Guest User

Untitled

a guest
Feb 14th, 2018
150
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 64.93 KB | None | 0 0
  1. [11:43:39] Running Rootkit Hunter version 1.4.2 on dhcppc2
  2. [11:43:39]
  3. [11:43:39] Info: Start date is mer 14 feb 2018, 11.43.39, CET
  4. [11:43:39]
  5. [11:43:39] Checking configuration file and command-line options...
  6. [11:43:39] Info: Detected operating system is 'Linux'
  7. [11:43:39] Info: Found O/S name: Debian 9.0
  8. [11:43:39] Info: Command line is /usr/bin/rkhunter -c
  9. [11:43:39] Info: Environment shell is /bin/bash; rkhunter is using dash
  10. [11:43:39] Info: Using configuration file '/etc/rkhunter.conf'
  11. [11:43:39] Info: Installation directory is '/usr'
  12. [11:43:39] Info: Using language 'en'
  13. [11:43:39] Info: Using '/var/lib/rkhunter/db' as the database directory
  14. [11:43:39] Info: Using '/usr/share/rkhunter/scripts' as the support script directory
  15. [11:43:39] Info: Using '/usr/local/sbin /usr/local/bin /usr/sbin /usr/bin /sbin /bin' as the command directories
  16. [11:43:39] Info: Using '/var/lib/rkhunter/tmp' as the temporary directory
  17. [11:43:39] Info: No mail-on-warning address configured
  18. [11:43:39] Info: X will be automatically detected
  19. [11:43:39] Info: Using second color set
  20. [11:43:39] Info: Found the 'basename' command: /usr/bin/basename
  21. [11:43:39] Info: Found the 'diff' command: /usr/bin/diff
  22. [11:43:39] Info: Found the 'dirname' command: /usr/bin/dirname
  23. [11:43:39] Info: Found the 'file' command: /usr/bin/file
  24. [11:43:39] Info: Found the 'find' command: /usr/bin/find
  25. [11:43:39] Info: Found the 'ifconfig' command: /sbin/ifconfig
  26. [11:43:39] Info: Found the 'ip' command: /sbin/ip
  27. [11:43:39] Info: Found the 'ipcs' command: /usr/bin/ipcs
  28. [11:43:39] Info: Found the 'ldd' command: /usr/bin/ldd
  29. [11:43:40] Info: Found the 'lsattr' command: /usr/bin/lsattr
  30. [11:43:40] Info: Found the 'lsmod' command: /sbin/lsmod
  31. [11:43:40] Info: Found the 'lsof' command: /usr/bin/lsof
  32. [11:43:40] Info: Found the 'mktemp' command: /bin/mktemp
  33. [11:43:40] Info: Found the 'netstat' command: /bin/netstat
  34. [11:43:40] Info: Found the 'perl' command: /usr/bin/perl
  35. [11:43:40] Info: Found the 'pgrep' command: /usr/bin/pgrep
  36. [11:43:40] Info: Found the 'ps' command: /bin/ps
  37. [11:43:40] Info: Found the 'pwd' command: /bin/pwd
  38. [11:43:40] Info: Found the 'readlink' command: /bin/readlink
  39. [11:43:40] Info: Found the 'stat' command: /usr/bin/stat
  40. [11:43:40] Info: Found the 'strings' command: /usr/bin/strings
  41. [11:43:40] Info: System is not using prelinking
  42. [11:43:40] Info: Using the '/usr/bin/sha256sum' command for the file hash checks
  43. [11:43:40] Info: Stored hash values used hash function '/usr/bin/sha256sum'
  44. [11:43:40] Info: Stored hash values did not use a package manager
  45. [11:43:40] Info: The hash function field index is set to 1
  46. [11:43:40] Info: No package manager specified: using hash function '/usr/bin/sha256sum'
  47. [11:43:40] Info: Previous file attributes were stored
  48. [11:43:40] Info: Enabled tests are: all
  49. [11:43:40] Info: Disabled tests are: suspscan hidden_procs deleted_files packet_cap_apps apps
  50. [11:43:40] Info: Found ksym file '/proc/kallsyms'
  51. [11:43:40] Info: Using syslog for some logging - facility/priority level is 'authpriv.warning'.
  52. [11:43:40] Info: Using 'date' to process epoch second times
  53. [11:43:40]
  54. [11:43:40] Checking if the O/S has changed since last time...
  55. [11:43:40] Warning: The O/S name or version has changed since the last run:
  56. [11:43:40] Old O/S value: Debian 9.0 New value: Debian 9.3
  57. [11:43:41] Because of the change(s) the file properties checks may give some false-positive results.
  58. [11:43:41] You may need to re-run rkhunter with the '--propupd' option.
  59. [11:43:41]
  60. [11:43:41] Warning: WARNING! It is the users responsibility to ensure that when the '--propupd' option
  61. is used, all the files on their system are known to be genuine, and installed from a
  62. reliable source. The rkhunter '--check' option will compare the current file properties
  63. against previously stored values, and report if any values differ. However, rkhunter
  64. cannot determine what has caused the change, that is for the user to do.
  65. [11:43:41] Info: Locking is not being used
  66. [11:43:41]
  67. [11:43:41] Starting system checks...
  68. [11:43:41]
  69. [11:43:41] Info: Starting test name 'system_commands'
  70. [11:43:41] Checking system commands...
  71. [11:43:41]
  72. [11:43:41] Info: Starting test name 'strings'
  73. [11:43:41] Performing 'strings' command checks
  74. [11:43:41] Scanning for string /usr/sbin/ntpsx [ OK ]
  75. [11:43:41] Scanning for string /usr/sbin/.../bkit-ava [ OK ]
  76. [11:43:41] Scanning for string /usr/sbin/.../bkit-d [ OK ]
  77. [11:43:41] Scanning for string /usr/sbin/.../bkit-shd [ OK ]
  78. [11:43:41] Scanning for string /usr/sbin/.../bkit-f [ OK ]
  79. [11:43:41] Scanning for string /usr/include/.../proc.h [ OK ]
  80. [11:43:41] Scanning for string /usr/include/.../.bash_history [ OK ]
  81. [11:43:42] Scanning for string /usr/include/.../bkit-get [ OK ]
  82. [11:43:42] Scanning for string /usr/include/.../bkit-dl [ OK ]
  83. [11:43:42] Scanning for string /usr/include/.../bkit-screen [ OK ]
  84. [11:43:42] Scanning for string /usr/include/.../bkit-sleep [ OK ]
  85. [11:43:42] Scanning for string /usr/lib/.../bkit-adore.o [ OK ]
  86. [11:43:42] Scanning for string /usr/lib/.../ls [ OK ]
  87. [11:43:42] Scanning for string /usr/lib/.../netstat [ OK ]
  88. [11:43:42] Scanning for string /usr/lib/.../lsof [ OK ]
  89. [11:43:42] Scanning for string /usr/lib/.../bkit-ssh/bkit-shdcfg [ OK ]
  90. [11:43:42] Scanning for string /usr/lib/.../bkit-ssh/bkit-shhk [ OK ]
  91. [11:43:42] Scanning for string /usr/lib/.../bkit-ssh/bkit-pw [ OK ]
  92. [11:43:42] Scanning for string /usr/lib/.../bkit-ssh/bkit-shrs [ OK ]
  93. [11:43:42] Scanning for string /usr/lib/.../bkit-ssh/bkit-mots [ OK ]
  94. [11:43:42] Scanning for string /usr/lib/.../uconf.inv [ OK ]
  95. [11:43:43] Scanning for string /usr/lib/.../psr [ OK ]
  96. [11:43:43] Scanning for string /usr/lib/.../find [ OK ]
  97. [11:43:43] Scanning for string /usr/lib/.../pstree [ OK ]
  98. [11:43:43] Scanning for string /usr/lib/.../slocate [ OK ]
  99. [11:43:43] Scanning for string /usr/lib/.../du [ OK ]
  100. [11:43:43] Scanning for string /usr/lib/.../top [ OK ]
  101. [11:43:43] Scanning for string /usr/sbin/... [ OK ]
  102. [11:43:43] Scanning for string /usr/include/... [ OK ]
  103. [11:43:43] Scanning for string /usr/include/.../.tmp [ OK ]
  104. [11:43:43] Scanning for string /usr/lib/... [ OK ]
  105. [11:43:43] Scanning for string /usr/lib/.../.ssh [ OK ]
  106. [11:43:43] Scanning for string /usr/lib/.../bkit-ssh [ OK ]
  107. [11:43:43] Scanning for string /usr/lib/.bkit- [ OK ]
  108. [11:43:43] Scanning for string /tmp/.bkp [ OK ]
  109. [11:43:44] Scanning for string /tmp/.cinik [ OK ]
  110. [11:43:44] Scanning for string /tmp/.font-unix/.cinik [ OK ]
  111. [11:43:44] Scanning for string /lib/.sso [ OK ]
  112. [11:43:44] Scanning for string /lib/.so [ OK ]
  113. [11:43:44] Scanning for string /var/run/...dica/clean [ OK ]
  114. [11:43:44] Scanning for string /var/run/...dica/dxr [ OK ]
  115. [11:43:44] Scanning for string /var/run/...dica/read [ OK ]
  116. [11:43:44] Scanning for string /var/run/...dica/write [ OK ]
  117. [11:43:44] Scanning for string /var/run/...dica/lf [ OK ]
  118. [11:43:44] Scanning for string /var/run/...dica/xl [ OK ]
  119. [11:43:44] Scanning for string /var/run/...dica/xdr [ OK ]
  120. [11:43:44] Scanning for string /var/run/...dica/psg [ OK ]
  121. [11:43:44] Scanning for string /var/run/...dica/secure [ OK ]
  122. [11:43:44] Scanning for string /var/run/...dica/rdx [ OK ]
  123. [11:43:45] Scanning for string /var/run/...dica/va [ OK ]
  124. [11:43:45] Scanning for string /var/run/...dica/cl.sh [ OK ]
  125. [11:43:45] Scanning for string /var/run/...dica/last.log [ OK ]
  126. [11:43:45] Scanning for string /usr/bin/.etc [ OK ]
  127. [11:43:45] Scanning for string /etc/sshd_config [ OK ]
  128. [11:43:45] Scanning for string /etc/ssh_host_key [ OK ]
  129. [11:43:45] Scanning for string /etc/ssh_random_seed [ OK ]
  130. [11:43:45] Scanning for string /dev/ptyp [ OK ]
  131. [11:43:45] Scanning for string /dev/ptyq [ OK ]
  132. [11:43:45] Scanning for string /dev/ptyr [ OK ]
  133. [11:43:45] Scanning for string /dev/ptys [ OK ]
  134. [11:43:45] Scanning for string /dev/ptyt [ OK ]
  135. [11:43:45] Scanning for string /dev/fd/.88/freshb-bsd [ OK ]
  136. [11:43:45] Scanning for string /dev/fd/.88/fresht [ OK ]
  137. [11:43:46] Scanning for string /dev/fd/.88/zxsniff [ OK ]
  138. [11:43:46] Scanning for string /dev/fd/.88/zxsniff.log [ OK ]
  139. [11:43:46] Scanning for string /dev/fd/.99/.ttyf00 [ OK ]
  140. [11:43:46] Scanning for string /dev/fd/.99/.ttyp00 [ OK ]
  141. [11:43:46] Scanning for string /dev/fd/.99/.ttyq00 [ OK ]
  142. [11:43:46] Scanning for string /dev/fd/.99/.ttys00 [ OK ]
  143. [11:43:46] Scanning for string /dev/fd/.99/.pwsx00 [ OK ]
  144. [11:43:46] Scanning for string /etc/.acid [ OK ]
  145. [11:43:46] Scanning for string /usr/lib/.fx/sched_host.2 [ OK ]
  146. [11:43:46] Scanning for string /usr/lib/.fx/random_d.2 [ OK ]
  147. [11:43:46] Scanning for string /usr/lib/.fx/set_pid.2 [ OK ]
  148. [11:43:46] Scanning for string /usr/lib/.fx/setrgrp.2 [ OK ]
  149. [11:43:46] Scanning for string /usr/lib/.fx/TOHIDE [ OK ]
  150. [11:43:46] Scanning for string /usr/lib/.fx/cons.saver [ OK ]
  151. [11:43:46] Scanning for string /usr/lib/.fx/adore/ava/ava [ OK ]
  152. [11:43:47] Scanning for string /usr/lib/.fx/adore/adore/adore.ko [ OK ]
  153. [11:43:47] Scanning for string /bin/sysback [ OK ]
  154. [11:43:47] Scanning for string /usr/local/bin/sysback [ OK ]
  155. [11:43:47] Scanning for string /usr/lib/.tbd [ OK ]
  156. [11:43:47] Scanning for string /dev/.lib/lib/lib/t0rns [ OK ]
  157. [11:43:47] Scanning for string /dev/.lib/lib/lib/du [ OK ]
  158. [11:43:47] Scanning for string /dev/.lib/lib/lib/ls [ OK ]
  159. [11:43:47] Scanning for string /dev/.lib/lib/lib/t0rnsb [ OK ]
  160. [11:43:47] Scanning for string /dev/.lib/lib/lib/ps [ OK ]
  161. [11:43:47] Scanning for string /dev/.lib/lib/lib/t0rnp [ OK ]
  162. [11:43:47] Scanning for string /dev/.lib/lib/lib/find [ OK ]
  163. [11:43:47] Scanning for string /dev/.lib/lib/lib/ifconfig [ OK ]
  164. [11:43:47] Scanning for string /dev/.lib/lib/lib/pg [ OK ]
  165. [11:43:47] Scanning for string /dev/.lib/lib/lib/ssh.tgz [ OK ]
  166. [11:43:48] Scanning for string /dev/.lib/lib/lib/top [ OK ]
  167. [11:43:48] Scanning for string /dev/.lib/lib/lib/sz [ OK ]
  168. [11:43:48] Scanning for string /dev/.lib/lib/lib/login [ OK ]
  169. [11:43:48] Scanning for string /dev/.lib/lib/lib/in.fingerd [ OK ]
  170. [11:43:48] Scanning for string /dev/.lib/lib/lib/1i0n.sh [ OK ]
  171. [11:43:48] Scanning for string /dev/.lib/lib/lib/pstree [ OK ]
  172. [11:43:48] Scanning for string /dev/.lib/lib/lib/in.telnetd [ OK ]
  173. [11:43:48] Scanning for string /dev/.lib/lib/lib/mjy [ OK ]
  174. [11:43:48] Scanning for string /dev/.lib/lib/lib/sush [ OK ]
  175. [11:43:48] Scanning for string /dev/.lib/lib/lib/tfn [ OK ]
  176. [11:43:48] Scanning for string /dev/.lib/lib/lib/name [ OK ]
  177. [11:43:48] Scanning for string /dev/.lib/lib/lib/getip.sh [ OK ]
  178. [11:43:48] Scanning for string /usr/info/.torn/sh* [ OK ]
  179. [11:43:48] Scanning for string /usr/src/.puta/.1addr [ OK ]
  180. [11:43:49] Scanning for string /usr/src/.puta/.1file [ OK ]
  181. [11:43:49] Scanning for string /usr/src/.puta/.1proc [ OK ]
  182. [11:43:49] Scanning for string /usr/src/.puta/.1logz [ OK ]
  183. [11:43:49] Scanning for string /usr/info/.t0rn [ OK ]
  184. [11:43:49] Scanning for string /dev/.lib [ OK ]
  185. [11:43:49] Scanning for string /dev/.lib/lib [ OK ]
  186. [11:43:49] Scanning for string /dev/.lib/lib/lib [ OK ]
  187. [11:43:49] Scanning for string /dev/.lib/lib/lib/dev [ OK ]
  188. [11:43:49] Scanning for string /dev/.lib/lib/scan [ OK ]
  189. [11:43:49] Scanning for string /usr/src/.puta [ OK ]
  190. [11:43:49] Scanning for string /usr/man/man1/man1 [ OK ]
  191. [11:43:49] Scanning for string /usr/man/man1/man1/lib [ OK ]
  192. [11:43:49] Scanning for string /usr/man/man1/man1/lib/.lib [ OK ]
  193. [11:43:50] Scanning for string /usr/man/man1/man1/lib/.lib/.backup [ OK ]
  194. [11:43:50]
  195. [11:43:50] Info: Starting test name 'shared_libs'
  196. [11:43:50] Performing 'shared libraries' checks
  197. [11:43:50] Checking for preloading variables [ None found ]
  198. [11:43:50] Checking for preloaded libraries [ None found ]
  199. [11:43:50]
  200. [11:43:50] Info: Starting test name 'shared_libs_path'
  201. [11:43:50] Checking LD_LIBRARY_PATH variable [ Not found ]
  202. [11:43:50]
  203. [11:43:50] Info: Starting test name 'properties'
  204. [11:43:50] Performing file properties checks
  205. [11:43:50] Warning: Checking for prerequisites [ Warning ]
  206. [11:43:50] The local host configuration or operating system has changed.
  207. [11:44:02] /usr/sbin/adduser [ OK ]
  208. [11:44:02] Info: Found file '/usr/sbin/adduser': it is whitelisted for the 'script replacement' check.
  209. [11:44:02] /usr/sbin/chroot [ OK ]
  210. [11:44:03] /usr/sbin/cron [ OK ]
  211. [11:44:04] /usr/sbin/groupadd [ OK ]
  212. [11:44:04] /usr/sbin/groupdel [ OK ]
  213. [11:44:04] /usr/sbin/groupmod [ OK ]
  214. [11:44:04] /usr/sbin/grpck [ OK ]
  215. [11:44:06] /usr/sbin/nologin [ OK ]
  216. [11:44:07] /usr/sbin/pwck [ OK ]
  217. [11:44:07] /usr/sbin/rsyslogd [ OK ]
  218. [11:44:08] /usr/sbin/tcpd [ OK ]
  219. [11:44:09] /usr/sbin/useradd [ OK ]
  220. [11:44:09] /usr/sbin/userdel [ OK ]
  221. [11:44:10] /usr/sbin/usermod [ OK ]
  222. [11:44:10] /usr/sbin/vipw [ OK ]
  223. [11:44:11] /usr/sbin/unhide [ OK ]
  224. [11:44:11] /usr/sbin/unhide-linux [ OK ]
  225. [11:44:11] /usr/sbin/unhide-posix [ OK ]
  226. [11:44:11] /usr/sbin/unhide-tcp [ OK ]
  227. [11:44:12] /usr/bin/awk [ OK ]
  228. [11:44:12] /usr/bin/basename [ OK ]
  229. [11:44:13] /usr/bin/chattr [ OK ]
  230. [11:44:13] /usr/bin/cut [ OK ]
  231. [11:44:14] /usr/bin/diff [ OK ]
  232. [11:44:14] /usr/bin/dirname [ OK ]
  233. [11:44:14] /usr/bin/dpkg [ OK ]
  234. [11:44:15] /usr/bin/dpkg-query [ OK ]
  235. [11:44:15] /usr/bin/du [ OK ]
  236. [11:44:15] /usr/bin/env [ OK ]
  237. [11:44:16] /usr/bin/file [ Warning ]
  238. [11:44:16] Warning: The file properties have changed:
  239. [11:44:16] File: /usr/bin/file
  240. [11:44:16] Current hash: ddc6dcde3522fd80d14c0bec0269db9f153a3d21e39045d9abf38e68a4a4245f
  241. [11:44:16] Stored hash : 3259c10e2516d2f04534dff10d07ce354bdbebbef7451450d5d2508d4b04ee70
  242. [11:44:16] Current inode: 5505206 Stored inode: 5513954
  243. [11:44:16] Current file modification time: 1504293782 (01-set-2017 21:23:02)
  244. [11:44:16] Stored file modification time : 1493456231 (29-apr-2017 10:57:11)
  245. [11:44:16] /usr/bin/find [ OK ]
  246. [11:44:17] /usr/bin/GET [ OK ]
  247. [11:44:17] /usr/bin/groups [ OK ]
  248. [11:44:17] /usr/bin/head [ OK ]
  249. [11:44:18] /usr/bin/id [ OK ]
  250. [11:44:18] /usr/bin/killall [ OK ]
  251. [11:44:19] /usr/bin/last [ OK ]
  252. [11:44:19] /usr/bin/lastlog [ OK ]
  253. [11:44:19] /usr/bin/ldd [ Warning ]
  254. [11:44:19] Warning: The file properties have changed:
  255. [11:44:19] File: /usr/bin/ldd
  256. [11:44:19] Current hash: 7b54d0de15af58100868a5336361e94247b04f100b382cadb5ce442f801ddae3
  257. [11:44:19] Stored hash : b8512befdcfd71ea9f05b50836426a8523aeaa0942c520649f20456e2bb7ef90
  258. [11:44:19] Current inode: 5506900 Stored inode: 5511386
  259. [11:44:19] Current size: 5395 Stored size: 5388
  260. [11:44:19] Current file modification time: 1497554234 (15-giu-2017 21:17:14)
  261. [11:44:20] Stored file modification time : 1495992573 (28-mag-2017 19:29:33)
  262. [11:44:20] Info: Found file '/usr/bin/ldd': it is whitelisted for the 'script replacement' check.
  263. [11:44:20] /usr/bin/less [ OK ]
  264. [11:44:20] /usr/bin/logger [ OK ]
  265. [11:44:21] /usr/bin/lsattr [ OK ]
  266. [11:44:21] /usr/bin/lsof [ OK ]
  267. [11:44:21] /usr/bin/mail [ OK ]
  268. [11:44:22] /usr/bin/md5sum [ OK ]
  269. [11:44:22] /usr/bin/newgrp [ OK ]
  270. [11:44:23] /usr/bin/passwd [ OK ]
  271. [11:44:23] /usr/bin/perl [ Warning ]
  272. [11:44:23] Warning: The file properties have changed:
  273. [11:44:23] File: /usr/bin/perl
  274. [11:44:23] Current hash: f9309bbcfb057fce2ea92ab9e56ac4631784120e6840e4bb2a7d8d789763beeb
  275. [11:44:23] Stored hash : aa72af2b2479f6d8dd006674e0eb168c75a3bdcc1e996ded795d3d8ba56cef0f
  276. [11:44:23] Current inode: 5505881 Stored inode: 5512270
  277. [11:44:23] Current file modification time: 1505234246 (12-set-2017 18:37:26)
  278. [11:44:23] Stored file modification time : 1496329792 (01-giu-2017 17:09:52)
  279. [11:44:23] /usr/bin/pgrep [ OK ]
  280. [11:44:24] /usr/bin/pkill [ OK ]
  281. [11:44:24] /usr/bin/pstree [ OK ]
  282. [11:44:25] /usr/bin/rkhunter [ Warning ]
  283. [11:44:25] Warning: The file properties have changed:
  284. [11:44:25] File: /usr/bin/rkhunter
  285. [11:44:25] Current inode: 5506696 Stored inode: 5520793
  286. [11:44:25] Current file modification time: 1499828837 (12-lug-2017 05:07:17)
  287. [11:44:25] Stored file modification time : 1467592184 (04-lug-2016 02:29:44)
  288. [11:44:25] /usr/bin/runcon [ OK ]
  289. [11:44:26] /usr/bin/sha1sum [ OK ]
  290. [11:44:26] /usr/bin/sha224sum [ OK ]
  291. [11:44:26] /usr/bin/sha256sum [ OK ]
  292. [11:44:27] /usr/bin/sha384sum [ OK ]
  293. [11:44:27] /usr/bin/sha512sum [ OK ]
  294. [11:44:27] /usr/bin/size [ OK ]
  295. [11:44:28] /usr/bin/sort [ OK ]
  296. [11:44:28] /usr/bin/ssh [ Warning ]
  297. [11:44:28] Warning: The file properties have changed:
  298. [11:44:28] File: /usr/bin/ssh
  299. [11:44:28] Current hash: 9764c3a84aef56b3bde0368e5a9afa24483fffb30c7d7513db4660da66a1c9d7
  300. [11:44:28] Stored hash : 2fe31dbc4541e735b51564eb0f28ff188df4b5e90d58dcbcf2204c80e7ddbfe3
  301. [11:44:28] Current inode: 5508379 Stored inode: 5516492
  302. [11:44:28] Current file modification time: 1510997842 (18-nov-2017 10:37:22)
  303. [11:44:28] Stored file modification time : 1490869144 (30-mar-2017 12:19:04)
  304. [11:44:29] /usr/bin/stat [ OK ]
  305. [11:44:29] /usr/bin/strings [ OK ]
  306. [11:44:29] /usr/bin/sudo [ OK ]
  307. [11:44:30] /usr/bin/tail [ OK ]
  308. [11:44:30] /usr/bin/telnet [ OK ]
  309. [11:44:30] /usr/bin/test [ OK ]
  310. [11:44:31] /usr/bin/top [ OK ]
  311. [11:44:31] /usr/bin/touch [ OK ]
  312. [11:44:31] /usr/bin/tr [ OK ]
  313. [11:44:32] /usr/bin/uniq [ OK ]
  314. [11:44:32] /usr/bin/users [ OK ]
  315. [11:44:32] /usr/bin/vmstat [ OK ]
  316. [11:44:32] /usr/bin/w [ OK ]
  317. [11:44:33] /usr/bin/watch [ OK ]
  318. [11:44:33] /usr/bin/wc [ OK ]
  319. [11:44:33] /usr/bin/wget [ Warning ]
  320. [11:44:33] Warning: The file properties have changed:
  321. [11:44:33] File: /usr/bin/wget
  322. [11:44:34] Current hash: 15de191d56a08f3a465804f914f4689dcebbaebde3cf189e772ccfa71ea2db33
  323. [11:44:34] Stored hash : 1149b5e6c001ff0f3afa093a149f47106bc44e5f1d23a8e32b14c09ba260f115
  324. [11:44:34] Current inode: 5513335 Stored inode: 5510978
  325. [11:44:34] Current file modification time: 1509039215 (26-ott-2017 19:33:35)
  326. [11:44:34] Stored file modification time : 1489846375 (18-mar-2017 15:12:55)
  327. [11:44:34] /usr/bin/whatis [ OK ]
  328. [11:44:34] /usr/bin/whereis [ OK ]
  329. [11:44:35] /usr/bin/which [ OK ]
  330. [11:44:35] /usr/bin/who [ OK ]
  331. [11:44:35] /usr/bin/whoami [ OK ]
  332. [11:44:36] /usr/bin/gawk [ OK ]
  333. [11:44:36] /usr/bin/lwp-request [ Warning ]
  334. [11:44:36] Warning: The command '/usr/bin/lwp-request' has been replaced by a script: /usr/bin/lwp-request: Perl script text executable
  335. [11:44:36] /usr/bin/mail.mailutils [ OK ]
  336. [11:44:37] /usr/bin/x86_64-linux-gnu-size [ OK ]
  337. [11:44:37] /usr/bin/x86_64-linux-gnu-strings [ OK ]
  338. [11:44:37] /usr/bin/telnet.netkit [ OK ]
  339. [11:44:37] /usr/bin/w.procps [ OK ]
  340. [11:44:38] /sbin/depmod [ OK ]
  341. [11:44:39] /sbin/fsck [ OK ]
  342. [11:44:40] /sbin/ifconfig [ OK ]
  343. [11:44:40] /sbin/ifdown [ OK ]
  344. [11:44:40] /sbin/ifup [ OK ]
  345. [11:44:41] /sbin/init [ Warning ]
  346. [11:44:41] Warning: The file properties have changed:
  347. [11:44:41] File: /sbin/init
  348. [11:44:41] Current hash: bb5618f504566c5a19b9746854dcadcff85c22dd3d0e67b22302d9c63fe5d76e
  349. [11:44:41] Stored hash : b336595bb48edb42b06ede918da46eadb9bbbc1f52cc862b9e1a11851537df8e
  350. [11:44:41] Current inode: 5900715 Stored inode: 5900465
  351. [11:44:41] Current file modification time: 1499286685 (05-lug-2017 22:31:25)
  352. [11:44:41] Stored file modification time : 1496609912 (04-giu-2017 22:58:32)
  353. [11:44:41] /sbin/insmod [ OK ]
  354. [11:44:42] /sbin/ip [ Warning ]
  355. [11:44:42] Warning: The file properties have changed:
  356. [11:44:42] File: /sbin/ip
  357. [11:44:42] Current hash: 64c22760592fe8eb24d57e86d733b9ff3053b05f81fc402420762939ae833ced
  358. [11:44:42] Stored hash : 0ea4d7299e3094834485bc768c99f6297a6c920f7fd2ca0016da16ab0bf4c1a9
  359. [11:44:42] Current inode: 5899850 Stored inode: 5898290
  360. [11:44:42] Current file modification time: 1511515330 (24-nov-2017 10:22:10)
  361. [11:44:42] Stored file modification time : 1481644670 (13-dic-2016 16:57:50)
  362. [11:44:42] /sbin/lsmod [ OK ]
  363. [11:44:43] /sbin/modinfo [ OK ]
  364. [11:44:43] /sbin/modprobe [ OK ]
  365. [11:44:44] /sbin/rmmod [ OK ]
  366. [11:44:45] /sbin/route [ OK ]
  367. [11:44:45] /sbin/runlevel [ Warning ]
  368. [11:44:45] Warning: The file properties have changed:
  369. [11:44:45] File: /sbin/runlevel
  370. [11:44:45] Current hash: 3e50301b3df8bc54b317c7310a0d13bd9e492ccd9209fbaef9198338fb8253ef
  371. [11:44:45] Stored hash : 969af21d9a3c53e0d1ba4d1ce43086b4b99938a2bf7e590cd32c296bab738d37
  372. [11:44:45] Current inode: 5900723 Stored inode: 5900471
  373. [11:44:45] Current file modification time: 1499286685 (05-lug-2017 22:31:25)
  374. [11:44:45] Stored file modification time : 1496609912 (04-giu-2017 22:58:32)
  375. [11:44:46] /sbin/sulogin [ OK ]
  376. [11:44:47] /sbin/sysctl [ OK ]
  377. [11:44:48] /bin/bash [ Warning ]
  378. [11:44:48] Warning: The file properties have changed:
  379. [11:44:48] File: /bin/bash
  380. [11:44:48] Current hash: 7f01269668f270f0b7871c4b742e03ae196de82c9aaee4085e89431a287286ec
  381. [11:44:49] Stored hash : 3f0bc167fa8ef1f7a38452a5fd16d077ed8ef657bb81cdce5af9537ca96e8345
  382. [11:44:49] Current inode: 1573004 Stored inode: 1572911
  383. [11:44:49] Current size: 1139616 Stored size: 1099016
  384. [11:44:49] /bin/cat [ OK ]
  385. [11:44:49] /bin/chmod [ OK ]
  386. [11:44:50] /bin/chown [ OK ]
  387. [11:44:50] /bin/cp [ OK ]
  388. [11:44:50] /bin/date [ OK ]
  389. [11:44:51] /bin/df [ OK ]
  390. [11:44:51] /bin/dmesg [ OK ]
  391. [11:44:51] /bin/echo [ OK ]
  392. [11:44:52] /bin/egrep [ OK ]
  393. [11:44:52] Info: Found file '/bin/egrep': it is whitelisted for the 'script replacement' check.
  394. [11:44:52] /bin/fgrep [ OK ]
  395. [11:44:52] Info: Found file '/bin/fgrep': it is whitelisted for the 'script replacement' check.
  396. [11:44:52] /bin/fuser [ OK ]
  397. [11:44:53] /bin/grep [ OK ]
  398. [11:44:53] /bin/ip [ Warning ]
  399. [11:44:53] Warning: The file properties have changed:
  400. [11:44:53] File: /bin/ip
  401. [11:44:53] Current hash: 64c22760592fe8eb24d57e86d733b9ff3053b05f81fc402420762939ae833ced
  402. [11:44:53] Stored hash : 0ea4d7299e3094834485bc768c99f6297a6c920f7fd2ca0016da16ab0bf4c1a9
  403. [11:44:54] Current inode: 1573432 Stored inode: 1572923
  404. [11:44:54] Current file modification time: 1511515330 (24-nov-2017 10:22:10)
  405. [11:44:54] Stored file modification time : 1481644670 (13-dic-2016 16:57:50)
  406. [11:44:54] /bin/kill [ OK ]
  407. [11:44:54] /bin/less [ OK ]
  408. [11:44:55] /bin/login [ OK ]
  409. [11:44:55] /bin/ls [ OK ]
  410. [11:44:55] /bin/lsmod [ OK ]
  411. [11:44:56] /bin/mktemp [ OK ]
  412. [11:44:56] /bin/more [ OK ]
  413. [11:44:57] /bin/mount [ OK ]
  414. [11:44:57] /bin/mv [ OK ]
  415. [11:44:57] /bin/netstat [ OK ]
  416. [11:44:58] /bin/ping [ OK ]
  417. [11:44:58] /bin/ps [ OK ]
  418. [11:44:59] /bin/pwd [ OK ]
  419. [11:44:59] /bin/readlink [ OK ]
  420. [11:44:59] /bin/sed [ OK ]
  421. [11:45:00] /bin/sh [ OK ]
  422. [11:45:01] /bin/su [ OK ]
  423. [11:45:01] /bin/touch [ OK ]
  424. [11:45:01] /bin/uname [ OK ]
  425. [11:45:02] /bin/which [ OK ]
  426. [11:45:02] Info: Found file '/bin/which': it is whitelisted for the 'script replacement' check.
  427. [11:45:03] /bin/kmod [ OK ]
  428. [11:45:03] /bin/systemd [ Warning ]
  429. [11:45:03] Warning: The file properties have changed:
  430. [11:45:03] File: /bin/systemd
  431. [11:45:03] Current hash: bb5618f504566c5a19b9746854dcadcff85c22dd3d0e67b22302d9c63fe5d76e
  432. [11:45:03] Stored hash : b336595bb48edb42b06ede918da46eadb9bbbc1f52cc862b9e1a11851537df8e
  433. [11:45:03] Current inode: 1573032 Stored inode: 1573030
  434. [11:45:03] Current file modification time: 1499286685 (05-lug-2017 22:31:25)
  435. [11:45:04] Stored file modification time : 1496609912 (04-giu-2017 22:58:32)
  436. [11:45:04] /bin/systemctl [ Warning ]
  437. [11:45:04] Warning: The file properties have changed:
  438. [11:45:04] File: /bin/systemctl
  439. [11:45:04] Current hash: 3e50301b3df8bc54b317c7310a0d13bd9e492ccd9209fbaef9198338fb8253ef
  440. [11:45:04] Stored hash : 969af21d9a3c53e0d1ba4d1ce43086b4b99938a2bf7e590cd32c296bab738d37
  441. [11:45:04] Current inode: 1572936 Stored inode: 1573021
  442. [11:45:04] Current file modification time: 1499286685 (05-lug-2017 22:31:25)
  443. [11:45:04] Stored file modification time : 1496609912 (04-giu-2017 22:58:32)
  444. [11:45:04] /bin/dash [ OK ]
  445. [11:45:10] /lib/systemd/systemd [ Warning ]
  446. [11:45:10] Warning: The file properties have changed:
  447. [11:45:10] File: /lib/systemd/systemd
  448. [11:45:10] Current hash: bb5618f504566c5a19b9746854dcadcff85c22dd3d0e67b22302d9c63fe5d76e
  449. [11:45:10] Stored hash : b336595bb48edb42b06ede918da46eadb9bbbc1f52cc862b9e1a11851537df8e
  450. [11:45:10] Current inode: 3806466 Stored inode: 3805373
  451. [11:45:10] Current file modification time: 1499286685 (05-lug-2017 22:31:25)
  452. [11:45:10] Stored file modification time : 1496609912 (04-giu-2017 22:58:32)
  453. [11:45:45]
  454. [11:45:45] Info: Starting test name 'rootkits'
  455. [11:45:45] Checking for rootkits...
  456. [11:45:45]
  457. [11:45:45] Info: Starting test name 'known_rkts'
  458. [11:45:45] Performing check of known rootkit files and directories
  459. [11:45:46]
  460. [11:45:46] Checking for 55808 Trojan - Variant A...
  461. [11:45:46] Checking for file '/tmp/.../r' [ Not found ]
  462. [11:45:46] Checking for file '/tmp/.../a' [ Not found ]
  463. [11:45:46] 55808 Trojan - Variant A [ Not found ]
  464. [11:45:46]
  465. [11:45:46] Checking for ADM Worm...
  466. [11:45:46] Checking for string 'w0rm' [ Not found ]
  467. [11:45:46] ADM Worm [ Not found ]
  468. [11:45:46]
  469. [11:45:46] Checking for AjaKit Rootkit...
  470. [11:45:46] Checking for file '/dev/tux/.addr' [ Not found ]
  471. [11:45:46] Checking for file '/dev/tux/.proc' [ Not found ]
  472. [11:45:46] Checking for file '/dev/tux/.file' [ Not found ]
  473. [11:45:46] Checking for file '/lib/.libgh-gh/cleaner' [ Not found ]
  474. [11:45:46] Checking for file '/lib/.libgh-gh/Patch/patch' [ Not found ]
  475. [11:45:46] Checking for file '/lib/.libgh-gh/sb0k' [ Not found ]
  476. [11:45:46] Checking for directory '/dev/tux' [ Not found ]
  477. [11:45:46] Checking for directory '/lib/.libgh-gh' [ Not found ]
  478. [11:45:47] AjaKit Rootkit [ Not found ]
  479. [11:45:47]
  480. [11:45:47] Checking for Adore Rootkit...
  481. [11:45:47] Checking for file '/usr/secure' [ Not found ]
  482. [11:45:47] Checking for file '/usr/doc/sys/qrt' [ Not found ]
  483. [11:45:47] Checking for file '/usr/doc/sys/run' [ Not found ]
  484. [11:45:47] Checking for file '/usr/doc/sys/crond' [ Not found ]
  485. [11:45:47] Checking for file '/usr/sbin/kfd' [ Not found ]
  486. [11:45:47] Checking for file '/usr/doc/kern/var' [ Not found ]
  487. [11:45:47] Checking for file '/usr/doc/kern/string.o' [ Not found ]
  488. [11:45:47] Checking for file '/usr/doc/kern/ava' [ Not found ]
  489. [11:45:47] Checking for file '/usr/doc/kern/adore.o' [ Not found ]
  490. [11:45:47] Checking for file '/var/log/ssh/old' [ Not found ]
  491. [11:45:47] Checking for directory '/lib/security/.config/ssh' [ Not found ]
  492. [11:45:47] Checking for directory '/usr/doc/kern' [ Not found ]
  493. [11:45:47] Checking for directory '/usr/doc/backup' [ Not found ]
  494. [11:45:48] Checking for directory '/usr/doc/backup/txt' [ Not found ]
  495. [11:45:48] Checking for directory '/lib/backup' [ Not found ]
  496. [11:45:48] Checking for directory '/lib/backup/txt' [ Not found ]
  497. [11:45:48] Checking for directory '/usr/doc/work' [ Not found ]
  498. [11:45:48] Checking for directory '/usr/doc/sys' [ Not found ]
  499. [11:45:48] Checking for directory '/var/log/ssh' [ Not found ]
  500. [11:45:48] Checking for directory '/usr/doc/.spool' [ Not found ]
  501. [11:45:48] Checking for directory '/usr/lib/kterm' [ Not found ]
  502. [11:45:48] Adore Rootkit [ Not found ]
  503. [11:45:48]
  504. [11:45:48] Checking for aPa Kit...
  505. [11:45:48] Checking for file '/usr/share/.aPa' [ Not found ]
  506. [11:45:48] aPa Kit [ Not found ]
  507. [11:45:48]
  508. [11:45:48] Checking for Apache Worm...
  509. [11:45:48] Checking for file '/bin/.log' [ Not found ]
  510. [11:45:48] Apache Worm [ Not found ]
  511. [11:45:48]
  512. [11:45:48] Checking for Ambient (ark) Rootkit...
  513. [11:45:49] Checking for file '/usr/lib/.ark?' [ Not found ]
  514. [11:45:49] Checking for file '/dev/ptyxx/.log' [ Not found ]
  515. [11:45:49] Checking for file '/dev/ptyxx/.file' [ Not found ]
  516. [11:45:49] Checking for file '/dev/ptyxx/.proc' [ Not found ]
  517. [11:45:49] Checking for file '/dev/ptyxx/.addr' [ Not found ]
  518. [11:45:49] Checking for directory '/dev/ptyxx' [ Not found ]
  519. [11:45:49] Ambient (ark) Rootkit [ Not found ]
  520. [11:45:49]
  521. [11:45:49] Checking for Balaur Rootkit...
  522. [11:45:49] Checking for file '/usr/lib/liblog.o' [ Not found ]
  523. [11:45:49] Checking for directory '/usr/lib/.kinetic' [ Not found ]
  524. [11:45:49] Checking for directory '/usr/lib/.egcs' [ Not found ]
  525. [11:45:49] Checking for directory '/usr/lib/.wormie' [ Not found ]
  526. [11:45:49] Balaur Rootkit [ Not found ]
  527. [11:45:49]
  528. [11:45:49] Checking for BeastKit Rootkit...
  529. [11:45:49] Checking for file '/usr/sbin/arobia' [ Not found ]
  530. [11:45:49] Checking for file '/usr/sbin/idrun' [ Not found ]
  531. [11:45:50] Checking for file '/usr/lib/elm/arobia/elm' [ Not found ]
  532. [11:45:50] Checking for file '/usr/lib/elm/arobia/elm/hk' [ Not found ]
  533. [11:45:50] Checking for file '/usr/lib/elm/arobia/elm/hk.pub' [ Not found ]
  534. [11:45:50] Checking for file '/usr/lib/elm/arobia/elm/sc' [ Not found ]
  535. [11:45:50] Checking for file '/usr/lib/elm/arobia/elm/sd.pp' [ Not found ]
  536. [11:45:50] Checking for file '/usr/lib/elm/arobia/elm/sdco' [ Not found ]
  537. [11:45:50] Checking for file '/usr/lib/elm/arobia/elm/srsd' [ Not found ]
  538. [11:45:50] Checking for directory '/lib/ldd.so/bktools' [ Not found ]
  539. [11:45:50] BeastKit Rootkit [ Not found ]
  540. [11:45:50]
  541. [11:45:50] Checking for beX2 Rootkit...
  542. [11:45:50] Checking for file '/usr/info/termcap.info-5.gz' [ Not found ]
  543. [11:45:50] Checking for file '/usr/bin/sshd2' [ Not found ]
  544. [11:45:50] Checking for directory '/usr/include/bex' [ Not found ]
  545. [11:45:50] beX2 Rootkit [ Not found ]
  546. [11:45:50]
  547. [11:45:50] Checking for BOBKit Rootkit...
  548. [11:45:51] Checking for file '/usr/sbin/ntpsx' [ Not found ]
  549. [11:45:51] Checking for file '/usr/sbin/.../bkit-ava' [ Not found ]
  550. [11:45:51] Checking for file '/usr/sbin/.../bkit-d' [ Not found ]
  551. [11:45:51] Checking for file '/usr/sbin/.../bkit-shd' [ Not found ]
  552. [11:45:51] Checking for file '/usr/sbin/.../bkit-f' [ Not found ]
  553. [11:45:51] Checking for file '/usr/include/.../proc.h' [ Not found ]
  554. [11:45:51] Checking for file '/usr/include/.../.bash_history' [ Not found ]
  555. [11:45:51] Checking for file '/usr/include/.../bkit-get' [ Not found ]
  556. [11:45:51] Checking for file '/usr/include/.../bkit-dl' [ Not found ]
  557. [11:45:51] Checking for file '/usr/include/.../bkit-screen' [ Not found ]
  558. [11:45:51] Checking for file '/usr/include/.../bkit-sleep' [ Not found ]
  559. [11:45:51] Checking for file '/usr/lib/.../bkit-adore.o' [ Not found ]
  560. [11:45:51] Checking for file '/usr/lib/.../ls' [ Not found ]
  561. [11:45:51] Checking for file '/usr/lib/.../netstat' [ Not found ]
  562. [11:45:52] Checking for file '/usr/lib/.../lsof' [ Not found ]
  563. [11:45:52] Checking for file '/usr/lib/.../bkit-ssh/bkit-shdcfg' [ Not found ]
  564. [11:45:52] Checking for file '/usr/lib/.../bkit-ssh/bkit-shhk' [ Not found ]
  565. [11:45:52] Checking for file '/usr/lib/.../bkit-ssh/bkit-pw' [ Not found ]
  566. [11:45:52] Checking for file '/usr/lib/.../bkit-ssh/bkit-shrs' [ Not found ]
  567. [11:45:52] Checking for file '/usr/lib/.../bkit-ssh/bkit-mots' [ Not found ]
  568. [11:45:52] Checking for file '/usr/lib/.../uconf.inv' [ Not found ]
  569. [11:45:52] Checking for file '/usr/lib/.../psr' [ Not found ]
  570. [11:45:52] Checking for file '/usr/lib/.../find' [ Not found ]
  571. [11:45:52] Checking for file '/usr/lib/.../pstree' [ Not found ]
  572. [11:45:52] Checking for file '/usr/lib/.../slocate' [ Not found ]
  573. [11:45:52] Checking for file '/usr/lib/.../du' [ Not found ]
  574. [11:45:52] Checking for file '/usr/lib/.../top' [ Not found ]
  575. [11:45:52] Checking for directory '/usr/sbin/...' [ Not found ]
  576. [11:45:53] Checking for directory '/usr/include/...' [ Not found ]
  577. [11:45:53] Checking for directory '/usr/include/.../.tmp' [ Not found ]
  578. [11:45:53] Checking for directory '/usr/lib/...' [ Not found ]
  579. [11:45:53] Checking for directory '/usr/lib/.../.ssh' [ Not found ]
  580. [11:45:53] Checking for directory '/usr/lib/.../bkit-ssh' [ Not found ]
  581. [11:45:53] Checking for directory '/usr/lib/.bkit-' [ Not found ]
  582. [11:45:53] Checking for directory '/tmp/.bkp' [ Not found ]
  583. [11:45:53] BOBKit Rootkit [ Not found ]
  584. [11:45:53]
  585. [11:45:53] Checking for cb Rootkit...
  586. [11:45:53] Checking for file '/dev/srd0' [ Not found ]
  587. [11:45:53] Checking for file '/lib/libproc.so.2.0.6' [ Not found ]
  588. [11:45:53] Checking for file '/dev/mounnt' [ Not found ]
  589. [11:45:53] Checking for file '/etc/rc.d/init.d/init' [ Not found ]
  590. [11:45:53] Checking for file '/usr/bin/.zeen/..<SP>/cl' [ Not found ]
  591. [11:45:54] Checking for file '/usr/bin/.zeen/..<SP>/.x.tgz' [ Not found ]
  592. [11:45:54] Checking for file '/usr/bin/.zeen/..<SP>/statdx' [ Not found ]
  593. [11:45:54] Checking for file '/usr/bin/.zeen/..<SP>/wted' [ Not found ]
  594. [11:45:54] Checking for file '/usr/bin/.zeen/..<SP>/write' [ Not found ]
  595. [11:45:54] Checking for file '/usr/bin/.zeen/..<SP>/scan' [ Not found ]
  596. [11:45:54] Checking for file '/usr/bin/.zeen/..<SP>/sc' [ Not found ]
  597. [11:45:54] Checking for file '/usr/bin/.zeen/..<SP>/sl2' [ Not found ]
  598. [11:45:54] Checking for file '/usr/bin/.zeen/..<SP>/wroot' [ Not found ]
  599. [11:45:54] Checking for file '/usr/bin/.zeen/..<SP>/wscan' [ Not found ]
  600. [11:45:54] Checking for file '/usr/bin/.zeen/..<SP>/wu' [ Not found ]
  601. [11:45:54] Checking for file '/usr/bin/.zeen/..<SP>/v' [ Not found ]
  602. [11:45:54] Checking for file '/usr/bin/.zeen/..<SP>/read' [ Not found ]
  603. [11:45:54] Checking for file '/usr/lib/sshrc' [ Not found ]
  604. [11:45:54] Checking for file '/usr/lib/ssh_host_key' [ Not found ]
  605. [11:45:54] Checking for file '/usr/lib/ssh_host_key.pub' [ Not found ]
  606. [11:45:55] Checking for file '/usr/lib/ssh_random_seed' [ Not found ]
  607. [11:45:55] Checking for file '/usr/lib/sshd_config' [ Not found ]
  608. [11:45:55] Checking for file '/usr/lib/shosts.equiv' [ Not found ]
  609. [11:45:55] Checking for file '/usr/lib/ssh_known_hosts' [ Not found ]
  610. [11:45:55] Checking for file '/u/zappa/.ssh/pid' [ Not found ]
  611. [11:45:55] Checking for file '/usr/bin/.system/..<SP>/tcp.log' [ Not found ]
  612. [11:45:55] Checking for file '/usr/bin/.zeen/..<SP>/curatare/attrib' [ Not found ]
  613. [11:45:55] Checking for file '/usr/bin/.zeen/..<SP>/curatare/chattr' [ Not found ]
  614. [11:45:55] Checking for file '/usr/bin/.zeen/..<SP>/curatare/ps' [ Not found ]
  615. [11:45:55] Checking for file '/usr/bin/.zeen/..<SP>/curatare/pstree' [ Not found ]
  616. [11:45:55] Checking for file '/usr/bin/.system/..<SP>/.x/xC.o' [ Not found ]
  617. [11:45:55] Checking for directory '/usr/bin/.zeen' [ Not found ]
  618. [11:45:55] Checking for directory '/usr/bin/.zeen/..<SP>/curatare' [ Not found ]
  619. [11:45:55] Checking for directory '/usr/bin/.zeen/..<SP>/scan' [ Not found ]
  620. [11:45:56] Checking for directory '/usr/bin/.system/..<SP>' [ Not found ]
  621. [11:45:56] cb Rootkit [ Not found ]
  622. [11:45:56]
  623. [11:45:56] Checking for CiNIK Worm (Slapper.B variant)...
  624. [11:45:56] Checking for file '/tmp/.cinik' [ Not found ]
  625. [11:45:56] Checking for directory '/tmp/.font-unix/.cinik' [ Not found ]
  626. [11:45:56] CiNIK Worm (Slapper.B variant) [ Not found ]
  627. [11:45:56]
  628. [11:45:56] Checking for Danny-Boy's Abuse Kit...
  629. [11:45:56] Checking for file '/dev/mdev' [ Not found ]
  630. [11:45:56] Checking for file '/usr/lib/libX.a' [ Not found ]
  631. [11:45:56] Danny-Boy's Abuse Kit [ Not found ]
  632. [11:45:56]
  633. [11:45:56] Checking for Devil RootKit...
  634. [11:45:56] Checking for file '/var/lib/games/.src' [ Not found ]
  635. [11:45:56] Checking for file '/dev/dsx' [ Not found ]
  636. [11:45:56] Checking for file '/dev/caca' [ Not found ]
  637. [11:45:56] Checking for file '/dev/pro' [ Not found ]
  638. [11:45:56] Checking for file '/bin/bye' [ Not found ]
  639. [11:45:57] Checking for file '/bin/homedir' [ Not found ]
  640. [11:45:57] Checking for file '/usr/bin/xfss' [ Not found ]
  641. [11:45:57] Checking for file '/usr/sbin/tzava' [ Not found ]
  642. [11:45:57] Checking for file '/usr/doc/tar/.../.dracusor/stuff/holber' [ Not found ]
  643. [11:45:57] Checking for file '/usr/doc/tar/.../.dracusor/stuff/sense' [ Not found ]
  644. [11:45:57] Checking for file '/usr/doc/tar/.../.dracusor/stuff/clear' [ Not found ]
  645. [11:45:57] Checking for file '/usr/doc/tar/.../.dracusor/stuff/tzava' [ Not found ]
  646. [11:45:57] Checking for file '/usr/doc/tar/.../.dracusor/stuff/citeste' [ Not found ]
  647. [11:45:57] Checking for file '/usr/doc/tar/.../.dracusor/stuff/killrk' [ Not found ]
  648. [11:45:57] Checking for file '/usr/doc/tar/.../.dracusor/stuff/searchlog' [ Not found ]
  649. [11:45:57] Checking for file '/usr/doc/tar/.../.dracusor/stuff/gaoaza' [ Not found ]
  650. [11:45:57] Checking for file '/usr/doc/tar/.../.dracusor/stuff/cleaner' [ Not found ]
  651. [11:45:57] Checking for file '/usr/doc/tar/.../.dracusor/stuff/shk' [ Not found ]
  652. [11:45:57] Checking for file '/usr/doc/tar/.../.dracusor/stuff/srs' [ Not found ]
  653. [11:45:58] Checking for file '/usr/doc/tar/.../.dracusor/utile.tgz' [ Not found ]
  654. [11:45:58] Checking for file '/usr/doc/tar/.../.dracusor/webpage' [ Not found ]
  655. [11:45:58] Checking for file '/usr/doc/tar/.../.dracusor/getpsy' [ Not found ]
  656. [11:45:58] Checking for file '/usr/doc/tar/.../.dracusor/getbnc' [ Not found ]
  657. [11:45:58] Checking for file '/usr/doc/tar/.../.dracusor/getemech' [ Not found ]
  658. [11:45:58] Checking for file '/usr/doc/tar/.../.dracusor/localroot.sh' [ Not found ]
  659. [11:45:58] Checking for file '/usr/doc/tar/.../.dracusor/stuff/old/sense' [ Not found ]
  660. [11:45:58] Checking for directory '/usr/doc/tar/.../.dracusor' [ Not found ]
  661. [11:45:58] Devil RootKit [ Not found ]
  662. [11:45:58]
  663. [11:45:58] Checking for Dica-Kit Rootkit...
  664. [11:45:58] Checking for file '/lib/.sso' [ Not found ]
  665. [11:45:58] Checking for file '/lib/.so' [ Not found ]
  666. [11:45:58] Checking for file '/var/run/...dica/clean' [ Not found ]
  667. [11:45:58] Checking for file '/var/run/...dica/dxr' [ Not found ]
  668. [11:45:58] Checking for file '/var/run/...dica/read' [ Not found ]
  669. [11:45:59] Checking for file '/var/run/...dica/write' [ Not found ]
  670. [11:45:59] Checking for file '/var/run/...dica/lf' [ Not found ]
  671. [11:45:59] Checking for file '/var/run/...dica/xl' [ Not found ]
  672. [11:45:59] Checking for file '/var/run/...dica/xdr' [ Not found ]
  673. [11:45:59] Checking for file '/var/run/...dica/psg' [ Not found ]
  674. [11:45:59] Checking for file '/var/run/...dica/secure' [ Not found ]
  675. [11:45:59] Checking for file '/var/run/...dica/rdx' [ Not found ]
  676. [11:45:59] Checking for file '/var/run/...dica/va' [ Not found ]
  677. [11:45:59] Checking for file '/var/run/...dica/cl.sh' [ Not found ]
  678. [11:45:59] Checking for file '/var/run/...dica/last.log' [ Not found ]
  679. [11:45:59] Checking for file '/usr/bin/.etc' [ Not found ]
  680. [11:45:59] Checking for file '/etc/sshd_config' [ Not found ]
  681. [11:45:59] Checking for file '/etc/ssh_host_key' [ Not found ]
  682. [11:45:59] Checking for file '/etc/ssh_random_seed' [ Not found ]
  683. [11:46:00] Checking for directory '/var/run/...dica' [ Not found ]
  684. [11:46:00] Checking for directory '/var/run/...dica/mh' [ Not found ]
  685. [11:46:00] Checking for directory '/var/run/...dica/scan' [ Not found ]
  686. [11:46:00] Dica-Kit Rootkit [ Not found ]
  687. [11:46:00]
  688. [11:46:00] Checking for Dreams Rootkit...
  689. [11:46:00] Checking for file '/dev/ttyoa' [ Not found ]
  690. [11:46:00] Checking for file '/dev/ttyof' [ Not found ]
  691. [11:46:00] Checking for file '/dev/ttyop' [ Not found ]
  692. [11:46:00] Checking for file '/usr/bin/sense' [ Not found ]
  693. [11:46:00] Checking for file '/usr/bin/sl2' [ Not found ]
  694. [11:46:00] Checking for file '/usr/bin/logclear' [ Not found ]
  695. [11:46:00] Checking for file '/usr/bin/(swapd)' [ Not found ]
  696. [11:46:00] Checking for file '/usr/bin/initrd' [ Not found ]
  697. [11:46:00] Checking for file '/usr/bin/crontabs' [ Not found ]
  698. [11:46:00] Checking for file '/usr/bin/snfs' [ Not found ]
  699. [11:46:00] Checking for file '/usr/lib/libsss' [ Not found ]
  700. [11:46:01] Checking for file '/usr/lib/libsnf.log' [ Not found ]
  701. [11:46:01] Checking for file '/usr/lib/libshtift/top' [ Not found ]
  702. [11:46:01] Checking for file '/usr/lib/libshtift/ps' [ Not found ]
  703. [11:46:01] Checking for file '/usr/lib/libshtift/netstat' [ Not found ]
  704. [11:46:01] Checking for file '/usr/lib/libshtift/ls' [ Not found ]
  705. [11:46:01] Checking for file '/usr/lib/libshtift/ifconfig' [ Not found ]
  706. [11:46:01] Checking for file '/usr/include/linseed.h' [ Not found ]
  707. [11:46:01] Checking for file '/usr/include/linpid.h' [ Not found ]
  708. [11:46:01] Checking for file '/usr/include/linkey.h' [ Not found ]
  709. [11:46:01] Checking for file '/usr/include/linconf.h' [ Not found ]
  710. [11:46:01] Checking for file '/usr/include/iceseed.h' [ Not found ]
  711. [11:46:01] Checking for file '/usr/include/icepid.h' [ Not found ]
  712. [11:46:01] Checking for file '/usr/include/icekey.h' [ Not found ]
  713. [11:46:01] Checking for file '/usr/include/iceconf.h' [ Not found ]
  714. [11:46:02] Checking for directory '/dev/ida/.hpd' [ Not found ]
  715. [11:46:02] Checking for directory '/usr/lib/libshtift' [ Not found ]
  716. [11:46:02] Dreams Rootkit [ Not found ]
  717. [11:46:02]
  718. [11:46:02] Checking for Duarawkz Rootkit...
  719. [11:46:02] Checking for file '/usr/bin/duarawkz/loginpass' [ Not found ]
  720. [11:46:02] Checking for directory '/usr/bin/duarawkz' [ Not found ]
  721. [11:46:02] Duarawkz Rootkit [ Not found ]
  722. [11:46:02]
  723. [11:46:02] Checking for Enye LKM...
  724. [11:46:02] Checking for file '/etc/.enyelkmHIDE^IT.ko' [ Not found ]
  725. [11:46:02] Checking for file '/etc/.enyelkmOCULTAR.ko' [ Not found ]
  726. [11:46:02] Enye LKM [ Not found ]
  727. [11:46:02]
  728. [11:46:02] Checking for Flea Linux Rootkit...
  729. [11:46:02] Checking for file '/etc/ld.so.hash' [ Not found ]
  730. [11:46:02] Checking for file '/lib/security/.config/ssh/sshd_config' [ Not found ]
  731. [11:46:02] Checking for file '/lib/security/.config/ssh/ssh_host_key' [ Not found ]
  732. [11:46:02] Checking for file '/lib/security/.config/ssh/ssh_host_key.pub' [ Not found ]
  733. [11:46:03] Checking for file '/lib/security/.config/ssh/ssh_random_seed' [ Not found ]
  734. [11:46:03] Checking for file '/usr/bin/ssh2d' [ Not found ]
  735. [11:46:03] Checking for file '/usr/lib/ldlibns.so' [ Not found ]
  736. [11:46:03] Checking for file '/usr/lib/ldlibps.so' [ Not found ]
  737. [11:46:03] Checking for file '/usr/lib/ldlibpst.so' [ Not found ]
  738. [11:46:03] Checking for file '/usr/lib/ldlibdu.so' [ Not found ]
  739. [11:46:03] Checking for file '/usr/lib/ldlibct.so' [ Not found ]
  740. [11:46:03] Checking for directory '/lib/security/.config/ssh' [ Not found ]
  741. [11:46:03] Checking for directory '/dev/..0' [ Not found ]
  742. [11:46:03] Checking for directory '/dev/..0/backup' [ Not found ]
  743. [11:46:03] Flea Linux Rootkit [ Not found ]
  744. [11:46:03]
  745. [11:46:03] Checking for Fu Rootkit...
  746. [11:46:03] Checking for file '/sbin/xc' [ Not found ]
  747. [11:46:03] Checking for file '/usr/include/ivtype.h' [ Not found ]
  748. [11:46:04] Checking for file '/bin/.lib' [ Not found ]
  749. [11:46:04] Fu Rootkit [ Not found ]
  750. [11:46:04]
  751. [11:46:04] Checking for Fuck`it Rootkit...
  752. [11:46:04] Checking for file '/lib/libproc.so.2.0.7' [ Not found ]
  753. [11:46:04] Checking for file '/dev/proc/.bash_profile' [ Not found ]
  754. [11:46:04] Checking for file '/dev/proc/.bashrc' [ Not found ]
  755. [11:46:04] Checking for file '/dev/proc/.cshrc' [ Not found ]
  756. [11:46:04] Checking for file '/dev/proc/fuckit/hax0r' [ Not found ]
  757. [11:46:04] Checking for file '/dev/proc/fuckit/hax0rshell' [ Not found ]
  758. [11:46:04] Checking for file '/dev/proc/fuckit/config/lports' [ Not found ]
  759. [11:46:04] Checking for file '/dev/proc/fuckit/config/rports' [ Not found ]
  760. [11:46:04] Checking for file '/dev/proc/fuckit/config/rkconf' [ Not found ]
  761. [11:46:04] Checking for file '/dev/proc/fuckit/config/password' [ Not found ]
  762. [11:46:04] Checking for file '/dev/proc/fuckit/config/progs' [ Not found ]
  763. [11:46:04] Checking for file '/dev/proc/fuckit/system-bins/init' [ Not found ]
  764. [11:46:05] Checking for file '/usr/lib/libcps.a' [ Not found ]
  765. [11:46:05] Checking for file '/usr/lib/libtty.a' [ Not found ]
  766. [11:46:05] Checking for directory '/dev/proc' [ Not found ]
  767. [11:46:05] Checking for directory '/dev/proc/fuckit' [ Not found ]
  768. [11:46:05] Checking for directory '/dev/proc/fuckit/system-bins' [ Not found ]
  769. [11:46:05] Checking for directory '/dev/proc/toolz' [ Not found ]
  770. [11:46:05] Fuck`it Rootkit [ Not found ]
  771. [11:46:05]
  772. [11:46:05] Checking for GasKit Rootkit...
  773. [11:46:05] Checking for file '/dev/dev/gaskit/sshd/sshdd' [ Not found ]
  774. [11:46:05] Checking for directory '/dev/dev' [ Not found ]
  775. [11:46:05] Checking for directory '/dev/dev/gaskit' [ Not found ]
  776. [11:46:05] Checking for directory '/dev/dev/gaskit/sshd' [ Not found ]
  777. [11:46:05] GasKit Rootkit [ Not found ]
  778. [11:46:05]
  779. [11:46:05] Checking for Heroin LKM...
  780. [11:46:06] Checking for kernel symbol 'heroin' [ Not found ]
  781. [11:46:06] Heroin LKM [ Not found ]
  782. [11:46:06]
  783. [11:46:06] Checking for HjC Kit...
  784. [11:46:06] Checking for directory '/dev/.hijackerz' [ Not found ]
  785. [11:46:06] HjC Kit [ Not found ]
  786. [11:46:06]
  787. [11:46:06] Checking for ignoKit Rootkit...
  788. [11:46:06] Checking for file '/lib/defs/p' [ Not found ]
  789. [11:46:06] Checking for file '/lib/defs/q' [ Not found ]
  790. [11:46:06] Checking for file '/lib/defs/r' [ Not found ]
  791. [11:46:06] Checking for file '/lib/defs/s' [ Not found ]
  792. [11:46:06] Checking for file '/lib/defs/t' [ Not found ]
  793. [11:46:06] Checking for file '/usr/lib/defs/p' [ Not found ]
  794. [11:46:06] Checking for file '/usr/lib/defs/q' [ Not found ]
  795. [11:46:06] Checking for file '/usr/lib/defs/r' [ Not found ]
  796. [11:46:06] Checking for file '/usr/lib/defs/s' [ Not found ]
  797. [11:46:06] Checking for file '/usr/lib/defs/t' [ Not found ]
  798. [11:46:07] Checking for file '/usr/lib/.libigno/pkunsec' [ Not found ]
  799. [11:46:07] Checking for file '/usr/lib/.libigno/.igno/psybnc/psybnc' [ Not found ]
  800. [11:46:07] Checking for directory '/usr/lib/.libigno' [ Not found ]
  801. [11:46:07] Checking for directory '/usr/lib/.libigno/.igno' [ Not found ]
  802. [11:46:07] ignoKit Rootkit [ Not found ]
  803. [11:46:07]
  804. [11:46:07] Checking for IntoXonia-NG Rootkit...
  805. [11:46:07] Checking for kernel symbol 'funces' [ Not found ]
  806. [11:46:07] Checking for kernel symbol 'ixinit' [ Not found ]
  807. [11:46:08] Checking for kernel symbol 'tricks' [ Not found ]
  808. [11:46:08] Checking for kernel symbol 'kernel_unlink' [ Not found ]
  809. [11:46:08] Checking for kernel symbol 'rootme' [ Not found ]
  810. [11:46:08] Checking for kernel symbol 'hide_module' [ Not found ]
  811. [11:46:08] Checking for kernel symbol 'find_sys_call_tbl' [ Not found ]
  812. [11:46:08] IntoXonia-NG Rootkit [ Not found ]
  813. [11:46:09]
  814. [11:46:09] Checking for Irix Rootkit...
  815. [11:46:09] Checking for directory '/dev/pts/01' [ Not found ]
  816. [11:46:09] Checking for directory '/dev/pts/01/backup' [ Not found ]
  817. [11:46:09] Checking for directory '/dev/pts/01/etc' [ Not found ]
  818. [11:46:09] Checking for directory '/dev/pts/01/tmp' [ Not found ]
  819. [11:46:09] Irix Rootkit [ Not found ]
  820. [11:46:09]
  821. [11:46:09] Checking for Jynx Rootkit...
  822. [11:46:09] Checking for file '/xochikit/bc' [ Not found ]
  823. [11:46:09] Checking for file '/xochikit/ld_poison.so' [ Not found ]
  824. [11:46:09] Checking for file '/omgxochi/bc' [ Not found ]
  825. [11:46:09] Checking for file '/omgxochi/ld_poison.so' [ Not found ]
  826. [11:46:09] Checking for file '/var/local/^^/bc' [ Not found ]
  827. [11:46:09] Checking for file '/var/local/^^/ld_poison.so' [ Not found ]
  828. [11:46:09] Checking for directory '/xochikit' [ Not found ]
  829. [11:46:09] Checking for directory '/omgxochi' [ Not found ]
  830. [11:46:10] Checking for directory '/var/local/^^' [ Not found ]
  831. [11:46:10] Jynx Rootkit [ Not found ]
  832. [11:46:10]
  833. [11:46:10] Checking for KBeast Rootkit...
  834. [11:46:10] Checking for file '/usr/_h4x_/ipsecs-kbeast-v1.ko' [ Not found ]
  835. [11:46:10] Checking for file '/usr/_h4x_/_h4x_bd' [ Not found ]
  836. [11:46:10] Checking for file '/usr/_h4x_/acctlog' [ Not found ]
  837. [11:46:10] Checking for directory '/usr/_h4x_' [ Not found ]
  838. [11:46:10] Checking for kernel symbol 'h4x_delete_module' [ Not found ]
  839. [11:46:10] Checking for kernel symbol 'h4x_getdents64' [ Not found ]
  840. [11:46:11] Checking for kernel symbol 'h4x_kill' [ Not found ]
  841. [11:46:11] Checking for kernel symbol 'h4x_open' [ Not found ]
  842. [11:46:11] Checking for kernel symbol 'h4x_read' [ Not found ]
  843. [11:46:11] Checking for kernel symbol 'h4x_rename' [ Not found ]
  844. [11:46:11] Checking for kernel symbol 'h4x_rmdir' [ Not found ]
  845. [11:46:12] Checking for kernel symbol 'h4x_tcp4_seq_show' [ Not found ]
  846. [11:46:12] Checking for kernel symbol 'h4x_write' [ Not found ]
  847. [11:46:12] KBeast Rootkit [ Not found ]
  848. [11:46:12]
  849. [11:46:12] Checking for Kitko Rootkit...
  850. [11:46:12] Checking for directory '/usr/src/redhat/SRPMS/...' [ Not found ]
  851. [11:46:12] Kitko Rootkit [ Not found ]
  852. [11:46:12]
  853. [11:46:12] Checking for Knark Rootkit...
  854. [11:46:12] Checking for file '/proc/knark/pids' [ Not found ]
  855. [11:46:12] Checking for directory '/proc/knark' [ Not found ]
  856. [11:46:12] Knark Rootkit [ Not found ]
  857. [11:46:12]
  858. [11:46:12] Checking for ld-linuxv.so Rootkit...
  859. [11:46:12] Checking for file '/lib/ld-linuxv.so.1' [ Not found ]
  860. [11:46:13] Checking for directory '/var/opt/_so_cache' [ Not found ]
  861. [11:46:13] Checking for directory '/var/opt/_so_cache/ld' [ Not found ]
  862. [11:46:13] Checking for directory '/var/opt/_so_cache/lc' [ Not found ]
  863. [11:46:13] ld-linuxv.so Rootkit [ Not found ]
  864. [11:46:13]
  865. [11:46:13] Checking for Li0n Worm...
  866. [11:46:13] Checking for file '/bin/in.telnetd' [ Not found ]
  867. [11:46:13] Checking for file '/bin/mjy' [ Not found ]
  868. [11:46:13] Checking for file '/usr/man/man1/man1/lib/.lib/mjy' [ Not found ]
  869. [11:46:13] Checking for file '/usr/man/man1/man1/lib/.lib/in.telnetd' [ Not found ]
  870. [11:46:13] Checking for file '/usr/man/man1/man1/lib/.lib/.x' [ Not found ]
  871. [11:46:13] Checking for file '/dev/.lib/lib/scan/1i0n.sh' [ Not found ]
  872. [11:46:13] Checking for file '/dev/.lib/lib/scan/hack.sh' [ Not found ]
  873. [11:46:13] Checking for file '/dev/.lib/lib/scan/bind' [ Not found ]
  874. [11:46:13] Checking for file '/dev/.lib/lib/scan/randb' [ Not found ]
  875. [11:46:13] Checking for file '/dev/.lib/lib/scan/scan.sh' [ Not found ]
  876. [11:46:14] Checking for file '/dev/.lib/lib/scan/pscan' [ Not found ]
  877. [11:46:14] Checking for file '/dev/.lib/lib/scan/star.sh' [ Not found ]
  878. [11:46:14] Checking for file '/dev/.lib/lib/scan/bindx.sh' [ Not found ]
  879. [11:46:14] Checking for file '/dev/.lib/lib/scan/bindname.log' [ Not found ]
  880. [11:46:14] Checking for file '/dev/.lib/lib/1i0n.sh' [ Not found ]
  881. [11:46:14] Checking for file '/dev/.lib/lib/lib/netstat' [ Not found ]
  882. [11:46:14] Checking for file '/dev/.lib/lib/lib/dev/.1addr' [ Not found ]
  883. [11:46:14] Checking for file '/dev/.lib/lib/lib/dev/.1logz' [ Not found ]
  884. [11:46:14] Checking for file '/dev/.lib/lib/lib/dev/.1proc' [ Not found ]
  885. [11:46:14] Checking for file '/dev/.lib/lib/lib/dev/.1file' [ Not found ]
  886. [11:46:14] Li0n Worm [ Not found ]
  887. [11:46:14]
  888. [11:46:14] Checking for Lockit / LJK2 Rootkit...
  889. [11:46:14] Checking for file '/usr/lib/libmen.oo/.LJK2/ssh_config' [ Not found ]
  890. [11:46:14] Checking for file '/usr/lib/libmen.oo/.LJK2/ssh_host_key' [ Not found ]
  891. [11:46:15] Checking for file '/usr/lib/libmen.oo/.LJK2/ssh_host_key.pub' [ Not found ]
  892. [11:46:15] Checking for file '/usr/lib/libmen.oo/.LJK2/ssh_random_seed*' [ Not found ]
  893. [11:46:15] Checking for file '/usr/lib/libmen.oo/.LJK2/sshd_config' [ Not found ]
  894. [11:46:15] Checking for file '/usr/lib/libmen.oo/.LJK2/backdoor/RK1bd' [ Not found ]
  895. [11:46:15] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/du' [ Not found ]
  896. [11:46:15] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/ifconfig' [ Not found ]
  897. [11:46:15] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/inetd.conf' [ Not found ]
  898. [11:46:15] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/locate' [ Not found ]
  899. [11:46:15] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/login' [ Not found ]
  900. [11:46:15] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/ls' [ Not found ]
  901. [11:46:15] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/netstat' [ Not found ]
  902. [11:46:15] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/ps' [ Not found ]
  903. [11:46:15] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/pstree' [ Not found ]
  904. [11:46:16] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/rc.sysinit' [ Not found ]
  905. [11:46:16] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/syslogd' [ Not found ]
  906. [11:46:16] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/tcpd' [ Not found ]
  907. [11:46:16] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/top' [ Not found ]
  908. [11:46:16] Checking for file '/usr/lib/libmen.oo/.LJK2/clean/RK1sauber' [ Not found ]
  909. [11:46:16] Checking for file '/usr/lib/libmen.oo/.LJK2/clean/RK1wted' [ Not found ]
  910. [11:46:16] Checking for file '/usr/lib/libmen.oo/.LJK2/hack/RK1parse' [ Not found ]
  911. [11:46:16] Checking for file '/usr/lib/libmen.oo/.LJK2/hack/RK1sniff' [ Not found ]
  912. [11:46:16] Checking for file '/usr/lib/libmen.oo/.LJK2/hide/.RK1addr' [ Not found ]
  913. [11:46:16] Checking for file '/usr/lib/libmen.oo/.LJK2/hide/.RK1dir' [ Not found ]
  914. [11:46:16] Checking for file '/usr/lib/libmen.oo/.LJK2/hide/.RK1log' [ Not found ]
  915. [11:46:16] Checking for file '/usr/lib/libmen.oo/.LJK2/hide/.RK1proc' [ Not found ]
  916. [11:46:16] Checking for file '/usr/lib/libmen.oo/.LJK2/hide/RK1phidemod.c' [ Not found ]
  917. [11:46:16] Checking for file '/usr/lib/libmen.oo/.LJK2/modules/README.modules' [ Not found ]
  918. [11:46:16] Checking for file '/usr/lib/libmen.oo/.LJK2/modules/RK1hidem.c' [ Not found ]
  919. [11:46:16] Checking for file '/usr/lib/libmen.oo/.LJK2/modules/RK1phide' [ Not found ]
  920. [11:46:17] Checking for file '/usr/lib/libmen.oo/.LJK2/sshconfig/RK1ssh' [ Not found ]
  921. [11:46:17] Checking for directory '/usr/lib/libmen.oo/.LJK2' [ Not found ]
  922. [11:46:17] Lockit / LJK2 Rootkit [ Not found ]
  923. [11:46:17]
  924. [11:46:17] Checking for Mood-NT Rootkit...
  925. [11:46:17] Checking for file '/sbin/init__mood-nt-_-_cthulhu' [ Not found ]
  926. [11:46:17] Checking for file '/_cthulhu/mood-nt.init' [ Not found ]
  927. [11:46:17] Checking for file '/_cthulhu/mood-nt.conf' [ Not found ]
  928. [11:46:17] Checking for file '/_cthulhu/mood-nt.sniff' [ Not found ]
  929. [11:46:17] Checking for directory '/_cthulhu' [ Not found ]
  930. [11:46:17] Mood-NT Rootkit [ Not found ]
  931. [11:46:17]
  932. [11:46:17] Checking for MRK Rootkit...
  933. [11:46:17] Checking for file '/dev/ida/.inet/pid' [ Not found ]
  934. [11:46:17] Checking for file '/dev/ida/.inet/ssh_host_key' [ Not found ]
  935. [11:46:17] Checking for file '/dev/ida/.inet/ssh_random_seed' [ Not found ]
  936. [11:46:17] Checking for file '/dev/ida/.inet/tcp.log' [ Not found ]
  937. [11:46:18] Checking for directory '/dev/ida/.inet' [ Not found ]
  938. [11:46:18] Checking for directory '/var/spool/cron/.sh' [ Not found ]
  939. [11:46:18] MRK Rootkit [ Not found ]
  940. [11:46:18]
  941. [11:46:18] Checking for Ni0 Rootkit...
  942. [11:46:18] Checking for file '/var/lock/subsys/...datafile.../...net...' [ Not found ]
  943. [11:46:18] Checking for file '/var/lock/subsys/...datafile.../...port...' [ Not found ]
  944. [11:46:18] Checking for file '/var/lock/subsys/...datafile.../...ps...' [ Not found ]
  945. [11:46:18] Checking for file '/var/lock/subsys/...datafile.../...file...' [ Not found ]
  946. [11:46:18] Checking for directory '/tmp/waza' [ Not found ]
  947. [11:46:18] Checking for directory '/var/lock/subsys/...datafile...' [ Not found ]
  948. [11:46:18] Checking for directory '/usr/sbin/es' [ Not found ]
  949. [11:46:18] Ni0 Rootkit [ Not found ]
  950. [11:46:18]
  951. [11:46:18] Checking for Ohhara Rootkit...
  952. [11:46:18] Checking for file '/var/lock/subsys/...datafile.../...datafile.../in.smbd.log' [ Not found ]
  953. [11:46:18] Checking for directory '/var/lock/subsys/...datafile...' [ Not found ]
  954. [11:46:19] Checking for directory '/var/lock/subsys/...datafile.../...datafile...' [ Not found ]
  955. [11:46:19] Checking for directory '/var/lock/subsys/...datafile.../...datafile.../bin' [ Not found ]
  956. [11:46:19] Checki
Add Comment
Please, Sign In to add comment