Advertisement
Guest User

Untitled

a guest
Nov 26th, 2019
281
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 5.18 KB | None | 0 0
  1.  
  2.  
  3. [11:02:16] Starting system checks...
  4.  
  5.  
  6. [11:02:21] Info: Found file '/usr/sbin/adduser': it is whitelisted for the 'script replacement' check.
  7. [11:02:24] Info: Found file '/usr/bin/egrep': it is whitelisted for the 'script replacement' check.
  8. [11:02:24] Info: Found file '/usr/bin/fgrep': it is whitelisted for the 'script replacement' check.
  9. [11:02:25] Info: Found file '/usr/bin/ldd': it is whitelisted for the 'script replacement' check.
  10. [11:02:29] Info: Found file '/usr/bin/which': it is whitelisted for the 'script replacement' check.
  11. [11:02:29] /usr/bin/lwp-request [ Warning ]
  12. [11:02:29] Warning: The command '/usr/bin/lwp-request' has been replaced by a script: /usr/bin/lwp-request: Perl script text executable
  13.  
  14.  
  15.  
  16.  
  17.  
  18.  
  19.  
  20. [11:05:49] Info: Starting test name 'ipc_shared_mem'
  21. [11:05:49] Info: The minimum shared memory segment size to be checked (in bytes): 1048576 (1.0MB)
  22. [11:05:49] Checking for suspicious (large) shared memory segments [ Warning ]
  23. [11:05:49] Warning: The following suspicious (large) shared memory segments have been found:
  24. [11:05:49] Process: /usr/bin/mate-panel PID: 1820 Owner: xxxxx Size: 1.0MB (configured size allowed: 1.0MB)
  25. [11:05:49] Process: /usr/lib/x86_64-linux-gnu/polkit-mate/polkit-mate-authentication-agent-1 PID: 1917 Owner: xxxxxx Size: 4.0MB (configured size allowed: 1.0MB)
  26. [11:05:49] Process: /usr/bin/mono-sgen PID: 2090 Owner: root Size: 4.0MB (configured size allowed: 1.0MB)
  27. [11:05:49] Process: /usr/bin/mate-screensaver PID: 1905 Owner: xxxxxx Size: 64MB (configured size allowed: 1.0MB)
  28. [11:05:49] Process: /usr/bin/mate-terminal PID: 2107 Owner: xxxxxx Size: 4.0MB (configured size allowed: 1.0MB)
  29. [11:05:49] Process: /usr/lib/mate-panel/clock-applet PID: 2043 Owner: xxxxx Size: 2.0MB (configured size allowed: 1.0MB)
  30. [11:05:49] Process: /usr/lib/eddie-ui/eddie-tray PID: 2112 Owner: xxxxx Size: 1.0MB (configured size allowed: 1.0MB)
  31. [11:05:49] Process: /usr/bin/caja PID: 1841 Owner: xxxxx Size: 4.0MB (configured size allowed: 1.0MB)
  32. [11:05:49] Process: /usr/bin/caja PID: 1841 Owner: xxxxx Size: 64MB (configured size allowed: 1.0MB)
  33. [11:05:49]
  34. [11:05:49] Info: Starting test name 'trojans'
  35.  
  36.  
  37.  
  38.  
  39. [11:05:59] Info: Starting test name 'startup_files'
  40. [11:05:59] Performing system boot checks
  41. [11:05:59] Checking for local host name [ Found ]
  42. [11:05:59]
  43. [11:05:59] Info: Starting test name 'startup_malware'
  44. [11:05:59] Checking for system startup files [ Found ]
  45.  
  46. [11:06:02]
  47. [11:06:02] Info: Starting test name 'group_accounts'
  48. [11:06:02] Performing group and account checks
  49. [11:06:02] Checking for passwd file [ Found ]
  50.  
  51.  
  52. [11:06:02] Info: Starting test name 'system_configs_ssh'
  53. [11:06:02] Checking for an SSH configuration file [ Found ]
  54. [11:06:03] Info: Found an SSH configuration file: /etc/ssh/sshd_config
  55. [11:06:03] Info: Rkhunter option ALLOW_SSH_ROOT_USER set to 'no'.
  56. [11:06:03] Info: Rkhunter option ALLOW_SSH_PROT_V1 set to '2'.
  57. [11:06:03] Checking if SSH root access is allowed [ Warning ]
  58. [11:06:03] Warning: The SSH configuration option 'PermitRootLogin' has not been set.
  59. The default value may be 'yes', to allow root access.
  60. [11:06:03] Checking if SSH protocol v1 is allowed [ Not set ]
  61.  
  62. [11:06:03] Info: Starting test name 'system_configs_syslog'
  63. [11:06:03] Checking for a running system logging daemon [ Found ]
  64. [11:06:03] Info: A running 'rsyslog' daemon has been found.
  65. [11:06:03] Info: A running 'systemd-journald' daemon has been found.
  66. [11:06:03] Info: Found an rsyslog configuration file: /etc/rsyslog.conf
  67. [11:06:03] Info: Found a systemd configuration file: /etc/systemd/journald.conf
  68. [11:06:03] Checking for a system logging configuration file [ Found ]
  69. [11:06:03] Checking if syslog remote logging is allowed [ Not allowed ]
  70. [11:06:03]
  71. [11:06:03] Info: Starting test name 'filesystem'
  72. [11:06:03] Performing filesystem checks
  73. [11:06:03] Info: SCAN_MODE_DEV set to 'THOROUGH'
  74. [11:06:04] Checking /dev for suspicious file types [ Warning ]
  75. [11:06:04] Warning: Suspicious file types found in /dev:
  76. [11:06:04] /dev/shm/mono.2090: data
  77. [11:06:04] /dev/shm/mono.2069: data
  78. [11:06:05] Checking for hidden files and directories [ Warning ]
  79. [11:06:05] Warning: Hidden directory found: /etc/.java
  80. [11:06:05] Checking for missing log files [ Skipped ]
  81. [11:06:05] Info: No missing log file names configured.
  82. [11:06:05] Checking for empty log files [ Skipped ]
  83. [11:06:05] Info: No empty log file names configured.
  84. [11:06:15]
  85.  
  86.  
  87. [11:06:15] System checks summary
  88. [11:06:15] =====================
  89. [11:06:15]
  90. [11:06:15] File properties checks...
  91. [11:06:15] Files checked: 151
  92. [11:06:15] Suspect files: 1
  93. [11:06:15]
  94. [11:06:15] Rootkit checks...
  95. [11:06:15] Rootkits checked : 501
  96. [11:06:15] Possible rootkits: 9
  97. [11:06:15]
  98. [11:06:15] Applications checks...
  99. [11:06:16] All checks skipped
  100. [11:06:16]
  101. [11:06:16] The system checks took: 3 minutes and 59 seconds
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement