Malware no Deepin | RKHunter

1. Malware no Deepin | RKHunter

killua
killuaz

(usa Debian)

Enviado em 01/06/2017 - 20:42h

Pessoal olhem aí, é algo para se preocupar?

[20:26:19] Running Rootkit Hunter version 1.4.2 on PC
[20:26:19]
[20:26:19] Info: Start date is qui jun 1 20:26:19 BRT 2017
[20:26:19]
[20:26:19] Checking configuration file and command-line options...
[20:26:19] Info: Detected operating system is 'Linux'
[20:26:19] Info: Found O/S name: Deepin 15.4
[20:26:19] Info: Command line is /usr/bin/rkhunter --checkall
[20:26:19] Info: Environment shell is /bin/bash; rkhunter is using dash
[20:26:19] Info: Using configuration file '/etc/rkhunter.conf'
[20:26:19] Info: Installation directory is '/usr'
[20:26:19] Info: Using language 'en'
[20:26:19] Info: Using '/var/lib/rkhunter/db' as the database directory
[20:26:19] Info: Using '/usr/share/rkhunter/scripts' as the support script directory
[20:26:19] Info: Using '/usr/local/sbin /usr/local/bin /usr/sbin /usr/bin /sbin /bin' as the command directories
[20:26:19] Info: Using '/var/lib/rkhunter/tmp' as the temporary directory
[20:26:19] Info: No mail-on-warning address configured
[20:26:19] Info: X will be automatically detected
[20:26:19] Info: Using second color set
[20:26:19] Info: Found the 'basename' command: /usr/bin/basename
[20:26:19] Info: Found the 'diff' command: /usr/bin/diff
[20:26:19] Info: Found the 'dirname' command: /usr/bin/dirname
[20:26:19] Info: Found the 'file' command: /usr/bin/file
[20:26:19] Info: Found the 'find' command: /usr/bin/find
[20:26:19] Info: Found the 'ifconfig' command: /bin/ifconfig
[20:26:19] Info: Found the 'ip' command: /sbin/ip
[20:26:19] Info: Found the 'ipcs' command: /usr/bin/ipcs
[20:26:19] Info: Found the 'ldd' command: /usr/bin/ldd
[20:26:19] Info: Found the 'lsattr' command: /usr/bin/lsattr
[20:26:19] Info: Found the 'lsmod' command: /sbin/lsmod
[20:26:19] Info: Found the 'lsof' command: /usr/bin/lsof
[20:26:19] Info: Found the 'mktemp' command: /bin/mktemp
[20:26:19] Info: Found the 'netstat' command: /bin/netstat
[20:26:19] Info: Found the 'perl' command: /usr/bin/perl
[20:26:19] Info: Found the 'pgrep' command: /usr/bin/pgrep
[20:26:19] Info: Found the 'ps' command: /bin/ps
[20:26:19] Info: Found the 'pwd' command: /bin/pwd
[20:26:19] Info: Found the 'readlink' command: /bin/readlink
[20:26:19] Info: Found the 'stat' command: /usr/bin/stat
[20:26:19] Info: Found the 'strings' command: /usr/bin/strings
[20:26:19] Info: System is not using prelinking
[20:26:19] Info: Using the '/usr/bin/sha256sum' command for the file hash checks
[20:26:19] Info: Stored hash values used hash function '/usr/bin/sha256sum'
[20:26:19] Info: Stored hash values did not use a package manager
[20:26:19] Info: The hash function field index is set to 1
[20:26:19] Info: No package manager specified: using hash function '/usr/bin/sha256sum'
[20:26:19] Info: Previous file attributes were stored
[20:26:19] Info: Enabled tests are: all
[20:26:19] Info: Disabled tests are: suspscan hidden_procs deleted_files packet_cap_apps apps
[20:26:19] Info: Found ksym file '/proc/kallsyms'
[20:26:19] Info: Using syslog for some logging - facility/priority level is 'authpriv.warning'.
[20:26:19] Info: Using 'date' to process epoch second times
[20:26:19]
[20:26:19] Checking if the O/S has changed since last time...
[20:26:19] Info: Nothing seems to have changed.
[20:26:19] Info: Locking is not being used
[20:26:19]
[20:26:19] Starting system checks...
[20:26:19]
[20:26:19] Info: Starting test name 'system_commands'
[20:26:19] Checking system commands...
[20:26:19]
[20:26:19] Info: Starting test name 'strings'
[20:26:19] Performing 'strings' command checks
[20:26:19] Scanning for string /usr/sbin/ntpsx [ OK ]
[20:26:19] Scanning for string /usr/sbin/.../bkit-ava [ OK ]
[20:26:19] Scanning for string /usr/sbin/.../bkit-d [ OK ]
[20:26:19] Scanning for string /usr/sbin/.../bkit-shd [ OK ]
[20:26:19] Scanning for string /usr/sbin/.../bkit-f [ OK ]
[20:26:19] Scanning for string /usr/include/.../proc.h [ OK ]
[20:26:19] Scanning for string /usr/include/.../.bash_history [ OK ]
[20:26:19] Scanning for string /usr/include/.../bkit-get [ OK ]
[20:26:19] Scanning for string /usr/include/.../bkit-dl [ OK ]
[20:26:19] Scanning for string /usr/include/.../bkit-screen [ OK ]
[20:26:19] Scanning for string /usr/include/.../bkit-sleep [ OK ]
[20:26:19] Scanning for string /usr/lib/.../bkit-adore.o [ OK ]
[20:26:19] Scanning for string /usr/lib/.../ls [ OK ]
[20:26:19] Scanning for string /usr/lib/.../netstat [ OK ]
[20:26:19] Scanning for string /usr/lib/.../lsof [ OK ]
[20:26:19] Scanning for string /usr/lib/.../bkit-ssh/bkit-shdcfg [ OK ]
[20:26:19] Scanning for string /usr/lib/.../bkit-ssh/bkit-shhk [ OK ]
[20:26:19] Scanning for string /usr/lib/.../bkit-ssh/bkit-pw [ OK ]
[20:26:19] Scanning for string /usr/lib/.../bkit-ssh/bkit-shrs [ OK ]
[20:26:19] Scanning for string /usr/lib/.../bkit-ssh/bkit-mots [ OK ]
[20:26:19] Scanning for string /usr/lib/.../uconf.inv [ OK ]
[20:26:20] Scanning for string /usr/lib/.../psr [ OK ]
[20:26:20] Scanning for string /usr/lib/.../find [ OK ]
[20:26:20] Scanning for string /usr/lib/.../pstree [ OK ]
[20:26:20] Scanning for string /usr/lib/.../slocate [ OK ]
[20:26:20] Scanning for string /usr/lib/.../du [ OK ]
[20:26:20] Scanning for string /usr/lib/.../top [ OK ]
[20:26:20] Scanning for string /usr/sbin/... [ OK ]
[20:26:20] Scanning for string /usr/include/... [ OK ]
[20:26:20] Scanning for string /usr/include/.../.tmp [ OK ]
[20:26:20] Scanning for string /usr/lib/... [ OK ]
[20:26:20] Scanning for string /usr/lib/.../.ssh [ OK ]
[20:26:20] Scanning for string /usr/lib/.../bkit-ssh [ OK ]
[20:26:20] Scanning for string /usr/lib/.bkit- [ OK ]
[20:26:20] Scanning for string /tmp/.bkp [ OK ]
[20:26:20] Scanning for string /tmp/.cinik [ OK ]
[20:26:20] Scanning for string /tmp/.font-unix/.cinik [ OK ]
[20:26:20] Scanning for string /lib/.sso [ OK ]
[20:26:20] Scanning for string /lib/.so [ OK ]
[20:26:20] Scanning for string /var/run/...dica/clean [ OK ]
[20:26:20] Scanning for string /var/run/...dica/dxr [ OK ]
[20:26:20] Scanning for string /var/run/...dica/read [ OK ]
[20:26:20] Scanning for string /var/run/...dica/write [ OK ]
[20:26:20] Scanning for string /var/run/...dica/lf [ OK ]
[20:26:20] Scanning for string /var/run/...dica/xl [ OK ]
[20:26:20] Scanning for string /var/run/...dica/xdr [ OK ]
[20:26:20] Scanning for string /var/run/...dica/psg [ OK ]
[20:26:20] Scanning for string /var/run/...dica/secure [ OK ]
[20:26:20] Scanning for string /var/run/...dica/rdx [ OK ]
[20:26:20] Scanning for string /var/run/...dica/va [ OK ]
[20:26:20] Scanning for string /var/run/...dica/cl.sh [ OK ]
[20:26:20] Scanning for string /var/run/...dica/last.log [ OK ]
[20:26:20] Scanning for string /usr/bin/.etc [ OK ]
[20:26:20] Scanning for string /etc/sshd_config [ OK ]
[20:26:20] Scanning for string /etc/ssh_host_key [ OK ]
[20:26:20] Scanning for string /etc/ssh_random_seed [ OK ]
[20:26:20] Scanning for string /dev/ptyp [ OK ]
[20:26:20] Scanning for string /dev/ptyq [ OK ]
[20:26:20] Scanning for string /dev/ptyr [ OK ]
[20:26:20] Scanning for string /dev/ptys [ OK ]
[20:26:20] Scanning for string /dev/ptyt [ OK ]
[20:26:20] Scanning for string /dev/fd/.88/freshb-bsd [ OK ]
[20:26:20] Scanning for string /dev/fd/.88/fresht [ OK ]
[20:26:20] Scanning for string /dev/fd/.88/zxsniff [ OK ]
[20:26:20] Scanning for string /dev/fd/.88/zxsniff.log [ OK ]
[20:26:20] Scanning for string /dev/fd/.99/.ttyf00 [ OK ]
[20:26:20] Scanning for string /dev/fd/.99/.ttyp00 [ OK ]
[20:26:20] Scanning for string /dev/fd/.99/.ttyq00 [ OK ]
[20:26:20] Scanning for string /dev/fd/.99/.ttys00 [ OK ]
[20:26:20] Scanning for string /dev/fd/.99/.pwsx00 [ OK ]
[20:26:20] Scanning for string /etc/.acid [ OK ]
[20:26:20] Scanning for string /usr/lib/.fx/sched_host.2 [ OK ]
[20:26:20] Scanning for string /usr/lib/.fx/random_d.2 [ OK ]
[20:26:20] Scanning for string /usr/lib/.fx/set_pid.2 [ OK ]
[20:26:20] Scanning for string /usr/lib/.fx/setrgrp.2 [ OK ]
[20:26:20] Scanning for string /usr/lib/.fx/TOHIDE [ OK ]
[20:26:21] Scanning for string /usr/lib/.fx/cons.saver [ OK ]
[20:26:21] Scanning for string /usr/lib/.fx/adore/ava/ava [ OK ]
[20:26:21] Scanning for string /usr/lib/.fx/adore/adore/adore.ko [ OK ]
[20:26:21] Scanning for string /bin/sysback [ OK ]
[20:26:21] Scanning for string /usr/local/bin/sysback [ OK ]
[20:26:21] Scanning for string /usr/lib/.tbd [ OK ]
[20:26:21] Scanning for string /dev/.lib/lib/lib/t0rns [ OK ]
[20:26:21] Scanning for string /dev/.lib/lib/lib/du [ OK ]
[20:26:21] Scanning for string /dev/.lib/lib/lib/ls [ OK ]
[20:26:21] Scanning for string /dev/.lib/lib/lib/t0rnsb [ OK ]
[20:26:21] Scanning for string /dev/.lib/lib/lib/ps [ OK ]
[20:26:21] Scanning for string /dev/.lib/lib/lib/t0rnp [ OK ]
[20:26:21] Scanning for string /dev/.lib/lib/lib/find [ OK ]
[20:26:21] Scanning for string /dev/.lib/lib/lib/ifconfig [ OK ]
[20:26:21] Scanning for string /dev/.lib/lib/lib/pg [ OK ]
[20:26:21] Scanning for string /dev/.lib/lib/lib/ssh.tgz [ OK ]
[20:26:21] Scanning for string /dev/.lib/lib/lib/top [ OK ]
[20:26:21] Scanning for string /dev/.lib/lib/lib/sz [ OK ]
[20:26:21] Scanning for string /dev/.lib/lib/lib/login [ OK ]
[20:26:21] Scanning for string /dev/.lib/lib/lib/in.fingerd [ OK ]
[20:26:21] Scanning for string /dev/.lib/lib/lib/1i0n.sh [ OK ]
[20:26:21] Scanning for string /dev/.lib/lib/lib/pstree [ OK ]
[20:26:21] Scanning for string /dev/.lib/lib/lib/in.telnetd [ OK ]
[20:26:21] Scanning for string /dev/.lib/lib/lib/mjy [ OK ]
[20:26:21] Scanning for string /dev/.lib/lib/lib/sush [ OK ]
[20:26:21] Scanning for string /dev/.lib/lib/lib/tfn [ OK ]
[20:26:21] Scanning for string /dev/.lib/lib/lib/name [ OK ]
[20:26:21] Scanning for string /dev/.lib/lib/lib/getip.sh [ OK ]
[20:26:21] Scanning for string /usr/info/.torn/sh* [ OK ]
[20:26:21] Scanning for string /usr/src/.[*****]/.1addr [ OK ]
[20:26:21] Scanning for string /usr/src/.[*****]/.1file [ OK ]
[20:26:21] Scanning for string /usr/src/.[*****]/.1proc [ OK ]
[20:26:21] Scanning for string /usr/src/.[*****]/.1logz [ OK ]
[20:26:21] Scanning for string /usr/info/.t0rn [ OK ]
[20:26:21] Scanning for string /dev/.lib [ OK ]
[20:26:21] Scanning for string /dev/.lib/lib [ OK ]
[20:26:21] Scanning for string /dev/.lib/lib/lib [ OK ]
[20:26:21] Scanning for string /dev/.lib/lib/lib/dev [ OK ]
[20:26:21] Scanning for string /dev/.lib/lib/scan [ OK ]
[20:26:21] Scanning for string /usr/src/.[*****] [ OK ]
[20:26:21] Scanning for string /usr/man/man1/man1 [ OK ]
[20:26:21] Scanning for string /usr/man/man1/man1/lib [ OK ]
[20:26:21] Scanning for string /usr/man/man1/man1/lib/.lib [ OK ]
[20:26:21] Scanning for string /usr/man/man1/man1/lib/.lib/.backup [ OK ]
[20:26:21]
[20:26:21] Info: Starting test name 'shared_libs'
[20:26:21] Performing 'shared libraries' checks
[20:26:21] Checking for preloading variables [ None found ]
[20:26:21] Checking for preloaded libraries [ None found ]
[20:26:21]
[20:26:21] Info: Starting test name 'shared_libs_path'
[20:26:21] Checking LD_LIBRARY_PATH variable [ Not found ]
[20:26:22]
[20:26:22] Info: Starting test name 'properties'
[20:26:22] Performing file properties checks
[20:26:22] Checking for prerequisites [ OK ]
[20:26:25] /usr/sbin/adduser [ OK ]
[20:26:25] Info: Found file '/usr/sbin/adduser': it is whitelisted for the 'script replacement' check.
[20:26:26] /usr/sbin/chroot [ OK ]
[20:26:26] /usr/sbin/cron [ OK ]
[20:26:26] /usr/sbin/groupadd [ OK ]
[20:26:26] /usr/sbin/groupdel [ OK ]
[20:26:26] /usr/sbin/groupmod [ OK ]
[20:26:26] /usr/sbin/grpck [ OK ]
[20:26:27] /usr/sbin/nologin [ OK ]
[20:26:27] /usr/sbin/pwck [ OK ]
[20:26:27] /usr/sbin/tcpd [ OK ]
[20:26:28] /usr/sbin/useradd [ OK ]
[20:26:28] /usr/sbin/userdel [ OK ]
[20:26:28] /usr/sbin/usermod [ OK ]
[20:26:28] /usr/sbin/vipw [ OK ]
[20:26:28] /usr/sbin/unhide [ OK ]
[20:26:28] /usr/sbin/unhide-linux [ OK ]
[20:26:28] /usr/sbin/unhide-posix [ OK ]
[20:26:28] /usr/sbin/unhide-tcp [ OK ]
[20:26:28] /usr/bin/awk [ OK ]
[20:26:29] /usr/bin/basename [ OK ]
[20:26:29] /usr/bin/chattr [ OK ]
[20:26:29] /usr/bin/cut [ OK ]
[20:26:29] /usr/bin/diff [ OK ]
[20:26:29] /usr/bin/dirname [ OK ]
[20:26:29] /usr/bin/dpkg [ OK ]
[20:26:29] /usr/bin/dpkg-query [ OK ]
[20:26:29] /usr/bin/du [ OK ]
[20:26:30] /usr/bin/env [ OK ]
[20:26:30] /usr/bin/file [ OK ]
[20:26:30] /usr/bin/find [ OK ]
[20:26:30] /usr/bin/GET [ OK ]
[20:26:30] /usr/bin/groups [ OK ]
[20:26:30] /usr/bin/head [ OK ]
[20:26:30] /usr/bin/id [ OK ]
[20:26:30] /usr/bin/killall [ OK ]
[20:26:30] /usr/bin/last [ OK ]
[20:26:31] /usr/bin/lastlog [ OK ]
[20:26:31] /usr/bin/ldd [ OK ]
[20:26:31] Info: Found file '/usr/bin/ldd': it is whitelisted for the 'script replacement' check.
[20:26:31] /usr/bin/less [ OK ]
[20:26:31] /usr/bin/logger [ OK ]
[20:26:31] /usr/bin/lsattr [ OK ]
[20:26:31] /usr/bin/lsof [ OK ]
[20:26:31] /usr/bin/mail [ OK ]
[20:26:31] /usr/bin/md5sum [ OK ]
[20:26:31] /usr/bin/newgrp [ OK ]
[20:26:32] /usr/bin/passwd [ OK ]
[20:26:32] /usr/bin/perl [ OK ]
[20:26:32] /usr/bin/pgrep [ OK ]
[20:26:32] /usr/bin/pkill [ OK ]
[20:26:32] /usr/bin/pstree [ OK ]
[20:26:32] /usr/bin/rkhunter [ OK ]
[20:26:32] /usr/bin/runcon [ OK ]
[20:26:32] /usr/bin/sha1sum [ OK ]
[20:26:32] /usr/bin/sha224sum [ OK ]
[20:26:32] /usr/bin/sha256sum [ OK ]
[20:26:32] /usr/bin/sha384sum [ OK ]
[20:26:33] /usr/bin/sha512sum [ OK ]
[20:26:33] /usr/bin/size [ OK ]
[20:26:33] /usr/bin/sort [ OK ]
[20:26:33] /usr/bin/ssh [ OK ]
[20:26:33] /usr/bin/stat [ OK ]
[20:26:33] /usr/bin/strings [ OK ]
[20:26:33] /usr/bin/sudo [ OK ]
[20:26:33] /usr/bin/tail [ OK ]
[20:26:33] /usr/bin/test [ OK ]
[20:26:33] /usr/bin/top [ OK ]
[20:26:33] /usr/bin/touch [ OK ]
[20:26:33] /usr/bin/tr [ OK ]
[20:26:34] /usr/bin/uniq [ OK ]
[20:26:34] /usr/bin/users [ OK ]
[20:26:34] /usr/bin/vmstat [ OK ]
[20:26:34] /usr/bin/w [ OK ]
[20:26:34] /usr/bin/watch [ OK ]
[20:26:34] /usr/bin/wc [ OK ]
[20:26:34] /usr/bin/wget [ OK ]
[20:26:34] /usr/bin/whatis [ OK ]
[20:26:34] /usr/bin/whereis [ OK ]
[20:26:34] /usr/bin/which [ OK ]
[20:26:35] /usr/bin/who [ OK ]
[20:26:35] /usr/bin/whoami [ OK ]
[20:26:35] /usr/bin/gawk [ OK ]
[20:26:35] /usr/bin/lwp-request [ Warning ]
[20:26:35] Warning: The command '/usr/bin/lwp-request' has been replaced by a script: /usr/bin/lwp-request: Perl script text executable
[20:26:35] /usr/bin/bsd-mailx [ OK ]
[20:26:35] /usr/bin/x86_64-linux-gnu-size [ OK ]
[20:26:35] /usr/bin/x86_64-linux-gnu-strings [ OK ]
[20:26:35] /usr/bin/w.procps [ OK ]
[20:26:35] /sbin/depmod [ OK ]
[20:26:36] /sbin/fsck [ OK ]
[20:26:36] /sbin/ifdown [ OK ]
[20:26:36] /sbin/ifup [ OK ]
[20:26:36] /sbin/init [ OK ]
[20:26:36] /sbin/insmod [ OK ]
[20:26:36] /sbin/ip [ OK ]
[20:26:36] /sbin/lsmod [ OK ]
[20:26:37] /sbin/modinfo [ OK ]
[20:26:37] /sbin/modprobe [ OK ]
[20:26:37] /sbin/rmmod [ OK ]
[20:26:37] /sbin/route [ OK ]
[20:26:37] /sbin/runlevel [ OK ]
[20:26:37] /sbin/sulogin [ OK ]
[20:26:37] /sbin/sysctl [ OK ]
[20:26:38] /bin/bash [ OK ]
[20:26:38] /bin/cat [ OK ]
[20:26:38] /bin/chmod [ OK ]
[20:26:38] /bin/chown [ OK ]
[20:26:39] /bin/cp [ OK ]
[20:26:39] /bin/date [ OK ]
[20:26:39] /bin/df [ OK ]
[20:26:39] /bin/dmesg [ OK ]
[20:26:39] /bin/echo [ OK ]
[20:26:39] /bin/egrep [ OK ]
[20:26:39] Info: Found file '/bin/egrep': it is whitelisted for the 'script replacement' check.
[20:26:39] /bin/fgrep [ OK ]
[20:26:39] Info: Found file '/bin/fgrep': it is whitelisted for the 'script replacement' check.
[20:26:39] /bin/fuser [ OK ]
[20:26:39] /bin/grep [ OK ]
[20:26:39] /bin/ifconfig [ OK ]
[20:26:40] /bin/ip [ OK ]
[20:26:40] /bin/kill [ OK ]
[20:26:40] /bin/less [ OK ]
[20:26:40] /bin/login [ OK ]
[20:26:40] /bin/ls [ OK ]
[20:26:40] /bin/lsmod [ OK ]
[20:26:40] /bin/mktemp [ OK ]
[20:26:40] /bin/more [ OK ]
[20:26:40] /bin/mount [ OK ]
[20:26:40] /bin/mv [ OK ]
[20:26:41] /bin/netstat [ OK ]
[20:26:41] /bin/ping [ OK ]
[20:26:41] /bin/ps [ OK ]
[20:26:41] /bin/pwd [ OK ]
[20:26:41] /bin/readlink [ OK ]
[20:26:41] /bin/sed [ OK ]
[20:26:41] /bin/sh [ OK ]
[20:26:42] /bin/su [ OK ]
[20:26:42] /bin/touch [ OK ]
[20:26:42] /bin/uname [ OK ]
[20:26:42] /bin/which [ OK ]
[20:26:42] Info: Found file '/bin/which': it is whitelisted for the 'script replacement' check.
[20:26:42] /bin/kmod [ OK ]
[20:26:42] /bin/systemd [ OK ]
[20:26:43] /bin/systemctl [ OK ]
[20:26:43] /bin/dash [ OK ]
[20:26:44] /lib/systemd/systemd [ OK ]
[20:27:16]
[20:27:16] Info: Starting test name 'rootkits'
[20:27:16] Checking for rootkits...
[20:27:16]
[20:27:16] Info: Starting test name 'known_rkts'
[20:27:16] Performing check of known rootkit files and directories
[20:27:16]
[20:27:16] Checking for 55808 Trojan - Variant A...
[20:27:16] Checking for file '/tmp/.../r' [ Not found ]
[20:27:16] Checking for file '/tmp/.../a' [ Not found ]
[20:27:16] 55808 Trojan - Variant A [ Not found ]
[20:27:16]
[20:27:16] Checking for ADM Worm...
[20:27:16] Checking for string 'w0rm' [ Not found ]
[20:27:16] ADM Worm [ Not found ]
[20:27:16]
[20:27:16] Checking for AjaKit Rootkit...
[20:27:16] Checking for file '/dev/tux/.addr' [ Not found ]
[20:27:16] Checking for file '/dev/tux/.proc' [ Not found ]
[20:27:16] Checking for file '/dev/tux/.file' [ Not found ]
[20:27:16] Checking for file '/lib/.libgh-gh/cleaner' [ Not found ]
[20:27:16] Checking for file '/lib/.libgh-gh/Patch/patch' [ Not found ]
[20:27:16] Checking for file '/lib/.libgh-gh/sb0k' [ Not found ]
[20:27:16] Checking for directory '/dev/tux' [ Not found ]
[20:27:16] Checking for directory '/lib/.libgh-gh' [ Not found ]
[20:27:16] AjaKit Rootkit [ Not found ]
[20:27:16]
[20:27:16] Checking for Adore Rootkit...
[20:27:16] Checking for file '/usr/secure' [ Not found ]
[20:27:16] Checking for file '/usr/doc/sys/qrt' [ Not found ]
[20:27:16] Checking for file '/usr/doc/sys/run' [ Not found ]
[20:27:16] Checking for file '/usr/doc/sys/crond' [ Not found ]
[20:27:16] Checking for file '/usr/sbin/kfd' [ Not found ]
[20:27:16] Checking for file '/usr/doc/kern/var' [ Not found ]
[20:27:16] Checking for file '/usr/doc/kern/string.o' [ Not found ]
[20:27:16] Checking for file '/usr/doc/kern/ava' [ Not found ]
[20:27:16] Checking for file '/usr/doc/kern/adore.o' [ Not found ]
[20:27:16] Checking for file '/var/log/ssh/old' [ Not found ]
[20:27:16] Checking for directory '/lib/security/.config/ssh' [ Not found ]
[20:27:16] Checking for directory '/usr/doc/kern' [ Not found ]
[20:27:16] Checking for directory '/usr/doc/backup' [ Not found ]
[20:27:16] Checking for directory '/usr/doc/backup/txt' [ Not found ]
[20:27:16] Checking for directory '/lib/backup' [ Not found ]
[20:27:16] Checking for directory '/lib/backup/txt' [ Not found ]
[20:27:16] Checking for directory '/usr/doc/work' [ Not found ]
[20:27:16] Checking for directory '/usr/doc/sys' [ Not found ]
[20:27:16] Checking for directory '/var/log/ssh' [ Not found ]
[20:27:16] Checking for directory '/usr/doc/.spool' [ Not found ]
[20:27:16] Checking for directory '/usr/lib/kterm' [ Not found ]
[20:27:16] Adore Rootkit [ Not found ]
[20:27:16]
[20:27:16] Checking for aPa Kit...
[20:27:16] Checking for file '/usr/share/.aPa' [ Not found ]
[20:27:16] aPa Kit [ Not found ]
[20:27:16]
[20:27:16] Checking for Apache Worm...
[20:27:16] Checking for file '/bin/.log' [ Not found ]
[20:27:16] Apache Worm [ Not found ]
[20:27:16]
[20:27:16] Checking for Ambient (ark) Rootkit...
[20:27:16] Checking for file '/usr/lib/.ark?' [ Not found ]
[20:27:17] Checking for file '/dev/ptyxx/.log' [ Not found ]
[20:27:17] Checking for file '/dev/ptyxx/.file' [ Not found ]
[20:27:17] Checking for file '/dev/ptyxx/.proc' [ Not found ]
[20:27:17] Checking for file '/dev/ptyxx/.addr' [ Not found ]
[20:27:17] Checking for directory '/dev/ptyxx' [ Not found ]
[20:27:17] Ambient (ark) Rootkit [ Not found ]
[20:27:17]
[20:27:17] Checking for Balaur Rootkit...
[20:27:17] Checking for file '/usr/lib/liblog.o' [ Not found ]
[20:27:17] Checking for directory '/usr/lib/.kinetic' [ Not found ]
[20:27:17] Checking for directory '/usr/lib/.egcs' [ Not found ]
[20:27:17] Checking for directory '/usr/lib/.wormie' [ Not found ]
[20:27:17] Balaur Rootkit [ Not found ]
[20:27:17]
[20:27:17] Checking for BeastKit Rootkit...
[20:27:17] Checking for file '/usr/sbin/arobia' [ Not found ]
[20:27:17] Checking for file '/usr/sbin/idrun' [ Not found ]
[20:27:17] Checking for file '/usr/lib/elm/arobia/elm' [ Not found ]
[20:27:17] Checking for file '/usr/lib/elm/arobia/elm/hk' [ Not found ]
[20:27:17] Checking for file '/usr/lib/elm/arobia/elm/hk.pub' [ Not found ]
[20:27:17] Checking for file '/usr/lib/elm/arobia/elm/sc' [ Not found ]
[20:27:17] Checking for file '/usr/lib/elm/arobia/elm/sd.pp' [ Not found ]
[20:27:17] Checking for file '/usr/lib/elm/arobia/elm/sdco' [ Not found ]
[20:27:17] Checking for file '/usr/lib/elm/arobia/elm/srsd' [ Not found ]
[20:27:17] Checking for directory '/lib/ldd.so/bktools' [ Not found ]
[20:27:17] BeastKit Rootkit [ Not found ]
[20:27:17]
[20:27:17] Checking for beX2 Rootkit...
[20:27:17] Checking for file '/usr/info/termcap.info-5.gz' [ Not found ]
[20:27:17] Checking for file '/usr/bin/sshd2' [ Not found ]
[20:27:17] Checking for directory '/usr/include/bex' [ Not found ]
[20:27:17] beX2 Rootkit [ Not found ]
[20:27:17]
[20:27:17] Checking for BOBKit Rootkit...
[20:27:17] Checking for file '/usr/sbin/ntpsx' [ Not found ]
[20:27:17] Checking for file '/usr/sbin/.../bkit-ava' [ Not found ]
[20:27:17] Checking for file '/usr/sbin/.../bkit-d' [ Not found ]
[20:27:17] Checking for file '/usr/sbin/.../bkit-shd' [ Not found ]
[20:27:17] Checking for file '/usr/sbin/.../bkit-f' [ Not found ]
[20:27:17] Checking for file '/usr/include/.../proc.h' [ Not found ]
[20:27:17] Checking for file '/usr/include/.../.bash_history' [ Not found ]
[20:27:17] Checking for file '/usr/include/.../bkit-get' [ Not found ]
[20:27:17] Checking for file '/usr/include/.../bkit-dl' [ Not found ]
[20:27:17] Checking for file '/usr/include/.../bkit-screen' [ Not found ]
[20:27:17] Checking for file '/usr/include/.../bkit-sleep' [ Not found ]
[20:27:17] Checking for file '/usr/lib/.../bkit-adore.o' [ Not found ]
[20:27:17] Checking for file '/usr/lib/.../ls' [ Not found ]
[20:27:17] Checking for file '/usr/lib/.../netstat' [ Not found ]
[20:27:17] Checking for file '/usr/lib/.../lsof' [ Not found ]
[20:27:17] Checking for file '/usr/lib/.../bkit-ssh/bkit-shdcfg' [ Not found ]
[20:27:17] Checking for file '/usr/lib/.../bkit-ssh/bkit-shhk' [ Not found ]
[20:27:17] Checking for file '/usr/lib/.../bkit-ssh/bkit-pw' [ Not found ]
[20:27:17] Checking for file '/usr/lib/.../bkit-ssh/bkit-shrs' [ Not found ]
[20:27:17] Checking for file '/usr/lib/.../bkit-ssh/bkit-mots' [ Not found ]
[20:27:17] Checking for file '/usr/lib/.../uconf.inv' [ Not found ]
[20:27:17] Checking for file '/usr/lib/.../psr' [ Not found ]
[20:27:17] Checking for file '/usr/lib/.../find' [ Not found ]
[20:27:17] Checking for file '/usr/lib/.../pstree' [ Not found ]
[20:27:17] Checking for file '/usr/lib/.../slocate' [ Not found ]
[20:27:18] Checking for file '/usr/lib/.../du' [ Not found ]
[20:27:18] Checking for file '/usr/lib/.../top' [ Not found ]
[20:27:18] Checking for directory '/usr/sbin/...' [ Not found ]
[20:27:18] Checking for directory '/usr/include/...' [ Not found ]
[20:27:18] Checking for directory '/usr/include/.../.tmp' [ Not found ]
[20:27:18] Checking for directory '/usr/lib/...' [ Not found ]
[20:27:18] Checking for directory '/usr/lib/.../.ssh' [ Not found ]
[20:27:18] Checking for directory '/usr/lib/.../bkit-ssh' [ Not found ]
[20:27:18] Checking for directory '/usr/lib/.bkit-' [ Not found ]
[20:27:18] Checking for directory '/tmp/.bkp' [ Not found ]
[20:27:18] BOBKit Rootkit [ Not found ]
[20:27:18]
[20:27:18] Checking for cb Rootkit...
[20:27:18] Checking for file '/dev/srd0' [ Not found ]
[20:27:18] Checking for file '/lib/libproc.so.2.0.6' [ Not found ]
[20:27:18] Checking for file '/dev/mounnt' [ Not found ]
[20:27:18] Checking for file '/etc/rc.d/init.d/init' [ Not found ]
[20:27:18] Checking for file '/usr/bin/.zeen/..<SP>/cl' [ Not found ]
[20:27:18] Checking for file '/usr/bin/.zeen/..<SP>/.x.tgz' [ Not found ]
[20:27:18] Checking for file '/usr/bin/.zeen/..<SP>/statdx' [ Not found ]
[20:27:18] Checking for file '/usr/bin/.zeen/..<SP>/wted' [ Not found ]
[20:27:18] Checking for file '/usr/bin/.zeen/..<SP>/write' [ Not found ]
[20:27:18] Checking for file '/usr/bin/.zeen/..<SP>/scan' [ Not found ]
[20:27:18] Checking for file '/usr/bin/.zeen/..<SP>/sc' [ Not found ]
[20:27:18] Checking for file '/usr/bin/.zeen/..<SP>/sl2' [ Not found ]
[20:27:18] Checking for file '/usr/bin/.zeen/..<SP>/wroot' [ Not found ]
[20:27:18] Checking for file '/usr/bin/.zeen/..<SP>/wscan' [ Not found ]
[20:27:18] Checking for file '/usr/bin/.zeen/..<SP>/wu' [ Not found ]
[20:27:18] Checking for file '/usr/bin/.zeen/..<SP>/v' [ Not found ]
[20:27:18] Checking for file '/usr/bin/.zeen/..<SP>/read' [ Not found ]
[20:27:18] Checking for file '/usr/lib/sshrc' [ Not found ]
[20:27:18] Checking for file '/usr/lib/ssh_host_key' [ Not found ]
[20:27:18] Checking for file '/usr/lib/ssh_host_key.pub' [ Not found ]
[20:27:18] Checking for file '/usr/lib/ssh_random_seed' [ Not found ]
[20:27:18] Checking for file '/usr/lib/sshd_config' [ Not found ]
[20:27:18] Checking for file '/usr/lib/shosts.equiv' [ Not found ]
[20:27:18] Checking for file '/usr/lib/ssh_known_hosts' [ Not found ]
[20:27:18] Checking for file '/u/zappa/.ssh/pid' [ Not found ]
[20:27:18] Checking for file '/usr/bin/.system/..<SP>/tcp.log' [ Not found ]
[20:27:18] Checking for file '/usr/bin/.zeen/..<SP>/curatare/attrib' [ Not found ]
[20:27:18] Checking for file '/usr/bin/.zeen/..<SP>/curatare/chattr' [ Not found ]
[20:27:18] Checking for file '/usr/bin/.zeen/..<SP>/curatare/ps' [ Not found ]
[20:27:18] Checking for file '/usr/bin/.zeen/..<SP>/curatare/pstree' [ Not found ]
[20:27:18] Checking for file '/usr/bin/.system/..<SP>/.x/xC.o' [ Not found ]
[20:27:18] Checking for directory '/usr/bin/.zeen' [ Not found ]
[20:27:18] Checking for directory '/usr/bin/.zeen/..<SP>/curatare' [ Not found ]
[20:27:18] Checking for directory '/usr/bin/.zeen/..<SP>/scan' [ Not found ]
[20:27:18] Checking for directory '/usr/bin/.system/..<SP>' [ Not found ]
[20:27:18] cb Rootkit [ Not found ]
[20:27:18]
[20:27:18] Checking for CiNIK Worm (Slapper.B variant)...
[20:27:18] Checking for file '/tmp/.cinik' [ Not found ]
[20:27:18] Checking for directory '/tmp/.font-unix/.cinik' [ Not found ]
[20:27:18] CiNIK Worm (Slapper.B variant) [ Not found ]
[20:27:18]
[20:27:18] Checking for Danny-Boy's Abuse Kit...
[20:27:18] Checking for file '/dev/mdev' [ Not found ]
[20:27:18] Checking for file '/usr/lib/libX.a' [ Not found ]
[20:27:18] Danny-Boy's Abuse Kit [ Not found ]
[20:27:18]
[20:27:18] Checking for Devil RootKit...
[20:27:19] Checking for file '/var/lib/games/.src' [ Not found ]
[20:27:19] Checking for file '/dev/dsx' [ Not found ]
[20:27:19] Checking for file '/dev/caca' [ Not found ]
[20:27:19] Checking for file '/dev/pro' [ Not found ]
[20:27:19] Checking for file '/bin/bye' [ Not found ]
[20:27:19] Checking for file '/bin/homedir' [ Not found ]
[20:27:19] Checking for file '/usr/bin/xfss' [ Not found ]
[20:27:19] Checking for file '/usr/sbin/tzava' [ Not found ]
[20:27:19] Checking for file '/usr/doc/tar/.../.dracusor/stuff/holber' [ Not found ]
[20:27:19] Checking for file '/usr/doc/tar/.../.dracusor/stuff/sense' [ Not found ]
[20:27:19] Checking for file '/usr/doc/tar/.../.dracusor/stuff/clear' [ Not found ]
[20:27:19] Checking for file '/usr/doc/tar/.../.dracusor/stuff/tzava' [ Not found ]
[20:27:19] Checking for file '/usr/doc/tar/.../.dracusor/stuff/citeste' [ Not found ]
[20:27:19] Checking for file '/usr/doc/tar/.../.dracusor/stuff/killrk' [ Not found ]
[20:27:19] Checking for file '/usr/doc/tar/.../.dracusor/stuff/searchlog' [ Not found ]
[20:27:19] Checking for file '/usr/doc/tar/.../.dracusor/stuff/gaoaza' [ Not found ]
[20:27:19] Checking for file '/usr/doc/tar/.../.dracusor/stuff/cleaner' [ Not found ]
[20:27:19] Checking for file '/usr/doc/tar/.../.dracusor/stuff/shk' [ Not found ]
[20:27:19] Checking for file '/usr/doc/tar/.../.dracusor/stuff/srs' [ Not found ]
[20:27:19] Checking for file '/usr/doc/tar/.../.dracusor/utile.tgz' [ Not found ]
[20:27:19] Checking for file '/usr/doc/tar/.../.dracusor/webpage' [ Not found ]
[20:27:19] Checking for file '/usr/doc/tar/.../.dracusor/getpsy' [ Not found ]
[20:27:19] Checking for file '/usr/doc/tar/.../.dracusor/getbnc' [ Not found ]
[20:27:19] Checking for file '/usr/doc/tar/.../.dracusor/getemech' [ Not found ]
[20:27:19] Checking for file '/usr/doc/tar/.../.dracusor/localroot.sh' [ Not found ]
[20:27:19] Checking for file '/usr/doc/tar/.../.dracusor/stuff/old/sense' [ Not found ]
[20:27:19] Checking for directory '/usr/doc/tar/.../.dracusor' [ Not found ]
[20:27:19] Devil RootKit [ Not found ]
[20:27:19]
[20:27:19] Checking for Dica-Kit Rootkit...
[20:27:19] Checking for file '/lib/.sso' [ Not found ]
[20:27:19] Checking for file '/lib/.so' [ Not found ]
[20:27:19] Checking for file '/var/run/...dica/clean' [ Not found ]
[20:27:19] Checking for file '/var/run/...dica/dxr' [ Not found ]
[20:27:19] Checking for file '/var/run/...dica/read' [ Not found ]
[20:27:19] Checking for file '/var/run/...dica/write' [ Not found ]
[20:27:19] Checking for file '/var/run/...dica/lf' [ Not found ]
[20:27:19] Checking for file '/var/run/...dica/xl' [ Not found ]
[20:27:19] Checking for file '/var/run/...dica/xdr' [ Not found ]
[20:27:19] Checking for file '/var/run/...dica/psg' [ Not found ]
[20:27:19] Checking for file '/var/run/...dica/secure' [ Not found ]
[20:27:19] Checking for file '/var/run/...dica/rdx' [ Not found ]
[20:27:19] Checking for file '/var/run/...dica/va' [ Not found ]
[20:27:19] Checking for file '/var/run/...dica/cl.sh' [ Not found ]
[20:27:19] Checking for file '/var/run/...dica/last.log' [ Not found ]
[20:27:19] Checking for file '/usr/bin/.etc' [ Not found ]
[20:27:19] Checking for file '/etc/sshd_config' [ Not found ]
[20:27:19] Checking for file '/etc/ssh_host_key' [ Not found ]
[20:27:19] Checking for file '/etc/ssh_random_seed' [ Not found ]
[20:27:19] Checking for directory '/var/run/...dica' [ Not found ]
[20:27:19] Checking for directory '/var/run/...dica/mh' [ Not found ]
[20:27:19] Checking for directory '/var/run/...dica/scan' [ Not found ]
[20:27:19] Dica-Kit Rootkit [ Not found ]
[20:27:19]
[20:27:19] Checking for Dreams Rootkit...
[20:27:19] Checking for file '/dev/ttyoa' [ Not found ]
[20:27:19] Checking for file '/dev/ttyof' [ Not found ]
[20:27:19] Checking for file '/dev/ttyop' [ Not found ]
[20:27:20] Checking for file '/usr/bin/sense' [ Not found ]
[20:27:20] Checking for file '/usr/bin/sl2' [ Not found ]
[20:27:20] Checking for file '/usr/bin/logclear' [ Not found ]
[20:27:20] Checking for file '/usr/bin/(swapd)' [ Not found ]
[20:27:20] Checking for file '/usr/bin/initrd' [ Not found ]
[20:27:20] Checking for file '/usr/bin/crontabs' [ Not found ]
[20:27:20] Checking for file '/usr/bin/snfs' [ Not found ]
[20:27:20] Checking for file '/usr/lib/libsss' [ Not found ]
[20:27:20] Checking for file '/usr/lib/libsnf.log' [ Not found ]
[20:27:20] Checking for file '/usr/lib/libshtift/top' [ Not found ]
[20:27:20] Checking for file '/usr/lib/libshtift/ps' [ Not found ]
[20:27:20] Checking for file '/usr/lib/libshtift/netstat' [ Not found ]
[20:27:20] Checking for file '/usr/lib/libshtift/ls' [ Not found ]
[20:27:20] Checking for file '/usr/lib/libshtift/ifconfig' [ Not found ]
[20:27:20] Checking for file '/usr/include/linseed.h' [ Not found ]
[20:27:20] Checking for file '/usr/include/linpid.h' [ Not found ]
[20:27:20] Checking for file '/usr/include/linkey.h' [ Not found ]
[20:27:20] Checking for file '/usr/include/linconf.h' [ Not found ]
[20:27:20] Checking for file '/usr/include/iceseed.h' [ Not found ]
[20:27:20] Checking for file '/usr/include/icepid.h' [ Not found ]
[20:27:20] Checking for file '/usr/include/icekey.h' [ Not found ]
[20:27:20] Checking for file '/usr/include/iceconf.h' [ Not found ]
[20:27:20] Checking for directory '/dev/ida/.hpd' [ Not found ]
[20:27:20] Checking for directory '/usr/lib/libshtift' [ Not found ]
[20:27:20] Dreams Rootkit [ Not found ]
[20:27:20]
[20:27:20] Checking for Duarawkz Rootkit...
[20:27:20] Checking for file '/usr/bin/duarawkz/loginpass' [ Not found ]
[20:27:20] Checking for directory '/usr/bin/duarawkz' [ Not found ]
[20:27:20] Duarawkz Rootkit [ Not found ]
[20:27:20]
[20:27:20] Checking for Enye LKM...
[20:27:20] Checking for file '/etc/.enyelkmHIDE^IT.ko' [ Not found ]
[20:27:20] Checking for file '/etc/.enyelkmOCULTAR.ko' [ Not found ]
[20:27:20] Enye LKM [ Not found ]
[20:27:20]
[20:27:20] Checking for Flea Linux Rootkit...
[20:27:20] Checking for file '/etc/ld.so.hash' [ Not found ]
[20:27:20] Checking for file '/lib/security/.config/ssh/sshd_config' [ Not found ]
[20:27:20] Checking for file '/lib/security/.config/ssh/ssh_host_key' [ Not found ]
[20:27:20] Checking for file '/lib/security/.config/ssh/ssh_host_key.pub' [ Not found ]
[20:27:20] Checking for file '/lib/security/.config/ssh/ssh_random_seed' [ Not found ]
[20:27:20] Checking for file '/usr/bin/ssh2d' [ Not found ]
[20:27:20] Checking for file '/usr/lib/ldlibns.so' [ Not found ]
[20:27:20] Checking for file '/usr/lib/ldlibps.so' [ Not found ]
[20:27:20] Checking for file '/usr/lib/ldlibpst.so' [ Not found ]
[20:27:20] Checking for file '/usr/lib/ldlibdu.so' [ Not found ]
[20:27:20] Checking for file '/usr/lib/ldlibct.so' [ Not found ]
[20:27:20] Checking for directory '/lib/security/.config/ssh' [ Not found ]
[20:27:20] Checking for directory '/dev/..0' [ Not found ]
[20:27:20] Checking for directory '/dev/..0/backup' [ Not found ]
[20:27:20] Flea Linux Rootkit [ Not found ]
[20:27:20]
[20:27:20] Checking for Fu Rootkit...
[20:27:20] Checking for file '/sbin/xc' [ Not found ]
[20:27:20] Checking for file '/usr/include/ivtype.h' [ Not found ]
[20:27:20] Checking for file '/bin/.lib' [ Not found ]
[20:27:20] Fu Rootkit [ Not found ]
[20:27:20]
[20:27:20] Checking for Fuck`it Rootkit...
[20:27:20] Checking for file '/lib/libproc.so.2.0.7' [ Not found ]
[20:27:20] Checking for file '/dev/proc/.bash_profile' [ Not found ]
[20:27:21] Checking for file '/dev/proc/.bashrc' [ Not found ]
[20:27:21] Checking for file '/dev/proc/.cshrc' [ Not found ]
[20:27:21] Checking for file '/dev/proc/fuckit/hax0r' [ Not found ]
[20:27:21] Checking for file '/dev/proc/fuckit/hax0rshell' [ Not found ]
[20:27:21] Checking for file '/dev/proc/fuckit/config/lports' [ Not found ]
[20:27:21] Checking for file '/dev/proc/fuckit/config/rports' [ Not found ]
[20:27:21] Checking for file '/dev/proc/fuckit/config/rkconf' [ Not found ]
[20:27:21] Checking for file '/dev/proc/fuckit/config/password' [ Not found ]
[20:27:21] Checking for file '/dev/proc/fuckit/config/progs' [ Not found ]
[20:27:21] Checking for file '/dev/proc/fuckit/system-bins/init' [ Not found ]
[20:27:21] Checking for file '/usr/lib/libcps.a' [ Not found ]
[20:27:21] Checking for file '/usr/lib/libtty.a' [ Not found ]
[20:27:21] Checking for directory '/dev/proc' [ Not found ]
[20:27:21] Checking for directory '/dev/proc/fuckit' [ Not found ]
[20:27:21] Checking for directory '/dev/proc/fuckit/system-bins' [ Not found ]
[20:27:21] Checking for directory '/dev/proc/toolz' [ Not found ]
[20:27:21] Fuck`it Rootkit [ Not found ]
[20:27:21]
[20:27:21] Checking for GasKit Rootkit...
[20:27:21] Checking for file '/dev/dev/gaskit/sshd/sshdd' [ Not found ]
[20:27:21] Checking for directory '/dev/dev' [ Not found ]
[20:27:21] Checking for directory '/dev/dev/gaskit' [ Not found ]
[20:27:21] Checking for directory '/dev/dev/gaskit/sshd' [ Not found ]
[20:27:21] GasKit Rootkit [ Not found ]
[20:27:21]
[20:27:21] Checking for Heroin LKM...
[20:27:21] Checking for kernel symbol 'heroin' [ Not found ]
[20:27:21] Heroin LKM [ Not found ]
[20:27:21]
[20:27:21] Checking for HjC Kit...
[20:27:21] Checking for directory '/dev/.hijackerz' [ Not found ]
[20:27:21] HjC Kit [ Not found ]
[20:27:21]
[20:27:21] Checking for ignoKit Rootkit...
[20:27:21] Checking for file '/lib/defs/p' [ Not found ]
[20:27:21] Checking for file '/lib/defs/q' [ Not found ]
[20:27:21] Checking for file '/lib/defs/r' [ Not found ]
[20:27:21] Checking for file '/lib/defs/s' [ Not found ]
[20:27:21] Checking for file '/lib/defs/t' [ Not found ]
[20:27:21] Checking for file '/usr/lib/defs/p' [ Not found ]
[20:27:21] Checking for file '/usr/lib/defs/q' [ Not found ]
[20:27:21] Checking for file '/usr/lib/defs/r' [ Not found ]
[20:27:21] Checking for file '/usr/lib/defs/s' [ Not found ]
[20:27:21] Checking for file '/usr/lib/defs/t' [ Not found ]
[20:27:21] Checking for file '/usr/lib/.libigno/pkunsec' [ Not found ]
[20:27:21] Checking for file '/usr/lib/.libigno/.igno/psybnc/psybnc' [ Not found ]
[20:27:21] Checking for directory '/usr/lib/.libigno' [ Not found ]
[20:27:21] Checking for directory '/usr/lib/.libigno/.igno' [ Not found ]
[20:27:21] ignoKit Rootkit [ Not found ]
[20:27:21]
[20:27:21] Checking for IntoXonia-NG Rootkit...
[20:27:21] Checking for kernel symbol 'funces' [ Not found ]
[20:27:21] Checking for kernel symbol 'ixinit' [ Not found ]
[20:27:22] Checking for kernel symbol 'tricks' [ Not found ]
[20:27:22] Checking for kernel symbol 'kernel_unlink' [ Not found ]
[20:27:22] Checking for kernel symbol 'rootme' [ Not found ]
[20:27:22] Checking for kernel symbol 'hide_module' [ Not found ]
[20:27:22] Checking for kernel symbol 'find_sys_call_tbl' [ Not found ]
[20:27:22] IntoXonia-NG Rootkit [ Not found ]
[20:27:22]
[20:27:22] Checking for Irix Rootkit...
[20:27:22] Checking for directory '/dev/pts/01' [ Not found ]
[20:27:22] Checking for directory '/dev/pts/01/backup' [ Not found ]
[20:27:22] Checking for directory '/dev/pts/01/etc' [ Not found ]
[20:27:22] Checking for directory '/dev/pts/01/tmp' [ Not found ]
[20:27:22] Irix Rootkit [ Not found ]
[20:27:22]
[20:27:22] Checking for Jynx Rootkit...
[20:27:22] Checking for file '/xochikit/bc' [ Not found ]
[20:27:22] Checking for file '/xochikit/ld_poison.so' [ Not found ]
[20:27:22] Checking for file '/omgxochi/bc' [ Not found ]
[20:27:22] Checking for file '/omgxochi/ld_poison.so' [ Not found ]
[20:27:22] Checking for file '/var/local/^^/bc' [ Not found ]
[20:27:22] Checking for file '/var/local/^^/ld_poison.so' [ Not found ]
[20:27:22] Checking for directory '/xochikit' [ Not found ]
[20:27:22] Checking for directory '/omgxochi' [ Not found ]
[20:27:22] Checking for directory '/var/local/^^' [ Not found ]
[20:27:22] Jynx Rootkit [ Not found ]
[20:27:22]
[20:27:22] Checking for KBeast Rootkit...
[20:27:22] Checking for file '/usr/_h4x_/ipsecs-kbeast-v1.ko' [ Not found ]
[20:27:22] Checking for file '/usr/_h4x_/_h4x_bd' [ Not found ]
[20:27:22] Checking for file '/usr/_h4x_/acctlog' [ Not found ]
[20:27:22] Checking for directory '/usr/_h4x_' [ Not found ]
[20:27:22] Checking for kernel symbol 'h4x_delete_module' [ Not found ]
[20:27:22] Checking for kernel symbol 'h4x_getdents64' [ Not found ]
[20:27:23] Checking for kernel symbol 'h4x_kill' [ Not found ]
[20:27:23] Checking for kernel symbol 'h4x_open' [ Not found ]
[20:27:23] Checking for kernel symbol 'h4x_read' [ Not found ]
[20:27:23] Checking for kernel symbol 'h4x_rename' [ Not found ]
[20:27:23] Checking for kernel symbol 'h4x_rmdir' [ Not found ]
[20:27:23] Checking for kernel symbol 'h4x_tcp4_seq_show' [ Not found ]
[20:27:23] Checking for kernel symbol 'h4x_write' [ Not found ]
[20:27:23] KBeast Rootkit [ Not found ]
[20:27:23]
[20:27:23] Checking for Kitko Rootkit...
[20:27:23] Checking for directory '/usr/src/redhat/SRPMS/...' [ Not found ]
[20:27:23] Kitko Rootkit [ Not found ]
[20:27:23]
[20:27:23] Checking for Knark Rootkit...
[20:27:23] Checking for file '/proc/knark/pids' [ Not found ]
[20:27:23] Checking for directory '/proc/knark' [ Not found ]
[20:27:23] Knark Rootkit [ Not found ]
[20:27:23]
[20:27:23] Checking for ld-linuxv.so Rootkit...
[20:27:23] Checking for file '/lib/ld-linuxv.so.1' [ Not found ]
[20:27:23] Checking for directory '/var/opt/_so_cache' [ Not found ]
[20:27:23] Checking for directory '/var/opt/_so_cache/ld' [ Not found ]
[20:27:23] Checking for directory '/var/opt/_so_cache/lc' [ Not found ]
[20:27:23] ld-linuxv.so Rootkit [ Not found ]
[20:27:23]
[20:27:23] Checking for Li0n Worm...
[20:27:23] Checking for file '/bin/in.telnetd' [ Not found ]
[20:27:23] Checking for file '/bin/mjy' [ Not found ]
[20:27:23] Checking for file '/usr/man/man1/man1/lib/.lib/mjy' [ Not found ]
[20:27:23] Checking for file '/usr/man/man1/man1/lib/.lib/in.telnetd' [ Not found ]
[20:27:23] Checking for file '/usr/man/man1/man1/lib/.lib/.x' [ Not found ]
[20:27:23] Checking for file '/dev/.lib/lib/scan/1i0n.sh' [ Not found ]
[20:27:23] Checking for file '/dev/.lib/lib/scan/hack.sh' [ Not found ]
[20:27:23] Checking for file '/dev/.lib/lib/scan/bind' [ Not found ]
[20:27:23] Checking for file '/dev/.lib/lib/scan/randb' [ Not found ]
[20:27:23] Checking for file '/dev/.lib/lib/scan/scan.sh' [ Not found ]
[20:27:23] Checking for file '/dev/.lib/lib/scan/pscan' [ Not found ]
[20:27:24] Checking for file '/dev/.lib/lib/scan/star.sh' [ Not found ]
[20:27:24] Checking for file '/dev/.lib/lib/scan/bindx.sh' [ Not found ]
[20:27:24] Checking for file '/dev/.lib/lib/scan/bindname.log' [ Not found ]
[20:27:24] Checking for file '/dev/.lib/lib/1i0n.sh' [ Not found ]
[20:27:24] Checking for file '/dev/.lib/lib/lib/netstat' [ Not found ]
[20:27:24] Checking for file '/dev/.lib/lib/lib/dev/.1addr' [ Not found ]
[20:27:24] Checking for file '/dev/.lib/lib/lib/dev/.1logz' [ Not found ]
[20:27:24] Checking for file '/dev/.lib/lib/lib/dev/.1proc' [ Not found ]
[20:27:24] Checking for file '/dev/.lib/lib/lib/dev/.1file' [ Not found ]
[20:27:24] Li0n Worm [ Not found ]
[20:27:24]
[20:27:24] Checking for Lockit / LJK2 Rootkit...
[20:27:24] Checking for file '/usr/lib/libmen.oo/.LJK2/ssh_config' [ Not found ]
[20:27:24] Checking for file '/usr/lib/libmen.oo/.LJK2/ssh_host_key' [ Not found ]
[20:27:24] Checking for file '/usr/lib/libmen.oo/.LJK2/ssh_host_key.pub' [ Not found ]
[20:27:24] Checking for file '/usr/lib/libmen.oo/.LJK2/ssh_random_seed*' [ Not found ]
[20:27:24] Checking for file '/usr/lib/libmen.oo/.LJK2/sshd_config' [ Not found ]
[20:27:24] Checking for file '/usr/lib/libmen.oo/.LJK2/backdoor/RK1bd' [ Not found ]
[20:27:24] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/du' [ Not found ]
[20:27:24] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/ifconfig' [ Not found ]
[20:27:24] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/inetd.conf' [ Not found ]
[20:27:24] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/locate' [ Not found ]
[20:27:24] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/login' [ Not found ]
[20:27:24] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/ls' [ Not found ]
[20:27:24] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/netstat' [ Not found ]
[20:27:24] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/ps' [ Not found ]
[20:27:24] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/pstree' [ Not found ]
[20:27:24] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/rc.sysinit' [ Not found ]
[20:27:24] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/syslogd' [ Not found ]
[20:27:24] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/tcpd' [ Not found ]
[20:27:24] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/top' [ Not found ]
[20:27:24] Checking for file '/usr/lib/libmen.oo/.LJK2/clean/RK1sauber' [ Not found ]
[20:27:24] Checking for file '/usr/lib/libmen.oo/.LJK2/clean/RK1wted' [ Not found ]
[20:27:24] Checking for file '/usr/lib/libmen.oo/.LJK2/hack/RK1parse' [ Not found ]
[20:27:24] Checking for file '/usr/lib/libmen.oo/.LJK2/hack/RK1sniff' [ Not found ]
[20:27:24] Checking for file '/usr/lib/libmen.oo/.LJK2/hide/.RK1addr' [ Not found ]
[20:27:24] Checking for file '/usr/lib/libmen.oo/.LJK2/hide/.RK1dir' [ Not found ]
[20:27:24] Checking for file '/usr/lib/libmen.oo/.LJK2/hide/.RK1log' [ Not found ]
[20:27:24] Checking for file '/usr/lib/libmen.oo/.LJK2/hide/.RK1proc' [ Not found ]
[20:27:24] Checking for file '/usr/lib/libmen.oo/.LJK2/hide/RK1phidemod.c' [ Not found ]
[20:27:24] Checking for file '/usr/lib/libmen.oo/.LJK2/modules/README.modules' [ Not found ]
[20:27:24] Checking for file '/usr/lib/libmen.oo/.LJK2/modules/RK1hidem.c' [ Not found ]
[20:27:24] Checking for file '/usr/lib/libmen.oo/.LJK2/modules/RK1phide' [ Not found ]
[20:27:24] Checking for file '/usr/lib/libmen.oo/.LJK2/sshconfig/RK1ssh' [ Not found ]
[20:27:24] Checking for directory '/usr/lib/libmen.oo/.LJK2' [ Not found ]
[20:27:24] Lockit / LJK2 Rootkit [ Not found ]
[20:27:24]
[20:27:24] Checking for Mood-NT Rootkit...
[20:27:24] Checking for file '/sbin/init__mood-nt-_-_cthulhu' [ Not found ]
[20:27:24] Checking for file '/_cthulhu/mood-nt.init' [ Not found ]
[20:27:24] Checking for file '/_cthulhu/mood-nt.conf' [ Not found ]
[20:27:24] Checking for file '/_cthulhu/mood-nt.sniff' [ Not found ]
[20:27:24] Checking for directory '/_cthulhu' [ Not found ]
[20:27:24] Mood-NT Rootkit [ Not found ]
[20:27:24]
[20:27:24] Checking for MRK Rootkit...
[20:27:24] Checking for file '/dev/ida/.inet/pid' [ Not found ]
[20:27:24] Checking for file '/dev/ida/.inet/ssh_host_key' [ Not found ]
[20:27:24] Checking for file '/dev/ida/.inet/ssh_random_seed' [ Not found ]
[20:27:24] Checking for file '/dev/ida/.inet/tcp.log' [ Not found ]
[20:27:24] Checking for directory '/dev/ida/.inet' [ Not found ]
[20:27:25] Checking for directory '/var/spool/cron/.sh' [ Not found ]
[20:27:25] MRK Rootkit [ Not found ]
[20:27:25]
[20:27:25] Checking for Ni0 Rootkit...
[20:27:25] Checking for file '/var/lock/subsys/...datafile.../...net...' [ Not found ]
[20:27:25] Checking for file '/var/lock/subsys/...datafile.../...port...' [ Not found ]
[20:27:25] Checking for file '/var/lock/subsys/...datafile.../...ps...' [ Not found ]
[20:27:25] Checking for file '/var/lock/subsys/...datafile.../...file...' [ Not found ]
[20:27:25] Checking for directory '/tmp/waza' [ Not found ]
[20:27:25] Checking for directory '/var/lock/subsys/...datafile...' [ Not found ]
[20:27:25] Checking for directory '/usr/sbin/es' [ Not found ]
[20:27:25] Ni0 Rootkit [ Not found ]
[20:27:25]
[20:27:25] Checking for Ohhara Rootkit...
[20:27:25] Checking for file '/var/lock/subsys/...datafile.../...datafile.../in.smbd.log' [ Not found ]
[20:27:25] Checking for directory '/var/lock/subsys/...datafile...' [ Not found ]
[20:27:25] Checking for directory '/var/lock/subsys/...datafile.../...datafile...' [ Not found ]
[20:27:25] Checking for directory '/var/lock/subsys/...datafile.../...datafile.../bin' [ Not found ]
[20:27:25] Checking for directory '/var/lock/subsys/...datafile.../...datafile.../usr/bin' [ Not found ]
[20:27:25] Checking for directory '/var/lock/subsys/...datafile.../...datafile.../usr/sbin' [ Not found ]
[20:27:25] Checking for directory '/var/lock/subsys/...datafile.../...datafile.../lib/security' [ Not found ]
[20:27:25] Ohhara Rootkit [ Not found ]
[20:27:25]
[20:27:25] Checking for Optic Kit (Tux) Worm...
[20:27:25] Checking for directory '/dev/tux' [ Not found ]
[20:27:25] Checking for directory '/usr/bin/xchk' [ Not found ]
[20:27:25] Checking for directory '/usr/bin/xsf' [ Not found ]
[20:27:25] Checking for directory '/usr/bin/ssh2d' [ Not found ]
[20:27:25] Optic Kit (Tux) Worm [ Not found ]
[20:27:25]
[20:27:25] Checking for Oz Rootkit...
[20:27:25] Checking for file '/dev/.oz/.nap/rkit/terror' [ Not found ]
[20:27:25] Checking for directory '/dev/.oz' [ Not found ]
[20:27:25] Oz Rootkit [ Not found ]
[20:27:25]
[20:27:25] Checking for Phalanx Rootkit...
[20:27:25] Checking for file '/uNFuNF' [ Not found ]
[20:27:25] Checking for file '/etc/host.ph1' [ Not found ]
[20:27:25] Checking for file '/bin/host.ph1' [ Not found ]
[20:27:25] Checking for file '/usr/share/.home.ph1/phalanx' [ Not found ]
[20:27:25] Checking for file '/usr/share/.home.ph1/cb' [ Not found ]
[20:27:25] Checking for file '/usr/share/.home.ph1/kebab' [ Not found ]
[20:27:25] Checking for directory '/usr/share/.home.ph1' [ Not found ]
[20:27:25] Checking for directory '/usr/share/.home.ph1/tty' [ Not found ]
[20:27:25] Phalanx Rootkit [ Not found ]
[20:27:25]
[20:27:25] Checking for Phalanx2 Rootkit...
[20:27:25] Checking for file '/etc/khubd.p2/.p2rc' [ Not found ]
[20:27:25] Checking for file '/etc/khubd.p2/.phalanx2' [ Not found ]
[20:27:25] Checking for file '/etc/khubd.p2/.sniff' [ Not found ]
[20:27:25] Checking for file '/etc/khubd.p2/sshgrab.py' [ Not found ]
[20:27:25] Checking for file '/etc/lolzz.p2/.p2rc' [ Not found ]
[20:27:25] Checking for file '/etc/lolzz.p2/.phalanx2' [ Not found ]
[20:27:25] Checking for file '/etc/lolzz.p2/.sniff' [ Not found ]
[20:27:25] Checking for file '/etc/lolzz.p2/sshgrab.py' [ Not found ]
[20:27:25] Checking for file '/etc/cron.d/zupzzplaceholder' [ Not found ]
[20:27:25] Checking for file '/usr/lib/zupzz.p2/.p-2.3d' [ Not found ]
[20:27:25] Checking for file '/usr/lib/zupzz.p2/.p2rc' [ Not found ]
[20:27:25] Checking for directory '/etc/khubd.p2' [ Not found ]
[20:27:25] Checking for directory '/etc/lolzz.p2' [ Not found ]
[20:27:25] Checking for directory '/usr/lib/zupzz.p2' [ Not found ]
[20:27:25] Phalanx2 Rootkit [ Not found ]
[20:27:25]
[20:27:25] Checking for Phalanx2 Rootkit (extended tests)...
[20:27:26] Checking for directory '/etc/khubd.p2' [ Not found ]
[20:27:26] Checking for directory '/etc/lolzz.p2' [ Not found ]
[20:27:26] Checking for directory '/usr/lib/zupzz.p2' [ Not found ]
[20:27:26] Phalanx2 Rootkit (extended tests) [ Not found ]
[20:27:26]
[20:27:26] Checking for Portacelo Rootkit...
[20:27:26] Checking for file '/var/lib/.../.ak' [ Not found ]
[20:27:26] Checking for file '/var/lib/.../.hk' [ Not found ]
[20:27:26] Checking for file '/var/lib/.../.rs' [ Not found ]
[20:27:26] Checking for file '/var/lib/.../.p' [ Not found ]
[20:27:26] Checking for file '/var/lib/.../getty' [ Not found ]
[20:27:26] Checking for file '/var/lib/.../lkt.o' [ Not found ]
[20:27:26] Checking for file '/var/lib/.../show' [ Not found ]
[20:27:26] Checking for file '/var/lib/.../nlkt.o' [ Not found ]
[20:27:26] Checking for file '/var/lib/.../ssshrc' [ Not found ]
[20:27:26] Checking for file '/var/lib/.../sssh_equiv' [ Not found ]
[20:27:26] Checking for file '/var/lib/.../sssh_known_hosts' [ Not found ]
[20:27:26] Checking for file '/var/lib/.../sssh_pid' [ Not found ]
[20:27:26] Checking for file '~/.sssh/known_hosts' [ Not found ]
[20:27:26] Portacelo Rootkit [ Not found ]
[20:27:26]
[20:27:26] Checking for R3dstorm Toolkit...
[20:27:26] Checking for file '/var/log/tk02/see_all' [ Not found ]
[20:27:26] Checking for file '/var/log/tk02/.scris' [ Not found ]
[20:27:26] Checking for file '/bin/.../sshd/sbin/sshd1' [ Not found ]
[20:27:26] Checking for file '/bin/.../hate/sk' [ Not found ]
[20:27:26] Checking for file '/bin/.../see_all' [ Not found ]
[20:27:26] Checking for directory '/var/log/tk02' [ Not found ]
[20:27:26] Checking for directory '/var/log/tk02/old' [ Not found ]
[20:27:26] Checking for directory '/bin/...' [ Not found ]
[20:27:26] R3dstorm Toolkit [ Not found ]
[20:27:26]
[20:27:26] Checking for RH-Sharpe's Rootkit...
[20:27:26] Checking for file '/bin/lps' [ Not found ]
[20:27:26] Checking for file '/usr/bin/lpstree' [ Not found ]
[20:27:26] Checking for file '/usr/bin/ltop' [ Not found ]
[20:27:26] Checking for file '/usr/bin/lkillall' [ Not found ]
[20:27:26] Checking for file '/usr/bin/ldu' [ Not found ]
[20:27:26] Checking for file '/usr/bin/lnetstat' [ Not found ]
[20:27:26] Checking for file '/usr/bin/wp' [ Not found ]
[20:27:26] Checking for file '/usr/bin/shad' [ Not found ]
[20:27:26] Checking for file '/usr/bin/vadim' [ Not found ]
[20:27:26] Checking for file '/usr/bin/slice' [ Not found ]
[20:27:26] Checking for file '/usr/bin/cleaner' [ Not found ]
[20:27:26] Checking for file '/usr/include/rpcsvc/du' [ Not found ]
[20:27:26] RH-Sharpe's Rootkit [ Not found ]
[20:27:26]
[20:27:26] Checking for RSHA's Rootkit...
[20:27:26] Checking for file '/bin/kr4p' [ Not found ]
[20:27:26] Checking for file '/usr/bin/n3tstat' [ Not found ]
[20:27:26] Checking for file '/usr/bin/chsh2' [ Not found ]
[20:27:26] Checking for file '/usr/bin/slice2' [ Not found ]
[20:27:26] Checking for file '/usr/src/linux/arch/alpha/lib/.lib/.1proc' [ Not found ]
[20:27:26] Checking for file '/etc/rc.d/arch/alpha/lib/.lib/.1addr' [ Not found ]
[20:27:26] Checking for directory '/etc/rc.d/rsha' [ Not found ]
[20:27:26] Checking for directory '/etc/rc.d/arch/alpha/lib/.lib' [ Not found ]
[20:27:26] RSHA's Rootkit [ Not found ]
[20:27:26]
[20:27:26] Checking for Scalper Worm...
[20:27:26] Checking for file '/tmp/.a' [ Not found ]
[20:27:26] Checking for file '/tmp/.uua' [ Not found ]
[20:27:26] Scalper Worm [ Not found ]
[20:27:27]
[20:27:27] Checking for Sebek L


  


2. Re: Malware no Deepin | RKHunter

Perfil removido
removido

(usa Nenhuma)

Enviado em 01/06/2017 - 20:43h

Porr@, coloca isso no pastebin, cidadão.


3. Pronto tá aí

killua
killuaz

(usa Debian)

Enviado em 01/06/2017 - 21:43h

https://pastebin.com/WzghVD7S


4. Re: Malware no Deepin | RKHunter

Ricardo Groetaers
ricardogroetaers

(usa Linux Mint)

Enviado em 01/06/2017 - 21:47h

E em que parte dessa coisa toda ai em cima está o malware?


5. Re: Malware no Deepin | RKHunter

Perfil removido
removido

(usa Nenhuma)

Enviado em 01/06/2017 - 21:49h

956 linhas? KCT!

Você deveria usar GREP para filtrar só as linhas em que tem dúvida.

----------------------------------------------------------------------------------------------------------------
Nem direita, nem esquerda. Quando se trata de corrupção o Brasil é ambidestro.
(anônimo)

Encryption works. Properly implemented strong crypto systems are one of the few things that you can rely on. Unfortunately, endpoint security is so terrifically weak that NSA can frequently find ways around it. — Edward Snowden



6. Re: Malware no Deepin | RKHunter

killua
killuaz

(usa Debian)

Enviado em 01/06/2017 - 21:53h

olha aí

/usr/bin/lwp-request [ Warning ]
Warning: The command '/usr/bin/lwp-request' has been replaced by a script: /usr/bin/lwp-request: Perl script text executable
Checking /dev for suspicious file types [ Warning ]
Warning: Suspicious file types found in /dev:


7. Re: Malware no Deepin | RKHunter

Perfil removido
removido

(usa Nenhuma)

Enviado em 01/06/2017 - 22:14h

LEIA MAN RKHunter não usa o RKHunter pelo Deepin e sim usando um Ubuntu ou Mint no cd ou pendrive.

Resumo:

warning: aviso; advertência.

Mostrar apenas os "warnings"

sudo rkhunter --propupd && sudo rkhunter --update && sudo rkhunter --check --skip-keypress --report-warnings-only

https://help.ubuntu.com/community/RKhunter


8. Re: Malware no Deepin | RKHunter

killua
killuaz

(usa Debian)

Enviado em 01/06/2017 - 22:54h

Pô, não sabia que era por live CD, vou tentar


9. Re: Malware no Deepin | RKHunter

Ricardo Groetaers
ricardogroetaers

(usa Linux Mint)

Enviado em 01/06/2017 - 23:21h

listeiro_037 escreveu:
956 linhas? KCT! ...

https://images.duckduckgo.com/iu/?u=http%3A%2F%2Ffederacaoespiritape.org%2Fwp-content%2Fuploads%2F20...







Patrocínio

Site hospedado pelo provedor RedeHost.
Linux banner

Destaques

Artigos

Dicas

Tópicos

Top 10 do mês

Scripts