fi

           if [ -f "${i}.3${gzext}" ]; then mv -f "${i}.3${gzext}" "${i}.4${gzext}"; fi

           if [ -f "${i}.2${gzext}" ]; then mv -f "${i}.2${gzext}" "${i}.3${gzext}"; fi

           if [ -f "${i}.1${gzext}" ]; then mv -f "${i}.1${gzext}" "${i}.2${gzext}"; fi

           if [ -f "${i}.0${gzext}" ]; then mv -f "${i}.0${gzext}" "${i}.1${gzext}"; fi

           if [ -f "${i}" ]; then mv -f "${i}" "${i}.0" && if [ -x /usr/bin/gzip ]; then gzip -9 "${i}.0"; fi; fi

           touch "${i}" && chmod 640 "${i}" && chown root:admin "${i}"

           fi

       done

       echo ""

     

     

    Contents of /etc/periodic/monthly/200.accounting

     

     

       if [ -r /etc/defaults/periodic.conf ]

       then

           . /etc/defaults/periodic.conf

           source_periodic_confs

       fi

       oldmask=$(umask)

       umask 066

       case "$monthly_accounting_enable" in

           [Yy][Ee][Ss])

        W=/var/log/wtmp

        rc=0

        remove=NO

        if [ $rc -eq 0 ]

        then

           echo ""

           echo "Doing login accounting:"

           rc=$(ac -p | sort -nr -k 2 | tee /dev/stderr | wc -l)

           [ $rc -gt 0 ] && rc=1

        fi

        [ $remove = YES ] && rm -f $W.0;;

           *)  rc=0;;

       esac

       umask $oldmask

       exit $rc

     

     

    Contents of /etc/periodic/monthly/999.local

     

     

       if [ -r /etc/defaults/periodic.conf ]

       then

           . /etc/defaults/periodic.conf

           source_periodic_confs

       fi

       rc=0

       for script in $monthly_local

       do

           echo ''

           case "$script" in

        /*)

           if [ -f "$script" ]

           then

        echo "Running $script:"

        sh $script || rc=3

           else

        echo "$script: No such file"

        [ $rc -lt 2 ] && rc=2

           fi;;

        *)

           echo "$script: Not an absolute path"

           [ $rc -lt 2 ] && rc=2;;

           esac

       done

       exit $rc

     

     

    Contents of /etc/periodic/weekly/320.whatis

     

     

       if [ -r /etc/defaults/periodic.conf ]

       then

           . /etc/defaults/periodic.conf

           source_periodic_confs

       fi

       case "$weekly_whatis_enable" in

           [Yy][Ee][Ss])

        echo ""

        echo "Rebuilding whatis database:"

        MANPATH=`/usr/bin/manpath -q`

        if [ $? = 0 ]

        then

           if [ -z "${MANPATH}" ]

           then

        echo "manpath failed to find any manpage directories"

        rc=3

           else

        rc=0

        /usr/libexec/makewhatis.local "${MANPATH}" || rc=3

        if [ X"${man_locales}" != X ]

        then

           for i in ${man_locales}

           do

        LC_ALL=$i /usr/libexec/makewhatis.local -a \

           -L "${MANPATH}" || rc=3

     

     

       ...and 9 more line(s)

     

     

    Contents of /etc/periodic/weekly/999.local

     

     

       if [ -r /etc/defaults/periodic.conf ]

       then

           . /etc/defaults/periodic.conf

           source_periodic_confs

       fi

       rc=0

       for script in $weekly_local

       do

           echo ''

           case "$script" in

        /*)

           if [ -f "$script" ]

           then

        echo "Running $script:"

        sh $script || rc=3

           else

        echo "$script: No such file"

        [ $rc -lt 2 ] && rc=2

           fi;;

        *)

           echo "$script: Not an absolute path"

           [ $rc -lt 2 ] && rc=2;;

           esac

       done

       exit $rc

     

     

    Contents of /Library/Preferences/com.apple.security.appsandbox.plist (XML  document text)

     

     

       <?xml version="1.0" encoding="UTF-8"?>

       <!DOCTYPE plist PUBLIC "-//Apple//DTD PLIST 1.0//EN" "http://www.apple.com/DTDs/PropertyList-1.0.dtd">

       <plist version="1.0">

       <dict>

           <key>UnrestrictSpotlightContainerScope</key>

           <true/>

       </dict>

       </plist>

     

     

    Contents of /Library/Preferences/SystemConfiguration/com.apple.Boot.plist (XML  document text)

     

     

       <?xml version="1.0" encoding="UTF-8"?>

       <!DOCTYPE plist PUBLIC "-//Apple//DTD PLIST 1.0//EN" "http://www.apple.com/DTDs/PropertyList-1.0.dtd">

       <plist version="1.0">

       <dict>

        <key>Kernel Flags</key>

        <string></string>

       </dict>

       </plist>

     

     

    Root crontab

     

     

       45 16 * * * /usr/local/McAfee/AntiMalware/VShieldTaskManager 4 >> /dev/null 2>&1

     

     

    Bad plists

     

     

       /Library/Preferences/com.common.plist

     

     

    DNS: 8.8.8.8 (static)

     

     

    Listeners

     

     

       launchd: afpovertcp

       launchd: afpovertcp

       launchd: microsoft-ds

       launchd: microsoft-ds

       kdc: kerberos

     

     

    Parental Controls: On

     

     

    Hidden apps

     

     

       .webex/1530/AsAnnotation.app

       .webex/1530/atas.bundle/Contents/Resources/AsWatcher.app

       .webex/1530/Sharing.app

       .webex/T30_SC/AsAnnotation.app

       .webex/T30_SC/atas.bundle/Contents/Resources/AsWatcher.app

       .webex/T30_SC/Sharing.app

     

     

    Restricted files: 518

     

     

    Elapsed time (s): 218