Advertisement
Guest User

Untitled

a guest
Nov 27th, 2012
266
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 19.78 KB | None | 0 0
  1. root@s1:~# rkhunter --check
  2. [ Rootkit Hunter version 1.3.6 ]
  3.  
  4. Checking system commands...
  5.  
  6. Performing 'strings' command checks
  7. Checking 'strings' command [ OK ]
  8.  
  9. Performing 'shared libraries' checks
  10. Checking for preloading variables [ None found ]
  11. Checking for preloaded libraries [ None found ]
  12. Checking LD_LIBRARY_PATH variable [ Not found ]
  13.  
  14. Performing file properties checks
  15. Checking for prerequisites [ OK ]
  16. /bin/bash [ OK ]
  17. /bin/cat [ OK ]
  18. /bin/chmod [ OK ]
  19. /bin/chown [ OK ]
  20. /bin/cp [ OK ]
  21. /bin/date [ OK ]
  22. /bin/df [ OK ]
  23. /bin/dmesg [ OK ]
  24. /bin/echo [ OK ]
  25. /bin/egrep [ OK ]
  26. /bin/fgrep [ OK ]
  27. /bin/fuser [ OK ]
  28. /bin/grep [ OK ]
  29. /bin/ip [ OK ]
  30. /bin/kill [ OK ]
  31. /bin/less [ OK ]
  32. /bin/login [ OK ]
  33. /bin/ls [ OK ]
  34. /bin/lsmod [ OK ]
  35. /bin/mktemp [ OK ]
  36. /bin/more [ OK ]
  37. /bin/mount [ OK ]
  38. /bin/mv [ OK ]
  39. /bin/netstat [ OK ]
  40. /bin/ps [ OK ]
  41. /bin/pwd [ OK ]
  42. /bin/readlink [ OK ]
  43. /bin/sed [ OK ]
  44. /bin/sh [ OK ]
  45. /bin/su [ OK ]
  46. /bin/touch [ OK ]
  47. /bin/uname [ OK ]
  48. /bin/which [ OK ]
  49. /usr/bin/awk [ OK ]
  50. /usr/bin/basename [ OK ]
  51. /usr/bin/chattr [ OK ]
  52. /usr/bin/curl [ OK ]
  53. /usr/bin/cut [ OK ]
  54. /usr/bin/diff [ OK ]
  55. /usr/bin/dirname [ OK ]
  56. /usr/bin/dpkg [ OK ]
  57. /usr/bin/dpkg-query [ OK ]
  58. /usr/bin/du [ OK ]
  59. /usr/bin/env [ OK ]
  60. /usr/bin/file [ OK ]
  61. /usr/bin/find [ OK ]
  62. /usr/bin/GET [ OK ]
  63. /usr/bin/groups [ OK ]
  64. /usr/bin/head [ OK ]
  65. /usr/bin/id [ OK ]
  66. /usr/bin/killall [ OK ]
  67. /usr/bin/last [ OK ]
  68. /usr/bin/lastlog [ OK ]
  69. /usr/bin/ldd [ OK ]
  70. /usr/bin/less [ OK ]
  71. /usr/bin/logger [ OK ]
  72. /usr/bin/lsattr [ OK ]
  73. /usr/bin/lsof [ OK ]
  74. /usr/bin/mail [ OK ]
  75. /usr/bin/md5sum [ OK ]
  76. /usr/bin/newgrp [ OK ]
  77. /usr/bin/passwd [ OK ]
  78. /usr/bin/perl [ OK ]
  79. /usr/bin/pgrep [ OK ]
  80. /usr/bin/pstree [ OK ]
  81. /usr/bin/rkhunter [ OK ]
  82. /usr/bin/runcon [ OK ]
  83. /usr/bin/sha1sum [ OK ]
  84. /usr/bin/sha224sum [ OK ]
  85. /usr/bin/sha256sum [ OK ]
  86. /usr/bin/sha384sum [ OK ]
  87. /usr/bin/sha512sum [ OK ]
  88. /usr/bin/size [ OK ]
  89. /usr/bin/sort [ OK ]
  90. /usr/bin/stat [ OK ]
  91. /usr/bin/strings [ OK ]
  92. /usr/bin/sudo [ OK ]
  93. /usr/bin/tail [ OK ]
  94. /usr/bin/test [ OK ]
  95. /usr/bin/top [ OK ]
  96. /usr/bin/touch [ OK ]
  97. /usr/bin/tr [ OK ]
  98. /usr/bin/uniq [ OK ]
  99. /usr/bin/users [ OK ]
  100. /usr/bin/vmstat [ OK ]
  101. /usr/bin/w [ OK ]
  102. /usr/bin/watch [ OK ]
  103. /usr/bin/wc [ OK ]
  104. /usr/bin/wget [ OK ]
  105. /usr/bin/whatis [ OK ]
  106. /usr/bin/whereis [ OK ]
  107. /usr/bin/which [ OK ]
  108. /usr/bin/who [ OK ]
  109. /usr/bin/whoami [ OK ]
  110. /usr/bin/mawk [ OK ]
  111. /usr/bin/lwp-request [ OK ]
  112. /usr/bin/heirloom-mailx [ OK ]
  113. /usr/bin/w.procps [ OK ]
  114. /sbin/depmod [ OK ]
  115. /sbin/ifconfig [ OK ]
  116. /sbin/ifdown [ OK ]
  117. /sbin/ifup [ OK ]
  118. /sbin/init [ OK ]
  119. /sbin/insmod [ OK ]
  120. /sbin/ip [ OK ]
  121. /sbin/lsmod [ OK ]
  122. /sbin/modinfo [ OK ]
  123. /sbin/modprobe [ OK ]
  124. /sbin/rmmod [ OK ]
  125. /sbin/runlevel [ OK ]
  126. /sbin/sulogin [ OK ]
  127. /sbin/sysctl [ OK ]
  128. /usr/sbin/adduser [ OK ]
  129. /usr/sbin/chroot [ OK ]
  130. /usr/sbin/cron [ OK ]
  131. /usr/sbin/groupadd [ OK ]
  132. /usr/sbin/groupdel [ OK ]
  133. /usr/sbin/groupmod [ OK ]
  134. /usr/sbin/grpck [ OK ]
  135. /usr/sbin/inetd [ OK ]
  136. /usr/sbin/nologin [ OK ]
  137. /usr/sbin/pwck [ OK ]
  138. /usr/sbin/rsyslogd [ OK ]
  139. /usr/sbin/tcpd [ OK ]
  140. /usr/sbin/useradd [ OK ]
  141. /usr/sbin/userdel [ OK ]
  142. /usr/sbin/usermod [ OK ]
  143. /usr/sbin/vipw [ OK ]
  144. /usr/sbin/unhide [ OK ]
  145. /usr/sbin/unhide-linux26 [ OK ]
  146.  
  147. [Press <ENTER> to continue]
  148.  
  149.  
  150. Checking for rootkits...
  151.  
  152. Performing check of known rootkit files and directories
  153. 55808 Trojan - Variant A [ Not found ]
  154. ADM Worm [ Not found ]
  155. AjaKit Rootkit [ Not found ]
  156. Adore Rootkit [ Not found ]
  157. aPa Kit [ Not found ]
  158. Apache Worm [ Not found ]
  159. Ambient (ark) Rootkit [ Not found ]
  160. Balaur Rootkit [ Not found ]
  161. BeastKit Rootkit [ Not found ]
  162. beX2 Rootkit [ Not found ]
  163. BOBKit Rootkit [ Not found ]
  164. cb Rootkit [ Not found ]
  165. CiNIK Worm (Slapper.B variant) [ Not found ]
  166. Danny-Boy's Abuse Kit [ Not found ]
  167. Devil RootKit [ Not found ]
  168. Dica-Kit Rootkit [ Not found ]
  169. Dreams Rootkit [ Not found ]
  170. Duarawkz Rootkit [ Not found ]
  171. Enye LKM [ Not found ]
  172. Flea Linux Rootkit [ Not found ]
  173. FreeBSD Rootkit [ Not found ]
  174. Fu Rootkit [ Not found ]
  175. Fuck`it Rootkit [ Not found ]
  176. GasKit Rootkit [ Not found ]
  177. Heroin LKM [ Not found ]
  178. HjC Kit [ Not found ]
  179. ignoKit Rootkit [ Not found ]
  180. iLLogiC Rootkit [ Not found ]
  181. IntoXonia-NG Rootkit [ Not found ]
  182. Irix Rootkit [ Not found ]
  183. Kitko Rootkit [ Not found ]
  184. Knark Rootkit [ Not found ]
  185. ld-linuxv.so Rootkit [ Not found ]
  186. Li0n Worm [ Not found ]
  187. Lockit / LJK2 Rootkit [ Not found ]
  188. Mood-NT Rootkit [ Not found ]
  189. MRK Rootkit [ Not found ]
  190. Ni0 Rootkit [ Not found ]
  191. Ohhara Rootkit [ Not found ]
  192. Optic Kit (Tux) Worm [ Not found ]
  193. Oz Rootkit [ Not found ]
  194. Phalanx Rootkit [ Not found ]
  195. Phalanx2 Rootkit [ Not found ]
  196. Phalanx2 Rootkit (extended tests) [ Not found ]
  197. Portacelo Rootkit [ Not found ]
  198. R3dstorm Toolkit [ Not found ]
  199. RH-Sharpe's Rootkit [ Not found ]
  200. RSHA's Rootkit [ Not found ]
  201. Scalper Worm [ Not found ]
  202. Sebek LKM [ Not found ]
  203. Shutdown Rootkit [ Not found ]
  204. SHV4 Rootkit [ Not found ]
  205. SHV5 Rootkit [ Not found ]
  206. Sin Rootkit [ Not found ]
  207. Slapper Worm [ Not found ]
  208. Sneakin Rootkit [ Not found ]
  209. 'Spanish' Rootkit [ Not found ]
  210. Suckit Rootkit [ Not found ]
  211. SunOS Rootkit [ Not found ]
  212. SunOS / NSDAP Rootkit [ Not found ]
  213. Superkit Rootkit [ Not found ]
  214. TBD (Telnet BackDoor) [ Not found ]
  215. TeLeKiT Rootkit [ Not found ]
  216. T0rn Rootkit [ Not found ]
  217. trNkit Rootkit [ Not found ]
  218. Trojanit Kit [ Not found ]
  219. Tuxtendo Rootkit [ Not found ]
  220. URK Rootkit [ Not found ]
  221. Vampire Rootkit [ Not found ]
  222. VcKit Rootkit [ Not found ]
  223. Volc Rootkit [ Not found ]
  224. Xzibit Rootkit [ Not found ]
  225. X-Org SunOS Rootkit [ Not found ]
  226. zaRwT.KiT Rootkit [ Not found ]
  227. ZK Rootkit [ Not found ]
  228.  
  229. Performing additional rootkit checks
  230. Suckit Rookit additional checks [ OK ]
  231. Checking for possible rootkit files and directories [ None found ]
  232. Checking for possible rootkit strings [ None found ]
  233.  
  234. Performing malware checks
  235. Checking running processes for suspicious files [ None found ]
  236. Checking for login backdoors [ None found ]
  237. Checking for suspicious directories [ None found ]
  238. Checking for sniffer log files [ None found ]
  239.  
  240. Performing trojan specific checks
  241. Checking for enabled inetd services [ OK ]
  242. Checking for Apache backdoor [ Not found ]
  243.  
  244. Performing Linux specific checks
  245. Checking loaded kernel modules [ OK ]
  246. Checking kernel module names [ OK ]
  247.  
  248. [Press <ENTER> to continue]
  249.  
  250.  
  251. Checking the network...
  252.  
  253. Performing check for backdoor ports
  254. Checking for TCP port 1524 [ Not found ]
  255. Checking for TCP port 1984 [ Not found ]
  256. Checking for UDP port 2001 [ Not found ]
  257. Checking for TCP port 2006 [ Not found ]
  258. Checking for TCP port 2128 [ Not found ]
  259. Checking for TCP port 6666 [ Not found ]
  260. Checking for TCP port 6667 [ Not found ]
  261. Checking for TCP port 6668 [ Not found ]
  262. Checking for TCP port 6669 [ Not found ]
  263. Checking for TCP port 7000 [ Not found ]
  264. Checking for TCP port 13000 [ Not found ]
  265. Checking for TCP port 14856 [ Not found ]
  266. Checking for TCP port 25000 [ Not found ]
  267. Checking for TCP port 29812 [ Not found ]
  268. Checking for TCP port 31337 [ Not found ]
  269. Checking for TCP port 32982 [ Not found ]
  270. Checking for TCP port 33369 [ Not found ]
  271. Checking for TCP port 47107 [ Not found ]
  272. Checking for TCP port 47018 [ Not found ]
  273. Checking for TCP port 60922 [ Not found ]
  274. Checking for TCP port 62883 [ Not found ]
  275. Checking for TCP port 65535 [ Not found ]
  276.  
  277. Performing checks on the network interfaces
  278. Checking for promiscuous interfaces [ None found ]
  279.  
  280. [Press <ENTER> to continue]
  281.  
  282.  
  283. Checking the local host...
  284.  
  285. Performing system boot checks
  286. Checking for local host name [ Found ]
  287. Checking for system startup files [ Found ]
  288. Checking system startup files for malware [ None found ]
  289.  
  290. Performing group and account checks
  291. Checking for passwd file [ Found ]
  292. Checking for root equivalent (UID 0) accounts [ None found ]
  293. Checking for passwordless accounts [ None found ]
  294. Checking for passwd file changes [ Warning ]
  295. Checking for group file changes [ Warning ]
  296. Checking root account shell history files [ OK ]
  297.  
  298. Performing system configuration file checks
  299. Checking for SSH configuration file [ Found ]
  300. Checking if SSH root access is allowed [ Not allowed ]
  301. Checking if SSH protocol v1 is allowed [ Not allowed ]
  302. Checking for running syslog daemon [ Found ]
  303. Checking for syslog configuration file [ Found ]
  304. Checking if syslog remote logging is allowed [ Not allowed ]
  305.  
  306. Performing filesystem checks
  307. Checking /dev for suspicious file types [ None found ]
  308. Checking for hidden files and directories [ Warning ]
  309.  
  310. [Press <ENTER> to continue]
  311.  
  312.  
  313.  
  314. System checks summary
  315. =====================
  316.  
  317. File properties checks...
  318. Files checked: 130
  319. Suspect files: 0
  320.  
  321. Rootkit checks...
  322. Rootkits checked : 243
  323. Possible rootkits: 0
  324.  
  325. Applications checks...
  326. All checks skipped
  327.  
  328. The system checks took: 3 minutes and 41 seconds
  329.  
  330. All results have been written to the log file (/var/log/rkhunter.log)
  331.  
  332. One or more warnings have been found while checking the system.
  333. Please check the log file (/var/log/rkhunter.log)
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement