Advertisement
Guest User

chrootkit

a guest
Feb 8th, 2011
219
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 4.90 KB | None | 0 0
  1. ROOTDIR is `/'
  2. Checking `amd'... not found
  3. Checking `basename'... not infected
  4. Checking `biff'... not found
  5. Checking `chfn'... not infected
  6. Checking `chsh'... not infected
  7. Checking `cron'... not infected
  8. Checking `crontab'... not infected
  9. Checking `date'... not infected
  10. Checking `du'... not infected
  11. Checking `dirname'... not infected
  12. Checking `echo'... not infected
  13. Checking `egrep'... not infected
  14. Checking `env'... not infected
  15. Checking `find'... not infected
  16. Checking `fingerd'... not found
  17. Checking `gpm'... not found
  18. Checking `grep'... not infected
  19. Checking `hdparm'... not found
  20. Checking `su'... not infected
  21. Checking `ifconfig'... INFECTED
  22. Checking `inetd'... not tested
  23. Checking `inetdconf'... not infected
  24. Checking `identd'... not found
  25. Checking `init'... not infected
  26. Checking `killall'... not infected
  27. Checking `ldsopreload'... can't exec ./strings-static, not tested
  28. Checking `login'... not infected
  29. Checking `ls'... not infected
  30. Checking `lsof'... not infected
  31. Checking `mail'... not infected
  32. Checking `mingetty'... not found
  33. Checking `netstat'... INFECTED
  34. Checking `named'... not infected
  35. Checking `passwd'... not infected
  36. Checking `pidof'... not infected
  37. Checking `pop2'... not found
  38. Checking `pop3'... not found
  39. Checking `ps'... not infected
  40. Checking `pstree'... INFECTED
  41. Checking `rpcinfo'... not infected
  42. Checking `rlogind'... not found
  43. Checking `rshd'... not found
  44. Checking `slogin'... not infected
  45. Checking `sendmail'... not infected
  46. Checking `sshd'... not infected
  47. Checking `syslogd'... not infected
  48. Checking `tar'... not infected
  49. Checking `tcpd'... not infected
  50. Checking `tcpdump'... not infected
  51. Checking `top'... INFECTED
  52. Checking `telnetd'... not found
  53. Checking `timed'... not found
  54. Checking `traceroute'... not infected
  55. Checking `vdir'... not infected
  56. Checking `w'... not infected
  57. Checking `write'... not infected
  58. Checking `aliens'... no suspect files
  59. Searching for sniffer's logs, it may take a while... nothing found
  60. Searching for HiDrootkit's default dir... nothing found
  61. Searching for t0rn's default files and dirs... nothing found
  62. Searching for t0rn's v8 defaults... Possible t0rn v8 \(or variation\) rootkit installed
  63. Searching for Lion Worm default files and dirs... nothing found
  64. Searching for RSHA's default files and dir... nothing found
  65. Searching for RH-Sharpe's default files... nothing found
  66. Searching for Ambient's rootkit (ark) default files and dirs... nothing found
  67. Searching for suspicious files and dirs, it may take a while...
  68. /usr/lib/cgi-bin/MT-5.02-en/php/extlib/smarty/.cvsignore /usr/lib/jvm/java-6-sun-1.6.0.10/.systemPrefs /usr/lib/jvm/.java-6-sun.jinfo /lib/init/rw/.ramfs
  69.  
  70. Searching for LPD Worm files and dirs... nothing found
  71. Searching for Ramen Worm files and dirs... nothing found
  72. Searching for Maniac files and dirs... nothing found
  73. Searching for RK17 files and dirs... nothing found
  74. Searching for Ducoci rootkit... nothing found
  75. Searching for Adore Worm... nothing found
  76. Searching for ShitC Worm... nothing found
  77. Searching for Omega Worm... nothing found
  78. Searching for Sadmind/IIS Worm... nothing found
  79. Searching for MonKit... nothing found
  80. Searching for Showtee... Warning: Possible Showtee Rootkit installed
  81. Searching for OpticKit... nothing found
  82. Searching for T.R.K... nothing found
  83. Searching for Mithra... nothing found
  84. Searching for LOC rootkit... nothing found
  85. Searching for Romanian rootkit... /usr/include/file.h /usr/include/proc.h
  86. Searching for Suckit rootkit... nothing found
  87. Searching for Volc rootkit... nothing found
  88. Searching for Gold2 rootkit... nothing found
  89. Searching for TC2 Worm default files and dirs... nothing found
  90. Searching for Anonoying rootkit default files and dirs... nothing found
  91. Searching for ZK rootkit default files and dirs... nothing found
  92. Searching for ShKit rootkit default files and dirs... nothing found
  93. Searching for AjaKit rootkit default files and dirs... nothing found
  94. Searching for zaRwT rootkit default files and dirs... nothing found
  95. Searching for Madalin rootkit default files... nothing found
  96. Searching for Fu rootkit default files... nothing found
  97. Searching for ESRK rootkit default files... nothing found
  98. Searching for rootedoor... nothing found
  99. Searching for ENYELKM rootkit default files... nothing found
  100. Searching for common ssh-scanners default files... nothing found
  101. Searching for suspect PHP files... nothing found
  102. Searching for anomalies in shell history files... nothing found
  103. Checking `asp'... not infected
  104. Checking `bindshell'... not infected
  105. Checking `lkm'... not tested: can't exec
  106. Checking `rexedcs'... not found
  107. Checking `sniffer'... not tested: can't exec ./ifpromisc
  108. Checking `w55808'... not infected
  109. Checking `wted'... not tested: can't exec ./chkwtmp
  110. Checking `scalper'... not infected
  111. Checking `slapper'... not infected
  112. Checking `z2'... not tested: can't exec ./chklastlog
  113. Checking `chkutmp'... not tested: can't exec ./chkutmp
  114. Checking `OSX_RSPLUG'... not infected
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement