pael
(usa openSUSE)
Enviado em 06/07/2010 - 22:05h
Li um artigo sobre o rootkit hunter e resolvi fazer um teste aqui no meu archlinux e parece que ele detectou um rootkit...e agora não sei o que fazer x.o
[20:53:29] Running Rootkit Hunter version 1.3.6 on freedom
[20:53:29]
[20:53:29] Info: Start date is Ter Jul 6 20:53:29 AMT 2010
[20:53:29]
[20:53:29] Checking configuration file and command-line options...
[20:53:29] Info: Detected operating system is 'Linux'
[20:53:29] Info: Found O/S name: [H[2J
[20:53:29] Info: Command line is /usr/bin/rkhunter -c
[20:53:29] Info: Environment shell is /bin/bash; rkhunter is using bash
[20:53:29] Info: Using configuration file '/etc/rkhunter.conf'
[20:53:29] Info: Installation directory is '/usr'
[20:53:29] Info: Using language 'en'
[20:53:29] Info: Using '/var/lib/rkhunter/db' as the database directory
[20:53:29] Info: Using '/usr/lib/rkhunter/scripts' as the support script directory
[20:53:29] Info: Using '/bin /usr/bin /sbin /usr/sbin /usr/lib/perl5/core_perl/bin /bin /usr/bin /sbin /usr/sbin /usr/local/bin /usr/local/sbin /usr/libexec /usr/local/libexec' as the command directories
[20:53:29] Info: Using '/' as the root directory by default
[20:53:29] Info: Using '/var/lib/rkhunter/tmp' as the temporary directory
[20:53:29] Info: No mail-on-warning address configured
[20:53:29] Info: X will be automatically detected
[20:53:29] Info: Using second color set
[20:53:29] Info: Found the 'basename' command: /usr/bin/basename
[20:53:30] Info: Found the 'diff' command: /usr/bin/diff
[20:53:30] Info: Found the 'dirname' command: /usr/bin/dirname
[20:53:30] Info: Found the 'file' command: /usr/bin/file
[20:53:30] Info: Found the 'find' command: /usr/bin/find
[20:53:30] Info: Found the 'ifconfig' command: /sbin/ifconfig
[20:53:30] Info: Found the 'ip' command: /usr/sbin/ip
[20:53:30] Info: Found the 'ldd' command: /usr/bin/ldd
[20:53:30] Info: Found the 'lsattr' command: /usr/bin/lsattr
[20:53:30] Info: Found the 'lsmod' command: /bin/lsmod
[20:53:30] Info: Found the 'lsof' command: /usr/sbin/lsof
[20:53:31] Info: Found the 'mktemp' command: /usr/bin/mktemp
[20:53:31] Info: Found the 'netstat' command: /bin/netstat
[20:53:31] Info: Found the 'perl' command: /usr/bin/perl
[20:53:31] Info: Found the 'pgrep' command: /usr/bin/pgrep
[20:53:31] Info: Found the 'ps' command: /bin/ps
[20:53:31] Info: Found the 'pwd' command: /bin/pwd
[20:53:31] Info: Found the 'readlink' command: /bin/readlink
[20:53:31] Info: Found the 'sort' command: /usr/bin/sort
[20:53:31] Info: Found the 'stat' command: /usr/bin/stat
[20:53:31] Info: Found the 'strings' command: /usr/bin/strings
[20:53:31] Info: Found the 'uniq' command: /usr/bin/uniq
[20:53:31] Info: System is not using prelinking
[20:53:31] Info: Using the '/usr/bin/sha1sum' command for the file hash checks
[20:53:31] Info: Stored hash values used hash function '/usr/bin/sha1sum'
[20:53:31] Info: Stored hash values did not use a package manager
[20:53:31] Info: The hash function field index is set to 1
[20:53:31] Info: No package manager specified: using hash function '/usr/bin/sha1sum'
[20:53:31] Info: Previous file attributes were stored
[20:53:32] Info: Enabled tests are: all
[20:53:32] Info: Disabled tests are: suspscan hidden_procs deleted_files packet_cap_apps
[20:53:32] Info: Including user files for file properties check:
[20:53:32] /etc/rkhunter.conf
[20:53:32] Info: Found ksym file '/proc/kallsyms'
[20:53:32] Info: Using 'date' to process epoch second times.
[20:53:32]
[20:53:32] Checking if the O/S has changed since last time...
[20:53:32] Info: Nothing seems to have changed
[20:53:32] Info: Locking is not being used
[20:53:32]
[20:53:32] Starting system checks...
[20:53:32]
[20:53:32] Checking system commands...
[20:53:32] Info: Starting test name 'system_commands'
[20:53:32]
[20:53:32] Performing 'strings' command checks
[20:53:32] Info: Starting test name 'strings'
[20:53:33] Scanning for string /usr/sbin/ntpsx [ OK ]
[20:53:33] Scanning for string /usr/sbin/.../bkit-ava [ OK ]
[20:53:33] Scanning for string /usr/sbin/.../bkit-d [ OK ]
[20:53:33] Scanning for string /usr/sbin/.../bkit-shd [ OK ]
[20:53:33] Scanning for string /usr/sbin/.../bkit-f [ OK ]
[20:53:33] Scanning for string /usr/include/.../proc.h [ OK ]
[20:53:33] Scanning for string /usr/include/.../.bash_history [ OK ]
[20:53:33] Scanning for string /usr/include/.../bkit-get [ OK ]
[20:53:33] Scanning for string /usr/include/.../bkit-dl [ OK ]
[20:53:33] Scanning for string /usr/include/.../bkit-screen [ OK ]
[20:53:33] Scanning for string /usr/include/.../bkit-sleep [ OK ]
[20:53:34] Scanning for string /usr/lib/.../bkit-adore.o [ OK ]
[20:53:34] Scanning for string /usr/lib/.../ls [ OK ]
[20:53:34] Scanning for string /usr/lib/.../netstat [ OK ]
[20:53:34] Scanning for string /usr/lib/.../lsof [ OK ]
[20:53:34] Scanning for string /usr/lib/.../bkit-ssh/bkit-shdcfg [ OK ]
[20:53:34] Scanning for string /usr/lib/.../bkit-ssh/bkit-shhk [ OK ]
[20:53:34] Scanning for string /usr/lib/.../bkit-ssh/bkit-pw [ OK ]
[20:53:34] Scanning for string /usr/lib/.../bkit-ssh/bkit-shrs [ OK ]
[20:53:35] Scanning for string /usr/lib/.../bkit-ssh/bkit-mots [ OK ]
[20:53:35] Scanning for string /usr/lib/.../uconf.inv [ OK ]
[20:53:35] Scanning for string /usr/lib/.../psr [ OK ]
[20:53:35] Scanning for string /usr/lib/.../find [ OK ]
[20:53:35] Scanning for string /usr/lib/.../pstree [ OK ]
[20:53:35] Scanning for string /usr/lib/.../slocate [ OK ]
[20:53:35] Scanning for string /usr/lib/.../du [ OK ]
[20:53:36] Scanning for string /usr/lib/.../top [ OK ]
[20:53:36] Scanning for string /usr/sbin/... [ OK ]
[20:53:36] Scanning for string /usr/include/... [ OK ]
[20:53:36] Scanning for string /usr/include/.../.tmp [ OK ]
[20:53:36] Scanning for string /usr/lib/... [ OK ]
[20:53:36] Scanning for string /usr/lib/.../.ssh [ OK ]
[20:53:37] Scanning for string /usr/lib/.../bkit-ssh [ OK ]
[20:53:37] Scanning for string /usr/lib/.bkit- [ OK ]
[20:53:37] Scanning for string /tmp/.bkp [ OK ]
[20:53:37] Scanning for string /tmp/.cinik [ OK ]
[20:53:37] Scanning for string /tmp/.font-unix/.cinik [ OK ]
[20:53:37] Scanning for string /lib/.sso [ OK ]
[20:53:37] Scanning for string /lib/.so [ OK ]
[20:53:37] Scanning for string /var/run/...dica/clean [ OK ]
[20:53:37] Scanning for string /var/run/...dica/dxr [ OK ]
[20:53:38] Scanning for string /var/run/...dica/read [ OK ]
[20:53:38] Scanning for string /var/run/...dica/write [ OK ]
[20:53:38] Scanning for string /var/run/...dica/lf [ OK ]
[20:53:38] Scanning for string /var/run/...dica/xl [ OK ]
[20:53:38] Scanning for string /var/run/...dica/xdr [ OK ]
[20:53:38] Scanning for string /var/run/...dica/psg [ OK ]
[20:53:38] Scanning for string /var/run/...dica/secure [ OK ]
[20:53:38] Scanning for string /var/run/...dica/rdx [ OK ]
[20:53:38] Scanning for string /var/run/...dica/va [ OK ]
[20:53:38] Scanning for string /var/run/...dica/cl.sh [ OK ]
[20:53:39] Scanning for string /var/run/...dica/last.log [ OK ]
[20:53:39] Scanning for string /usr/bin/.etc [ OK ]
[20:53:39] Scanning for string /etc/sshd_config [ OK ]
[20:53:39] Scanning for string /etc/ssh_host_key [ OK ]
[20:53:39] Scanning for string /etc/ssh_random_seed [ OK ]
[20:53:39] Scanning for string /dev/ptyp [ OK ]
[20:53:39] Scanning for string /dev/ptyq [ OK ]
[20:53:39] Scanning for string /dev/ptyr [ OK ]
[20:53:39] Scanning for string /dev/ptys [ OK ]
[20:53:39] Scanning for string /dev/ptyt [ OK ]
[20:53:40] Scanning for string /dev/fd/.88/freshb-bsd [ OK ]
[20:53:40] Scanning for string /dev/fd/.88/fresht [ OK ]
[20:53:40] Scanning for string /dev/fd/.88/zxsniff [ OK ]
[20:53:40] Scanning for string /dev/fd/.88/zxsniff.log [ OK ]
[20:53:40] Scanning for string /dev/fd/.99/.ttyf00 [ OK ]
[20:53:40] Scanning for string /dev/fd/.99/.ttyp00 [ OK ]
[20:53:40] Scanning for string /dev/fd/.99/.ttyq00 [ OK ]
[20:53:40] Scanning for string /dev/fd/.99/.ttys00 [ OK ]
[20:53:40] Scanning for string /dev/fd/.99/.pwsx00 [ OK ]
[20:53:40] Scanning for string /etc/.acid [ OK ]
[20:53:41] Scanning for string /usr/lib/.fx/sched_host.2 [ OK ]
[20:53:41] Scanning for string /usr/lib/.fx/random_d.2 [ OK ]
[20:53:41] Scanning for string /usr/lib/.fx/set_pid.2 [ OK ]
[20:53:41] Scanning for string /usr/lib/.fx/setrgrp.2 [ OK ]
[20:53:41] Scanning for string /usr/lib/.fx/TOHIDE [ OK ]
[20:53:41] Scanning for string /usr/lib/.fx/cons.saver [ OK ]
[20:53:41] Scanning for string /usr/lib/.fx/adore/ava/ava [ OK ]
[20:53:41] Scanning for string /usr/lib/.fx/adore/adore/adore.ko [ OK ]
[20:53:41] Scanning for string /bin/sysback [ OK ]
[20:53:42] Scanning for string /usr/local/bin/sysback [ OK ]
[20:53:42] Scanning for string /usr/lib/.tbd [ OK ]
[20:53:42] Scanning for string /dev/.lib/lib/lib/t0rns [ OK ]
[20:53:42] Scanning for string /dev/.lib/lib/lib/du [ OK ]
[20:53:42] Scanning for string /dev/.lib/lib/lib/ls [ OK ]
[20:53:42] Scanning for string /dev/.lib/lib/lib/t0rnsb [ OK ]
[20:53:42] Scanning for string /dev/.lib/lib/lib/ps [ OK ]
[20:53:42] Scanning for string /dev/.lib/lib/lib/t0rnp [ OK ]
[20:53:42] Scanning for string /dev/.lib/lib/lib/find [ OK ]
[20:53:42] Scanning for string /dev/.lib/lib/lib/ifconfig [ OK ]
[20:53:42] Scanning for string /dev/.lib/lib/lib/pg [ OK ]
[20:53:43] Scanning for string /dev/.lib/lib/lib/ssh.tgz [ OK ]
[20:53:43] Scanning for string /dev/.lib/lib/lib/top [ OK ]
[20:53:43] Scanning for string /dev/.lib/lib/lib/sz [ OK ]
[20:53:43] Scanning for string /dev/.lib/lib/lib/login [ OK ]
[20:53:43] Scanning for string /dev/.lib/lib/lib/in.fingerd [ OK ]
[20:53:43] Scanning for string /dev/.lib/lib/lib/1i0n.sh [ OK ]
[20:53:43] Scanning for string /dev/.lib/lib/lib/pstree [ OK ]
[20:53:43] Scanning for string /dev/.lib/lib/lib/in.telnetd [ OK ]
[20:53:43] Scanning for string /dev/.lib/lib/lib/mjy [ OK ]
[20:53:43] Scanning for string /dev/.lib/lib/lib/sush [ OK ]
[20:53:43] Scanning for string /dev/.lib/lib/lib/tfn [ OK ]
[20:53:44] Scanning for string /dev/.lib/lib/lib/name [ OK ]
[20:53:44] Scanning for string /dev/.lib/lib/lib/getip.sh [ OK ]
[20:53:44] Scanning for string /usr/info/.torn/sh* [ OK ]
[20:53:44] Scanning for string /usr/src/.
[*****]/.1addr [ OK ]
[20:53:44] Scanning for string /usr/src/.
[*****]/.1file [ OK ]
[20:53:44] Scanning for string /usr/src/.
[*****]/.1proc [ OK ]
[20:53:44] Scanning for string /usr/src/.
[*****]/.1logz [ OK ]
[20:53:44] Scanning for string /usr/info/.t0rn [ OK ]
[20:53:44] Scanning for string /dev/.lib [ OK ]
[20:53:44] Scanning for string /dev/.lib/lib [ OK ]
[20:53:45] Scanning for string /dev/.lib/lib/lib [ OK ]
[20:53:45] Scanning for string /dev/.lib/lib/lib/dev [ OK ]
[20:53:45] Scanning for string /dev/.lib/lib/scan [ OK ]
[20:53:45] Scanning for string /usr/src/.
[*****] [ OK ]
[20:53:45] Scanning for string /usr/man/man1/man1 [ OK ]
[20:53:45] Scanning for string /usr/man/man1/man1/lib [ OK ]
[20:53:45] Scanning for string /usr/man/man1/man1/lib/.lib [ OK ]
[20:53:45] Scanning for string /usr/man/man1/man1/lib/.lib/.backup [ OK ]
[20:53:45]
[20:53:45] Performing 'shared libraries' checks
[20:53:46] Info: Starting test name 'shared_libs'
[20:53:46] Checking for preloading variables [ None found ]
[20:53:46] Checking for preloaded libraries [ None found ]
[20:53:46] Info: Starting test name 'shared_libs_path'
[20:53:46] Checking LD_LIBRARY_PATH variable [ Not found ]
[20:53:46]
[20:53:46] Performing file properties checks
[20:53:46] Info: Starting test name 'properties'
[20:53:46] Checking for prerequisites [ OK ]
[20:53:47] /bin/awk [ OK ]
[20:53:47] /bin/bash [ OK ]
[20:53:47] /bin/cat [ OK ]
[20:53:48] /bin/chmod [ OK ]
[20:53:48] /bin/chown [ OK ]
[20:53:48] /bin/cp [ OK ]
[20:53:49] /bin/cut [ OK ]
[20:53:49] /bin/date [ OK ]
[20:53:49] /bin/df [ OK ]
[20:53:50] /bin/dmesg [ OK ]
[20:53:50] /bin/du [ OK ]
[20:53:50] /bin/echo [ OK ]
[20:53:50] /bin/ed [ OK ]
[20:53:50] /bin/egrep [ OK ]
[20:53:51] /bin/fgrep [ OK ]
[20:53:51] /bin/grep [ OK ]
[20:53:51] /bin/groups [ OK ]
[20:53:52] /bin/kill [ OK ]
[20:53:52] /bin/less [ OK ]
[20:53:53] /bin/login [ OK ]
[20:53:53] /bin/ls [ OK ]
[20:53:53] /bin/lsmod [ OK ]
[20:53:54] /bin/more [ OK ]
[20:53:54] /bin/mount [ OK ]
[20:53:54] /bin/mv [ OK ]
[20:53:55] /bin/netstat [ OK ]
[20:53:55] /bin/ps [ OK ]
[20:53:55] /bin/pwd [ OK ]
[20:53:55] /bin/readlink [ OK ]
[20:53:56] /bin/sed [ OK ]
[20:53:56] /bin/sh [ OK ]
[20:53:57] /bin/su [ OK ]
[20:53:57] /bin/touch [ OK ]
[20:53:58] /bin/tr [ OK ]
[20:53:58] /bin/uname [ OK ]
[20:53:59] /bin/gawk [ OK ]
[20:53:59] /usr/bin/basename [ OK ]
[20:53:59] /usr/bin/chattr [ OK ]
[20:54:00] /usr/bin/curl [ OK ]
[20:54:00] /usr/bin/diff [ OK ]
[20:54:00] /usr/bin/dirname [ OK ]
[20:54:01] /usr/bin/env [ OK ]
[20:54:01] /usr/bin/file [ OK ]
[20:54:01] /usr/bin/find [ OK ]
[20:54:01] /usr/bin/fuser [ OK ]
[20:54:02] /usr/bin/head [ OK ]
[20:54:02] /usr/bin/id [ OK ]
[20:54:02] /usr/bin/killall [ OK ]
[20:54:03] /usr/bin/last [ OK ]
[20:54:03] /usr/bin/lastlog [ OK ]
[20:54:03] /usr/bin/ldd [ Warning ]
[20:54:03] Warning: The command '/usr/bin/ldd' has been replaced by a script: /usr/bin/ldd: Bourne-Again shell script text executable
[20:54:03] /usr/bin/logger [ OK ]
[20:54:04] /usr/bin/lsattr [ OK ]
[20:54:04] /usr/bin/lynx [ OK ]
[20:54:04] /usr/bin/mail [ OK ]
[20:54:04] /usr/bin/md5sum [ OK ]
[20:54:05] /usr/bin/mktemp [ OK ]
[20:54:05] /usr/bin/newgrp [ OK ]
[20:54:05] /usr/bin/passwd [ OK ]
[20:54:06] /usr/bin/perl [ OK ]
[20:54:06] /usr/bin/pgrep [ OK ]
[20:54:06] /usr/bin/pstree [ OK ]
[20:54:07] /usr/bin/rkhunter [ OK ]
[20:54:07] /usr/bin/runcon [ OK ]
[20:54:07] /usr/bin/sha1sum [ OK ]
[20:54:08] /usr/bin/sha224sum [ OK ]
[20:54:08] /usr/bin/sha256sum [ OK ]
[20:54:08] /usr/bin/sha384sum [ OK ]
[20:54:09] /usr/bin/sha512sum [ OK ]
[20:54:09] /usr/bin/size [ OK ]
[20:54:09] /usr/bin/sort [ OK ]
[20:54:09] /usr/bin/stat [ OK ]
[20:54:10] /usr/bin/strings [ OK ]
[20:54:10] /usr/bin/sudo [ OK ]
[20:54:11] /usr/bin/tail [ OK ]
[20:54:11] /usr/bin/test [ OK ]
[20:54:11] /usr/bin/top [ OK ]
[20:54:12] /usr/bin/uniq [ OK ]
[20:54:12] /usr/bin/users [ OK ]
[20:54:12] /usr/bin/vmstat [ OK ]
[20:54:13] /usr/bin/w [ OK ]
[20:54:13] /usr/bin/watch [ OK ]
[20:54:13] /usr/bin/wc [ OK ]
[20:54:14] /usr/bin/wget [ OK ]
[20:54:14] /usr/bin/whatis [ OK ]
[20:54:14] /usr/bin/whereis [ OK ]
[20:54:15] /usr/bin/which [ OK ]
[20:54:15] /usr/bin/who [ OK ]
[20:54:15] /usr/bin/whoami [ OK ]
[20:54:16] /sbin/depmod [ OK ]
[20:54:18] /sbin/ifconfig [ OK ]
[20:54:18] /sbin/init [ OK ]
[20:54:18] /sbin/insmod [ OK ]
[20:54:19] /sbin/modinfo [ OK ]
[20:54:20] /sbin/modprobe [ OK ]
[20:54:20] /sbin/nologin [ OK ]
[20:54:21] /sbin/rmmod [ OK ]
[20:54:22] /sbin/runlevel [ OK ]
[20:54:23] /sbin/sulogin [ OK ]
[20:54:23] /sbin/sysctl [ OK ]
[20:54:24] /usr/sbin/adduser [ Warning ]
[20:54:24] Warning: The command '/usr/sbin/adduser' has been replaced by a script: /usr/sbin/adduser: Bourne-Again shell script text executable
[20:54:25] /usr/sbin/chroot [ OK ]
[20:54:26] /usr/sbin/groupadd [ OK ]
[20:54:27] /usr/sbin/groupdel [ OK ]
[20:54:27] /usr/sbin/groupmod [ OK ]
[20:54:27] /usr/sbin/grpck [ OK ]
[20:54:28] /usr/sbin/ip [ OK ]
[20:54:29] /usr/sbin/lsof [ OK ]
[20:54:31] /usr/sbin/pwck [ OK ]
[20:54:32] /usr/sbin/tcpd [ OK ]
[20:54:33] /usr/sbin/useradd [ OK ]
[20:54:33] /usr/sbin/userdel [ OK ]
[20:54:33] /usr/sbin/usermod [ OK ]
[20:54:34] /usr/sbin/vipw [ OK ]
[20:54:58] /etc/rkhunter.conf [ OK ]
[20:55:01]
[20:55:01] Checking for rootkits...
[20:55:02] Info: Starting test name 'rootkits'
[20:55:02]
[20:55:02] Performing check of known rootkit files and directories
[20:55:02] Info: Starting test name 'known_rkts'
[20:55:02]
[20:55:02] Checking for 55808 Trojan - Variant A...
[20:55:02] Checking for file '/tmp/.../r' [ Not found ]
[20:55:03] Checking for file '/tmp/.../a' [ Not found ]
[20:55:03] 55808 Trojan - Variant A [ Not found ]
[20:55:03]
[20:55:03] Checking for ADM Worm...
[20:55:03] Checking for string 'w0rm' [ Not found ]
[20:55:03] ADM Worm [ Not found ]
[20:55:04]
[20:55:04] Checking for AjaKit Rootkit...
[20:55:04] Checking for file '/dev/tux/.addr' [ Not found ]
[20:55:04] Checking for file '/dev/tux/.proc' [ Not found ]
[20:55:04] Checking for file '/dev/tux/.file' [ Not found ]
[20:55:04] Checking for file '/lib/.libgh-gh/cleaner' [ Not found ]
[20:55:05] Checking for file '/lib/.libgh-gh/Patch/patch' [ Not found ]
[20:55:05] Checking for file '/lib/.libgh-gh/sb0k' [ Not found ]
[20:55:05] Checking for directory '/dev/tux' [ Not found ]
[20:55:05] Checking for directory '/lib/.libgh-gh' [ Not found ]
[20:55:05] AjaKit Rootkit [ Not found ]
[20:55:06]
[20:55:06] Checking for Adore Rootkit...
[20:55:06] Checking for file '/usr/secure' [ Not found ]
[20:55:06] Checking for file '/usr/doc/sys/qrt' [ Not found ]
[20:55:06] Checking for file '/usr/doc/sys/run' [ Not found ]
[20:55:06] Checking for file '/usr/doc/sys/crond' [ Not found ]
[20:55:07] Checking for file '/usr/sbin/kfd' [ Found ]
[20:55:07] Checking for file '/usr/doc/kern/var' [ Not found ]
[20:55:08] Checking for file '/usr/doc/kern/string.o' [ Not found ]
[20:55:08] Checking for file '/usr/doc/kern/ava' [ Not found ]
[20:55:08] Checking for file '/usr/doc/kern/adore.o' [ Not found ]
[20:55:08] Checking for file '/var/log/ssh/old' [ Not found ]
[20:55:08] Checking for directory '/lib/security/.config/ssh' [ Not found ]
[20:55:09] Checking for directory '/usr/doc/kern' [ Not found ]
[20:55:09] Checking for directory '/usr/doc/backup' [ Not found ]
[20:55:09] Checking for directory '/usr/doc/backup/txt' [ Not found ]
[20:55:10] Checking for directory '/lib/backup' [ Not found ]
[20:55:10] Checking for directory '/lib/backup/txt' [ Not found ]
[20:55:10] Checking for directory '/usr/doc/work' [ Not found ]
[20:55:10] Checking for directory '/usr/doc/sys' [ Not found ]
[20:55:11] Checking for directory '/var/log/ssh' [ Not found ]
[20:55:11] Checking for directory '/usr/doc/.spool' [ Not found ]
[20:55:11] Checking for directory '/usr/lib/kterm' [ Not found ]
[20:55:11] Warning: Adore Rootkit [ Warning ]
[20:55:12] File '/usr/sbin/kfd' found
[20:55:12]
[20:55:12] Checking for aPa Kit...
[20:55:12] Checking for file '/usr/share/.aPa' [ Not found ]
[20:55:12] aPa Kit [ Not found ]
[20:55:13]
[20:55:13] Checking for Apache Worm...
[20:55:13] Checking for file '/bin/.log' [ Not found ]
[20:55:13] Apache Worm [ Not found ]
[20:55:13]
[20:55:13] Checking for Ambient (ark) Rootkit...
[20:55:14] Checking for file '/usr/lib/.ark?' [ Not found ]
[20:55:14] Checking for file '/dev/ptyxx/.log' [ Not found ]
[20:55:14] Checking for file '/dev/ptyxx/.file' [ Not found ]
[20:55:15] Checking for file '/dev/ptyxx/.proc' [ Not found ]
[20:55:15] Checking for file '/dev/ptyxx/.addr' [ Not found ]
[20:55:15] Checking for directory '/dev/ptyxx' [ Not found ]
[20:55:15] Ambient (ark) Rootkit [ Not found ]
[20:55:15]
[20:55:15] Checking for Balaur Rootkit...
[20:55:15] Checking for file '/usr/lib/liblog.o' [ Not found ]
[20:55:15] Checking for directory '/usr/lib/.kinetic' [ Not found ]
[20:55:16] Checking for directory '/usr/lib/.egcs' [ Not found ]
[20:55:16] Checking for directory '/usr/lib/.wormie' [ Not found ]
[20:55:16] Balaur Rootkit [ Not found ]
[20:55:16]
[20:55:16] Checking for BeastKit Rootkit...
[20:55:16] Checking for file '/usr/sbin/arobia' [ Not found ]
[20:55:16] Checking for file '/usr/sbin/idrun' [ Not found ]
[20:55:16] Checking for file '/usr/lib/elm/arobia/elm' [ Not found ]
[20:55:16] Checking for file '/usr/lib/elm/arobia/elm/hk' [ Not found ]
[20:55:16] Checking for file '/usr/lib/elm/arobia/elm/hk.pub' [ Not found ]
[20:55:17] Checking for file '/usr/lib/elm/arobia/elm/sc' [ Not found ]
[20:55:17] Checking for file '/usr/lib/elm/arobia/elm/sd.pp' [ Not found ]
[20:55:17] Checking for file '/usr/lib/elm/arobia/elm/sdco' [ Not found ]
[20:55:17] Checking for file '/usr/lib/elm/arobia/elm/srsd' [ Not found ]
[20:55:17] Checking for directory '/lib/ldd.so/bktools' [ Not found ]
[20:55:17] BeastKit Rootkit [ Not found ]
[20:55:17]
[20:55:17] Checking for beX2 Rootkit...
[20:55:17] Checking for file '/usr/info/termcap.info-5.gz' [ Not found ]
[20:55:17] Checking for file '/usr/bin/sshd2' [ Not found ]
[20:55:17] Checking for directory '/usr/include/bex' [ Not found ]
[20:55:18] beX2 Rootkit [ Not found ]
[20:55:18]
[20:55:18] Checking for BOBKit Rootkit...
[20:55:18] Checking for file '/usr/sbin/ntpsx' [ Not found ]
[20:55:18] Checking for file '/usr/sbin/.../bkit-ava' [ Not found ]
[20:55:18] Checking for file '/usr/sbin/.../bkit-d' [ Not found ]
[20:55:18] Checking for file '/usr/sbin/.../bkit-shd' [ Not found ]
[20:55:18] Checking for file '/usr/sbin/.../bkit-f' [ Not found ]
[20:55:18] Checking for file '/usr/include/.../proc.h' [ Not found ]
[20:55:18] Checking for file '/usr/include/.../.bash_history' [ Not found ]
[20:55:18] Checking for file '/usr/include/.../bkit-get' [ Not found ]
[20:55:19] Checking for file '/usr/include/.../bkit-dl' [ Not found ]
[20:55:19] Checking for file '/usr/include/.../bkit-screen' [ Not found ]
[20:55:19] Checking for file '/usr/include/.../bkit-sleep' [ Not found ]
[20:55:19] Checking for file '/usr/lib/.../bkit-adore.o' [ Not found ]
[20:55:19] Checking for file '/usr/lib/.../ls' [ Not found ]
[20:55:19] Checking for file '/usr/lib/.../netstat' [ Not found ]
[20:55:19] Checking for file '/usr/lib/.../lsof' [ Not found ]
[20:55:19] Checking for file '/usr/lib/.../bkit-ssh/bkit-shdcfg' [ Not found ]
[20:55:19] Checking for file '/usr/lib/.../bkit-ssh/bkit-shhk' [ Not found ]
[20:55:19] Checking for file '/usr/lib/.../bkit-ssh/bkit-pw' [ Not found ]
[20:55:20] Checking for file '/usr/lib/.../bkit-ssh/bkit-shrs' [ Not found ]
[20:55:20] Checking for file '/usr/lib/.../bkit-ssh/bkit-mots' [ Not found ]
[20:55:20] Checking for file '/usr/lib/.../uconf.inv' [ Not found ]
[20:55:20] Checking for file '/usr/lib/.../psr' [ Not found ]
[20:55:20] Checking for file '/usr/lib/.../find' [ Not found ]
[20:55:20] Checking for file '/usr/lib/.../pstree' [ Not found ]
[20:55:20] Checking for file '/usr/lib/.../slocate' [ Not found ]
[20:55:20] Checking for file '/usr/lib/.../du' [ Not found ]
[20:55:20] Checking for file '/usr/lib/.../top' [ Not found ]
[20:55:20] Checking for directory '/usr/sbin/...' [ Not found ]
[20:55:21] Checking for directory '/usr/include/...' [ Not found ]
[20:55:21] Checking for directory '/usr/include/.../.tmp' [ Not found ]
[20:55:21] Checking for directory '/usr/lib/...' [ Not found ]
[20:55:21] Checking for directory '/usr/lib/.../.ssh' [ Not found ]
[20:55:21] Checking for directory '/usr/lib/.../bkit-ssh' [ Not found ]
[20:55:22] Checking for directory '/usr/lib/.bkit-' [ Not found ]
[20:55:22] Checking for directory '/tmp/.bkp' [ Not found ]
[20:55:22] BOBKit Rootkit [ Not found ]
[20:55:22]
[20:55:22] Checking for cb Rootkit...
[20:55:23] Checking for file '/dev/srd0' [ Not found ]
[20:55:23] Checking for file '/lib/libproc.so.2.0.6' [ Not found ]
[20:55:23] Checking for file '/dev/mounnt' [ Not found ]
[20:55:23] Checking for file '/etc/rc.d/init.d/init' [ Not found ]
[20:55:23] Checking for file '/usr/bin/.zeen/.. /cl' [ Not found ]
[20:55:24] Checking for file '/usr/bin/.zeen/.. /.x.tgz' [ Not found ]
[20:55:24] Checking for file '/usr/bin/.zeen/.. /statdx' [ Not found ]
[20:55:24] Checking for file '/usr/bin/.zeen/.. /wted' [ Not found ]
[20:55:24] Checking for file '/usr/bin/.zeen/.. /write' [ Not found ]
[20:55:25] Checking for file '/usr/bin/.zeen/.. /scan' [ Not found ]
[20:55:25] Checking for file '/usr/bin/.zeen/.. /sc' [ Not found ]
[20:55:25] Checking for file '/usr/bin/.zeen/.. /sl2' [ Not found ]
[20:55:25] Checking for file '/usr/bin/.zeen/.. /wroot' [ Not found ]
[20:55:26] Checking for file '/usr/bin/.zeen/.. /wscan' [ Not found ]
[20:55:26] Checking for file '/usr/bin/.zeen/.. /wu' [ Not found ]
[20:55:26] Checking for file '/usr/bin/.zeen/.. /v' [ Not found ]
[20:55:26] Checking for file '/usr/bin/.zeen/.. /read' [ Not found ]
[20:55:27] Checking for file '/usr/lib/sshrc' [ Not found ]
[20:55:27] Checking for file '/usr/lib/ssh_host_key' [ Not found ]
[20:55:27] Checking for file '/usr/lib/ssh_host_key.pub' [ Not found ]
[20:55:27] Checking for file '/usr/lib/ssh_random_seed' [ Not found ]
[20:55:28] Checking for file '/usr/lib/sshd_config' [ Not found ]
[20:55:28] Checking for file '/usr/lib/shosts.equiv' [ Not found ]
[20:55:28] Checking for file '/usr/lib/ssh_known_hosts' [ Not found ]
[20:55:29] Checking for file '/u/zappa/.ssh/pid' [ Not found ]
[20:55:29] Checking for file '/usr/bin/.system/.. /tcp.log' [ Not found ]
[20:55:29] Checking for file '/usr/bin/.zeen/.. /curatare/attrib' [ Not found ]
[20:55:29] Checking for file '/usr/bin/.zeen/.. /curatare/chattr' [ Not found ]
[20:55:30] Checking for file '/usr/bin/.zeen/.. /curatare/ps' [ Not found ]
[20:55:30] Checking for file '/usr/bin/.zeen/.. /curatare/pstree' [ Not found ]
[20:55:30] Checking for file '/usr/bin/.system/.. /.x/xC.o' [ Not found ]
[20:55:30] Checking for directory '/usr/bin/.zeen' [ Not found ]
[20:55:31] Checking for directory '/usr/bin/.zeen/.. /curatare' [ Not found ]
[20:55:31] Checking for directory '/usr/bin/.zeen/.. /scan' [ Not found ]
[20:55:31] Checking for directory '/usr/bin/.system/.. ' [ Not found ]
[20:55:31] cb Rootkit [ Not found ]
[20:55:31]
[20:55:31] Checking for CiNIK Worm (Slapper.B variant)...
[20:55:32] Checking for file '/tmp/.cinik' [ Not found ]
[20:55:32] Checking for directory '/tmp/.font-unix/.cinik' [ Not found ]
[20:55:32] CiNIK Worm (Slapper.B variant) [ Not found ]
[20:55:32]
[20:55:32] Checking for Danny-Boy's Abuse Kit...
[20:55:33] Checking for file '/dev/mdev' [ Not found ]
[20:55:33] Checking for file '/usr/lib/libX.a' [ Not found ]
[20:55:33] Danny-Boy's Abuse Kit [ Not found ]
[20:55:33]
[20:55:33] Checking for Devil RootKit...
[20:55:33] Checking for file '/var/lib/games/.src' [ Not found ]
[20:55:34] Checking for file '/dev/dsx' [ Not found ]
[20:55:34] Checking for file '/dev/caca' [ Not found ]
[20:55:34] Checking for file '/dev/pro' [ Not found ]
[20:55:34] Checking for file '/bin/bye' [ Not found ]
[20:55:35] Checking for file '/bin/homedir' [ Not found ]
[20:55:35] Checking for file '/usr/bin/xfss' [ Not found ]
[20:55:35] Checking for file '/usr/sbin/tzava' [ Not found ]
[20:55:35] Checking for file '/usr/doc/tar/.../.dracusor/stuff/holber' [ Not found ]
[20:55:36] Checking for file '/usr/doc/tar/.../.dracusor/stuff/sense' [ Not found ]
[20:55:36] Checking for file '/usr/doc/tar/.../.dracusor/stuff/clear' [ Not found ]
[20:55:36] Checking for file '/usr/doc/tar/.../.dracusor/stuff/tzava' [ Not found ]
[20:55:36] Checking for file '/usr/doc/tar/.../.dracusor/stuff/citeste' [ Not found ]
[20:55:37] Checking for file '/usr/doc/tar/.../.dracusor/stuff/killrk' [ Not found ]
[20:55:37] Checking for file '/usr/doc/tar/.../.dracusor/stuff/searchlog' [ Not found ]
[20:55:37] Checking for file '/usr/doc/tar/.../.dracusor/stuff/gaoaza' [ Not found ]
[20:55:37] Checking for file '/usr/doc/tar/.../.dracusor/stuff/cleaner' [ Not found ]
[20:55:38] Checking for file '/usr/doc/tar/.../.dracusor/stuff/shk' [ Not found ]
[20:55:38] Checking for file '/usr/doc/tar/.../.dracusor/stuff/srs' [ Not found ]
[20:55:38] Checking for file '/usr/doc/tar/.../.dracusor/utile.tgz' [ Not found ]
[20:55:38] Checking for file '/usr/doc/tar/.../.dracusor/webpage' [ Not found ]
[20:55:39] Checking for file '/usr/doc/tar/.../.dracusor/getpsy' [ Not found ]
[20:55:39] Checking for file '/usr/doc/tar/.../.dracusor/getbnc' [ Not found ]
[20:55:39] Checking for file '/usr/doc/tar/.../.dracusor/getemech' [ Not found ]
[20:55:39] Checking for file '/usr/doc/tar/.../.dracusor/localroot.sh' [ Not found ]
[20:55:40] Checking for file '/usr/doc/tar/.../.dracusor/stuff/old/sense' [ Not found ]
[20:55:40] Checking for directory '/usr/doc/tar/.../.dracusor' [ Not found ]
[20:55:40] Devil RootKit [ Not found ]
[20:55:40]
[20:55:40] Checking for Dica-Kit Rootkit...
[20:55:41] Checking for file '/lib/.sso' [ Not found ]
[20:55:41] Checking for file '/lib/.so' [ Not found ]
[20:55:41] Checking for file '/var/run/...dica/clean' [ Not found ]
[20:55:41] Checking for file '/var/run/...dica/dxr' [ Not found ]
[20:55:41] Checking for file '/var/run/...dica/read' [ Not found ]
[20:55:41] Checking for file '/var/run/...dica/write' [ Not found ]
[20:55:42] Checking for file '/var/run/...dica/lf' [ Not found ]
[20:55:42] Checking for file '/var/run/...dica/xl' [ Not found ]
[20:55:42] Checking for file '/var/run/...dica/xdr' [ Not found ]
[20:55:42] Checking for file '/var/run/...dica/psg' [ Not found ]
[20:55:42] Checking for file '/var/run/...dica/secure' [ Not found ]
[20:55:42] Checking for file '/var/run/...dica/rdx' [ Not found ]
[20:55:42] Checking for file '/var/run/...dica/va' [ Not found ]
[20:55:43] Checking for file '/var/run/...dica/cl.sh' [ Not found ]
[20:55:43] Checking for file '/var/run/...dica/last.log' [ Not found ]
[20:55:43] Checking for file '/usr/bin/.etc' [ Not found ]
[20:55:43] Checking for file '/etc/sshd_config' [ Not found ]
[20:55:43] Checking for file '/etc/ssh_host_key' [ Not found ]
[20:55:43] Checking for file '/etc/ssh_random_seed' [ Not found ]
[20:55:43] Checking for directory '/var/run/...dica' [ Not found ]
[20:55:44] Checking for directory '/var/run/...dica/mh' [ Not found ]
[20:55:44] Checking for directory '/var/run/...dica/scan' [ Not found ]
[20:55:44] Dica-Kit Rootkit [ Not found ]
[20:55:44]
[20:55:44] Checking for Dreams Rootkit...
[20:55:44] Checking for file '/dev/ttyoa' [ Not found ]
[20:55:44] Checking for file '/dev/ttyof' [ Not found ]
[20:55:44] Checking for file '/dev/ttyop' [ Not found ]
[20:55:44] Checking for file '/usr/bin/sense' [ Not found ]
[20:55:45] Checking for file '/usr/bin/sl2' [ Not found ]
[20:55:45] Checking for file '/usr/bin/logclear' [ Not found ]
[20:55:45] Checking for file '/usr/bin/(swapd)' [ Not found ]
[20:55:45] Checking for file '/usr/bin/initrd' [ Not found ]
[20:55:45] Checking for file '/usr/bin/crontabs' [ Not found ]
[20:55:45] Checking for file '/usr/bin/snfs' [ Not found ]
[20:55:45] Checking for file '/usr/lib/libsss' [ Not found ]
[20:55:45] Checking for file '/usr/lib/libsnf.log' [ Not found ]
[20:55:45] Checking for file '/usr/lib/libshtift/top' [ Not found ]
[20:55:45] Checking for file '/usr/lib/libshtift/ps' [ Not found ]
[20:55:46] Checking for file '/usr/lib/libshtift/netstat' [ Not found ]
[20:55:46] Checking for file '/usr/lib/libshtift/ls' [ Not found ]
[20:55:46] Checking for file '/usr/lib/libshtift/ifconfig' [ Not found ]
[20:55:46] Checking for file '/usr/include/linseed.h' [ Not found ]
[20:55:46] Checking for file '/usr/include/linpid.h' [ Not found ]
[20:55:46] Checking for file '/usr/include/linkey.h' [ Not found ]
[20:55:46] Checking for file '/usr/include/linconf.h' [ Not found ]
[20:55:46] Checking for file '/usr/include/iceseed.h' [ Not found ]
[20:55:47] Checking for file '/usr/include/icepid.h' [ Not found ]
[20:55:47] Checking for file '/usr/include/icekey.h' [ Not found ]
[20:55:47] Checking for file '/usr/include/iceconf.h' [ Not found ]
[20:55:47] Checking for directory '/dev/ida/.hpd' [ Not found ]
[20:55:47] Checking for directory '/usr/lib/libshtift' [ Not found ]
[20:55:47] Dreams Rootkit [ Not found ]
[20:55:48]
[20:55:48] Checking for Duarawkz Rootkit...
[20:55:48] Checking for file '/usr/bin/duarawkz/loginpass' [ Not found ]
[20:55:48] Checking for directory '/usr/bin/duarawkz' [ Not found ]
[20:55:48] Duarawkz Rootkit [ Not found ]
[20:55:49]
[20:55:49] Checking for Enye LKM...
[20:55:49] Checking for file '/etc/.enyelkmHIDE^IT.ko' [ Not found ]
[20:55:49] Checking for file '/etc/.enyelkmOCULTAR.ko' [ Not found ]
[20:55:49] Enye LKM [ Not found ]
[20:55:50]
[20:55:50] Checking for Flea Linux Rootkit...
[20:55:50] Checking for file '/etc/ld.so.hash' [ Not found ]
[20:55:50] Checking for file '/lib/security/.config/ssh/sshd_config' [ Not found ]
[20:55:50] Checking for file '/lib/security/.config/ssh/ssh_host_key' [ Not found ]
[20:55:50] Checking for file '/lib/security/.config/ssh/ssh_host_key.pub' [ Not found ]
[20:55:51] Checking for file '/lib/security/.config/ssh/ssh_random_seed' [ Not found ]
[20:55:51] Checking for file '/usr/bin/ssh2d' [ Not found ]
[20:55:51] Checking for file '/usr/lib/ldlibns.so' [ Not found ]
[20:55:51] Checking for file '/usr/lib/ldlibps.so' [ Not found ]
[20:55:52] Checking for file '/usr/lib/ldlibpst.so' [ Not found ]
[20:55:52] Checking for file '/usr/lib/ldlibdu.so' [ Not found ]
[20:55:52] Checking for file '/usr/lib/ldlibct.so' [ Not found ]
[20:55:52] Checking for directory '/lib/security/.config/ssh' [ Not found ]
[20:55:53] Checking for directory '/dev/..0' [ Not found ]
[20:55:53] Checking for directory '/dev/..0/backup' [ Not found ]
[20:55:53] Flea Linux Rootkit [ Not found ]
[20:55:53]
[20:55:53] Checking for FreeBSD Rootkit...
[20:55:53] Checking for file '/dev/ptyp' [ Not found ]
[20:55:54] Checking for file '/dev/ptyq' [ Not found ]
[20:55:54] Checking for file '/dev/ptyr' [ Not found ]
[20:55:54] Checking for file '/dev/ptys' [ Not found ]
[20:55:54] Checking for file '/dev/ptyt' [ Not found ]
[20:55:54] Checking for file '/dev/fd/.88/freshb-bsd' [ Not found ]
[20:55:54] Checking for file '/dev/fd/.88/fresht' [ Not found ]
[20:55:54] Checking for file '/dev/fd/.88/zxsniff' [ Not found ]
[20:55:55] Checking for file '/dev/fd/.88/zxsniff.log' [ Not found ]
[20:55:55] Checking for file '/dev/fd/.99/.ttyf00' [ Not found ]
[20:55:55] Checking for file '/dev/fd/.99/.ttyp00' [ Not found ]
[20:55:55] Checking for file '/dev/fd/.99/.ttyq00' [ Not found ]
[20:55:55] Checking for file '/dev/fd/.99/.ttys00' [ Not found ]
[20:55:55] Checking for file '/dev/fd/.99/.pwsx00' [ Not found ]
[20:55:55] Checking for file '/etc/.acid' [ Not found ]
[20:55:55] Checking for file '/usr/lib/.fx/sched_host.2' [ Not found ]
[20:55:55] Checking for file '/usr/lib/.fx/random_d.2' [ Not found ]
[20:55:55] Checking for file '/usr/lib/.fx/set_pid.2' [ Not found ]
[20:55:56] Checking for file '/usr/lib/.fx/setrgrp.2' [ Not found ]
[20:55:56] Checking for file '/usr/lib/.fx/TOHIDE' [ Not found ]
[20:55:56] Checking for file '/usr/lib/.fx/cons.saver' [ Not found ]
[20:55:56] Checking for file '/usr/lib/.fx/adore/ava/ava' [ Not found ]
[20:55:56] Checking for file '/usr/lib/.fx/adore/adore/adore.ko' [ Not found ]
[20:55:56] Checking for file '/bin/sysback' [ Not found ]
[20:55:56] Checking for file '/usr/local/bin/sysback' [ Not found ]
[20:55:56] Checking for directory '/dev/fd/.88' [ Not found ]
[20:55:56] Checking for directory '/dev/fd/.99' [ Not found ]
[20:55:56] Checking for directory '/usr/lib/.fx' [ Not found ]
[20:55:57] Checking for directory '/usr/lib/.fx/adore' [ Not found ]
[20:55:57] FreeBSD Rootkit [ Not found ]
[20:55:57]
[20:55:57] Checking for Fu Rootkit...
[20:55:57] Checking for file '/sbin/xc' [ Not found ]
[20:55:57] Checking for file '/usr/include/ivtype.h' [ Not found ]
[20:55:57] Checking for file '/bin/.lib' [ Not found ]
[20:55:57] Fu Rootkit [ Not found ]
[20:55:57]
[20:55:57] Checking for Fuck`it Rootkit...
[20:55:58] Checking for file '/lib/libproc.so.2.0.7' [ Not found ]
[20:55:58] Checking for file '/dev/proc/.bash_profile' [ Not found ]
[20:55:58] Checking for file '/dev/proc/.bashrc' [ Not found ]
[20:55:58] Checking for file '/dev/proc/.cshrc' [ Not found ]
[20:55:58] Checking for file '/dev/proc/fuckit/hax0r' [ Not found ]
[20:55:58] Checking for file '/dev/proc/fuckit/hax0rshell' [ Not found ]
[20:55:58] Checking for file '/dev/proc/fuckit/config/lports' [ Not found ]
[20:55:59] Checking for file '/dev/proc/fuckit/config/rports' [ Not found ]
[20:55:59] Checking for file '/dev/proc/fuckit/config/rkconf' [ Not found ]
[20:55:59] Checking for file '/dev/proc/fuckit/config/password' [ Not found ]
[20:55:59] Checking for file '/dev/proc/fuckit/config/progs' [ Not found ]
[20:55:59] Checking for file '/dev/proc/fuckit/system-bins/init' [ Not found ]
[20:55:59] Checking for file '/usr/lib/libcps.a' [ Not found ]
[20:56:00] Checking for file '/usr/lib/libtty.a' [ Not found ]
[20:56:00] Checking for directory '/dev/proc' [ Not found ]
[20:56:00] Checking for directory '/dev/proc/fuckit' [ Not found ]
[20:56:00] Checking for directory '/dev/proc/fuckit/system-bins' [ Not found ]
[20:56:00] Checking for directory '/dev/proc/toolz' [ Not found ]
[20:56:00] Fuck`it Rootkit [ Not found ]
[20:56:01]
[20:56:01] Checking for GasKit Rootkit...
[20:56:01] Checking for file '/dev/dev/gaskit/sshd/sshdd' [ Not found ]
[20:56:01] Checking for directory '/dev/dev' [ Not found ]
[20:56:01] Checking for directory '/dev/dev/gaskit' [ Not found ]
[20:56:01] Checking for directory '/dev/dev/gaskit/sshd' [ Not found ]
[20:56:01] GasKit Rootkit [ Not found ]
[20:56:02]
[20:56:02] Checking for Heroin LKM...
[20:56:02] Checking for kernel symbol 'heroin' [ Not found ]
[20:56:02] Heroin LKM [ Not found ]
[20:56:02]
[20:56:02] Checking for HjC Kit...
[20:56:02] Checking for directory '/dev/.hijackerz' [ Not found ]
[20:56:02] HjC Kit [ Not found ]
[20:56:02]
[20:56:02] Checking for ignoKit Rootkit...
[20:56:02] Checking for file '/lib/defs/p' [ Not found ]
[20:56:03] Checking for file '/lib/defs/q' [ Not found ]
[20:56:03] Checking for file '/lib/defs/r' [ Not found ]
[20:56:03] Checking for file '/lib/defs/s' [ Not found ]
[20:56:03] Checking for file '/lib/defs/t' [ Not found ]
[20:56:03] Checking for file '/usr/lib/defs/p' [ Not found ]
[20:56:03] Checking for file '/usr/lib/defs/q' [ Not found ]
[20:56:03] Checking for file '/usr/lib/defs/r' [ Not found ]
[20:56:03] Checking for file '/usr/lib/defs/s' [ Not found ]
[20:56:03] Checking for file '/usr/lib/defs/t' [ Not found ]
[20:56:03] Checking for file '/usr/lib/.libigno/pkunsec' [ Not found ]
[20:56:03] Checking for file '/usr/lib/.libigno/.igno/psybnc/psybnc' [ Not found ]
[20:56:04] Checking for directory '/usr/lib/.libigno' [ Not found ]
[20:56:04] Checking for directory '/usr/lib/.libigno/.igno' [ Not found ]
[20:56:04] ignoKit Rootkit [ Not found ]
[20:56:04]
[20:56:04] Checking for iLLogiC Rootkit...
[20:56:04] Checking for file '/dev/kmod' [ Not found ]
[20:56:04] Checking for file '/dev/dos' [ Not found ]
[20:56:04] Checking for file '/usr/lib/crth.o' [ Not found ]
[20:56:04] Checking for file '/usr/lib/crtz.o' [ Not found ]
[20:56:04] Checking for file '/etc/ld.so.hash' [ Not found ]
[20:56:04] Checking for file '/usr/bin/sia' [ Not found ]
[20:56:05] Checking for file '/usr/bin/ssh2d' [ Not found ]
[20:56:05] Checking for file '/lib/security/.config/sn' [ Not found ]
[20:56:05] Checking for file '/lib/security/.config/iver' [ Not found ]
[20:56:05] Checking for file '/lib/security/.config/uconf.inv' [ Not found ]
[20:56:05] Checking for file '/lib/security/.config/ssh/ssh_host_key' [ Not found ]
[20:56:05] Checking for file '/lib/security/.config/ssh/ssh_host_key.pub' [ Not found ]
[20:56:05] Checking for file '/lib/security/.config/ssh/sshport' [ Not found ]
[20:56:05] Checking for file '/lib/security/.config/ssh/ssh_random_seed' [ Not found ]
[20:56:05] Checking for file '/lib/security/.config/ava' [ Not found ]
[20:56:05] Checking for file '/lib/security/.config/cleaner' [ Not found ]
[20:56:06] Checking for file '/lib/security/.config/lpsched' [ Not found ]
[20:56:06] Checking for file '/lib/security/.config/sz' [ Not found ]
[20:56:06] Checking for file '/lib/security/.config/rcp' [ Not found ]
[20:56:06] Checking for file '/lib/security/.config/patcher' [ Not found ]
[20:56:06] Checking for file '/lib/security/.config/pg' [ Not found ]
[20:56:06] Checking for file '/lib/security/.config/crypt' [ Not found ]
[20:56:06] Checking for file '/lib/security/.config/utime' [ Not found ]
[20:56:06] Checking for file '/lib/security/.config/wget' [ Not found ]
[20:56:07] Checking for file '/lib/security/.config/instmod' [ Not found ]
[20:56:07] Checking for file '/lib/security/.config/bin/find' [ Not found ]
[20:56:07] Checking for file '/lib/security/.config/bin/du' [ Not found ]
[20:56:07] Checking for file '/lib/security/.config/bin/ls' [ Not found ]
[20:56:07] Checking for file '/lib/security/.config/bin/psr' [ Not found ]
[20:56:07] Checking for file '/lib/security/.config/bin/netstat' [ Not found ]
[20:56:07] Checking for file '/lib/security/.config/bin/su' [ Not found ]
[20:56:07] Checking for file '/lib/security/.config/bin/ping' [ Not found ]
[20:56:07] Checking for file '/lib/security/.config/bin/passwd' [ Not found ]
[20:56:08] Checking for directory '/lib/security/.config' [ Not found ]
[20:56:08] Checking for directory '/lib/security/.config/ssh' [ Not found ]
[20:56:08] Checking for directory '/lib/security/.config/bin' [ Not found ]
[20:56:08] Checking for directory '/lib/security/.config/backup' [ Not found ]
[20:56:08] Checking for directory '/root/ /.dir' [ Not found ]
[20:56:08] Checking for directory '/root/ /.dir/mass-scan' [ Not found ]
[20:56:08] Checking for directory '/root/ /.dir/flood' [ Not found ]
[20:56:08] iLLogiC Rootkit [ Not found ]
[20:56:08]
[20:56:08] Checking for IntoXonia-NG Rootkit...
[20:56:09] Checking for kernel symbol 'funces' [ Not found ]
[20:56:09] Checking for kernel symbol 'ixinit' [ Not found ]
[20:56:09] Checking for kernel symbol 'tricks' [ Not found ]
[20:56:09] Checking for kernel symbol 'kernel_unlink' [ Not found ]
[20:56:09] Checking for kernel symbol 'rootme' [ Not found ]
[20:56:10] Checking for kernel symbol 'hide_module' [ Not found ]
[20:56:10] Checking for kernel symbol 'find_sys_call_tbl' [ Not found ]
[20:56:10] IntoXonia-NG Rootkit [ Not found ]
[20:56:10]
[20:56:10] Checking for Irix Rootkit...
[20:56:10] Checking for directory '/dev/pts/01' [ Not found ]
[20:56:10] Checking for directory '/dev/pts/01/backup' [ Not found ]
[20:56:10] Checking for directory '/dev/pts/01/etc' [ Not found ]
[20:56:10] Checking for directory '/dev/pts/01/tmp' [ Not found ]
[20:56:10] Irix Rootkit [ Not found ]
[20:56:10]
[20:56:10] Checking for Kitko Rootkit...
[20:56:11] Checking for directory '/usr/src/redhat/SRPMS/...' [ Not found ]
[20:56:11] Kitko Rootkit [ Not found ]
[20:56:11]
[20:56:11] Checking for Knark Rootkit...
[20:56:11] Checking for file '/proc/knark/pids' [ Not found ]
[20:56:11] Checking for directory '/proc/knark' [ Not found ]
[20:56:11] Knark Rootkit [ Not found ]
[20:56:11]
[20:56:11] Checking for ld-linuxv.so Rootkit...
[20:56:11] Checking for file '/lib/ld-linuxv.so.1' [ Not found ]
[20:56:11] Checking for directory '/var/opt/_so_cache' [ Not found ]
[20:56:12] Checking for directory '/var/opt/_so_cache/ld' [ Not found ]
[20:56:12] Checking for directory '/var/opt/_so_cache/lc' [ Not found ]
[20:56:12] ld-linuxv.so Rootkit [ Not found ]
[20:56:12]
[20:56:12] Checking for Li0n Worm...
[20:56:12] Checking for file '/bin/in.telnetd' [ Not found ]
[20:56:12] Checking for file '/bin/mjy' [ Not found ]
[20:56:12] Checking for file '/usr/man/man1/man1/lib/.lib/mjy' [ Not found ]
[20:56:12] Checking for file '/usr/man/man1/man1/lib/.lib/in.telnetd' [ Not found ]
[20:56:12] Checking for file '/usr/man/man1/man1/lib/.lib/.x' [ Not found ]
[20:56:13] Checking for file '/dev/.lib/lib/scan/1i0n.sh' [ Not found ]
[20:56:13] Checking for file '/dev/.lib/lib/scan/hack.sh' [ Not found ]
[20:56:13] Checking for file '/dev/.lib/lib/scan/bind' [ Not found ]
[20:56:13] Checking for file '/dev/.lib/lib/scan/randb' [ Not found ]
[20:56:13] Checking for file '/dev/.lib/lib/scan/scan.sh' [ Not found ]
[20:56:13] Checking for file '/dev/.lib/lib/scan/pscan' [ Not found ]
[20:56:13] Checking for file '/dev/.lib/lib/scan/star.sh' [ Not found ]
[20:56:13] Checking for file '/dev/.lib/lib/scan/bindx.sh' [ Not found ]
[20:56:13] Checking for file '/dev/.lib/lib/scan/bindname.log' [ Not found ]
[20:56:13] Checking for file '/dev/.lib/lib/1i0n.sh' [ Not found ]
[20:56:13] Checking for file '/dev/.lib/lib/lib/netstat' [ Not found ]
[20:56:14] Checking for file '/dev/.lib/lib/lib/dev/.1addr' [ Not found ]
[20:56:14] Checking for file '/dev/.lib/lib/lib/dev/.1logz' [ Not found ]
[20:56:14] Checking for file '/dev/.lib/lib/lib/dev/.1proc' [ Not found ]
[20:56:14] Checking for file '/dev/.lib/lib/lib/dev/.1file' [ Not found ]
[20:56:14] Li0n Worm [ Not found ]
[20:56:14]
[20:56:14] Checking for Lockit / LJK2 Rootkit...
[20:56:14] Checking for file '/usr/lib/libmen.oo/.LJK2/ssh_config' [ Not found ]
[20:56:14] Checking for file '/usr/lib/libmen.oo/.LJK2/ssh_host_key' [ Not found ]
[20:56:14] Checking for file '/usr/lib/libmen.oo/.LJK2/ssh_host_key.pub' [ Not found ]
[20:56:15] Checking for file '/usr/lib/libmen.oo/.LJK2/ssh_random_seed*' [ Not found ]
[20:56:15] Checking for file '/usr/lib/libmen.oo/.LJK2/sshd_config' [ Not found ]
[20:56:15] Checking for file '/usr/lib/libmen.oo/.LJK2/backdoor/RK1bd' [ Not found ]
[20:56:15] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/du' [ Not found ]
[20:56:15] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/ifconfig' [ Not found ]
[20:56:15] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/inetd.conf' [ Not found ]
[20:56:15] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/locate' [ Not found ]
[20:56:15] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/login' [ Not found ]
[20:56:15] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/ls' [ Not found ]
[20:56:15] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/netstat' [ Not found ]
[20:56:15] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/ps' [ Not found ]
[20:56:16] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/pstree' [ Not found ]
[20:56:16] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/rc.sysinit' [ Not found ]
[20:56:16] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/syslogd' [ Not found ]
[20:56:16] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/tcpd' [ Not found ]
[20:56:16] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/top' [ Not found ]
[20:56:16] Checking for file '/usr/lib/libmen.oo/.LJK2/clean/RK1sauber' [ Not found ]
[20:56:17] Checking for file '/usr/lib/libmen.oo/.LJK2/clean/RK1wted' [ Not found ]
[20:56:17] Checking for file '/usr/lib/libmen.oo/.LJK2/hack/RK1parse' [ Not found ]
[20:56:17] Checking for file '/usr/lib/libmen.oo/.LJK2/hack/RK1sniff' [ Not found ]
[20:56:17] Checking for file '/usr/lib/libmen.oo/.LJK2/hide/.RK1addr' [ Not found ]
[20:56:17] Checking for file '/usr/lib/libmen.oo/.LJK2/hide/.RK1dir' [ Not found ]
[20:56:17] Checking for file '/usr/lib/libmen.oo/.LJK2/hide/.RK1log' [ Not found ]
[20:56:17] Checking for file '/usr/lib/libmen.oo/.LJK2/hide/.RK1proc' [ Not found ]
[20:56:17] Checking for file '/usr/lib/libmen.oo/.LJK2/hide/RK1phidemod.c' [ Not found ]
[20:56:17] Checking for file '/usr/lib/libmen.oo/.LJK2/modules/README.modules' [ Not found ]
[20:56:18] Checking for file '/usr/lib/libmen.oo/.LJK2/modules/RK1hidem.c' [ Not found ]
[20:56:18] Checking for file '/usr/lib/libmen.oo/.LJK2/modules/RK1phide' [ Not found ]
[20:56:18] Checking for file '/usr/lib/libmen.oo/.LJK2/sshconfig/RK1ssh' [ Not found ]
[20:56:18] Checking for directory '/usr/lib/libmen.oo/.LJK2' [ Not found ]
[20:56:18] Lockit / LJK2 Rootkit [ Not found ]
[20:56:18]
[20:56:18] Checking for Mood-NT Rootkit...
[20:56:18] Checking for file '/sbin/init__mood-nt-_-_cthulhu' [ Not found ]
[20:56:18] Checking for file '/_cthulhu/mood-nt.init' [ Not found ]
[20:56:18] Checking for file '/_cthulhu/mood-nt.conf' [ Not found ]
[20:56:18] Checking for file '/_cthulhu/mood-nt.sniff' [ Not found ]
[20:56:19] Checking for directory '/_cthulhu' [ Not found ]
[20:56:19] Mood-NT Rootkit [ Not found ]
[20:56:19]
[20:56:19] Checking for MRK Rootkit...
[20:56:19] Checking for file '/dev/ida/.inet/pid' [ Not found ]
[20:56:19] Checking for file '/dev/ida/.inet/ssh_host_key' [ Not found ]
[20:56:19] Checking for file '/dev/ida/.inet/ssh_random_seed' [ Not found ]
[20:56:19] Checking for file '/dev/ida/.inet/tcp.log' [ Not found ]
[20:56:19] Checking for directory '/dev/ida/.inet' [ Not found ]
[20:56:19] Checking for directory '/var/spool/cron/.sh' [ Not found ]
[20:56:20] MRK Rootkit [ Not found ]
[20:56:20]
[20:56:20] Checking for Ni0 Rootkit...
[20:56:20] Checking for file '/var/lock/subsys/...datafile.../...net...' [ Not found ]
[20:56:20] Checking for file '/var/lock/subsys/...datafile.../...port...' [ Not found ]
[20:56:20] Checking for file '/var/lock/subsys/...datafile.../...ps...' [ Not found ]
[20:56:20] Checking for file '/var/lock/subsys/...datafile.../...file...' [ Not found ]
[20:56:20] Checking for directory '/tmp/waza' [ Not found ]
[20:56:20] Checking for directory '/var/lock/subsys/...datafile...' [ Not found ]
[20:56:20] Checking for directory '/usr/sbin/es' [ Not found ]
[20:56:21] Ni0 Rootkit [ Not found ]
[20:56:21]
[20:56:21] Checking for Ohhara Rootkit...
[20:56:21] Checking for file '/var/lock/subsys/...datafile.../...datafile.../in.smbd.log' [ Not found ]
[20:56:21] Checking for directory '/var/lock/subsys/...datafile...' [ Not found ]
[20:56:21] Checking for directory '/var/lock/subsys/...datafile.../...datafile...' [ Not found ]
[20:56:21] Checking for directory '/var/lock/subsys/...datafile.../...datafile.../bin' [ Not found ]
[20:56:21] Checking for directory '/var/lock/subsys/...datafile.../...datafile.../usr/bin' [ Not found ]
[20:56:22] Checking for directory '/var/lock/subsys/...datafile.../...datafile.../usr/sbin' [ Not found ]
[20:56:22] Checking for directory '/var/lock/subsys/...datafile.../...datafile.../lib/security' [ Not found ]
[20:56:22] Ohhara Rootkit [ Not found ]
[20:56:22]
[20:56:22] Checking for Optic Kit (Tux) Worm...
[20:56:22] Checking for directory '/dev/tux' [ Not found ]
[20:56:22] Checking for directory '/usr/bin/xchk' [ Not found ]
[20:56:22] Checking for directory '/usr/bin/xsf' [ Not found ]
[20:56:22] Checking for directory '/usr/bin/ssh2d' [ Not found ]
[20:56:22] Optic Kit (Tux) Worm [ Not found ]
[20:56:23]
[20:56:23] Checking for Oz Rootkit...
[20:56:23] Checking for file '/dev/.oz/.nap/rkit/terror' [ Not found ]
[20:56:23] Checking for directory '/dev/.oz' [ Not found ]
[20:56:23] Oz Rootkit [ Not found ]
[20:56:23]
[20:56:23] Checking for Phalanx Rootkit...
[20:56:23] Checking for file '/uNFuNF' [ Not found ]
[20:56:23] Checking for file '/etc/host.ph1' [ Not found ]
[20:56:23] Checking for file '/bin/host.ph1' [ Not found ]
[20:56:23] Checking for file '/usr/share/.home.ph1/phalanx' [ Not found ]
[20:56:23] Checking for file '/usr/share/.home.ph1/cb' [ Not found ]
[20:56:24] Checking for file '/usr/share/.home.ph1/kebab' [ Not found ]
[20:56:24] Checking for directory '/usr/share/.home.ph1' [ Not found ]
[20:56:24] Checking for directory '/usr/share/.home.ph1/tty' [ Not found ]
[20:56:24] Phalanx Rootkit [ Not found ]
[20:56:24]
[20:56:24] Checking for Phalanx2 Rootkit...
[20:56:24] Checking for file '/etc/khubd.p2/.p2rc' [ Not found ]
[20:56:24] Checking for file '/etc/khubd.p2/.phalanx2' [ Not found ]
[20:56:24] Checking for file '/etc/khubd.p2/.sniff' [ Not found ]
[20:56:25] Checking for file '/etc/khubd.p2/sshgrab.py' [ Not found ]
[20:56:25] Checking for file '/etc/lolzz.p2/.p2rc' [ Not found ]
[20:56:25] Checking for file '/etc/lolzz.p2/.phalanx2' [ Not found ]
[20:56:25] Checking for file '/etc/lolzz.p2/.sniff' [ Not found ]
[20:56:25] Checking for file '/etc/lolzz.p2/sshgrab.py' [ Not found ]
[20:56:25] Checking for file '/etc/cron.d/zupzzplaceholder' [ Not found ]
[20:56:25] Checking for file '/usr/lib/zupzz.p2/.p-2.3d' [ Not found ]
[20:56:25] Checking for file '/usr/lib/zupzz.p2/.p2rc' [ Not found ]
[20:56:25] Checking for directory '/etc/khubd.p2' [ Not found ]
[20:56:25] Checking for directory '/etc/lolzz.p2' [ Not found ]
[20:56:25] Checking for directory '/usr/lib/zupzz.p2' [ Not found ]
[20:56:26] Phalanx2 Rootkit [ Not found ]
[20:56:26]
[20:56:26] Checking for Phalanx2 Rootkit (extended tests)...
[20:56:26] Checking for directory '/etc/khubd.p2' [ Not found ]
[20:56:26] Checking for directory '/etc/lolzz.p2' [ Not found ]
[20:56:26] Checking for directory '/usr/lib/zupzz.p2' [ Not found ]
[20:56:26] Checking process list for process 'ata/0' [ OK ]
[20:56:26] Phalanx2 Rootkit (extended tests) [ Not found ]
[20:56:26]
[20:56:26] Checking for Portacelo Rootkit...
[20:56:26] Checking for file '/var/lib/.../.ak' [ Not found ]
[20:56:27] Checking for file '/var/lib/.../.hk' [ Not found ]
[20:56:27] Checking for file '/var/lib/.../.rs' [ Not found ]
[20:56:27] Checking for file '/var/lib/.../.p' [ Not found ]
[20:56:27] Checking for file '/var/lib/.../getty' [ Not found ]
[20:56:27] Checking for file '/var/lib/.../lkt.o' [ Not found ]
[20:56:27] Checking for file '/var/lib/.../show' [ Not found ]
[20:56:27] Checking for file '/var/lib/.../nlkt.o' [ Not found ]
[20:56:27] Checking for file '/var/lib/.../ssshrc' [ Not found ]
[20:56:27] Checking for file '/var/lib/.../sssh_equiv' [ Not found ]
[20:56:27] Checking for file '/var/lib/.../sssh_known_hosts' [ Not found ]
[20:56:28] Checking for file '/var/lib/.../sssh_pid' [ Not found ]
[20:56:28] Checking for file '~/.sssh/known_hosts' [ Not found ]
[20:56:28] Portacelo Rootkit [ Not found ]
[20:56:28]
[20:56:28] Checking for R3dstorm Toolkit...
[20:56:28] Checking for file '/var/log/tk02/see_all' [ Not found ]
[20:56:28] Checking for file '/var/log/tk02/.scris' [ Not found ]
[20:56:28] Checking for file '/bin/.../sshd/sbin/sshd1' [ Not found ]
[20:56:28] Checking for file '/bin/.../hate/sk' [ Not found ]
[20:56:28] Checking for file '/bin/.../see_all' [ Not found ]
[20:56:28] Checking for directory '/var/log/tk02' [ Not found ]
[20:56:28] Checking for directory '/var/log/tk02/old' [ Not found ]
[20:56:29] Checking for directory '/bin/...' [ Not found ]
[20:56:29] R3dstorm Toolkit [ Not found ]
[20:56:29]
[20:56:29] Checking for RH-Sharpe's Rootkit...
[20:56:29] Checking for file '/bin/lps' [ Not found ]
[20:56:29] Checking for file '/usr/bin/lpstree' [ Not found ]
[20:56:29] Checking for file '/usr/