Advertisement
Guest User

Untitled

a guest
Jan 11th, 2013
50
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 10.33 KB | None | 0 0
  1. ROOTDIR is `/'
  2. Checking `amd'... not found
  3. Checking `basename'... not infected
  4. Checking `biff'... not found
  5. Checking `chfn'... not infected
  6. Checking `chsh'... not infected
  7. Checking `cron'... not infected
  8. Checking `crontab'... not infected
  9. Checking `date'... not infected
  10. Checking `du'... not infected
  11. Checking `dirname'... not infected
  12. Checking `echo'... not infected
  13. Checking `egrep'... not infected
  14. Checking `env'... not infected
  15. Checking `find'... not infected
  16. Checking `fingerd'... not found
  17. Checking `gpm'... not found
  18. Checking `grep'... not infected
  19. Checking `hdparm'... not infected
  20. Checking `su'... not infected
  21. Checking `ifconfig'... not infected
  22. Checking `inetd'... not infected
  23. Checking `inetdconf'... not found
  24. Checking `identd'... not found
  25. Checking `init'... not infected
  26. Checking `killall'... not infected
  27. Checking `ldsopreload'... not infected
  28. Checking `login'... not infected
  29. Checking `ls'... not infected
  30. Checking `lsof'... not infected
  31. Checking `mail'... not infected
  32. Checking `mingetty'... not found
  33. Checking `netstat'... not infected
  34. Checking `named'... not found
  35. Checking `passwd'... not infected
  36. Checking `pidof'... not infected
  37. Checking `pop2'... not found
  38. Checking `pop3'... not found
  39. Checking `ps'... not infected
  40. Checking `pstree'... not infected
  41. Checking `rpcinfo'... not found
  42. Checking `rlogind'... not found
  43. Checking `rshd'... not found
  44. Checking `slogin'... not infected
  45. Checking `sendmail'... not infected
  46. Checking `sshd'... not found
  47. Checking `syslogd'... not tested
  48. Checking `tar'... not infected
  49. Checking `tcpd'... not infected
  50. Checking `tcpdump'... not infected
  51. Checking `top'... not infected
  52. Checking `telnetd'... not found
  53. Checking `timed'... not found
  54. Checking `traceroute'... not infected
  55. Checking `vdir'... not infected
  56. Checking `w'... not infected
  57. Checking `write'... not infected
  58. Checking `aliens'... no suspect files
  59. Searching for sniffer's logs, it may take a while... nothing found
  60. Searching for rootkit HiDrootkit's default files... nothing found
  61. Searching for rootkit t0rn's default files... nothing found
  62. Searching for t0rn's v8 defaults... nothing found
  63. Searching for rootkit Lion's default files... nothing found
  64. Searching for rootkit RSHA's default files... nothing found
  65. Searching for rootkit RH-Sharpe's default files... nothing found
  66. Searching for Ambient's rootkit (ark) default files and dirs... nothing found
  67. Searching for suspicious files and dirs, it may take a while... The following suspicious files and directories were found:
  68. /usr/lib/python2.7/dist-packages/PyQt4/uic/widget-plugins/.noinit /usr/lib/jvm/java-7-oracle/lib/visualvm/profiler/.lastModified /usr/lib/jvm/java-7-oracle/lib/visualvm/visualvm/.lastModified /usr/lib/jvm/java-7-oracle/lib/visualvm/platform/.lastModified /usr/lib/jvm/.java-7-oracle.jinfo /usr/lib/jvm/.java-1.6.0-openjdk-amd64.jinfo /usr/lib/pymodules/python2.7/.path
  69.  
  70. Searching for LPD Worm files and dirs... nothing found
  71. Searching for Ramen Worm files and dirs... nothing found
  72. Searching for Maniac files and dirs... nothing found
  73. Searching for RK17 files and dirs... nothing found
  74. Searching for Ducoci rootkit... nothing found
  75. Searching for Adore Worm... nothing found
  76. Searching for ShitC Worm... nothing found
  77. Searching for Omega Worm... nothing found
  78. Searching for Sadmind/IIS Worm... nothing found
  79. Searching for MonKit... nothing found
  80. Searching for Showtee... nothing found
  81. Searching for OpticKit... nothing found
  82. Searching for T.R.K... nothing found
  83. Searching for Mithra... nothing found
  84. Searching for LOC rootkit... nothing found
  85. Searching for Romanian rootkit... nothing found
  86. Searching for Suckit rootkit... nothing found
  87. Searching for Volc rootkit... nothing found
  88. Searching for Gold2 rootkit... nothing found
  89. Searching for TC2 Worm default files and dirs... nothing found
  90. Searching for Anonoying rootkit default files and dirs... nothing found
  91. Searching for ZK rootkit default files and dirs... nothing found
  92. Searching for ShKit rootkit default files and dirs... nothing found
  93. Searching for AjaKit rootkit default files and dirs... nothing found
  94. Searching for zaRwT rootkit default files and dirs... nothing found
  95. Searching for Madalin rootkit default files... nothing found
  96. Searching for Fu rootkit default files... nothing found
  97. Searching for ESRK rootkit default files... nothing found
  98. Searching for rootedoor... nothing found
  99. Searching for ENYELKM rootkit default files... nothing found
  100. Searching for common ssh-scanners default files... nothing found
  101. Searching for suspect PHP files... nothing found
  102. Searching for anomalies in shell history files... nothing found
  103. Checking `asp'... not infected
  104. Checking `bindshell'... not infected
  105. Checking `lkm'... chkproc: nothing detected
  106. chkdirs: nothing detected
  107. Checking `rexedcs'... not found
  108. Checking `sniffer'... lo: not promisc and no packet sniffer sockets
  109. eth1: PACKET SNIFFER(/sbin/wpa_supplicant[1373], /sbin/dhclient[2300])
  110. Checking `w55808'... not infected
  111. Checking `wted'... chkwtmp: nothing deleted
  112. Checking `scalper'... not infected
  113. Checking `slapper'... not infected
  114. Checking `z2'... chklastlog: nothing deleted
  115. Checking `chkutmp'... The tty of the following user process(es) were not found
  116. in /var/run/utmp !
  117. ! RUID PID TTY CMD
  118. ! .26.799970359 0 ode
  119. ! 1000 0 8.1065742251 /opt/google/chrome/chrome --type=renderer --lang=pt-BR --force-fieldtrials=CacheSensitivityAnalysis/No/ForceCompositingMode/disable/GlobalSdch/global_enable_sdch/InfiniteCache/No/OmniboxDisallowInlineHQP/Standard/OmniboxHQPNewScoring/Standard/OmniboxHUPCreat
  120. ! 1000 0 0.1940087178 /opt/google/chrome/chrome --type=renderer --lang=pt-BR --force-fieldtrials=CacheSensitivityAnalysis/No/ForceCompositingMode/disable/GlobalSdch/global_enable_sdch/InfiniteCache/No/OmniboxDisallowInlineHQP/Standard/OmniboxHQPNewScoring/Standard/OmniboxHUPCreat
  121. ! 7 0 1.578025983 1000 /opt/google/chrome/chrome --type=renderer --lang=pt-BR --force-fieldtrials=CacheSensitivityAnalysis/No/ForceCompositingMode/disable/GlobalSdch/global_enable_sdch/InfiniteCache/No/OmniboxDisallowInlineHQP/Standard/OmniboxHQPNewScoring/Standard/Omnibo
  122. ! 1000 0 3.2142966253 /opt/google/chrome/chrome --type=renderer --lang=pt-BR --force-fieldtrials=CacheSensitivityAnalysis/No/ForceCompositingMode/disable/GlobalSdch/global_enable_sdch/InfiniteCache/No/OmniboxDisallowInlineHQP/Standard/OmniboxHQPNewScoring/Standard/OmniboxHUPCreat
  123. ! 1000 2629 pts/2 tmux
  124. ! 1000 2586 pts/2 /bin/zsh
  125. ! 1000 2632 pts/5 -zsh
  126. ! 1000 12977 pts/7 sudo chkrootkit
  127. ! 1000 7438 pts/7 -zsh
  128. ! root 13128 pts/7 /bin/sh /usr/sbin/chkrootkit
  129. ! root 15290 pts/7 ./chkutmp
  130. ! root 15292 pts/7 ps axk tty,ruser,args -o tty,pid,ruser,args
  131. ! root 15291 pts/7 sh -c ps axk "tty,ruser,args" -o "tty,pid,ruser,args"
  132. chkutmp: nothing deleted
  133. Checking `OSX_RSPLUG'... not infected
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement