Advertisement
Guest User

Untitled

a guest
Sep 25th, 2011
191
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 23.11 KB | None | 0 0
  1. Root > rkhunter --update
  2. [ Rootkit Hunter version 1.3.8 ]
  3.  
  4. Checking rkhunter data files...
  5. Checking file mirrors.dat [ No update ]
  6. Checking file programs_bad.dat [ No update ]
  7. Checking file backdoorports.dat [ No update ]
  8. Checking file suspscan.dat [ No update ]
  9. Checking file i18n/cn [ No update ]
  10. Checking file i18n/de [ No update ]
  11. Checking file i18n/en [ No update ]
  12. Checking file i18n/zh [ No update ]
  13. Checking file i18n/zh.utf8 [ No update ]
  14. Root > rkhunter --check --skip-keypress
  15. [ Rootkit Hunter version 1.3.8 ]
  16.  
  17. Checking system commands...
  18.  
  19. Performing 'strings' command checks
  20. Checking 'strings' command [ OK ]
  21.  
  22. Performing 'shared libraries' checks
  23. Checking for preloading variables [ None found ]
  24. Checking for preloaded libraries [ None found ]
  25. Checking LD_LIBRARY_PATH variable [ Not found ]
  26.  
  27. Performing file properties checks
  28. Checking for prerequisites [ Warning ]
  29. /sbin/depmod [ OK ]
  30. /sbin/fsck [ OK ]
  31. /sbin/ifconfig [ OK ]
  32. /sbin/init [ OK ]
  33. /sbin/insmod [ OK ]
  34. /sbin/ip [ OK ]
  35. /sbin/lsmod [ OK ]
  36. /sbin/modinfo [ OK ]
  37. /sbin/modprobe [ OK ]
  38. /sbin/mount [ OK ]
  39. /sbin/nologin [ OK ]
  40. /sbin/rmmod [ OK ]
  41. /sbin/route [ OK ]
  42. /sbin/runlevel [ OK ]
  43. /sbin/sulogin [ OK ]
  44. /sbin/sysctl [ OK ]
  45. /usr/sbin/adduser [ Warning ]
  46. /usr/sbin/groupadd [ OK ]
  47. /usr/sbin/groupdel [ OK ]
  48. /usr/sbin/groupmod [ OK ]
  49. /usr/sbin/grpck [ OK ]
  50. /usr/sbin/inetd [ OK ]
  51. /usr/sbin/ip [ OK ]
  52. /usr/sbin/lastlog [ OK ]
  53. /usr/sbin/pwck [ OK ]
  54. /usr/sbin/syslogd [ OK ]
  55. /usr/sbin/tcpd [ OK ]
  56. /usr/sbin/useradd [ OK ]
  57. /usr/sbin/userdel [ OK ]
  58. /usr/sbin/usermod [ OK ]
  59. /usr/sbin/vipw [ OK ]
  60. /bin/awk [ OK ]
  61. /bin/basename [ OK ]
  62. /bin/bash [ OK ]
  63. /bin/cat [ OK ]
  64. /bin/chmod [ OK ]
  65. /bin/chown [ OK ]
  66. /bin/chroot [ OK ]
  67. /bin/cp [ OK ]
  68. /bin/csh [ OK ]
  69. /bin/cut [ OK ]
  70. /bin/date [ OK ]
  71. /bin/df [ OK ]
  72. /bin/dirname [ OK ]
  73. /bin/dmesg [ OK ]
  74. /bin/du [ OK ]
  75. /bin/echo [ OK ]
  76. /bin/ed [ OK ]
  77. /bin/egrep [ OK ]
  78. /bin/env [ OK ]
  79. /bin/fgrep [ OK ]
  80. /bin/grep [ OK ]
  81. /bin/groups [ OK ]
  82. /bin/head [ OK ]
  83. /bin/id [ OK ]
  84. /bin/kill [ OK ]
  85. /bin/killall [ OK ]
  86. /bin/login [ OK ]
  87. /bin/ls [ OK ]
  88. /bin/lsmod [ OK ]
  89. /bin/mail [ OK ]
  90. /bin/md5sum [ OK ]
  91. /bin/more [ OK ]
  92. /bin/mount [ OK ]
  93. /bin/mv [ OK ]
  94. /bin/netstat [ OK ]
  95. /bin/ps [ OK ]
  96. /bin/pwd [ OK ]
  97. /bin/readlink [ OK ]
  98. /bin/rpm [ OK ]
  99. /bin/runcon [ OK ]
  100. /bin/sed [ OK ]
  101. /bin/sh [ OK ]
  102. /bin/sha1sum [ OK ]
  103. /bin/sha224sum [ OK ]
  104. /bin/sha256sum [ OK ]
  105. /bin/sha384sum [ OK ]
  106. /bin/sha512sum [ OK ]
  107. /bin/sort [ OK ]
  108. /bin/stat [ OK ]
  109. /bin/su [ OK ]
  110. /bin/sulogin [ OK ]
  111. /bin/tail [ OK ]
  112. /bin/test [ OK ]
  113. /bin/touch [ OK ]
  114. /bin/tr [ OK ]
  115. /bin/uname [ OK ]
  116. /bin/uniq [ OK ]
  117. /bin/users [ OK ]
  118. /bin/wc [ OK ]
  119. /bin/which [ OK ]
  120. /bin/who [ OK ]
  121. /bin/whoami [ OK ]
  122. /bin/gawk-3.1.8 [ OK ]
  123. /bin/tcsh [ OK ]
  124. /usr/bin/awk [ OK ]
  125. /usr/bin/basename [ OK ]
  126. /usr/bin/bash [ OK ]
  127. /usr/bin/cat [ OK ]
  128. /usr/bin/chattr [ OK ]
  129. /usr/bin/chmod [ OK ]
  130. /usr/bin/chown [ OK ]
  131. /usr/bin/chroot [ OK ]
  132. /usr/bin/cp [ OK ]
  133. /usr/bin/curl [ OK ]
  134. /usr/bin/cut [ OK ]
  135. /usr/bin/date [ OK ]
  136. /usr/bin/df [ OK ]
  137. /usr/bin/diff [ OK ]
  138. /usr/bin/dirname [ OK ]
  139. /usr/bin/du [ OK ]
  140. /usr/bin/echo [ OK ]
  141. /usr/bin/ed [ OK ]
  142. /usr/bin/egrep [ OK ]
  143. /usr/bin/env [ OK ]
  144. /usr/bin/fgrep [ OK ]
  145. /usr/bin/file [ OK ]
  146. /usr/bin/find [ OK ]
  147. /usr/bin/fuser [ OK ]
  148. /usr/bin/grep [ OK ]
  149. /usr/bin/groups [ OK ]
  150. /usr/bin/head [ OK ]
  151. /usr/bin/id [ OK ]
  152. /usr/bin/last [ OK ]
  153. /usr/bin/lastlog [ OK ]
  154. /usr/bin/ldd [ Warning ]
  155. /usr/bin/less [ OK ]
  156. /usr/bin/links [ OK ]
  157. /usr/bin/locate [ OK ]
  158. /usr/bin/logger [ OK ]
  159. /usr/bin/ls [ OK ]
  160. /usr/bin/lsattr [ OK ]
  161. /usr/bin/lsof [ OK ]
  162. /usr/bin/lynx [ OK ]
  163. /usr/bin/mail [ OK ]
  164. /usr/bin/md5sum [ OK ]
  165. /usr/bin/mktemp [ OK ]
  166. /usr/bin/more [ OK ]
  167. /usr/bin/mv [ OK ]
  168. /usr/bin/newgrp [ OK ]
  169. /usr/bin/passwd [ OK ]
  170. /usr/bin/perl [ OK ]
  171. /usr/bin/pgrep [ OK ]
  172. /usr/bin/ps [ OK ]
  173. /usr/bin/pstree [ OK ]
  174. /usr/bin/pwd [ OK ]
  175. /usr/bin/readlink [ OK ]
  176. /usr/bin/rkhunter [ OK ]
  177. /usr/bin/runcon [ OK ]
  178. /usr/bin/sed [ OK ]
  179. /usr/bin/sha1sum [ OK ]
  180. /usr/bin/sha224sum [ OK ]
  181. /usr/bin/sha256sum [ OK ]
  182. /usr/bin/sha384sum [ OK ]
  183. /usr/bin/sha512sum [ OK ]
  184. /usr/bin/size [ OK ]
  185. /usr/bin/slocate [ OK ]
  186. /usr/bin/sort [ OK ]
  187. /usr/bin/stat [ OK ]
  188. /usr/bin/strace [ OK ]
  189. /usr/bin/strings [ OK ]
  190. /usr/bin/sudo [ OK ]
  191. /usr/bin/tail [ OK ]
  192. /usr/bin/test [ OK ]
  193. /usr/bin/top [ OK ]
  194. /usr/bin/touch [ OK ]
  195. /usr/bin/tr [ OK ]
  196. /usr/bin/uname [ OK ]
  197. /usr/bin/uniq [ OK ]
  198. /usr/bin/users [ OK ]
  199. /usr/bin/vmstat [ OK ]
  200. /usr/bin/w [ OK ]
  201. /usr/bin/watch [ OK ]
  202. /usr/bin/wc [ OK ]
  203. /usr/bin/wget [ OK ]
  204. /usr/bin/whatis [ Warning ]
  205. /usr/bin/whereis [ OK ]
  206. /usr/bin/which [ OK ]
  207. /usr/bin/who [ OK ]
  208. /usr/bin/whoami [ OK ]
  209. /usr/bin/gawk-3.1.8 [ OK ]
  210. /usr/bin/mailx [ OK ]
  211. /usr/bin/perl5.12.3 [ OK ]
  212. /usr/bin/pkill [ OK ]
  213. /etc/rkhunter.conf [ OK ]
  214.  
  215. Checking for rootkits...
  216.  
  217. Performing check of known rootkit files and directories
  218. 55808 Trojan - Variant A [ Not found ]
  219. ADM Worm [ Not found ]
  220. AjaKit Rootkit [ Not found ]
  221. Adore Rootkit [ Not found ]
  222. aPa Kit [ Not found ]
  223. Apache Worm [ Not found ]
  224. Ambient (ark) Rootkit [ Not found ]
  225. Balaur Rootkit [ Not found ]
  226. BeastKit Rootkit [ Not found ]
  227. beX2 Rootkit [ Not found ]
  228. BOBKit Rootkit [ Not found ]
  229. cb Rootkit [ Not found ]
  230. CiNIK Worm (Slapper.B variant) [ Not found ]
  231. Danny-Boy's Abuse Kit [ Not found ]
  232. Devil RootKit [ Not found ]
  233. Dica-Kit Rootkit [ Not found ]
  234. Dreams Rootkit [ Not found ]
  235. Duarawkz Rootkit [ Not found ]
  236. Enye LKM [ Not found ]
  237. Flea Linux Rootkit [ Not found ]
  238. FreeBSD Rootkit [ Not found ]
  239. Fu Rootkit [ Not found ]
  240. Fuck`it Rootkit [ Not found ]
  241. GasKit Rootkit [ Not found ]
  242. Heroin LKM [ Not found ]
  243. HjC Kit [ Not found ]
  244. ignoKit Rootkit [ Not found ]
  245. iLLogiC Rootkit [ Not found ]
  246. IntoXonia-NG Rootkit [ Not found ]
  247. Irix Rootkit [ Not found ]
  248. Kitko Rootkit [ Not found ]
  249. Knark Rootkit [ Not found ]
  250. ld-linuxv.so Rootkit [ Not found ]
  251. Li0n Worm [ Not found ]
  252. Lockit / LJK2 Rootkit [ Not found ]
  253. Mood-NT Rootkit [ Not found ]
  254. MRK Rootkit [ Not found ]
  255. Ni0 Rootkit [ Not found ]
  256. Ohhara Rootkit [ Not found ]
  257. Optic Kit (Tux) Worm [ Not found ]
  258. Oz Rootkit [ Not found ]
  259. Phalanx Rootkit [ Not found ]
  260. Phalanx2 Rootkit [ Not found ]
  261. Phalanx2 Rootkit (extended tests) [ Not found ]
  262. Portacelo Rootkit [ Not found ]
  263. R3dstorm Toolkit [ Not found ]
  264. RH-Sharpe's Rootkit [ Not found ]
  265. RSHA's Rootkit [ Not found ]
  266. Scalper Worm [ Not found ]
  267. Sebek LKM [ Not found ]
  268. Shutdown Rootkit [ Not found ]
  269. SHV4 Rootkit [ Not found ]
  270. SHV5 Rootkit [ Not found ]
  271. Sin Rootkit [ Not found ]
  272. Slapper Worm [ Not found ]
  273. Sneakin Rootkit [ Not found ]
  274. 'Spanish' Rootkit [ Not found ]
  275. Suckit Rootkit [ Not found ]
  276. SunOS Rootkit [ Not found ]
  277. SunOS / NSDAP Rootkit [ Not found ]
  278. Superkit Rootkit [ Not found ]
  279. TBD (Telnet BackDoor) [ Not found ]
  280. TeLeKiT Rootkit [ Not found ]
  281. T0rn Rootkit [ Not found ]
  282. trNkit Rootkit [ Not found ]
  283. Trojanit Kit [ Not found ]
  284. Tuxtendo Rootkit [ Not found ]
  285. URK Rootkit [ Not found ]
  286. Vampire Rootkit [ Not found ]
  287. VcKit Rootkit [ Not found ]
  288. Volc Rootkit [ Not found ]
  289. Xzibit Rootkit [ Not found ]
  290. X-Org SunOS Rootkit [ Not found ]
  291. zaRwT.KiT Rootkit [ Not found ]
  292. ZK Rootkit [ Not found ]
  293.  
  294. Performing additional rootkit checks
  295. Suckit Rookit additional checks [ OK ]
  296. Checking for possible rootkit files and directories [ None found ]
  297. Checking for possible rootkit strings [ None found ]
  298.  
  299. Performing malware checks
  300. Checking running processes for suspicious files [ None found ]
  301. Checking for login backdoors [ None found ]
  302. Checking for suspicious directories [ None found ]
  303. Checking for sniffer log files [ None found ]
  304. Performing trojan specific checks
  305. Checking for enabled inetd services [ Warning ]
  306. Checking for Apache backdoor [ Not found ]
  307.  
  308. Performing Linux specific checks
  309. Checking loaded kernel modules [ OK ]
  310. Checking kernel module names [ OK ]
  311.  
  312. Checking the network...
  313.  
  314. Performing checks on the network ports
  315. Checking for backdoor ports [ None found ]
  316.  
  317. Performing checks on the network interfaces
  318. Checking for promiscuous interfaces [ None found ]
  319.  
  320. Checking the local host...
  321.  
  322. Performing system boot checks
  323. Checking for local host name [ Found ]
  324. Checking for system startup files [ Found ]
  325. Checking system startup files for malware [ None found ]
  326.  
  327. Performing group and account checks
  328. Checking for passwd file [ Found ]
  329. Checking for root equivalent (UID 0) accounts [ None found ]
  330. Checking for passwordless accounts [ None found ]
  331. Checking for passwd file changes [ Warning ]
  332. Checking for group file changes [ Warning ]
  333. Checking root account shell history files [ OK ]
  334.  
  335. Performing system configuration file checks
  336. Checking for SSH configuration file [ Found ]
  337. Checking if SSH root access is allowed [ Warning ]
  338. Checking if SSH protocol v1 is allowed [ Warning ]
  339. Checking for running syslog daemon [ Found ]
  340. Checking for syslog configuration file [ Found ]
  341. Checking if syslog remote logging is allowed [ Not allowed ]
  342.  
  343. Performing filesystem checks
  344. Checking /dev for suspicious file types [ None found ]
  345. Checking for hidden files and directories [ Warning ]
  346.  
  347. Checking application versions...
  348.  
  349. Checking version of GnuPG [ OK ]
  350. Checking version of OpenSSL [ OK ]
  351. Checking version of PHP [ OK ]
  352. Checking version of Procmail MTA [ OK ]
  353. Checking version of ProFTPD [ OK ]
  354. Checking version of OpenSSH [ OK ]
  355.  
  356.  
  357. System checks summary
  358. =====================
  359.  
  360. File properties checks...
  361. Required commands check failed
  362. Files checked: 185
  363. Suspect files: 3
  364.  
  365. Rootkit checks...
  366. Rootkits checked : 254
  367. Possible rootkits: 0
  368.  
  369. Applications checks...
  370. Applications checked: 6
  371. Suspect applications: 0
  372.  
  373. The system checks took: 5 minutes and 55 seconds
  374.  
  375. All results have been written to the log file (/var/log/rkhunter.log)
  376.  
  377. One or more warnings have been found while checking the system.
  378. Please check the log file (/var/log/rkhunter.log)
  379.  
  380. Root >
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement