RKHUNTER

1. RKHUNTER

Carlos Eduardo
cadu12299

(usa KDE Neon)

Enviado em 21/12/2018 - 02:04h

Gente sou novo no linux e esses dias acabei descobrindo o RKHUNTER e fiz o escanamento e fiquei um pouco assustado com o que apareceu, aqui:

[ Rootkit Hunter version 1.4.6 ]

Checking system commands...

Performing 'strings' command checks
Checking 'strings' command [ OK ]

Performing 'shared libraries' checks
Checking for preloading variables [ None found ]
Checking for preloaded libraries [ None found ]
Checking LD_LIBRARY_PATH variable [ Not found ]

Performing file properties checks
Checking for prerequisites [ OK ]
/usr/sbin/adduser [ OK ]
/usr/sbin/chroot [ OK ]
/usr/sbin/cron [ OK ]
/usr/sbin/groupadd [ OK ]
/usr/sbin/groupdel [ OK ]
/usr/sbin/groupmod [ OK ]
/usr/sbin/grpck [ OK ]
/usr/sbin/nologin [ OK ]
/usr/sbin/pwck [ OK ]
/usr/sbin/rsyslogd [ OK ]
/usr/sbin/tcpd [ OK ]
/usr/sbin/useradd [ OK ]
/usr/sbin/userdel [ OK ]
/usr/sbin/usermod [ OK ]
/usr/sbin/vipw [ OK ]
/usr/bin/awk [ OK ]
/usr/bin/basename [ OK ]
/usr/bin/chattr [ OK ]
/usr/bin/curl [ OK ]
/usr/bin/cut [ OK ]
/usr/bin/diff [ OK ]
/usr/bin/dirname [ OK ]
/usr/bin/dpkg [ OK ]
/usr/bin/dpkg-query [ OK ]
/usr/bin/du [ OK ]
/usr/bin/env [ OK ]
/usr/bin/file [ OK ]
/usr/bin/find [ OK ]
/usr/bin/GET [ OK ]
/usr/bin/groups [ OK ]
/usr/bin/head [ OK ]
/usr/bin/id [ OK ]
/usr/bin/ipcs [ OK ]
/usr/bin/killall [ OK ]
/usr/bin/last [ OK ]
/usr/bin/lastlog [ OK ]
/usr/bin/ldd [ OK ]
/usr/bin/less [ OK ]
/usr/bin/locate [ OK ]
/usr/bin/logger [ OK ]
/usr/bin/lsattr [ OK ]
/usr/bin/lsof [ OK ]
/usr/bin/md5sum [ OK ]
/usr/bin/mlocate [ OK ]
/usr/bin/newgrp [ OK ]
/usr/bin/passwd [ OK ]
/usr/bin/perl [ OK ]
/usr/bin/pgrep [ OK ]
/usr/bin/pkill [ OK ]
/usr/bin/pstree [ OK ]
/usr/bin/rkhunter [ OK ]
/usr/bin/runcon [ OK ]
/usr/bin/sha1sum [ OK ]
/usr/bin/sha224sum [ OK ]
/usr/bin/sha256sum [ OK ]
/usr/bin/sha384sum [ OK ]
/usr/bin/sha512sum [ OK ]
/usr/bin/size [ OK ]
/usr/bin/sort [ OK ]
/usr/bin/ssh [ OK ]
/usr/bin/stat [ OK ]
/usr/bin/strace [ OK ]
/usr/bin/strings [ OK ]
/usr/bin/sudo [ OK ]
/usr/bin/tail [ OK ]
/usr/bin/telnet [ OK ]
/usr/bin/test [ OK ]
/usr/bin/top [ OK ]
/usr/bin/touch [ OK ]
/usr/bin/tr [ OK ]
/usr/bin/uniq [ OK ]
/usr/bin/users [ OK ]
/usr/bin/vmstat [ OK ]
/usr/bin/w [ OK ]
/usr/bin/watch [ OK ]
/usr/bin/wc [ OK ]
/usr/bin/wget [ OK ]
/usr/bin/whatis [ OK ]
/usr/bin/whereis [ OK ]
/usr/bin/which [ OK ]
/usr/bin/who [ OK ]
/usr/bin/whoami [ OK ]
/usr/bin/numfmt [ OK ]
/usr/bin/gawk [ OK ]
/usr/bin/lwp-request [ Warning ]
/usr/bin/x86_64-linux-gnu-size [ OK ]
/usr/bin/x86_64-linux-gnu-strings [ OK ]
/usr/bin/telnet.netkit [ OK ]
/usr/bin/w.procps [ OK ]
/sbin/depmod [ OK ]
/sbin/fsck [ OK ]
/sbin/ifconfig [ OK ]
/sbin/ifdown [ OK ]
/sbin/ifup [ OK ]
/sbin/init [ OK ]
/sbin/insmod [ OK ]
/sbin/ip [ OK ]
/sbin/lsmod [ OK ]
/sbin/modinfo [ OK ]
/sbin/modprobe [ OK ]
/sbin/rmmod [ OK ]
/sbin/route [ OK ]
/sbin/runlevel [ OK ]
/sbin/sulogin [ OK ]
/sbin/sysctl [ OK ]
/bin/bash [ OK ]
/bin/cat [ OK ]
/bin/chmod [ OK ]
/bin/chown [ OK ]
/bin/cp [ OK ]
/bin/date [ OK ]
/bin/df [ OK ]
/bin/dmesg [ OK ]
/bin/echo [ OK ]
/bin/ed [ OK ]
/bin/egrep [ OK ]
/bin/fgrep [ OK ]
/bin/fuser [ OK ]
/bin/grep [ OK ]
/bin/ip [ OK ]
/bin/kill [ OK ]
/bin/less [ OK ]
/bin/login [ OK ]
/bin/ls [ OK ]
/bin/lsmod [ OK ]
/bin/mktemp [ OK ]
/bin/more [ OK ]
/bin/mount [ OK ]
/bin/mv [ OK ]
/bin/netstat [ OK ]
/bin/ping [ OK ]
/bin/ps [ OK ]
/bin/pwd [ OK ]
/bin/readlink [ OK ]
/bin/sed [ OK ]
/bin/sh [ OK ]
/bin/su [ OK ]
/bin/touch [ OK ]
/bin/uname [ OK ]
/bin/which [ OK ]
/bin/kmod [ OK ]
/bin/systemd [ OK ]
/bin/systemctl [ OK ]
/bin/dash [ OK ]
/lib/systemd/systemd [ OK ]

[Press <ENTER> to continue]


Checking for rootkits...

Performing check of known rootkit files and directories
55808 Trojan - Variant A [ Not found ]
ADM Worm [ Not found ]
AjaKit Rootkit [ Not found ]
Adore Rootkit [ Not found ]
aPa Kit [ Not found ]
Apache Worm [ Not found ]
Ambient (ark) Rootkit [ Not found ]
Balaur Rootkit [ Not found ]
BeastKit Rootkit [ Not found ]
beX2 Rootkit [ Not found ]
BOBKit Rootkit [ Not found ]
cb Rootkit [ Not found ]
CiNIK Worm (Slapper.B variant) [ Not found ]
Danny-Boy's Abuse Kit [ Not found ]
Devil RootKit [ Not found ]
Diamorphine LKM [ Not found ]
Dica-Kit Rootkit [ Not found ]
Dreams Rootkit [ Not found ]
Duarawkz Rootkit [ Not found ]
Ebury backdoor [ Not found ]
Enye LKM [ Not found ]
Flea Linux Rootkit [ Not found ]
Fu Rootkit [ Not found ]
Fuck`it Rootkit [ Not found ]
GasKit Rootkit [ Not found ]
Heroin LKM [ Not found ]
HjC Kit [ Not found ]
ignoKit Rootkit [ Not found ]
IntoXonia-NG Rootkit [ Not found ]
Irix Rootkit [ Not found ]
Jynx Rootkit [ Not found ]
Jynx2 Rootkit [ Not found ]
KBeast Rootkit [ Not found ]
Kitko Rootkit [ Not found ]
Knark Rootkit [ Not found ]
ld-linuxv.so Rootkit [ Not found ]
Li0n Worm [ Not found ]
Lockit / LJK2 Rootkit [ Not found ]
Mokes backdoor [ Not found ]
Mood-NT Rootkit [ Not found ]
MRK Rootkit [ Not found ]
Ni0 Rootkit [ Not found ]
Ohhara Rootkit [ Not found ]
Optic Kit (Tux) Worm [ Not found ]
Oz Rootkit [ Not found ]
Phalanx Rootkit [ Not found ]
Phalanx2 Rootkit [ Not found ]
Phalanx2 Rootkit (extended tests) [ Not found ]
Portacelo Rootkit [ Not found ]
R3dstorm Toolkit [ Not found ]
RH-Sharpe's Rootkit [ Not found ]
RSHA's Rootkit [ Not found ]
Scalper Worm [ Not found ]
Sebek LKM [ Not found ]
Shutdown Rootkit [ Not found ]
SHV4 Rootkit [ Not found ]
SHV5 Rootkit [ Not found ]
Sin Rootkit [ Not found ]
Slapper Worm [ Not found ]
Sneakin Rootkit [ Not found ]
'Spanish' Rootkit [ Not found ]
Suckit Rootkit [ Not found ]
Superkit Rootkit [ Not found ]
TBD (Telnet BackDoor) [ Not found ]
TeLeKiT Rootkit [ Not found ]
T0rn Rootkit [ Not found ]
trNkit Rootkit [ Not found ]
Trojanit Kit [ Not found ]
Tuxtendo Rootkit [ Not found ]
URK Rootkit [ Not found ]
Vampire Rootkit [ Not found ]
VcKit Rootkit [ Not found ]
Volc Rootkit [ Not found ]
Xzibit Rootkit [ Not found ]
zaRwT.KiT Rootkit [ Not found ]
ZK Rootkit [ Not found ]

[Press <ENTER> to continue]


Performing additional rootkit checks
Suckit Rootkit additional checks [ OK ]
Checking for possible rootkit files and directories [ None found ]
Checking for possible rootkit strings [ None found ]

Performing malware checks
Checking running processes for suspicious files [ None found ]
Checking for login backdoors [ None found ]
Checking for sniffer log files [ None found ]
Checking for suspicious directories [ None found ]
Checking for suspicious (large) shared memory segments [ Warning ]

Performing Linux specific checks
Checking loaded kernel modules [ OK ]
Checking kernel module names [ OK ]

[Press <ENTER> to continue]


Checking the network...

Performing checks on the network ports
Checking for backdoor ports [ None found ]

Performing checks on the network interfaces
Checking for promiscuous interfaces [ None found ]

Checking the local host...

Performing system boot checks
Checking for local host name [ Found ]
Checking for system startup files [ Found ]
Checking system startup files for malware [ None found ]

Performing group and account checks
Checking for passwd file [ Found ]
Checking for root equivalent (UID 0) accounts [ None found ]
Checking for passwordless accounts [ None found ]
Checking for passwd file changes [ None found ]
Checking for group file changes [ None found ]
Checking root account shell history files [ OK ]

Performing system configuration file checks
Checking for an SSH configuration file [ Not found ]
Checking for a running system logging daemon [ Found ]
Checking for a system logging configuration file [ Found ]
Checking if syslog remote logging is allowed [ Not allowed ]

Performing filesystem checks
Checking /dev for suspicious file types [ None found ]
Checking for hidden files and directories [ Warning ]

[Press <ENTER> to continue]



System checks summary
=====================

File properties checks...
Files checked: 145
Suspect files: 1

Rootkit checks...
Rootkits checked : 480
Possible rootkits: 6

Applications checks...
All checks skipped

The system checks took: 2 minutes and 38 seconds

All results have been written to the log file: /var/log/rkhunter.log

One or more warnings have been found while checking the system.
Please check the log file (/var/log/rkhunter.log)


Devo me preocupar com esses 6 possiveis rootkits ?


  


2. Re: RKHUNTER

Henrique
Henrique - RJ

(usa Outra)

Enviado em 21/12/2018 - 08:45h

Acho que não tem com que se preocupar.

Esse programinha me parece um pouco alarmista só para dar a impressão de ser bom/útil. Me lembra o antigo a-squared ( hoje Emsisoft ) que fazia pior mostrando até simples cookies como ameaças e a galera ficava desesperada.

Mas procura no diretório " /var/log/rkhunter.log " esse log dele e deixa aqui para darmos uma olhada mais detalhada do que são esses " 6 possíveis rootkits " que o programa acusa. Ele já chama de " possíveis " porque não são conhecidos então nem devem ser.


3. Re: RKHUNTER

Perfil removido
removido

(usa Nenhuma)

Enviado em 21/12/2018 - 08:51h

Siga dica
https://www.hardware.com.br/artigos/taticas-seguranca-linux/


----------------------------------------------------------------------------------
Itautec-w7535 (Ci3 + 4 GB/RAM + 120 GB/SSD + Intel HD 3000)




4. Re: RKHUNTER

Henrique
Henrique - RJ

(usa Outra)

Enviado em 21/12/2018 - 10:12h

clodoaldops escreveu:

Siga dica
https://www.hardware.com.br/artigos/taticas-seguranca-linux/


----------------------------------------------------------------------------------
Itautec-w7535 (Ci3 + 4 GB/RAM + 120 GB/SSD + Intel HD 3000)



Interessante a matéria mas ela é de 2010 que dá enfase no uso de firewall por software quando os roteadores/modens de hoje já o possuem.


5. Re: RKHUNTER

Perfil removido
removido

(usa Nenhuma)

Enviado em 21/12/2018 - 10:17h

Os usuários do Windows que migram para o Linux às vezes têm crises de pânico por causa da ausência de programas focados na segurança. A verdade é que a questão é muito simples e sem graça. Não há necessidade de exagerar na proteção. Invista os ciclos do seu cérebro naquilo que te diverte. Simples assim.
.
Essa é mensagem
.
Tenha uma boa senha
Ative firewall
Só use repositórios confiáveis
Tenha bkp seus arquivos importantes

----------------------------------------------------------------------------------
Itautec-w7535 (Ci3 + 4 GB/RAM + 120 GB/SSD + Intel HD 3000)




6. Re: RKHUNTER

Henrique
Henrique - RJ

(usa Outra)

Enviado em 21/12/2018 - 10:34h

clodoaldops escreveu:

Os usuários do Windows que migram para o Linux às vezes têm crises de pânico por causa da ausência de programas focados na segurança. A verdade é que a questão é muito simples e sem graça. Não há necessidade de exagerar na proteção. Invista os ciclos do seu cérebro naquilo que te diverte. Simples assim.
.
Essa é mensagem
.
Tenha uma boa senha
Ative firewall
Só use repositórios confiáveis
Tenha bkp seus arquivos importantes

----------------------------------------------------------------------------------
Itautec-w7535 (Ci3 + 4 GB/RAM + 120 GB/SSD + Intel HD 3000)



Eu só deixei de usar o Sophos versão free aqui porque tenho apenas 2GB de memória senão ainda o teria rodando por causa de sua boa detecção em tempo real. Ele escaneava até os objetos baixados durante a navegação pelos sites podendo pegar um simples *.js malicioso conhecido. Muito bom !!!

Mas ainda tenho seu instalador guardado caso venha a mudar de ideia como aconteceu outras vezes. Pensei inclusive em adquirir mais um pente de 2GB só para manter esse antivírus inspecionando tudo. Lembro no Malwr.com encontrar de vez em quando malwares para Linux em plena atividade hoje.


7. Re: RKHUNTER

Perfil removido
removido

(usa Nenhuma)

Enviado em 21/12/2018 - 10:40h

Nunca usei antivírus no meu laptop que só roda Linux.
Únicos problemas que já tive foram os que eu mesmo causei dando uma de TI que não sou.
Kkkkkkk

----------------------------------------------------------------------------------
Itautec-w7535 (Ci3 + 4 GB/RAM + 120 GB/SSD + Intel HD 3000)




8. Re: RKHUNTER

Henrique
Henrique - RJ

(usa Outra)

Enviado em 21/12/2018 - 10:52h

clodoaldops escreveu:

Nunca usei antivírus no meu laptop que só roda Linux.
Únicos problemas que já tive foram os que eu mesmo causei dando uma de TI que não sou.
Kkkkkkk

----------------------------------------------------------------------------------
Itautec-w7535 (Ci3 + 4 GB/RAM + 120 GB/SSD + Intel HD 3000)



Também ficou sem saber quando algum script malicioso ( js, php, etc ) rodou no seu navegador mesmo sem ter causado nenhum estrago mas pode ter tentado lhe furtar algum dado pessoal, por exemplo.

O Sophos free aqui só estava causando a lentidão na abertura de um ou outro aplicativo quando executado exatamente por ter apenas 2GB de memória fazendo provavelmente o kernel fechar outras coisas pre-recarregadas na memória cache pelo preload.


9. Re: RKHUNTER

Perfil removido
removido

(usa Nenhuma)

Enviado em 21/12/2018 - 11:14h

Não uso internet banking
Só compro a vista via boleto
Não acesso xxx
Nunca perdi acesso nenhum e-mail
Nunca perdi nenhum arquivo da partição de arquivos
Nunca vi nada diferente no meu Facebook ou Instagram
Acho que nunca fui raqueado

----------------------------------------------------------------------------------
Itautec-w7535 (Ci3 + 4 GB/RAM + 120 GB/SSD + Intel HD 3000)




10. Re: RKHUNTER

Henrique
Henrique - RJ

(usa Outra)

Enviado em 21/12/2018 - 11:38h

clodoaldops escreveu:

Não uso internet banking
Só compro a vista via boleto
Não acesso xxx
Nunca perdi acesso nenhum e-mail
Nunca perdi nenhum arquivo da partição de arquivos
Nunca vi nada diferente no meu Facebook ou Instagram
Acho que nunca fui raqueado

----------------------------------------------------------------------------------
Itautec-w7535 (Ci3 + 4 GB/RAM + 120 GB/SSD + Intel HD 3000)



Dê graças a papai do céu !!!


11. Re: RKHUNTER

Perfil removido
removido

(usa Nenhuma)

Enviado em 21/12/2018 - 11:41h

Graças a São Tux e Nossa Senhora do BKP tá tudo em ordem
Kkkkkk...

----------------------------------------------------------------------------------
Itautec-w7535 (Ci3 + 4 GB/RAM + 120 GB/SSD + Intel HD 3000)




12. Re: RKHUNTER

Carlos Eduardo
cadu12299

(usa KDE Neon)

Enviado em 21/12/2018 - 13:01h

Fico aliviado em saber disso kkkk.
Aqui esta :



[00:56:53] Running Rootkit Hunter version 1.4.6 on carlos-Lenovo-ideapad-330-15IKB
[00:56:53]
[00:56:53]
[00:56:53] Checking configuration file and command-line options...
[00:56:53] Info: Detected operating system is 'Linux'
[00:56:53] Info: Found O/S name: Linux Mint 19.1
[00:56:53] Info: Command line is /usr/bin/rkhunter -c
[00:56:53] Info: Environment shell is /bin/bash; rkhunter is using dash
[00:56:53] Info: Using configuration file '/etc/rkhunter.conf'
[00:56:53] Info: Installation directory is '/usr'
[00:56:53] Info: Using language 'en'
[00:56:53] Info: Using '/var/lib/rkhunter/db' as the database directory
[00:56:53] Info: Using '/usr/share/rkhunter/scripts' as the support script directory
[00:56:53] Info: Using '/usr/local/sbin /usr/local/bin /usr/sbin /usr/bin /sbin /bin' as the command directories
[00:56:53] Info: Using '/var/lib/rkhunter/tmp' as the temporary directory
[00:56:53] Info: No mail-on-warning address configured
[00:56:53] Info: X will be automatically detected
[00:56:53] Info: Using second color set
[00:56:53] Info: Found the 'basename' command: /usr/bin/basename
[00:56:53] Info: Found the 'diff' command: /usr/bin/diff
[00:56:53] Info: Found the 'dirname' command: /usr/bin/dirname
[00:56:54] Info: Found the 'file' command: /usr/bin/file
[00:56:54] Info: Found the 'find' command: /usr/bin/find
[00:56:54] Info: Found the 'ifconfig' command: /sbin/ifconfig
[00:56:54] Info: Found the 'ip' command: /sbin/ip
[00:56:54] Info: Found the 'ipcs' command: /usr/bin/ipcs
[00:56:54] Info: Found the 'ldd' command: /usr/bin/ldd
[00:56:54] Info: Found the 'lsattr' command: /usr/bin/lsattr
[00:56:54] Info: Found the 'lsmod' command: /sbin/lsmod
[00:56:54] Info: Found the 'lsof' command: /usr/bin/lsof
[00:56:54] Info: Found the 'mktemp' command: /bin/mktemp
[00:56:54] Info: Found the 'netstat' command: /bin/netstat
[00:56:54] Info: Found the 'numfmt' command: /usr/bin/numfmt
[00:56:54] Info: Found the 'perl' command: /usr/bin/perl
[00:56:54] Info: Found the 'pgrep' command: /usr/bin/pgrep
[00:56:54] Info: Found the 'ps' command: /bin/ps
[00:56:54] Info: Found the 'pwd' command: /bin/pwd
[00:56:54] Info: Found the 'readlink' command: /bin/readlink
[00:56:54] Info: Found the 'stat' command: /usr/bin/stat
[00:56:54] Info: Found the 'strings' command: /usr/bin/strings
[00:56:54] Info: System is not using prelinking
[00:56:54] Info: Using the '/usr/bin/sha256sum' command for the file hash checks
[00:56:54] Info: Stored hash values used hash function '/usr/bin/sha256sum'
[00:56:54] Info: Stored hash values did not use a package manager
[00:56:54] Info: The hash function field index is set to 1
[00:56:54] Info: No package manager specified: using hash function '/usr/bin/sha256sum'
[00:56:54] Info: Previous file attributes were stored
[00:56:54] Info: Enabled tests are: all
[00:56:54] Info: Disabled tests are: suspscan hidden_ports hidden_procs deleted_files packet_cap_apps apps
[00:56:54] Info: Found kernel symbols file '/proc/kallsyms'
[00:56:54] Info: Using syslog for some logging - facility/priority level is 'authpriv.warning'.
[00:56:54] Info: Found the 'logger' command: /usr/bin/logger
[00:56:54] Info: Using 'date' to process epoch second times
[00:56:54]
[00:56:54] Checking if the O/S has changed since last time...
[00:56:54] Info: Nothing seems to have changed.
[00:56:54] Info: Locking is not being used
[00:56:54]
[00:56:54] Starting system checks...
[00:56:54]
[00:56:54] Info: Starting test name 'system_commands'
[00:56:54] Checking system commands...
[00:56:54]
[00:56:54] Info: Starting test name 'strings'
[00:56:54] Performing 'strings' command checks
[00:56:54] Scanning for string /usr/sbin/ntpsx [ OK ]
[00:56:54] Scanning for string /usr/sbin/.../bkit-ava [ OK ]
[00:56:54] Scanning for string /usr/sbin/.../bkit-d [ OK ]
[00:56:54] Scanning for string /usr/sbin/.../bkit-shd [ OK ]
[00:56:54] Scanning for string /usr/sbin/.../bkit-f [ OK ]
[00:56:54] Scanning for string /usr/include/.../proc.h [ OK ]
[00:56:54] Scanning for string /usr/include/.../.bash_history [ OK ]
[00:56:54] Scanning for string /usr/include/.../bkit-get [ OK ]
[00:56:54] Scanning for string /usr/include/.../bkit-dl [ OK ]
[00:56:54] Scanning for string /usr/include/.../bkit-screen [ OK ]
[00:56:54] Scanning for string /usr/include/.../bkit-sleep [ OK ]
[00:56:55] Scanning for string /usr/lib/.../bkit-adore.o [ OK ]
[00:56:55] Scanning for string /usr/lib/.../ls [ OK ]
[00:56:55] Scanning for string /usr/lib/.../netstat [ OK ]
[00:56:55] Scanning for string /usr/lib/.../lsof [ OK ]
[00:56:55] Scanning for string /usr/lib/.../bkit-ssh/bkit-shdcfg [ OK ]
[00:56:55] Scanning for string /usr/lib/.../bkit-ssh/bkit-shhk [ OK ]
[00:56:55] Scanning for string /usr/lib/.../bkit-ssh/bkit-pw [ OK ]
[00:56:55] Scanning for string /usr/lib/.../bkit-ssh/bkit-shrs [ OK ]
[00:56:55] Scanning for string /usr/lib/.../bkit-ssh/bkit-mots [ OK ]
[00:56:55] Scanning for string /usr/lib/.../uconf.inv [ OK ]
[00:56:55] Scanning for string /usr/lib/.../psr [ OK ]
[00:56:55] Scanning for string /usr/lib/.../find [ OK ]
[00:56:55] Scanning for string /usr/lib/.../pstree [ OK ]
[00:56:55] Scanning for string /usr/lib/.../slocate [ OK ]
[00:56:55] Scanning for string /usr/lib/.../du [ OK ]
[00:56:55] Scanning for string /usr/lib/.../top [ OK ]
[00:56:55] Scanning for string /usr/sbin/... [ OK ]
[00:56:55] Scanning for string /usr/include/... [ OK ]
[00:56:55] Scanning for string /usr/include/.../.tmp [ OK ]
[00:56:55] Scanning for string /usr/lib/... [ OK ]
[00:56:55] Scanning for string /usr/lib/.../.ssh [ OK ]
[00:56:55] Scanning for string /usr/lib/.../bkit-ssh [ OK ]
[00:56:55] Scanning for string /usr/lib/.bkit- [ OK ]
[00:56:55] Scanning for string /tmp/.bkp [ OK ]
[00:56:55] Scanning for string /tmp/.cinik [ OK ]
[00:56:55] Scanning for string /tmp/.font-unix/.cinik [ OK ]
[00:56:55] Scanning for string /lib/.sso [ OK ]
[00:56:55] Scanning for string /lib/.so [ OK ]
[00:56:55] Scanning for string /var/run/...dica/clean [ OK ]
[00:56:55] Scanning for string /var/run/...dica/dxr [ OK ]
[00:56:55] Scanning for string /var/run/...dica/read [ OK ]
[00:56:55] Scanning for string /var/run/...dica/write [ OK ]
[00:56:56] Scanning for string /var/run/...dica/lf [ OK ]
[00:56:56] Scanning for string /var/run/...dica/xl [ OK ]
[00:56:56] Scanning for string /var/run/...dica/xdr [ OK ]
[00:56:56] Scanning for string /var/run/...dica/psg [ OK ]
[00:56:56] Scanning for string /var/run/...dica/secure [ OK ]
[00:56:56] Scanning for string /var/run/...dica/rdx [ OK ]
[00:56:56] Scanning for string /var/run/...dica/va [ OK ]
[00:56:56] Scanning for string /var/run/...dica/cl.sh [ OK ]
[00:56:56] Scanning for string /var/run/...dica/last.log [ OK ]
[00:56:56] Scanning for string /usr/bin/.etc [ OK ]
[00:56:56] Scanning for string /etc/sshd_config [ OK ]
[00:56:56] Scanning for string /etc/ssh_host_key [ OK ]
[00:56:56] Scanning for string /etc/ssh_random_seed [ OK ]
[00:56:56] Scanning for string /dev/ptyp [ OK ]
[00:56:56] Scanning for string /dev/ptyq [ OK ]
[00:56:56] Scanning for string /dev/ptyr [ OK ]
[00:56:56] Scanning for string /dev/ptys [ OK ]
[00:56:56] Scanning for string /dev/ptyt [ OK ]
[00:56:56] Scanning for string /dev/fd/.88/freshb-bsd [ OK ]
[00:56:56] Scanning for string /dev/fd/.88/fresht [ OK ]
[00:56:56] Scanning for string /dev/fd/.88/zxsniff [ OK ]
[00:56:56] Scanning for string /dev/fd/.88/zxsniff.log [ OK ]
[00:56:56] Scanning for string /dev/fd/.99/.ttyf00 [ OK ]
[00:56:56] Scanning for string /dev/fd/.99/.ttyp00 [ OK ]
[00:56:56] Scanning for string /dev/fd/.99/.ttyq00 [ OK ]
[00:56:56] Scanning for string /dev/fd/.99/.ttys00 [ OK ]
[00:56:56] Scanning for string /dev/fd/.99/.pwsx00 [ OK ]
[00:56:56] Scanning for string /etc/.acid [ OK ]
[00:56:56] Scanning for string /usr/lib/.fx/sched_host.2 [ OK ]
[00:56:56] Scanning for string /usr/lib/.fx/random_d.2 [ OK ]
[00:56:56] Scanning for string /usr/lib/.fx/set_pid.2 [ OK ]
[00:56:56] Scanning for string /usr/lib/.fx/setrgrp.2 [ OK ]
[00:56:56] Scanning for string /usr/lib/.fx/TOHIDE [ OK ]
[00:56:57] Scanning for string /usr/lib/.fx/cons.saver [ OK ]
[00:56:57] Scanning for string /usr/lib/.fx/adore/ava/ava [ OK ]
[00:56:57] Scanning for string /usr/lib/.fx/adore/adore/adore.ko [ OK ]
[00:56:57] Scanning for string /bin/sysback [ OK ]
[00:56:57] Scanning for string /usr/local/bin/sysback [ OK ]
[00:56:57] Scanning for string /usr/lib/.tbd [ OK ]
[00:56:57] Scanning for string /dev/.lib/lib/lib/t0rns [ OK ]
[00:56:57] Scanning for string /dev/.lib/lib/lib/du [ OK ]
[00:56:57] Scanning for string /dev/.lib/lib/lib/ls [ OK ]
[00:56:57] Scanning for string /dev/.lib/lib/lib/t0rnsb [ OK ]
[00:56:57] Scanning for string /dev/.lib/lib/lib/ps [ OK ]
[00:56:57] Scanning for string /dev/.lib/lib/lib/t0rnp [ OK ]
[00:56:57] Scanning for string /dev/.lib/lib/lib/find [ OK ]
[00:56:57] Scanning for string /dev/.lib/lib/lib/ifconfig [ OK ]
[00:56:57] Scanning for string /dev/.lib/lib/lib/pg [ OK ]
[00:56:57] Scanning for string /dev/.lib/lib/lib/ssh.tgz [ OK ]
[00:56:57] Scanning for string /dev/.lib/lib/lib/top [ OK ]
[00:56:57] Scanning for string /dev/.lib/lib/lib/sz [ OK ]
[00:56:57] Scanning for string /dev/.lib/lib/lib/login [ OK ]
[00:56:57] Scanning for string /dev/.lib/lib/lib/in.fingerd [ OK ]
[00:56:57] Scanning for string /dev/.lib/lib/lib/1i0n.sh [ OK ]
[00:56:57] Scanning for string /dev/.lib/lib/lib/pstree [ OK ]
[00:56:57] Scanning for string /dev/.lib/lib/lib/in.telnetd [ OK ]
[00:56:57] Scanning for string /dev/.lib/lib/lib/mjy [ OK ]
[00:56:57] Scanning for string /dev/.lib/lib/lib/sush [ OK ]
[00:56:57] Scanning for string /dev/.lib/lib/lib/tfn [ OK ]
[00:56:57] Scanning for string /dev/.lib/lib/lib/name [ OK ]
[00:56:57] Scanning for string /dev/.lib/lib/lib/getip.sh [ OK ]
[00:56:57] Scanning for string /usr/info/.torn/sh* [ OK ]
[00:56:58] Scanning for string /usr/info/.t0rn [ OK ]
[00:56:58] Scanning for string /dev/.lib [ OK ]
[00:56:58] Scanning for string /dev/.lib/lib [ OK ]
[00:56:58] Scanning for string /dev/.lib/lib/lib [ OK ]
[00:56:58] Scanning for string /dev/.lib/lib/lib/dev [ OK ]
[00:56:58] Scanning for string /dev/.lib/lib/scan [ OK ]
[00:56:58] Scanning for string /usr/man/man1/man1 [ OK ]
[00:56:58] Scanning for string /usr/man/man1/man1/lib [ OK ]
[00:56:58] Scanning for string /usr/man/man1/man1/lib/.lib [ OK ]
[00:56:58] Scanning for string /usr/man/man1/man1/lib/.lib/.backup [ OK ]
[00:56:58]
[00:56:58] Info: Starting test name 'shared_libs'
[00:56:58] Performing 'shared libraries' checks
[00:56:58] Checking for preloading variables [ None found ]
[00:56:58] Checking for preloaded libraries [ None found ]
[00:56:58]
[00:56:58] Info: Starting test name 'shared_libs_path'
[00:56:58] Checking LD_LIBRARY_PATH variable [ Not found ]
[00:56:58]
[00:56:58] Info: Starting test name 'properties'
[00:56:58] Performing file properties checks
[00:56:58] Checking for prerequisites [ OK ]
[00:57:01] /usr/sbin/adduser [ OK ]
[00:57:01] Info: Found file '/usr/sbin/adduser': it is whitelisted for the 'script replacement' check.
[00:57:02] /usr/sbin/chroot [ OK ]
[00:57:02] /usr/sbin/cron [ OK ]
[00:57:02] /usr/sbin/groupadd [ OK ]
[00:57:02] /usr/sbin/groupdel [ OK ]
[00:57:02] /usr/sbin/groupmod [ OK ]
[00:57:03] /usr/sbin/grpck [ OK ]
[00:57:03] /usr/sbin/nologin [ OK ]
[00:57:03] /usr/sbin/pwck [ OK ]
[00:57:03] /usr/sbin/rsyslogd [ OK ]
[00:57:04] /usr/sbin/tcpd [ OK ]
[00:57:04] /usr/sbin/useradd [ OK ]
[00:57:04] /usr/sbin/userdel [ OK ]
[00:57:04] /usr/sbin/usermod [ OK ]
[00:57:04] /usr/sbin/vipw [ OK ]
[00:57:04] /usr/bin/awk [ OK ]
[00:57:04] /usr/bin/basename [ OK ]
[00:57:04] /usr/bin/chattr [ OK ]
[00:57:04] /usr/bin/curl [ OK ]
[00:57:04] /usr/bin/cut [ OK ]
[00:57:04] /usr/bin/diff [ OK ]
[00:57:04] /usr/bin/dirname [ OK ]
[00:57:04] /usr/bin/dpkg [ OK ]
[00:57:05] /usr/bin/dpkg-query [ OK ]
[00:57:05] /usr/bin/du [ OK ]
[00:57:05] /usr/bin/env [ OK ]
[00:57:05] /usr/bin/file [ OK ]
[00:57:05] /usr/bin/find [ OK ]
[00:57:05] /usr/bin/GET [ OK ]
[00:57:05] /usr/bin/groups [ OK ]
[00:57:05] /usr/bin/head [ OK ]
[00:57:05] /usr/bin/id [ OK ]
[00:57:05] /usr/bin/ipcs [ OK ]
[00:57:05] /usr/bin/killall [ OK ]
[00:57:05] /usr/bin/last [ OK ]
[00:57:05] /usr/bin/lastlog [ OK ]
[00:57:05] /usr/bin/ldd [ OK ]
[00:57:05] Info: Found file '/usr/bin/ldd': it is whitelisted for the 'script replacement' check.
[00:57:05] /usr/bin/less [ OK ]
[00:57:05] /usr/bin/locate [ OK ]
[00:57:05] /usr/bin/logger [ OK ]
[00:57:06] /usr/bin/lsattr [ OK ]
[00:57:06] /usr/bin/lsof [ OK ]
[00:57:06] /usr/bin/md5sum [ OK ]
[00:57:06] /usr/bin/mlocate [ OK ]
[00:57:06] /usr/bin/newgrp [ OK ]
[00:57:06] /usr/bin/passwd [ OK ]
[00:57:06] /usr/bin/perl [ OK ]
[00:57:06] /usr/bin/pgrep [ OK ]
[00:57:06] /usr/bin/pkill [ OK ]
[00:57:06] /usr/bin/pstree [ OK ]
[00:57:06] /usr/bin/rkhunter [ OK ]
[00:57:06] /usr/bin/runcon [ OK ]
[00:57:06] /usr/bin/sha1sum [ OK ]
[00:57:06] /usr/bin/sha224sum [ OK ]
[00:57:06] /usr/bin/sha256sum [ OK ]
[00:57:07] /usr/bin/sha384sum [ OK ]
[00:57:07] /usr/bin/sha512sum [ OK ]
[00:57:07] /usr/bin/size [ OK ]
[00:57:07] /usr/bin/sort [ OK ]
[00:57:07] /usr/bin/ssh [ OK ]
[00:57:07] /usr/bin/stat [ OK ]
[00:57:07] /usr/bin/strace [ OK ]
[00:57:07] /usr/bin/strings [ OK ]
[00:57:07] /usr/bin/sudo [ OK ]
[00:57:07] /usr/bin/tail [ OK ]
[00:57:07] /usr/bin/telnet [ OK ]
[00:57:07] /usr/bin/test [ OK ]
[00:57:07] /usr/bin/top [ OK ]
[00:57:07] /usr/bin/touch [ OK ]
[00:57:07] /usr/bin/tr [ OK ]
[00:57:07] /usr/bin/uniq [ OK ]
[00:57:07] /usr/bin/users [ OK ]
[00:57:07] /usr/bin/vmstat [ OK ]
[00:57:08] /usr/bin/w [ OK ]
[00:57:08] /usr/bin/watch [ OK ]
[00:57:08] /usr/bin/wc [ OK ]
[00:57:08] /usr/bin/wget [ OK ]
[00:57:08] /usr/bin/whatis [ OK ]
[00:57:08] /usr/bin/whereis [ OK ]
[00:57:08] /usr/bin/which [ OK ]
[00:57:08] /usr/bin/who [ OK ]
[00:57:08] /usr/bin/whoami [ OK ]
[00:57:08] /usr/bin/numfmt [ OK ]
[00:57:08] /usr/bin/gawk [ OK ]
[00:57:08] /usr/bin/lwp-request [ Warning ]
[00:57:08] Warning: The command '/usr/bin/lwp-request' has been replaced by a script: /usr/bin/lwp-request: Perl script text executable
[00:57:08] /usr/bin/x86_64-linux-gnu-size [ OK ]
[00:57:08] /usr/bin/x86_64-linux-gnu-strings [ OK ]
[00:57:08] /usr/bin/telnet.netkit [ OK ]
[00:57:08] /usr/bin/w.procps [ OK ]
[00:57:09] /sbin/depmod [ OK ]
[00:57:09] /sbin/fsck [ OK ]
[00:57:09] /sbin/ifconfig [ OK ]
[00:57:09] /sbin/ifdown [ OK ]
[00:57:09] /sbin/ifup [ OK ]
[00:57:09] /sbin/init [ OK ]
[00:57:09] /sbin/insmod [ OK ]
[00:57:09] /sbin/ip [ OK ]
[00:57:09] /sbin/lsmod [ OK ]
[00:57:09] /sbin/modinfo [ OK ]
[00:57:09] /sbin/modprobe [ OK ]
[00:57:09] /sbin/rmmod [ OK ]
[00:57:10] /sbin/route [ OK ]
[00:57:10] /sbin/runlevel [ OK ]
[00:57:10] /sbin/sulogin [ OK ]
[00:57:10] /sbin/sysctl [ OK ]
[00:57:10] /bin/bash [ OK ]
[00:57:10] /bin/cat [ OK ]
[00:57:10] /bin/chmod [ OK ]
[00:57:10] /bin/chown [ OK ]
[00:57:10] /bin/cp [ OK ]
[00:57:10] /bin/date [ OK ]
[00:57:11] /bin/df [ OK ]
[00:57:11] /bin/dmesg [ OK ]
[00:57:11] /bin/echo [ OK ]
[00:57:11] /bin/ed [ OK ]
[00:57:11] /bin/egrep [ OK ]
[00:57:11] Info: Found file '/bin/egrep': it is whitelisted for the 'script replacement' check.
[00:57:11] /bin/fgrep [ OK ]
[00:57:11] Info: Found file '/bin/fgrep': it is whitelisted for the 'script replacement' check.
[00:57:11] /bin/fuser [ OK ]
[00:57:11] /bin/grep [ OK ]
[00:57:11] /bin/ip [ OK ]
[00:57:11] /bin/kill [ OK ]
[00:57:11] /bin/less [ OK ]
[00:57:11] /bin/login [ OK ]
[00:57:11] /bin/ls [ OK ]
[00:57:11] /bin/lsmod [ OK ]
[00:57:11] /bin/mktemp [ OK ]
[00:57:12] /bin/more [ OK ]
[00:57:12] /bin/mount [ OK ]
[00:57:12] /bin/mv [ OK ]
[00:57:12] /bin/netstat [ OK ]
[00:57:12] /bin/ping [ OK ]
[00:57:12] /bin/ps [ OK ]
[00:57:12] /bin/pwd [ OK ]
[00:57:12] /bin/readlink [ OK ]
[00:57:12] /bin/sed [ OK ]
[00:57:12] /bin/sh [ OK ]
[00:57:12] /bin/su [ OK ]
[00:57:12] /bin/touch [ OK ]
[00:57:12] /bin/uname [ OK ]
[00:57:13] /bin/which [ OK ]
[00:57:13] Info: Found file '/bin/which': it is whitelisted for the 'script replacement' check.
[00:57:13] /bin/kmod [ OK ]
[00:57:13] /bin/systemd [ OK ]
[00:57:13] /bin/systemctl [ OK ]
[00:57:13] /bin/dash [ OK ]
[00:57:14] /lib/systemd/systemd [ OK ]
[00:57:17]
[00:57:17] Info: Starting test name 'rootkits'
[00:57:17] Checking for rootkits...
[00:57:17]
[00:57:17] Info: Starting test name 'known_rkts'
[00:57:17] Performing check of known rootkit files and directories
[00:57:17]
[00:57:17] Checking for 55808 Trojan - Variant A...
[00:57:17] Checking for file '/tmp/.../r' [ Not found ]
[00:57:17] Checking for file '/tmp/.../a' [ Not found ]
[00:57:17] 55808 Trojan - Variant A [ Not found ]
[00:57:17]
[00:57:17] Checking for ADM Worm...
[00:57:17] Checking for string 'w0rm' [ Not found ]
[00:57:17] ADM Worm [ Not found ]
[00:57:17]
[00:57:17] Checking for AjaKit Rootkit...
[00:57:17] Checking for file '/dev/tux/.addr' [ Not found ]
[00:57:17] Checking for file '/dev/tux/.proc' [ Not found ]
[00:57:17] Checking for file '/dev/tux/.file' [ Not found ]
[00:57:17] Checking for file '/lib/.libgh-gh/cleaner' [ Not found ]
[00:57:17] Checking for file '/lib/.libgh-gh/Patch/patch' [ Not found ]
[00:57:17] Checking for file '/lib/.libgh-gh/sb0k' [ Not found ]
[00:57:17] Checking for directory '/dev/tux' [ Not found ]
[00:57:17] Checking for directory '/lib/.libgh-gh' [ Not found ]
[00:57:17] AjaKit Rootkit [ Not found ]
[00:57:17]
[00:57:17] Checking for Adore Rootkit...
[00:57:17] Checking for file '/usr/secure' [ Not found ]
[00:57:17] Checking for file '/usr/doc/sys/qrt' [ Not found ]
[00:57:17] Checking for file '/usr/doc/sys/run' [ Not found ]
[00:57:17] Checking for file '/usr/doc/sys/crond' [ Not found ]
[00:57:17] Checking for file '/usr/sbin/kfd' [ Not found ]
[00:57:17] Checking for file '/usr/doc/kern/var' [ Not found ]
[00:57:17] Checking for file '/usr/doc/kern/string.o' [ Not found ]
[00:57:17] Checking for file '/usr/doc/kern/ava' [ Not found ]
[00:57:17] Checking for file '/usr/doc/kern/adore.o' [ Not found ]
[00:57:17] Checking for file '/var/log/ssh/old' [ Not found ]
[00:57:17] Checking for directory '/lib/security/.config/ssh' [ Not found ]
[00:57:17] Checking for directory '/usr/doc/kern' [ Not found ]
[00:57:18] Checking for directory '/usr/doc/backup' [ Not found ]
[00:57:18] Checking for directory '/usr/doc/backup/txt' [ Not found ]
[00:57:18] Checking for directory '/lib/backup' [ Not found ]
[00:57:18] Checking for directory '/lib/backup/txt' [ Not found ]
[00:57:18] Checking for directory '/usr/doc/work' [ Not found ]
[00:57:18] Checking for directory '/usr/doc/sys' [ Not found ]
[00:57:18] Checking for directory '/var/log/ssh' [ Not found ]
[00:57:18] Checking for directory '/usr/doc/.spool' [ Not found ]
[00:57:18] Checking for directory '/usr/lib/kterm' [ Not found ]
[00:57:18] Adore Rootkit [ Not found ]
[00:57:18]
[00:57:18] Checking for aPa Kit...
[00:57:18] Checking for file '/usr/share/.aPa' [ Not found ]
[00:57:18] aPa Kit [ Not found ]
[00:57:18]
[00:57:18] Checking for Apache Worm...
[00:57:18] Checking for file '/bin/.log' [ Not found ]
[00:57:18] Apache Worm [ Not found ]
[00:57:18]
[00:57:18] Checking for Ambient (ark) Rootkit...
[00:57:18] Checking for file '/usr/lib/.ark?' [ Not found ]
[00:57:18] Checking for file '/dev/ptyxx/.log' [ Not found ]
[00:57:18] Checking for file '/dev/ptyxx/.file' [ Not found ]
[00:57:18] Checking for file '/dev/ptyxx/.proc' [ Not found ]
[00:57:18] Checking for file '/dev/ptyxx/.addr' [ Not found ]
[00:57:18] Checking for directory '/dev/ptyxx' [ Not found ]
[00:57:18] Ambient (ark) Rootkit [ Not found ]
[00:57:18]
[00:57:18] Checking for Balaur Rootkit...
[00:57:18] Checking for file '/usr/lib/liblog.o' [ Not found ]
[00:57:18] Checking for directory '/usr/lib/.kinetic' [ Not found ]
[00:57:18] Checking for directory '/usr/lib/.egcs' [ Not found ]
[00:57:18] Checking for directory '/usr/lib/.wormie' [ Not found ]
[00:57:18] Balaur Rootkit [ Not found ]
[00:57:18]
[00:57:18] Checking for BeastKit Rootkit...
[00:57:18] Checking for file '/usr/sbin/arobia' [ Not found ]
[00:57:18] Checking for file '/usr/sbin/idrun' [ Not found ]
[00:57:18] Checking for file '/usr/lib/elm/arobia/elm' [ Not found ]
[00:57:18] Checking for file '/usr/lib/elm/arobia/elm/hk' [ Not found ]
[00:57:18] Checking for file '/usr/lib/elm/arobia/elm/hk.pub' [ Not found ]
[00:57:18] Checking for file '/usr/lib/elm/arobia/elm/sc' [ Not found ]
[00:57:18] Checking for file '/usr/lib/elm/arobia/elm/sd.pp' [ Not found ]
[00:57:18] Checking for file '/usr/lib/elm/arobia/elm/sdco' [ Not found ]
[00:57:18] Checking for file '/usr/lib/elm/arobia/elm/srsd' [ Not found ]
[00:57:18] Checking for directory '/lib/ldd.so/bktools' [ Not found ]
[00:57:18] BeastKit Rootkit [ Not found ]
[00:57:18]
[00:57:18] Checking for beX2 Rootkit...
[00:57:18] Checking for file '/usr/info/termcap.info-5.gz' [ Not found ]
[00:57:18] Checking for file '/usr/bin/sshd2' [ Not found ]
[00:57:18] Checking for directory '/usr/include/bex' [ Not found ]
[00:57:18] beX2 Rootkit [ Not found ]
[00:57:18]
[00:57:18] Checking for BOBKit Rootkit...
[00:57:18] Checking for file '/usr/sbin/ntpsx' [ Not found ]
[00:57:18] Checking for file '/usr/sbin/.../bkit-ava' [ Not found ]
[00:57:18] Checking for file '/usr/sbin/.../bkit-d' [ Not found ]
[00:57:18] Checking for file '/usr/sbin/.../bkit-shd' [ Not found ]
[00:57:18] Checking for file '/usr/sbin/.../bkit-f' [ Not found ]
[00:57:18] Checking for file '/usr/include/.../proc.h' [ Not found ]
[00:57:18] Checking for file '/usr/include/.../.bash_history' [ Not found ]
[00:57:18] Checking for file '/usr/include/.../bkit-get' [ Not found ]
[00:57:18] Checking for file '/usr/include/.../bkit-dl' [ Not found ]
[00:57:18] Checking for file '/usr/include/.../bkit-screen' [ Not found ]
[00:57:18] Checking for file '/usr/include/.../bkit-sleep' [ Not found ]
[00:57:18] Checking for file '/usr/lib/.../bkit-adore.o' [ Not found ]
[00:57:18] Checking for file '/usr/lib/.../ls' [ Not found ]
[00:57:18] Checking for file '/usr/lib/.../netstat' [ Not found ]
[00:57:18] Checking for file '/usr/lib/.../lsof' [ Not found ]
[00:57:18] Checking for file '/usr/lib/.../bkit-ssh/bkit-shdcfg' [ Not found ]
[00:57:18] Checking for file '/usr/lib/.../bkit-ssh/bkit-shhk' [ Not found ]
[00:57:19] Checking for file '/usr/lib/.../bkit-ssh/bkit-pw' [ Not found ]
[00:57:19] Checking for file '/usr/lib/.../bkit-ssh/bkit-shrs' [ Not found ]
[00:57:19] Checking for file '/usr/lib/.../bkit-ssh/bkit-mots' [ Not found ]
[00:57:19] Checking for file '/usr/lib/.../uconf.inv' [ Not found ]
[00:57:19] Checking for file '/usr/lib/.../psr' [ Not found ]
[00:57:19] Checking for file '/usr/lib/.../find' [ Not found ]
[00:57:19] Checking for file '/usr/lib/.../pstree' [ Not found ]
[00:57:19] Checking for file '/usr/lib/.../slocate' [ Not found ]
[00:57:19] Checking for file '/usr/lib/.../du' [ Not found ]
[00:57:19] Checking for file '/usr/lib/.../top' [ Not found ]
[00:57:19] Checking for directory '/usr/sbin/...' [ Not found ]
[00:57:19] Checking for directory '/usr/include/...' [ Not found ]
[00:57:19] Checking for directory '/usr/include/.../.tmp' [ Not found ]
[00:57:19] Checking for directory '/usr/lib/...' [ Not found ]
[00:57:19] Checking for directory '/usr/lib/.../.ssh' [ Not found ]
[00:57:19] Checking for directory '/usr/lib/.../bkit-ssh' [ Not found ]
[00:57:19] Checking for directory '/usr/lib/.bkit-' [ Not found ]
[00:57:19] Checking for directory '/tmp/.bkp' [ Not found ]
[00:57:19] BOBKit Rootkit [ Not found ]
[00:57:19]
[00:57:19] Checking for cb Rootkit...
[00:57:19] Checking for file '/dev/srd0' [ Not found ]
[00:57:19] Checking for file '/lib/libproc.so.2.0.6' [ Not found ]
[00:57:19] Checking for file '/dev/mounnt' [ Not found ]
[00:57:19] Checking for file '/etc/rc.d/init.d/init' [ Not found ]
[00:57:19] Checking for file '/usr/bin/.zeen/..<SP>/cl' [ Not found ]
[00:57:19] Checking for file '/usr/bin/.zeen/..<SP>/.x.tgz' [ Not found ]
[00:57:19] Checking for file '/usr/bin/.zeen/..<SP>/statdx' [ Not found ]
[00:57:19] Checking for file '/usr/bin/.zeen/..<SP>/wted' [ Not found ]
[00:57:19] Checking for file '/usr/bin/.zeen/..<SP>/write' [ Not found ]
[00:57:19] Checking for file '/usr/bin/.zeen/..<SP>/scan' [ Not found ]
[00:57:19] Checking for file '/usr/bin/.zeen/..<SP>/sc' [ Not found ]
[00:57:19] Checking for file '/usr/bin/.zeen/..<SP>/sl2' [ Not found ]
[00:57:19] Checking for file '/usr/bin/.zeen/..<SP>/wroot' [ Not found ]
[00:57:19] Checking for file '/usr/bin/.zeen/..<SP>/wscan' [ Not found ]
[00:57:19] Checking for file '/usr/bin/.zeen/..<SP>/wu' [ Not found ]
[00:57:19] Checking for file '/usr/bin/.zeen/..<SP>/v' [ Not found ]
[00:57:19] Checking for file '/usr/bin/.zeen/..<SP>/read' [ Not found ]
[00:57:19] Checking for file '/usr/lib/sshrc' [ Not found ]
[00:57:19] Checking for file '/usr/lib/ssh_host_key' [ Not found ]
[00:57:19] Checking for file '/usr/lib/ssh_host_key.pub' [ Not found ]
[00:57:19] Checking for file '/usr/lib/ssh_random_seed' [ Not found ]
[00:57:19] Checking for file '/usr/lib/sshd_config' [ Not found ]
[00:57:19] Checking for file '/usr/lib/shosts.equiv' [ Not found ]
[00:57:19] Checking for file '/usr/lib/ssh_known_hosts' [ Not found ]
[00:57:19] Checking for file '/u/zappa/.ssh/pid' [ Not found ]
[00:57:19] Checking for file '/usr/bin/.system/..<SP>/tcp.log' [ Not found ]
[00:57:19] Checking for file '/usr/bin/.zeen/..<SP>/curatare/attrib' [ Not found ]
[00:57:19] Checking for file '/usr/bin/.zeen/..<SP>/curatare/chattr' [ Not found ]
[00:57:19] Checking for file '/usr/bin/.zeen/..<SP>/curatare/ps' [ Not found ]
[00:57:19] Checking for file '/usr/bin/.zeen/..<SP>/curatare/pstree' [ Not found ]
[00:57:19] Checking for file '/usr/bin/.system/..<SP>/.x/xC.o' [ Not found ]
[00:57:19] Checking for directory '/usr/bin/.zeen' [ Not found ]
[00:57:19] Checking for directory '/usr/bin/.zeen/..<SP>/curatare' [ Not found ]
[00:57:19] Checking for directory '/usr/bin/.zeen/..<SP>/scan' [ Not found ]
[00:57:19] Checking for directory '/usr/bin/.system/..<SP>' [ Not found ]
[00:57:19] cb Rootkit [ Not found ]
[00:57:19]
[00:57:19] Checking for CiNIK Worm (Slapper.B variant)...
[00:57:19] Checking for file '/tmp/.cinik' [ Not found ]
[00:57:19] Checking for directory '/tmp/.font-unix/.cinik' [ Not found ]
[00:57:19] CiNIK Worm (Slapper.B variant) [ Not found ]
[00:57:19]
[00:57:19] Checking for Danny-Boy's Abuse Kit...
[00:57:19] Checking for file '/dev/mdev' [ Not found ]
[00:57:19] Checking for file '/usr/lib/libX.a' [ Not found ]
[00:57:19] Danny-Boy's Abuse Kit [ Not found ]
[00:57:19]
[00:57:19] Checking for Devil RootKit...
[00:57:19] Checking for file '/var/lib/games/.src' [ Not found ]
[00:57:20] Checking for file '/dev/dsx' [ Not found ]
[00:57:20] Checking for file '/dev/caca' [ Not found ]
[00:57:20] Checking for file '/dev/pro' [ Not found ]
[00:57:20] Checking for file '/bin/bye' [ Not found ]
[00:57:20] Checking for file '/bin/homedir' [ Not found ]
[00:57:20] Checking for file '/usr/bin/xfss' [ Not found ]
[00:57:20] Checking for file '/usr/sbin/tzava' [ Not found ]
[00:57:20] Checking for file '/usr/doc/tar/.../.dracusor/stuff/holber' [ Not found ]
[00:57:20] Checking for file '/usr/doc/tar/.../.dracusor/stuff/sense' [ Not found ]
[00:57:20] Checking for file '/usr/doc/tar/.../.dracusor/stuff/clear' [ Not found ]
[00:57:20] Checking for file '/usr/doc/tar/.../.dracusor/stuff/tzava' [ Not found ]
[00:57:20] Checking for file '/usr/doc/tar/.../.dracusor/stuff/citeste' [ Not found ]
[00:57:20] Checking for file '/usr/doc/tar/.../.dracusor/stuff/killrk' [ Not found ]
[00:57:20] Checking for file '/usr/doc/tar/.../.dracusor/stuff/searchlog' [ Not found ]
[00:57:20] Checking for file '/usr/doc/tar/.../.dracusor/stuff/gaoaza' [ Not found ]
[00:57:20] Checking for file '/usr/doc/tar/.../.dracusor/stuff/cleaner' [ Not found ]
[00:57:20] Checking for file '/usr/doc/tar/.../.dracusor/stuff/shk' [ Not found ]
[00:57:20] Checking for file '/usr/doc/tar/.../.dracusor/stuff/srs' [ Not found ]
[00:57:20] Checking for file '/usr/doc/tar/.../.dracusor/utile.tgz' [ Not found ]
[00:57:20] Checking for file '/usr/doc/tar/.../.dracusor/webpage' [ Not found ]
[00:57:20] Checking for file '/usr/doc/tar/.../.dracusor/getpsy' [ Not found ]
[00:57:20] Checking for file '/usr/doc/tar/.../.dracusor/getbnc' [ Not found ]
[00:57:20] Checking for file '/usr/doc/tar/.../.dracusor/getemech' [ Not found ]
[00:57:20] Checking for file '/usr/doc/tar/.../.dracusor/localroot.sh' [ Not found ]
[00:57:20] Checking for file '/usr/doc/tar/.../.dracusor/stuff/old/sense' [ Not found ]
[00:57:20] Checking for directory '/usr/doc/tar/.../.dracusor' [ Not found ]
[00:57:20] Devil RootKit [ Not found ]
[00:57:20]
[00:57:20] Checking for Diamorphine LKM...
[00:57:20] Checking for kernel symbol 'diamorphine' [ Not found ]
[00:57:20] Checking for kernel symbol 'module_hide' [ Not found ]
[00:57:20] Checking for kernel symbol 'module_hidden' [ Not found ]
[00:57:20] Checking for kernel symbol 'is_invisible' [ Not found ]
[00:57:20] Checking for kernel symbol 'hacked_getdents' [ Not found ]
[00:57:21] Checking for kernel symbol 'hacked_kill' [ Not found ]
[00:57:21] Diamorphine LKM [ Not found ]
[00:57:21]
[00:57:21] Checking for Dica-Kit Rootkit...
[00:57:21] Checking for file '/lib/.sso' [ Not found ]
[00:57:21] Checking for file '/lib/.so' [ Not found ]
[00:57:21] Checking for file '/var/run/...dica/clean' [ Not found ]
[00:57:21] Checking for file '/var/run/...dica/dxr' [ Not found ]
[00:57:21] Checking for file '/var/run/...dica/read' [ Not found ]
[00:57:21] Checking for file '/var/run/...dica/write' [ Not found ]
[00:57:21] Checking for file '/var/run/...dica/lf' [ Not found ]
[00:57:21] Checking for file '/var/run/...dica/xl' [ Not found ]
[00:57:21] Checking for file '/var/run/...dica/xdr' [ Not found ]
[00:57:21] Checking for file '/var/run/...dica/psg' [ Not found ]
[00:57:21] Checking for file '/var/run/...dica/secure' [ Not found ]
[00:57:21] Checking for file '/var/run/...dica/rdx' [ Not found ]
[00:57:21] Checking for file '/var/run/...dica/va' [ Not found ]
[00:57:21] Checking for file '/var/run/...dica/cl.sh' [ Not found ]
[00:57:21] Checking for file '/var/run/...dica/last.log' [ Not found ]
[00:57:21] Checking for file '/usr/bin/.etc' [ Not found ]
[00:57:21] Checking for file '/etc/sshd_config' [ Not found ]
[00:57:21] Checking for file '/etc/ssh_host_key' [ Not found ]
[00:57:21] Checking for file '/etc/ssh_random_seed' [ Not found ]
[00:57:21] Checking for directory '/var/run/...dica' [ Not found ]
[00:57:21] Checking for directory '/var/run/...dica/mh' [ Not found ]
[00:57:21] Checking for directory '/var/run/...dica/scan' [ Not found ]
[00:57:21] Dica-Kit Rootkit [ Not found ]
[00:57:21]
[00:57:21] Checking for Dreams Rootkit...
[00:57:21] Checking for file '/dev/ttyoa' [ Not found ]
[00:57:21] Checking for file '/dev/ttyof' [ Not found ]
[00:57:21] Checking for file '/dev/ttyop' [ Not found ]
[00:57:21] Checking for file '/usr/bin/sense' [ Not found ]
[00:57:21] Checking for file '/usr/bin/sl2' [ Not found ]
[00:57:21] Checking for file '/usr/bin/logclear' [ Not found ]
[00:57:21] Checking for file '/usr/bin/(swapd)' [ Not found ]
[00:57:21] Checking for file '/usr/bin/initrd' [ Not found ]
[00:57:21] Checking for file '/usr/bin/crontabs' [ Not found ]
[00:57:21] Checking for file '/usr/bin/snfs' [ Not found ]
[00:57:21] Checking for file '/usr/lib/libsss' [ Not found ]
[00:57:21] Checking for file '/usr/lib/libsnf.log' [ Not found ]
[00:57:21] Checking for file '/usr/lib/libshtift/top' [ Not found ]
[00:57:21] Checking for file '/usr/lib/libshtift/ps' [ Not found ]
[00:57:21] Checking for file '/usr/lib/libshtift/netstat' [ Not found ]
[00:57:21] Checking for file '/usr/lib/libshtift/ls' [ Not found ]
[00:57:21] Checking for file '/usr/lib/libshtift/ifconfig' [ Not found ]
[00:57:21] Checking for file '/usr/include/linseed.h' [ Not found ]
[00:57:21] Checking for file '/usr/include/linpid.h' [ Not found ]
[00:57:21] Checking for file '/usr/include/linkey.h' [ Not found ]
[00:57:21] Checking for file '/usr/include/linconf.h' [ Not found ]
[00:57:21] Checking for file '/usr/include/iceseed.h' [ Not found ]
[00:57:21] Checking for file '/usr/include/icepid.h' [ Not found ]
[00:57:21] Checking for file '/usr/include/icekey.h' [ Not found ]
[00:57:21] Checking for file '/usr/include/iceconf.h' [ Not found ]
[00:57:21] Checking for directory '/dev/ida/.hpd' [ Not found ]
[00:57:21] Checking for directory '/usr/lib/libshtift' [ Not found ]
[00:57:21] Dreams Rootkit [ Not found ]
[00:57:21]
[00:57:21] Checking for Duarawkz Rootkit...
[00:57:21] Checking for file '/usr/bin/duarawkz/loginpass' [ Not found ]
[00:57:21] Checking for directory '/usr/bin/duarawkz' [ Not found ]
[00:57:21] Duarawkz Rootkit [ Not found ]
[00:57:21]
[00:57:21] Checking for Ebury backdoor...
[00:57:21] Checking for file '/lib/libns2.so' [ Not found ]
[00:57:21] Checking for file '/lib64/libns2.so' [ Not found ]
[00:57:21] Checking for file '/lib/libns5.so' [ Not found ]
[00:57:21] Checking for file '/lib64/libns5.so' [ Not found ]
[00:57:21] Checking for file '/lib/libpw3.so' [ Not found ]
[00:57:21] Checking for file '/lib64/libpw3.so' [ Not found ]
[00:57:21] Checking for file '/lib/libpw5.so' [ Not found ]
[00:57:21] Checking for file '/lib64/libpw5.so' [ Not found ]
[00:57:21] Checking for file '/lib/libsbr.so' [ Not found ]
[00:57:21] Checking for file '/lib64/libsbr.so' [ Not found ]
[00:57:21] Checking for file '/lib/libslr.so' [ Not found ]
[00:57:21] Checking for file '/lib64/libslr.so' [ Not found ]
[00:57:21] Checking for file '/lib/tls/libkeyutils.so.1' [ Not found ]
[00:57:21] Checking for file '/lib64/tls/libkeyutils.so.1' [ Not found ]
[00:57:21] Ebury backdoor [ Not found ]
[00:57:21]
[00:57:21] Checking for Enye LKM...
[00:57:21] Checking for file '/etc/.enyelkmHIDE^IT.ko' [ Not found ]
[00:57:21] Checking for file '/etc/.enyelkmOCULTAR.ko' [ Not found ]
[00:57:21] Enye LKM [ Not found ]
[00:57:21]
[00:57:21] Checking for Flea Linux Rootkit...
[00:57:21] Checking for file '/etc/ld.so.hash' [ Not found ]
[00:57:21] Checking for file '/lib/security/.config/ssh/sshd_config' [ Not found ]
[00:57:22] Checking for file '/lib/security/.config/ssh/ssh_host_key' [ Not found ]
[00:57:22] Checking for file '/lib/security/.config/ssh/ssh_host_key.pub' [ Not found ]
[00:57:22] Checking for file '/lib/security/.config/ssh/ssh_random_seed' [ Not found ]
[00:57:22] Checking for file '/usr/bin/ssh2d' [ Not found ]
[00:57:22] Checking for file '/usr/lib/ldlibns.so' [ Not found ]
[00:57:22] Checking for file '/usr/lib/ldlibps.so' [ Not found ]
[00:57:22] Checking for file '/usr/lib/ldlibpst.so' [ Not found ]
[00:57:22] Checking for file '/usr/lib/ldlibdu.so' [ Not found ]
[00:57:22] Checking for file '/usr/lib/ldlibct.so' [ Not found ]
[00:57:22] Checking for directory '/lib/security/.config/ssh' [ Not found ]
[00:57:22] Checking for directory '/dev/..0' [ Not found ]
[00:57:22] Checking for directory '/dev/..0/backup' [ Not found ]
[00:57:22] Flea Linux Rootkit [ Not found ]
[00:57:22]
[00:57:22] Checking for Fu Rootkit...
[00:57:22] Checking for file '/sbin/xc' [ Not found ]
[00:57:22] Checking for file '/usr/include/ivtype.h' [ Not found ]
[00:57:22] Checking for file '/bin/.lib' [ Not found ]
[00:57:22] Fu Rootkit [ Not found ]
[00:57:22]
[00:57:22] Checking for Fuck`it Rootkit...
[00:57:22] Checking for file '/lib/libproc.so.2.0.7' [ Not found ]
[00:57:22] Checking for file '/dev/proc/.bash_profile' [ Not found ]
[00:57:22] Checking for file '/dev/proc/.bashrc' [ Not found ]
[00:57:22] Checking for file '/dev/proc/.cshrc' [ Not found ]
[00:57:22] Checking for file '/dev/proc/fuckit/hax0r' [ Not found ]
[00:57:22] Checking for file '/dev/proc/fuckit/hax0rshell' [ Not found ]
[00:57:22] Checking for file '/dev/proc/fuckit/config/lports' [ Not found ]
[00:57:22] Checking for file '/dev/proc/fuckit/config/rports' [ Not found ]
[00:57:22] Checking for file '/dev/proc/fuckit/config/rkconf' [ Not found ]
[00:57:22] Checking for file '/dev/proc/fuckit/config/password' [ Not found ]
[00:57:22] Checking for file '/dev/proc/fuckit/config/progs' [ Not found ]
[00:57:22] Checking for file '/dev/proc/fuckit/system-bins/init' [ Not found ]
[00:57:22] Checking for file '/usr/lib/libcps.a' [ Not found ]
[00:57:22] Checking for file '/usr/lib/libtty.a' [ Not found ]
[00:57:22] Checking for directory '/dev/proc' [ Not found ]
[00:57:22] Checking for directory '/dev/proc/fuckit' [ Not found ]
[00:57:22] Checking for directory '/dev/proc/fuckit/system-bins' [ Not found ]
[00:57:22] Checking for directory '/dev/proc/toolz' [ Not found ]
[00:57:22] Fuck`it Rootkit [ Not found ]
[00:57:22]
[00:57:22] Checking for GasKit Rootkit...
[00:57:22] Checking for file '/dev/dev/gaskit/sshd/sshdd' [ Not found ]
[00:57:22] Checking for directory '/dev/dev' [ Not found ]
[00:57:22] Checking for directory '/dev/dev/gaskit' [ Not found ]
[00:57:22] Checking for directory '/dev/dev/gaskit/sshd' [ Not found ]
[00:57:22] GasKit Rootkit [ Not found ]
[00:57:22]
[00:57:22] Checking for Heroin LKM...
[00:57:22] Checking for kernel symbol 'heroin' [ Not found ]
[00:57:22] Heroin LKM [ Not found ]
[00:57:22]
[00:57:22] Checking for HjC Kit...
[00:57:22] Checking for directory '/dev/.hijackerz' [ Not found ]
[00:57:22] HjC Kit [ Not found ]
[00:57:22]
[00:57:22] Checking for ignoKit Rootkit...
[00:57:22] Checking for file '/lib/defs/p' [ Not found ]
[00:57:22] Checking for file '/lib/defs/q' [ Not found ]
[00:57:22] Checking for file '/lib/defs/r' [ Not found ]
[00:57:22] Checking for file '/lib/defs/s' [ Not found ]
[00:57:22] Checking for file '/lib/defs/t' [ Not found ]
[00:57:22] Checking for file '/usr/lib/defs/p' [ Not found ]
[00:57:22] Checking for file '/usr/lib/defs/q' [ Not found ]
[00:57:22] Checking for file '/usr/lib/defs/r' [ Not found ]
[00:57:22] Checking for file '/usr/lib/defs/s' [ Not found ]
[00:57:22] Checking for file '/usr/lib/defs/t' [ Not found ]
[00:57:22] Checking for file '/usr/lib/.libigno/pkunsec' [ Not found ]
[00:57:22] Checking for file '/usr/lib/.libigno/.igno/psybnc/psybnc' [ Not found ]
[00:57:22] Checking for directory '/usr/lib/.libigno' [ Not found ]
[00:57:22] Checking for directory '/usr/lib/.libigno/.igno' [ Not found ]
[00:57:22] ignoKit Rootkit [ Not found ]
[00:57:22]
[00:57:22] Checking for IntoXonia-NG Rootkit...
[00:57:22] Checking for kernel symbol 'funces' [ Not found ]
[00:57:23] Checking for kernel symbol 'ixinit' [ Not found ]
[00:57:23] Checking for kernel symbol 'tricks' [ Not found ]
[00:57:23] Checking for kernel symbol 'kernel_unlink' [ Not found ]
[00:57:23] Checking for kernel symbol 'rootme' [ Not found ]
[00:57:23] Checking for kernel symbol 'hide_module' [ Not found ]
[00:57:23] Checking for kernel symbol 'find_sys_call_tbl' [ Not found ]
[00:57:23] IntoXonia-NG Rootkit [ Not found ]
[00:57:23]
[00:57:23] Checking for Irix Rootkit...
[00:57:23] Checking for directory '/dev/pts/01' [ Not found ]
[00:57:23] Checking for directory '/dev/pts/01/backup' [ Not found ]
[00:57:23] Checking for directory '/dev/pts/01/etc' [ Not found ]
[00:57:23] Checking for directory '/dev/pts/01/tmp' [ Not found ]
[00:57:23] Irix Rootkit [ Not found ]
[00:57:23]
[00:57:23] Checking for Jynx Rootkit...
[00:57:23] Checking for file '/xochikit/bc' [ Not found ]
[00:57:23] Checking for file '/xochikit/ld_poison.so' [ Not found ]
[00:57:23] Checking for file '/omgxochi/bc' [ Not found ]
[00:57:23] Checking for file '/omgxochi/ld_poison.so' [ Not found ]
[00:57:23] Checking for file '/var/local/^^/bc' [ Not found ]
[00:57:23] Checking for file '/var/local/^^/ld_poison.so' [ Not found ]
[00:57:23] Checking for directory '/xochikit' [ Not found ]
[00:57:23] Checking for directory '/omgxochi' [ Not found ]
[00:57:23] Checking for directory '/var/local/^^' [ Not found ]
[00:57:23] Jynx Rootkit [ Not found ]
[00:57:23]
[00:57:23] Checking for Jynx2 Rootkit...
[00:57:23] Checking for file '/XxJynx/reality.so' [ Not found ]
[00:57:23] Checking for directory '/XxJynx' [ Not found ]
[00:57:23] Jynx2 Rootkit [ Not found ]
[00:57:23]
[00:57:23] Checking for KBeast Rootkit...
[00:57:23] Checking for file '/usr/_h4x_/ipsecs-kbeast-v1.ko' [ Not found ]
[00:57:23] Checking for file '/usr/_h4x_/_h4x_bd' [ Not found ]
[00:57:23] Checking for file '/usr/_h4x_/acctlog' [ Not found ]
[00:57:23] Checking for directory '/usr/_h4x_' [ Not found ]
[00:57:23] Checking for kernel symbol 'h4x_delete_module' [ Not found ]
[00:57:24] Checking for kernel symbol 'h4x_getdents64' [ Not found ]
[00:57:24] Checking for kernel symbol 'h4x_kill' [ Not found ]
[00:57:24] Checking for kernel symbol 'h4x_open' [ Not found ]
[00:57:24] Checking for kernel symbol 'h4x_read' [ Not found ]
[00:57:24] Checking for kernel symbol 'h4x_rename' [ Not found ]
[00:57:24] Checking for kernel symbol 'h4x_rmdir' [ Not found ]
[00:57:24] Checking for kernel symbol 'h4x_tcp4_seq_show' [ Not found ]
[00:57:24] Checking for kernel symbol 'h4x_write' [ Not found ]
[00:57:24] KBeast Rootkit [ Not found ]
[00:57:24]
[00:57:24] Checking for Kitko Rootkit...
[00:57:24] Checking for directory '/usr/src/redhat/SRPMS/...' [ Not found ]
[00:57:24] Kitko Rootkit [ Not found ]
[00:57:24]
[00:57:24] Checking for Knark Rootkit...
[00:57:24] Checking for file '/proc/knark/pids' [ Not found ]
[00:57:24] Checking for directory '/proc/knark' [ Not found ]
[00:57:24] Knark Rootkit [ Not found ]
[00:57:24]
[00:57:24] Checking for ld-linuxv.so Rootkit...
[00:57:24] Checking for file '/lib/ld-linuxv.so.1' [ Not found ]
[00:57:24] Checking for directory '/var/opt/_so_cache' [ Not found ]
[00:57:24] Checking for directory '/var/opt/_so_cache/ld' [ Not found ]
[00:57:24] Checking for directory '/var/opt/_so_cache/lc' [ Not found ]
[00:57:24] ld-linuxv.so Rootkit [ Not found ]
[00:57:24]
[00:57:24] Checking for Li0n Worm...
[00:57:24] Checking for file '/bin/in.telnetd' [ Not found ]
[00:57:24] Checking for file '/bin/mjy' [ Not found ]
[00:57:24] Checking for file '/usr/man/man1/man1/lib/.lib/mjy' [ Not found ]
[00:57:24] Checking for file '/usr/man/man1/man1/lib/.lib/in.telnetd' [ Not found ]
[00:57:24] Checking for file '/usr/man/man1/man1/lib/.lib/.x' [ Not found ]
[00:57:24] Checking for file '/dev/.lib/lib/scan/1i0n.sh' [ Not found ]
[00:57:24] Checking for file '/dev/.lib/lib/scan/hack.sh' [ Not found ]
[00:57:24] Checking for file '/dev/.lib/lib/scan/bind' [ Not found ]
[00:57:24] Checking for file '/dev/.lib/lib/scan/randb' [ Not found ]
[00:57:24] Checking for file '/dev/.lib/lib/scan/scan.sh' [ Not found ]
[00:57:24] Checking for file '/dev/.lib/lib/scan/pscan' [ Not found ]
[00:57:24] Checking for file '/dev/.lib/lib/scan/star.sh' [ Not found ]
[00:57:25] Checking for file '/dev/.lib/lib/scan/bindx.sh' [ Not found ]
[00:57:25] Checking for file '/dev/.lib/lib/scan/bindname.log' [ Not found ]
[00:57:25] Checking for file '/dev/.lib/lib/1i0n.sh' [ Not found ]
[00:57:25] Checking for file '/dev/.lib/lib/lib/netstat' [ Not found ]
[00:57:25] Checking for file '/dev/.lib/lib/lib/dev/.1addr' [ Not found ]
[00:57:25] Checking for file '/dev/.lib/lib/lib/dev/.1logz' [ Not found ]
[00:57:25] Checking for file '/dev/.lib/lib/lib/dev/.1proc' [ Not found ]
[00:57:25] Checking for file '/dev/.lib/lib/lib/dev/.1file' [ Not found ]
[00:57:25] Li0n Worm [ Not found ]
[00:57:25]
[00:57:25] Checking for Lockit / LJK2 Rootkit...
[00:57:25] Checking for file '/usr/lib/libmen.oo/.LJK2/ssh_config' [ Not found ]
[00:57:25] Checking for file '/usr/lib/libmen.oo/.LJK2/ssh_host_key' [ Not found ]
[00:57:25] Checking for file '/usr/lib/libmen.oo/.LJK2/ssh_host_key.pub' [ Not found ]
[00:57:25] Checking for file '/usr/lib/libmen.oo/.LJK2/ssh_random_seed*' [ Not found ]
[00:57:25] Checking for file '/usr/lib/libmen.oo/.LJK2/sshd_config' [ Not found ]
[00:57:25] Checking for file '/usr/lib/libmen.oo/.LJK2/backdoor/RK1bd' [ Not found ]
[00:57:25] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/du' [ Not found ]
[00:57:25] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/ifconfig' [ Not found ]
[00:57:25] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/inetd.conf' [ Not found ]
[00:57:25] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/locate' [ Not found ]
[00:57:25] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/login' [ Not found ]
[00:57:25] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/ls' [ Not found ]
[00:57:25] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/netstat' [ Not found ]
[00:57:25] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/ps' [ Not found ]
[00:57:25] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/pstree' [ Not found ]
[00:57:25] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/rc.sysinit' [ Not found ]
[00:57:25] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/syslogd' [ Not found ]
[00:57:25] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/tcpd' [ Not found ]
[00:57:25] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/top' [ Not found ]
[00:57:25] Checking for file '/usr/lib/libmen.oo/.LJK2/clean/RK1sauber' [ Not found ]
[00:57:25] Checking for file '/usr/lib/libmen.oo/.LJK2/clean/RK1wted' [ Not found ]
[00:57:25] Checking for file '/usr/lib/libmen.oo/.LJK2/hack/RK1parse' [ Not found ]
[00:57:25] Checking for file '/usr/lib/libmen.oo/.LJK2/hack/RK1sniff' [ Not found ]
[00:57:25] Checking for file '/usr/lib/libmen.oo/.LJK2/hide/.RK1addr' [ Not found ]
[00:57:25] Checking for file '/usr/lib/libmen.oo/.LJK2/hide/.RK1dir' [ Not found ]
[00:57:25] Checking for file '/usr/lib/libmen.oo/.LJK2/hide/.RK1log' [ Not found ]
[00:57:25] Checking for file '/usr/lib/libmen.oo/.LJK2/hide/.RK1proc' [ Not found ]
[00:57:25] Checking for file '/usr/lib/libmen.oo/.LJK2/hide/RK1phidemod.c' [ Not found ]
[00:57:25] Checking for file '/usr/lib/libmen.oo/.LJK2/modules/README.modules' [ Not found ]
[00:57:25] Checking for file '/usr/lib/libmen.oo/.LJK2/modules/RK1hidem.c' [ Not found ]
[00:57:25] Checking for file '/usr/lib/libmen.oo/.LJK2/modules/RK1phide' [ Not found ]
[00:57:25] Checking for file '/usr/lib/libmen.oo/.LJK2/sshconfig/RK1ssh' [ Not found ]
[00:57:25] Checking for directory '/usr/lib/libmen.oo/.LJK2' [ Not found ]
[00:57:25] Lockit / LJK2 Rootkit [ Not found ]
[00:57:25]
[00:57:25] Checking for Mokes backdoor...
[00:57:25] Checking for file '/tmp/ss0-[0-9][0-9][0-9][0-9][0-9][0-9]-[0-9][0-9][0-9][0-9][0-9][0-9]-[0-9][0-9][0-9].sst' [ Not found ]
[00:57:25] Checking for file '/tmp/aa0-[0-9][0-9][0-9][0-9][0-9][0-9]-[0-9][0-9][0-9][0-9][0-9][0-9]-[0-9][0-9][0-9].aat' [ Not found ]
[00:57:25] Checking for file '/tmp/kk0-[0-9][0-9][0-9][0-9][0-9][0-9]-[0-9][0-9][0-9][0-9][0-9][0-9]-[0-9][0-9][0-9].kkt' [ Not found ]
[00:57:25] Checking for file '/tmp/dd0-[0-9][0-9][0-9][0-9][0-9][0-9]-[0-9][0-9][0-9][0-9][0-9][0-9]-[0-9][0-9][0-9].ddt' [ Not found ]
[00:57:25] Mokes backdoor [ Not found ]
[00:57:25]
[00:57:25] Checking for Mood-NT Rootkit...
[00:57:25] Checking for file '/sbin/init__mood-nt-_-_cthulhu' [ Not found ]
[00:57:25] Checking for file '/_cthulhu/mood-nt.init' [ Not found ]
[00:57:25] Checking for file '/_cthulhu/mood-nt.conf' [ Not found ]
[00:57:25] Checking for file '/_cthulhu/mood-nt.sniff' [ Not found ]
[00:57:25] Checking for directory '/_cthulhu' [ Not found ]
[00:57:25] Mood-NT Rootkit [ Not found ]
[00:57:25]
[00:57:25] Checking for MRK Rootkit...
[00:57:25] Checking for file '/dev/ida/.inet/pid' [ Not found ]
[00:57:25] Checking for file '/dev/ida/.inet/ssh_host_key' [ Not found ]
[00:57:25] Checking for file '/dev/ida/.inet/ssh_random_seed' [ Not found ]
[00:57:26] Checking for file '/dev/ida/.inet/tcp.log' [ Not found ]
[00:57:26] Checking for directory '/dev/ida/.inet' [ Not found ]
[00:57:26] Checking for directory '/var/spool/cron/.sh' [ Not found ]
[00:57:26] MRK Rootkit [ Not found ]
[00:57:26]
[00:57:26] Checking for Ni0 Rootkit...
[00:57:26] Checking for file '/var/lock/subsys/...datafile.../...net...' [ Not found ]
[00:57:26] Checking for file '/var/lock/subsys/...datafile.../...port...' [ Not found ]
[00:57:26] Checking for file '/var/lock/subsys/...datafile.../...ps...' [ Not found ]
[00:57:26] Checking for file '/var/lock/subsys/...datafile.../...file...' [ Not found ]
[00:57:26] Checking for directory '/tmp/waza' [ Not found ]
[00:57:26] Checking for directory '/var/lock/subsys/...datafile...' [ Not found ]
[00:57:26] Checking for directory '/usr/sbin/es' [ Not found ]
[00:57:26] Ni0 Rootkit [ Not found ]
[00:57:26]
[00:57:26] Checking for Ohhara Rootkit...
[00:57:26] Checking for file '/var/lock/subsys/...datafile.../...datafile.../in.smbd.log' [ Not found ]
[00:57:26] Checking for directory '/var/lock/subsys/...datafile...' [ Not found ]
[00:57:26] Checking for directory '/var/lock/subsys/...datafile.../...datafile...' [ Not found ]
[00:57:26] Checking for directory '/var/lock/subsys/...datafile.../...datafile.../bin' [ Not found ]
[00:57:26] Checking for directory '/var/lock/subsys/...datafile.../...datafile.../usr/bin' [ Not found ]
[00:57:26] Checking for directory '/var/lock/subsys/...datafile.../...datafile.../usr/sbin' [ Not found ]
[00:57:26] Checking for directory '/var/lock/subsys/...datafile.../...datafile.../lib/security' [ Not found ]
[00:57:26] Ohhara Rootkit [ Not found ]
[00:57:26]
[00:57:26] Checking for Optic Kit (Tux) Worm...
[00:57:26] Checking for directory '/dev/tux' [ Not found ]
[00:57:26] Checking for directory '/usr/bin/xchk' [ Not found ]
[00:57:26] Checking for directory '/usr/bin/xsf' [ Not found ]
[00:57:26] Checking for directory '/usr/bin/ssh2d' [ Not found ]
[00:57:26] Optic Kit (Tux) Worm [ Not found ]
[00:57:26]
[00:57:26] Checking for Oz Rootkit...
[00:57:26] Checking for file '/dev/.oz/.nap/rkit/terror' [ Not found ]
[00:57:26] Checking for directory '/dev/.oz' [ Not found ]
[00:57:26] Oz Rootkit [ Not found ]
[00:57:26]
[00:57:26] Checking for Phalanx Rootkit...
[00:57:26] Checking for file '/uNFuNF' [ Not found ]
[00:57:26] Checking for file '/etc/host.ph1' [ Not found ]
[00:57:26] Checking for file '/bin/host.ph1' [ Not found ]
[00:57:26] Checking for file '/usr/share/.home.ph1/phalanx' [ Not found ]
[00:57:26] Checking for file '/usr/share/.home.ph1/cb' [ Not found ]
[00:57:26] Checking for file '/usr/share/.home.ph1/kebab' [ Not found ]
[00:57:26] Checking for directory '/usr/share/.home.ph1' [ Not found ]
[00:57:26] Checking for directory '/usr/share/.home.ph1/tty' [ Not found ]
[00:57:26] Phalanx Rootkit [ Not found ]
[00:57:26]
[00:57:26] Checking for Phalanx2 Rootkit...
[00:57:26] Checking for file '/etc/khubd.p2/.p2rc' [ Not found ]
[00:57:26] Checking for file '/etc/khubd.p2/.phalanx2' [ Not found ]
[00:57:26] Checking for file '/etc/khubd.p2/.sniff' [ Not found ]
[00:57:26] Checking for file '/etc/khubd.p2/sshgrab.py' [ Not found ]
[00:57:26] Checking for file '/etc/lolzz.p2/.p2rc' [ Not found ]
[00:57:26] Checking for file '/etc/lolzz.p2/.phalanx2' [ Not found ]
[00:57:26] Checking for file '/etc/lolzz.p2/.sniff' [ Not found ]
[00:57:26] Checking for file '/etc/lolzz.p2/sshgrab.py' [ Not found ]
[00:57:26] Checking for file '/etc/cron.d/zupzzplaceholder' [ Not found ]
[00:57:26] Checking for file '/usr/lib/zupzz.p2/.p-2.3d' [ Not found ]
[00:57:26] Checking for file '/usr/lib/zupzz.p2/.p2rc' [ Not found ]
[00:57:26] Checking for directory '/etc/khubd.p2' [ Not found ]
[00:57:26] Checking for directory '/etc/lolzz.p2' [ Not found ]
[00:57:26] Checking for directory '/usr/lib/zupzz.p2' [ Not found ]
[00:57:26] Phalanx2 Rootkit [ Not found ]
[00:57:26]
[00:57:26] Checking for Phalanx2 Rootkit (extended tests)...
[00:57:26] Checking for directory '/etc/khubd.p2' [ Not found ]
[00:57:26] Checking for directory '/etc/lolzz.p2' [ Not found ]
[00:57:26] Checking for directory '/usr/lib/zupzz.p2' [ Not found ]
[00:57:26] Phalanx2 Rootkit (extended tests) [ Not found ]
[00:57:26]
[00:57:26] Checking for Portacelo Rootkit...
[00:57:26] Checking for file '/var/lib/.../.ak' [ Not found ]
[00:57:26] Checking for file '/var/lib/.../.hk' [ Not found ]
[00:57:26] Checking for file '/var/lib/.../.rs' [ Not found ]
[00:57:26] Checking for file '/var/lib/.../.p' [ Not found ]
[00:57:26] Checking for file '/var/lib/.../getty' [ Not found ]
[00:57:26] Checking for file '/var/lib/.../lkt.o' [ Not found ]
[00:57:26] Checking for file '/var/lib/.../show' [ Not found ]
[00:57:26] Checking for file '/var/lib/.../nlkt.o' [ Not found ]
[00:57:26] Checking for file '/var/lib/.../ssshrc' [ Not found ]
[00:57:27] Checking for file '/var/lib/.../sssh_equiv' [ Not found ]
[00:57:27] Checking for file '/var/lib/.../sssh_known_hosts' [ Not found ]
[00:57:27] Checking for file '/var/lib/.../sssh_pid' [ Not found ]
[00:57:27] Checking for file '~/.sssh/known_hosts' [ Not found ]
[00:57:27] Portacelo Rootkit [ Not found ]
[00:57:27]
[00:57:27] Checking for R3dstorm Toolkit...




01 02 03



Patrocínio

Site hospedado pelo provedor RedeHost.
Linux banner

Destaques

Artigos

Dicas

Tópicos

Top 10 do mês

Scripts