Advertisement
Guest User

Rkhunter log

a guest
Mar 22nd, 2017
239
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 18.47 KB | None | 0 0
  1. [ Rootkit Hunter version 1.4.2 ]
  2.  
  3. Checking system commands...
  4.  
  5. Performing 'strings' command checks
  6. Checking 'strings' command [ OK ]
  7.  
  8. Performing 'shared libraries' checks
  9. Checking for preloading variables [ None found ]
  10. Checking for preloaded libraries [ None found ]
  11. Checking LD_LIBRARY_PATH variable [ Not found ]
  12.  
  13. Performing file properties checks
  14. Checking for prerequisites [ OK ]
  15. /usr/sbin/adduser [ OK ]
  16. /usr/sbin/chroot [ OK ]
  17. /usr/sbin/cron [ OK ]
  18. /usr/sbin/groupadd [ OK ]
  19. /usr/sbin/groupdel [ OK ]
  20. /usr/sbin/groupmod [ OK ]
  21. /usr/sbin/grpck [ OK ]
  22. /usr/sbin/nologin [ OK ]
  23. /usr/sbin/pwck [ OK ]
  24. /usr/sbin/rsyslogd [ OK ]
  25. /usr/sbin/sshd [ OK ]
  26. /usr/sbin/tcpd [ OK ]
  27. /usr/sbin/useradd [ OK ]
  28. /usr/sbin/userdel [ OK ]
  29. /usr/sbin/usermod [ OK ]
  30. /usr/sbin/vipw [ OK ]
  31. /usr/bin/awk [ OK ]
  32. /usr/bin/basename [ OK ]
  33. /usr/bin/chattr [ OK ]
  34. /usr/bin/curl [ OK ]
  35. /usr/bin/cut [ OK ]
  36. /usr/bin/diff [ OK ]
  37. /usr/bin/dirname [ OK ]
  38. /usr/bin/dpkg [ OK ]
  39. /usr/bin/dpkg-query [ OK ]
  40. /usr/bin/du [ OK ]
  41. /usr/bin/env [ OK ]
  42. /usr/bin/file [ OK ]
  43. /usr/bin/find [ OK ]
  44. /usr/bin/GET [ OK ]
  45. /usr/bin/groups [ OK ]
  46. /usr/bin/head [ OK ]
  47. /usr/bin/id [ OK ]
  48. /usr/bin/killall [ OK ]
  49. /usr/bin/last [ OK ]
  50. /usr/bin/lastlog [ OK ]
  51. /usr/bin/ldd [ OK ]
  52. /usr/bin/less [ OK ]
  53. /usr/bin/locate [ OK ]
  54. /usr/bin/logger [ OK ]
  55. /usr/bin/lsattr [ OK ]
  56. /usr/bin/lsof [ OK ]
  57. /usr/bin/md5sum [ OK ]
  58. /usr/bin/mlocate [ OK ]
  59. /usr/bin/newgrp [ OK ]
  60. /usr/bin/passwd [ OK ]
  61. /usr/bin/perl [ OK ]
  62. /usr/bin/pgrep [ OK ]
  63. /usr/bin/pkill [ OK ]
  64. /usr/bin/pstree [ OK ]
  65. /usr/bin/rkhunter [ OK ]
  66. /usr/bin/rpm [ OK ]
  67. /usr/bin/runcon [ OK ]
  68. /usr/bin/sha1sum [ OK ]
  69. /usr/bin/sha224sum [ OK ]
  70. /usr/bin/sha256sum [ OK ]
  71. /usr/bin/sha384sum [ OK ]
  72. /usr/bin/sha512sum [ OK ]
  73. /usr/bin/size [ OK ]
  74. /usr/bin/sort [ OK ]
  75. /usr/bin/ssh [ OK ]
  76. /usr/bin/stat [ OK ]
  77. /usr/bin/strace [ OK ]
  78. /usr/bin/strings [ OK ]
  79. /usr/bin/sudo [ OK ]
  80. /usr/bin/tail [ OK ]
  81. /usr/bin/telnet [ OK ]
  82. /usr/bin/test [ OK ]
  83. /usr/bin/top [ OK ]
  84. /usr/bin/touch [ OK ]
  85. /usr/bin/tr [ OK ]
  86. /usr/bin/uniq [ OK ]
  87. /usr/bin/users [ OK ]
  88. /usr/bin/vmstat [ OK ]
  89. /usr/bin/w [ OK ]
  90. /usr/bin/watch [ OK ]
  91. /usr/bin/wc [ OK ]
  92. /usr/bin/wget [ OK ]
  93. /usr/bin/whatis [ OK ]
  94. /usr/bin/whereis [ OK ]
  95. /usr/bin/which [ OK ]
  96. /usr/bin/who [ OK ]
  97. /usr/bin/whoami [ OK ]
  98. /usr/bin/gawk [ OK ]
  99. /usr/bin/lwp-request [ Warning ]
  100. /usr/bin/x86_64-linux-gnu-size [ OK ]
  101. /usr/bin/x86_64-linux-gnu-strings [ OK ]
  102. /usr/bin/telnet.netkit [ OK ]
  103. /usr/bin/w.procps [ OK ]
  104. /sbin/depmod [ OK ]
  105. /sbin/fsck [ OK ]
  106. /sbin/ifconfig [ OK ]
  107. /sbin/ifdown [ OK ]
  108. /sbin/ifup [ OK ]
  109. /sbin/init [ OK ]
  110. /sbin/insmod [ OK ]
  111. /sbin/ip [ OK ]
  112. /sbin/lsmod [ OK ]
  113. /sbin/modinfo [ OK ]
  114. /sbin/modprobe [ OK ]
  115. /sbin/rmmod [ OK ]
  116. /sbin/route [ OK ]
  117. /sbin/runlevel [ OK ]
  118. /sbin/sulogin [ OK ]
  119. /sbin/sysctl [ OK ]
  120. /bin/bash [ OK ]
  121. /bin/cat [ OK ]
  122. /bin/chmod [ OK ]
  123. /bin/chown [ OK ]
  124. /bin/cp [ OK ]
  125. /bin/date [ OK ]
  126. /bin/df [ OK ]
  127. /bin/dmesg [ OK ]
  128. /bin/echo [ OK ]
  129. /bin/ed [ OK ]
  130. /bin/egrep [ OK ]
  131. /bin/fgrep [ OK ]
  132. /bin/fuser [ OK ]
  133. /bin/grep [ OK ]
  134. /bin/ip [ OK ]
  135. /bin/kill [ OK ]
  136. /bin/less [ OK ]
  137. /bin/login [ OK ]
  138. /bin/ls [ OK ]
  139. /bin/lsmod [ OK ]
  140. /bin/mktemp [ OK ]
  141. /bin/more [ OK ]
  142. /bin/mount [ OK ]
  143. /bin/mv [ OK ]
  144. /bin/netstat [ OK ]
  145. /bin/ping [ OK ]
  146. /bin/ps [ OK ]
  147. /bin/pwd [ OK ]
  148. /bin/readlink [ OK ]
  149. /bin/sed [ OK ]
  150. /bin/sh [ OK ]
  151. /bin/su [ OK ]
  152. /bin/touch [ OK ]
  153. /bin/uname [ OK ]
  154. /bin/which [ OK ]
  155. /bin/kmod [ OK ]
  156. /bin/systemd [ OK ]
  157. /bin/systemctl [ OK ]
  158. /bin/dash [ OK ]
  159. /lib/systemd/systemd [ OK ]
  160.  
  161. [Press <ENTER> to continue]
  162.  
  163.  
  164. Checking for rootkits...
  165.  
  166. Performing check of known rootkit files and directories
  167. 55808 Trojan - Variant A [ Not found ]
  168. ADM Worm [ Not found ]
  169. AjaKit Rootkit [ Not found ]
  170. Adore Rootkit [ Not found ]
  171. aPa Kit [ Not found ]
  172. Apache Worm [ Not found ]
  173. Ambient (ark) Rootkit [ Not found ]
  174. Balaur Rootkit [ Not found ]
  175. BeastKit Rootkit [ Not found ]
  176. beX2 Rootkit [ Not found ]
  177. BOBKit Rootkit [ Not found ]
  178. cb Rootkit [ Not found ]
  179. CiNIK Worm (Slapper.B variant) [ Not found ]
  180. Danny-Boy's Abuse Kit [ Not found ]
  181. Devil RootKit [ Not found ]
  182. Dica-Kit Rootkit [ Not found ]
  183. Dreams Rootkit [ Not found ]
  184. Duarawkz Rootkit [ Not found ]
  185. Enye LKM [ Not found ]
  186. Flea Linux Rootkit [ Not found ]
  187. Fu Rootkit [ Not found ]
  188. Fuck`it Rootkit [ Not found ]
  189. GasKit Rootkit [ Not found ]
  190. Heroin LKM [ Not found ]
  191. HjC Kit [ Not found ]
  192. ignoKit Rootkit [ Not found ]
  193. IntoXonia-NG Rootkit [ Not found ]
  194. Irix Rootkit [ Not found ]
  195. Jynx Rootkit [ Not found ]
  196. KBeast Rootkit [ Not found ]
  197. Kitko Rootkit [ Not found ]
  198. Knark Rootkit [ Not found ]
  199. ld-linuxv.so Rootkit [ Not found ]
  200. Li0n Worm [ Not found ]
  201. Lockit / LJK2 Rootkit [ Not found ]
  202. Mood-NT Rootkit [ Not found ]
  203. MRK Rootkit [ Not found ]
  204. Ni0 Rootkit [ Not found ]
  205. Ohhara Rootkit [ Not found ]
  206. Optic Kit (Tux) Worm [ Not found ]
  207. Oz Rootkit [ Not found ]
  208. Phalanx Rootkit [ Not found ]
  209. Phalanx2 Rootkit [ Not found ]
  210. Phalanx2 Rootkit (extended tests) [ Not found ]
  211. Portacelo Rootkit [ Not found ]
  212. R3dstorm Toolkit [ Not found ]
  213. RH-Sharpe's Rootkit [ Not found ]
  214. RSHA's Rootkit [ Not found ]
  215. Scalper Worm [ Not found ]
  216. Sebek LKM [ Not found ]
  217. Shutdown Rootkit [ Not found ]
  218. SHV4 Rootkit [ Not found ]
  219. SHV5 Rootkit [ Not found ]
  220. Sin Rootkit [ Not found ]
  221. Slapper Worm [ Not found ]
  222. Sneakin Rootkit [ Not found ]
  223. 'Spanish' Rootkit [ Not found ]
  224. Suckit Rootkit [ Not found ]
  225. Superkit Rootkit [ Not found ]
  226. TBD (Telnet BackDoor) [ Not found ]
  227. TeLeKiT Rootkit [ Not found ]
  228. T0rn Rootkit [ Not found ]
  229. trNkit Rootkit [ Not found ]
  230. Trojanit Kit [ Not found ]
  231. Tuxtendo Rootkit [ Not found ]
  232. URK Rootkit [ Not found ]
  233. Vampire Rootkit [ Not found ]
  234. VcKit Rootkit [ Not found ]
  235. Volc Rootkit [ Not found ]
  236. Xzibit Rootkit [ Not found ]
  237. zaRwT.KiT Rootkit [ Not found ]
  238. ZK Rootkit [ Not found ]
  239.  
  240. [Press <ENTER> to continue]
  241.  
  242.  
  243. Performing additional rootkit checks
  244. Suckit Rookit additional checks [ OK ]
  245. Checking for possible rootkit files and directories [ None found ]
  246. Checking for possible rootkit strings [ None found ]
  247.  
  248. Performing malware checks
  249. Checking running processes for suspicious files [ None found ]
  250. Checking for login backdoors [ None found ]
  251. Checking for suspicious directories [ None found ]
  252. Checking for sniffer log files [ None found ]
  253. Suspicious Shared Memory segments [ None found ]
  254.  
  255. Performing Linux specific checks
  256. Checking loaded kernel modules [ OK ]
  257. Checking kernel module names [ OK ]
  258.  
  259. [Press <ENTER> to continue]
  260.  
  261.  
  262. Checking the network...
  263.  
  264. Performing checks on the network ports
  265. Checking for backdoor ports [ None found ]
  266. Checking for hidden ports [ Skipped ]
  267.  
  268. Performing checks on the network interfaces
  269. Checking for promiscuous interfaces [ None found ]
  270.  
  271. Checking the local host...
  272.  
  273. Performing system boot checks
  274. Checking for local host name [ Found ]
  275. Checking for system startup files [ Found ]
  276. Checking system startup files for malware [ None found ]
  277.  
  278. Performing group and account checks
  279. Checking for passwd file [ Found ]
  280. Checking for root equivalent (UID 0) accounts [ None found ]
  281. Checking for passwordless accounts [ None found ]
  282. Checking for passwd file changes [ None found ]
  283. Checking for group file changes [ None found ]
  284. Checking root account shell history files [ OK ]
  285.  
  286. Performing system configuration file checks
  287. Checking for an SSH configuration file [ Found ]
  288. Checking if SSH root access is allowed [ Warning ]
  289. Checking if SSH protocol v1 is allowed [ Not allowed ]
  290. Checking for a running system logging daemon [ Found ]
  291. Checking for a system logging configuration file [ Found ]
  292. Checking if syslog remote logging is allowed [ Not allowed ]
  293.  
  294. Performing filesystem checks
  295. Checking /dev for suspicious file types [ Warning ]
  296. Checking for hidden files and directories [ Warning ]
  297.  
  298. [Press <ENTER> to continue]
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement