Guest User

Untitled

a guest
Oct 3rd, 2018
405
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 338.68 KB | None | 0 0
  1. Authenticating with public key "imported-openssh-key"
  2. ┌────────────────────────────────────────────────────────────────────┐
  3. │ • MobaXterm 10.6 • │
  4. │ (SSH client, X-server and networking tools) │
  5. │ │
  6. │ ➤ SSH session to root@165.227.222.101 │
  7. │ • SSH compression : ✔ │
  8. │ • SSH-browser : ✔ │
  9. │ • X11-forwarding : ✔ (remote display is forwarded through SSH) │
  10. │ • DISPLAY : ✔ (automatically set on remote server) │
  11. │ │
  12. │ ➤ For more info, ctrl+click on help or visit our website │
  13. └────────────────────────────────────────────────────────────────────┘
  14.  
  15. Welcome to Ubuntu 16.04.5 LTS (GNU/Linux 4.4.0-130-generic x86_64)
  16.  
  17. * Documentation: https://help.ubuntu.com
  18. * Management: https://landscape.canonical.com
  19. * Support: https://ubuntu.com/advantage
  20.  
  21. Get cloud support with Ubuntu Advantage Cloud Guest:
  22. http://www.ubuntu.com/business/services/cloud
  23.  
  24. 29 packages can be updated.
  25. 1 update is a security update.
  26.  
  27.  
  28. *** System restart required ***
  29. Last login: Thu Aug 16 16:11:09 2018 from 212.170.103.179
  30. /usr/bin/xauth: file /root/.Xauthority does not exist
  31. root@node8-new-21:~# apt-get install lynis -y
  32. Reading package lists... Done
  33. Building dependency tree
  34. Reading state information... Done
  35. The following packages were automatically installed and are no longer required:
  36. grub-pc-bin linux-headers-4.4.0-103 linux-headers-4.4.0-103-generic linux-headers-4.4.0-104 linux-headers-4.4.0-104-generic linux-headers-4.4.0-108
  37. linux-headers-4.4.0-108-generic linux-headers-4.4.0-109 linux-headers-4.4.0-109-generic linux-headers-4.4.0-112 linux-headers-4.4.0-112-generic
  38. linux-headers-4.4.0-116 linux-headers-4.4.0-116-generic linux-headers-4.4.0-119 linux-headers-4.4.0-119-generic linux-headers-4.4.0-121
  39. linux-headers-4.4.0-121-generic linux-headers-4.4.0-124 linux-headers-4.4.0-124-generic linux-headers-4.4.0-127 linux-headers-4.4.0-127-generic
  40. linux-headers-4.4.0-128 linux-headers-4.4.0-128-generic linux-headers-4.4.0-133 linux-headers-4.4.0-133-generic linux-image-4.4.0-103-generic
  41. linux-image-4.4.0-104-generic linux-image-4.4.0-108-generic linux-image-4.4.0-109-generic linux-image-4.4.0-112-generic linux-image-4.4.0-116-generic
  42. linux-image-4.4.0-119-generic linux-image-4.4.0-121-generic linux-image-4.4.0-124-generic linux-image-4.4.0-127-generic linux-image-4.4.0-128-generic
  43. linux-image-4.4.0-133-generic
  44. Use 'apt autoremove' to remove them.
  45. The following additional packages will be installed:
  46. menu
  47. Suggested packages:
  48. menu-l10n gksu | kde-runtime | ktsuss
  49. The following NEW packages will be installed:
  50. lynis menu
  51. 0 upgraded, 2 newly installed, 0 to remove and 33 not upgraded.
  52. Need to get 478 kB of archives.
  53. After this operation, 2,416 kB of additional disk space will be used.
  54. Get:1 http://nyc2.mirrors.digitalocean.com/ubuntu xenial/universe amd64 lynis all 2.1.1-1 [129 kB]
  55. Get:2 http://nyc2.mirrors.digitalocean.com/ubuntu xenial-updates/universe amd64 menu amd64 2.1.47ubuntu1.16.04.1 [349 kB]
  56. Fetched 478 kB in 0s (2,128 kB/s)
  57. Selecting previously unselected package lynis.
  58. (Reading database ... 451371 files and directories currently installed.)
  59. Preparing to unpack .../archives/lynis_2.1.1-1_all.deb ...
  60. Unpacking lynis (2.1.1-1) ...
  61. Selecting previously unselected package menu.
  62. Preparing to unpack .../menu_2.1.47ubuntu1.16.04.1_amd64.deb ...
  63. Unpacking menu (2.1.47ubuntu1.16.04.1) ...
  64. Processing triggers for man-db (2.7.5-1) ...
  65. Processing triggers for mime-support (3.59ubuntu1) ...
  66. Processing triggers for install-info (6.1.0.dfsg.1-5) ...
  67. Setting up lynis (2.1.1-1) ...
  68. Setting up menu (2.1.47ubuntu1.16.04.1) ...
  69. Processing triggers for menu (2.1.47ubuntu1.16.04.1) ...
  70. root@node8-new-21:~# lynis audit system
  71.  
  72. [ Lynis 2.1.1 ]
  73.  
  74. ################################################################################
  75. Lynis comes with ABSOLUTELY NO WARRANTY. This is free software, and you are
  76. welcome to redistribute it under the terms of the GNU General Public License.
  77. See the LICENSE file for details about using this software.
  78.  
  79. Copyright 2007-2015 - CISOfy, https://cisofy.com
  80. Enterprise support and plugins available via CISOfy
  81. ################################################################################
  82.  
  83. [+] Initializing program
  84. ------------------------------------
  85. - Detecting OS... [ DONE ]
  86.  
  87. ---------------------------------------------------
  88. Program version: 2.1.1
  89. Operating system: Linux
  90. Operating system name: Ubuntu
  91. Operating system version: 16.04
  92. Kernel version: 4.4.0
  93. Hardware platform: x86_64
  94. Hostname: node8-new-21
  95. Auditor: [Unknown]
  96. Profile: /etc/lynis/default.prf
  97. Log file: /var/log/lynis.log
  98. Report file: /var/log/lynis-report.dat
  99. Report version: 1.0
  100. Plugin directory: /etc/lynis/plugins
  101. ---------------------------------------------------
  102. - Checking profile file (/etc/lynis/default.prf)...
  103. - Program update status... [ WARNING ]
  104.  
  105. ===============================================================================
  106. Lynis update available
  107. ===============================================================================
  108.  
  109. Current version : 211 Latest version : 266
  110.  
  111. Please update to the latest version for new features, bug fixes, tests
  112. and baselines.
  113.  
  114. https://cisofy.com/downloads/
  115.  
  116. ===============================================================================
  117.  
  118.  
  119. [+] System Tools
  120. ------------------------------------
  121. - Scanning available tools...
  122. - Checking system binaries...
  123.  
  124. [+] Plugins (phase 1)
  125. ------------------------------------
  126. Note: plugins have more extensive tests, which may take a few minutes to complete
  127.  
  128. - Plugin: debian
  129. [
  130. [+] Debian Tests
  131. ------------------------------------
  132. - Checking for system binaries that are required by Debian Tests...
  133. - Checking /bin... [ FOUND ]
  134. - Checking /sbin... [ FOUND ]
  135. - Checking /usr/bin... [ FOUND ]
  136. - Checking /usr/sbin... [ FOUND ]
  137. - Checking /usr/local/bin... [ FOUND ]
  138. - Checking /usr/local/sbin... [ FOUND ]
  139. - Authentication:
  140. - PAM (Pluggable Authentication Modules):
  141. - libpam-tmpdir [ Not Installed ]
  142. - libpam-usb [ Not Installed ]
  143. - File System Checks:
  144. - DM-Crypt, Cryptsetup & Cryptmount:
  145. - Checking / on /dev/vda1 [ NOT ENCRYPTED ]
  146. - Checking /boot/efi on /dev/vda15 [ NOT ENCRYPTED ]
  147. - Ecryptfs [ NOT INSTALLED ]
  148. - Software:
  149. - apt-listbugs [ Not Installed ]
  150. - apt-listchanges [ Not Installed ]
  151. - checkrestart [ Not Installed ]
  152. - debsecan [ Not Installed ]
  153. - debsums [ Not Installed ]
  154. - fail2ban [ Not Installed ]
  155.  
  156. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  157.  
  158. ]
  159.  
  160. [+] Boot and services
  161. ------------------------------------
  162. - Service Manager [ UNKNOWN ]
  163. - Checking presence GRUB [ OK ]
  164. - Checking presence GRUB2 [ FOUND ]
  165. - Checking for password protection [ WARNING ]
  166. - Check running services (systemctl) [ DONE ]
  167. Result: found 23 running services
  168.  
  169. - Check enabled services at boot (systemctl) [ DONE ]
  170. Result: found 35 enabled services
  171. - Check startup files (permissions) [ OK ]
  172.  
  173. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  174.  
  175. [+] Kernel
  176. ------------------------------------
  177. - Checking default run level [ RUNLEVEL 5 ]
  178. - Checking CPU support (NX/PAE)
  179. CPU support: PAE and/or NoeXecute supported [ FOUND ]
  180. - Checking kernel version and release [ DONE ]
  181. - Checking kernel type [ DONE ]
  182. - Checking loaded kernel modules [ DONE ]
  183. Found 50 active modules
  184. - Checking Linux kernel configuration file [ FOUND ]
  185. - Checking default I/O kernel scheduler [ FOUND ]
  186. - Checking for available kernel update [ OK ]
  187. - Checking core dumps configuration [ DISABLED ]
  188. - Checking setuid core dumps configuration [ PROTECTED ]
  189. - Check if reboot is needed [ YES ]
  190.  
  191. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  192.  
  193.  
  194. [+] Memory and processes
  195. ------------------------------------
  196. - Checking /proc/meminfo [ FOUND ]
  197. - Searching for dead/zombie processes [ OK ]
  198. - Searching for IO waiting processes [ OK ]
  199.  
  200. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  201.  
  202.  
  203. [+] Users, Groups and Authentication
  204. ------------------------------------
  205. - Search administrator accounts [ OK ]
  206. - Checking for non-unique UIDs [ OK ]
  207. - Checking consistency of group files (grpck) [ OK ]
  208. - Checking non unique group ID's [ OK ]
  209. - Checking non unique group names [ OK ]
  210. - Checking password file consistency [ OK ]
  211. - Query system users (non daemons) [ DONE ]
  212. - Checking NIS+ authentication support [ NOT ENABLED ]
  213. - Checking NIS authentication support [ NOT ENABLED ]
  214. - Checking sudoers file [ FOUND ]
  215. - Check sudoers file permissions [ OK ]
  216. - Checking PAM password strength tools [ SUGGESTION ]
  217. - Checking PAM configuration files (pam.conf) [ FOUND ]
  218. - Checking PAM configuration files (pam.d) [ FOUND ]
  219. - Checking PAM modules [ FOUND ]
  220. - Checking LDAP module in PAM [ NOT FOUND ]
  221. - Checking accounts without expire date [ OK ]
  222. - Checking accounts without password [ OK ]
  223. - Checking user password aging [ DISABLED ]
  224. - Determining default umask
  225. - Checking umask (/etc/profile) [ OK ]
  226. - Checking umask (/etc/login.defs) [ SUGGESTION ]
  227. - Checking umask (/etc/init.d/rc) [ SUGGESTION ]
  228. - Checking LDAP authentication support [ NOT ENABLED ]
  229.  
  230. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  231.  
  232.  
  233. [+] Shells
  234. ------------------------------------
  235. - Checking shells from /etc/shells
  236. Result: found 6 shells (valid shells: 6).
  237. - Session timeout settings/tools [ NONE ]
  238.  
  239. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  240.  
  241.  
  242. [+] File systems
  243. ------------------------------------
  244. - Checking mount points
  245. - Checking /home mount point [ SUGGESTION ]
  246. - Checking /tmp mount point [ SUGGESTION ]
  247. - Checking /var mount point [ OK ]
  248. - Checking LVM volume groups [ NONE ]
  249. - Querying FFS/UFS mount points (fstab) [ NONE ]
  250. - Query swap partitions (fstab) [ NONE ]
  251. - Testing swap partitions [ CHECK NEEDED ]
  252. - Checking for old files in /tmp [ OK ]
  253. - Checking /tmp sticky bit [ OK ]
  254. - ACL support root file system [ ENABLED ]
  255. - Checking Locate database [ FOUND ]
  256.  
  257. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  258.  
  259.  
  260. [+] Storage
  261. ------------------------------------
  262. - Checking usb-storage driver (modprobe config) [ NOT DISABLED ]
  263. - Checking firewire ohci driver (modprobe config) [ DISABLED ]
  264.  
  265. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  266.  
  267.  
  268. [+] NFS
  269. ------------------------------------
  270. - Check running NFS daemon [ NOT FOUND ]
  271.  
  272. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  273.  
  274.  
  275. [+] Name services
  276. ------------------------------------
  277. - Checking default DNS search domain [ NONE ]
  278. - Checking /etc/resolv.conf options [ NONE ]
  279. - Searching DNS domain name [ UNKNOWN ]
  280. - Checking nscd status [ NOT FOUND ]
  281. - Checking BIND status [ NOT FOUND ]
  282. - Checking PowerDNS status [ NOT FOUND ]
  283. - Checking ypbind status [ NOT FOUND ]
  284. - Checking /etc/hosts
  285. - Checking /etc/hosts (duplicates) [ OK ]
  286. - Checking /etc/hosts (hostname) [ SUGGESTION ]
  287. - Checking /etc/hosts (localhost) [ OK ]
  288.  
  289. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  290.  
  291.  
  292. [+] Ports and packages
  293. ------------------------------------
  294. - Searching package managers
  295. - Searching dpkg package manager [ FOUND ]
  296. - Querying package manager
  297. - Query unpurged packages [ FOUND ]
  298. - Checking security repository in sources.list file [ OK ]
  299. - Checking APT package database [ OK ]
  300. - Checking vulnerable packages [ WARNING ]
  301. - Checking upgradeable packages [ SKIPPED ]
  302. - Checking package audit tool [ INSTALLED ]
  303. Found: apt-check
  304.  
  305. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  306.  
  307.  
  308. [+] Networking
  309. ------------------------------------
  310. - Checking configured nameservers
  311. - Testing nameservers
  312. Nameserver: 67.207.67.2 [ OK ]
  313. Nameserver: 67.207.67.3 [ OK ]
  314. - Minimal of 2 responsive nameservers [ OK ]
  315. - Checking default gateway [ DONE ]
  316. - Getting listening ports (TCP/UDP) [ DONE ]
  317. * Found 4 ports
  318. - Checking promiscuous interfaces [ OK ]
  319. - Checking waiting connections [ OK ]
  320. - Checking status DHCP client [ NOT ACTIVE ]
  321.  
  322. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  323.  
  324.  
  325. [+] Printers and Spools
  326. ------------------------------------
  327. - Checking cups daemon [ NOT FOUND ]
  328. - Checking lp daemon [ NOT RUNNING ]
  329.  
  330. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  331.  
  332.  
  333. [+] Software: e-mail and messaging
  334. ------------------------------------
  335. - Checking Exim status [ NOT FOUND ]
  336. - Checking Postfix status [ NOT FOUND ]
  337. - Checking Qmail status [ NOT FOUND ]
  338. - Checking Sendmail status [ NOT FOUND ]
  339.  
  340. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  341.  
  342.  
  343. [+] Software: firewalls
  344. ------------------------------------
  345. - Checking iptables kernel module [ NOT FOUND ]
  346. - Checking pflogd status [ NOT FOUND ]
  347. - Checking pf [ NOT FOUND ]
  348. - Checking host based firewall [ NOT ACTIVE ]
  349.  
  350. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  351.  
  352.  
  353. [+] Software: webserver
  354. ------------------------------------
  355. - Checking Apache [ NOT FOUND ]
  356. - Checking nginx [ NOT FOUND ]
  357.  
  358. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  359.  
  360.  
  361. [+] SSH Support
  362. ------------------------------------
  363. - Checking running SSH daemon [ FOUND ]
  364. - Searching SSH configuration [ FOUND ]
  365. - Checking defined SSH options [ DONE ]
  366. - SSH option: PermitRootLogin [ WARNING ]
  367. - SSH option: Protocol [ OK ]
  368. - SSH option: StrictModes [ OK ]
  369. - SSH option: AllowUsers [ NOT FOUND ]
  370. - SSH option: AllowGroups [ NOT FOUND ]
  371.  
  372. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  373.  
  374.  
  375. [+] SNMP Support
  376. ------------------------------------
  377. - Checking running SNMP daemon [ NOT FOUND ]
  378.  
  379. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  380.  
  381.  
  382. [+] Databases
  383. ------------------------------------
  384. - MySQL process status [ NOT FOUND ]
  385. - PostgreSQL processes status [ NOT FOUND ]
  386. - Oracle processes status [ NOT FOUND ]
  387.  
  388. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  389.  
  390.  
  391. [+] LDAP Services
  392. ------------------------------------
  393. - Checking OpenLDAP instance [ NOT FOUND ]
  394.  
  395. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  396.  
  397.  
  398. [+] PHP
  399. ------------------------------------
  400. - Checking PHP [ NOT FOUND ]
  401.  
  402. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  403.  
  404.  
  405. [+] Squid Support
  406. ------------------------------------
  407. - Checking running Squid daemon [ NOT FOUND ]
  408.  
  409. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  410.  
  411.  
  412. [+] Logging and files
  413. ------------------------------------
  414. - Checking for a running log daemon [ OK ]
  415. - Checking Syslog-NG status [ NOT FOUND ]
  416. - Checking systemd journal status [ FOUND ]
  417. - Checking Metalog status [ NOT FOUND ]
  418. - Checking RSyslog status [ FOUND ]
  419. - Checking RFC 3195 daemon status [ NOT FOUND ]
  420. - Checking minilogd instances [ NOT FOUND ]
  421. - Checking logrotate presence [ OK ]
  422. - Checking log directories (static list) [ DONE ]
  423. - Checking open log files [ DONE ]
  424. - Checking deleted files in use [ DONE ]
  425.  
  426. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  427.  
  428.  
  429. [+] Insecure services
  430. ------------------------------------
  431. - Checking inetd status [ NOT ACTIVE ]
  432.  
  433. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  434.  
  435.  
  436. [+] Banners and identification
  437. ------------------------------------
  438. - /etc/motd [ NOT FOUND ]
  439. - /etc/issue [ FOUND ]
  440. - /etc/issue contents [ WEAK ]
  441. - /etc/issue.net [ FOUND ]
  442. - /etc/issue.net contents [ WEAK ]
  443.  
  444. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  445.  
  446.  
  447. [+] Scheduled tasks
  448. ------------------------------------
  449. - Checking crontab/cronjob [ DONE ]
  450. - Checking atd status [ RUNNING ]
  451. - Checking at users [ DONE ]
  452. - Checking at jobs [ NONE ]
  453.  
  454. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  455.  
  456.  
  457. [+] Accounting
  458. ------------------------------------
  459. - Checking accounting information [ NOT FOUND ]
  460. - Checking sysstat accounting data [ NOT FOUND ]
  461. - Checking auditd [ NOT FOUND ]
  462.  
  463. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  464.  
  465.  
  466. [+] Time and Synchronization
  467. ------------------------------------
  468. - Checking for a running NTP daemon or client [ WARNING ]
  469.  
  470. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  471.  
  472.  
  473. [+] Cryptography
  474. ------------------------------------
  475. - Checking SSL certificate expiration [ OK ]
  476.  
  477. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  478.  
  479.  
  480. [+] Virtualization
  481. ------------------------------------
  482.  
  483. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  484.  
  485.  
  486. [+] Containers
  487. ------------------------------------
  488.  
  489. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  490.  
  491.  
  492. [+] Security frameworks
  493. ------------------------------------
  494. - Checking presence AppArmor [ FOUND ]
  495. - Checking AppArmor status [ ENABLED ]
  496. - Checking presence SELinux [ NOT FOUND ]
  497. - Checking presence grsecurity [ NOT FOUND ]
  498. - Checking for implemented MAC framework [ OK ]
  499.  
  500. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  501.  
  502.  
  503. [+] Software: file integrity
  504. ------------------------------------
  505. - Checking file integrity tools
  506. - Checking presence integrity tool [ NOT FOUND ]
  507.  
  508. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  509.  
  510.  
  511. [+] Software: System tooling
  512. ------------------------------------
  513. - Checking automation tooling
  514. - Automation tooling [ NOT FOUND ]
  515.  
  516. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  517.  
  518.  
  519. [+] Software: Malware scanners
  520. ------------------------------------
  521.  
  522. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  523.  
  524.  
  525. [+] File Permissions
  526. ------------------------------------
  527. - Starting file permissions check
  528. /etc/lilo.conf [ NOT FOUND ]
  529. /root/.ssh [ OK ]
  530.  
  531. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  532.  
  533.  
  534. [+] Home directories
  535. ------------------------------------
  536. - Checking shell history files [ OK ]
  537.  
  538. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  539.  
  540.  
  541. [+] Kernel Hardening
  542. ------------------------------------
  543. - Comparing sysctl key pairs with scan profile
  544. - kernel.core_uses_pid (exp: 1) [ DIFFERENT ]
  545. - kernel.ctrl-alt-del (exp: 0) [ OK ]
  546. - kernel.kptr_restrict (exp: 1) [ OK ]
  547. - kernel.sysrq (exp: 0) [ DIFFERENT ]
  548. - net.ipv4.conf.all.accept_redirects (exp: 0) [ DIFFERENT ]
  549. - net.ipv4.conf.all.accept_source_route (exp: 0) [ OK ]
  550. - net.ipv4.conf.all.bootp_relay (exp: 0) [ OK ]
  551. - net.ipv4.conf.all.forwarding (exp: 0) [ OK ]
  552. - net.ipv4.conf.all.log_martians (exp: 1) [ DIFFERENT ]
  553. - net.ipv4.conf.all.mc_forwarding (exp: 0) [ OK ]
  554. - net.ipv4.conf.all.proxy_arp (exp: 0) [ OK ]
  555. - net.ipv4.conf.all.rp_filter (exp: 1) [ OK ]
  556. - net.ipv4.conf.all.send_redirects (exp: 0) [ DIFFERENT ]
  557. - net.ipv4.conf.default.accept_redirects (exp: 0) [ DIFFERENT ]
  558. - net.ipv4.conf.default.accept_source_route (exp: 0) [ DIFFERENT ]
  559. - net.ipv4.conf.default.log_martians (exp: 1) [ DIFFERENT ]
  560. - net.ipv4.icmp_echo_ignore_broadcasts (exp: 1) [ OK ]
  561. - net.ipv4.icmp_ignore_bogus_error_responses (exp: 1) [ OK ]
  562. - net.ipv4.tcp_syncookies (exp: 1) [ OK ]
  563. - net.ipv4.tcp_timestamps (exp: 0) [ DIFFERENT ]
  564. - net.ipv6.conf.all.accept_redirects (exp: 0) [ DIFFERENT ]
  565. - net.ipv6.conf.all.accept_source_route (exp: 0) [ OK ]
  566. - net.ipv6.conf.default.accept_redirects (exp: 0) [ DIFFERENT ]
  567. - net.ipv6.conf.default.accept_source_route (exp: 0) [ OK ]
  568.  
  569. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  570.  
  571.  
  572. [+] Hardening
  573. ------------------------------------
  574. - Installed compiler(s) [ NOT FOUND ]
  575. - Installed malware scanner [ NOT FOUND ]
  576.  
  577. [ Press [ENTER] to continue, or [CTRL]+C to stop ]
  578.  
  579.  
  580. [+] Custom Tests
  581. ------------------------------------
  582. - Running custom tests... [ NONE ]
  583.  
  584. ================================================================================
  585.  
  586. -[ Lynis 2.1.1 Results ]-
  587.  
  588. Warnings:
  589. ----------------------------
  590. - Version of Lynis is very old and should be updated [test:NONE]
  591. https://cisofy.com/controls/test:NONE/
  592.  
  593. - Reboot of system is most likely needed [KRNL-5830]
  594. https://cisofy.com/controls/KRNL-5830/
  595.  
  596. - Found one or more vulnerable packages. [PKGS-7392]
  597. https://cisofy.com/controls/PKGS-7392/
  598.  
  599. - Root can directly login via SSH [SSH-7412]
  600. https://cisofy.com/controls/SSH-7412/
  601.  
  602. Suggestions:
  603. ----------------------------
  604. - Install libpam-tmpdir to set $TMP and $TMPDIR for PAM sessions [CUST-0280]
  605. https://your-domain.example.org/controls/CUST-0280/
  606. - Install libpam-usb to enable multi-factor authentication for PAM sessions [CUST-0285]
  607. https://your-domain.example.org/controls/CUST-0285/
  608. - Install 'ecryptfs-utils' and configure for each user. [CUST-0520]
  609. https://your-domain.example.org/controls/CUST-0520/
  610. - Install apt-listbugs to display a list of critical bugs prior to each APT installation. [CUST-0810]
  611. https://your-domain.example.org/controls/CUST-0810/
  612. - Install apt-listchanges to display any significant changes prior to any upgrade via APT. [CUST-0811]
  613. https://your-domain.example.org/controls/CUST-0811/
  614. - Install debian-goodies so that you can run checkrestart after upgrades to determine which services are using old versions of libraries and need restarting. [CUST-0830]
  615. https://your-domain.example.org/controls/CUST-0830/
  616. - Install debsecan to generate lists of vulnerabilities which affect this installation. [CUST-0870]
  617. https://your-domain.example.org/controls/CUST-0870/
  618. - Install debsums for the verification of installed package files against MD5 checksums. [CUST-0875]
  619. https://your-domain.example.org/controls/CUST-0875/
  620. - Install fail2ban to automatically ban hosts that commit multiple authentication errors. [DEB-0880]
  621. https://cisofy.com/controls/DEB-0880/
  622. - Set a password on GRUB bootloader to prevent altering boot configuration (e.g. boot in single user mode without password) [BOOT-5122]
  623. https://cisofy.com/controls/BOOT-5122/
  624. - Determine runlevel and services at startup [BOOT-5180]
  625. https://cisofy.com/controls/BOOT-5180/
  626. - Install a PAM module for password strength testing like pam_cracklib or pam_passwdqc [AUTH-9262]
  627. https://cisofy.com/controls/AUTH-9262/
  628. - Configure password aging limits to enforce password changing on a regular base [AUTH-9286]
  629. https://cisofy.com/controls/AUTH-9286/
  630. - Default umask in /etc/login.defs could be more strict like 027 [AUTH-9328]
  631. https://cisofy.com/controls/AUTH-9328/
  632. - Default umask in /etc/init.d/rc could be more strict like 027 [AUTH-9328]
  633. https://cisofy.com/controls/AUTH-9328/
  634. - To decrease the impact of a full /home file system, place /home on a separated partition [FILE-6310]
  635. https://cisofy.com/controls/FILE-6310/
  636. - To decrease the impact of a full /tmp file system, place /tmp on a separated partition [FILE-6310]
  637. https://cisofy.com/controls/FILE-6310/
  638. - Check your /etc/fstab file for swap partition mount options [FILE-6336]
  639. https://cisofy.com/controls/FILE-6336/
  640. - Disable drivers like USB storage when not used, to prevent unauthorized storage or data theft [STRG-1840]
  641. https://cisofy.com/controls/STRG-1840/
  642. - Check DNS configuration for the dns domain name [NAME-4028]
  643. https://cisofy.com/controls/NAME-4028/
  644. - Add the IP name and FQDN to /etc/hosts for proper name resolving [NAME-4404]
  645. https://cisofy.com/controls/NAME-4404/
  646. - Purge old/removed packages (1 found) with aptitude purge or dpkg --purge command. This will cleanup old configuration files, cron jobs and startup scripts. [PKGS-7346]
  647. https://cisofy.com/controls/PKGS-7346/
  648. - Install debsums utility for the verification of packages with known good database. [PKGS-7370]
  649. https://cisofy.com/controls/PKGS-7370/
  650. - Update your system with apt-get update, apt-get upgrade, apt-get dist-upgrade and/or unattended-upgrades [PKGS-7392]
  651. https://cisofy.com/controls/PKGS-7392/
  652. - Install package apt-show-versions for patch management purposes [PKGS-7394]
  653. https://cisofy.com/controls/PKGS-7394/
  654. - Configure a firewall/packet filter to filter incoming and outgoing traffic [FIRE-4590]
  655. https://cisofy.com/controls/FIRE-4590/
  656. - Add a legal banner to /etc/issue, to warn unauthorized users [BANN-7126]
  657. https://cisofy.com/controls/BANN-7126/
  658. - Add legal banner to /etc/issue.net, to warn unauthorized users [BANN-7130]
  659. https://cisofy.com/controls/BANN-7130/
  660. - Enable process accounting [ACCT-9622]
  661. https://cisofy.com/controls/ACCT-9622/
  662. - Enable sysstat to collect accounting (no results) [ACCT-9626]
  663. https://cisofy.com/controls/ACCT-9626/
  664. - Enable auditd to collect audit information [ACCT-9628]
  665. https://cisofy.com/controls/ACCT-9628/
  666. - Use NTP daemon or NTP client to prevent time issues. [TIME-3104]
  667. https://cisofy.com/controls/TIME-3104/
  668. - Install a file integrity tool to monitor changes to critical and sensitive files [FINT-4350]
  669. https://cisofy.com/controls/FINT-4350/
  670. - Determine if automation tools are present for system management [TOOL-5002]
  671. https://cisofy.com/controls/TOOL-5002/
  672. - One or more sysctl values differ from the scan profile and could be tweaked [KRNL-6000]
  673. https://cisofy.com/controls/KRNL-6000/
  674. - Harden the system by installing at least one malware scanner, to perform periodic file system scans [HRDN-7230]
  675. https://cisofy.com/controls/HRDN-7230/
  676.  
  677. Follow-up:
  678. ----------------------------
  679. - Check the logfile for more details (less /var/log/lynis.log)
  680. - Read security controls texts (https://cisofy.com)
  681. - Use --upload to upload data (Lynis Enterprise users)
  682.  
  683. ================================================================================
  684.  
  685. Lynis security scan details:
  686.  
  687. Hardening index : 46 [######### ]
  688. Tests performed : 189
  689. Plugins enabled : 1
  690.  
  691. Quick overview:
  692. - Firewall [X] - Malware scanner [X]
  693.  
  694. Lynis Modules:
  695. - Heuristics Check [NA] - Security Audit [V]
  696. - Compliance Tests [X] - Vulnerability Scan [V]
  697.  
  698. Files:
  699. - Test and debug information : /var/log/lynis.log
  700. - Report data : /var/log/lynis-report.dat
  701.  
  702. ================================================================================
  703. Notice: Lynis update available
  704. Current version : 211 Latest version : 266
  705. ================================================================================
  706. Tip: Disable all tests which are not relevant or are too strict for the
  707. purpose of this particular machine. This will remove unwanted suggestions
  708. and also boost the hardening index. Each test should be properly analyzed
  709. to see if the related risks can be accepted, before disabling the test.
  710. ================================================================================
  711.  
  712.  
  713. Lynis 2.1.1
  714. Auditing, hardening and compliance for BSD, Linux, Mac OS and Unix
  715. Copyright 2007-2015 - CISOfy, https://cisofy.com
  716. Enterprise support and plugins available via CISOfy
  717. ================================================================================
  718. root@node8-new-21:~# cd /var/log
  719. root@node8-new-21:/var/log# ls
  720. alternatives.log apt btmp.1 dpkg.log.2.gz dpkg.log.9.gz lastlog syslog.3.gz wtmp.1
  721. alternatives.log.1 auth.log cloud-init.log dpkg.log.3.gz fsck lxd syslog.4.gz
  722. alternatives.log.2.gz auth.log.1 cloud-init-output.log dpkg.log.4.gz kern.log lynis.log syslog.5.gz
  723. alternatives.log.3.gz auth.log.2.gz dist-upgrade dpkg.log.5.gz kern.log.1 lynis-report.dat syslog.6.gz
  724. alternatives.log.4.gz auth.log.3.gz dpkg.log dpkg.log.6.gz kern.log.2.gz syslog syslog.7.gz
  725. alternatives.log.5.gz auth.log.4.gz dpkg.log.1 dpkg.log.7.gz kern.log.3.gz syslog.1 unattended-upgrades
  726. alternatives.log.6.gz btmp dpkg.log.10.gz dpkg.log.8.gz kern.log.4.gz syslog.2.gz wtmp
  727. root@node8-new-21:/var/log# ls -la
  728. total 992
  729. drwxrwxr-x 7 root syslog 4096 Oct 3 09:02 .
  730. drwxr-xr-x 13 root root 4096 Dec 8 2017 ..
  731. -rw-r--r-- 1 root root 0 Jul 20 06:25 alternatives.log
  732. -rw-r--r-- 1 root root 1286 Jul 19 13:41 alternatives.log.1
  733. -rw-r--r-- 1 root root 134 Jun 14 06:23 alternatives.log.2.gz
  734. -rw-r--r-- 1 root root 135 May 25 06:41 alternatives.log.3.gz
  735. -rw-r--r-- 1 root root 134 Apr 18 06:19 alternatives.log.4.gz
  736. -rw-r--r-- 1 root root 110 Jan 23 2018 alternatives.log.5.gz
  737. -rw-r--r-- 1 root root 164 Dec 23 2017 alternatives.log.6.gz
  738. drwxr-xr-x 2 root root 4096 Oct 1 06:25 apt
  739. -rw-r----- 1 syslog adm 16083 Oct 3 09:02 auth.log
  740. -rw-r----- 1 syslog adm 59026 Oct 1 06:25 auth.log.1
  741. -rw-r----- 1 syslog adm 5353 Sep 23 06:25 auth.log.2.gz
  742. -rw-r----- 1 syslog adm 2193 Sep 17 06:25 auth.log.3.gz
  743. -rw-r----- 1 syslog adm 3304 Sep 9 06:25 auth.log.4.gz
  744. -rw-rw---- 1 root utmp 0 Oct 1 06:25 btmp
  745. -rw-rw---- 1 root utmp 0 Sep 1 06:25 btmp.1
  746. -rw-r--r-- 1 syslog adm 404526 Jul 19 13:43 cloud-init.log
  747. -rw-r--r-- 1 root root 12820 Jul 19 13:43 cloud-init-output.log
  748. drwxr-xr-x 2 root root 4096 Oct 20 2017 dist-upgrade
  749. -rw-r--r-- 1 root root 8527 Oct 3 09:02 dpkg.log
  750. -rw-r--r-- 1 root root 16473 Sep 28 06:17 dpkg.log.1
  751. -rw-r--r-- 1 root root 1899 Dec 26 2017 dpkg.log.10.gz
  752. -rw-r--r-- 1 root root 1401 Aug 31 06:37 dpkg.log.2.gz
  753. -rw-r--r-- 1 root root 8625 Jul 19 13:41 dpkg.log.3.gz
  754. -rw-r--r-- 1 root root 1826 Jun 29 06:54 dpkg.log.4.gz
  755. -rw-r--r-- 1 root root 1875 May 31 06:22 dpkg.log.5.gz
  756. -rw-r--r-- 1 root root 1542 Apr 24 06:30 dpkg.log.6.gz
  757. -rw-r--r-- 1 root root 735 Mar 30 2018 dpkg.log.7.gz
  758. -rw-r--r-- 1 root root 1746 Feb 27 2018 dpkg.log.8.gz
  759. -rw-r--r-- 1 root root 2828 Jan 26 2018 dpkg.log.9.gz
  760. drwxr-xr-x 2 root root 4096 Dec 8 2017 fsck
  761. -rw-r----- 1 syslog adm 356 Oct 2 15:49 kern.log
  762. -rw-r----- 1 syslog adm 1424 Sep 26 18:19 kern.log.1
  763. -rw-r----- 1 syslog adm 647 Sep 22 06:29 kern.log.2.gz
  764. -rw-r----- 1 syslog adm 251 Sep 10 00:10 kern.log.3.gz
  765. -rw-r----- 1 syslog adm 508 Sep 7 09:53 kern.log.4.gz
  766. -rw-rw-r-- 1 root utmp 292000 Oct 3 09:02 lastlog
  767. drwxr-xr-x 2 root root 4096 Dec 7 2017 lxd
  768. -rw-r----- 1 root root 248931 Oct 3 09:03 lynis.log
  769. -rw-r----- 1 root root 34225 Oct 3 09:03 lynis-report.dat
  770. -rw-r----- 1 syslog adm 2192 Oct 3 09:03 syslog
  771. -rw-r----- 1 syslog adm 11961 Oct 3 06:25 syslog.1
  772. -rw-r----- 1 syslog adm 1007 Oct 2 06:25 syslog.2.gz
  773. -rw-r----- 1 syslog adm 1004 Oct 1 06:25 syslog.3.gz
  774. -rw-r----- 1 syslog adm 1070 Sep 30 06:25 syslog.4.gz
  775. -rw-r----- 1 syslog adm 973 Sep 29 06:25 syslog.5.gz
  776. -rw-r----- 1 syslog adm 1006 Sep 28 06:25 syslog.6.gz
  777. -rw-r----- 1 syslog adm 1267 Sep 27 06:25 syslog.7.gz
  778. drwxr-x--- 2 root adm 4096 Oct 1 06:25 unattended-upgrades
  779. -rw-rw-r-- 1 root utmp 384 Oct 3 09:02 wtmp
  780. -rw-rw-r-- 1 root utmp 0 Sep 1 06:25 wtmp.1
  781. root@node8-new-21:/var/log# cat lynis.log
  782. [09:02:40] ### Starting Lynis 2.1.1 with PID 22058, build date 22 July 2015 ###
  783. [09:02:40] ===---------------------------------------------------------------===
  784. [09:02:40] ### Copyright 2007-2015 - CISOfy, https://cisofy.com ###
  785. [09:02:40] Program version: 2.1.1
  786. [09:02:40] Operating system: Linux
  787. [09:02:40] Operating system name: Ubuntu
  788. [09:02:40] Operating system version: 16.04
  789. [09:02:40] Kernel version: 4.4.0
  790. [09:02:40] Kernel version (full): 4.4.0-130-generic
  791. [09:02:40] Hardware platform: x86_64
  792. [09:02:40] Hostname: node8-new-21
  793. [09:02:40] Auditor: [Unknown]
  794. [09:02:40] Profile: /etc/lynis/default.prf
  795. [09:02:40] Log file: /var/log/lynis.log
  796. [09:02:40] Report file: /var/log/lynis-report.dat
  797. [09:02:40] Report version: 1.0
  798. [09:02:40] -----------------------------------------------------
  799. [09:02:40] Include directory: /usr/share/lynis/include
  800. [09:02:40] Plugin directory: /etc/lynis/plugins
  801. [09:02:40] ===---------------------------------------------------------------===
  802. [09:02:40] Checking permissions of /usr/share/lynis/include/profiles
  803. [09:02:40] File permissions are OK
  804. [09:02:40] Reading profile/configuration /etc/lynis/default.prf
  805. [09:02:40] Profile option set: profile_name (with value Default Audit Template)
  806. [09:02:40] Profile option set: pause_between_tests (with value 0)
  807. [09:02:40] Profile option set: show_tool_tips (with value 1)
  808. [09:02:40] Set option to default value: MACHINE_ROLE --> server
  809. [09:02:40] Set option to default value: NTPD_ROLE --> client
  810. [09:02:40] ===---------------------------------------------------------------===
  811. [09:02:40] Test: Checking for program update...
  812. [09:02:40] Current installed version : 211
  813. [09:02:40] Latest stable version : 266
  814. [09:02:40] Minimum required version : 256
  815. [09:02:40] Result: This version is VERY outdated. Newer Lynis release available!
  816. [09:02:40] Warning: Version of Lynis is very old and should be updated [test:NONE]
  817. [09:02:45] ===---------------------------------------------------------------===
  818. [09:02:45] Checking permissions of /usr/share/lynis/include/binaries
  819. [09:02:45] File permissions are OK
  820. [09:02:45] ===---------------------------------------------------------------===
  821. [09:02:45] Action: Performing tests from category: System Tools
  822. [09:02:45] Start scanning for available audit binaries and tools...
  823. [09:02:45] ===---------------------------------------------------------------===
  824. [09:02:45] Performing test ID FILE-7502 (Check all system binaries)
  825. [09:02:45] Status: Starting binary scan...
  826. [09:02:45] Test: Check if directory exists
  827. [09:02:45] Test: Checking binaries in directory /bin
  828. [09:02:45] Directory /bin exists. Starting directory scanning...
  829. [09:02:45] Found known binary: dnsdomainname (DNS domain) - /bin/dnsdomainname
  830. [09:02:45] Found known binary: domainname (NIS domain) - /bin/domainname
  831. [09:02:45] Found known binary: egrep (text search) - /bin/egrep
  832. [09:02:45] Found known binary: grep (text search) - /bin/grep
  833. [09:02:45] Found known binary: ip (IP configuration) - /bin/ip
  834. [09:02:45] Found known binary: journalctl (systemd journal) - /bin/journalctl
  835. [09:02:45] Found known binary: ls (file listing) - /bin/ls
  836. [09:02:45] Found known binary: lsmod (kernel modules) - /bin/lsmod
  837. [09:02:45] Found known binary: netstat (network statistics) - /bin/netstat
  838. [09:02:45] Found known binary: ps (process listing) - /bin/ps
  839. [09:02:45] Found known binary: readlink (follows symlinks) - /bin/readlink
  840. [09:02:45] Found known binary: ss (show sockets) - /bin/ss
  841. [09:02:45] Found known binary: systemctl (client to systemd) - /bin/systemctl
  842. [09:02:45] Found known binary: zgrep (text search for compressed files) - /bin/zgrep
  843. [09:02:45] ===---------------------------------------------------------------===
  844. [09:02:45] Test: Check if directory exists
  845. [09:02:45] Test: Checking binaries in directory /sbin
  846. [09:02:45] Directory /sbin exists. Starting directory scanning...
  847. [09:02:45] Found known binary: getcap (kernel capabilities) - /sbin/getcap
  848. [09:02:45] Found known binary: ipconfig (IP configuration) - /sbin/ifconfig
  849. [09:02:45] Found known binary: ip (IP configuration) - /sbin/ip
  850. [09:02:45] Found known binary: iptables (firewall) - /sbin/iptables
  851. [09:02:45] Found known binary: lsmod (kernel modules) - /sbin/lsmod
  852. [09:02:45] Found known binary: lvdisplay (LVM tool) - /sbin/lvdisplay
  853. [09:02:45] Found known binary: runlevel (system utility) - /sbin/runlevel
  854. [09:02:45] Found known binary: sysctl (kernel parameters) - /sbin/sysctl
  855. [09:02:45] Found known binary: tune2fs (file system tool) - /sbin/tune2fs
  856. [09:02:45] Found known binary: vgdisplay (LVM tool) - /sbin/vgdisplay
  857. [09:02:45] ===---------------------------------------------------------------===
  858. [09:02:45] Test: Check if directory exists
  859. [09:02:45] Test: Checking binaries in directory /usr/bin
  860. [09:02:45] Directory /usr/bin exists. Starting directory scanning...
  861. [09:02:45] Found known binary: awk (string tool) - /usr/bin/awk
  862. [09:02:45] Found known binary: comm (file compare) - /usr/bin/comm
  863. [09:02:45] Found known binary: curl (browser) - /usr/bin/curl
  864. [09:02:45] Found known binary: dig (nameservice tool) - /usr/bin/dig
  865. [09:02:45] Found known binary: dpkg (package management) - /usr/bin/dpkg
  866. [09:02:45] Found known binary: find (search tool) - /usr/bin/find
  867. [09:02:46] Found known binary: locate (file database) - /usr/bin/locate
  868. [09:02:46] Found known binary: lsattr (file attributes) - /usr/bin/lsattr
  869. [09:02:46] Found known binary: lsof (open files) - /usr/bin/lsof
  870. [09:02:46] Found known binary: md5sum (hash tool) - /usr/bin/md5sum
  871. [09:02:46] Found /usr/bin/openssl (version 1.0.2g)
  872. [09:02:46] Found /usr/bin/perl (version 5.22.1)
  873. [09:02:46] Found known binary: python (programming language intepreter) - /usr/bin/python
  874. [09:02:46] Found known binary: sha1/sha1sum/shasum (crypto hashing) - /usr/bin/sha1sum
  875. [09:02:46] Found known binary: sha1/sha1sum/shasum (crypto hashing) - /usr/bin/shasum
  876. [09:02:46] Found known binary: ssh-keyscan (scanner for SSH keys) - /usr/bin/ssh-keyscan
  877. [09:02:46] Found known binary: stat (file information) - /usr/bin/stat
  878. [09:02:46] Found known binary: timedatectl (timedate client) - /usr/bin/timedatectl
  879. [09:02:46] Found known binary: vmtoolsd (VMWare tools) - /usr/bin/vmtoolsd
  880. [09:02:46] Found /usr/bin/wget (version 1.17.1)
  881. [09:02:46] ===---------------------------------------------------------------===
  882. [09:02:46] Test: Check if directory exists
  883. [09:02:46] Test: Checking binaries in directory /usr/sbin
  884. [09:02:46] Directory /usr/sbin exists. Starting directory scanning...
  885. [09:02:46] Found known binary: aa-status (apparmor component) - /usr/sbin/aa-status
  886. [09:02:46] Found known binary: grpck (consistency checker) - /usr/sbin/grpck
  887. [09:02:46] Found known binary: logrotate (log rotation tool) - /usr/sbin/logrotate
  888. [09:02:46] Found /usr/sbin/sshd (version 7.2,)
  889. [09:02:46] ===---------------------------------------------------------------===
  890. [09:02:46] Test: Check if directory exists
  891. [09:02:46] Test: Checking binaries in directory /usr/local/bin
  892. [09:02:46] Directory /usr/local/bin exists. Starting directory scanning...
  893. [09:02:46] ===---------------------------------------------------------------===
  894. [09:02:46] Test: Check if directory exists
  895. [09:02:46] Test: Checking binaries in directory /usr/local/sbin
  896. [09:02:46] Directory /usr/local/sbin exists. Starting directory scanning...
  897. [09:02:46] ===---------------------------------------------------------------===
  898. [09:02:46] Test: Check if directory exists
  899. [09:02:46] Result: Directory /usr/local/libexec does NOT exist
  900. [09:02:46] ===---------------------------------------------------------------===
  901. [09:02:46] Test: Check if directory exists
  902. [09:02:46] Result: Directory /usr/libexec does NOT exist
  903. [09:02:46] ===---------------------------------------------------------------===
  904. [09:02:46] Test: Check if directory exists
  905. [09:02:46] Result: Directory /usr/sfw/bin does NOT exist
  906. [09:02:46] ===---------------------------------------------------------------===
  907. [09:02:46] Test: Check if directory exists
  908. [09:02:46] Result: Directory /usr/sfw/sbin does NOT exist
  909. [09:02:46] ===---------------------------------------------------------------===
  910. [09:02:46] Test: Check if directory exists
  911. [09:02:46] Result: Directory /usr/sfw/libexec does NOT exist
  912. [09:02:46] ===---------------------------------------------------------------===
  913. [09:02:46] Test: Check if directory exists
  914. [09:02:46] Result: Directory /opt/sfw/bin does NOT exist
  915. [09:02:46] ===---------------------------------------------------------------===
  916. [09:02:46] Test: Check if directory exists
  917. [09:02:46] Result: Directory /opt/sfw/sbin does NOT exist
  918. [09:02:46] ===---------------------------------------------------------------===
  919. [09:02:46] Test: Check if directory exists
  920. [09:02:46] Result: Directory /opt/sfw/libexec does NOT exist
  921. [09:02:46] ===---------------------------------------------------------------===
  922. [09:02:46] Test: Check if directory exists
  923. [09:02:46] Result: Directory /usr/xpg4/bin does NOT exist
  924. [09:02:46] ===---------------------------------------------------------------===
  925. [09:02:46] Test: Check if directory exists
  926. [09:02:46] Result: Directory /usr/css/bin does NOT exist
  927. [09:02:46] ===---------------------------------------------------------------===
  928. [09:02:46] Test: Check if directory exists
  929. [09:02:46] Result: Directory /usr/ucb does NOT exist
  930. [09:02:46] ===---------------------------------------------------------------===
  931. [09:02:46] Test: Check if directory exists
  932. [09:02:46] Result: Directory /usr/X11R6/bin does NOT exist
  933. [09:02:46] ===---------------------------------------------------------------===
  934. [09:02:46] Test: Check if directory exists
  935. [09:02:46] Result: Directory /usr/X11R7/bin does NOT exist
  936. [09:02:46] ===---------------------------------------------------------------===
  937. [09:02:46] Test: Check if directory exists
  938. [09:02:46] Result: Directory /usr/pkg/bin does NOT exist
  939. [09:02:46] ===---------------------------------------------------------------===
  940. [09:02:46] Test: Check if directory exists
  941. [09:02:46] Result: Directory /usr/pkg/sbin does NOT exist
  942. [09:02:46] ===---------------------------------------------------------------===
  943. [09:02:46] Discovered directories: /bin,/sbin,/usr/bin,/usr/sbin,/usr/local/bin,/usr/local/sbin
  944. [09:02:46] Result: found 1226 binaries
  945. [09:02:46] ===---------------------------------------------------------------===
  946. [09:02:46] Test: Determine if this system is a virtual machine
  947. [09:02:46] Test: trying to guess virtualization technology with systemctl
  948. [09:02:46] Result: Unknown virtualization type, so most likely system is physical
  949. [09:02:46] Result: unknown if this system is a virtual machine
  950. [09:02:46] ===---------------------------------------------------------------===
  951. [09:02:46] Action: Performing plugin tests
  952. [09:02:46] Searching plugins...
  953. [09:02:46] Found plugin file: /etc/lynis/plugins/plugin_debian_phase1
  954. [09:02:46] Plugin debian is enabled
  955. [09:02:46] Including plugin file: /etc/lynis/plugins/plugin_debian_phase1 (version: 1.0.0)
  956. [09:02:46] ===---------------------------------------------------------------===
  957. [09:02:46] Action: Performing tests from category: Debian Tests
  958. [09:02:46] ===---------------------------------------------------------------===
  959. [09:02:46] Performing test ID CUST-0001 (Check for system binaries required by Debian Tests)
  960. [09:02:46] Status: Starting binary scan...
  961. [09:02:46] Test: Checking binaries in directory /bin
  962. [09:02:46] Directory /bin exists. Starting directory scanning...
  963. [09:02:46] Binary: /bin/bash
  964. [09:02:46] Binary: /bin/btrfs
  965. [09:02:46] Binary: /bin/btrfs-calc-size
  966. [09:02:46] Binary: /bin/btrfs-convert
  967. [09:02:46] Binary: /bin/btrfs-debug-tree
  968. [09:02:46] Binary: /bin/btrfs-find-root
  969. [09:02:46] Binary: /bin/btrfs-image
  970. [09:02:46] Binary: /bin/btrfs-map-logical
  971. [09:02:46] Binary: /bin/btrfs-select-super
  972. [09:02:46] Binary: /bin/btrfs-show-super
  973. [09:02:46] Binary: /bin/btrfs-zero-log
  974. [09:02:46] Binary: /bin/btrfsck
  975. [09:02:46] Binary: /bin/btrfstune
  976. [09:02:46] Binary: /bin/bunzip2
  977. [09:02:46] Binary: /bin/busybox
  978. [09:02:46] Binary: /bin/bzcat
  979. [09:02:46] Binary: /bin/bzcmp
  980. [09:02:46] Binary: /bin/bzdiff
  981. [09:02:46] Binary: /bin/bzegrep
  982. [09:02:46] Binary: /bin/bzexe
  983. [09:02:46] Binary: /bin/bzfgrep
  984. [09:02:46] Binary: /bin/bzgrep
  985. [09:02:46] Binary: /bin/bzip2
  986. [09:02:46] Binary: /bin/bzip2recover
  987. [09:02:46] Binary: /bin/bzless
  988. [09:02:46] Binary: /bin/bzmore
  989. [09:02:46] Binary: /bin/cat
  990. [09:02:46] Binary: /bin/chacl
  991. [09:02:46] Binary: /bin/chgrp
  992. [09:02:46] Binary: /bin/chmod
  993. [09:02:46] Binary: /bin/chown
  994. [09:02:47] Binary: /bin/chvt
  995. [09:02:47] Binary: /bin/cp
  996. [09:02:47] Binary: /bin/cpio
  997. [09:02:47] Binary: /bin/dash
  998. [09:02:47] Binary: /bin/date
  999. [09:02:47] Binary: /bin/dd
  1000. [09:02:47] Binary: /bin/df
  1001. [09:02:47] Binary: /bin/dir
  1002. [09:02:47] Binary: /bin/dmesg
  1003. [09:02:47] Binary: /bin/dnsdomainname
  1004. [09:02:47] Binary: /bin/domainname
  1005. [09:02:47] Binary: /bin/dumpkeys
  1006. [09:02:47] Binary: /bin/echo
  1007. [09:02:47] Binary: /bin/ed
  1008. [09:02:47] Binary: /bin/efibootmgr
  1009. [09:02:47] Binary: /bin/egrep
  1010. [09:02:47] Binary: /bin/false
  1011. [09:02:47] Binary: /bin/fgconsole
  1012. [09:02:47] Binary: /bin/fgrep
  1013. [09:02:47] Binary: /bin/findmnt
  1014. [09:02:47] Binary: /bin/fsck.btrfs
  1015. [09:02:47] Binary: /bin/fuser
  1016. [09:02:47] Binary: /bin/fusermount
  1017. [09:02:47] Binary: /bin/getfacl
  1018. [09:02:47] Binary: /bin/grep
  1019. [09:02:47] Binary: /bin/gunzip
  1020. [09:02:47] Binary: /bin/gzexe
  1021. [09:02:47] Binary: /bin/gzip
  1022. [09:02:47] Binary: /bin/hostname
  1023. [09:02:47] Binary: /bin/ip
  1024. [09:02:47] Binary: /bin/journalctl
  1025. [09:02:47] Binary: /bin/kbd_mode
  1026. [09:02:47] Binary: /bin/kill
  1027. [09:02:47] Binary: /bin/kmod
  1028. [09:02:47] Binary: /bin/less
  1029. [09:02:47] Binary: /bin/lessecho
  1030. [09:02:47] Binary: /bin/lessfile
  1031. [09:02:47] Binary: /bin/lesskey
  1032. [09:02:47] Binary: /bin/lesspipe
  1033. [09:02:47] Binary: /bin/ln
  1034. [09:02:47] Binary: /bin/loadkeys
  1035. [09:02:47] Binary: /bin/login
  1036. [09:02:47] Binary: /bin/loginctl
  1037. [09:02:47] Binary: /bin/lowntfs-3g
  1038. [09:02:47] Binary: /bin/ls
  1039. [09:02:47] Binary: /bin/lsblk
  1040. [09:02:47] Binary: /bin/lsmod
  1041. [09:02:47] Binary: /bin/mkdir
  1042. [09:02:47] Binary: /bin/mkfs.btrfs
  1043. [09:02:47] Binary: /bin/mknod
  1044. [09:02:47] Binary: /bin/mktemp
  1045. [09:02:47] Binary: /bin/more
  1046. [09:02:47] Binary: /bin/mount
  1047. [09:02:47] Fount known binary: mount (File system tool) - /bin/mount
  1048. [09:02:47] Binary: /bin/mountpoint
  1049. [09:02:47] Binary: /bin/mt
  1050. [09:02:47] Binary: /bin/mt-gnu
  1051. [09:02:47] Binary: /bin/mv
  1052. [09:02:47] Binary: /bin/nano
  1053. [09:02:47] Binary: /bin/nc
  1054. [09:02:47] Binary: /bin/nc.openbsd
  1055. [09:02:47] Binary: /bin/netcat
  1056. [09:02:47] Binary: /bin/netstat
  1057. [09:02:47] Binary: /bin/networkctl
  1058. [09:02:47] Binary: /bin/nisdomainname
  1059. [09:02:47] Binary: /bin/ntfs-3g
  1060. [09:02:47] Binary: /bin/ntfs-3g.probe
  1061. [09:02:47] Binary: /bin/ntfs-3g.secaudit
  1062. [09:02:47] Binary: /bin/ntfs-3g.usermap
  1063. [09:02:47] Binary: /bin/ntfscat
  1064. [09:02:47] Binary: /bin/ntfscluster
  1065. [09:02:47] Binary: /bin/ntfscmp
  1066. [09:02:47] Binary: /bin/ntfsfallocate
  1067. [09:02:47] Binary: /bin/ntfsfix
  1068. [09:02:47] Binary: /bin/ntfsinfo
  1069. [09:02:47] Binary: /bin/ntfsls
  1070. [09:02:47] Binary: /bin/ntfsmove
  1071. [09:02:47] Binary: /bin/ntfstruncate
  1072. [09:02:47] Binary: /bin/ntfswipe
  1073. [09:02:47] Binary: /bin/open
  1074. [09:02:47] Binary: /bin/openvt
  1075. [09:02:47] Binary: /bin/pidof
  1076. [09:02:47] Binary: /bin/ping
  1077. [09:02:47] Binary: /bin/ping6
  1078. [09:02:47] Binary: /bin/plymouth
  1079. [09:02:47] Binary: /bin/ps
  1080. [09:02:47] Binary: /bin/pwd
  1081. [09:02:47] Binary: /bin/rbash
  1082. [09:02:47] Binary: /bin/readlink
  1083. [09:02:47] Binary: /bin/red
  1084. [09:02:47] Binary: /bin/rm
  1085. [09:02:47] Binary: /bin/rmdir
  1086. [09:02:47] Binary: /bin/rnano
  1087. [09:02:47] Binary: /bin/run-parts
  1088. [09:02:47] Binary: /bin/sed
  1089. [09:02:47] Binary: /bin/setfacl
  1090. [09:02:47] Binary: /bin/setfont
  1091. [09:02:47] Binary: /bin/setupcon
  1092. [09:02:47] Binary: /bin/sh
  1093. [09:02:47] Binary: /bin/sh.distrib
  1094. [09:02:47] Binary: /bin/sleep
  1095. [09:02:47] Binary: /bin/ss
  1096. [09:02:47] Binary: /bin/static-sh
  1097. [09:02:47] Binary: /bin/stty
  1098. [09:02:47] Binary: /bin/su
  1099. [09:02:47] Binary: /bin/sync
  1100. [09:02:47] Binary: /bin/systemctl
  1101. [09:02:47] Binary: /bin/systemd
  1102. [09:02:47] Binary: /bin/systemd-ask-password
  1103. [09:02:47] Binary: /bin/systemd-escape
  1104. [09:02:47] Binary: /bin/systemd-hwdb
  1105. [09:02:47] Binary: /bin/systemd-inhibit
  1106. [09:02:47] Binary: /bin/systemd-machine-id-setup
  1107. [09:02:47] Binary: /bin/systemd-notify
  1108. [09:02:47] Binary: /bin/systemd-tmpfiles
  1109. [09:02:47] Binary: /bin/systemd-tty-ask-password-agent
  1110. [09:02:47] Binary: /bin/tailf
  1111. [09:02:47] Binary: /bin/tar
  1112. [09:02:47] Binary: /bin/tempfile
  1113. [09:02:47] Binary: /bin/touch
  1114. [09:02:47] Binary: /bin/true
  1115. [09:02:47] Binary: /bin/udevadm
  1116. [09:02:47] Binary: /bin/ulockmgr_server
  1117. [09:02:47] Binary: /bin/umount
  1118. [09:02:47] Binary: /bin/uname
  1119. [09:02:47] Binary: /bin/uncompress
  1120. [09:02:47] Binary: /bin/unicode_start
  1121. [09:02:47] Binary: /bin/vdir
  1122. [09:02:47] Binary: /bin/wdctl
  1123. [09:02:47] Binary: /bin/which
  1124. [09:02:47] Binary: /bin/whiptail
  1125. [09:02:47] Binary: /bin/ypdomainname
  1126. [09:02:47] Binary: /bin/zcat
  1127. [09:02:47] Binary: /bin/zcmp
  1128. [09:02:47] Binary: /bin/zdiff
  1129. [09:02:47] Binary: /bin/zegrep
  1130. [09:02:47] Binary: /bin/zfgrep
  1131. [09:02:47] Binary: /bin/zforce
  1132. [09:02:47] Binary: /bin/zgrep
  1133. [09:02:47] Binary: /bin/zless
  1134. [09:02:47] Binary: /bin/zmore
  1135. [09:02:47] Binary: /bin/znew
  1136. [09:02:47] ===---------------------------------------------------------------===
  1137. [09:02:47] Test: Checking binaries in directory /sbin
  1138. [09:02:47] Directory /sbin exists. Starting directory scanning...
  1139. [09:02:47] Binary: /sbin/MAKEDEV
  1140. [09:02:47] Binary: /sbin/acpi_available
  1141. [09:02:47] Binary: /sbin/agetty
  1142. [09:02:47] Binary: /sbin/apm_available
  1143. [09:02:47] Binary: /sbin/apparmor_parser
  1144. [09:02:47] Binary: /sbin/badblocks
  1145. [09:02:47] Binary: /sbin/blkdiscard
  1146. [09:02:47] Binary: /sbin/blkid
  1147. [09:02:47] Binary: /sbin/blockdev
  1148. [09:02:47] Binary: /sbin/bridge
  1149. [09:02:47] Binary: /sbin/capsh
  1150. [09:02:47] Binary: /sbin/cfdisk
  1151. [09:02:47] Binary: /sbin/cgdisk
  1152. [09:02:47] Binary: /sbin/chcpu
  1153. [09:02:47] Binary: /sbin/cryptdisks_start
  1154. [09:02:47] Binary: /sbin/cryptdisks_stop
  1155. [09:02:47] Binary: /sbin/cryptsetup
  1156. [09:02:47] Found known binary: cryptsetup (Encryption tool) - /sbin/cryptsetup
  1157. [09:02:47] Binary: /sbin/cryptsetup-reencrypt
  1158. [09:02:47] Binary: /sbin/ctrlaltdel
  1159. [09:02:47] Binary: /sbin/debugfs
  1160. [09:02:47] Binary: /sbin/depmod
  1161. [09:02:47] Binary: /sbin/dhclient
  1162. [09:02:47] Binary: /sbin/dhclient-script
  1163. [09:02:47] Binary: /sbin/dmeventd
  1164. [09:02:47] Binary: /sbin/dmsetup
  1165. [09:02:47] Binary: /sbin/dosfsck
  1166. [09:02:47] Binary: /sbin/dosfslabel
  1167. [09:02:47] Binary: /sbin/dumpe2fs
  1168. [09:02:47] Binary: /sbin/e2fsck
  1169. [09:02:47] Binary: /sbin/e2image
  1170. [09:02:47] Binary: /sbin/e2label
  1171. [09:02:47] Binary: /sbin/e2undo
  1172. [09:02:47] Binary: /sbin/ethtool
  1173. [09:02:47] Binary: /sbin/fatlabel
  1174. [09:02:47] Binary: /sbin/fdisk
  1175. [09:02:47] Binary: /sbin/findfs
  1176. [09:02:47] Binary: /sbin/fixparts
  1177. [09:02:47] Binary: /sbin/fsadm
  1178. [09:02:47] Binary: /sbin/fsck
  1179. [09:02:47] Binary: /sbin/fsck.cramfs
  1180. [09:02:47] Binary: /sbin/fsck.ext2
  1181. [09:02:47] Binary: /sbin/fsck.ext3
  1182. [09:02:47] Binary: /sbin/fsck.ext4
  1183. [09:02:47] Binary: /sbin/fsck.ext4dev
  1184. [09:02:47] Binary: /sbin/fsck.fat
  1185. [09:02:47] Binary: /sbin/fsck.minix
  1186. [09:02:47] Binary: /sbin/fsck.msdos
  1187. [09:02:47] Binary: /sbin/fsck.nfs
  1188. [09:02:47] Binary: /sbin/fsck.vfat
  1189. [09:02:47] Binary: /sbin/fsck.xfs
  1190. [09:02:47] Binary: /sbin/fsfreeze
  1191. [09:02:47] Binary: /sbin/fstab-decode
  1192. [09:02:47] Binary: /sbin/fstrim
  1193. [09:02:47] Binary: /sbin/gdisk
  1194. [09:02:47] Binary: /sbin/getcap
  1195. [09:02:47] Binary: /sbin/getpcaps
  1196. [09:02:47] Binary: /sbin/getty
  1197. [09:02:47] Binary: /sbin/halt
  1198. [09:02:47] Binary: /sbin/hdparm
  1199. [09:02:47] Binary: /sbin/hwclock
  1200. [09:02:47] Binary: /sbin/ifconfig
  1201. [09:02:47] Binary: /sbin/ifdown
  1202. [09:02:47] Binary: /sbin/ifenslave
  1203. [09:02:47] Binary: /sbin/ifenslave-2.6
  1204. [09:02:47] Binary: /sbin/ifquery
  1205. [09:02:47] Binary: /sbin/ifup
  1206. [09:02:47] Binary: /sbin/init
  1207. [09:02:47] Binary: /sbin/insmod
  1208. [09:02:47] Binary: /sbin/installkernel
  1209. [09:02:47] Binary: /sbin/ip
  1210. [09:02:47] Binary: /sbin/ip6tables
  1211. [09:02:47] Binary: /sbin/ip6tables-restore
  1212. [09:02:47] Binary: /sbin/ip6tables-save
  1213. [09:02:47] Binary: /sbin/ipmaddr
  1214. [09:02:47] Binary: /sbin/iptables
  1215. [09:02:47] Binary: /sbin/iptables-restore
  1216. [09:02:47] Binary: /sbin/iptables-save
  1217. [09:02:47] Binary: /sbin/iptunnel
  1218. [09:02:47] Binary: /sbin/iscsi-iname
  1219. [09:02:47] Binary: /sbin/iscsi_discovery
  1220. [09:02:47] Binary: /sbin/iscsiadm
  1221. [09:02:47] Binary: /sbin/iscsid
  1222. [09:02:47] Binary: /sbin/iscsistart
  1223. [09:02:47] Binary: /sbin/isosize
  1224. [09:02:47] Binary: /sbin/kbdrate
  1225. [09:02:47] Binary: /sbin/killall5
  1226. [09:02:47] Binary: /sbin/ldconfig
  1227. [09:02:47] Binary: /sbin/ldconfig.real
  1228. [09:02:47] Binary: /sbin/logsave
  1229. [09:02:47] Binary: /sbin/losetup
  1230. [09:02:47] Binary: /sbin/lsmod
  1231. [09:02:47] Binary: /sbin/lvchange
  1232. [09:02:47] Binary: /sbin/lvconvert
  1233. [09:02:47] Binary: /sbin/lvcreate
  1234. [09:02:47] Binary: /sbin/lvdisplay
  1235. [09:02:47] Found known binary: lvdisplay (LVM tool) - /sbin/lvdisplay
  1236. [09:02:47] Binary: /sbin/lvextend
  1237. [09:02:47] Binary: /sbin/lvm
  1238. [09:02:47] Binary: /sbin/lvmchange
  1239. [09:02:47] Binary: /sbin/lvmconf
  1240. [09:02:47] Binary: /sbin/lvmconfig
  1241. [09:02:47] Binary: /sbin/lvmdiskscan
  1242. [09:02:47] Binary: /sbin/lvmdump
  1243. [09:02:47] Binary: /sbin/lvmetad
  1244. [09:02:47] Binary: /sbin/lvmpolld
  1245. [09:02:47] Binary: /sbin/lvmsadc
  1246. [09:02:47] Binary: /sbin/lvmsar
  1247. [09:02:47] Binary: /sbin/lvreduce
  1248. [09:02:47] Binary: /sbin/lvremove
  1249. [09:02:47] Binary: /sbin/lvrename
  1250. [09:02:47] Binary: /sbin/lvresize
  1251. [09:02:47] Binary: /sbin/lvs
  1252. [09:02:47] Binary: /sbin/lvscan
  1253. [09:02:47] Binary: /sbin/mdadm
  1254. [09:02:47] Binary: /sbin/mdmon
  1255. [09:02:47] Binary: /sbin/mii-tool
  1256. [09:02:47] Binary: /sbin/mkdosfs
  1257. [09:02:47] Binary: /sbin/mke2fs
  1258. [09:02:47] Binary: /sbin/mkfs
  1259. [09:02:47] Binary: /sbin/mkfs.bfs
  1260. [09:02:47] Binary: /sbin/mkfs.cramfs
  1261. [09:02:47] Binary: /sbin/mkfs.ext2
  1262. [09:02:47] Binary: /sbin/mkfs.ext3
  1263. [09:02:47] Binary: /sbin/mkfs.ext4
  1264. [09:02:47] Binary: /sbin/mkfs.ext4dev
  1265. [09:02:47] Binary: /sbin/mkfs.fat
  1266. [09:02:47] Binary: /sbin/mkfs.minix
  1267. [09:02:47] Binary: /sbin/mkfs.msdos
  1268. [09:02:47] Binary: /sbin/mkfs.ntfs
  1269. [09:02:47] Binary: /sbin/mkfs.vfat
  1270. [09:02:47] Binary: /sbin/mkfs.xfs
  1271. [09:02:47] Binary: /sbin/mkhomedir_helper
  1272. [09:02:47] Binary: /sbin/mkntfs
  1273. [09:02:47] Binary: /sbin/mkswap
  1274. [09:02:47] Binary: /sbin/modinfo
  1275. [09:02:47] Binary: /sbin/modprobe
  1276. [09:02:47] Binary: /sbin/mount.fuse
  1277. [09:02:47] Binary: /sbin/mount.lowntfs-3g
  1278. [09:02:47] Binary: /sbin/mount.ntfs
  1279. [09:02:47] Binary: /sbin/mount.ntfs-3g
  1280. [09:02:47] Binary: /sbin/mount.vmhgfs
  1281. [09:02:47] Binary: /sbin/nameif
  1282. [09:02:47] Binary: /sbin/ntfsclone
  1283. [09:02:47] Binary: /sbin/ntfscp
  1284. [09:02:47] Binary: /sbin/ntfslabel
  1285. [09:02:47] Binary: /sbin/ntfsresize
  1286. [09:02:47] Binary: /sbin/ntfsundelete
  1287. [09:02:47] Binary: /sbin/on_ac_power
  1288. [09:02:47] Binary: /sbin/pam_extrausers_chkpwd
  1289. [09:02:47] Binary: /sbin/pam_extrausers_update
  1290. [09:02:47] Binary: /sbin/pam_tally
  1291. [09:02:47] Binary: /sbin/pam_tally2
  1292. [09:02:47] Binary: /sbin/parted
  1293. [09:02:47] Binary: /sbin/partprobe
  1294. [09:02:47] Binary: /sbin/pivot_root
  1295. [09:02:47] Binary: /sbin/plipconfig
  1296. [09:02:47] Binary: /sbin/plymouthd
  1297. [09:02:47] Binary: /sbin/poweroff
  1298. [09:02:47] Binary: /sbin/pvchange
  1299. [09:02:47] Binary: /sbin/pvck
  1300. [09:02:47] Binary: /sbin/pvcreate
  1301. [09:02:47] Binary: /sbin/pvdisplay
  1302. [09:02:47] Binary: /sbin/pvmove
  1303. [09:02:47] Binary: /sbin/pvremove
  1304. [09:02:47] Binary: /sbin/pvresize
  1305. [09:02:47] Binary: /sbin/pvs
  1306. [09:02:47] Binary: /sbin/pvscan
  1307. [09:02:47] Binary: /sbin/rarp
  1308. [09:02:47] Binary: /sbin/raw
  1309. [09:02:47] Binary: /sbin/reboot
  1310. [09:02:47] Binary: /sbin/resize2fs
  1311. [09:02:47] Binary: /sbin/resolvconf
  1312. [09:02:47] Binary: /sbin/rmmod
  1313. [09:02:47] Binary: /sbin/route
  1314. [09:02:47] Binary: /sbin/rtacct
  1315. [09:02:47] Binary: /sbin/rtmon
  1316. [09:02:47] Binary: /sbin/runlevel
  1317. [09:02:47] Binary: /sbin/runuser
  1318. [09:02:47] Binary: /sbin/setcap
  1319. [09:02:47] Binary: /sbin/setvtrgb
  1320. [09:02:47] Binary: /sbin/sfdisk
  1321. [09:02:47] Binary: /sbin/sgdisk
  1322. [09:02:47] Binary: /sbin/shadowconfig
  1323. [09:02:47] Binary: /sbin/shutdown
  1324. [09:02:47] Binary: /sbin/slattach
  1325. [09:02:47] Binary: /sbin/start-stop-daemon
  1326. [09:02:47] Binary: /sbin/sulogin
  1327. [09:02:47] Binary: /sbin/swaplabel
  1328. [09:02:47] Binary: /sbin/swapoff
  1329. [09:02:47] Binary: /sbin/swapon
  1330. [09:02:47] Binary: /sbin/switch_root
  1331. [09:02:47] Binary: /sbin/sysctl
  1332. [09:02:47] Binary: /sbin/tc
  1333. [09:02:47] Binary: /sbin/telinit
  1334. [09:02:47] Binary: /sbin/tipc
  1335. [09:02:47] Binary: /sbin/tune2fs
  1336. [09:02:47] Binary: /sbin/udevadm
  1337. [09:02:47] Binary: /sbin/unix_chkpwd
  1338. [09:02:47] Binary: /sbin/unix_update
  1339. [09:02:47] Binary: /sbin/ureadahead
  1340. [09:02:47] Binary: /sbin/vconfig
  1341. [09:02:47] Binary: /sbin/veritysetup
  1342. [09:02:47] Binary: /sbin/vgcfgbackup
  1343. [09:02:47] Binary: /sbin/vgcfgrestore
  1344. [09:02:47] Binary: /sbin/vgchange
  1345. [09:02:47] Binary: /sbin/vgck
  1346. [09:02:47] Binary: /sbin/vgconvert
  1347. [09:02:47] Binary: /sbin/vgcreate
  1348. [09:02:47] Binary: /sbin/vgdisplay
  1349. [09:02:47] Binary: /sbin/vgexport
  1350. [09:02:47] Binary: /sbin/vgextend
  1351. [09:02:47] Binary: /sbin/vgimport
  1352. [09:02:47] Binary: /sbin/vgimportclone
  1353. [09:02:47] Binary: /sbin/vgmerge
  1354. [09:02:47] Binary: /sbin/vgmknodes
  1355. [09:02:47] Binary: /sbin/vgreduce
  1356. [09:02:47] Binary: /sbin/vgremove
  1357. [09:02:47] Binary: /sbin/vgrename
  1358. [09:02:47] Binary: /sbin/vgs
  1359. [09:02:47] Binary: /sbin/vgscan
  1360. [09:02:47] Binary: /sbin/vgsplit
  1361. [09:02:47] Binary: /sbin/wipefs
  1362. [09:02:47] Binary: /sbin/xfs_repair
  1363. [09:02:47] Binary: /sbin/xtables-multi
  1364. [09:02:47] Binary: /sbin/zramctl
  1365. [09:02:47] ===---------------------------------------------------------------===
  1366. [09:02:47] Test: Checking binaries in directory /usr/bin
  1367. [09:02:47] Directory /usr/bin exists. Starting directory scanning...
  1368. [09:02:47] Binary: /usr/bin/2to3
  1369. [09:02:47] Binary: /usr/bin/2to3-2.7
  1370. [09:02:47] Binary: /usr/bin/2to3-3.5
  1371. [09:02:47] Binary: /usr/bin/NF
  1372. [09:02:47] Binary: /usr/bin/[
  1373. [09:02:47] Binary: /usr/bin/aa-enabled
  1374. [09:02:47] Binary: /usr/bin/acpi_listen
  1375. [09:02:47] Binary: /usr/bin/add-apt-repository
  1376. [09:02:47] Binary: /usr/bin/addpart
  1377. [09:02:47] Binary: /usr/bin/apport-bug
  1378. [09:02:47] Binary: /usr/bin/apport-cli
  1379. [09:02:47] Binary: /usr/bin/apport-collect
  1380. [09:02:47] Binary: /usr/bin/apport-unpack
  1381. [09:02:47] Binary: /usr/bin/apropos
  1382. [09:02:47] Binary: /usr/bin/apt
  1383. [09:02:47] Binary: /usr/bin/apt-add-repository
  1384. [09:02:47] Binary: /usr/bin/apt-cache
  1385. [09:02:47] Binary: /usr/bin/apt-cdrom
  1386. [09:02:47] Binary: /usr/bin/apt-config
  1387. [09:02:47] Binary: /usr/bin/apt-extracttemplates
  1388. [09:02:47] Binary: /usr/bin/apt-ftparchive
  1389. [09:02:47] Binary: /usr/bin/apt-get
  1390. [09:02:47] Binary: /usr/bin/apt-key
  1391. [09:02:47] Binary: /usr/bin/apt-mark
  1392. [09:02:47] Binary: /usr/bin/apt-sortpkgs
  1393. [09:02:47] Binary: /usr/bin/arch
  1394. [09:02:47] Binary: /usr/bin/at
  1395. [09:02:47] Binary: /usr/bin/atq
  1396. [09:02:47] Binary: /usr/bin/atrm
  1397. [09:02:47] Binary: /usr/bin/awk
  1398. [09:02:47] Binary: /usr/bin/base32
  1399. [09:02:47] Binary: /usr/bin/base64
  1400. [09:02:47] Binary: /usr/bin/basename
  1401. [09:02:47] Binary: /usr/bin/bashbug
  1402. [09:02:47] Binary: /usr/bin/batch
  1403. [09:02:47] Binary: /usr/bin/bootctl
  1404. [09:02:47] Binary: /usr/bin/bsd-from
  1405. [09:02:47] Binary: /usr/bin/bsd-write
  1406. [09:02:47] Binary: /usr/bin/busctl
  1407. [09:02:47] Binary: /usr/bin/byobu
  1408. [09:02:47] Binary: /usr/bin/byobu-config
  1409. [09:02:47] Binary: /usr/bin/byobu-ctrl-a
  1410. [09:02:47] Binary: /usr/bin/byobu-disable
  1411. [09:02:47] Binary: /usr/bin/byobu-disable-prompt
  1412. [09:02:47] Binary: /usr/bin/byobu-enable
  1413. [09:02:47] Binary: /usr/bin/byobu-enable-prompt
  1414. [09:02:47] Binary: /usr/bin/byobu-export
  1415. [09:02:47] Binary: /usr/bin/byobu-janitor
  1416. [09:02:47] Binary: /usr/bin/byobu-keybindings
  1417. [09:02:47] Binary: /usr/bin/byobu-launch
  1418. [09:02:47] Binary: /usr/bin/byobu-launcher
  1419. [09:02:47] Binary: /usr/bin/byobu-launcher-install
  1420. [09:02:47] Binary: /usr/bin/byobu-launcher-uninstall
  1421. [09:02:47] Binary: /usr/bin/byobu-layout
  1422. [09:02:47] Binary: /usr/bin/byobu-prompt
  1423. [09:02:47] Binary: /usr/bin/byobu-quiet
  1424. [09:02:47] Binary: /usr/bin/byobu-reconnect-sockets
  1425. [09:02:47] Binary: /usr/bin/byobu-screen
  1426. [09:02:47] Binary: /usr/bin/byobu-select-backend
  1427. [09:02:47] Binary: /usr/bin/byobu-select-profile
  1428. [09:02:47] Binary: /usr/bin/byobu-select-session
  1429. [09:02:47] Binary: /usr/bin/byobu-shell
  1430. [09:02:47] Binary: /usr/bin/byobu-silent
  1431. [09:02:47] Binary: /usr/bin/byobu-status
  1432. [09:02:47] Binary: /usr/bin/byobu-status-detail
  1433. [09:02:47] Binary: /usr/bin/byobu-tmux
  1434. [09:02:47] Binary: /usr/bin/byobu-ugraph
  1435. [09:02:47] Binary: /usr/bin/byobu-ulevel
  1436. [09:02:47] Binary: /usr/bin/c2ph
  1437. [09:02:47] Binary: /usr/bin/c_rehash
  1438. [09:02:47] Binary: /usr/bin/cal
  1439. [09:02:47] Binary: /usr/bin/calendar
  1440. [09:02:47] Binary: /usr/bin/captoinfo
  1441. [09:02:47] Binary: /usr/bin/catchsegv
  1442. [09:02:47] Binary: /usr/bin/catman
  1443. [09:02:47] Binary: /usr/bin/cautious-launcher
  1444. [09:02:47] Binary: /usr/bin/chacl
  1445. [09:02:47] Binary: /usr/bin/chage
  1446. [09:02:47] Binary: /usr/bin/chardet3
  1447. [09:02:47] Binary: /usr/bin/chardetect3
  1448. [09:02:47] Binary: /usr/bin/chattr
  1449. [09:02:47] Binary: /usr/bin/chcon
  1450. [09:02:47] Binary: /usr/bin/check-language-support
  1451. [09:02:47] Binary: /usr/bin/chfn
  1452. [09:02:47] Binary: /usr/bin/chrt
  1453. [09:02:47] Binary: /usr/bin/chsh
  1454. [09:02:47] Binary: /usr/bin/ckbcomp
  1455. [09:02:47] Binary: /usr/bin/cksum
  1456. [09:02:47] Binary: /usr/bin/clear
  1457. [09:02:47] Binary: /usr/bin/clear_console
  1458. [09:02:47] Binary: /usr/bin/cloud-init
  1459. [09:02:47] Binary: /usr/bin/cloud-init-per
  1460. [09:02:47] Binary: /usr/bin/cmp
  1461. [09:02:47] Binary: /usr/bin/codepage
  1462. [09:02:47] Binary: /usr/bin/col
  1463. [09:02:47] Binary: /usr/bin/col1
  1464. [09:02:47] Binary: /usr/bin/col2
  1465. [09:02:47] Binary: /usr/bin/col3
  1466. [09:02:47] Binary: /usr/bin/col4
  1467. [09:02:47] Binary: /usr/bin/col5
  1468. [09:02:47] Binary: /usr/bin/col6
  1469. [09:02:47] Binary: /usr/bin/col7
  1470. [09:02:47] Binary: /usr/bin/col8
  1471. [09:02:47] Binary: /usr/bin/col9
  1472. [09:02:47] Binary: /usr/bin/colcrt
  1473. [09:02:47] Binary: /usr/bin/colrm
  1474. [09:02:47] Binary: /usr/bin/column
  1475. [09:02:47] Binary: /usr/bin/comm
  1476. [09:02:47] Binary: /usr/bin/compose
  1477. [09:02:47] Binary: /usr/bin/corelist
  1478. [09:02:47] Binary: /usr/bin/cpan
  1479. [09:02:47] Binary: /usr/bin/cpan5.22-x86_64-linux-gnu
  1480. [09:02:47] Binary: /usr/bin/crontab
  1481. [09:02:47] Binary: /usr/bin/csplit
  1482. [09:02:47] Binary: /usr/bin/ctail
  1483. [09:02:47] Binary: /usr/bin/ctstat
  1484. [09:02:47] Binary: /usr/bin/curl
  1485. [09:02:47] Binary: /usr/bin/cut
  1486. [09:02:47] Binary: /usr/bin/dbus-cleanup-sockets
  1487. [09:02:47] Binary: /usr/bin/dbus-daemon
  1488. [09:02:47] Binary: /usr/bin/dbus-monitor
  1489. [09:02:47] Binary: /usr/bin/dbus-run-session
  1490. [09:02:47] Binary: /usr/bin/dbus-send
  1491. [09:02:47] Binary: /usr/bin/dbus-update-activation-environment
  1492. [09:02:47] Binary: /usr/bin/dbus-uuidgen
  1493. [09:02:47] Binary: /usr/bin/deallocvt
  1494. [09:02:47] Binary: /usr/bin/deb-systemd-helper
  1495. [09:02:47] Binary: /usr/bin/deb-systemd-invoke
  1496. [09:02:47] Binary: /usr/bin/debconf
  1497. [09:02:47] Binary: /usr/bin/debconf-apt-progress
  1498. [09:02:47] Binary: /usr/bin/debconf-communicate
  1499. [09:02:47] Binary: /usr/bin/debconf-copydb
  1500. [09:02:47] Binary: /usr/bin/debconf-escape
  1501. [09:02:47] Binary: /usr/bin/debconf-set-selections
  1502. [09:02:47] Binary: /usr/bin/debconf-show
  1503. [09:02:47] Binary: /usr/bin/delpart
  1504. [09:02:47] Binary: /usr/bin/dh_bash-completion
  1505. [09:02:47] Binary: /usr/bin/dh_installxmlcatalogs
  1506. [09:02:47] Binary: /usr/bin/dh_pypy
  1507. [09:02:47] Binary: /usr/bin/dh_python2
  1508. [09:02:47] Binary: /usr/bin/dh_python3
  1509. [09:02:47] Binary: /usr/bin/diff
  1510. [09:02:47] Binary: /usr/bin/diff3
  1511. [09:02:47] Binary: /usr/bin/dig
  1512. [09:02:47] Binary: /usr/bin/dircolors
  1513. [09:02:47] Binary: /usr/bin/dirname
  1514. [09:02:47] Binary: /usr/bin/do-release-upgrade
  1515. [09:02:47] Binary: /usr/bin/dpkg
  1516. [09:02:47] Binary: /usr/bin/dpkg-deb
  1517. [09:02:47] Binary: /usr/bin/dpkg-divert
  1518. [09:02:47] Binary: /usr/bin/dpkg-maintscript-helper
  1519. [09:02:47] Binary: /usr/bin/dpkg-query
  1520. [09:02:47] Binary: /usr/bin/dpkg-split
  1521. [09:02:47] Binary: /usr/bin/dpkg-statoverride
  1522. [09:02:47] Binary: /usr/bin/dpkg-trigger
  1523. [09:02:47] Binary: /usr/bin/du
  1524. [09:02:47] Binary: /usr/bin/dumpkeys
  1525. [09:02:47] Binary: /usr/bin/eatmydata
  1526. [09:02:47] Binary: /usr/bin/ec2metadata
  1527. [09:02:47] Binary: /usr/bin/edit
  1528. [09:02:47] Binary: /usr/bin/editor
  1529. [09:02:47] Binary: /usr/bin/eject
  1530. [09:02:47] Binary: /usr/bin/enc2xs
  1531. [09:02:47] Binary: /usr/bin/encguess
  1532. [09:02:47] Binary: /usr/bin/env
  1533. [09:02:47] Binary: /usr/bin/envsubst
  1534. [09:02:47] Binary: /usr/bin/eqn
  1535. [09:02:47] Binary: /usr/bin/ex
  1536. [09:02:47] Binary: /usr/bin/expand
  1537. [09:02:47] Binary: /usr/bin/expiry
  1538. [09:02:47] Binary: /usr/bin/expr
  1539. [09:02:47] Binary: /usr/bin/factor
  1540. [09:02:47] Binary: /usr/bin/faillog
  1541. [09:02:47] Binary: /usr/bin/fallocate
  1542. [09:02:47] Binary: /usr/bin/file
  1543. [09:02:47] Binary: /usr/bin/file-rename
  1544. [09:02:47] Binary: /usr/bin/find
  1545. [09:02:47] Binary: /usr/bin/flock
  1546. [09:02:47] Binary: /usr/bin/fmt
  1547. [09:02:47] Binary: /usr/bin/fold
  1548. [09:02:47] Binary: /usr/bin/forever
  1549. [09:02:47] Binary: /usr/bin/free
  1550. [09:02:47] Binary: /usr/bin/from
  1551. [09:02:47] Binary: /usr/bin/ftp
  1552. [09:02:47] Binary: /usr/bin/gawk
  1553. [09:02:47] Binary: /usr/bin/geqn
  1554. [09:02:47] Binary: /usr/bin/getconf
  1555. [09:02:47] Binary: /usr/bin/getent
  1556. [09:02:47] Binary: /usr/bin/getfacl
  1557. [09:02:47] Binary: /usr/bin/getkeycodes
  1558. [09:02:47] Binary: /usr/bin/getopt
  1559. [09:02:47] Binary: /usr/bin/gettext
  1560. [09:02:47] Binary: /usr/bin/gettext.sh
  1561. [09:02:47] Binary: /usr/bin/ginstall-info
  1562. [09:02:47] Binary: /usr/bin/git
  1563. [09:02:47] Binary: /usr/bin/git-receive-pack
  1564. [09:02:47] Binary: /usr/bin/git-shell
  1565. [09:02:47] Binary: /usr/bin/git-upload-archive
  1566. [09:02:47] Binary: /usr/bin/git-upload-pack
  1567. [09:02:47] Binary: /usr/bin/gitlab-ci-multi-runner
  1568. [09:02:47] Binary: /usr/bin/gitlab-runner
  1569. [09:02:47] Binary: /usr/bin/gpasswd
  1570. [09:02:47] Binary: /usr/bin/gpg
  1571. [09:02:47] Binary: /usr/bin/gpg-zip
  1572. [09:02:47] Binary: /usr/bin/gpgsplit
  1573. [09:02:47] Binary: /usr/bin/gpgv
  1574. [09:02:47] Binary: /usr/bin/gpic
  1575. [09:02:47] Binary: /usr/bin/groff
  1576. [09:02:47] Binary: /usr/bin/grog
  1577. [09:02:47] Binary: /usr/bin/grops
  1578. [09:02:47] Binary: /usr/bin/grotty
  1579. [09:02:47] Binary: /usr/bin/groups
  1580. [09:02:47] Binary: /usr/bin/growpart
  1581. [09:02:47] Binary: /usr/bin/grub-editenv
  1582. [09:02:47] Binary: /usr/bin/grub-file
  1583. [09:02:47] Binary: /usr/bin/grub-fstest
  1584. [09:02:47] Binary: /usr/bin/grub-glue-efi
  1585. [09:02:47] Binary: /usr/bin/grub-kbdcomp
  1586. [09:02:47] Binary: /usr/bin/grub-menulst2cfg
  1587. [09:02:47] Binary: /usr/bin/grub-mkfont
  1588. [09:02:47] Binary: /usr/bin/grub-mkimage
  1589. [09:02:47] Binary: /usr/bin/grub-mklayout
  1590. [09:02:47] Binary: /usr/bin/grub-mknetdir
  1591. [09:02:47] Binary: /usr/bin/grub-mkpasswd-pbkdf2
  1592. [09:02:47] Binary: /usr/bin/grub-mkrelpath
  1593. [09:02:47] Binary: /usr/bin/grub-mkrescue
  1594. [09:02:47] Binary: /usr/bin/grub-mkstandalone
  1595. [09:02:47] Binary: /usr/bin/grub-mount
  1596. [09:02:47] Binary: /usr/bin/grub-render-label
  1597. [09:02:47] Binary: /usr/bin/grub-script-check
  1598. [09:02:47] Binary: /usr/bin/grub-syslinux2cfg
  1599. [09:02:47] Binary: /usr/bin/gtbl
  1600. [09:02:47] Binary: /usr/bin/h2ph
  1601. [09:02:47] Binary: /usr/bin/h2xs
  1602. [09:02:47] Binary: /usr/bin/hd
  1603. [09:02:47] Binary: /usr/bin/head
  1604. [09:02:47] Binary: /usr/bin/helpztags
  1605. [09:02:47] Binary: /usr/bin/hexdump
  1606. [09:02:47] Binary: /usr/bin/host
  1607. [09:02:47] Binary: /usr/bin/hostid
  1608. [09:02:47] Binary: /usr/bin/hostnamectl
  1609. [09:02:47] Binary: /usr/bin/i386
  1610. [09:02:47] Binary: /usr/bin/iconv
  1611. [09:02:47] Binary: /usr/bin/id
  1612. [09:02:47] Binary: /usr/bin/igawk
  1613. [09:02:47] Binary: /usr/bin/info
  1614. [09:02:47] Binary: /usr/bin/infobrowser
  1615. [09:02:47] Binary: /usr/bin/infocmp
  1616. [09:02:47] Binary: /usr/bin/infotocap
  1617. [09:02:47] Binary: /usr/bin/install
  1618. [09:02:47] Binary: /usr/bin/install-info
  1619. [09:02:47] Binary: /usr/bin/install-menu
  1620. [09:02:47] Binary: /usr/bin/instmodsh
  1621. [09:02:47] Binary: /usr/bin/ionice
  1622. [09:02:47] Binary: /usr/bin/ipcmk
  1623. [09:02:47] Binary: /usr/bin/ipcrm
  1624. [09:02:47] Binary: /usr/bin/ipcs
  1625. [09:02:47] Binary: /usr/bin/iptables-xml
  1626. [09:02:47] Binary: /usr/bin/ischroot
  1627. [09:02:47] Binary: /usr/bin/iscsiadm
  1628. [09:02:47] Binary: /usr/bin/join
  1629. [09:02:47] Binary: /usr/bin/json_pp
  1630. [09:02:47] Binary: /usr/bin/jsondiff
  1631. [09:02:47] Binary: /usr/bin/jsonpatch
  1632. [09:02:47] Binary: /usr/bin/jsonpointer
  1633. [09:02:47] Binary: /usr/bin/jwt3
  1634. [09:02:47] Binary: /usr/bin/kbdinfo
  1635. [09:02:47] Binary: /usr/bin/keep-one-running
  1636. [09:02:47] Binary: /usr/bin/killall
  1637. [09:02:47] Binary: /usr/bin/kmodsign
  1638. [09:02:47] Binary: /usr/bin/last
  1639. [09:02:47] Binary: /usr/bin/lastb
  1640. [09:02:47] Binary: /usr/bin/lastlog
  1641. [09:02:47] Binary: /usr/bin/lcf
  1642. [09:02:47] Binary: /usr/bin/ldd
  1643. [09:02:47] Binary: /usr/bin/less
  1644. [09:02:47] Binary: /usr/bin/lessecho
  1645. [09:02:47] Binary: /usr/bin/lessfile
  1646. [09:02:47] Binary: /usr/bin/lesskey
  1647. [09:02:47] Binary: /usr/bin/lesspipe
  1648. [09:02:47] Binary: /usr/bin/lexgrog
  1649. [09:02:47] Binary: /usr/bin/libnetcfg
  1650. [09:02:47] Binary: /usr/bin/line
  1651. [09:02:47] Binary: /usr/bin/link
  1652. [09:02:47] Binary: /usr/bin/linux-boot-prober
  1653. [09:02:47] Binary: /usr/bin/linux-check-removal
  1654. [09:02:47] Binary: /usr/bin/linux-update-symlinks
  1655. [09:02:47] Binary: /usr/bin/linux-version
  1656. [09:02:47] Binary: /usr/bin/linux32
  1657. [09:02:47] Binary: /usr/bin/linux64
  1658. [09:02:47] Binary: /usr/bin/lnstat
  1659. [09:02:47] Binary: /usr/bin/loadkeys
  1660. [09:02:47] Binary: /usr/bin/loadunimap
  1661. [09:02:47] Binary: /usr/bin/locale
  1662. [09:02:47] Binary: /usr/bin/localectl
  1663. [09:02:47] Binary: /usr/bin/localedef
  1664. [09:02:47] Binary: /usr/bin/locate
  1665. [09:02:47] Binary: /usr/bin/logger
  1666. [09:02:47] Binary: /usr/bin/logname
  1667. [09:02:47] Binary: /usr/bin/look
  1668. [09:02:47] Binary: /usr/bin/lorder
  1669. [09:02:47] Binary: /usr/bin/lsattr
  1670. [09:02:47] Binary: /usr/bin/lsb_release
  1671. [09:02:47] Binary: /usr/bin/lscpu
  1672. [09:02:47] Binary: /usr/bin/lshw
  1673. [09:02:47] Binary: /usr/bin/lsinitramfs
  1674. [09:02:47] Binary: /usr/bin/lsipc
  1675. [09:02:47] Binary: /usr/bin/lslocks
  1676. [09:02:47] Binary: /usr/bin/lslogins
  1677. [09:02:47] Binary: /usr/bin/lsof
  1678. [09:02:47] Binary: /usr/bin/lspci
  1679. [09:02:47] Binary: /usr/bin/lspgpot
  1680. [09:02:47] Binary: /usr/bin/lsusb
  1681. [09:02:47] Binary: /usr/bin/ltrace
  1682. [09:02:47] Binary: /usr/bin/lxc
  1683. [09:02:47] Binary: /usr/bin/lxcfs
  1684. [09:02:47] Binary: /usr/bin/lxd
  1685. [09:02:47] Binary: /usr/bin/lzcat
  1686. [09:02:47] Binary: /usr/bin/lzcmp
  1687. [09:02:47] Binary: /usr/bin/lzdiff
  1688. [09:02:47] Binary: /usr/bin/lzegrep
  1689. [09:02:47] Binary: /usr/bin/lzfgrep
  1690. [09:02:47] Binary: /usr/bin/lzgrep
  1691. [09:02:47] Binary: /usr/bin/lzless
  1692. [09:02:47] Binary: /usr/bin/lzma
  1693. [09:02:47] Binary: /usr/bin/lzmainfo
  1694. [09:02:47] Binary: /usr/bin/lzmore
  1695. [09:02:47] Binary: /usr/bin/man
  1696. [09:02:47] Binary: /usr/bin/mandb
  1697. [09:02:47] Binary: /usr/bin/manifest
  1698. [09:02:47] Binary: /usr/bin/manpath
  1699. [09:02:47] Binary: /usr/bin/mapscrn
  1700. [09:02:47] Binary: /usr/bin/mawk
  1701. [09:02:47] Binary: /usr/bin/mcookie
  1702. [09:02:47] Binary: /usr/bin/md5sum
  1703. [09:02:47] Binary: /usr/bin/md5sum.textutils
  1704. [09:02:47] Binary: /usr/bin/mesg
  1705. [09:02:47] Binary: /usr/bin/mk_modmap
  1706. [09:02:47] Binary: /usr/bin/mkfifo
  1707. [09:02:47] Binary: /usr/bin/mksquashfs
  1708. [09:02:47] Binary: /usr/bin/mlocate
  1709. [09:02:47] Binary: /usr/bin/mokutil
  1710. [09:02:47] Binary: /usr/bin/mtr
  1711. [09:02:47] Binary: /usr/bin/namei
  1712. [09:02:47] Binary: /usr/bin/nawk
  1713. [09:02:47] Binary: /usr/bin/ncal
  1714. [09:02:47] Binary: /usr/bin/neqn
  1715. [09:02:47] Binary: /usr/bin/netkit-ftp
  1716. [09:02:47] Binary: /usr/bin/newgidmap
  1717. [09:02:47] Binary: /usr/bin/newgrp
  1718. [09:02:47] Binary: /usr/bin/newuidmap
  1719. [09:02:47] Binary: /usr/bin/ngettext
  1720. [09:02:47] Binary: /usr/bin/nice
  1721. [09:02:47] Binary: /usr/bin/nl
  1722. [09:02:47] Binary: /usr/bin/node
  1723. [09:02:47] Binary: /usr/bin/nodejs
  1724. [09:02:47] Binary: /usr/bin/nodemon
  1725. [09:02:47] Binary: /usr/bin/nohup
  1726. [09:02:47] Binary: /usr/bin/npm
  1727. [09:02:47] Binary: /usr/bin/nproc
  1728. [09:02:48] Binary: /usr/bin/npx
  1729. [09:02:48] Binary: /usr/bin/nroff
  1730. [09:02:48] Binary: /usr/bin/nsenter
  1731. [09:02:48] Binary: /usr/bin/nslookup
  1732. [09:02:48] Binary: /usr/bin/nstat
  1733. [09:02:48] Binary: /usr/bin/nsupdate
  1734. [09:02:48] Binary: /usr/bin/ntfsdecrypt
  1735. [09:02:48] Binary: /usr/bin/numfmt
  1736. [09:02:48] Binary: /usr/bin/od
  1737. [09:02:48] Binary: /usr/bin/on_ac_power
  1738. [09:02:48] Binary: /usr/bin/openssl
  1739. [09:02:48] Binary: /usr/bin/os-prober
  1740. [09:02:48] Binary: /usr/bin/pager
  1741. [09:02:48] Binary: /usr/bin/partx
  1742. [09:02:48] Binary: /usr/bin/passwd
  1743. [09:02:48] Binary: /usr/bin/paste
  1744. [09:02:48] Binary: /usr/bin/pastebinit
  1745. [09:02:48] Binary: /usr/bin/patch
  1746. [09:02:48] Binary: /usr/bin/pathchk
  1747. [09:02:48] Binary: /usr/bin/pbget
  1748. [09:02:48] Binary: /usr/bin/pbput
  1749. [09:02:48] Binary: /usr/bin/pbputs
  1750. [09:02:48] Binary: /usr/bin/pcimodules
  1751. [09:02:48] Binary: /usr/bin/pdb
  1752. [09:02:48] Binary: /usr/bin/pdb2.7
  1753. [09:02:48] Binary: /usr/bin/pdb3
  1754. [09:02:48] Binary: /usr/bin/pdb3.5
  1755. [09:02:48] Binary: /usr/bin/peekfd
  1756. [09:02:48] Binary: /usr/bin/perl
  1757. [09:02:48] Binary: /usr/bin/perl5.22-x86_64-linux-gnu
  1758. [09:02:48] Binary: /usr/bin/perl5.22.1
  1759. [09:02:48] Binary: /usr/bin/perlbug
  1760. [09:02:48] Binary: /usr/bin/perldoc
  1761. [09:02:48] Binary: /usr/bin/perlivp
  1762. [09:02:48] Binary: /usr/bin/perlthanks
  1763. [09:02:48] Binary: /usr/bin/pftp
  1764. [09:02:48] Binary: /usr/bin/pg
  1765. [09:02:48] Binary: /usr/bin/pgrep
  1766. [09:02:48] Binary: /usr/bin/pic
  1767. [09:02:48] Binary: /usr/bin/pico
  1768. [09:02:48] Binary: /usr/bin/piconv
  1769. [09:02:48] Binary: /usr/bin/pinky
  1770. [09:02:48] Binary: /usr/bin/pkaction
  1771. [09:02:48] Binary: /usr/bin/pkcheck
  1772. [09:02:48] Binary: /usr/bin/pkexec
  1773. [09:02:48] Binary: /usr/bin/pkill
  1774. [09:02:48] Binary: /usr/bin/pkttyagent
  1775. [09:02:48] Binary: /usr/bin/pl2pm
  1776. [09:02:48] Binary: /usr/bin/pldd
  1777. [09:02:48] Binary: /usr/bin/pmap
  1778. [09:02:48] Binary: /usr/bin/pod2html
  1779. [09:02:48] Binary: /usr/bin/pod2man
  1780. [09:02:48] Binary: /usr/bin/pod2text
  1781. [09:02:48] Binary: /usr/bin/pod2usage
  1782. [09:02:48] Binary: /usr/bin/podchecker
  1783. [09:02:48] Binary: /usr/bin/podselect
  1784. [09:02:48] Binary: /usr/bin/pollinate
  1785. [09:02:48] Binary: /usr/bin/pr
  1786. [09:02:48] Binary: /usr/bin/preconv
  1787. [09:02:48] Binary: /usr/bin/prename
  1788. [09:02:48] Binary: /usr/bin/print
  1789. [09:02:48] Binary: /usr/bin/printenv
  1790. [09:02:48] Binary: /usr/bin/printerbanner
  1791. [09:02:48] Binary: /usr/bin/printf
  1792. [09:02:48] Binary: /usr/bin/prlimit
  1793. [09:02:48] Binary: /usr/bin/prove
  1794. [09:02:48] Binary: /usr/bin/prtstat
  1795. [09:02:48] Binary: /usr/bin/psfaddtable
  1796. [09:02:48] Binary: /usr/bin/psfgettable
  1797. [09:02:48] Binary: /usr/bin/psfstriptable
  1798. [09:02:48] Binary: /usr/bin/psfxtable
  1799. [09:02:48] Binary: /usr/bin/pstree
  1800. [09:02:48] Binary: /usr/bin/pstree.x11
  1801. [09:02:48] Binary: /usr/bin/pstruct
  1802. [09:02:48] Binary: /usr/bin/ptar
  1803. [09:02:48] Binary: /usr/bin/ptardiff
  1804. [09:02:48] Binary: /usr/bin/ptargrep
  1805. [09:02:48] Binary: /usr/bin/ptx
  1806. [09:02:48] Binary: /usr/bin/purge-old-kernels
  1807. [09:02:48] Binary: /usr/bin/pwdx
  1808. [09:02:48] Binary: /usr/bin/py3clean
  1809. [09:02:48] Binary: /usr/bin/py3compile
  1810. [09:02:48] Binary: /usr/bin/py3versions
  1811. [09:02:48] Binary: /usr/bin/pybuild
  1812. [09:02:48] Binary: /usr/bin/pyclean
  1813. [09:02:48] Binary: /usr/bin/pycompile
  1814. [09:02:48] Binary: /usr/bin/pydoc
  1815. [09:02:48] Binary: /usr/bin/pydoc2.7
  1816. [09:02:48] Binary: /usr/bin/pydoc3
  1817. [09:02:48] Binary: /usr/bin/pydoc3.5
  1818. [09:02:48] Binary: /usr/bin/pygettext
  1819. [09:02:48] Binary: /usr/bin/pygettext2.7
  1820. [09:02:48] Binary: /usr/bin/pygettext3
  1821. [09:02:48] Binary: /usr/bin/pygettext3.5
  1822. [09:02:48] Binary: /usr/bin/python
  1823. [09:02:48] Binary: /usr/bin/python2
  1824. [09:02:48] Binary: /usr/bin/python2.7
  1825. [09:02:48] Binary: /usr/bin/python3
  1826. [09:02:48] Binary: /usr/bin/python3-jsondiff
  1827. [09:02:48] Binary: /usr/bin/python3-jsonpatch
  1828. [09:02:48] Binary: /usr/bin/python3-jsonpointer
  1829. [09:02:48] Binary: /usr/bin/python3.5
  1830. [09:02:48] Binary: /usr/bin/python3.5m
  1831. [09:02:48] Binary: /usr/bin/python3m
  1832. [09:02:48] Binary: /usr/bin/pyversions
  1833. [09:02:48] Binary: /usr/bin/rcp
  1834. [09:02:48] Binary: /usr/bin/realpath
  1835. [09:02:48] Binary: /usr/bin/rename
  1836. [09:02:48] Binary: /usr/bin/rename.ul
  1837. [09:02:48] Binary: /usr/bin/renice
  1838. [09:02:48] Binary: /usr/bin/reset
  1839. [09:02:48] Binary: /usr/bin/resizecons
  1840. [09:02:48] Binary: /usr/bin/resizepart
  1841. [09:02:48] Binary: /usr/bin/rev
  1842. [09:02:48] Binary: /usr/bin/rgrep
  1843. [09:02:48] Binary: /usr/bin/rlogin
  1844. [09:02:48] Binary: /usr/bin/routef
  1845. [09:02:48] Binary: /usr/bin/routel
  1846. [09:02:48] Binary: /usr/bin/rsh
  1847. [09:02:48] Binary: /usr/bin/rsync
  1848. [09:02:48] Binary: /usr/bin/rtstat
  1849. [09:02:48] Binary: /usr/bin/run-mailcap
  1850. [09:02:48] Binary: /usr/bin/run-one
  1851. [09:02:48] Binary: /usr/bin/run-one-constantly
  1852. [09:02:48] Binary: /usr/bin/run-one-until-failure
  1853. [09:02:48] Binary: /usr/bin/run-one-until-success
  1854. [09:02:48] Binary: /usr/bin/run-this-one
  1855. [09:02:48] Binary: /usr/bin/runcon
  1856. [09:02:48] Binary: /usr/bin/rview
  1857. [09:02:48] Binary: /usr/bin/rvim
  1858. [09:02:48] Binary: /usr/bin/savelog
  1859. [09:02:48] Binary: /usr/bin/sbattach
  1860. [09:02:48] Binary: /usr/bin/sbkeysync
  1861. [09:02:48] Binary: /usr/bin/sbsiglist
  1862. [09:02:48] Binary: /usr/bin/sbsign
  1863. [09:02:48] Binary: /usr/bin/sbvarsign
  1864. [09:02:48] Binary: /usr/bin/sbverify
  1865. [09:02:48] Binary: /usr/bin/scp
  1866. [09:02:48] Binary: /usr/bin/screen
  1867. [09:02:48] Binary: /usr/bin/screendump
  1868. [09:02:48] Binary: /usr/bin/script
  1869. [09:02:48] Binary: /usr/bin/scriptreplay
  1870. [09:02:48] Binary: /usr/bin/sdiff
  1871. [09:02:48] Binary: /usr/bin/see
  1872. [09:02:48] Binary: /usr/bin/select-editor
  1873. [09:02:48] Binary: /usr/bin/sensible-browser
  1874. [09:02:48] Binary: /usr/bin/sensible-editor
  1875. [09:02:48] Binary: /usr/bin/sensible-pager
  1876. [09:02:48] Binary: /usr/bin/seq
  1877. [09:02:48] Binary: /usr/bin/setarch
  1878. [09:02:48] Binary: /usr/bin/setfacl
  1879. [09:02:48] Binary: /usr/bin/setkeycodes
  1880. [09:02:48] Binary: /usr/bin/setleds
  1881. [09:02:48] Binary: /usr/bin/setlogcons
  1882. [09:02:48] Binary: /usr/bin/setmetamode
  1883. [09:02:48] Binary: /usr/bin/setpci
  1884. [09:02:48] Binary: /usr/bin/setsid
  1885. [09:02:48] Binary: /usr/bin/setterm
  1886. [09:02:48] Binary: /usr/bin/sftp
  1887. [09:02:48] Binary: /usr/bin/sg
  1888. [09:02:48] Binary: /usr/bin/sha1sum
  1889. [09:02:48] Binary: /usr/bin/sha224sum
  1890. [09:02:48] Binary: /usr/bin/sha256sum
  1891. [09:02:48] Binary: /usr/bin/sha384sum
  1892. [09:02:48] Binary: /usr/bin/sha512sum
  1893. [09:02:48] Binary: /usr/bin/shasum
  1894. [09:02:48] Binary: /usr/bin/showconsolefont
  1895. [09:02:48] Binary: /usr/bin/showkey
  1896. [09:02:48] Binary: /usr/bin/shred
  1897. [09:02:48] Binary: /usr/bin/shuf
  1898. [09:02:48] Binary: /usr/bin/skill
  1899. [09:02:48] Binary: /usr/bin/slabtop
  1900. [09:02:48] Binary: /usr/bin/slogin
  1901. [09:02:48] Binary: /usr/bin/snap
  1902. [09:02:48] Binary: /usr/bin/snapctl
  1903. [09:02:48] Binary: /usr/bin/snapfuse
  1904. [09:02:48] Binary: /usr/bin/snice
  1905. [09:02:48] Binary: /usr/bin/soelim
  1906. [09:02:48] Binary: /usr/bin/sort
  1907. [09:02:48] Binary: /usr/bin/sosreport
  1908. [09:02:48] Binary: /usr/bin/splain
  1909. [09:02:48] Binary: /usr/bin/split
  1910. [09:02:48] Binary: /usr/bin/splitfont
  1911. [09:02:48] Binary: /usr/bin/ssh
  1912. [09:02:48] Binary: /usr/bin/ssh-add
  1913. [09:02:48] Binary: /usr/bin/ssh-agent
  1914. [09:02:48] Binary: /usr/bin/ssh-argv0
  1915. [09:02:48] Binary: /usr/bin/ssh-copy-id
  1916. [09:02:48] Binary: /usr/bin/ssh-import-id
  1917. [09:02:48] Binary: /usr/bin/ssh-import-id-gh
  1918. [09:02:48] Binary: /usr/bin/ssh-import-id-lp
  1919. [09:02:48] Binary: /usr/bin/ssh-keygen
  1920. [09:02:48] Binary: /usr/bin/ssh-keyscan
  1921. [09:02:48] Binary: /usr/bin/stat
  1922. [09:02:48] Binary: /usr/bin/stdbuf
  1923. [09:02:48] Binary: /usr/bin/strace
  1924. [09:02:48] Binary: /usr/bin/su-to-root
  1925. [09:02:48] Binary: /usr/bin/sudo
  1926. [09:02:48] Binary: /usr/bin/sudoedit
  1927. [09:02:48] Binary: /usr/bin/sudoreplay
  1928. [09:02:48] Binary: /usr/bin/sum
  1929. [09:02:48] Binary: /usr/bin/systemd-analyze
  1930. [09:02:48] Binary: /usr/bin/systemd-cat
  1931. [09:02:48] Binary: /usr/bin/systemd-cgls
  1932. [09:02:48] Binary: /usr/bin/systemd-cgtop
  1933. [09:02:48] Binary: /usr/bin/systemd-delta
  1934. [09:02:48] Binary: /usr/bin/systemd-detect-virt
  1935. [09:02:48] Binary: /usr/bin/systemd-path
  1936. [09:02:48] Binary: /usr/bin/systemd-resolve
  1937. [09:02:48] Binary: /usr/bin/systemd-run
  1938. [09:02:48] Binary: /usr/bin/systemd-stdio-bridge
  1939. [09:02:48] Binary: /usr/bin/tabs
  1940. [09:02:48] Binary: /usr/bin/tac
  1941. [09:02:48] Binary: /usr/bin/tail
  1942. [09:02:48] Binary: /usr/bin/taskset
  1943. [09:02:48] Binary: /usr/bin/tbl
  1944. [09:02:48] Binary: /usr/bin/tee
  1945. [09:02:48] Binary: /usr/bin/telnet
  1946. [09:02:48] Binary: /usr/bin/telnet.netkit
  1947. [09:02:48] Binary: /usr/bin/test
  1948. [09:02:48] Binary: /usr/bin/tic
  1949. [09:02:48] Binary: /usr/bin/time
  1950. [09:02:48] Binary: /usr/bin/timedatectl
  1951. [09:02:48] Binary: /usr/bin/timeout
  1952. [09:02:48] Binary: /usr/bin/tload
  1953. [09:02:48] Binary: /usr/bin/tmux
  1954. [09:02:48] Binary: /usr/bin/toe
  1955. [09:02:48] Binary: /usr/bin/top
  1956. [09:02:48] Binary: /usr/bin/touch
  1957. [09:02:48] Binary: /usr/bin/tput
  1958. [09:02:48] Binary: /usr/bin/tr
  1959. [09:02:48] Binary: /usr/bin/tracepath
  1960. [09:02:48] Binary: /usr/bin/tracepath6
  1961. [09:02:48] Binary: /usr/bin/traceroute6
  1962. [09:02:48] Binary: /usr/bin/traceroute6.iputils
  1963. [09:02:48] Binary: /usr/bin/troff
  1964. [09:02:48] Binary: /usr/bin/truncate
  1965. [09:02:48] Binary: /usr/bin/tset
  1966. [09:02:48] Binary: /usr/bin/tsort
  1967. [09:02:48] Binary: /usr/bin/tty
  1968. [09:02:48] Binary: /usr/bin/tzselect
  1969. [09:02:48] Binary: /usr/bin/ubuntu-bug
  1970. [09:02:48] Binary: /usr/bin/ubuntu-core-launcher
  1971. [09:02:48] Binary: /usr/bin/ubuntu-support-status
  1972. [09:02:48] Binary: /usr/bin/ucf
  1973. [09:02:48] Binary: /usr/bin/ucfq
  1974. [09:02:48] Binary: /usr/bin/ucfr
  1975. [09:02:48] Binary: /usr/bin/ul
  1976. [09:02:48] Binary: /usr/bin/unattended-upgrade
  1977. [09:02:48] Binary: /usr/bin/unattended-upgrades
  1978. [09:02:48] Binary: /usr/bin/unexpand
  1979. [09:02:48] Binary: /usr/bin/unicode_stop
  1980. [09:02:48] Binary: /usr/bin/uniq
  1981. [09:02:48] Binary: /usr/bin/unlink
  1982. [09:02:48] Binary: /usr/bin/unlzma
  1983. [09:02:48] Binary: /usr/bin/unshare
  1984. [09:02:48] Binary: /usr/bin/unsquashfs
  1985. [09:02:48] Binary: /usr/bin/unxz
  1986. [09:02:48] Binary: /usr/bin/update-alternatives
  1987. [09:02:48] Binary: /usr/bin/update-menus
  1988. [09:02:48] Binary: /usr/bin/update-mime-database
  1989. [09:02:48] Binary: /usr/bin/update-mime-database.real
  1990. [09:02:48] Binary: /usr/bin/updatedb
  1991. [09:02:48] Binary: /usr/bin/updatedb.mlocate
  1992. [09:02:48] Binary: /usr/bin/uptime
  1993. [09:02:48] Binary: /usr/bin/usb-devices
  1994. [09:02:48] Binary: /usr/bin/usbhid-dump
  1995. [09:02:48] Binary: /usr/bin/users
  1996. [09:02:48] Binary: /usr/bin/utmpdump
  1997. [09:02:48] Binary: /usr/bin/uuidgen
  1998. [09:02:48] Binary: /usr/bin/vcs-run
  1999. [09:02:48] Binary: /usr/bin/vi
  2000. [09:02:48] Binary: /usr/bin/view
  2001. [09:02:48] Binary: /usr/bin/vigpg
  2002. [09:02:48] Binary: /usr/bin/vim
  2003. [09:02:48] Binary: /usr/bin/vim.basic
  2004. [09:02:48] Binary: /usr/bin/vim.tiny
  2005. [09:02:48] Binary: /usr/bin/vimdiff
  2006. [09:02:48] Binary: /usr/bin/vimtutor
  2007. [09:02:48] Binary: /usr/bin/vmhgfs-fuse
  2008. [09:02:48] Binary: /usr/bin/vmstat
  2009. [09:02:48] Binary: /usr/bin/vmtoolsd
  2010. [09:02:48] Binary: /usr/bin/vmware-checkvm
  2011. [09:02:48] Binary: /usr/bin/vmware-guestproxycerttool
  2012. [09:02:48] Binary: /usr/bin/vmware-hgfsclient
  2013. [09:02:48] Binary: /usr/bin/vmware-namespace-cmd
  2014. [09:02:48] Binary: /usr/bin/vmware-rpctool
  2015. [09:02:48] Binary: /usr/bin/vmware-toolbox-cmd
  2016. [09:02:48] Binary: /usr/bin/vmware-vmblock-fuse
  2017. [09:02:48] Binary: /usr/bin/vmware-xferlogs
  2018. [09:02:48] Binary: /usr/bin/volname
  2019. [09:02:48] Binary: /usr/bin/w
  2020. [09:02:48] Binary: /usr/bin/w.procps
  2021. [09:02:48] Binary: /usr/bin/wall
  2022. [09:02:48] Binary: /usr/bin/watch
  2023. [09:02:48] Binary: /usr/bin/wc
  2024. [09:02:48] Binary: /usr/bin/wget
  2025. [09:02:48] Binary: /usr/bin/whatis
  2026. [09:02:48] Binary: /usr/bin/whereis
  2027. [09:02:48] Binary: /usr/bin/which
  2028. [09:02:48] Binary: /usr/bin/who
  2029. [09:02:48] Binary: /usr/bin/whoami
  2030. [09:02:48] Binary: /usr/bin/wifi-status
  2031. [09:02:48] Binary: /usr/bin/write
  2032. [09:02:48] Binary: /usr/bin/x86_64
  2033. [09:02:48] Binary: /usr/bin/xargs
  2034. [09:02:48] Binary: /usr/bin/xauth
  2035. [09:02:48] Binary: /usr/bin/xdg-user-dir
  2036. [09:02:48] Binary: /usr/bin/xdg-user-dirs-update
  2037. [09:02:48] Binary: /usr/bin/xsubpp
  2038. [09:02:48] Binary: /usr/bin/xxd
  2039. [09:02:48] Binary: /usr/bin/xz
  2040. [09:02:48] Binary: /usr/bin/xzcat
  2041. [09:02:48] Binary: /usr/bin/xzcmp
  2042. [09:02:48] Binary: /usr/bin/xzdiff
  2043. [09:02:48] Binary: /usr/bin/xzegrep
  2044. [09:02:48] Binary: /usr/bin/xzfgrep
  2045. [09:02:48] Binary: /usr/bin/xzgrep
  2046. [09:02:48] Binary: /usr/bin/xzless
  2047. [09:02:48] Binary: /usr/bin/xzmore
  2048. [09:02:48] Binary: /usr/bin/yes
  2049. [09:02:48] Binary: /usr/bin/zdump
  2050. [09:02:48] Binary: /usr/bin/zipdetails
  2051. [09:02:48] ===---------------------------------------------------------------===
  2052. [09:02:48] Test: Checking binaries in directory /usr/sbin
  2053. [09:02:48] Directory /usr/sbin exists. Starting directory scanning...
  2054. [09:02:48] Binary: /usr/sbin/aa-exec
  2055. [09:02:48] Binary: /usr/sbin/aa-remove-unknown
  2056. [09:02:48] Binary: /usr/sbin/aa-status
  2057. [09:02:48] Binary: /usr/sbin/accessdb
  2058. [09:02:48] Binary: /usr/sbin/acpid
  2059. [09:02:48] Binary: /usr/sbin/add-shell
  2060. [09:02:48] Binary: /usr/sbin/addgroup
  2061. [09:02:48] Binary: /usr/sbin/adduser
  2062. [09:02:48] Binary: /usr/sbin/apparmor_status
  2063. [09:02:48] Binary: /usr/sbin/arp
  2064. [09:02:48] Binary: /usr/sbin/arpd
  2065. [09:02:48] Binary: /usr/sbin/atd
  2066. [09:02:48] Binary: /usr/sbin/bcache-super-show
  2067. [09:02:48] Binary: /usr/sbin/biosdecode
  2068. [09:02:48] Binary: /usr/sbin/chgpasswd
  2069. [09:02:48] Binary: /usr/sbin/chpasswd
  2070. [09:02:48] Binary: /usr/sbin/chroot
  2071. [09:02:48] Binary: /usr/sbin/cpgr
  2072. [09:02:48] Binary: /usr/sbin/cppw
  2073. [09:02:48] Binary: /usr/sbin/cron
  2074. [09:02:48] Binary: /usr/sbin/cryptdisks_start
  2075. [09:02:48] Binary: /usr/sbin/cryptdisks_stop
  2076. [09:02:48] Binary: /usr/sbin/delgroup
  2077. [09:02:48] Binary: /usr/sbin/deluser
  2078. [09:02:48] Binary: /usr/sbin/dmidecode
  2079. [09:02:48] Binary: /usr/sbin/dnsmasq
  2080. [09:02:48] Binary: /usr/sbin/dpkg-divert
  2081. [09:02:48] Binary: /usr/sbin/dpkg-preconfigure
  2082. [09:02:48] Binary: /usr/sbin/dpkg-reconfigure
  2083. [09:02:48] Binary: /usr/sbin/dpkg-statoverride
  2084. [09:02:48] Binary: /usr/sbin/e2freefrag
  2085. [09:02:48] Binary: /usr/sbin/e4defrag
  2086. [09:02:48] Binary: /usr/sbin/fdformat
  2087. [09:02:48] Binary: /usr/sbin/filefrag
  2088. [09:02:48] Binary: /usr/sbin/genl
  2089. [09:02:48] Binary: /usr/sbin/groupadd
  2090. [09:02:48] Binary: /usr/sbin/groupdel
  2091. [09:02:48] Binary: /usr/sbin/groupmod
  2092. [09:02:48] Binary: /usr/sbin/grpck
  2093. [09:02:48] Binary: /usr/sbin/grpconv
  2094. [09:02:48] Binary: /usr/sbin/grpunconv
  2095. [09:02:48] Binary: /usr/sbin/grub-install
  2096. [09:02:48] Binary: /usr/sbin/grub-macbless
  2097. [09:02:48] Binary: /usr/sbin/grub-mkconfig
  2098. [09:02:48] Binary: /usr/sbin/grub-mkdevicemap
  2099. [09:02:48] Binary: /usr/sbin/grub-probe
  2100. [09:02:48] Binary: /usr/sbin/grub-reboot
  2101. [09:02:48] Binary: /usr/sbin/grub-set-default
  2102. [09:02:48] Binary: /usr/sbin/grub-set-default-legacy-ec2
  2103. [09:02:48] Binary: /usr/sbin/grub-set-default.real
  2104. [09:02:48] Binary: /usr/sbin/iconvconfig
  2105. [09:02:48] Binary: /usr/sbin/install-menu
  2106. [09:02:48] Binary: /usr/sbin/install-sgmlcatalog
  2107. [09:02:48] Binary: /usr/sbin/invoke-rc.d
  2108. [09:02:48] Binary: /usr/sbin/ip6tables-apply
  2109. [09:02:48] Binary: /usr/sbin/iptables-apply
  2110. [09:02:48] Binary: /usr/sbin/irqbalance
  2111. [09:02:48] Binary: /usr/sbin/iscsi-iname
  2112. [09:02:48] Binary: /usr/sbin/iscsi_discovery
  2113. [09:02:48] Binary: /usr/sbin/iscsid
  2114. [09:02:48] Binary: /usr/sbin/iscsistart
  2115. [09:02:48] Binary: /usr/sbin/ldattach
  2116. [09:02:48] Binary: /usr/sbin/locale-gen
  2117. [09:02:48] Binary: /usr/sbin/logrotate
  2118. [09:02:48] Binary: /usr/sbin/luksformat
  2119. [09:02:48] Binary: /usr/sbin/lynis
  2120. [09:02:48] Binary: /usr/sbin/make-bcache
  2121. [09:02:48] Binary: /usr/sbin/mkinitramfs
  2122. [09:02:48] Binary: /usr/sbin/mklost+found
  2123. [09:02:48] Binary: /usr/sbin/newusers
  2124. [09:02:48] Binary: /usr/sbin/nfnl_osf
  2125. [09:02:48] Binary: /usr/sbin/nologin
  2126. [09:02:48] Binary: /usr/sbin/overlayroot-chroot
  2127. [09:02:48] Binary: /usr/sbin/ownership
  2128. [09:02:48] Binary: /usr/sbin/pam-auth-update
  2129. [09:02:48] Binary: /usr/sbin/pam_getenv
  2130. [09:02:48] Binary: /usr/sbin/pam_timestamp_check
  2131. [09:02:48] Binary: /usr/sbin/popcon-largest-unused
  2132. [09:02:48] Binary: /usr/sbin/popularity-contest
  2133. [09:02:48] Binary: /usr/sbin/pwck
  2134. [09:02:48] Binary: /usr/sbin/pwconv
  2135. [09:02:48] Binary: /usr/sbin/pwunconv
  2136. [09:02:48] Binary: /usr/sbin/readprofile
  2137. [09:02:48] Binary: /usr/sbin/remove-shell
  2138. [09:02:48] Binary: /usr/sbin/rmt
  2139. [09:02:48] Binary: /usr/sbin/rmt-tar
  2140. [09:02:48] Binary: /usr/sbin/rsyslogd
  2141. [09:02:48] Binary: /usr/sbin/rtcwake
  2142. [09:02:48] Binary: /usr/sbin/safe_finger
  2143. [09:02:48] Binary: /usr/sbin/service
  2144. [09:02:48] Binary: /usr/sbin/setvesablank
  2145. [09:02:48] Binary: /usr/sbin/sshd
  2146. [09:02:48] Binary: /usr/sbin/su-to-root
  2147. [09:02:48] Binary: /usr/sbin/tarcat
  2148. [09:02:48] Binary: /usr/sbin/tcpd
  2149. [09:02:48] Binary: /usr/sbin/tcpdchk
  2150. [09:02:48] Binary: /usr/sbin/tcpdmatch
  2151. [09:02:48] Binary: /usr/sbin/tcpdump
  2152. [09:02:48] Binary: /usr/sbin/try-from
  2153. [09:02:48] Binary: /usr/sbin/tunelp
  2154. [09:02:48] Binary: /usr/sbin/tzconfig
  2155. [09:02:48] Binary: /usr/sbin/ufw
  2156. [09:02:48] Binary: /usr/sbin/update-alternatives
  2157. [09:02:48] Binary: /usr/sbin/update-ca-certificates
  2158. [09:02:48] Binary: /usr/sbin/update-catalog
  2159. [09:02:48] Binary: /usr/sbin/update-grub
  2160. [09:02:48] Binary: /usr/sbin/update-grub-legacy-ec2
  2161. [09:02:48] Binary: /usr/sbin/update-grub2
  2162. [09:02:48] Binary: /usr/sbin/update-info-dir
  2163. [09:02:48] Binary: /usr/sbin/update-initramfs
  2164. [09:02:48] Binary: /usr/sbin/update-locale
  2165. [09:02:48] Binary: /usr/sbin/update-mime
  2166. [09:02:48] Binary: /usr/sbin/update-passwd
  2167. [09:02:48] Binary: /usr/sbin/update-pciids
  2168. [09:02:48] Binary: /usr/sbin/update-rc.d
  2169. [09:02:48] Binary: /usr/sbin/update-secureboot-policy
  2170. [09:02:48] Binary: /usr/sbin/update-usbids
  2171. [09:02:48] Binary: /usr/sbin/update-xmlcatalog
  2172. [09:02:48] Binary: /usr/sbin/useradd
  2173. [09:02:48] Binary: /usr/sbin/userdel
  2174. [09:02:48] Binary: /usr/sbin/usermod
  2175. [09:02:48] Binary: /usr/sbin/uuidd
  2176. [09:02:48] Binary: /usr/sbin/validlocale
  2177. [09:02:48] Binary: /usr/sbin/vcstime
  2178. [09:02:48] Binary: /usr/sbin/vigr
  2179. [09:02:48] Binary: /usr/sbin/vipw
  2180. [09:02:48] Binary: /usr/sbin/visudo
  2181. [09:02:48] Binary: /usr/sbin/vpddecode
  2182. [09:02:48] Binary: /usr/sbin/xfs_admin
  2183. [09:02:48] Binary: /usr/sbin/xfs_bmap
  2184. [09:02:48] Binary: /usr/sbin/xfs_copy
  2185. [09:02:48] Binary: /usr/sbin/xfs_db
  2186. [09:02:48] Binary: /usr/sbin/xfs_estimate
  2187. [09:02:48] Binary: /usr/sbin/xfs_freeze
  2188. [09:02:48] Binary: /usr/sbin/xfs_fsr
  2189. [09:02:48] Binary: /usr/sbin/xfs_growfs
  2190. [09:02:48] Binary: /usr/sbin/xfs_info
  2191. [09:02:48] Binary: /usr/sbin/xfs_io
  2192. [09:02:48] Binary: /usr/sbin/xfs_logprint
  2193. [09:02:48] Binary: /usr/sbin/xfs_mdrestore
  2194. [09:02:48] Binary: /usr/sbin/xfs_metadump
  2195. [09:02:48] Binary: /usr/sbin/xfs_mkfile
  2196. [09:02:48] Binary: /usr/sbin/xfs_ncheck
  2197. [09:02:48] Binary: /usr/sbin/xfs_quota
  2198. [09:02:48] Binary: /usr/sbin/xfs_rtcp
  2199. [09:02:48] Binary: /usr/sbin/zerofree
  2200. [09:02:48] Binary: /usr/sbin/zic
  2201. [09:02:48] ===---------------------------------------------------------------===
  2202. [09:02:48] Test: Checking binaries in directory /usr/local/bin
  2203. [09:02:48] Directory /usr/local/bin exists. Starting directory scanning...
  2204. [09:02:48] ===---------------------------------------------------------------===
  2205. [09:02:48] Test: Checking binaries in directory /usr/local/sbin
  2206. [09:02:48] Directory /usr/local/sbin exists. Starting directory scanning...
  2207. [09:02:48] ===---------------------------------------------------------------===
  2208. [09:02:48] Discovered directories: /bin, /sbin, /usr/bin, /usr/sbin, /usr/local/bin, /usr/local/sbin
  2209. [09:02:48] CUST-0001 Result: found 1226 binaries
  2210. [09:02:48] Status: Starting Authentication checks...
  2211. [09:02:48] Status: Checking if libpam-tmpdir is installed and enabled...
  2212. [09:02:48] ===---------------------------------------------------------------===
  2213. [09:02:48] Performing test ID CUST-0280 (Checking if libpam-tmpdir is installed and enabled.)
  2214. [09:02:49] - libpam-tmpdir is not installed.
  2215. [09:02:49] Hardening: assigned 0 hardening points (max for this item: 2), current: 0, total: 2
  2216. [09:02:49] Suggestion: Install libpam-tmpdir to set $TMP and $TMPDIR for PAM sessions [CUST-0280]
  2217. [09:02:49] Status: Checking if libpam-usb is installed and enabled...
  2218. [09:02:49] ===---------------------------------------------------------------===
  2219. [09:02:49] Performing test ID CUST-0285 (Checking if libpam-usb is installed and enabled.)
  2220. [09:02:49] - libpam-usb is not installed.
  2221. [09:02:49] Hardening: assigned 0 hardening points (max for this item: 10), current: 0, total: 12
  2222. [09:02:49] Suggestion: Install libpam-usb to enable multi-factor authentication for PAM sessions [CUST-0285]
  2223. [09:02:49] Status: Starting file system checks...
  2224. [09:02:49] Status: Starting file system checks for dm-crypt, cryptsetup & cryptmount...
  2225. [09:02:49] ===---------------------------------------------------------------===
  2226. [09:02:49] Performing test ID CUST-0510 (Checking if LVM volume groups or file systems are stored on encrypted partitions)
  2227. [09:02:49] Test: Checking file system mount points
  2228. [09:02:49] Result: found one or more file system mount points
  2229. [09:02:49] Testing file system mount point: /dev/vda1
  2230. [09:02:49] Hardening: assigned 0 hardening points (max for this item: 1), current: 0, total: 13
  2231. [09:02:49] Testing file system mount point: /dev/vda15
  2232. [09:02:49] Hardening: assigned 0 hardening points (max for this item: 1), current: 0, total: 14
  2233. [09:02:49] ===---------------------------------------------------------------===
  2234. [09:02:49] Skipped test CUST-0520 (Checking for Ecryptfs)
  2235. [09:02:49] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  2236. [09:02:49] Suggestion: Install 'ecryptfs-utils' and configure for each user. [CUST-0520]
  2237. [09:02:49] Hardening: assigned 0 hardening points (max for this item: 2), current: 0, total: 16
  2238. [09:02:49] Status: Starting Software checks...
  2239. [09:02:49] ===---------------------------------------------------------------===
  2240. [09:02:49] Performing test ID CUST-0810 (Checking for apt-listbugs)
  2241. [09:02:49] - apt-listbugs is not installed.
  2242. [09:02:49] Hardening: assigned 0 hardening points (max for this item: 2), current: 0, total: 18
  2243. [09:02:49] Suggestion: Install apt-listbugs to display a list of critical bugs prior to each APT installation. [CUST-0810]
  2244. [09:02:49] ===---------------------------------------------------------------===
  2245. [09:02:49] Performing test ID CUST-0811 (Checking for apt-listchanges)
  2246. [09:02:49] - apt-listchanges is not installed.
  2247. [09:02:49] Hardening: assigned 0 hardening points (max for this item: 2), current: 0, total: 20
  2248. [09:02:49] Suggestion: Install apt-listchanges to display any significant changes prior to any upgrade via APT. [CUST-0811]
  2249. [09:02:49] ===---------------------------------------------------------------===
  2250. [09:02:49] Performing test ID CUST-0830 (Verifying that checkrestart is installed.)
  2251. [09:02:49] - checkrestart is not installed.
  2252. [09:02:49] Suggestion: Install debian-goodies so that you can run checkrestart after upgrades to determine which services are using old versions of libraries and need restarting. [CUST-0830]
  2253. [09:02:49] Hardening: assigned 0 hardening points (max for this item: 1), current: 0, total: 21
  2254. [09:02:49] ===---------------------------------------------------------------===
  2255. [09:02:49] Performing test ID CUST-0870 (Checking for debsecan)
  2256. [09:02:49] - debsecan is not installed.
  2257. [09:02:49] Hardening: assigned 0 hardening points (max for this item: 2), current: 0, total: 23
  2258. [09:02:49] Suggestion: Install debsecan to generate lists of vulnerabilities which affect this installation. [CUST-0870]
  2259. [09:02:49] ===---------------------------------------------------------------===
  2260. [09:02:49] Performing test ID CUST-0875 (Checking for debsums)
  2261. [09:02:49] - debsums is not installed.
  2262. [09:02:49] Hardening: assigned 0 hardening points (max for this item: 2), current: 0, total: 25
  2263. [09:02:49] Suggestion: Install debsums for the verification of installed package files against MD5 checksums. [CUST-0875]
  2264. [09:02:49] ===---------------------------------------------------------------===
  2265. [09:02:49] Performing test ID DEB-0880 (Checking for fail2ban)
  2266. [09:02:49] - fail2ban is not installed.
  2267. [09:02:49] Hardening: assigned 0 hardening points (max for this item: 2), current: 0, total: 27
  2268. [09:02:49] Suggestion: Install fail2ban to automatically ban hosts that commit multiple authentication errors. [DEB-0880]
  2269. [09:02:49] ===---------------------------------------------------------------===
  2270. [09:02:54] ===---------------------------------------------------------------===
  2271. [09:02:54] Result: debian plugin (phase 1) finished
  2272. [09:02:54] --
  2273. [09:02:54] Result: Found 1 plugins of which 1 are enabled
  2274. [09:02:54] Result: Plugins finished
  2275. [09:02:54] ===---------------------------------------------------------------===
  2276. [09:02:54] Result: Found HostID: a793589d06f0ea19d0fe206ba16290ef4f5dab2f
  2277. [09:02:54] Info: found valid HostID a793589d06f0ea19d0fe206ba16290ef4f5dab2f
  2278. [09:02:54] Info: no machine ID found
  2279. [09:02:54] ===---------------------------------------------------------------===
  2280. [09:02:54] Info: perform tests from all categories
  2281. [09:02:54] ===---------------------------------------------------------------===
  2282. [09:02:54] Action: Performing tests from category: Boot and services
  2283. [09:02:54] ===---------------------------------------------------------------===
  2284. [09:02:54] Skipped test BOOT-5102 (Check for AIX boot device)
  2285. [09:02:54] Reason to skip: Incorrect guest OS (AIX only)
  2286. [09:02:54] ===---------------------------------------------------------------===
  2287. [09:02:54] Performing test ID BOOT-5104 (Determine service manager)
  2288. [09:02:54] ===---------------------------------------------------------------===
  2289. [09:02:54] Performing test ID BOOT-5121 (Check for GRUB boot loader presence)
  2290. [09:02:54] Test: Checking for presence GRUB conf file (/boot/grub/grub.conf or /boot/grub/menu.lst)
  2291. [09:02:54] Result: found GRUB2 configuration file (/boot/grub/grub.cfg)
  2292. [09:02:54] ===---------------------------------------------------------------===
  2293. [09:02:54] Performing test ID BOOT-5122 (Check for GRUB boot password)
  2294. [09:02:54] Found file /boot/grub/grub.cfg, proceeding with tests.
  2295. [09:02:54] Test: testing if we can access /boot/grub/grub.cfg
  2296. [09:02:54] Result: file is owned by our current user ID (0), checking if it is readable
  2297. [09:02:54] Result: file /boot/grub/grub.cfg is readable (or directory accessible).
  2298. [09:02:54] Result: Didn't find hashed password line in GRUB boot file!
  2299. [09:02:54] Suggestion: Set a password on GRUB bootloader to prevent altering boot configuration (e.g. boot in single user mode without password) [BOOT-5122]
  2300. [09:02:54] Hardening: assigned 0 hardening points (max for this item: 2), current: 0, total: 29
  2301. [09:02:54] ===---------------------------------------------------------------===
  2302. [09:02:54] Skipped test BOOT-5124 (Check for FreeBSD boot loader presence)
  2303. [09:02:54] Reason to skip: Incorrect guest OS (FreeBSD only)
  2304. [09:02:54] ===---------------------------------------------------------------===
  2305. [09:02:54] Skipped test BOOT-5126 (Check for NetBSD boot loader presence)
  2306. [09:02:54] Reason to skip: Incorrect guest OS (NetBSD only)
  2307. [09:02:54] ===---------------------------------------------------------------===
  2308. [09:02:54] Performing test ID BOOT-5139 (Check for LILO boot loader presence)
  2309. [09:02:54] Test: checking for presence LILO configuration file
  2310. [09:02:54] Result: LILO configuration file not found
  2311. [09:02:54] ===---------------------------------------------------------------===
  2312. [09:02:54] Performing test ID BOOT-5142 (Check SPARC Improved boot loader (SILO))
  2313. [09:02:54] Result: no SILO configuration file found.
  2314. [09:02:54] ===---------------------------------------------------------------===
  2315. [09:02:54] Performing test ID BOOT-5155 (Check for YABOOT boot loader configuration file)
  2316. [09:02:54] Test: Check for /etc/yaboot.conf
  2317. [09:02:54] Result: no YABOOT configuration file found.
  2318. [09:02:54] ===---------------------------------------------------------------===
  2319. [09:02:54] Skipped test BOOT-5159 (Check for OpenBSD boot loader presence)
  2320. [09:02:54] Reason to skip: Incorrect guest OS (OpenBSD only)
  2321. [09:02:54] ===---------------------------------------------------------------===
  2322. [09:02:54] Skipped test BOOT-5165 (Check for FreeBSD boot services)
  2323. [09:02:54] Reason to skip: Incorrect guest OS (FreeBSD only)
  2324. [09:02:54] ===---------------------------------------------------------------===
  2325. [09:02:54] Performing test ID BOOT-5177 (Check for Linux boot and running services)
  2326. [09:02:54] Test: checking presence systemctl binary
  2327. [09:02:54] Result: systemctl binary found, trying that to discover information
  2328. [09:02:54] Searching for running services (systemctl services only)
  2329. [09:02:54] Found running service: accounts-daemon
  2330. [09:02:54] Found running service: acpid
  2331. [09:02:54] Found running service: atd
  2332. [09:02:54] Found running service: cron
  2333. [09:02:54] Found running service: dbus
  2334. [09:02:54] Found running service: do-agent
  2335. [09:02:54] Found running service: getty@tty1
  2336. [09:02:54] Found running service: gitlab-runner
  2337. [09:02:54] Found running service: iscsid
  2338. [09:02:54] Found running service: lvm2-lvmetad
  2339. [09:02:54] Found running service: lxcfs
  2340. [09:02:54] Found running service: mdadm
  2341. [09:02:54] Found running service: polkitd
  2342. [09:02:54] Found running service: rsyslog
  2343. [09:02:54] Found running service: serial-getty@ttyS0
  2344. [09:02:54] Found running service: snapd
  2345. [09:02:54] Found running service: ssh
  2346. [09:02:54] Found running service: systemd-journald
  2347. [09:02:54] Found running service: systemd-logind
  2348. [09:02:54] Found running service: systemd-timesyncd
  2349. [09:02:54] Found running service: systemd-udevd
  2350. [09:02:54] Found running service: user@0
  2351. [09:02:54] Found running service: user@999
  2352. [09:02:54] Note: Run systemctl --full --type=service to see all services
  2353. [09:02:54] Result: Found 23 enabled services
  2354. [09:02:54] Searching for enabled services (systemctl services only)
  2355. [09:02:54] Found enabled service at boot: accounts-daemon
  2356. [09:02:54] Found enabled service at boot: atd
  2357. [09:02:54] Found enabled service at boot: autovt@
  2358. [09:02:54] Found enabled service at boot: cloud-config
  2359. [09:02:54] Found enabled service at boot: cloud-final
  2360. [09:02:54] Found enabled service at boot: cloud-init-local
  2361. [09:02:54] Found enabled service at boot: cloud-init
  2362. [09:02:54] Found enabled service at boot: cron
  2363. [09:02:54] Found enabled service at boot: do-agent
  2364. [09:02:54] Found enabled service at boot: friendly-recovery
  2365. [09:02:54] Found enabled service at boot: getty@
  2366. [09:02:54] Found enabled service at boot: gitlab-runner
  2367. [09:02:54] Found enabled service at boot: iscsi
  2368. [09:02:54] Found enabled service at boot: iscsid
  2369. [09:02:54] Found enabled service at boot: lvm2-monitor
  2370. [09:02:54] Found enabled service at boot: lxcfs
  2371. [09:02:54] Found enabled service at boot: lxd-containers
  2372. [09:02:54] Found enabled service at boot: networking
  2373. [09:02:54] Found enabled service at boot: open-iscsi
  2374. [09:02:54] Found enabled service at boot: open-vm-tools
  2375. [09:02:54] Found enabled service at boot: pollinate
  2376. [09:02:54] Found enabled service at boot: resolvconf
  2377. [09:02:54] Found enabled service at boot: rsyslog
  2378. [09:02:54] Found enabled service at boot: snapd
  2379. [09:02:54] Found enabled service at boot: snapd
  2380. [09:02:54] Found enabled service at boot: snapd
  2381. [09:02:54] Found enabled service at boot: snapd
  2382. [09:02:54] Found enabled service at boot: snapd
  2383. [09:02:54] Found enabled service at boot: ssh
  2384. [09:02:54] Found enabled service at boot: sshd
  2385. [09:02:54] Found enabled service at boot: syslog
  2386. [09:02:54] Found enabled service at boot: systemd-timesyncd
  2387. [09:02:54] Found enabled service at boot: ufw
  2388. [09:02:54] Found enabled service at boot: unattended-upgrades
  2389. [09:02:54] Found enabled service at boot: ureadahead
  2390. [09:02:54] Note: Run systemctl list-unit-files --type=service to see all services
  2391. [09:02:54] Result: Found 35 running services
  2392. [09:02:54] ===---------------------------------------------------------------===
  2393. [09:02:54] Performing test ID BOOT-5180 (Check for Linux boot services (Debian style))
  2394. [09:02:54] Suggestion: Determine runlevel and services at startup [BOOT-5180]
  2395. [09:02:54] ===---------------------------------------------------------------===
  2396. [09:02:54] Performing test ID BOOT-5184 (Check permissions for boot files/scripts)
  2397. [09:02:54] Result: checking /etc/init.d scripts for writable bit
  2398. [09:02:54] Test: checking if directory /etc/init.d exists
  2399. [09:02:54] Result: directory /etc/init.d found
  2400. [09:02:54] Test: checking for available files in directory
  2401. [09:02:54] Result: found files in directory, checking permissions now
  2402. [09:02:54] Test: checking permissions of file /etc/init.d/checkroot-bootclean.sh
  2403. [09:02:54] Result: good, file /etc/init.d/checkroot-bootclean.sh not world writable
  2404. [09:02:54] Test: checking permissions of file /etc/init.d/rsyslog
  2405. [09:02:54] Result: good, file /etc/init.d/rsyslog not world writable
  2406. [09:02:54] Test: checking permissions of file /etc/init.d/halt
  2407. [09:02:54] Result: good, file /etc/init.d/halt not world writable
  2408. [09:02:54] Test: checking permissions of file /etc/init.d/resolvconf
  2409. [09:02:54] Result: good, file /etc/init.d/resolvconf not world writable
  2410. [09:02:54] Test: checking permissions of file /etc/init.d/killprocs
  2411. [09:02:54] Result: good, file /etc/init.d/killprocs not world writable
  2412. [09:02:54] Test: checking permissions of file /etc/init.d/procps
  2413. [09:02:54] Result: good, file /etc/init.d/procps not world writable
  2414. [09:02:54] Test: checking permissions of file /etc/init.d/ufw
  2415. [09:02:54] Result: good, file /etc/init.d/ufw not world writable
  2416. [09:02:54] Test: checking permissions of file /etc/init.d/mdadm
  2417. [09:02:54] Result: good, file /etc/init.d/mdadm not world writable
  2418. [09:02:54] Test: checking permissions of file /etc/init.d/checkroot.sh
  2419. [09:02:54] Result: good, file /etc/init.d/checkroot.sh not world writable
  2420. [09:02:54] Test: checking permissions of file /etc/init.d/uuidd
  2421. [09:02:54] Result: good, file /etc/init.d/uuidd not world writable
  2422. [09:02:54] Test: checking permissions of file /etc/init.d/console-setup
  2423. [09:02:54] Result: good, file /etc/init.d/console-setup not world writable
  2424. [09:02:54] Test: checking permissions of file /etc/init.d/lvm2
  2425. [09:02:54] Result: good, file /etc/init.d/lvm2 not world writable
  2426. [09:02:54] Test: checking permissions of file /etc/init.d/dbus
  2427. [09:02:54] Result: good, file /etc/init.d/dbus not world writable
  2428. [09:02:54] Test: checking permissions of file /etc/init.d/umountnfs.sh
  2429. [09:02:54] Result: good, file /etc/init.d/umountnfs.sh not world writable
  2430. [09:02:54] Test: checking permissions of file /etc/init.d/cryptdisks
  2431. [09:02:54] Result: good, file /etc/init.d/cryptdisks not world writable
  2432. [09:02:54] Test: checking permissions of file /etc/init.d/rc
  2433. [09:02:54] Result: good, file /etc/init.d/rc not world writable
  2434. [09:02:54] Test: checking permissions of file /etc/init.d/rc.local
  2435. [09:02:54] Result: good, file /etc/init.d/rc.local not world writable
  2436. [09:02:54] Test: checking permissions of file /etc/init.d/plymouth-log
  2437. [09:02:54] Result: good, file /etc/init.d/plymouth-log not world writable
  2438. [09:02:54] Test: checking permissions of file /etc/init.d/keyboard-setup.dpkg-bak
  2439. [09:02:54] Result: good, file /etc/init.d/keyboard-setup.dpkg-bak not world writable
  2440. [09:02:54] Test: checking permissions of file /etc/init.d/hostname.sh
  2441. [09:02:54] Result: good, file /etc/init.d/hostname.sh not world writable
  2442. [09:02:54] Test: checking permissions of file /etc/init.d/udev
  2443. [09:02:54] Result: good, file /etc/init.d/udev not world writable
  2444. [09:02:54] Test: checking permissions of file /etc/init.d/rsync
  2445. [09:02:54] Result: good, file /etc/init.d/rsync not world writable
  2446. [09:02:54] Test: checking permissions of file /etc/init.d/ssh
  2447. [09:02:54] Result: good, file /etc/init.d/ssh not world writable
  2448. [09:02:54] Test: checking permissions of file /etc/init.d/networking
  2449. [09:02:54] Result: good, file /etc/init.d/networking not world writable
  2450. [09:02:54] Test: checking permissions of file /etc/init.d/iscsid
  2451. [09:02:54] Result: good, file /etc/init.d/iscsid not world writable
  2452. [09:02:54] Test: checking permissions of file /etc/init.d/mountdevsubfs.sh
  2453. [09:02:54] Result: good, file /etc/init.d/mountdevsubfs.sh not world writable
  2454. [09:02:54] Test: checking permissions of file /etc/init.d/.depend.boot
  2455. [09:02:54] Result: good, file /etc/init.d/.depend.boot not world writable
  2456. [09:02:54] Test: checking permissions of file /etc/init.d/.depend.start
  2457. [09:02:54] Result: good, file /etc/init.d/.depend.start not world writable
  2458. [09:02:54] Test: checking permissions of file /etc/init.d/unattended-upgrades
  2459. [09:02:54] Result: good, file /etc/init.d/unattended-upgrades not world writable
  2460. [09:02:54] Test: checking permissions of file /etc/init.d/acpid
  2461. [09:02:54] Result: good, file /etc/init.d/acpid not world writable
  2462. [09:02:54] Test: checking permissions of file /etc/init.d/checkfs.sh
  2463. [09:02:54] Result: good, file /etc/init.d/checkfs.sh not world writable
  2464. [09:02:54] Test: checking permissions of file /etc/init.d/skeleton
  2465. [09:02:54] Result: good, file /etc/init.d/skeleton not world writable
  2466. [09:02:54] Test: checking permissions of file /etc/init.d/kmod
  2467. [09:02:54] Result: good, file /etc/init.d/kmod not world writable
  2468. [09:02:54] Test: checking permissions of file /etc/init.d/grub-common
  2469. [09:02:54] Result: good, file /etc/init.d/grub-common not world writable
  2470. [09:02:54] Test: checking permissions of file /etc/init.d/mdadm-waitidle
  2471. [09:02:54] Result: good, file /etc/init.d/mdadm-waitidle not world writable
  2472. [09:02:54] Test: checking permissions of file /etc/init.d/irqbalance
  2473. [09:02:54] Result: good, file /etc/init.d/irqbalance not world writable
  2474. [09:02:54] Test: checking permissions of file /etc/init.d/cryptdisks-early
  2475. [09:02:54] Result: good, file /etc/init.d/cryptdisks-early not world writable
  2476. [09:02:54] Test: checking permissions of file /etc/init.d/hwclock.sh
  2477. [09:02:54] Result: good, file /etc/init.d/hwclock.sh not world writable
  2478. [09:02:54] Test: checking permissions of file /etc/init.d/mountall.sh
  2479. [09:02:54] Result: good, file /etc/init.d/mountall.sh not world writable
  2480. [09:02:54] Test: checking permissions of file /etc/init.d/.depend.stop
  2481. [09:02:54] Result: good, file /etc/init.d/.depend.stop not world writable
  2482. [09:02:54] Test: checking permissions of file /etc/init.d/screen-cleanup
  2483. [09:02:54] Result: good, file /etc/init.d/screen-cleanup not world writable
  2484. [09:02:54] Test: checking permissions of file /etc/init.d/apport
  2485. [09:02:54] Result: good, file /etc/init.d/apport not world writable
  2486. [09:02:54] Test: checking permissions of file /etc/init.d/ondemand
  2487. [09:02:55] Result: good, file /etc/init.d/ondemand not world writable
  2488. [09:02:55] Test: checking permissions of file /etc/init.d/apparmor
  2489. [09:02:55] Result: good, file /etc/init.d/apparmor not world writable
  2490. [09:02:55] Test: checking permissions of file /etc/init.d/mountall-bootclean.sh
  2491. [09:02:55] Result: good, file /etc/init.d/mountall-bootclean.sh not world writable
  2492. [09:02:55] Test: checking permissions of file /etc/init.d/rcS
  2493. [09:02:55] Result: good, file /etc/init.d/rcS not world writable
  2494. [09:02:55] Test: checking permissions of file /etc/init.d/reboot
  2495. [09:02:55] Result: good, file /etc/init.d/reboot not world writable
  2496. [09:02:55] Test: checking permissions of file /etc/init.d/cron
  2497. [09:02:55] Result: good, file /etc/init.d/cron not world writable
  2498. [09:02:55] Test: checking permissions of file /etc/init.d/lvm2-lvmetad
  2499. [09:02:55] Result: good, file /etc/init.d/lvm2-lvmetad not world writable
  2500. [09:02:55] Test: checking permissions of file /etc/init.d/single
  2501. [09:02:55] Result: good, file /etc/init.d/single not world writable
  2502. [09:02:55] Test: checking permissions of file /etc/init.d/mountnfs.sh
  2503. [09:02:55] Result: good, file /etc/init.d/mountnfs.sh not world writable
  2504. [09:02:55] Test: checking permissions of file /etc/init.d/umountroot
  2505. [09:02:55] Result: good, file /etc/init.d/umountroot not world writable
  2506. [09:02:55] Test: checking permissions of file /etc/init.d/lxcfs
  2507. [09:02:55] Result: good, file /etc/init.d/lxcfs not world writable
  2508. [09:02:55] Test: checking permissions of file /etc/init.d/lxd
  2509. [09:02:55] Result: good, file /etc/init.d/lxd not world writable
  2510. [09:02:55] Test: checking permissions of file /etc/init.d/umountfs
  2511. [09:02:55] Result: good, file /etc/init.d/umountfs not world writable
  2512. [09:02:55] Test: checking permissions of file /etc/init.d/atd
  2513. [09:02:55] Result: good, file /etc/init.d/atd not world writable
  2514. [09:02:55] Test: checking permissions of file /etc/init.d/sendsigs
  2515. [09:02:55] Result: good, file /etc/init.d/sendsigs not world writable
  2516. [09:02:55] Test: checking permissions of file /etc/init.d/mountnfs-bootclean.sh
  2517. [09:02:55] Result: good, file /etc/init.d/mountnfs-bootclean.sh not world writable
  2518. [09:02:55] Test: checking permissions of file /etc/init.d/mountkernfs.sh
  2519. [09:02:55] Result: good, file /etc/init.d/mountkernfs.sh not world writable
  2520. [09:02:55] Test: checking permissions of file /etc/init.d/bootmisc.sh
  2521. [09:02:55] Result: good, file /etc/init.d/bootmisc.sh not world writable
  2522. [09:02:55] Test: checking permissions of file /etc/init.d/plymouth
  2523. [09:02:55] Result: good, file /etc/init.d/plymouth not world writable
  2524. [09:02:55] Test: checking permissions of file /etc/init.d/open-iscsi
  2525. [09:02:55] Result: good, file /etc/init.d/open-iscsi not world writable
  2526. [09:02:55] Test: checking permissions of file /etc/init.d/README
  2527. [09:02:55] Result: good, file /etc/init.d/README not world writable
  2528. [09:02:55] Test: checking permissions of file /etc/init.d/urandom
  2529. [09:02:55] Result: good, file /etc/init.d/urandom not world writable
  2530. [09:02:55] Test: checking permissions of file /etc/init.d/lvm2-lvmpolld
  2531. [09:02:55] Result: good, file /etc/init.d/lvm2-lvmpolld not world writable
  2532. [09:02:55] Test: checking permissions of file /etc/init.d/open-vm-tools
  2533. [09:02:55] Result: good, file /etc/init.d/open-vm-tools not world writable
  2534. [09:02:55] Test: checking if directory /etc/rc.d exists
  2535. [09:02:55] Result: directory /etc/rc.d not found. Skipping..
  2536. [09:02:55] Test: checking if directory /etc/rcS.d exists
  2537. [09:02:55] Result: directory /etc/rcS.d found
  2538. [09:02:55] Test: checking for available files in directory
  2539. [09:02:55] Result: found files in directory, checking permissions now
  2540. [09:02:55] Test: checking permissions of file /etc/rcS.d/README
  2541. [09:02:55] Result: good, file /etc/rcS.d/README not world writable
  2542. [09:02:55] Test: Checking /etc/rc0.d scripts for writable bit
  2543. [09:02:55] Result: good, file /etc/rc0.d/README not world writable
  2544. [09:02:55] Test: Checking /etc/rc1.d scripts for writable bit
  2545. [09:02:55] Result: good, file /etc/rc1.d/README not world writable
  2546. [09:02:55] Test: Checking /etc/rc2.d scripts for writable bit
  2547. [09:02:55] Result: good, file /etc/rc2.d/README not world writable
  2548. [09:02:55] Test: Checking /etc/rc3.d scripts for writable bit
  2549. [09:02:55] Result: good, file /etc/rc3.d/README not world writable
  2550. [09:02:55] Test: Checking /etc/rc4.d scripts for writable bit
  2551. [09:02:55] Result: good, file /etc/rc4.d/README not world writable
  2552. [09:02:55] Test: Checking /etc/rc5.d scripts for writable bit
  2553. [09:02:55] Result: good, file /etc/rc5.d/README not world writable
  2554. [09:02:55] Test: Checking /etc/rc6.d scripts for writable bit
  2555. [09:02:55] Result: good, file /etc/rc6.d/README not world writable
  2556. [09:02:55] Test: Checking /etc/rc.local file for writable bit
  2557. [09:02:55] Result: good, file /etc/rc.local not world writable
  2558. [09:02:55] Hardening: assigned 3 hardening points (max for this item: 3), current: 3, total: 32
  2559. [09:02:55] ===---------------------------------------------------------------===
  2560. [09:02:55] Performing test ID BOOT-5202 (Check uptime of system)
  2561. [09:02:55] Uptime (in seconds): 6549567
  2562. [09:02:55] Uptime (in days): 75
  2563. [09:02:55] ===---------------------------------------------------------------===
  2564. [09:02:55] Performing test ID BOOT-5260 (Check single user mode for systemd)
  2565. [09:02:55] Test: Searching /usr/lib/systemd/system/rescue.service
  2566. [09:02:55] Result: file /usr/lib/systemd/system/rescue.service does not exist
  2567. [09:02:55] ===---------------------------------------------------------------===
  2568. [09:02:55] Action: Performing tests from category: Kernel
  2569. [09:02:55] ===---------------------------------------------------------------===
  2570. [09:02:55] Performing test ID KRNL-5622 (Determine Linux default run level)
  2571. [09:02:55] Test: Checking for systemd default.target
  2572. [09:02:55] Result: no systemd found, so trying inittab
  2573. [09:02:55] Test: Checking /etc/inittab
  2574. [09:02:55] Result: file /etc/inittab not found
  2575. [09:02:55] Test: Checking run level with who -r, for Debian based systems
  2576. [09:02:55] Result: Found default run level '5'
  2577. [09:02:55] ===---------------------------------------------------------------===
  2578. [09:02:55] Performing test ID KRNL-5677 (Check CPU options and support)
  2579. [09:02:55] Test: Checking /proc/cpuinfo
  2580. [09:02:55] Result: found /proc/cpuinfo
  2581. [09:02:55] Test: Checking CPU options (XD/NX/PAE)
  2582. [09:02:55] PAE: Yes
  2583. [09:02:55] NX: Yes
  2584. [09:02:55] Result: PAE or No eXecute option(s) both found
  2585. [09:02:55] ===---------------------------------------------------------------===
  2586. [09:02:55] Performing test ID KRNL-5695 (Determine Linux kernel version and release number)
  2587. [09:02:55] Result: found kernel release 4.4.0-130-generic
  2588. [09:02:55] Result: found kernel version #156-Ubuntu SMP Thu Jun 14 08:53:28 UTC 2018
  2589. [09:02:55] ===---------------------------------------------------------------===
  2590. [09:02:55] Performing test ID KRNL-5723 (Determining if Linux kernel is monolithic)
  2591. [09:02:55] Test: checking if kernel is monolithic or modular
  2592. [09:02:55] Result: Found modular kernel
  2593. [09:02:55] ===---------------------------------------------------------------===
  2594. [09:02:55] Performing test ID KRNL-5726 (Checking Linux loaded kernel modules)
  2595. [09:02:55] Loaded modules according lsmod:
  2596. [09:02:55] Loaded module: ablk_helper
  2597. [09:02:55] Loaded module: aes_x86_64
  2598. [09:02:55] Loaded module: aesni_intel
  2599. [09:02:55] Loaded module: async_memcpy
  2600. [09:02:55] Loaded module: async_pq
  2601. [09:02:55] Loaded module: async_raid6_recov
  2602. [09:02:55] Loaded module: async_tx
  2603. [09:02:55] Loaded module: async_xor
  2604. [09:02:55] Loaded module: autofs4
  2605. [09:02:55] Loaded module: btrfs
  2606. [09:02:55] Loaded module: crc32_pclmul
  2607. [09:02:55] Loaded module: crct10dif_pclmul
  2608. [09:02:55] Loaded module: cryptd
  2609. [09:02:55] Loaded module: floppy
  2610. [09:02:55] Loaded module: gf128mul
  2611. [09:02:55] Loaded module: ghash_clmulni_intel
  2612. [09:02:55] Loaded module: glue_helper
  2613. [09:02:55] Loaded module: ib_addr
  2614. [09:02:55] Loaded module: ib_cm
  2615. [09:02:55] Loaded module: ib_core
  2616. [09:02:55] Loaded module: ib_iser
  2617. [09:02:55] Loaded module: ib_mad
  2618. [09:02:55] Loaded module: ib_sa
  2619. [09:02:55] Loaded module: input_leds
  2620. [09:02:55] Loaded module: irqbypass
  2621. [09:02:55] Loaded module: iscsi_tcp
  2622. [09:02:55] Loaded module: iw_cm
  2623. [09:02:55] Loaded module: joydev
  2624. [09:02:55] Loaded module: kvm
  2625. [09:02:55] Loaded module: kvm_intel
  2626. [09:02:55] Loaded module: libcrc32c
  2627. [09:02:55] Loaded module: libiscsi
  2628. [09:02:55] Loaded module: libiscsi_tcp
  2629. [09:02:55] Loaded module: linear
  2630. [09:02:55] Loaded module: lrw
  2631. [09:02:55] Loaded module: msdos
  2632. [09:02:55] Loaded module: multipath
  2633. [09:02:55] Loaded module: psmouse
  2634. [09:02:55] Loaded module: raid0
  2635. [09:02:55] Loaded module: raid1
  2636. [09:02:55] Loaded module: raid10
  2637. [09:02:55] Loaded module: raid456
  2638. [09:02:55] Loaded module: raid6_pq
  2639. [09:02:55] Loaded module: rdma_cm
  2640. [09:02:55] Loaded module: scsi_transport_iscsi
  2641. [09:02:55] Loaded module: serio_raw
  2642. [09:02:55] Loaded module: ufs
  2643. [09:02:55] Loaded module: virtio_scsi
  2644. [09:02:55] Loaded module: xfs
  2645. [09:02:55] Loaded module: xor
  2646. [09:02:55] ===---------------------------------------------------------------===
  2647. [09:02:55] Performing test ID KRNL-5728 (Checking Linux kernel config)
  2648. [09:02:55] Result: found config (/boot/config-4.4.0-130-generic)
  2649. [09:02:55] ===---------------------------------------------------------------===
  2650. [09:02:55] Performing test ID KRNL-5730 (Checking disk I/O kernel scheduler)
  2651. [09:02:55] Test: Checking the default I/O kernel scheduler
  2652. [09:02:55] Result: found IO scheduler 'deadline'
  2653. [09:02:55] ===---------------------------------------------------------------===
  2654. [09:02:55] Skipped test KRNL-5745 (Checking FreeBSD loaded kernel modules)
  2655. [09:02:55] Reason to skip: Incorrect guest OS (FreeBSD only)
  2656. [09:02:55] ===---------------------------------------------------------------===
  2657. [09:02:55] Skipped test KRNL-5770 (Checking active kernel modules)
  2658. [09:02:55] Reason to skip: Incorrect guest OS (Solaris only)
  2659. [09:02:55] ===---------------------------------------------------------------===
  2660. [09:02:55] Performing test ID KRNL-5788 (Checking availability new Linux kernel)
  2661. [09:02:55] Test: Searching apt-cache, to determine if a newer kernel is available
  2662. [09:02:55] Result: found /usr/bin/apt-cache
  2663. [09:02:55] Test: checking readlink location of /vmlinuz
  2664. [09:02:55] Output: readlink reported file /boot/vmlinuz-4.4.0-137-generic
  2665. [09:02:55] Test: checking package from dpkg -S
  2666. [09:02:55] Output: dpkg -S reported package linux-image-4.4.0-137-generic
  2667. [09:02:55] Test: Using apt-cache policy to determine if there is an update available
  2668. [09:02:55] Kernel installed: 4.4.0-137.163
  2669. [09:02:55] Kernel candidate: 4.4.0-137.163
  2670. [09:02:55] Result: no kernel update available
  2671. [09:02:55] ===---------------------------------------------------------------===
  2672. [09:02:55] Performing test ID KRNL-5820 (Checking core dumps configuration)
  2673. [09:02:55] Test: Checking presence /etc/security/limits.conf
  2674. [09:02:55] Result: file /etc/security/limits.conf exists
  2675. [09:02:55] Test: Checking if core dumps are disabled in /etc/security/limits.conf
  2676. [09:02:55] Result: core dumps (soft and hard) are both disabled
  2677. [09:02:55] Hardening: assigned 3 hardening points (max for this item: 3), current: 6, total: 35
  2678. [09:02:55] Test: Checking sysctl value of fs.suid_dumpable
  2679. [09:02:55] Result: sysctl key fs.suid_dumpable not found
  2680. [09:02:55] Result: programs can dump core dump, but only readable by root (value 2, for debugging with file protection)
  2681. [09:02:55] Hardening: assigned 1 hardening points (max for this item: 1), current: 7, total: 36
  2682. [09:02:55] ===---------------------------------------------------------------===
  2683. [09:02:55] Performing test ID KRNL-5830 (Checking if system is running on the latest kernel)
  2684. [09:02:55] Test: Checking presence /var/run/reboot-required.pkgs
  2685. [09:02:55] Result: file /var/run/reboot-required.pkgs exists
  2686. [09:02:55] Result: reboot is needed, related to 6 packages
  2687. [09:02:55] Package: linux-image-4.4.0-133-generic
  2688. [09:02:55] Package: linux-base
  2689. [09:02:55] Package: linux-image-4.4.0-134-generic
  2690. [09:02:55] Package: linux-base
  2691. [09:02:55] Package: linux-image-4.4.0-137-generic
  2692. [09:02:55] Package: linux-base
  2693. [09:02:55] Result: /boot exists, performing more tests from here
  2694. [09:02:55] Result: /boot/vmlinuz not on disk, trying to find /boot/vmlinuz*
  2695. [09:02:55] Result: using 4.4.0.130 as my kernel version (stripped)
  2696. [09:02:55] Result: Found 4.4.0.103
  2697. [09:02:55] Result: Found 4.4.0.104
  2698. [09:02:55] Result: Found 4.4.0.108
  2699. [09:02:55] Result: Found 4.4.0.109
  2700. [09:02:55] Result: Found 4.4.0.112
  2701. [09:02:55] Result: Found 4.4.0.116
  2702. [09:02:55] Result: Found 4.4.0.119
  2703. [09:02:55] Result: Found 4.4.0.121
  2704. [09:02:55] Result: Found 4.4.0.124
  2705. [09:02:55] Result: Found 4.4.0.127
  2706. [09:02:55] Result: Found 4.4.0.128
  2707. [09:02:55] Result: Found 4.4.0.130 (= our kernel)
  2708. [09:02:55] Result: found a kernel (4.4.0.133) later than running one (4.4.0.130)
  2709. [09:02:55] Result: Found 4.4.0.133
  2710. [09:02:55] Result: found a kernel (4.4.0.134) later than running one (4.4.0.130)
  2711. [09:02:55] Result: Found 4.4.0.134
  2712. [09:02:55] Result: found a kernel (4.4.0.137) later than running one (4.4.0.130)
  2713. [09:02:55] Result: Found 4.4.0.137
  2714. [09:02:55] Warning: Reboot of system is most likely needed [KRNL-5830]
  2715. [09:02:55] Hardening: assigned 0 hardening points (max for this item: 5), current: 7, total: 41
  2716. [09:02:56] ===---------------------------------------------------------------===
  2717. [09:02:56] Action: Performing tests from category: Memory and processes
  2718. [09:02:56] ===---------------------------------------------------------------===
  2719. [09:02:56] Performing test ID PROC-3602 (Checking /proc/meminfo for memory details)
  2720. [09:02:56] Result: found /proc/meminfo
  2721. [09:02:56] Result: Found 3080404 kB memory
  2722. [09:02:56] ===---------------------------------------------------------------===
  2723. [09:02:56] Skipped test PROC-3604 (Query prtconf for memory details)
  2724. [09:02:56] Reason to skip: Incorrect guest OS (Solaris only)
  2725. [09:02:56] ===---------------------------------------------------------------===
  2726. [09:02:56] Performing test ID PROC-3612 (Check dead or zombie processes)
  2727. [09:02:56] Result: no zombie processes found
  2728. [09:02:56] ===---------------------------------------------------------------===
  2729. [09:02:56] Performing test ID PROC-3614 (Check heavy IO waiting based processes)
  2730. [09:02:56] Result: No processes were waiting for IO requests to be handled first
  2731. [09:02:58] ===---------------------------------------------------------------===
  2732. [09:02:58] Action: Performing tests from category: Users, Groups and Authentication
  2733. [09:02:58] ===---------------------------------------------------------------===
  2734. [09:02:58] Performing test ID AUTH-9204 (Check users with an UID of zero)
  2735. [09:02:58] Test: Searching accounts with UID 0
  2736. [09:02:58] Result: No accounts found with UID 0 other than root.
  2737. [09:02:58] ===---------------------------------------------------------------===
  2738. [09:02:58] Performing test ID AUTH-9208 (Check non-unique accounts in passwd file)
  2739. [09:02:58] Test: Checking for non-unique accounts
  2740. [09:02:58] Result: all accounts found in /etc/passwd are unique
  2741. [09:02:58] Remarks: Non unique UIDs can riskful for the system or part of a configuration mistake
  2742. [09:02:58] ===---------------------------------------------------------------===
  2743. [09:02:58] Skipped test AUTH-9212 (Test group file)
  2744. [09:02:58] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  2745. [09:02:58] ===---------------------------------------------------------------===
  2746. [09:02:58] Performing test ID AUTH-9216 (Check group and shadow group files)
  2747. [09:02:58] Test: Checking for grpck binary
  2748. [09:02:58] Result: grpck binary didn't find any errors in the group files
  2749. [09:02:58] ===---------------------------------------------------------------===
  2750. [09:02:58] Skipped test AUTH-9218 (Check harmful login shells)
  2751. [09:02:58] Reason to skip: Incorrect guest OS (FreeBSD only)
  2752. [09:02:58] ===---------------------------------------------------------------===
  2753. [09:02:58] Performing test ID AUTH-9222 (Check for non unique groups)
  2754. [09:02:58] Test: Checking for non unique group ID's in /etc/group
  2755. [09:02:58] Result: All group ID's are unique
  2756. [09:02:58] ===---------------------------------------------------------------===
  2757. [09:02:58] Performing test ID AUTH-9226 (Check non unique group names)
  2758. [09:02:58] Test: Checking for non unique group names in /etc/group
  2759. [09:02:58] Result: All group names are unique
  2760. [09:02:58] ===---------------------------------------------------------------===
  2761. [09:02:58] Performing test ID AUTH-9228 (Check password file consistency)
  2762. [09:02:58] Test: Checking password file consistency (pwck)
  2763. [09:02:58] Result: pwck check didn't find any problems
  2764. [09:02:58] ===---------------------------------------------------------------===
  2765. [09:02:58] Skipped test AUTH-9230 (Check password file consistency)
  2766. [09:02:58] Reason to skip: Incorrect guest OS (Solaris only)
  2767. [09:02:58] ===---------------------------------------------------------------===
  2768. [09:02:58] Performing test ID AUTH-9234 (Query user accounts)
  2769. [09:02:58] Test: Read system users (including root user) from /etc/passwd
  2770. [09:02:58] Linux real users output (ID = 0, or 500+, but not 65534):
  2771. [09:02:58] Real user: root,0
  2772. [09:02:58] ===---------------------------------------------------------------===
  2773. [09:02:58] Performing test ID AUTH-9240 (Query NIS+ authentication support)
  2774. [09:02:58] Result: NIS+ authentication not enabled
  2775. [09:02:58] ===---------------------------------------------------------------===
  2776. [09:02:58] Performing test ID AUTH-9242 (Query NIS authentication support)
  2777. [09:02:58] Result: NIS authentication not enabled
  2778. [09:02:58] ===---------------------------------------------------------------===
  2779. [09:02:58] Performing test ID AUTH-9250 (Checking sudoers file)
  2780. [09:02:58] Test: checking presence /etc/sudoers
  2781. [09:02:58] Result: found file (/etc/sudoers)
  2782. [09:02:58] Test: checking presence /usr/local/etc/sudoers
  2783. [09:02:58] Result: file /usr/local/etc/sudoers not found
  2784. [09:02:58] Test: checking presence /usr/pkg/etc/sudoers
  2785. [09:02:58] Result: file /usr/pkg/etc/sudoers not found
  2786. [09:02:58] Result: sudoers file found (/etc/sudoers)
  2787. [09:02:58] ===---------------------------------------------------------------===
  2788. [09:02:58] Performing test ID AUTH-9252 (Check sudoers file)
  2789. [09:02:58] Test: checking sudoers file (/etc/sudoers) permissions
  2790. [09:02:58] Result: Found file permissions: r--r-----
  2791. [09:02:58] Result: file /etc/sudoers has correct permissions
  2792. [09:02:58] ===---------------------------------------------------------------===
  2793. [09:02:58] Skipped test AUTH-9254 (Solaris passwordless accounts)
  2794. [09:02:58] Reason to skip: Incorrect guest OS (Solaris only)
  2795. [09:02:58] ===---------------------------------------------------------------===
  2796. [09:02:58] Performing test ID AUTH-9262 (Checking presence password strength testing tools (PAM))
  2797. [09:02:58] Searching cracklib PAM module
  2798. [09:02:58] Result: pam_cracklib.so NOT found (crack library PAM)
  2799. [09:02:58] Hardening: assigned 1 hardening points (max for this item: 3), current: 8, total: 44
  2800. [09:02:58] Searching passwdqc PAM module
  2801. [09:02:58] Result: pam_passwdqc.so NOT found (passwd quality control PAM)
  2802. [09:02:58] Hardening: assigned 1 hardening points (max for this item: 3), current: 9, total: 47
  2803. [09:02:58] Result: no PAM modules for password strength testing found
  2804. [09:02:58] Suggestion: Install a PAM module for password strength testing like pam_cracklib or pam_passwdqc [AUTH-9262]
  2805. [09:02:58] ===---------------------------------------------------------------===
  2806. [09:02:58] Performing test ID AUTH-9264 (Checking presence pam.conf)
  2807. [09:02:58] Test: Checking file /etc/pam.conf
  2808. [09:02:58] Result: file /etc/pam.conf exists
  2809. [09:02:58] Test: searching PAM configuration files
  2810. [09:02:58] Result: File has no configuration options defined (empty, or only filled with comments and empty lines)
  2811. [09:02:58] ===---------------------------------------------------------------===
  2812. [09:02:58] Performing test ID AUTH-9266 (Checking presence pam.d files)
  2813. [09:02:58] Test: Checking directory /etc/pam.d
  2814. [09:02:58] Result: directory /etc/pam.d exists
  2815. [09:02:58] Test: searching PAM configuration files
  2816. [09:02:58] Found file: /etc/pam.d/atd
  2817. [09:02:58] Found file: /etc/pam.d/chfn
  2818. [09:02:58] Found file: /etc/pam.d/chpasswd
  2819. [09:02:58] Found file: /etc/pam.d/chsh
  2820. [09:02:58] Found file: /etc/pam.d/common-account
  2821. [09:02:58] Found file: /etc/pam.d/common-auth
  2822. [09:02:58] Found file: /etc/pam.d/common-password
  2823. [09:02:58] Found file: /etc/pam.d/common-session
  2824. [09:02:58] Found file: /etc/pam.d/common-session-noninteractive
  2825. [09:02:58] Found file: /etc/pam.d/cron
  2826. [09:02:58] Found file: /etc/pam.d/login
  2827. [09:02:58] Found file: /etc/pam.d/newusers
  2828. [09:02:58] Found file: /etc/pam.d/other
  2829. [09:02:58] Found file: /etc/pam.d/passwd
  2830. [09:02:58] Found file: /etc/pam.d/polkit-1
  2831. [09:02:58] Found file: /etc/pam.d/runuser
  2832. [09:02:58] Found file: /etc/pam.d/runuser-l
  2833. [09:02:58] Found file: /etc/pam.d/sshd
  2834. [09:02:58] Found file: /etc/pam.d/su
  2835. [09:02:58] Found file: /etc/pam.d/sudo
  2836. [09:02:58] Found file: /etc/pam.d/systemd-user
  2837. [09:02:58] Found file: /etc/pam.d/vmtoolsd
  2838. [09:02:58] ===---------------------------------------------------------------===
  2839. [09:02:58] Performing test ID AUTH-9268 (Checking presence pam.d files)
  2840. [09:02:58] Test: Searching pam modules
  2841. [09:02:58] Test: Checking /lib/i386-linux-gnu/security
  2842. [09:02:58] Result: directory /lib/i386-linux-gnu/security could not be found or is a symlink to another directory
  2843. [09:02:58] Test: Checking /lib/security
  2844. [09:02:58] Result: directory /lib/security could not be found or is a symlink to another directory
  2845. [09:02:58] Test: Checking /lib/x86_64-linux-gnu/security
  2846. [09:02:58] Result: directory /lib/x86_64-linux-gnu/security exists
  2847. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_access.so
  2848. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_debug.so
  2849. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_deny.so
  2850. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_echo.so
  2851. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_env.so
  2852. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_exec.so
  2853. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_extrausers.so
  2854. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_faildelay.so
  2855. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_filter.so
  2856. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_ftp.so
  2857. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_group.so
  2858. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_issue.so
  2859. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_keyinit.so
  2860. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_lastlog.so
  2861. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_limits.so
  2862. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_listfile.so
  2863. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_localuser.so
  2864. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_loginuid.so
  2865. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_mail.so
  2866. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_mkhomedir.so
  2867. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_motd.so
  2868. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_namespace.so
  2869. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_nologin.so
  2870. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_permit.so
  2871. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_pwhistory.so
  2872. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_rhosts.so
  2873. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_rootok.so
  2874. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_securetty.so
  2875. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_selinux.so
  2876. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_sepermit.so
  2877. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_shells.so
  2878. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_stress.so
  2879. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_succeed_if.so
  2880. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_systemd.so
  2881. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_tally.so
  2882. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_tally2.so
  2883. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_time.so
  2884. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_timestamp.so
  2885. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_tty_audit.so
  2886. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_umask.so
  2887. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_unix.so
  2888. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_userdb.so
  2889. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_warn.so
  2890. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_wheel.so
  2891. [09:02:58] Found file: /lib/x86_64-linux-gnu/security/pam_xauth.so
  2892. [09:02:58] Test: Checking /lib64/security
  2893. [09:02:58] Result: directory /lib64/security could not be found or is a symlink to another directory
  2894. [09:02:58] Test: Checking /usr/lib/security
  2895. [09:02:58] Result: directory /usr/lib/security could not be found or is a symlink to another directory
  2896. [09:02:58] ===---------------------------------------------------------------===
  2897. [09:02:58] Performing test ID AUTH-9278 (Checking LDAP pam status)
  2898. [09:02:58] Test: checking presence /etc/pam.d/common-auth
  2899. [09:02:58] Result: file /etc/pam.d/common-auth exists
  2900. [09:02:58] Test: checking presence LDAP module
  2901. [09:02:58] Result: LDAP module not found
  2902. [09:02:58] ===---------------------------------------------------------------===
  2903. [09:02:58] Performing test ID AUTH-9282 (Checking password protected account without expire date)
  2904. [09:02:58] Test: Checking Linux version and password expire date status
  2905. [09:02:58] Result: all accounts seem to have an expire date
  2906. [09:02:58] ===---------------------------------------------------------------===
  2907. [09:02:58] Performing test ID AUTH-9283 (Checking accounts without password)
  2908. [09:02:58] Test: Checking passwordless accounts
  2909. [09:02:58] Result: all accounts seem to have a password
  2910. [09:02:58] ===---------------------------------------------------------------===
  2911. [09:02:58] Performing test ID AUTH-9286 (Checking user password aging)
  2912. [09:02:58] Test: Checking PASS_MAX_DAYS option in /etc/login.defs
  2913. [09:02:58] Result: password aging limits are not configured
  2914. [09:02:58] Suggestion: Configure password aging limits to enforce password changing on a regular base [AUTH-9286]
  2915. [09:02:58] Hardening: assigned 0 hardening points (max for this item: 1), current: 9, total: 48
  2916. [09:02:58] ===---------------------------------------------------------------===
  2917. [09:02:58] Skipped test AUTH-9304 (Check single user login configuration)
  2918. [09:02:58] Reason to skip: Incorrect guest OS (Solaris only)
  2919. [09:02:58] ===---------------------------------------------------------------===
  2920. [09:02:58] Skipped test AUTH-9306 (Check single boot authentication)
  2921. [09:02:58] Reason to skip: Incorrect guest OS (HP-UX only)
  2922. [09:02:58] ===---------------------------------------------------------------===
  2923. [09:02:58] Performing test ID AUTH-9308 (Check single user login configuration)
  2924. [09:02:58] Test: Searching /etc/inittab
  2925. [09:02:58] Result: file /etc/inittab does not exist
  2926. [09:02:58] Test: Searching /etc/sysconfig/init
  2927. [09:02:58] Result: file /etc/inittab does not exist
  2928. [09:02:58] Result: No inittab or init file found, unsure if system is protected
  2929. [09:02:58] ===---------------------------------------------------------------===
  2930. [09:02:58] Performing test ID AUTH-9328 (Default umask values)
  2931. [09:02:58] Test: Checking /etc/profile
  2932. [09:02:58] Result: file /etc/profile exists
  2933. [09:02:58] Test: Checking umask value in /etc/profile
  2934. [09:02:58] Result: found several umask values configured in /etc/profile
  2935. [09:02:58] Hardening: assigned 1 hardening points (max for this item: 2), current: 10, total: 50
  2936. [09:02:58] Hardening: assigned 2 hardening points (max for this item: 2), current: 12, total: 52
  2937. [09:02:58] Test: Checking umask entries in /etc/passwd (pam_umask)
  2938. [09:02:58] Result: file /etc/passwd exists
  2939. [09:02:58] Test: Checking umask value in /etc/profile
  2940. [09:02:58] Manual: one or more manual actions are required for further testing of this control/plugin
  2941. [09:02:58] Test: Checking /etc/login.defs
  2942. [09:02:58] Result: file /etc/profile exists
  2943. [09:02:58] Test: Checking umask value in /etc/login.defs
  2944. [09:02:58] Result: found umask 022, which could be improved
  2945. [09:02:58] Suggestion: Default umask in /etc/login.defs could be more strict like 027 [AUTH-9328]
  2946. [09:02:58] Hardening: assigned 0 hardening points (max for this item: 2), current: 12, total: 54
  2947. [09:02:58] Test: Checking /etc/init.d/functions
  2948. [09:02:58] Result: file /etc/init.d/functions does not exist
  2949. [09:02:58] Test: Checking /etc/init.d/rc
  2950. [09:02:58] Result: file /etc/init.d/rc exists
  2951. [09:02:58] Test: Checking UMASK value in /etc/init.d/rc
  2952. [09:02:58] Result: found umask 022, which could be improved
  2953. [09:02:58] Suggestion: Default umask in /etc/init.d/rc could be more strict like 027 [AUTH-9328]
  2954. [09:02:58] Hardening: assigned 0 hardening points (max for this item: 2), current: 12, total: 56
  2955. [09:02:58] Test: Checking /etc/init.d/rcS
  2956. [09:02:58] Result: file /etc/init.d/rcS exists
  2957. [09:02:58] Test: Checking if script runs another script.
  2958. [09:02:58] Result: exec line present in file, setting of umask not needed in this script
  2959. [09:02:58] Output: /etc/init.d/rc
  2960. [09:02:58] ===---------------------------------------------------------------===
  2961. [09:02:58] Skipped test AUTH-9340 (Solaris account locking)
  2962. [09:02:58] Reason to skip: Incorrect guest OS (Solaris only)
  2963. [09:02:58] ===---------------------------------------------------------------===
  2964. [09:02:58] Performing test ID AUTH-9402 (Query LDAP authentication support)
  2965. [09:02:58] Result: LDAP authentication not enabled
  2966. [09:02:58] ===---------------------------------------------------------------===
  2967. [09:02:58] Skipped test AUTH-9406 (Query LDAP servers in client configuration)
  2968. [09:02:58] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  2969. [09:02:59] ===---------------------------------------------------------------===
  2970. [09:02:59] Action: Performing tests from category: Shells
  2971. [09:02:59] ===---------------------------------------------------------------===
  2972. [09:02:59] Skipped test SHLL-6202 (Check console TTYs)
  2973. [09:02:59] Reason to skip: Incorrect guest OS (FreeBSD only)
  2974. [09:02:59] ===---------------------------------------------------------------===
  2975. [09:02:59] Performing test ID SHLL-6211 (Checking available and valid shells)
  2976. [09:02:59] Test: Searching for /etc/shells
  2977. [09:02:59] Result: Found /etc/shells file
  2978. [09:02:59] Test: Reading available shells from /etc/shells
  2979. [09:02:59] Found installed shell: /bin/sh
  2980. [09:02:59] Found installed shell: /bin/dash
  2981. [09:02:59] Found installed shell: /bin/bash
  2982. [09:02:59] Found installed shell: /bin/rbash
  2983. [09:02:59] Found installed shell: /usr/bin/tmux
  2984. [09:02:59] Found installed shell: /usr/bin/screen
  2985. [09:02:59] ===---------------------------------------------------------------===
  2986. [09:02:59] Performing test ID SHLL-6220 (Checking available and valid shells)
  2987. [09:02:59] Test: Search for session timeout tools or settings in shell
  2988. [09:02:59] IsRunning: process 'timeoutd' not found
  2989. [09:02:59] IsRunning: process 'autolog' not found
  2990. [09:02:59] Result: could not find TMOUT setting in /etc/profile
  2991. [09:02:59] Result: could not find export, readonly or typeset -r in /etc/profile
  2992. [09:02:59] Result: could not find TMOUT setting in /etc/profile.d/*.sh
  2993. [09:02:59] Result: could not find export, readonly or typeset -r in /etc/profile
  2994. [09:02:59] Hardening: assigned 1 hardening points (max for this item: 3), current: 13, total: 59
  2995. [09:02:59] ===---------------------------------------------------------------===
  2996. [09:02:59] Performing test ID SHLL-6290 (Perform Shellshock vulnerability tests)
  2997. [09:02:59] Test: Check if bash is in the list of shells.
  2998. [09:02:59] Test: checking for bash shell in /etc/shells
  2999. [09:02:59] Result: command revealed /bin/bash as output
  3000. [09:02:59] Result: found /bin/bash as a valid shell
  3001. [09:02:59] Test: Check for first exploit (CVE-2014-6271)
  3002. [09:02:59] Result: Not vulnerable to original shellshock (CVE-2014-6271)
  3003. [09:02:59] Test: Check for CVE-2014-6278
  3004. [09:02:59] Result: Not vulnerable to CVE-2014-6278
  3005. [09:02:59] Test: Check for taviso bug CVE-2014-7169
  3006. [09:02:59] Result: Not vulnerable to taviso bug (CVE-2014-7169)
  3007. [09:02:59] Test: Check for CVE-2014-7186
  3008. [09:02:59] Result: Not vulnerable to CVE-2014-7186
  3009. [09:02:59] Test: Check for CVE-2014-7187
  3010. [09:02:59] Result: Not vulnerable to CVE-2014-7187
  3011. [09:02:59] Test: Check for bug Exploit #3 - shellshocker.net (no CVE)
  3012. [09:02:59] Result: Not vulnerable to exploit #3 on shellshocker.net (no CVE)
  3013. [09:02:59] Hardening: assigned 5 hardening points (max for this item: 5), current: 18, total: 64
  3014. [09:03:01] ===---------------------------------------------------------------===
  3015. [09:03:01] Action: Performing tests from category: File systems
  3016. [09:03:01] ===---------------------------------------------------------------===
  3017. [09:03:01] Performing test ID FILE-6310 (Checking /tmp, /home and /var directory)
  3018. [09:03:01] Test: Checking if /home is mounted separately or mounted on / file system
  3019. [09:03:01] Result: directory /home exists
  3020. [09:03:01] Result: /home not found in mount list. Directory most likely stored on / file system
  3021. [09:03:01] Suggestion: To decrease the impact of a full /home file system, place /home on a separated partition [FILE-6310]
  3022. [09:03:01] Hardening: assigned 9 hardening points (max for this item: 10), current: 27, total: 74
  3023. [09:03:01] Test: Checking if /tmp is mounted separately or mounted on / file system
  3024. [09:03:01] Result: directory /tmp exists
  3025. [09:03:01] Result: /tmp not found in mount list. Directory most likely stored on / file system
  3026. [09:03:01] Suggestion: To decrease the impact of a full /tmp file system, place /tmp on a separated partition [FILE-6310]
  3027. [09:03:01] Hardening: assigned 9 hardening points (max for this item: 10), current: 36, total: 84
  3028. [09:03:01] Test: Checking if /var is mounted separately or mounted on / file system
  3029. [09:03:01] Result: directory /var exists
  3030. [09:03:01] Result: found /var as a separated mount point
  3031. [09:03:01] Hardening: assigned 10 hardening points (max for this item: 10), current: 46, total: 94
  3032. [09:03:01] ===---------------------------------------------------------------===
  3033. [09:03:01] Performing test ID FILE-6311 (Checking LVM volume groups)
  3034. [09:03:01] Test: Checking for LVM volume groups
  3035. [09:03:01] Result: no LVM volume groups found
  3036. [09:03:01] ===---------------------------------------------------------------===
  3037. [09:03:01] Skipped test FILE-6312 (Checking LVM volumes)
  3038. [09:03:01] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3039. [09:03:01] ===---------------------------------------------------------------===
  3040. [09:03:01] Performing test ID FILE-6323 (Checking EXT file systems)
  3041. [09:03:01] Test: Checking for Linux EXT file systems
  3042. [09:03:01] Result: found one or more EXT file systems
  3043. [09:03:01] File system: / (type: ext4)
  3044. [09:03:01] ===---------------------------------------------------------------===
  3045. [09:03:01] Performing test ID FILE-6329 (Checking FFS/UFS file systems)
  3046. [09:03:01] Test: Query /etc/fstab for available FFS/UFS mount points
  3047. [09:03:01] Result: unable to find any single mount point (FFS/UFS)
  3048. [09:03:01] ===---------------------------------------------------------------===
  3049. [09:03:01] Skipped test FILE-6330 (Checking ZFS file systems)
  3050. [09:03:01] Reason to skip: Incorrect guest OS (FreeBSD only)
  3051. [09:03:01] ===---------------------------------------------------------------===
  3052. [09:03:01] Performing test ID FILE-6332 (Checking swap partitions)
  3053. [09:03:01] Test: query swap partitions from /etc/fstab file
  3054. [09:03:01] Result: no swap partitions found in /etc/fstab
  3055. [09:03:01] ===---------------------------------------------------------------===
  3056. [09:03:01] Performing test ID FILE-6336 (Checking swap mount options)
  3057. [09:03:01] Test: check swap partitions with incorrect mount options
  3058. [09:03:01] Result: possible incorrect mount options used for mounting swap partition ()
  3059. [09:03:01] Suggestion: Check your /etc/fstab file for swap partition mount options [FILE-6336]
  3060. [09:03:01] Notes: usually swap partition have 'sw' or 'swap' in the options field (4th)
  3061. [09:03:01] ===---------------------------------------------------------------===
  3062. [09:03:01] Performing test ID FILE-6354 (Searching for old files in /tmp)
  3063. [09:03:01] Test: Searching for old files in /tmp
  3064. [09:03:01] Result: no files found in /tmp which are older than 3 months
  3065. [09:03:01] ===---------------------------------------------------------------===
  3066. [09:03:01] Performing test ID FILE-6362 (Checking /tmp sticky bit)
  3067. [09:03:01] Result: Sticky bit (t) found on /tmp directory
  3068. [09:03:01] Hardening: assigned 3 hardening points (max for this item: 3), current: 49, total: 97
  3069. [09:03:01] ===---------------------------------------------------------------===
  3070. [09:03:01] Performing test ID FILE-6368 (Checking ACL support on root file system)
  3071. [09:03:01] Test: Checking acl option on root file system
  3072. [09:03:01] Result: mount point probably mounted with defaults
  3073. [09:03:01] Test: Checking device which holds root file system
  3074. [09:03:01] Result: found /dev/vda1
  3075. [09:03:01] Test: Checking default options on /dev/vda1
  3076. [09:03:01] Result: found ACL option in default mount options
  3077. [09:03:01] Result: ACL option enabled on root file system
  3078. [09:03:01] Hardening: assigned 3 hardening points (max for this item: 3), current: 52, total: 100
  3079. [09:03:01] ===---------------------------------------------------------------===
  3080. [09:03:01] Performing test ID FILE-6372 (Checking / mount options)
  3081. [09:03:01] Result: no mount point / or expected options found
  3082. [09:03:01] ===---------------------------------------------------------------===
  3083. [09:03:01] Performing test ID FILE-6374 (Checking /boot mount options)
  3084. [09:03:01] Result: no mount point /boot or expected options found
  3085. [09:03:01] ===---------------------------------------------------------------===
  3086. [09:03:01] Performing test ID FILE-6410 (Checking Locate database)
  3087. [09:03:01] Test: Checking locate database
  3088. [09:03:01] Result: locate database found (/var/lib/mlocate/mlocate.db)
  3089. [09:03:01] Result: file /var/lib/locatedb not found
  3090. [09:03:01] Result: file /var/lib/slocate/slocate.db not found
  3091. [09:03:01] Result: file /var/cache/locate/locatedb not found
  3092. [09:03:01] Result: file /var/db/locate.database not found
  3093. [09:03:02] ===---------------------------------------------------------------===
  3094. [09:03:02] Action: Performing tests from category: Storage
  3095. [09:03:02] ===---------------------------------------------------------------===
  3096. [09:03:02] Performing test ID STRG-1840 (Check if USB storage is disabled)
  3097. [09:03:02] Test: Checking USB storage driver in directory /etc/modprobe.d and configuration file /etc/modprobe.conf
  3098. [09:03:02] Result: usb-storage driver is not explicitly disabled
  3099. [09:03:02] Suggestion: Disable drivers like USB storage when not used, to prevent unauthorized storage or data theft [STRG-1840]
  3100. [09:03:02] Hardening: assigned 2 hardening points (max for this item: 3), current: 54, total: 103
  3101. [09:03:02] ===---------------------------------------------------------------===
  3102. [09:03:02] Performing test ID STRG-1846 (Check if firewire storage is disabled)
  3103. [09:03:02] Test: Checking firewire storage driver in directory /etc/modprobe.d and configuration file /etc/modprobe.conf
  3104. [09:03:02] Result: found firewire ohci driver in disabled state
  3105. [09:03:02] Result: firewire ohci driver is disabled
  3106. [09:03:02] Hardening: assigned 3 hardening points (max for this item: 3), current: 57, total: 106
  3107. [09:03:03] ===---------------------------------------------------------------===
  3108. [09:03:03] Action: Performing tests from category: NFS
  3109. [09:03:03] ===---------------------------------------------------------------===
  3110. [09:03:03] Skipped test STRG-1902 (Check rpcinfo registered programs)
  3111. [09:03:03] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3112. [09:03:03] ===---------------------------------------------------------------===
  3113. [09:03:03] Skipped test STRG-1904 (Check nfs rpc)
  3114. [09:03:03] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3115. [09:03:03] ===---------------------------------------------------------------===
  3116. [09:03:03] Skipped test STRG-1906 (Check nfs rpc)
  3117. [09:03:03] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3118. [09:03:03] ===---------------------------------------------------------------===
  3119. [09:03:03] Performing test ID STRG-1920 (Checking NFS daemon)
  3120. [09:03:03] Test: Checking running NFS daemon
  3121. [09:03:03] Output: NFS daemon is not running
  3122. [09:03:03] ===---------------------------------------------------------------===
  3123. [09:03:03] Skipped test STRG-1926 (Checking NFS exports)
  3124. [09:03:03] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3125. [09:03:03] ===---------------------------------------------------------------===
  3126. [09:03:03] Skipped test STRG-1928 (Checking empty /etc/exports)
  3127. [09:03:03] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3128. [09:03:03] ===---------------------------------------------------------------===
  3129. [09:03:03] Skipped test STRG-1930 (Check client access to nfs share)
  3130. [09:03:03] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3131. [09:03:04] ===---------------------------------------------------------------===
  3132. [09:03:04] Action: Performing tests from category: Name services
  3133. [09:03:04] ===---------------------------------------------------------------===
  3134. [09:03:04] Performing test ID NAME-4016 (Check /etc/resolv.conf default domain)
  3135. [09:03:04] Test: check /etc/resolv.conf for default domain
  3136. [09:03:04] Result: /etc/resolv.conf found
  3137. [09:03:04] Result: no default domain found
  3138. [09:03:04] ===---------------------------------------------------------------===
  3139. [09:03:04] Performing test ID NAME-4018 (Check /etc/resolv.conf search domains)
  3140. [09:03:04] Test: check /etc/resolv.conf for search domains
  3141. [09:03:04] Result: /etc/resolv.conf found
  3142. [09:03:04] Result: no search domains found, default domain is being used
  3143. [09:03:04] Result: found 0 line(s) with a search statement (expecting less than 2 lines)
  3144. [09:03:04] ===---------------------------------------------------------------===
  3145. [09:03:04] Performing test ID NAME-4020 (Check non default options)
  3146. [09:03:04] Test: check /etc/resolv.conf for non default options
  3147. [09:03:04] Result: /etc/resolv.conf found
  3148. [09:03:04] Result: no specific other options configured in /etc/resolv.conf
  3149. [09:03:04] ===---------------------------------------------------------------===
  3150. [09:03:04] Skipped test NAME-4024 (Solaris uname -n output)
  3151. [09:03:04] Reason to skip: Incorrect guest OS (Solaris only)
  3152. [09:03:04] ===---------------------------------------------------------------===
  3153. [09:03:04] Skipped test NAME-4026 (Check /etc/nodename)
  3154. [09:03:04] Reason to skip: Incorrect guest OS (Solaris only)
  3155. [09:03:04] ===---------------------------------------------------------------===
  3156. [09:03:04] Performing test ID NAME-4028 (Check domain name)
  3157. [09:03:04] Test: Checking if dnsdomainname command is available
  3158. [09:03:04] Result: dnsdomainname command returned no value
  3159. [09:03:04] Result: using domain name from FQDN hostname
  3160. [09:03:04] Suggestion: Check DNS configuration for the dns domain name [NAME-4028]
  3161. [09:03:04] ===---------------------------------------------------------------===
  3162. [09:03:04] Performing test ID NAME-4032 (Check nscd status)
  3163. [09:03:04] Test: checking nscd status
  3164. [09:03:04] IsRunning: process 'nscd' not found
  3165. [09:03:04] Result: nscd is not running
  3166. [09:03:04] ===---------------------------------------------------------------===
  3167. [09:03:04] Performing test ID NAME-4202 (Check BIND status)
  3168. [09:03:04] Test: Checking for running BIND instance
  3169. [09:03:04] IsRunning: process 'named' not found
  3170. [09:03:04] Result: BIND not running
  3171. [09:03:04] ===---------------------------------------------------------------===
  3172. [09:03:04] Skipped test NAME-4204 (Search BIND configuration file)
  3173. [09:03:04] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3174. [09:03:04] ===---------------------------------------------------------------===
  3175. [09:03:04] Skipped test NAME-4206 (Check BIND configuration consistency)
  3176. [09:03:04] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3177. [09:03:04] ===---------------------------------------------------------------===
  3178. [09:03:04] Skipped test NAME-4210 (Check DNS banner)
  3179. [09:03:04] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3180. [09:03:04] ===---------------------------------------------------------------===
  3181. [09:03:04] Performing test ID NAME-4230 (Check PowerDNS status)
  3182. [09:03:04] Test: Checking for running PowerDNS instance
  3183. [09:03:04] IsRunning: process 'pdns_server' not found
  3184. [09:03:04] Result: PowerDNS not running
  3185. [09:03:04] ===---------------------------------------------------------------===
  3186. [09:03:04] Skipped test NAME-4232 (Search PowerDNS configuration file)
  3187. [09:03:04] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3188. [09:03:04] ===---------------------------------------------------------------===
  3189. [09:03:04] Skipped test NAME-4236 (Check PowerDNS backends)
  3190. [09:03:04] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3191. [09:03:04] ===---------------------------------------------------------------===
  3192. [09:03:04] Skipped test NAME-4238 (Check PowerDNS authoritive status)
  3193. [09:03:04] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3194. [09:03:04] ===---------------------------------------------------------------===
  3195. [09:03:04] Performing test ID NAME-4304 (Check NIS ypbind status)
  3196. [09:03:04] Test: Checking status of ypbind daemon
  3197. [09:03:04] IsRunning: process 'ypbind' not found
  3198. [09:03:04] Result: ypbind is not active
  3199. [09:03:04] ===---------------------------------------------------------------===
  3200. [09:03:04] Skipped test NAME-4306 (Check NIS domain)
  3201. [09:03:04] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3202. [09:03:04] ===---------------------------------------------------------------===
  3203. [09:03:04] Performing test ID NAME-4402 (Check duplicate line in /etc/hosts)
  3204. [09:03:04] Test: check duplicate line in /etc/hosts
  3205. [09:03:04] Result: OK, no duplicate lines found
  3206. [09:03:04] ===---------------------------------------------------------------===
  3207. [09:03:04] Performing test ID NAME-4404 (Check /etc/hosts contains an entry for this server name)
  3208. [09:03:04] Test: Check /etc/hosts contains an entry for this server name
  3209. [09:03:04] Result: No entry found for node8-new-21 in /etc/hosts
  3210. [09:03:04] Suggestion: Add the IP name and FQDN to /etc/hosts for proper name resolving [NAME-4404]
  3211. [09:03:04] Risk: No entry for the server name [hostname] in /etc/hosts may cause unexpected performance problems for local connections
  3212. [09:03:04] ===---------------------------------------------------------------===
  3213. [09:03:04] Performing test ID NAME-4406 (Check server hostname mapping)
  3214. [09:03:04] Test: Check server hostname not locally mapped in /etc/hosts
  3215. [09:03:04] Result: this server hostname is not mapped to a local address
  3216. [09:03:05] ===---------------------------------------------------------------===
  3217. [09:03:05] Action: Performing tests from category: Ports and packages
  3218. [09:03:05] ===---------------------------------------------------------------===
  3219. [09:03:05] Skipped test PKGS-7301 (Query NetBSD pkg)
  3220. [09:03:05] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3221. [09:03:05] ===---------------------------------------------------------------===
  3222. [09:03:05] Skipped test PKGS-7302 (Query FreeBSD/NetBSD pkg_info)
  3223. [09:03:05] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3224. [09:03:05] ===---------------------------------------------------------------===
  3225. [09:03:05] Skipped test PKGS-7304 (Querying Gentoo packages)
  3226. [09:03:05] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3227. [09:03:05] Result: emerge can NOT be found on this system
  3228. [09:03:05] ===---------------------------------------------------------------===
  3229. [09:03:05] Skipped test PKGS-7306 (Querying Solaris packages)
  3230. [09:03:05] Reason to skip: Incorrect guest OS (Solaris only)
  3231. [09:03:05] Result: pkginfo can NOT be found on this system
  3232. [09:03:05] ===---------------------------------------------------------------===
  3233. [09:03:05] Skipped test PKGS-7308 (Checking package list with RPM)
  3234. [09:03:05] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3235. [09:03:05] Result: RPM binary NOT found on this system, test skipped
  3236. [09:03:05] ===---------------------------------------------------------------===
  3237. [09:03:05] Skipped test PKGS-7310 (Checking package list with pacman)
  3238. [09:03:05] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3239. [09:03:05] ===---------------------------------------------------------------===
  3240. [09:03:05] Skipped test PKGS-7312 (Checking available updates for pacman based system)
  3241. [09:03:05] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3242. [09:03:05] Result: pacman binary NOT found on this system, test skipped
  3243. [09:03:05] ===---------------------------------------------------------------===
  3244. [09:03:05] Skipped test PKGS-7314 (Checking pacman configuration options)
  3245. [09:03:05] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3246. [09:03:05] ===---------------------------------------------------------------===
  3247. [09:03:05] Skipped test PKGS-7328 (Querying Zypper for installed packages)
  3248. [09:03:05] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3249. [09:03:05] ===---------------------------------------------------------------===
  3250. [09:03:05] Skipped test PKGS-7330 (Querying Zypper for vulnerable packages)
  3251. [09:03:05] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3252. [09:03:05] ===---------------------------------------------------------------===
  3253. [09:03:05] Performing test ID PKGS-7345 (Querying dpkg)
  3254. [09:03:05] Result: Found dpkg binary
  3255. [09:03:05] Test: Querying dpkg -l to get package list
  3256. [09:03:05] Output:
  3257. [09:03:05] Found package: accountsservice (version: 0.6.40-2ubuntu11.3)
  3258. [09:03:05] Found package: acl (version: 2.2.52-3)
  3259. [09:03:05] Found package: acpid (version: 1:2.0.26-1ubuntu2)
  3260. [09:03:05] Found package: adduser (version: 3.113+nmu3ubuntu4)
  3261. [09:03:05] Found package: apparmor (version: 2.10.95-0ubuntu2.9)
  3262. [09:03:05] Found package: apport (version: 2.20.1-0ubuntu2.18)
  3263. [09:03:05] Found package: apport-symptoms (version: 0.20)
  3264. [09:03:05] Found package: apt (version: 1.2.27)
  3265. [09:03:05] Found package: apt-transport-https (version: 1.2.27)
  3266. [09:03:05] Found package: apt-utils (version: 1.2.27)
  3267. [09:03:05] Found package: at (version: 3.1.18-2ubuntu1)
  3268. [09:03:05] Found package: base-files (version: 9.4ubuntu4.7)
  3269. [09:03:05] Found package: base-passwd (version: 3.5.39)
  3270. [09:03:05] Found package: bash (version: 4.3-14ubuntu1.2)
  3271. [09:03:05] Found package: bash-completion (version: 1:2.1-4.2ubuntu1.1)
  3272. [09:03:05] Found package: bcache-tools (version: 1.0.8-2)
  3273. [09:03:05] Found package: bind9-host (version: 1:9.10.3.dfsg.P4-8ubuntu1.11)
  3274. [09:03:05] Found package: bsdmainutils (version: 9.0.6ubuntu3)
  3275. [09:03:05] Found package: bsdutils (version: 1:2.27.1-6ubuntu3.4)
  3276. [09:03:05] Found package: btrfs-tools (version: 4.4-1ubuntu1)
  3277. [09:03:05] Found package: busybox-initramfs (version: 1:1.22.0-15ubuntu1)
  3278. [09:03:05] Found package: busybox-static (version: 1:1.22.0-15ubuntu1)
  3279. [09:03:05] Found package: byobu (version: 5.106-0ubuntu1)
  3280. [09:03:05] Found package: bzip2 (version: 1.0.6-8)
  3281. [09:03:05] Found package: ca-certificates (version: 20170717~16.04.1)
  3282. [09:03:05] Found package: cloud-guest-utils (version: 0.27-0ubuntu25.1)
  3283. [09:03:05] Found package: cloud-init (version: 18.2-4-g05926e48-0ubuntu1~16.04.2)
  3284. [09:03:05] Found package: cloud-initramfs-copymods (version: 0.27ubuntu1.5)
  3285. [09:03:05] Found package: cloud-initramfs-dyn-netconf (version: 0.27ubuntu1.5)
  3286. [09:03:05] Found package: command-not-found (version: 0.3ubuntu16.04.2)
  3287. [09:03:05] Found package: command-not-found-data (version: 0.3ubuntu16.04.2)
  3288. [09:03:05] Found package: console-setup (version: 1.108ubuntu15.4)
  3289. [09:03:05] Found package: console-setup-linux (version: 1.108ubuntu15.4)
  3290. [09:03:05] Found package: coreutils (version: 8.25-2ubuntu3~16.04)
  3291. [09:03:05] Found package: cpio (version: 2.11+dfsg-5ubuntu1)
  3292. [09:03:05] Found package: cron (version: 3.0pl1-128ubuntu2)
  3293. [09:03:05] Found package: cryptsetup (version: 2:1.6.6-5ubuntu2.1)
  3294. [09:03:05] Found package: cryptsetup-bin (version: 2:1.6.6-5ubuntu2.1)
  3295. [09:03:05] Found package: curl (version: 7.47.0-1ubuntu2.9)
  3296. [09:03:05] Found package: dash (version: 0.5.8-2.1ubuntu2)
  3297. [09:03:05] Found package: dbus (version: 1.10.6-1ubuntu3.3)
  3298. [09:03:05] Found package: debconf (version: 1.5.58ubuntu1)
  3299. [09:03:05] Found package: debconf-i18n (version: 1.5.58ubuntu1)
  3300. [09:03:05] Found package: debianutils (version: 4.7)
  3301. [09:03:05] Found package: dh-python (version: 2.20151103ubuntu1.1)
  3302. [09:03:05] Found package: diffutils (version: 1:3.3-3)
  3303. [09:03:05] Found package: distro-info-data (version: 0.28ubuntu0.8)
  3304. [09:03:05] Found package: dmeventd (version: 2:1.02.110-1ubuntu10)
  3305. [09:03:05] Found package: dmidecode (version: 3.0-2ubuntu0.1)
  3306. [09:03:05] Found package: dmsetup (version: 2:1.02.110-1ubuntu10)
  3307. [09:03:05] Found package: dns-root-data (version: 2018013001~16.04.1)
  3308. [09:03:05] Found package: dnsmasq-base (version: 2.75-1ubuntu0.16.04.5)
  3309. [09:03:05] Found package: dnsutils (version: 1:9.10.3.dfsg.P4-8ubuntu1.11)
  3310. [09:03:05] Found package: do-agent (version: 0.5.1)
  3311. [09:03:05] Found package: dosfstools (version: 3.0.28-2ubuntu0.1)
  3312. [09:03:05] Found package: dpkg (version: 1.18.4ubuntu1.4)
  3313. [09:03:05] Found package: e2fslibs:amd64 (version: 1.42.13-1ubuntu1)
  3314. [09:03:06] Found package: e2fsprogs (version: 1.42.13-1ubuntu1)
  3315. [09:03:06] Found package: eatmydata (version: 105-3)
  3316. [09:03:06] Found package: ed (version: 1.10-2)
  3317. [09:03:06] Found package: efibootmgr (version: 0.12-4)
  3318. [09:03:06] Found package: eject (version: 2.1.5+deb1+cvs20081104-13.1ubuntu0.16.04.1)
  3319. [09:03:06] Found package: ethtool (version: 1:4.5-1)
  3320. [09:03:06] Found package: file (version: 1:5.25-2ubuntu1.1)
  3321. [09:03:06] Found package: findutils (version: 4.6.0+git+20160126-2)
  3322. [09:03:06] Found package: fonts-ubuntu-font-family-console (version: 1:0.83-0ubuntu2)
  3323. [09:03:06] Found package: friendly-recovery (version: 0.2.31ubuntu1)
  3324. [09:03:06] Found package: ftp (version: 0.17-33)
  3325. [09:03:06] Found package: fuse (version: 2.9.4-1ubuntu3.1)
  3326. [09:03:06] Found package: gawk (version: 1:4.1.3+dfsg-0.1)
  3327. [09:03:06] Found package: gcc-5-base:amd64 (version: 5.4.0-6ubuntu1~16.04.10)
  3328. [09:03:06] Found package: gcc-6-base:amd64 (version: 6.0.1-0ubuntu1)
  3329. [09:03:06] Found package: gdisk (version: 1.0.1-1build1)
  3330. [09:03:06] Found package: geoip-database (version: 20160408-1)
  3331. [09:03:06] Found package: gettext-base (version: 0.19.7-2ubuntu3)
  3332. [09:03:06] Found package: gir1.2-glib-2.0:amd64 (version: 1.46.0-3ubuntu1)
  3333. [09:03:06] Found package: git (version: 1:2.7.4-0ubuntu1.4)
  3334. [09:03:06] Found package: git-man (version: 1:2.7.4-0ubuntu1.4)
  3335. [09:03:06] Found package: gitlab-runner (version: 11.0.2)
  3336. [09:03:06] Found package: gnupg (version: 1.4.20-1ubuntu3.3)
  3337. [09:03:06] Found package: gpgv (version: 1.4.20-1ubuntu3.3)
  3338. [09:03:06] Found package: grep (version: 2.25-1~16.04.1)
  3339. [09:03:06] Found package: groff-base (version: 1.22.3-7)
  3340. [09:03:06] Found package: grub-common (version: 2.02~beta2-36ubuntu3.18)
  3341. [09:03:06] Found package: grub-efi-amd64 (version: 2.02~beta2-36ubuntu3.18)
  3342. [09:03:06] Found package: grub-efi-amd64-bin (version: 2.02~beta2-36ubuntu3.18)
  3343. [09:03:06] Found package: grub-efi-amd64-signed (version: 1.66.18+2.02~beta2-36ubuntu3.18)
  3344. [09:03:06] Found package: grub-legacy-ec2 (version: 18.2-4-g05926e48-0ubuntu1~16.04.2)
  3345. [09:03:06] Found package: grub-pc-bin (version: 2.02~beta2-36ubuntu3.18)
  3346. [09:03:06] Found package: grub2-common (version: 2.02~beta2-36ubuntu3.18)
  3347. [09:03:06] Found package: gzip (version: 1.6-4ubuntu1)
  3348. [09:03:06] Found package: hdparm (version: 9.48+ds-1ubuntu0.1)
  3349. [09:03:06] Found package: hostname (version: 3.16ubuntu2)
  3350. [09:03:06] Found package: ifenslave (version: 2.7ubuntu1)
  3351. [09:03:06] Found package: ifupdown (version: 0.8.10ubuntu1.4)
  3352. [09:03:06] Found package: info (version: 6.1.0.dfsg.1-5)
  3353. [09:03:06] Found package: init (version: 1.29ubuntu4)
  3354. [09:03:06] Found package: init-system-helpers (version: 1.29ubuntu4)
  3355. [09:03:06] Found package: initramfs-tools (version: 0.122ubuntu8.11)
  3356. [09:03:06] Found package: initramfs-tools-bin (version: 0.122ubuntu8.11)
  3357. [09:03:06] Found package: initramfs-tools-core (version: 0.122ubuntu8.11)
  3358. [09:03:06] Found package: initscripts (version: 2.88dsf-59.3ubuntu2)
  3359. [09:03:06] Found package: insserv (version: 1.14.0-5ubuntu3)
  3360. [09:03:06] Found package: install-info (version: 6.1.0.dfsg.1-5)
  3361. [09:03:06] Found package: iproute2 (version: 4.3.0-1ubuntu3.16.04.3)
  3362. [09:03:06] Found package: iptables (version: 1.6.0-2ubuntu3)
  3363. [09:03:06] Found package: iputils-ping (version: 3:20121221-5ubuntu2)
  3364. [09:03:06] Found package: iputils-tracepath (version: 3:20121221-5ubuntu2)
  3365. [09:03:06] Found package: irqbalance (version: 1.1.0-2ubuntu1)
  3366. [09:03:06] Found package: isc-dhcp-client (version: 4.3.3-5ubuntu12.10)
  3367. [09:03:06] Found package: isc-dhcp-common (version: 4.3.3-5ubuntu12.10)
  3368. [09:03:06] Found package: iso-codes (version: 3.65-1)
  3369. [09:03:06] Found package: kbd (version: 1.15.5-1ubuntu5)
  3370. [09:03:06] Found package: keyboard-configuration (version: 1.108ubuntu15.4)
  3371. [09:03:06] Found package: klibc-utils (version: 2.0.4-8ubuntu1.16.04.4)
  3372. [09:03:06] Found package: kmod (version: 22-1ubuntu5)
  3373. [09:03:06] Found package: krb5-locales (version: 1.13.2+dfsg-5ubuntu2)
  3374. [09:03:06] Found package: language-selector-common (version: 0.165.4)
  3375. [09:03:06] Found package: less (version: 481-2.1ubuntu0.2)
  3376. [09:03:06] Found package: libaccountsservice0:amd64 (version: 0.6.40-2ubuntu11.3)
  3377. [09:03:06] Found package: libacl1:amd64 (version: 2.2.52-3)
  3378. [09:03:06] Found package: libapparmor-perl (version: 2.10.95-0ubuntu2.9)
  3379. [09:03:06] Found package: libapparmor1:amd64 (version: 2.10.95-0ubuntu2.9)
  3380. [09:03:06] Found package: libapt-inst2.0:amd64 (version: 1.2.27)
  3381. [09:03:06] Found package: libapt-pkg5.0:amd64 (version: 1.2.27)
  3382. [09:03:06] Found package: libasn1-8-heimdal:amd64 (version: 1.7~git20150920+dfsg-4ubuntu1.16.04.1)
  3383. [09:03:06] Found package: libasprintf0v5:amd64 (version: 0.19.7-2ubuntu3)
  3384. [09:03:06] Found package: libatm1:amd64 (version: 1:2.5.1-1.5)
  3385. [09:03:06] Found package: libattr1:amd64 (version: 1:2.4.47-2)
  3386. [09:03:06] Found package: libaudit-common (version: 1:2.4.5-1ubuntu2.1)
  3387. [09:03:06] Found package: libaudit1:amd64 (version: 1:2.4.5-1ubuntu2.1)
  3388. [09:03:06] Found package: libbind9-140:amd64 (version: 1:9.10.3.dfsg.P4-8ubuntu1.11)
  3389. [09:03:06] Found package: libblkid1:amd64 (version: 2.27.1-6ubuntu3.4)
  3390. [09:03:06] Found package: libbsd0:amd64 (version: 0.8.2-1)
  3391. [09:03:06] Found package: libbz2-1.0:amd64 (version: 1.0.6-8)
  3392. [09:03:06] Found package: libc-bin (version: 2.23-0ubuntu10)
  3393. [09:03:06] Found package: libc6:amd64 (version: 2.23-0ubuntu10)
  3394. [09:03:06] Found package: libcap-ng0:amd64 (version: 0.7.7-1)
  3395. [09:03:06] Found package: libcap2-bin (version: 1:2.24-12)
  3396. [09:03:06] Found package: libcap2:amd64 (version: 1:2.24-12)
  3397. [09:03:06] Found package: libcomerr2:amd64 (version: 1.42.13-1ubuntu1)
  3398. [09:03:06] Found package: libcryptsetup4:amd64 (version: 2:1.6.6-5ubuntu2.1)
  3399. [09:03:06] Found package: libcurl3-gnutls:amd64 (version: 7.47.0-1ubuntu2.9)
  3400. [09:03:06] Found package: libdb5.3:amd64 (version: 5.3.28-11ubuntu0.1)
  3401. [09:03:06] Found package: libdbus-1-3:amd64 (version: 1.10.6-1ubuntu3.3)
  3402. [09:03:06] Found package: libdbus-glib-1-2:amd64 (version: 0.106-1)
  3403. [09:03:06] Found package: libdebconfclient0:amd64 (version: 0.198ubuntu1)
  3404. [09:03:06] Found package: libdevmapper-event1.02.1:amd64 (version: 2:1.02.110-1ubuntu10)
  3405. [09:03:06] Found package: libdevmapper1.02.1:amd64 (version: 2:1.02.110-1ubuntu10)
  3406. [09:03:06] Found package: libdns-export162 (version: 1:9.10.3.dfsg.P4-8ubuntu1.11)
  3407. [09:03:06] Found package: libdns162:amd64 (version: 1:9.10.3.dfsg.P4-8ubuntu1.11)
  3408. [09:03:06] Found package: libdrm2:amd64 (version: 2.4.76-1~ubuntu16.04.1)
  3409. [09:03:06] Found package: libdumbnet1:amd64 (version: 1.12-7)
  3410. [09:03:06] Found package: libeatmydata1:amd64 (version: 105-3)
  3411. [09:03:06] Found package: libedit2:amd64 (version: 3.1-20150325-1ubuntu2)
  3412. [09:03:06] Found package: libefivar0:amd64 (version: 0.23-2)
  3413. [09:03:06] Found package: libelf1:amd64 (version: 0.165-3ubuntu1.1)
  3414. [09:03:06] Found package: liberror-perl (version: 0.17-1.2)
  3415. [09:03:06] Found package: libestr0 (version: 0.1.10-1)
  3416. [09:03:06] Found package: libevent-2.0-5:amd64 (version: 2.0.21-stable-2ubuntu0.16.04.1)
  3417. [09:03:06] Found package: libexpat1:amd64 (version: 2.1.0-7ubuntu0.16.04.3)
  3418. [09:03:06] Found package: libfdisk1:amd64 (version: 2.27.1-6ubuntu3.4)
  3419. [09:03:06] Found package: libffi6:amd64 (version: 3.2.1-4)
  3420. [09:03:06] Found package: libfreetype6:amd64 (version: 2.6.1-0.1ubuntu2.3)
  3421. [09:03:06] Found package: libfribidi0:amd64 (version: 0.19.7-1)
  3422. [09:03:06] Found package: libfuse2:amd64 (version: 2.9.4-1ubuntu3.1)
  3423. [09:03:06] Found package: libgcc1:amd64 (version: 1:6.0.1-0ubuntu1)
  3424. [09:03:06] Found package: libgcrypt20:amd64 (version: 1.6.5-2ubuntu0.5)
  3425. [09:03:06] Found package: libgdbm3:amd64 (version: 1.8.3-13.1)
  3426. [09:03:06] Found package: libgeoip1:amd64 (version: 1.6.9-1)
  3427. [09:03:06] Found package: libgirepository-1.0-1:amd64 (version: 1.46.0-3ubuntu1)
  3428. [09:03:06] Found package: libglib2.0-0:amd64 (version: 2.48.2-0ubuntu4.1)
  3429. [09:03:06] Found package: libglib2.0-data (version: 2.48.2-0ubuntu4.1)
  3430. [09:03:06] Found package: libgmp10:amd64 (version: 2:6.1.0+dfsg-2)
  3431. [09:03:06] Found package: libgnutls-openssl27:amd64 (version: 3.4.10-4ubuntu1.4)
  3432. [09:03:06] Found package: libgnutls30:amd64 (version: 3.4.10-4ubuntu1.4)
  3433. [09:03:06] Found package: libgpg-error0:amd64 (version: 1.21-2ubuntu1)
  3434. [09:03:06] Found package: libgpm2:amd64 (version: 1.20.4-6.1)
  3435. [09:03:06] Found package: libgssapi-krb5-2:amd64 (version: 1.13.2+dfsg-5ubuntu2)
  3436. [09:03:06] Found package: libgssapi3-heimdal:amd64 (version: 1.7~git20150920+dfsg-4ubuntu1.16.04.1)
  3437. [09:03:06] Found package: libhcrypto4-heimdal:amd64 (version: 1.7~git20150920+dfsg-4ubuntu1.16.04.1)
  3438. [09:03:06] Found package: libheimbase1-heimdal:amd64 (version: 1.7~git20150920+dfsg-4ubuntu1.16.04.1)
  3439. [09:03:06] Found package: libheimntlm0-heimdal:amd64 (version: 1.7~git20150920+dfsg-4ubuntu1.16.04.1)
  3440. [09:03:06] Found package: libhogweed4:amd64 (version: 3.2-1ubuntu0.16.04.1)
  3441. [09:03:06] Found package: libhx509-5-heimdal:amd64 (version: 1.7~git20150920+dfsg-4ubuntu1.16.04.1)
  3442. [09:03:06] Found package: libicu55:amd64 (version: 55.1-7ubuntu0.4)
  3443. [09:03:06] Found package: libidn11:amd64 (version: 1.32-3ubuntu1.2)
  3444. [09:03:06] Found package: libisc-export160 (version: 1:9.10.3.dfsg.P4-8ubuntu1.11)
  3445. [09:03:06] Found package: libisc160:amd64 (version: 1:9.10.3.dfsg.P4-8ubuntu1.11)
  3446. [09:03:06] Found package: libisccc140:amd64 (version: 1:9.10.3.dfsg.P4-8ubuntu1.11)
  3447. [09:03:06] Found package: libisccfg140:amd64 (version: 1:9.10.3.dfsg.P4-8ubuntu1.11)
  3448. [09:03:06] Found package: libjson-c2:amd64 (version: 0.11-4ubuntu2)
  3449. [09:03:06] Found package: libk5crypto3:amd64 (version: 1.13.2+dfsg-5ubuntu2)
  3450. [09:03:06] Found package: libkeyutils1:amd64 (version: 1.5.9-8ubuntu1)
  3451. [09:03:06] Found package: libklibc (version: 2.0.4-8ubuntu1.16.04.4)
  3452. [09:03:06] Found package: libkmod2:amd64 (version: 22-1ubuntu5)
  3453. [09:03:06] Found package: libkrb5-26-heimdal:amd64 (version: 1.7~git20150920+dfsg-4ubuntu1.16.04.1)
  3454. [09:03:06] Found package: libkrb5-3:amd64 (version: 1.13.2+dfsg-5ubuntu2)
  3455. [09:03:06] Found package: libkrb5support0:amd64 (version: 1.13.2+dfsg-5ubuntu2)
  3456. [09:03:06] Found package: libldap-2.4-2:amd64 (version: 2.4.42+dfsg-2ubuntu3.3)
  3457. [09:03:06] Found package: liblocale-gettext-perl (version: 1.07-1build1)
  3458. [09:03:06] Found package: liblvm2app2.2:amd64 (version: 2.02.133-1ubuntu10)
  3459. [09:03:06] Found package: liblvm2cmd2.02:amd64 (version: 2.02.133-1ubuntu10)
  3460. [09:03:06] Found package: liblwres141:amd64 (version: 1:9.10.3.dfsg.P4-8ubuntu1.11)
  3461. [09:03:06] Found package: liblxc1 (version: 2.0.8-0ubuntu1~16.04.2)
  3462. [09:03:06] Found package: liblz4-1:amd64 (version: 0.0~r131-2ubuntu2)
  3463. [09:03:06] Found package: liblzma5:amd64 (version: 5.1.1alpha+20120614-2ubuntu2)
  3464. [09:03:06] Found package: liblzo2-2:amd64 (version: 2.08-1.2)
  3465. [09:03:06] Found package: libmagic1:amd64 (version: 1:5.25-2ubuntu1.1)
  3466. [09:03:06] Found package: libmnl0:amd64 (version: 1.0.3-5)
  3467. [09:03:06] Found package: libmount1:amd64 (version: 2.27.1-6ubuntu3.4)
  3468. [09:03:06] Found package: libmpdec2:amd64 (version: 2.4.2-1)
  3469. [09:03:06] Found package: libmpfr4:amd64 (version: 3.1.4-1)
  3470. [09:03:06] Found package: libmspack0:amd64 (version: 0.5-1ubuntu0.16.04.2)
  3471. [09:03:06] Found package: libncurses5:amd64 (version: 6.0+20160213-1ubuntu1)
  3472. [09:03:06] Found package: libncursesw5:amd64 (version: 6.0+20160213-1ubuntu1)
  3473. [09:03:06] Found package: libnetfilter-conntrack3:amd64 (version: 1.0.5-1)
  3474. [09:03:06] Found package: libnettle6:amd64 (version: 3.2-1ubuntu0.16.04.1)
  3475. [09:03:06] Found package: libnewt0.52:amd64 (version: 0.52.18-1ubuntu2)
  3476. [09:03:06] Found package: libnfnetlink0:amd64 (version: 1.0.1-3)
  3477. [09:03:06] Found package: libnih1:amd64 (version: 1.0.3-4.3ubuntu1)
  3478. [09:03:06] Found package: libnuma1:amd64 (version: 2.0.11-1ubuntu1.1)
  3479. [09:03:06] Found package: libp11-kit0:amd64 (version: 0.23.2-5~ubuntu16.04.1)
  3480. [09:03:06] Found package: libpam-modules-bin (version: 1.1.8-3.2ubuntu2.1)
  3481. [09:03:06] Found package: libpam-modules:amd64 (version: 1.1.8-3.2ubuntu2.1)
  3482. [09:03:06] Found package: libpam-runtime (version: 1.1.8-3.2ubuntu2.1)
  3483. [09:03:06] Found package: libpam-systemd:amd64 (version: 229-4ubuntu21.2)
  3484. [09:03:06] Found package: libpam0g:amd64 (version: 1.1.8-3.2ubuntu2.1)
  3485. [09:03:06] Found package: libparted2:amd64 (version: 3.2-15ubuntu0.1)
  3486. [09:03:06] Found package: libpcap0.8:amd64 (version: 1.7.4-2)
  3487. [09:03:06] Found package: libpci3:amd64 (version: 1:3.3.1-1.1ubuntu1.2)
  3488. [09:03:06] Found package: libpcre3:amd64 (version: 2:8.38-3.1)
  3489. [09:03:06] Found package: libperl5.22:amd64 (version: 5.22.1-9ubuntu0.5)
  3490. [09:03:06] Found package: libpipeline1:amd64 (version: 1.4.1-2)
  3491. [09:03:06] Found package: libplymouth4:amd64 (version: 0.9.2-3ubuntu13.5)
  3492. [09:03:06] Found package: libpng12-0:amd64 (version: 1.2.54-1ubuntu1.1)
  3493. [09:03:06] Found package: libpolkit-agent-1-0:amd64 (version: 0.105-14.1ubuntu0.1)
  3494. [09:03:06] Found package: libpolkit-backend-1-0:amd64 (version: 0.105-14.1ubuntu0.1)
  3495. [09:03:06] Found package: libpolkit-gobject-1-0:amd64 (version: 0.105-14.1ubuntu0.1)
  3496. [09:03:06] Found package: libpopt0:amd64 (version: 1.16-10)
  3497. [09:03:06] Found package: libprocps4:amd64 (version: 2:3.3.10-4ubuntu2.4)
  3498. [09:03:06] Found package: libpython-stdlib:amd64 (version: 2.7.12-1~16.04)
  3499. [09:03:06] Found package: libpython2.7-minimal:amd64 (version: 2.7.12-1ubuntu0~16.04.3)
  3500. [09:03:06] Found package: libpython2.7-stdlib:amd64 (version: 2.7.12-1ubuntu0~16.04.3)
  3501. [09:03:06] Found package: libpython3-stdlib:amd64 (version: 3.5.1-3)
  3502. [09:03:06] Found package: libpython3.5-minimal:amd64 (version: 3.5.2-2ubuntu0~16.04.4)
  3503. [09:03:06] Found package: libpython3.5-stdlib:amd64 (version: 3.5.2-2ubuntu0~16.04.4)
  3504. [09:03:06] Found package: libpython3.5:amd64 (version: 3.5.2-2ubuntu0~16.04.4)
  3505. [09:03:06] Found package: libreadline5:amd64 (version: 5.2+dfsg-3build1)
  3506. [09:03:06] Found package: libreadline6:amd64 (version: 6.3-8ubuntu2)
  3507. [09:03:06] Found package: libroken18-heimdal:amd64 (version: 1.7~git20150920+dfsg-4ubuntu1.16.04.1)
  3508. [09:03:06] Found package: librtmp1:amd64 (version: 2.4+20151223.gitfa8646d-1ubuntu0.1)
  3509. [09:03:06] Found package: libsasl2-2:amd64 (version: 2.1.26.dfsg1-14build1)
  3510. [09:03:06] Found package: libsasl2-modules-db:amd64 (version: 2.1.26.dfsg1-14build1)
  3511. [09:03:06] Found package: libsasl2-modules:amd64 (version: 2.1.26.dfsg1-14build1)
  3512. [09:03:06] Found package: libseccomp2:amd64 (version: 2.3.1-2.1ubuntu2~16.04.1)
  3513. [09:03:06] Found package: libselinux1:amd64 (version: 2.4-3build2)
  3514. [09:03:06] Found package: libsemanage-common (version: 2.3-1build3)
  3515. [09:03:06] Found package: libsemanage1:amd64 (version: 2.3-1build3)
  3516. [09:03:06] Found package: libsepol1:amd64 (version: 2.4-2)
  3517. [09:03:06] Found package: libsigsegv2:amd64 (version: 2.10-4)
  3518. [09:03:06] Found package: libslang2:amd64 (version: 2.3.0-2ubuntu1)
  3519. [09:03:06] Found package: libsmartcols1:amd64 (version: 2.27.1-6ubuntu3.4)
  3520. [09:03:06] Found package: libsqlite3-0:amd64 (version: 3.11.0-1ubuntu1)
  3521. [09:03:06] Found package: libss2:amd64 (version: 1.42.13-1ubuntu1)
  3522. [09:03:06] Found package: libssl1.0.0:amd64 (version: 1.0.2g-1ubuntu4.13)
  3523. [09:03:06] Found package: libstdc++6:amd64 (version: 5.4.0-6ubuntu1~16.04.10)
  3524. [09:03:06] Found package: libsystemd0:amd64 (version: 229-4ubuntu21.2)
  3525. [09:03:06] Found package: libtasn1-6:amd64 (version: 4.7-3ubuntu0.16.04.3)
  3526. [09:03:06] Found package: libtext-charwidth-perl (version: 0.04-7build5)
  3527. [09:03:06] Found package: libtext-iconv-perl (version: 1.7-5build4)
  3528. [09:03:06] Found package: libtext-wrapi18n-perl (version: 0.06-7.1)
  3529. [09:03:06] Found package: libtinfo5:amd64 (version: 6.0+20160213-1ubuntu1)
  3530. [09:03:06] Found package: libudev1:amd64 (version: 229-4ubuntu21.2)
  3531. [09:03:06] Found package: libusb-0.1-4:amd64 (version: 2:0.1.12-28)
  3532. [09:03:06] Found package: libusb-1.0-0:amd64 (version: 2:1.0.20-1)
  3533. [09:03:06] Found package: libustr-1.0-1:amd64 (version: 1.0.4-5)
  3534. [09:03:06] Found package: libutempter0:amd64 (version: 1.1.6-3)
  3535. [09:03:06] Found package: libuuid1:amd64 (version: 2.27.1-6ubuntu3.4)
  3536. [09:03:06] Found package: libwind0-heimdal:amd64 (version: 1.7~git20150920+dfsg-4ubuntu1.16.04.1)
  3537. [09:03:06] Found package: libwrap0:amd64 (version: 7.6.q-25)
  3538. [09:03:06] Found package: libx11-6:amd64 (version: 2:1.6.3-1ubuntu2.1)
  3539. [09:03:06] Found package: libx11-data (version: 2:1.6.3-1ubuntu2.1)
  3540. [09:03:06] Found package: libxau6:amd64 (version: 1:1.0.8-1)
  3541. [09:03:06] Found package: libxcb1:amd64 (version: 1.11.1-1ubuntu1)
  3542. [09:03:06] Found package: libxdmcp6:amd64 (version: 1:1.1.2-1.1)
  3543. [09:03:06] Found package: libxext6:amd64 (version: 2:1.3.3-1)
  3544. [09:03:06] Found package: libxml2:amd64 (version: 2.9.3+dfsg1-1ubuntu0.6)
  3545. [09:03:06] Found package: libxmuu1:amd64 (version: 2:1.1.2-2)
  3546. [09:03:06] Found package: libxtables11:amd64 (version: 1.6.0-2ubuntu3)
  3547. [09:03:06] Found package: libyaml-0-2:amd64 (version: 0.1.6-3)
  3548. [09:03:06] Found package: linux-base (version: 4.5ubuntu1~16.04.1)
  3549. [09:03:06] Found package: linux-headers-4.4.0-103 (version: 4.4.0-103.126)
  3550. [09:03:06] Found package: linux-headers-4.4.0-103-generic (version: 4.4.0-103.126)
  3551. [09:03:06] Found package: linux-headers-4.4.0-104 (version: 4.4.0-104.127)
  3552. [09:03:06] Found package: linux-headers-4.4.0-104-generic (version: 4.4.0-104.127)
  3553. [09:03:06] Found package: linux-headers-4.4.0-108 (version: 4.4.0-108.131)
  3554. [09:03:06] Found package: linux-headers-4.4.0-108-generic (version: 4.4.0-108.131)
  3555. [09:03:06] Found package: linux-headers-4.4.0-109 (version: 4.4.0-109.132)
  3556. [09:03:06] Found package: linux-headers-4.4.0-109-generic (version: 4.4.0-109.132)
  3557. [09:03:06] Found package: linux-headers-4.4.0-112 (version: 4.4.0-112.135)
  3558. [09:03:06] Found package: linux-headers-4.4.0-112-generic (version: 4.4.0-112.135)
  3559. [09:03:06] Found package: linux-headers-4.4.0-116 (version: 4.4.0-116.140)
  3560. [09:03:06] Found package: linux-headers-4.4.0-116-generic (version: 4.4.0-116.140)
  3561. [09:03:06] Found package: linux-headers-4.4.0-119 (version: 4.4.0-119.143)
  3562. [09:03:06] Found package: linux-headers-4.4.0-119-generic (version: 4.4.0-119.143)
  3563. [09:03:06] Found package: linux-headers-4.4.0-121 (version: 4.4.0-121.145)
  3564. [09:03:06] Found package: linux-headers-4.4.0-121-generic (version: 4.4.0-121.145)
  3565. [09:03:06] Found package: linux-headers-4.4.0-124 (version: 4.4.0-124.148)
  3566. [09:03:06] Found package: linux-headers-4.4.0-124-generic (version: 4.4.0-124.148)
  3567. [09:03:06] Found package: linux-headers-4.4.0-127 (version: 4.4.0-127.153)
  3568. [09:03:06] Found package: linux-headers-4.4.0-127-generic (version: 4.4.0-127.153)
  3569. [09:03:06] Found package: linux-headers-4.4.0-128 (version: 4.4.0-128.154)
  3570. [09:03:06] Found package: linux-headers-4.4.0-128-generic (version: 4.4.0-128.154)
  3571. [09:03:06] Found package: linux-headers-4.4.0-130 (version: 4.4.0-130.156)
  3572. [09:03:06] Found package: linux-headers-4.4.0-130-generic (version: 4.4.0-130.156)
  3573. [09:03:06] Found package: linux-headers-4.4.0-133 (version: 4.4.0-133.159)
  3574. [09:03:06] Found package: linux-headers-4.4.0-133-generic (version: 4.4.0-133.159)
  3575. [09:03:06] Found package: linux-headers-4.4.0-134 (version: 4.4.0-134.160)
  3576. [09:03:06] Found package: linux-headers-4.4.0-134-generic (version: 4.4.0-134.160)
  3577. [09:03:06] Found package: linux-headers-4.4.0-137 (version: 4.4.0-137.163)
  3578. [09:03:06] Found package: linux-headers-4.4.0-137-generic (version: 4.4.0-137.163)
  3579. [09:03:06] Found package: linux-headers-generic (version: 4.4.0.137.143)
  3580. [09:03:06] Found package: linux-headers-virtual (version: 4.4.0.137.143)
  3581. [09:03:07] Found package: linux-image-4.4.0-103-generic (version: 4.4.0-103.126)
  3582. [09:03:07] Found package: linux-image-4.4.0-104-generic (version: 4.4.0-104.127)
  3583. [09:03:07] Found package: linux-image-4.4.0-108-generic (version: 4.4.0-108.131)
  3584. [09:03:07] Found package: linux-image-4.4.0-109-generic (version: 4.4.0-109.132)
  3585. [09:03:07] Found package: linux-image-4.4.0-112-generic (version: 4.4.0-112.135)
  3586. [09:03:07] Found package: linux-image-4.4.0-116-generic (version: 4.4.0-116.140)
  3587. [09:03:07] Found package: linux-image-4.4.0-119-generic (version: 4.4.0-119.143)
  3588. [09:03:07] Found package: linux-image-4.4.0-121-generic (version: 4.4.0-121.145)
  3589. [09:03:07] Found package: linux-image-4.4.0-124-generic (version: 4.4.0-124.148)
  3590. [09:03:07] Found package: linux-image-4.4.0-127-generic (version: 4.4.0-127.153)
  3591. [09:03:07] Found package: linux-image-4.4.0-128-generic (version: 4.4.0-128.154)
  3592. [09:03:07] Found package: linux-image-4.4.0-130-generic (version: 4.4.0-130.156)
  3593. [09:03:07] Found package: linux-image-4.4.0-133-generic (version: 4.4.0-133.159)
  3594. [09:03:07] Found package: linux-image-4.4.0-134-generic (version: 4.4.0-134.160)
  3595. [09:03:07] Found package: linux-image-4.4.0-137-generic (version: 4.4.0-137.163)
  3596. [09:03:07] Found package: linux-image-virtual (version: 4.4.0.137.143)
  3597. [09:03:07] Found package: linux-virtual (version: 4.4.0.137.143)
  3598. [09:03:07] Found package: locales (version: 2.23-0ubuntu10)
  3599. [09:03:07] Found package: login (version: 1:4.2-3.1ubuntu5.3)
  3600. [09:03:07] Found package: logrotate (version: 3.8.7-2ubuntu2.16.04.2)
  3601. [09:03:07] Found package: lsb-base (version: 9.20160110ubuntu0.2)
  3602. [09:03:07] Found package: lsb-release (version: 9.20160110ubuntu0.2)
  3603. [09:03:07] Found package: lshw (version: 02.17-1.1ubuntu3.5)
  3604. [09:03:07] Found package: lsof (version: 4.89+dfsg-0.1)
  3605. [09:03:07] Found package: ltrace (version: 0.7.3-5.1ubuntu4)
  3606. [09:03:07] Found package: lvm2 (version: 2.02.133-1ubuntu10)
  3607. [09:03:07] Found package: lxc-common (version: 2.0.8-0ubuntu1~16.04.2)
  3608. [09:03:07] Found package: lxcfs (version: 2.0.8-0ubuntu1~16.04.2)
  3609. [09:03:07] Found package: lxd (version: 2.0.11-0ubuntu1~16.04.4)
  3610. [09:03:07] Found package: lxd-client (version: 2.0.11-0ubuntu1~16.04.4)
  3611. [09:03:07] Found package: lynis (version: 2.1.1-1)
  3612. [09:03:07] Found package: makedev (version: 2.3.1-93ubuntu2~ubuntu16.04.1)
  3613. [09:03:07] Found package: man-db (version: 2.7.5-1)
  3614. [09:03:07] Found package: manpages (version: 4.04-2)
  3615. [09:03:07] Found package: mawk (version: 1.3.3-17ubuntu2)
  3616. [09:03:07] Found package: mdadm (version: 3.3-2ubuntu7.6)
  3617. [09:03:07] Found package: menu (version: 2.1.47ubuntu1.16.04.1)
  3618. [09:03:07] Found package: mime-support (version: 3.59ubuntu1)
  3619. [09:03:07] Found package: mlocate (version: 0.26-1ubuntu2)
  3620. [09:03:07] Found package: mokutil (version: 0.3.0-0ubuntu3)
  3621. [09:03:07] Found package: mount (version: 2.27.1-6ubuntu3.4)
  3622. [09:03:07] Found package: mtr-tiny (version: 0.86-1ubuntu0.1)
  3623. [09:03:07] Found package: multiarch-support (version: 2.23-0ubuntu10)
  3624. [09:03:07] Found package: nano (version: 2.5.3-2ubuntu2)
  3625. [09:03:07] Found package: ncurses-base (version: 6.0+20160213-1ubuntu1)
  3626. [09:03:07] Found package: ncurses-bin (version: 6.0+20160213-1ubuntu1)
  3627. [09:03:07] Found package: ncurses-term (version: 6.0+20160213-1ubuntu1)
  3628. [09:03:07] Found package: net-tools (version: 1.60-26ubuntu1)
  3629. [09:03:07] Found package: netbase (version: 5.3)
  3630. [09:03:07] Found package: netcat-openbsd (version: 1.105-7ubuntu1)
  3631. [09:03:07] Found package: nodejs (version: 8.11.3-1nodesource1)
  3632. [09:03:07] Found package: ntfs-3g (version: 1:2015.3.14AR.1-1ubuntu0.1)
  3633. [09:03:07] Found package: open-iscsi (version: 2.0.873+git0.3b4b4500-14ubuntu3.4)
  3634. [09:03:07] Found package: open-vm-tools (version: 2:10.0.7-3227872-5ubuntu1~16.04.1)
  3635. [09:03:07] Found package: openssh-client (version: 1:7.2p2-4ubuntu2.4)
  3636. [09:03:07] Found package: openssh-server (version: 1:7.2p2-4ubuntu2.4)
  3637. [09:03:07] Found package: openssh-sftp-server (version: 1:7.2p2-4ubuntu2.4)
  3638. [09:03:07] Found package: openssl (version: 1.0.2g-1ubuntu4.13)
  3639. [09:03:07] Found package: os-prober (version: 1.70ubuntu3.3)
  3640. [09:03:07] Found package: overlayroot (version: 0.27ubuntu1.5)
  3641. [09:03:07] Found package: parted (version: 3.2-15ubuntu0.1)
  3642. [09:03:07] Found package: passwd (version: 1:4.2-3.1ubuntu5.3)
  3643. [09:03:07] Found package: pastebinit (version: 1.5-1)
  3644. [09:03:07] Found package: patch (version: 2.7.5-1ubuntu0.16.04.1)
  3645. [09:03:07] Found package: pciutils (version: 1:3.3.1-1.1ubuntu1.2)
  3646. [09:03:07] Found package: perl (version: 5.22.1-9ubuntu0.5)
  3647. [09:03:07] Found package: perl-base (version: 5.22.1-9ubuntu0.5)
  3648. [09:03:07] Found package: perl-modules-5.22 (version: 5.22.1-9ubuntu0.5)
  3649. [09:03:07] Found package: plymouth (version: 0.9.2-3ubuntu13.5)
  3650. [09:03:07] Found package: plymouth-theme-ubuntu-text (version: 0.9.2-3ubuntu13.5)
  3651. [09:03:07] Found package: policykit-1 (version: 0.105-14.1ubuntu0.1)
  3652. [09:03:07] Found package: pollinate (version: 4.33-0ubuntu1~16.04.1)
  3653. [09:03:07] Found package: popularity-contest (version: 1.64ubuntu2)
  3654. [09:03:07] Found package: powermgmt-base (version: 1.31+nmu1)
  3655. [09:03:07] Found package: procps (version: 2:3.3.10-4ubuntu2.4)
  3656. [09:03:07] Found package: psmisc (version: 22.21-2.1build1)
  3657. [09:03:07] Found package: python (version: 2.7.12-1~16.04)
  3658. [09:03:07] Found package: python-apt-common (version: 1.1.0~beta1ubuntu0.16.04.2)
  3659. [09:03:07] Found package: python-minimal (version: 2.7.12-1~16.04)
  3660. [09:03:07] Found package: python2.7 (version: 2.7.12-1ubuntu0~16.04.3)
  3661. [09:03:07] Found package: python2.7-minimal (version: 2.7.12-1ubuntu0~16.04.3)
  3662. [09:03:07] Found package: python3 (version: 3.5.1-3)
  3663. [09:03:07] Found package: python3-apport (version: 2.20.1-0ubuntu2.18)
  3664. [09:03:07] Found package: python3-apt (version: 1.1.0~beta1ubuntu0.16.04.2)
  3665. [09:03:07] Found package: python3-blinker (version: 1.3.dfsg2-1build1)
  3666. [09:03:07] Found package: python3-cffi-backend (version: 1.5.2-1ubuntu1)
  3667. [09:03:07] Found package: python3-chardet (version: 2.3.0-2)
  3668. [09:03:07] Found package: python3-commandnotfound (version: 0.3ubuntu16.04.2)
  3669. [09:03:07] Found package: python3-configobj (version: 5.0.6-2)
  3670. [09:03:07] Found package: python3-cryptography (version: 1.2.3-1ubuntu0.1)
  3671. [09:03:07] Found package: python3-dbus (version: 1.2.0-3)
  3672. [09:03:07] Found package: python3-debian (version: 0.1.27ubuntu2)
  3673. [09:03:07] Found package: python3-distupgrade (version: 1:16.04.25)
  3674. [09:03:07] Found package: python3-gdbm:amd64 (version: 3.5.1-1)
  3675. [09:03:07] Found package: python3-gi (version: 3.20.0-0ubuntu1)
  3676. [09:03:07] Found package: python3-idna (version: 2.0-3)
  3677. [09:03:07] Found package: python3-jinja2 (version: 2.8-1)
  3678. [09:03:07] Found package: python3-json-pointer (version: 1.9-3)
  3679. [09:03:07] Found package: python3-jsonpatch (version: 1.19-3)
  3680. [09:03:07] Found package: python3-jwt (version: 1.3.0-1ubuntu0.1)
  3681. [09:03:07] Found package: python3-markupsafe (version: 0.23-2build2)
  3682. [09:03:07] Found package: python3-minimal (version: 3.5.1-3)
  3683. [09:03:07] Found package: python3-newt (version: 0.52.18-1ubuntu2)
  3684. [09:03:07] Found package: python3-oauthlib (version: 1.0.3-1)
  3685. [09:03:07] Found package: python3-pkg-resources (version: 20.7.0-1)
  3686. [09:03:07] Found package: python3-prettytable (version: 0.7.2-3)
  3687. [09:03:07] Found package: python3-problem-report (version: 2.20.1-0ubuntu2.18)
  3688. [09:03:07] Found package: python3-pyasn1 (version: 0.1.9-1)
  3689. [09:03:07] Found package: python3-pycurl (version: 7.43.0-1ubuntu1)
  3690. [09:03:07] Found package: python3-requests (version: 2.9.1-3)
  3691. [09:03:07] Found package: python3-serial (version: 3.0.1-1)
  3692. [09:03:07] Found package: python3-six (version: 1.10.0-3)
  3693. [09:03:07] Found package: python3-software-properties (version: 0.96.20.7)
  3694. [09:03:07] Found package: python3-systemd (version: 231-2build1)
  3695. [09:03:07] Found package: python3-update-manager (version: 1:16.04.13)
  3696. [09:03:07] Found package: python3-urllib3 (version: 1.13.1-2ubuntu0.16.04.1)
  3697. [09:03:07] Found package: python3-yaml (version: 3.11-3build1)
  3698. [09:03:07] Found package: python3.5 (version: 3.5.2-2ubuntu0~16.04.4)
  3699. [09:03:07] Found package: python3.5-minimal (version: 3.5.2-2ubuntu0~16.04.4)
  3700. [09:03:07] Found package: readline-common (version: 6.3-8ubuntu2)
  3701. [09:03:07] Found package: rename (version: 0.20-4)
  3702. [09:03:07] Found package: resolvconf (version: 1.78ubuntu6)
  3703. [09:03:07] Found package: rsync (version: 3.1.1-3ubuntu1.2)
  3704. [09:03:07] Found package: rsyslog (version: 8.16.0-1ubuntu3)
  3705. [09:03:07] Found package: run-one (version: 1.17-0ubuntu1)
  3706. [09:03:07] Found package: sbsigntool (version: 0.6-0ubuntu10.1)
  3707. [09:03:07] Found package: screen (version: 4.3.1-2build1)
  3708. [09:03:07] Found package: secureboot-db (version: 1.1)
  3709. [09:03:07] Found package: sed (version: 4.2.2-7)
  3710. [09:03:07] Found package: sensible-utils (version: 0.0.9ubuntu0.16.04.1)
  3711. [09:03:07] Found package: sgml-base (version: 1.26+nmu4ubuntu1)
  3712. [09:03:07] Found package: shared-mime-info (version: 1.5-2ubuntu0.1)
  3713. [09:03:07] Found package: shim (version: 13-0ubuntu2)
  3714. [09:03:07] Found package: shim-signed (version: 1.33.1~16.04.1+13-0ubuntu2)
  3715. [09:03:07] Found package: snapd (version: 2.33.1ubuntu2)
  3716. [09:03:07] Found package: software-properties-common (version: 0.96.20.7)
  3717. [09:03:07] Found package: sosreport (version: 3.5-1~ubuntu16.04.3)
  3718. [09:03:07] Found package: squashfs-tools (version: 1:4.3-3ubuntu2.16.04.2)
  3719. [09:03:07] Found package: ssh-import-id (version: 5.5-0ubuntu1)
  3720. [09:03:07] Found package: strace (version: 4.11-1ubuntu3)
  3721. [09:03:07] Found package: sudo (version: 1.8.16-0ubuntu1.5)
  3722. [09:03:07] Found package: systemd (version: 229-4ubuntu21.2)
  3723. [09:03:07] Found package: systemd-sysv (version: 229-4ubuntu21.2)
  3724. [09:03:07] Found package: sysv-rc (version: 2.88dsf-59.3ubuntu2)
  3725. [09:03:07] Found package: sysvinit-utils (version: 2.88dsf-59.3ubuntu2)
  3726. [09:03:07] Found package: tar (version: 1.28-2.1ubuntu0.1)
  3727. [09:03:07] Found package: tcpd (version: 7.6.q-25)
  3728. [09:03:07] Found package: tcpdump (version: 4.9.2-0ubuntu0.16.04.1)
  3729. [09:03:07] Found package: telnet (version: 0.17-40)
  3730. [09:03:07] Found package: time (version: 1.7-25.1)
  3731. [09:03:07] Found package: tmux (version: 2.1-3build1)
  3732. [09:03:07] Found package: tzdata (version: 2018e-0ubuntu0.16.04)
  3733. [09:03:07] Found package: ubuntu-cloudimage-keyring (version: 2013.11.11)
  3734. [09:03:07] Found package: ubuntu-core-launcher (version: 2.33.1ubuntu2)
  3735. [09:03:07] Found package: ubuntu-keyring (version: 2012.05.19)
  3736. [09:03:07] Found package: ubuntu-minimal (version: 1.361.1)
  3737. [09:03:07] Found package: ubuntu-release-upgrader-core (version: 1:16.04.25)
  3738. [09:03:07] Found package: ubuntu-server (version: 1.361.1)
  3739. [09:03:07] Found package: ubuntu-standard (version: 1.361.1)
  3740. [09:03:07] Found package: ucf (version: 3.0036)
  3741. [09:03:07] Found package: udev (version: 229-4ubuntu21.2)
  3742. [09:03:07] Found package: ufw (version: 0.35-0ubuntu2)
  3743. [09:03:07] Found package: uidmap (version: 1:4.2-3.1ubuntu5.3)
  3744. [09:03:07] Found package: unattended-upgrades (version: 0.90ubuntu0.9)
  3745. [09:03:07] Found package: update-manager-core (version: 1:16.04.13)
  3746. [09:03:07] Found package: update-notifier-common (version: 3.168.9)
  3747. [09:03:07] Found package: ureadahead (version: 0.100.0-19)
  3748. [09:03:07] Found package: usbutils (version: 1:007-4)
  3749. [09:03:07] Found package: util-linux (version: 2.27.1-6ubuntu3.4)
  3750. [09:03:07] Found package: uuid-runtime (version: 2.27.1-6ubuntu3.4)
  3751. [09:03:07] Found package: vim (version: 2:7.4.1689-3ubuntu1.2)
  3752. [09:03:07] Found package: vim-common (version: 2:7.4.1689-3ubuntu1.2)
  3753. [09:03:07] Found package: vim-runtime (version: 2:7.4.1689-3ubuntu1.2)
  3754. [09:03:07] Found package: vim-tiny (version: 2:7.4.1689-3ubuntu1.2)
  3755. [09:03:07] Found package: vlan (version: 1.9-3.2ubuntu1.16.04.5)
  3756. [09:03:07] Found package: wget (version: 1.17.1-1ubuntu1.4)
  3757. [09:03:07] Found package: whiptail (version: 0.52.18-1ubuntu2)
  3758. [09:03:07] Found package: xauth (version: 1:1.0.9-1ubuntu2)
  3759. [09:03:07] Found package: xdg-user-dirs (version: 0.15-2ubuntu6.16.04.1)
  3760. [09:03:07] Found package: xfsprogs (version: 4.3.0+nmu1ubuntu1.1)
  3761. [09:03:07] Found package: xkb-data (version: 2.16-1ubuntu1)
  3762. [09:03:07] Found package: xml-core (version: 0.13+nmu2)
  3763. [09:03:07] Found package: xz-utils (version: 5.1.1alpha+20120614-2ubuntu2)
  3764. [09:03:07] Found package: zerofree (version: 1.0.3-1)
  3765. [09:03:07] Found package: zlib1g:amd64 (version: 1:1.2.8.dfsg-2ubuntu4.1)
  3766. [09:03:07] ===---------------------------------------------------------------===
  3767. [09:03:07] Performing test ID PKGS-7346 (Search unpurged packages on system)
  3768. [09:03:07] Test: Querying dpkg -l to get unpurged packages
  3769. [09:03:07] Result: found one or more packages with left over configuration files, cron jobs etc
  3770. [09:03:07] Output:
  3771. [09:03:07] Found unpurged package: grub-pc
  3772. [09:03:07] Suggestion: Purge old/removed packages (1 found) with aptitude purge or dpkg --purge command. This will cleanup old configuration files, cron jobs and startup scripts. [PKGS-7346]
  3773. [09:03:07] ===---------------------------------------------------------------===
  3774. [09:03:07] Skipped test PKGS-7348 (Check for old distfiles)
  3775. [09:03:07] Reason to skip: Incorrect guest OS (FreeBSD only)
  3776. [09:03:07] ===---------------------------------------------------------------===
  3777. [09:03:07] Skipped test PKGS-7366 (Checking for debsecan utility)
  3778. [09:03:07] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3779. [09:03:07] ===---------------------------------------------------------------===
  3780. [09:03:07] Performing test ID PKGS-7370 (Checking for debsums utility)
  3781. [09:03:07] Result: debsums utility is not installed.
  3782. [09:03:07] Hardening: assigned 0 hardening points (max for this item: 2), current: 57, total: 108
  3783. [09:03:07] Suggestion: Install debsums utility for the verification of packages with known good database. [PKGS-7370]
  3784. [09:03:07] ===---------------------------------------------------------------===
  3785. [09:03:07] Skipped test PKGS-7378 (Query portmaster for port upgrades)
  3786. [09:03:07] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3787. [09:03:07] ===---------------------------------------------------------------===
  3788. [09:03:07] Skipped test PKGS-7381 (Check for vulnerable NetBSD packages)
  3789. [09:03:07] Reason to skip: Incorrect guest OS (NetBSD only)
  3790. [09:03:07] ===---------------------------------------------------------------===
  3791. [09:03:07] Skipped test PKGS-7381 (Check for vulnerable FreeBSD packages)
  3792. [09:03:07] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3793. [09:03:07] ===---------------------------------------------------------------===
  3794. [09:03:07] Skipped test PKGS-7382 (Check for vulnerable FreeBSD packages)
  3795. [09:03:07] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3796. [09:03:07] ===---------------------------------------------------------------===
  3797. [09:03:07] Skipped test PKGS-7383 (Check for YUM package Update management)
  3798. [09:03:07] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3799. [09:03:07] ===---------------------------------------------------------------===
  3800. [09:03:07] Skipped test PKGS-7384 (Check for YUM utils package)
  3801. [09:03:07] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3802. [09:03:07] ===---------------------------------------------------------------===
  3803. [09:03:07] Skipped test PKGS-7386 (Check for YUM security package)
  3804. [09:03:07] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3805. [09:03:07] ===---------------------------------------------------------------===
  3806. [09:03:07] Skipped test PKGS-7387 (Check for GPG signing in YUM security package)
  3807. [09:03:07] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3808. [09:03:07] ===---------------------------------------------------------------===
  3809. [09:03:07] Performing test ID PKGS-7388 (Check security repository in Debian/ubuntu apt sources.list file)
  3810. [09:03:07] Searching for security.debian.org/security.ubuntu.com or security repositories in /etc/apt/sources.list file
  3811. [09:03:07] Result: Found security repository in /etc/apt/sources.list
  3812. [09:03:07] Output: deb http://security.ubuntu.com/ubuntu xenial-security main restricted
  3813. [09:03:07] Output: deb-src http://security.ubuntu.com/ubuntu xenial-security main restricted
  3814. [09:03:07] Output: deb http://security.ubuntu.com/ubuntu xenial-security universe
  3815. [09:03:07] Output: deb-src http://security.ubuntu.com/ubuntu xenial-security universe
  3816. [09:03:07] Output: deb http://security.ubuntu.com/ubuntu xenial-security multiverse
  3817. [09:03:07] Output: deb-src http://security.ubuntu.com/ubuntu xenial-security multiverse
  3818. [09:03:07] Searching for security.debian.org/security.ubuntu.com or security repositories in /etc/apt/sources.list.d directory
  3819. [09:03:07] Result: security repository was found
  3820. [09:03:07] Hardening: assigned 3 hardening points (max for this item: 3), current: 60, total: 111
  3821. [09:03:07] ===---------------------------------------------------------------===
  3822. [09:03:07] Performing test ID PKGS-7390 (Check Ubuntu database consistency)
  3823. [09:03:07] Test: Package database consistency by running apt-get check
  3824. [09:03:08] Result: package database seems to be consistent.
  3825. [09:03:08] ===---------------------------------------------------------------===
  3826. [09:03:08] Performing test ID PKGS-7392 (Check for Debian/Ubuntu security updates)
  3827. [09:03:08] Action: updating repository with apt-get
  3828. [09:03:11] Result: apt-get finished
  3829. [09:03:11] Test: Checking if /usr/lib/update-notifier/apt-check exists
  3830. [09:03:11] Result: found /usr/lib/update-notifier/apt-check
  3831. [09:03:11] Test: checking if any of the updates contain security updates
  3832. [09:03:12] Result: found 1 security updates via apt-check
  3833. [09:03:12] Hardening: assigned 0 hardening points (max for this item: 25), current: 60, total: 136
  3834. [09:03:13] Warning: Found one or more vulnerable packages. [PKGS-7392]
  3835. [09:03:13] Suggestion: Update your system with apt-get update, apt-get upgrade, apt-get dist-upgrade and/or unattended-upgrades [PKGS-7392]
  3836. [09:03:13] ===---------------------------------------------------------------===
  3837. [09:03:13] Skipped test PKGS-7393 (Check for Gentoo vulnerable packages)
  3838. [09:03:13] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3839. [09:03:13] ===---------------------------------------------------------------===
  3840. [09:03:13] Performing test ID PKGS-7394 (Check for Ubuntu updates)
  3841. [09:03:13] Test: checking /usr/bin/apt-show-versions
  3842. [09:03:13] Result: /usr/bin/apt-show-versions not found
  3843. [09:03:13] Suggestion: Install package apt-show-versions for patch management purposes [PKGS-7394]
  3844. [09:03:13] ===---------------------------------------------------------------===
  3845. [09:03:13] Performing test ID PKGS-7398 (Check for package audit tool)
  3846. [09:03:13] Test: checking for package audit tool
  3847. [09:03:13] Result: found package audit tool: apt-check
  3848. [09:03:13] ===---------------------------------------------------------------===
  3849. [09:03:13] Performing test ID PKGS-7410 (Count installed kernel packages)
  3850. [09:03:15] ===---------------------------------------------------------------===
  3851. [09:03:15] Action: Performing tests from category: Networking
  3852. [09:03:15] ===---------------------------------------------------------------===
  3853. [09:03:15] Performing test ID NETW-2704 (Basic nameserver configuration tests)
  3854. [09:03:15] Test: Checking /etc/resolv.conf file
  3855. [09:03:15] Result: Found /etc/resolv.conf file
  3856. [09:03:15] Test: Querying nameservers
  3857. [09:03:15] Found nameserver: 67.207.67.2
  3858. [09:03:15] Nameserver 67.207.67.2 seems to respond to queries from this host.
  3859. [09:03:15] Found nameserver: 67.207.67.3
  3860. [09:03:15] Nameserver 67.207.67.3 seems to respond to queries from this host.
  3861. [09:03:15] ===---------------------------------------------------------------===
  3862. [09:03:15] Performing test ID NETW-2705 (Check availability two nameservers)
  3863. [09:03:15] Result: found at least 2 responsive nameservers
  3864. [09:03:15] Hardening: assigned 3 hardening points (max for this item: 3), current: 63, total: 139
  3865. [09:03:15] ===---------------------------------------------------------------===
  3866. [09:03:15] Performing test ID NETW-3001 (Find default gateway (route))
  3867. [09:03:15] Test: Searching default gateway(s)
  3868. [09:03:15] Result: Found default gateway 165.227.208.1
  3869. [09:03:15] ===---------------------------------------------------------------===
  3870. [09:03:15] Skipped test NETW-3004 (Search available network interfaces on FreeBSD and others)
  3871. [09:03:15] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3872. [09:03:15] ===---------------------------------------------------------------===
  3873. [09:03:15] Performing test ID NETW-3006 (Get network MAC addresses)
  3874. [09:03:15] Found MAC address: ce:4f:e2:7f:f5:ed
  3875. [09:03:15] ===---------------------------------------------------------------===
  3876. [09:03:15] Performing test ID NETW-3008 (Get network IP addresses)
  3877. [09:03:15] Found IPv4 address: 165.227.222.101
  3878. [09:03:15] Found IPv4 address: 127.0.0.1
  3879. [09:03:15] Found IPv6 address: fe80::cc4f:e2ff:fe7f:f5ed/64
  3880. [09:03:15] Found IPv6 address: ::1/128
  3881. [09:03:15] ===---------------------------------------------------------------===
  3882. [09:03:15] Performing test ID NETW-3012 (Check listening ports)
  3883. [09:03:15] Test: Retrieving sockstat information to find listening ports
  3884. [09:03:15] Found listening info: 0.0.0.0:22|tcp|sshd|
  3885. [09:03:15] Found listening info: 127.0.0.1:6010|tcp|0|
  3886. [09:03:15] Found listening info: :::22|tcp6|sshd|
  3887. [09:03:15] Found listening info: ::1:6010|tcp6|0|
  3888. [09:03:15] ===---------------------------------------------------------------===
  3889. [09:03:15] Skipped test NETW-3014 (Checking promiscuous interfaces (BSD))
  3890. [09:03:15] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3891. [09:03:15] ===---------------------------------------------------------------===
  3892. [09:03:15] Performing test ID NETW-3015 (Checking promiscuous interfaces (Linux))
  3893. [09:03:15] Test: Checking promiscuous interfaces (Linux)
  3894. [09:03:15] Result: No promiscuous interfaces found
  3895. [09:03:15] ===---------------------------------------------------------------===
  3896. [09:03:15] Performing test ID NETW-3028 (Checking connections in WAIT state)
  3897. [09:03:15] Test: Using netstat for check for connections in WAIT state
  3898. [09:03:15] Result: currently 8 connections are in a waiting state (max configured: 5000).
  3899. [09:03:15] Result: 8 connections are in WAIT state
  3900. [09:03:15] ===---------------------------------------------------------------===
  3901. [09:03:15] Performing test ID NETW-3030 (Checking DHCP client status)
  3902. [09:03:15] IsRunning: process 'dhclient' not found
  3903. [09:03:16] ===---------------------------------------------------------------===
  3904. [09:03:16] Action: Performing tests from category: Printers and Spools
  3905. [09:03:16] ===---------------------------------------------------------------===
  3906. [09:03:16] Skipped test PRNT-2302 (Check for available accounting information)
  3907. [09:03:16] Reason to skip: Incorrect guest OS (FreeBSD only)
  3908. [09:03:16] ===---------------------------------------------------------------===
  3909. [09:03:16] Performing test ID PRNT-2304 (Check cupsd status)
  3910. [09:03:16] Test: Checking cupsd status
  3911. [09:03:16] IsRunning: process 'cupsd' not found
  3912. [09:03:16] Result: cups daemon not running, cups daemon tests skipped
  3913. [09:03:16] ===---------------------------------------------------------------===
  3914. [09:03:16] Skipped test PRNT-2306 (Check CUPSd configuration file)
  3915. [09:03:16] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3916. [09:03:16] ===---------------------------------------------------------------===
  3917. [09:03:16] Skipped test PRNT-2307 (Check CUPSd configuration file permissions)
  3918. [09:03:16] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3919. [09:03:16] ===---------------------------------------------------------------===
  3920. [09:03:16] Skipped test PRNT-2308 (Check CUPSd network configuration)
  3921. [09:03:16] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3922. [09:03:16] ===---------------------------------------------------------------===
  3923. [09:03:16] Performing test ID PRNT-2314 (Check lpd status)
  3924. [09:03:16] Test: Checking lpd status
  3925. [09:03:16] IsRunning: process 'lpd' not found
  3926. [09:03:16] Result: lp daemon not running
  3927. [09:03:16] Hardening: assigned 4 hardening points (max for this item: 4), current: 67, total: 143
  3928. [09:03:16] ===---------------------------------------------------------------===
  3929. [09:03:16] Skipped test PRNT-2316 (Checking /etc/qconfig file)
  3930. [09:03:16] Reason to skip: Incorrect guest OS (AIX only)
  3931. [09:03:16] ===---------------------------------------------------------------===
  3932. [09:03:16] Skipped test PRNT-2418 (Checking qdaemon printer spooler status)
  3933. [09:03:16] Reason to skip: Incorrect guest OS (AIX only)
  3934. [09:03:16] ===---------------------------------------------------------------===
  3935. [09:03:16] Skipped test PRNT-2420 (Checking old print jobs)
  3936. [09:03:16] Reason to skip: Incorrect guest OS (AIX only)
  3937. [09:03:17] ===---------------------------------------------------------------===
  3938. [09:03:17] Action: Performing tests from category: Software: e-mail and messaging
  3939. [09:03:17] ===---------------------------------------------------------------===
  3940. [09:03:17] Performing test ID MAIL-8802 (Check Exim status)
  3941. [09:03:17] Test: check Exim status
  3942. [09:03:17] IsRunning: process 'exim' not found
  3943. [09:03:17] Result: no running Exim processes found
  3944. [09:03:17] ===---------------------------------------------------------------===
  3945. [09:03:17] Performing test ID MAIL-8814 (Check postfix process status)
  3946. [09:03:17] Test: check Postfix status
  3947. [09:03:17] Result: no running Postfix processes found
  3948. [09:03:17] ===---------------------------------------------------------------===
  3949. [09:03:18] Skipped test MAIL-8816 (Check Postfix configuration)
  3950. [09:03:18] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3951. [09:03:18] ===---------------------------------------------------------------===
  3952. [09:03:18] Skipped test MAIL-8818 (Check Postfix configuration: banner)
  3953. [09:03:18] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3954. [09:03:18] ===---------------------------------------------------------------===
  3955. [09:03:18] Skipped test MAIL-8838 (Check dovecot process)
  3956. [09:03:18] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3957. [09:03:18] ===---------------------------------------------------------------===
  3958. [09:03:18] Performing test ID MAIL-8860 (Check Qmail status)
  3959. [09:03:18] Test: check Qmail status
  3960. [09:03:18] IsRunning: process 'qmail-smtpd' not found
  3961. [09:03:18] Result: no running Qmail processes found
  3962. [09:03:18] ===---------------------------------------------------------------===
  3963. [09:03:18] Performing test ID MAIL-8880 (Check Sendmail status)
  3964. [09:03:18] Test: check sendmail status
  3965. [09:03:18] IsRunning: process 'sendmail' not found
  3966. [09:03:18] Result: no running Sendmail processes found
  3967. [09:03:18] ===---------------------------------------------------------------===
  3968. [09:03:18] Skipped test MAIL-8920 (Check OpenSMTPD status)
  3969. [09:03:18] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3970. [09:03:19] ===---------------------------------------------------------------===
  3971. [09:03:19] Action: Performing tests from category: Software: firewalls
  3972. [09:03:19] ===---------------------------------------------------------------===
  3973. [09:03:19] Performing test ID FIRE-4511 (Check iptables kernel module)
  3974. [09:03:19] Result: found kernel configuration file (/boot/config-4.4.0-130-generic)
  3975. [09:03:19] Result: no iptables found in Linux kernel config file
  3976. [09:03:19] ===---------------------------------------------------------------===
  3977. [09:03:19] Skipped test FIRE-4512 (Check iptables for empty ruleset)
  3978. [09:03:19] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3979. [09:03:19] ===---------------------------------------------------------------===
  3980. [09:03:19] Skipped test FIRE-4513 (Check iptables for unused rules)
  3981. [09:03:19] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3982. [09:03:19] ===---------------------------------------------------------------===
  3983. [09:03:19] Performing test ID FIRE-4518 (Check pf firewall components)
  3984. [09:03:19] Test: checking pf status via pfctl
  3985. [09:03:19] Test: searching for pf kernel module
  3986. [09:03:19] Result: no kldstat binary, skipping this part
  3987. [09:03:19] IsRunning: process 'pflogd' not found
  3988. [09:03:19] Result: pflog daemon not found in process list
  3989. [09:03:19] Result: pf not running on this system
  3990. [09:03:19] ===---------------------------------------------------------------===
  3991. [09:03:19] Skipped test FIRE-4520 (Check pf configuration consistency)
  3992. [09:03:19] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  3993. [09:03:19] ===---------------------------------------------------------------===
  3994. [09:03:19] Performing test ID FIRE-4524 (Check for CSF presence)
  3995. [09:03:19] Test: check /etc/csf/csf.conf
  3996. [09:03:19] Result: /etc/csf/csf.conf does NOT exist
  3997. [09:03:19] ===---------------------------------------------------------------===
  3998. [09:03:19] Skipped test FIRE-4526 (Check ipf status)
  3999. [09:03:19] Reason to skip: Incorrect guest OS (Solaris only)
  4000. [09:03:19] ===---------------------------------------------------------------===
  4001. [09:03:19] Performing test ID FIRE-4590 (Check firewall status)
  4002. [09:03:19] Result: no host based firewall/packet filter found or configured
  4003. [09:03:19] Suggestion: Configure a firewall/packet filter to filter incoming and outgoing traffic [FIRE-4590]
  4004. [09:03:19] Hardening: assigned 0 hardening points (max for this item: 5), current: 67, total: 148
  4005. [09:03:20] ===---------------------------------------------------------------===
  4006. [09:03:20] Action: Performing tests from category: Software: webserver
  4007. [09:03:20] ===---------------------------------------------------------------===
  4008. [09:03:20] Performing test ID HTTP-6622 (Checking Apache presence)
  4009. [09:03:20] ===---------------------------------------------------------------===
  4010. [09:03:20] Skipped test HTTP-6624 (Testing main Apache configuration file)
  4011. [09:03:20] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4012. [09:03:20] ===---------------------------------------------------------------===
  4013. [09:03:20] Skipped test HTTP-6626 (Testing other Apache configuration file)
  4014. [09:03:20] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4015. [09:03:20] ===---------------------------------------------------------------===
  4016. [09:03:20] Skipped test HTTP-6632 (Determining all available Apache modules)
  4017. [09:03:20] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4018. [09:03:20] ===---------------------------------------------------------------===
  4019. [09:03:20] Skipped test HTTP-6640 (Determining existence of specific Apache modules)
  4020. [09:03:20] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4021. [09:03:20] ===---------------------------------------------------------------===
  4022. [09:03:20] Skipped test HTTP-6641 (Determining existence of specific Apache modules)
  4023. [09:03:20] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4024. [09:03:20] ===---------------------------------------------------------------===
  4025. [09:03:20] Skipped test HTTP-6642 (Determining existence of specific Apache modules)
  4026. [09:03:20] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4027. [09:03:20] ===---------------------------------------------------------------===
  4028. [09:03:20] Skipped test HTTP-6643 (Determining existence of specific Apache modules)
  4029. [09:03:20] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4030. [09:03:20] ===---------------------------------------------------------------===
  4031. [09:03:20] Performing test ID HTTP-6702 (Check nginx process)
  4032. [09:03:20] Test: searching running nginx process
  4033. [09:03:20] Result: no running nginx process found
  4034. [09:03:20] ===---------------------------------------------------------------===
  4035. [09:03:20] Skipped test HTTP-6704 (Check nginx configuration file)
  4036. [09:03:20] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4037. [09:03:20] ===---------------------------------------------------------------===
  4038. [09:03:20] Skipped test HTTP-6706 (Check for additional nginx configuration files)
  4039. [09:03:20] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4040. [09:03:20] ===---------------------------------------------------------------===
  4041. [09:03:20] Skipped test HTTP-6708 (Check discovered nginx configuration settings)
  4042. [09:03:20] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4043. [09:03:20] ===---------------------------------------------------------------===
  4044. [09:03:20] Skipped test HTTP-6710 (Check nginx SSL configuration settings)
  4045. [09:03:20] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4046. [09:03:20] ===---------------------------------------------------------------===
  4047. [09:03:20] Skipped test HTTP-6712 (Check nginx access logging)
  4048. [09:03:20] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4049. [09:03:20] ===---------------------------------------------------------------===
  4050. [09:03:20] Skipped test HTTP-6714 (Check for missing error logs in nginx)
  4051. [09:03:20] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4052. [09:03:20] ===---------------------------------------------------------------===
  4053. [09:03:20] Skipped test HTTP-6716 (Check for debug mode on error log in nginx)
  4054. [09:03:20] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4055. [09:03:20] ===---------------------------------------------------------------===
  4056. [09:03:20] Skipped test HTTP-6720 (Check Nginx log files)
  4057. [09:03:20] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4058. [09:03:22] ===---------------------------------------------------------------===
  4059. [09:03:22] Action: Performing tests from category: SSH Support
  4060. [09:03:22] ===---------------------------------------------------------------===
  4061. [09:03:22] Performing test ID SSH-7402 (Check for running SSH daemon)
  4062. [09:03:22] Test: Searching for a SSH daemon
  4063. [09:03:22] IsRunning: process 'sshd' found ( 1362 ? Ss 0:00 /usr/sbin/sshd -D
  4064. 21320 ? Ss 0:00 sshd: root@pts/0
  4065. 21322 ? Ss 0:00 sshd: root@notty)
  4066. [09:03:22] ===---------------------------------------------------------------===
  4067. [09:03:22] Performing test ID SSH-7404 (Check SSH daemon file location)
  4068. [09:03:22] Test: searching for sshd_config file
  4069. [09:03:22] Result: /etc/ssh/sshd_config exists
  4070. [09:03:22] Test: testing if we can access /etc/ssh/sshd_config
  4071. [09:03:22] Result: file is owned by our current user ID (0), checking if it is readable
  4072. [09:03:22] Result: file /etc/ssh/sshd_config is readable (or directory accessible).
  4073. [09:03:22] Result: using last found configuration file: /etc/ssh/sshd_config
  4074. [09:03:22] ===---------------------------------------------------------------===
  4075. [09:03:22] Performing test ID SSH-7408 (Check SSH defined options)
  4076. [09:03:22] Test: Checking all specific defined options in /etc/ssh/sshd_config
  4077. [09:03:22] Found SSH option: Port 22
  4078. [09:03:22] Found SSH option: Protocol 2
  4079. [09:03:22] Found SSH option: HostKey /etc/ssh/ssh_host_rsa_key
  4080. [09:03:22] Found SSH option: HostKey /etc/ssh/ssh_host_dsa_key
  4081. [09:03:22] Found SSH option: HostKey /etc/ssh/ssh_host_ecdsa_key
  4082. [09:03:22] Found SSH option: HostKey /etc/ssh/ssh_host_ed25519_key
  4083. [09:03:22] Found SSH option: UsePrivilegeSeparation yes
  4084. [09:03:22] Found SSH option: KeyRegenerationInterval 3600
  4085. [09:03:22] Found SSH option: ServerKeyBits 1024
  4086. [09:03:22] Found SSH option: SyslogFacility AUTH
  4087. [09:03:22] Found SSH option: LogLevel INFO
  4088. [09:03:22] Found SSH option: LoginGraceTime 120
  4089. [09:03:22] Found SSH option: PermitRootLogin yes
  4090. [09:03:22] Found SSH option: StrictModes yes
  4091. [09:03:22] Found SSH option: RSAAuthentication yes
  4092. [09:03:22] Found SSH option: PubkeyAuthentication yes
  4093. [09:03:22] Found SSH option: IgnoreRhosts yes
  4094. [09:03:22] Found SSH option: RhostsRSAAuthentication no
  4095. [09:03:22] Found SSH option: HostbasedAuthentication no
  4096. [09:03:22] Found SSH option: PermitEmptyPasswords no
  4097. [09:03:22] Found SSH option: ChallengeResponseAuthentication no
  4098. [09:03:22] Found SSH option: PasswordAuthentication no
  4099. [09:03:22] Found SSH option: X11Forwarding yes
  4100. [09:03:22] Found SSH option: X11DisplayOffset 10
  4101. [09:03:22] Found SSH option: PrintMotd no
  4102. [09:03:22] Found SSH option: PrintLastLog yes
  4103. [09:03:22] Found SSH option: TCPKeepAlive yes
  4104. [09:03:22] Found SSH option: AcceptEnv LANG LC_*
  4105. [09:03:22] Found SSH option: Subsystem sftp /usr/lib/openssh/sftp-server
  4106. [09:03:22] Found SSH option: UsePAM yes
  4107. [09:03:22] ===---------------------------------------------------------------===
  4108. [09:03:22] Performing test ID SSH-7412 (Check SSH option: PermitRootLogin)
  4109. [09:03:22] Test: check PermitRootLogin option
  4110. [09:03:22] Result: PermitRootLogin is enabled, root can login directly
  4111. [09:03:22] Warning: Root can directly login via SSH [SSH-7412]
  4112. [09:03:22] Hardening: assigned 0 hardening points (max for this item: 3), current: 67, total: 151
  4113. [09:03:22] ===---------------------------------------------------------------===
  4114. [09:03:22] Performing test ID SSH-7414 (Check SSH option: Protocol)
  4115. [09:03:22] Test: check allowed SSH protocol versions
  4116. [09:03:22] Result: only protocol 2 is allowed
  4117. [09:03:22] Hardening: assigned 3 hardening points (max for this item: 3), current: 70, total: 154
  4118. [09:03:22] ===---------------------------------------------------------------===
  4119. [09:03:22] Performing test ID SSH-7416 (Check SSH option: StrictModes)
  4120. [09:03:22] Test: Check configured StrictModes option
  4121. [09:03:22] Result: StrictModes active, file permissions are checked
  4122. [09:03:22] Hardening: assigned 3 hardening points (max for this item: 3), current: 73, total: 157
  4123. [09:03:22] ===---------------------------------------------------------------===
  4124. [09:03:22] Performing test ID SSH-7440 (Check SSH option: AllowUsers and AllowGroups)
  4125. [09:03:22] Result: AllowUsers is not set
  4126. [09:03:22] Result: AllowGroups is not set
  4127. [09:03:22] Result: SSH has no specific user or group limitation. Most likely all valid users can SSH to this machine.
  4128. [09:03:22] Hardening: assigned 0 hardening points (max for this item: 1), current: 73, total: 158
  4129. [09:03:23] ===---------------------------------------------------------------===
  4130. [09:03:23] Action: Performing tests from category: SNMP Support
  4131. [09:03:23] ===---------------------------------------------------------------===
  4132. [09:03:23] Performing test ID SNMP-3302 (Check for running SNMP daemon)
  4133. [09:03:23] Test: Searching for a SNMP daemon
  4134. [09:03:23] IsRunning: process 'snmpd' not found
  4135. [09:03:23] Result: No running SNMP daemon found
  4136. [09:03:23] ===---------------------------------------------------------------===
  4137. [09:03:23] Skipped test SNMP-3304 (Check SNMP daemon file location)
  4138. [09:03:23] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4139. [09:03:23] ===---------------------------------------------------------------===
  4140. [09:03:23] Skipped test SNMP-3306 (Check SNMP communities)
  4141. [09:03:23] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4142. [09:03:24] ===---------------------------------------------------------------===
  4143. [09:03:24] Action: Performing tests from category: Databases
  4144. [09:03:24] ===---------------------------------------------------------------===
  4145. [09:03:24] Performing test ID DBS-1804 (Checking active MySQL process)
  4146. [09:03:24] Result: MySQL process not active
  4147. [09:03:24] ===---------------------------------------------------------------===
  4148. [09:03:24] Skipped test DBS-1816 (Checking MySQL root password)
  4149. [09:03:24] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4150. [09:03:24] Test skipped, MySQL daemon not running or no MySQL client available
  4151. [09:03:24] ===---------------------------------------------------------------===
  4152. [09:03:24] Performing test ID DBS-1826 (Checking active PostgreSQL processes)
  4153. [09:03:24] Result: PostgreSQL process not active
  4154. [09:03:24] ===---------------------------------------------------------------===
  4155. [09:03:24] Performing test ID DBS-1840 (Checking active Oracle processes)
  4156. [09:03:24] Result: Oracle process(es) not active
  4157. [09:03:25] ===---------------------------------------------------------------===
  4158. [09:03:25] Action: Performing tests from category: LDAP Services
  4159. [09:03:25] ===---------------------------------------------------------------===
  4160. [09:03:25] Performing test ID LDAP-2219 (Check running OpenLDAP instance)
  4161. [09:03:25] IsRunning: process 'slapd' not found
  4162. [09:03:25] Result: No running slapd process found.
  4163. [09:03:25] ===---------------------------------------------------------------===
  4164. [09:03:25] Skipped test LDAP-2224 (Check presence slapd.conf)
  4165. [09:03:25] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4166. [09:03:26] ===---------------------------------------------------------------===
  4167. [09:03:26] Action: Performing tests from category: PHP
  4168. [09:03:26] ===---------------------------------------------------------------===
  4169. [09:03:26] Performing test ID PHP-2211 (Check php.ini presence)
  4170. [09:03:26] Test: Checking for presence php.ini
  4171. [09:03:26] Test: checking presence /etc/php.ini
  4172. [09:03:26] Result: file /etc/php.ini not found
  4173. [09:03:26] Test: checking presence /etc/php/cgi-php5/php.ini
  4174. [09:03:26] Result: file /etc/php/cgi-php5/php.ini not found
  4175. [09:03:26] Test: checking presence /etc/php/cli-php5/php.ini
  4176. [09:03:26] Result: file /etc/php/cli-php5/php.ini not found
  4177. [09:03:26] Test: checking presence /etc/php/apache2-php5/php.ini
  4178. [09:03:26] Result: file /etc/php/apache2-php5/php.ini not found
  4179. [09:03:26] Test: checking presence /etc/php/apache2-php5.4/php.ini
  4180. [09:03:26] Result: file /etc/php/apache2-php5.4/php.ini not found
  4181. [09:03:26] Test: checking presence /etc/php/apache2-php5.5/php.ini
  4182. [09:03:26] Result: file /etc/php/apache2-php5.5/php.ini not found
  4183. [09:03:26] Test: checking presence /etc/php5/cgi/php.ini
  4184. [09:03:26] Result: file /etc/php5/cgi/php.ini not found
  4185. [09:03:26] Test: checking presence /etc/php5/cli/php.ini
  4186. [09:03:26] Result: file /etc/php5/cli/php.ini not found
  4187. [09:03:26] Test: checking presence /etc/php5/cli-php5.4/php.ini
  4188. [09:03:26] Result: file /etc/php5/cli-php5.4/php.ini not found
  4189. [09:03:26] Test: checking presence /etc/php5/cli-php5.5/php.ini
  4190. [09:03:26] Result: file /etc/php5/cli-php5.5/php.ini not found
  4191. [09:03:26] Test: checking presence /etc/php5/cli-php5.6/php.ini
  4192. [09:03:26] Result: file /etc/php5/cli-php5.6/php.ini not found
  4193. [09:03:26] Test: checking presence /etc/php5/apache2/php.ini
  4194. [09:03:26] Result: file /etc/php5/apache2/php.ini not found
  4195. [09:03:26] Test: checking presence /etc/php5/fpm/php.ini
  4196. [09:03:26] Result: file /etc/php5/fpm/php.ini not found
  4197. [09:03:26] Test: checking presence /private/etc/php.ini
  4198. [09:03:26] Result: file /private/etc/php.ini not found
  4199. [09:03:26] Test: checking presence /var/www/conf/php.ini
  4200. [09:03:26] Result: file /var/www/conf/php.ini not found
  4201. [09:03:26] Test: checking presence /usr/local/etc/php.ini
  4202. [09:03:26] Result: file /usr/local/etc/php.ini not found
  4203. [09:03:26] Test: checking presence /usr/local/lib/php.ini
  4204. [09:03:26] Result: file /usr/local/lib/php.ini not found
  4205. [09:03:26] Test: checking presence /usr/pkg/etc/php.ini
  4206. [09:03:26] Result: file /usr/pkg/etc/php.ini not found
  4207. [09:03:26] Result: no files found for /etc/php5/conf.d
  4208. [09:03:26] Result: no php.ini file found
  4209. [09:03:26] ===---------------------------------------------------------------===
  4210. [09:03:26] Skipped test PHP-2320 (Check PHP disabled functions)
  4211. [09:03:26] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4212. [09:03:26] ===---------------------------------------------------------------===
  4213. [09:03:26] Skipped test PHP-2368 (Check PHP register_globals option)
  4214. [09:03:26] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4215. [09:03:26] ===---------------------------------------------------------------===
  4216. [09:03:26] Skipped test PHP-2372 (Check PHP expose_php option)
  4217. [09:03:26] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4218. [09:03:26] ===---------------------------------------------------------------===
  4219. [09:03:26] Skipped test PHP-2374 (Check PHP enable_dl option)
  4220. [09:03:26] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4221. [09:03:26] ===---------------------------------------------------------------===
  4222. [09:03:26] Skipped test PHP-2376 (Check PHP allow_url_fopen option)
  4223. [09:03:26] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4224. [09:03:26] ===---------------------------------------------------------------===
  4225. [09:03:26] Skipped test PHP-2378 (Check PHP allow_url_include option)
  4226. [09:03:26] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4227. [09:03:27] ===---------------------------------------------------------------===
  4228. [09:03:27] Action: Performing tests from category: Squid Support
  4229. [09:03:27] ===---------------------------------------------------------------===
  4230. [09:03:27] Performing test ID SQD-3602 (Check for running Squid daemon)
  4231. [09:03:27] Test: Searching for a Squid daemon
  4232. [09:03:27] Result: No running Squid daemon found
  4233. [09:03:27] ===---------------------------------------------------------------===
  4234. [09:03:27] Skipped test SQD-3604 (Check Squid daemon file location)
  4235. [09:03:27] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4236. [09:03:27] ===---------------------------------------------------------------===
  4237. [09:03:27] Skipped test SQD-3606 (Check Squid version)
  4238. [09:03:27] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4239. [09:03:27] ===---------------------------------------------------------------===
  4240. [09:03:27] Skipped test SQD-3610 (Check Squid version)
  4241. [09:03:27] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4242. [09:03:27] ===---------------------------------------------------------------===
  4243. [09:03:27] Skipped test SQD-3613 (Check Squid file permissions)
  4244. [09:03:27] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4245. [09:03:27] ===---------------------------------------------------------------===
  4246. [09:03:27] Skipped test SQD-3614 (Check Squid authentication methods)
  4247. [09:03:27] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4248. [09:03:27] ===---------------------------------------------------------------===
  4249. [09:03:27] Skipped test SQD-3616 (Check external Squid authentication)
  4250. [09:03:27] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4251. [09:03:27] ===---------------------------------------------------------------===
  4252. [09:03:27] Skipped test SQD-3620 (Check Squid access control lists)
  4253. [09:03:27] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4254. [09:03:27] ===---------------------------------------------------------------===
  4255. [09:03:27] Skipped test SQD-3624 (Check Squid safe ports)
  4256. [09:03:27] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4257. [09:03:27] ===---------------------------------------------------------------===
  4258. [09:03:27] Skipped test SQD-3630 (Check Squid reply_body_max_size option)
  4259. [09:03:27] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4260. [09:03:27] ===---------------------------------------------------------------===
  4261. [09:03:27] Skipped test SQD-3680 (Check Squid version suppresion)
  4262. [09:03:27] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4263. [09:03:28] ===---------------------------------------------------------------===
  4264. [09:03:28] Action: Performing tests from category: Logging and files
  4265. [09:03:28] ===---------------------------------------------------------------===
  4266. [09:03:28] Performing test ID LOGG-2130 (Check for running syslog daemon)
  4267. [09:03:28] Test: Searching for a logging daemon
  4268. [09:03:28] Result: Found a logging daemon
  4269. [09:03:28] Hardening: assigned 3 hardening points (max for this item: 3), current: 76, total: 161
  4270. [09:03:28] ===---------------------------------------------------------------===
  4271. [09:03:28] Performing test ID LOGG-2132 (Check for running syslog-ng daemon)
  4272. [09:03:28] Test: Searching for syslog-ng daemon in process list
  4273. [09:03:28] IsRunning: process 'syslog-ng' not found
  4274. [09:03:28] Result: Syslog-ng NOT found in process list
  4275. [09:03:28] ===---------------------------------------------------------------===
  4276. [09:03:28] Skipped test LOGG-2134 (Checking Syslog-NG configuration file consistency)
  4277. [09:03:28] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4278. [09:03:28] ===---------------------------------------------------------------===
  4279. [09:03:28] Performing test ID LOGG-2136 (Check for running systemd journal daemon)
  4280. [09:03:28] Test: Searching for systemd journal daemon in process list
  4281. [09:03:28] IsRunning: process 'systemd-journal' found ( 643 ? Ss 0:11 /lib/systemd/systemd-journald)
  4282. [09:03:28] ===---------------------------------------------------------------===
  4283. [09:03:28] Performing test ID LOGG-2210 (Check for running metalog daemon)
  4284. [09:03:28] Test: Searching for metalog daemon in process list
  4285. [09:03:28] IsRunning: process 'metalog' not found
  4286. [09:03:28] Result: metalog NOT found in process list
  4287. [09:03:28] ===---------------------------------------------------------------===
  4288. [09:03:28] Performing test ID LOGG-2230 (Check for running RSyslog daemon)
  4289. [09:03:28] Test: Searching for RSyslog daemon in process list
  4290. [09:03:28] IsRunning: process 'rsyslogd' found ( 1302 ? Ssl 0:02 /usr/sbin/rsyslogd -n)
  4291. [09:03:28] Result: Found rsyslogd in process list
  4292. [09:03:28] ===---------------------------------------------------------------===
  4293. [09:03:28] Performing test ID LOGG-2240 (Check for running RFC 3195 compliant daemon)
  4294. [09:03:28] Test: Searching for RFC 3195 daemon (alias syslog reliable) in process list
  4295. [09:03:28] IsRunning: process 'rfc3195d' not found
  4296. [09:03:28] Result: rfc3195d NOT found in process list
  4297. [09:03:28] ===---------------------------------------------------------------===
  4298. [09:03:28] Performing test ID LOGG-2138 (Checking kernel logger daemon on Linux)
  4299. [09:03:28] Test: Searching kernel logger daemon (klogd)
  4300. [09:03:28] Result: test skipped, because other facility is being used to log kernel messages
  4301. [09:03:28] ===---------------------------------------------------------------===
  4302. [09:03:28] Performing test ID LOGG-2142 (Checking minilog daemon)
  4303. [09:03:28] Result: Checking for unkilled minilogd instances
  4304. [09:03:28] IsRunning: process 'minilogd' not found
  4305. [09:03:28] Result: No minilogd is running
  4306. [09:03:28] ===---------------------------------------------------------------===
  4307. [09:03:28] Performing test ID LOGG-2146 (Checking logrotate.conf and logrotate.d)
  4308. [09:03:28] Test: Checking for /etc/logrotate.conf
  4309. [09:03:28] Result: /etc/logrotate.conf found (file)
  4310. [09:03:28] Test: Checking for /etc/logrotate.d (directory)
  4311. [09:03:28] Result: /etc/logrotate.d found
  4312. [09:03:28] Result: logrotate configuration found
  4313. [09:03:28] ===---------------------------------------------------------------===
  4314. [09:03:28] Performing test ID LOGG-2148 (Checking logrotated files)
  4315. [09:03:28] Test: Checking which files are rotated with logrotate and if they exist
  4316. [09:03:28] Result: found one or more files which are rotated via logrotate
  4317. [09:03:28] Output: File:/var/log/apport.log:does_not_exist
  4318. [09:03:28] Output: File:/var/log/cron.log:does_not_exist
  4319. [09:03:28] Output: File:/var/log/daemon.log:does_not_exist
  4320. [09:03:28] Output: File:/var/log/debug:does_not_exist
  4321. [09:03:28] Output: File:/var/log/lpr.log:does_not_exist
  4322. [09:03:28] Output: File:/var/log/lxd/lxd.log:does_not_exist
  4323. [09:03:28] Output: File:/var/log/mail.err:does_not_exist
  4324. [09:03:28] Output: File:/var/log/mail.info:does_not_exist
  4325. [09:03:28] Output: File:/var/log/mail.log:does_not_exist
  4326. [09:03:28] Output: File:/var/log/mail.warn:does_not_exist
  4327. [09:03:28] Output: File:/var/log/messages:does_not_exist
  4328. [09:03:28] Output: File:/var/log/ufw.log:does_not_exist
  4329. [09:03:28] Output: File:/var/log/user.log:does_not_exist
  4330. [09:03:28] Output: File:/var/log/alternatives.log:exists
  4331. [09:03:28] Output: File:/var/log/apport.log:exists
  4332. [09:03:28] Output: File:/var/log/apt/history.log:exists
  4333. [09:03:28] Output: File:/var/log/apt/term.log:exists
  4334. [09:03:28] Output: File:/var/log/auth.log:exists
  4335. [09:03:28] Output: File:/var/log/btmp:exists
  4336. [09:03:28] Output: File:/var/log/cron.log:exists
  4337. [09:03:28] Output: File:/var/log/daemon.log:exists
  4338. [09:03:28] Output: File:/var/log/debug:exists
  4339. [09:03:28] Output: File:/var/log/dpkg.log:exists
  4340. [09:03:28] Output: File:/var/log/kern.log:exists
  4341. [09:03:28] Output: File:/var/log/lpr.log:exists
  4342. [09:03:28] Output: File:/var/log/lxd/lxd.log:exists
  4343. [09:03:28] Output: File:/var/log/mail.err:exists
  4344. [09:03:28] Output: File:/var/log/mail.info:exists
  4345. [09:03:28] Output: File:/var/log/mail.log:exists
  4346. [09:03:28] Output: File:/var/log/mail.warn:exists
  4347. [09:03:28] Output: File:/var/log/messages:exists
  4348. [09:03:28] Output: File:/var/log/syslog:exists
  4349. [09:03:28] Output: File:/var/log/ufw.log:exists
  4350. [09:03:28] Output: File:/var/log/unattended-upgrades/unattended-upgrades-dpkg.log:exists
  4351. [09:03:28] Output: File:/var/log/unattended-upgrades/unattended-upgrades-shutdown.log:exists
  4352. [09:03:28] Output: File:/var/log/unattended-upgrades/unattended-upgrades.log:exists
  4353. [09:03:28] Output: File:/var/log/user.log:exists
  4354. [09:03:28] Output: File:/var/log/wtmp:exists
  4355. [09:03:28] ===---------------------------------------------------------------===
  4356. [09:03:28] Performing test ID LOGG-2150 (Checking directories in logrotate configuration)
  4357. [09:03:28] Test: Checking which directories can be found in logrotate configuration
  4358. [09:03:28] Result: found one or more directories (via logrotate configuration)
  4359. [09:03:28] Directory found: /var/log
  4360. [09:03:28] Directory found: /var/log/apt
  4361. [09:03:28] Directory found: /var/log/lxd
  4362. [09:03:28] Directory found: /var/log/unattended-upgrades
  4363. [09:03:28] ===---------------------------------------------------------------===
  4364. [09:03:28] Skipped test LOGG-2152 (Checking loghost)
  4365. [09:03:28] Reason to skip: Incorrect guest OS (Solaris only)
  4366. [09:03:28] ===---------------------------------------------------------------===
  4367. [09:03:28] Performing test ID LOGG-2154 (Checking syslog configuration file)
  4368. [09:03:28] Result: test skipped, file /etc/syslog.conf not found
  4369. [09:03:28] ===---------------------------------------------------------------===
  4370. [09:03:28] Skipped test LOGG-2160 (Checking /etc/newsyslog.conf)
  4371. [09:03:28] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4372. [09:03:28] ===---------------------------------------------------------------===
  4373. [09:03:28] Skipped test LOGG-2162 (Checking /etc/newsyslog.conf)
  4374. [09:03:28] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4375. [09:03:28] ===---------------------------------------------------------------===
  4376. [09:03:28] Skipped test LOGG-2164 (Checking /etc/newsyslog.conf)
  4377. [09:03:28] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4378. [09:03:28] ===---------------------------------------------------------------===
  4379. [09:03:28] Performing test ID LOGG-2170 (Checking log paths)
  4380. [09:03:28] Test: Searching log paths
  4381. [09:03:28] Result: directory /var/log exists
  4382. [09:03:28] Result: directory /var/adm can't be found
  4383. [09:03:28] ===---------------------------------------------------------------===
  4384. [09:03:28] Performing test ID LOGG-2180 (Checking open log files)
  4385. [09:03:28] Test: checking open log files with lsof
  4386. [09:03:28] Found logfile: /home/gitlab-runner/.forever/3zxf.log
  4387. [09:03:28] Found logfile: /home/gitlab-runner/.forever/5YIM.log
  4388. [09:03:28] Found logfile: /home/gitlab-runner/.forever/6n7y.log
  4389. [09:03:28] Found logfile: /home/gitlab-runner/.forever/BUD6.log
  4390. [09:03:28] Found logfile: /home/gitlab-runner/.forever/Cuj9.log
  4391. [09:03:28] Found logfile: /home/gitlab-runner/.forever/KisE.log
  4392. [09:03:28] Found logfile: /home/gitlab-runner/.forever/Kn1f.log
  4393. [09:03:28] Found logfile: /home/gitlab-runner/.forever/L_mn.log
  4394. [09:03:28] Found logfile: /home/gitlab-runner/.forever/RYMC.log
  4395. [09:03:28] Found logfile: /home/gitlab-runner/.forever/StX1.log
  4396. [09:03:28] Found logfile: /home/gitlab-runner/.forever/ZehX.log
  4397. [09:03:28] Found logfile: /home/gitlab-runner/.forever/_ypZ.log
  4398. [09:03:28] Found logfile: /home/gitlab-runner/.forever/hXwC.log
  4399. [09:03:28] Found logfile: /var/log/auth.log
  4400. [09:03:28] Found logfile: /var/log/syslog
  4401. [09:03:28] ===---------------------------------------------------------------===
  4402. [09:03:28] Performing test ID LOGG-2190 (Checking deleted files in file table)
  4403. [09:03:28] Test: checking deleted files but are still in use
  4404. [09:03:28] Result: no deleted files found
  4405. [09:03:28] ===---------------------------------------------------------------===
  4406. [09:03:28] Action: Performing tests from category: Insecure services
  4407. [09:03:28] ===---------------------------------------------------------------===
  4408. [09:03:28] Performing test ID INSE-8002 (Check for enabled inet daemon)
  4409. [09:03:28] Test: Searching for active inet daemon
  4410. [09:03:28] IsRunning: process 'inetd' not found
  4411. [09:03:28] Result: inetd is NOT running
  4412. [09:03:28] ===---------------------------------------------------------------===
  4413. [09:03:28] Skipped test INSE-8004 (Check for enabled inet daemon)
  4414. [09:03:28] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4415. [09:03:28] ===---------------------------------------------------------------===
  4416. [09:03:29] Skipped test INSE-8006 (Check configuration of inetd when disabled)
  4417. [09:03:29] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4418. [09:03:29] ===---------------------------------------------------------------===
  4419. [09:03:29] Skipped test INSE-8016 (Check for telnet via inetd)
  4420. [09:03:29] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4421. [09:03:30] ===---------------------------------------------------------------===
  4422. [09:03:30] Action: Performing tests from category: Banners and identification
  4423. [09:03:30] ===---------------------------------------------------------------===
  4424. [09:03:30] Skipped test BANN-7113 (Check COPYRIGHT banner file)
  4425. [09:03:30] Reason to skip: Incorrect guest OS (FreeBSD only)
  4426. [09:03:30] ===---------------------------------------------------------------===
  4427. [09:03:30] Performing test ID BANN-7119 (Check MOTD banner file)
  4428. [09:03:30] Test: Testing existence /etc/motd
  4429. [09:03:30] Result: File /etc/motd not found
  4430. [09:03:30] ===---------------------------------------------------------------===
  4431. [09:03:30] Skipped test BANN-7122 (Check /etc/motd banner file contents)
  4432. [09:03:30] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4433. [09:03:30] ===---------------------------------------------------------------===
  4434. [09:03:30] Performing test ID BANN-7124 (Check issue banner file)
  4435. [09:03:30] Test: Checking file /etc/issue
  4436. [09:03:30] ===---------------------------------------------------------------===
  4437. [09:03:30] Performing test ID BANN-7126 (Check issue banner file contents)
  4438. [09:03:30] Test: Checking file /etc/issue contents for legal key words
  4439. [09:03:30] Result: Found only 0 key words (5 or more suggested), to warn unauthorized users and could be increased
  4440. [09:03:30] Suggestion: Add a legal banner to /etc/issue, to warn unauthorized users [BANN-7126]
  4441. [09:03:30] Hardening: assigned 0 hardening points (max for this item: 1), current: 76, total: 162
  4442. [09:03:30] ===---------------------------------------------------------------===
  4443. [09:03:30] Performing test ID BANN-7128 (Check issue.net banner file)
  4444. [09:03:30] Test: Checking file /etc/issue.net
  4445. [09:03:30] Result: file /etc/issue.net exists
  4446. [09:03:30] ===---------------------------------------------------------------===
  4447. [09:03:30] Performing test ID BANN-7130 (Check issue.net banner file contents)
  4448. [09:03:30] Test: Checking file /etc/issue.net contents for legal key words
  4449. [09:03:30] Result: Found only 0 key words, to warn unauthorized users and could be increased
  4450. [09:03:30] Suggestion: Add legal banner to /etc/issue.net, to warn unauthorized users [BANN-7130]
  4451. [09:03:30] Hardening: assigned 0 hardening points (max for this item: 1), current: 76, total: 163
  4452. [09:03:31] ===---------------------------------------------------------------===
  4453. [09:03:31] Action: Performing tests from category: Scheduled tasks
  4454. [09:03:31] ===---------------------------------------------------------------===
  4455. [09:03:31] Performing test ID SCHD-7704 (Check crontab/cronjobs)
  4456. [09:03:31] Found cronjob (/etc/crontab): 17,*,*,*,*,root,cd,/,&&,run-parts,--report,/etc/cron.hourly
  4457. [09:03:31] Found cronjob (/etc/crontab): 25,6,*,*,*,root,test,-x,/usr/sbin/anacron,||,(,cd,/,&&,run-parts,--report,/etc/cron.daily,)
  4458. [09:03:31] Found cronjob (/etc/crontab): 47,6,*,*,7,root,test,-x,/usr/sbin/anacron,||,(,cd,/,&&,run-parts,--report,/etc/cron.weekly,)
  4459. [09:03:31] Found cronjob (/etc/crontab): 52,6,1,*,*,root,test,-x,/usr/sbin/anacron,||,(,cd,/,&&,run-parts,--report,/etc/cron.monthly,)
  4460. [09:03:31] Test: checking directory /etc/cron.d
  4461. [09:03:31] Test: testing if we can access /etc/cron.d
  4462. [09:03:31] Result: file /etc/cron.d is readable (or directory accessible).
  4463. [09:03:31] Result: found directory /etc/cron.d
  4464. [09:03:31] Test: searching files in /etc/cron.d
  4465. [09:03:31] Result: found one or more files in /etc/cron.d. Analyzing files..
  4466. [09:03:31] Result: Found cronjob (/etc/cron.d): 57,0,*,*,0,root,if,[,-x,/usr/share/mdadm/checkarray,],&&,[,$(date,+\%d),-le,7,];,then,/usr/share/mdadm/checkarray,--cron,--all,--idle,--quiet;,fi
  4467. [09:03:31] Result: Found cronjob (/etc/cron.d): 15,2,*,*,*,root,test,-x,/etc/cron.daily/popularity-contest,&&,/etc/cron.daily/popularity-contest,--crond
  4468. [09:03:31] Result: done with analyzing files in /etc/cron.d
  4469. [09:03:31] Test: checking directory /etc/cron.hourly
  4470. [09:03:31] Result: found directory /etc/cron.hourly
  4471. [09:03:31] Test: searching files in /etc/cron.hourly
  4472. [09:03:31] Result: no files found in /etc/cron.hourly
  4473. [09:03:31] Test: checking directory /etc/cron.daily
  4474. [09:03:31] Result: found directory /etc/cron.daily
  4475. [09:03:31] Test: searching files in /etc/cron.daily
  4476. [09:03:31] Result: found one or more files in /etc/cron.daily. Analyzing files..
  4477. [09:03:31] Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/mdadm
  4478. [09:03:31] Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/update-notifier-common
  4479. [09:03:31] Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/apt-compat
  4480. [09:03:31] Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/dpkg
  4481. [09:03:31] Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/logrotate
  4482. [09:03:31] Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/apport
  4483. [09:03:31] Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/passwd
  4484. [09:03:31] Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/mlocate
  4485. [09:03:31] Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/bsdmainutils
  4486. [09:03:31] Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/man-db
  4487. [09:03:31] Result: Found cronjob (/etc/cron.daily): /etc/cron.daily/popularity-contest
  4488. [09:03:31] Result: done with analyzing files in /etc/cron.daily
  4489. [09:03:31] Test: checking directory /etc/cron.weekly
  4490. [09:03:31] Result: found directory /etc/cron.weekly
  4491. [09:03:31] Test: searching files in /etc/cron.weekly
  4492. [09:03:31] Result: found one or more files in /etc/cron.weekly. Analyzing files..
  4493. [09:03:31] Result: Found cronjob (/etc/cron.weekly): /etc/cron.weekly/update-notifier-common
  4494. [09:03:31] Result: Found cronjob (/etc/cron.weekly): /etc/cron.weekly/fstrim
  4495. [09:03:31] Result: Found cronjob (/etc/cron.weekly): /etc/cron.weekly/man-db
  4496. [09:03:31] Result: done with analyzing files in /etc/cron.weekly
  4497. [09:03:31] Test: checking directory /etc/cron.monthly
  4498. [09:03:31] Result: found directory /etc/cron.monthly
  4499. [09:03:31] Test: searching files in /etc/cron.monthly
  4500. [09:03:31] Result: no files found in /etc/cron.monthly
  4501. [09:03:31] ===---------------------------------------------------------------===
  4502. [09:03:31] Performing test ID SCHD-7718 (Check at users)
  4503. [09:03:31] Test: Checking atd status
  4504. [09:03:31] Result: at daemon active
  4505. [09:03:31] ===---------------------------------------------------------------===
  4506. [09:03:31] Performing test ID SCHD-7720 (Check at users)
  4507. [09:03:31] Test: checking for file /etc/at.allow
  4508. [09:03:31] Result: file /etc/at.allow does not exist
  4509. [09:03:31] Test: checking for file /etc/at.deny
  4510. [09:03:31] Test: testing if we can access /etc/at.deny
  4511. [09:03:31] Result: file is owned by our current user ID (0), checking if it is readable
  4512. [09:03:31] Result: file /etc/at.deny is readable (or directory accessible).
  4513. [09:03:31] Result: file /etc/at.deny exists, only non listed users can schedule at jobs
  4514. [09:03:31] Denied at user: alias
  4515. [09:03:31] Denied at user: backup
  4516. [09:03:31] Denied at user: bin
  4517. [09:03:31] Denied at user: daemon
  4518. [09:03:31] Denied at user: ftp
  4519. [09:03:31] Denied at user: games
  4520. [09:03:31] Denied at user: gnats
  4521. [09:03:31] Denied at user: guest
  4522. [09:03:31] Denied at user: irc
  4523. [09:03:31] Denied at user: lp
  4524. [09:03:31] Denied at user: mail
  4525. [09:03:31] Denied at user: man
  4526. [09:03:31] Denied at user: nobody
  4527. [09:03:31] Denied at user: operator
  4528. [09:03:31] Denied at user: proxy
  4529. [09:03:31] Denied at user: qmaild
  4530. [09:03:31] Denied at user: qmaill
  4531. [09:03:31] Denied at user: qmailp
  4532. [09:03:31] Denied at user: qmailq
  4533. [09:03:31] Denied at user: qmailr
  4534. [09:03:31] Denied at user: qmails
  4535. [09:03:31] Denied at user: sync
  4536. [09:03:31] Denied at user: sys
  4537. [09:03:31] Denied at user: www-data
  4538. [09:03:32] ===---------------------------------------------------------------===
  4539. [09:03:32] Performing test ID SCHD-7724 (Check at jobs)
  4540. [09:03:32] Test: Check scheduled at jobs
  4541. [09:03:32] Result: no pending at jobs
  4542. [09:03:33] ===---------------------------------------------------------------===
  4543. [09:03:33] Action: Performing tests from category: Accounting
  4544. [09:03:33] ===---------------------------------------------------------------===
  4545. [09:03:33] Skipped test ACCT-2754 (Check for available FreeBSD accounting information)
  4546. [09:03:33] Reason to skip: Incorrect guest OS (FreeBSD only)
  4547. [09:03:33] ===---------------------------------------------------------------===
  4548. [09:03:33] Performing test ID ACCT-9622 (Check for available Linux accounting information)
  4549. [09:03:33] Test: Check accounting information
  4550. [09:03:33] Result: No accounting information available (/var/account/pacct, /var/log/account/pact nor /var/log/pact exist)
  4551. [09:03:33] Remark: Possibly there is another location where the accounting data is stored
  4552. [09:03:33] Suggestion: Enable process accounting [ACCT-9622]
  4553. [09:03:33] Hardening: assigned 2 hardening points (max for this item: 3), current: 78, total: 166
  4554. [09:03:33] ===---------------------------------------------------------------===
  4555. [09:03:33] Performing test ID ACCT-9626 (Check for sysstat accounting data)
  4556. [09:03:33] Test: check /etc/default/sysstat presence
  4557. [09:03:33] Result: sysstat not found via /etc/default/sysstat or /etc/cron.d/sysstat
  4558. [09:03:33] Suggestion: Enable sysstat to collect accounting (no results) [ACCT-9626]
  4559. [09:03:33] ===---------------------------------------------------------------===
  4560. [09:03:33] Performing test ID ACCT-9628 (Check for auditd)
  4561. [09:03:33] Test: Check auditd status
  4562. [09:03:33] IsRunning: process 'auditd' not found
  4563. [09:03:33] Result: auditd not active
  4564. [09:03:33] Suggestion: Enable auditd to collect audit information [ACCT-9628]
  4565. [09:03:33] Hardening: assigned 0 hardening points (max for this item: 1), current: 78, total: 167
  4566. [09:03:33] ===---------------------------------------------------------------===
  4567. [09:03:33] Skipped test ACCT-9630 (Check for auditd rules)
  4568. [09:03:33] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4569. [09:03:33] ===---------------------------------------------------------------===
  4570. [09:03:33] Skipped test ACCT-9632 (Check for auditd configuration file)
  4571. [09:03:33] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4572. [09:03:33] ===---------------------------------------------------------------===
  4573. [09:03:33] Skipped test ACCT-9634 (Check for auditd log file)
  4574. [09:03:33] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4575. [09:03:33] ===---------------------------------------------------------------===
  4576. [09:03:33] Performing test ID ACCT-9636 (Check for Snoopy wrapper and logger)
  4577. [09:03:33] ===---------------------------------------------------------------===
  4578. [09:03:33] Skipped test ACCT-9650 (Check Solaris audit daemon)
  4579. [09:03:33] Reason to skip: Incorrect guest OS (Solaris only)
  4580. [09:03:33] ===---------------------------------------------------------------===
  4581. [09:03:33] Skipped test ACCT-9652 (Check auditd SMF status)
  4582. [09:03:33] Reason to skip: Incorrect guest OS (Solaris only)
  4583. [09:03:33] ===---------------------------------------------------------------===
  4584. [09:03:33] Skipped test ACCT-9654 (Check BSM auditing in /etc/system)
  4585. [09:03:33] Reason to skip: Incorrect guest OS (Solaris only)
  4586. [09:03:33] ===---------------------------------------------------------------===
  4587. [09:03:33] Skipped test ACCT-9656 (Check BSM auditing in module list)
  4588. [09:03:33] Reason to skip: Incorrect guest OS (Solaris only)
  4589. [09:03:33] ===---------------------------------------------------------------===
  4590. [09:03:33] Skipped test ACCT-9660 (Check location of audit events)
  4591. [09:03:33] Reason to skip: Incorrect guest OS (Solaris only)
  4592. [09:03:33] ===---------------------------------------------------------------===
  4593. [09:03:33] Skipped test ACCT-9662 (Check Solaris auditing stats)
  4594. [09:03:33] Reason to skip: Incorrect guest OS (Solaris only)
  4595. [09:03:34] ===---------------------------------------------------------------===
  4596. [09:03:34] Action: Performing tests from category: Time and Synchronization
  4597. [09:03:34] ===---------------------------------------------------------------===
  4598. [09:03:34] Performing test ID TIME-3104 (Check for running NTP daemon or client)
  4599. [09:03:34] Test: Searching for a running NTP daemon or available client
  4600. [09:03:34] IsRunning: process 'dntpd' not found
  4601. [09:03:34] IsRunning: process 'timed' not found
  4602. [09:03:34] Result: time sychronization not performed according timedatectl command
  4603. [09:03:34] Result: crontab file /etc/anacrontab not found
  4604. [09:03:34] Test: checking for ntpdate or rdate in crontab file /etc/crontab
  4605. [09:03:34] Result: no ntpdate or rdate reference found in crontab file /etc/crontab
  4606. [09:03:34] Test: checking for ntpdate or rdate in /etc/cron.d/mdadm
  4607. [09:03:34] Test: checking for ntpdate or rdate in /etc/cron.d/popularity-contest
  4608. [09:03:34] Result: /etc/cron.hourly is empty, skipping search in directory
  4609. [09:03:34] Test: checking for ntpdate or rdate in /etc/cron.daily/apport
  4610. [09:03:34] Test: checking for ntpdate or rdate in /etc/cron.daily/apt-compat
  4611. [09:03:34] Test: checking for ntpdate or rdate in /etc/cron.daily/bsdmainutils
  4612. [09:03:34] Test: checking for ntpdate or rdate in /etc/cron.daily/dpkg
  4613. [09:03:34] Test: checking for ntpdate or rdate in /etc/cron.daily/logrotate
  4614. [09:03:34] Test: checking for ntpdate or rdate in /etc/cron.daily/man-db
  4615. [09:03:34] Test: checking for ntpdate or rdate in /etc/cron.daily/mdadm
  4616. [09:03:34] Test: checking for ntpdate or rdate in /etc/cron.daily/mlocate
  4617. [09:03:34] Test: checking for ntpdate or rdate in /etc/cron.daily/passwd
  4618. [09:03:34] Test: checking for ntpdate or rdate in /etc/cron.daily/popularity-contest
  4619. [09:03:34] Test: checking for ntpdate or rdate in /etc/cron.daily/update-notifier-common
  4620. [09:03:34] Test: checking for ntpdate or rdate in /etc/cron.weekly/fstrim
  4621. [09:03:34] Test: checking for ntpdate or rdate in /etc/cron.weekly/man-db
  4622. [09:03:34] Test: checking for ntpdate or rdate in /etc/cron.weekly/update-notifier-common
  4623. [09:03:34] Result: /etc/cron.monthly is empty, skipping search in directory
  4624. [09:03:34] Result: no ntpdate or rdate found in cron directories
  4625. [09:03:34] Test: checking for file /etc/network/if-up.d/ntpdate
  4626. [09:03:34] Result: file /etc/network/if-up.d/ntpdate does not exist
  4627. [09:03:34] Result: Could not find a NTP daemon or client
  4628. [09:03:34] Suggestion: Use NTP daemon or NTP client to prevent time issues. [TIME-3104]
  4629. [09:03:34] Hardening: assigned 0 hardening points (max for this item: 2), current: 78, total: 169
  4630. [09:03:34] ===---------------------------------------------------------------===
  4631. [09:03:34] Skipped test TIME-3106 (Check systemd NTP time synchronization status)
  4632. [09:03:34] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4633. [09:03:34] ===---------------------------------------------------------------===
  4634. [09:03:34] Skipped test TIME-3112 (Check active NTP associations ID's)
  4635. [09:03:34] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4636. [09:03:34] ===---------------------------------------------------------------===
  4637. [09:03:34] Skipped test TIME-3116 (Check peers with stratum value of 16)
  4638. [09:03:34] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4639. [09:03:34] ===---------------------------------------------------------------===
  4640. [09:03:34] Skipped test TIME-3120 (Check unreliable NTP peers)
  4641. [09:03:34] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4642. [09:03:34] ===---------------------------------------------------------------===
  4643. [09:03:34] Skipped test TIME-3124 (Check selected time source)
  4644. [09:03:34] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4645. [09:03:34] ===---------------------------------------------------------------===
  4646. [09:03:34] Skipped test TIME-3128 (Check preffered time source)
  4647. [09:03:34] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4648. [09:03:34] ===---------------------------------------------------------------===
  4649. [09:03:34] Skipped test TIME-3132 (Check NTP falsetickers)
  4650. [09:03:34] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4651. [09:03:34] ===---------------------------------------------------------------===
  4652. [09:03:34] Skipped test TIME-3136 (Check NTP protocol version)
  4653. [09:03:34] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4654. [09:03:34] ===---------------------------------------------------------------===
  4655. [09:03:34] Skipped test TIME-3160 (Check empty NTP step-tickers)
  4656. [09:03:34] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4657. [09:03:35] ===---------------------------------------------------------------===
  4658. [09:03:35] Action: Performing tests from category: Cryptography
  4659. [09:03:35] ===---------------------------------------------------------------===
  4660. [09:03:35] Performing test ID CRYP-7902 (Check expire date of SSL certificates)
  4661. [09:03:35] Result: SSL path /etc/pki does not exist
  4662. [09:03:35] Test: testing if we can access /etc/ssl
  4663. [09:03:35] Result: file /etc/ssl is readable (or directory accessible).
  4664. [09:03:35] Result: found directory /etc/ssl
  4665. [09:03:35] Test: testing if we can access /etc/ssl/certs/ca-certificates.crt
  4666. [09:03:35] Result: file is owned by our current user ID (0), checking if it is readable
  4667. [09:03:35] Result: file /etc/ssl/certs/ca-certificates.crt is readable (or directory accessible).
  4668. [09:03:35] Test: checking certificate /etc/ssl/certs/ca-certificates.crt
  4669. [09:03:35] Result: certificate /etc/ssl/certs/ca-certificates.crt seems to be correct and still valid
  4670. [09:03:35] Test: testing if we can access /usr/local/share/ca-certificates
  4671. [09:03:35] Result: file /usr/local/share/ca-certificates is readable (or directory accessible).
  4672. [09:03:35] Result: found directory /usr/local/share/ca-certificates
  4673. [09:03:35] Result: SSL path /var/www does not exist
  4674. [09:03:35] Result: SSL path /srv/www does not exist
  4675. [09:03:36] ===---------------------------------------------------------------===
  4676. [09:03:36] Action: Performing tests from category: Virtualization
  4677. [09:03:37] ===---------------------------------------------------------------===
  4678. [09:03:37] Action: Performing tests from category: Containers
  4679. [09:03:37] ===---------------------------------------------------------------===
  4680. [09:03:37] Skipped test CONT-8004 (Query running Solaris zones)
  4681. [09:03:37] Reason to skip: Incorrect guest OS (Solaris only)
  4682. [09:03:37] ===---------------------------------------------------------------===
  4683. [09:03:37] Performing test ID CONT-8102 (Checking Docker status and information)
  4684. [09:03:37] IsRunning: process 'docker -d' not found
  4685. [09:03:37] ===---------------------------------------------------------------===
  4686. [09:03:37] Skipped test CONT-8104 (Checking Docker info for any warnings)
  4687. [09:03:37] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4688. [09:03:37] ===---------------------------------------------------------------===
  4689. [09:03:37] Skipped test CONT-8106 (Checking Docker info for any warnings)
  4690. [09:03:37] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4691. [09:03:38] ===---------------------------------------------------------------===
  4692. [09:03:38] Action: Performing tests from category: Security frameworks
  4693. [09:03:38] ===---------------------------------------------------------------===
  4694. [09:03:38] Performing test ID MACF-6204 (Check AppArmor presence)
  4695. [09:03:38] Result: aa-status binary found, AppArmor is installed
  4696. [09:03:38] ===---------------------------------------------------------------===
  4697. [09:03:38] Performing test ID MACF-6208 (Check if AppArmor is enabled)
  4698. [09:03:38] Result: AppArmor is enabled and a policy is loaded
  4699. [09:03:38] ===---------------------------------------------------------------===
  4700. [09:03:38] Performing test ID MACF-6232 (Check SELINUX presence)
  4701. [09:03:38] Test: checking if we have sestatus binary
  4702. [09:03:38] Result: sestatus binary NOT found
  4703. [09:03:38] ===---------------------------------------------------------------===
  4704. [09:03:38] Skipped test MACF-6234 (Check SELINUX status)
  4705. [09:03:38] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4706. [09:03:38] ===---------------------------------------------------------------===
  4707. [09:03:38] Performing test ID RBAC-6272 (Check grsecurity presence)
  4708. [09:03:38] Result: grsecurity not present (/dev/grsec not found)
  4709. [09:03:38] Result: no grsecurity found in kernel config
  4710. [09:03:38] ===---------------------------------------------------------------===
  4711. [09:03:38] Performing test ID MACF-6290 (Check for implemented MAC framework)
  4712. [09:03:38] Hardening: assigned 3 hardening points (max for this item: 3), current: 81, total: 172
  4713. [09:03:38] Result: found implemented MAC framework
  4714. [09:03:39] ===---------------------------------------------------------------===
  4715. [09:03:39] Action: Performing tests from category: Software: file integrity
  4716. [09:03:39] ===---------------------------------------------------------------===
  4717. [09:03:39] Performing test ID FINT-4310 (AFICK availability)
  4718. [09:03:39] Test: Checking AFICK binary
  4719. [09:03:39] Result: AFICK is not installed
  4720. [09:03:39] ===---------------------------------------------------------------===
  4721. [09:03:39] Performing test ID FINT-4314 (AIDE availability)
  4722. [09:03:39] Test: Checking AIDE binary
  4723. [09:03:39] Result: AIDE is not installed
  4724. [09:03:39] ===---------------------------------------------------------------===
  4725. [09:03:39] Skipped test FINT-4315 (Check AIDE configuration file)
  4726. [09:03:39] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4727. [09:03:39] ===---------------------------------------------------------------===
  4728. [09:03:39] Skipped test FINT-4316 (AIDE configuration: Checksums (SHA256 or SHA512))
  4729. [09:03:39] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4730. [09:03:39] ===---------------------------------------------------------------===
  4731. [09:03:39] Performing test ID FINT-4318 (Osiris availability)
  4732. [09:03:39] Test: Checking Osiris binary
  4733. [09:03:39] Result: Osiris is not installed
  4734. [09:03:39] ===---------------------------------------------------------------===
  4735. [09:03:39] Performing test ID FINT-4322 (Samhain availability)
  4736. [09:03:39] Test: Checking Samhain binary
  4737. [09:03:39] Result: Samhain is not installed
  4738. [09:03:39] ===---------------------------------------------------------------===
  4739. [09:03:39] Performing test ID FINT-4326 (Tripwire availability)
  4740. [09:03:39] Test: Checking Tripwire binary
  4741. [09:03:39] Result: Tripwire is not installed
  4742. [09:03:39] ===---------------------------------------------------------------===
  4743. [09:03:39] Performing test ID FINT-4328 (OSSEC syscheck daemon running)
  4744. [09:03:39] Test: Checking if OSSEC syscheck daemon is running
  4745. [09:03:39] IsRunning: process 'ossec-syscheckd' not found
  4746. [09:03:39] Result: syscheck (OSSEC) not installed
  4747. [09:03:39] ===---------------------------------------------------------------===
  4748. [09:03:39] Performing test ID FINT-4330 (mtree availability)
  4749. [09:03:39] Test: Checking mtree binary
  4750. [09:03:39] Result: mtree is not installed
  4751. [09:03:39] ===---------------------------------------------------------------===
  4752. [09:03:39] Skipped test FINT-4334 (Check lfd daemon status)
  4753. [09:03:39] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4754. [09:03:39] ===---------------------------------------------------------------===
  4755. [09:03:39] Skipped test FINT-4336 (Check lfd configuration status)
  4756. [09:03:39] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4757. [09:03:39] ===---------------------------------------------------------------===
  4758. [09:03:39] Performing test ID FINT-4350 (File integrity software installed)
  4759. [09:03:39] Test: Check if at least on file integrity tool is available/installed
  4760. [09:03:39] Result: No file integrity tools found
  4761. [09:03:39] Suggestion: Install a file integrity tool to monitor changes to critical and sensitive files [FINT-4350]
  4762. [09:03:39] Hardening: assigned 0 hardening points (max for this item: 5), current: 81, total: 177
  4763. [09:03:39] ===---------------------------------------------------------------===
  4764. [09:03:39] Action: Performing tests from category: Software: System tooling
  4765. [09:03:39] ===---------------------------------------------------------------===
  4766. [09:03:39] Performing test ID TOOL-5002 (Checking for automation tools)
  4767. [09:03:39] IsRunning: process 'puppet master' not found
  4768. [09:03:39] IsRunning: process 'salt-master' not found
  4769. [09:03:39] Suggestion: Determine if automation tools are present for system management [TOOL-5002]
  4770. [09:03:40] ===---------------------------------------------------------------===
  4771. [09:03:40] Action: Performing tests from category: Software: Malware scanners
  4772. [09:03:40] ===---------------------------------------------------------------===
  4773. [09:03:40] Performing test ID MALW-3275 (Check for chkrootkit)
  4774. [09:03:40] Test: checking presence chkrootkit
  4775. [09:03:40] Result: chkrootkit not found
  4776. [09:03:40] ===---------------------------------------------------------------===
  4777. [09:03:40] Performing test ID MALW-3276 (Check for Rootkit Hunter)
  4778. [09:03:40] Test: checking presence Rootkit Hunter
  4779. [09:03:40] Result: Rootkit Hunter not found
  4780. [09:03:40] ===---------------------------------------------------------------===
  4781. [09:03:40] Performing test ID MALW-3280 (Check if anti-virus tool is installed)
  4782. [09:03:40] Test: checking process cma or cmdagent (McAfee)
  4783. [09:03:40] IsRunning: process 'cmdagent' not found
  4784. [09:03:40] Test: checking process savscand
  4785. [09:03:40] IsRunning: process 'savscand' not found
  4786. [09:03:40] Test: checking process SophosScanD
  4787. [09:03:40] IsRunning: process 'SophosScanD' not found
  4788. [09:03:40] Result: no commercial anti-virus tool found
  4789. [09:03:40] Hardening: assigned 0 hardening points (max for this item: 3), current: 81, total: 180
  4790. [09:03:40] ===---------------------------------------------------------------===
  4791. [09:03:40] Performing test ID MALW-3282 (Check for clamscan)
  4792. [09:03:40] Test: checking presence clamscan
  4793. [09:03:40] Result: clamscan couldn't be found
  4794. [09:03:40] ===---------------------------------------------------------------===
  4795. [09:03:40] Performing test ID MALW-3284 (Check for clamd)
  4796. [09:03:40] Test: checking running ClamAV daemon (clamd)
  4797. [09:03:40] IsRunning: process 'clamd' not found
  4798. [09:03:40] Result: clamd not running
  4799. [09:03:40] ===---------------------------------------------------------------===
  4800. [09:03:40] Skipped test MALW-3286 (Check for freshclam)
  4801. [09:03:40] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4802. [09:03:40] ===---------------------------------------------------------------===
  4803. [09:03:40] Skipped test MALW-3288 (Check for ClamXav)
  4804. [09:03:40] Reason to skip: Prerequisities not met (ie missing tool, other type of Linux distribution)
  4805. [09:03:41] ===---------------------------------------------------------------===
  4806. [09:03:41] Action: Performing tests from category: File Permissions
  4807. [09:03:41] ===---------------------------------------------------------------===
  4808. [09:03:41] Performing test ID FILE-7524 (Perform file permissions check)
  4809. [09:03:41] Test: Checking file permissions
  4810. [09:03:41] Using profile /etc/lynis/default.prf for baseline.
  4811. [09:03:41] Checking /etc/lilo.conf
  4812. [09:03:41] Expected permissions:
  4813. [09:03:41] Actual permissions:
  4814. [09:03:41] Result: FILE_NOT_FOUND
  4815. [09:03:41] Checking /root/.ssh
  4816. [09:03:41] Expected permissions: rwx------
  4817. [09:03:41] Actual permissions: rwx------
  4818. [09:03:41] Result: OK
  4819. [09:03:44] ===---------------------------------------------------------------===
  4820. [09:03:44] Action: Performing tests from category: Home directories
  4821. [09:03:44] ===---------------------------------------------------------------===
  4822. [09:03:44] Performing test ID HOME-9302 (Create list with home directories)
  4823. [09:03:44] Test: query /etc/passwd to obtain home directories
  4824. [09:03:44] Result: found home directory: /bin (directory exists)
  4825. [09:03:44] Result: found home directory: /dev (directory exists)
  4826. [09:03:44] Result: found home directory: /home/gitlab-runner (directory exists)
  4827. [09:03:44] Result: found home directory: /home/syslog (directory does not exist)
  4828. [09:03:44] Result: found home directory: /nonexistent (directory does not exist)
  4829. [09:03:44] Result: found home directory: /root (directory exists)
  4830. [09:03:44] Result: found home directory: /run/systemd (directory exists)
  4831. [09:03:44] Result: found home directory: /run/systemd/netif (directory exists)
  4832. [09:03:44] Result: found home directory: /run/systemd/resolve (directory does not exist)
  4833. [09:03:44] Result: found home directory: /run/uuidd (directory exists)
  4834. [09:03:44] Result: found home directory: /usr/games (directory exists)
  4835. [09:03:44] Result: found home directory: /usr/sbin (directory exists)
  4836. [09:03:44] Result: found home directory: /var/backups (directory exists)
  4837. [09:03:44] Result: found home directory: /var/cache/man (directory exists)
  4838. [09:03:44] Result: found home directory: /var/cache/pollinate (directory exists)
  4839. [09:03:44] Result: found home directory: /var/lib/gnats (directory does not exist)
  4840. [09:03:44] Result: found home directory: /var/lib/lxd/ (directory exists)
  4841. [09:03:44] Result: found home directory: /var/lib/misc (directory exists)
  4842. [09:03:44] Result: found home directory: /var/list (directory does not exist)
  4843. [09:03:44] Result: found home directory: /var/mail (directory exists)
  4844. [09:03:44] Result: found home directory: /var/run/dbus (directory exists)
  4845. [09:03:44] Result: found home directory: /var/run/ircd (directory does not exist)
  4846. [09:03:44] Result: found home directory: /var/run/sshd (directory exists)
  4847. [09:03:44] Result: found home directory: /var/spool/lpd (directory does not exist)
  4848. [09:03:44] Result: found home directory: /var/spool/news (directory does not exist)
  4849. [09:03:44] Result: found home directory: /var/spool/uucp (directory does not exist)
  4850. [09:03:44] Result: found home directory: /var/www (directory does not exist)
  4851. [09:03:44] ===---------------------------------------------------------------===
  4852. [09:03:44] Performing test ID HOME-9310 (Checking for suspicious shell history files)
  4853. [09:03:44] Result: Ok, history files are type 'file'.
  4854. [09:03:44] Remarks: History files are normally of the type 'file'. Symbolic links and other types can be riskful.
  4855. [09:03:44] ===---------------------------------------------------------------===
  4856. [09:03:44] Performing test ID HOME-9350 (Collecting information from home directories)
  4857. [09:03:44] Result: IGNORE_HOME_DIRS empty, no paths excluded
  4858. [09:03:48] ===---------------------------------------------------------------===
  4859. [09:03:48] Action: Performing tests from category: Kernel Hardening
  4860. [09:03:48] ===---------------------------------------------------------------===
  4861. [09:03:48] Performing test ID KRNL-6000 (Check sysctl key pairs in scan profile)
  4862. [09:03:48] Result: key security.bsd.see_other_gids does not exist on this machine
  4863. [09:03:48] Result: key security.bsd.see_other_uids does not exist on this machine
  4864. [09:03:48] Result: key kern.sugid_coredump does not exist on this machine
  4865. [09:03:48] Result: key kernel.core_setuid_ok does not exist on this machine
  4866. [09:03:48] Result: sysctl key kernel.core_uses_pid has a different value than expected in scan profile. Expected=1, Real=0
  4867. [09:03:48] Hardening: assigned 0 hardening points (max for this item: 1), current: 81, total: 181
  4868. [09:03:48] Result: sysctl key kernel.ctrl-alt-del contains equal expected and current value (0)
  4869. [09:03:48] Hardening: assigned 1 hardening points (max for this item: 1), current: 82, total: 182
  4870. [09:03:48] Result: key kernel.exec-shield-randomize does not exist on this machine
  4871. [09:03:48] Result: key kernel.exec-shield does not exist on this machine
  4872. [09:03:48] Result: sysctl key kernel.kptr_restrict contains equal expected and current value (1)
  4873. [09:03:48] Hardening: assigned 1 hardening points (max for this item: 1), current: 83, total: 183
  4874. [09:03:48] Result: sysctl key kernel.sysrq has a different value than expected in scan profile. Expected=0, Real=176
  4875. [09:03:48] Hardening: assigned 0 hardening points (max for this item: 1), current: 83, total: 184
  4876. [09:03:48] Result: key kernel.use-nx does not exist on this machine
  4877. [09:03:48] Result: key net.inet.icmp.bmcastecho does not exist on this machine
  4878. [09:03:48] Result: key net.inet.icmp.rediraccept does not exist on this machine
  4879. [09:03:48] Result: key net.inet.ip.accept_sourceroute does not exist on this machine
  4880. [09:03:48] Result: key net.inet.ip.redirect does not exist on this machine
  4881. [09:03:48] Result: key net.inet.ip.sourceroute does not exist on this machine
  4882. [09:03:48] Result: key net.inet.ip6.redirect does not exist on this machine
  4883. [09:03:48] Result: key net.inet.tcp.blackhole does not exist on this machine
  4884. [09:03:48] Result: key net.inet.udp.blackhole does not exist on this machine
  4885. [09:03:48] Result: key net.inet6.icmp6.rediraccept does not exist on this machine
  4886. [09:03:48] Result: key net.inet6.ip6.redirect does not exist on this machine
  4887. [09:03:48] Result: sysctl key net.ipv4.conf.all.accept_redirects has a different value than expected in scan profile. Expected=0, Real=1
  4888. [09:03:48] Hardening: assigned 0 hardening points (max for this item: 1), current: 83, total: 185
  4889. [09:03:48] Result: sysctl key net.ipv4.conf.all.accept_source_route contains equal expected and current value (0)
  4890. [09:03:48] Hardening: assigned 1 hardening points (max for this item: 1), current: 84, total: 186
  4891. [09:03:48] Result: sysctl key net.ipv4.conf.all.bootp_relay contains equal expected and current value (0)
  4892. [09:03:48] Hardening: assigned 1 hardening points (max for this item: 1), current: 85, total: 187
  4893. [09:03:48] Result: sysctl key net.ipv4.conf.all.forwarding contains equal expected and current value (0)
  4894. [09:03:48] Hardening: assigned 1 hardening points (max for this item: 1), current: 86, total: 188
  4895. [09:03:48] Result: sysctl key net.ipv4.conf.all.log_martians has a different value than expected in scan profile. Expected=1, Real=0
  4896. [09:03:48] Hardening: assigned 0 hardening points (max for this item: 1), current: 86, total: 189
  4897. [09:03:48] Result: sysctl key net.ipv4.conf.all.mc_forwarding contains equal expected and current value (0)
  4898. [09:03:48] Hardening: assigned 1 hardening points (max for this item: 1), current: 87, total: 190
  4899. [09:03:48] Result: sysctl key net.ipv4.conf.all.proxy_arp contains equal expected and current value (0)
  4900. [09:03:48] Hardening: assigned 1 hardening points (max for this item: 1), current: 88, total: 191
  4901. [09:03:48] Result: sysctl key net.ipv4.conf.all.rp_filter contains equal expected and current value (1)
  4902. [09:03:48] Hardening: assigned 1 hardening points (max for this item: 1), current: 89, total: 192
  4903. [09:03:48] Result: sysctl key net.ipv4.conf.all.send_redirects has a different value than expected in scan profile. Expected=0, Real=1
  4904. [09:03:48] Hardening: assigned 0 hardening points (max for this item: 1), current: 89, total: 193
  4905. [09:03:48] Result: sysctl key net.ipv4.conf.default.accept_redirects has a different value than expected in scan profile. Expected=0, Real=1
  4906. [09:03:48] Hardening: assigned 0 hardening points (max for this item: 1), current: 89, total: 194
  4907. [09:03:48] Result: sysctl key net.ipv4.conf.default.accept_source_route has a different value than expected in scan profile. Expected=0, Real=1
  4908. [09:03:48] Hardening: assigned 0 hardening points (max for this item: 1), current: 89, total: 195
  4909. [09:03:49] Result: sysctl key net.ipv4.conf.default.log_martians has a different value than expected in scan profile. Expected=1, Real=0
  4910. [09:03:49] Hardening: assigned 0 hardening points (max for this item: 1), current: 89, total: 196
  4911. [09:03:49] Result: sysctl key net.ipv4.icmp_echo_ignore_broadcasts contains equal expected and current value (1)
  4912. [09:03:49] Hardening: assigned 1 hardening points (max for this item: 1), current: 90, total: 197
  4913. [09:03:49] Result: sysctl key net.ipv4.icmp_ignore_bogus_error_responses contains equal expected and current value (1)
  4914. [09:03:49] Hardening: assigned 1 hardening points (max for this item: 1), current: 91, total: 198
  4915. [09:03:49] Result: sysctl key net.ipv4.tcp_syncookies contains equal expected and current value (1)
  4916. [09:03:49] Hardening: assigned 1 hardening points (max for this item: 1), current: 92, total: 199
  4917. [09:03:49] Result: sysctl key net.ipv4.tcp_timestamps has a different value than expected in scan profile. Expected=0, Real=1
  4918. [09:03:49] Hardening: assigned 0 hardening points (max for this item: 1), current: 92, total: 200
  4919. [09:03:49] Result: key net.ipv6.conf.all.send_redirects does not exist on this machine
  4920. [09:03:49] Result: sysctl key net.ipv6.conf.all.accept_redirects has a different value than expected in scan profile. Expected=0, Real=1
  4921. [09:03:49] Hardening: assigned 0 hardening points (max for this item: 1), current: 92, total: 201
  4922. [09:03:49] Result: sysctl key net.ipv6.conf.all.accept_source_route contains equal expected and current value (0)
  4923. [09:03:49] Hardening: assigned 1 hardening points (max for this item: 1), current: 93, total: 202
  4924. [09:03:49] Result: sysctl key net.ipv6.conf.default.accept_redirects has a different value than expected in scan profile. Expected=0, Real=1
  4925. [09:03:49] Hardening: assigned 0 hardening points (max for this item: 1), current: 93, total: 203
  4926. [09:03:49] Result: sysctl key net.ipv6.conf.default.accept_source_route contains equal expected and current value (0)
  4927. [09:03:49] Hardening: assigned 1 hardening points (max for this item: 1), current: 94, total: 204
  4928. [09:03:49] Suggestion: One or more sysctl values differ from the scan profile and could be tweaked [KRNL-6000]
  4929. [09:03:52] ===---------------------------------------------------------------===
  4930. [09:03:52] Action: Performing tests from category: Hardening
  4931. [09:03:52] ===---------------------------------------------------------------===
  4932. [09:03:52] Performing test ID HRDN-7220 (Check if one or more compilers are installed)
  4933. [09:03:52] Test: Check if one or more compilers can be found on the system
  4934. [09:03:52] Result: no compilers found
  4935. [09:03:52] Hardening: assigned 3 hardening points (max for this item: 3), current: 97, total: 207
  4936. [09:03:52] ===---------------------------------------------------------------===
  4937. [09:03:52] Performing test ID HRDN-7222 (Check compiler permissions)
  4938. [09:03:52] Test: Check if one or more compilers can be found on the system
  4939. [09:03:52] Result: no compilers found
  4940. [09:03:52] ===---------------------------------------------------------------===
  4941. [09:03:52] Performing test ID HRDN-7230 (Check for malware scanner)
  4942. [09:03:52] Test: Check if one or more compilers can be found on the system
  4943. [09:03:52] Result: no malware scanner found
  4944. [09:03:52] Suggestion: Harden the system by installing at least one malware scanner, to perform periodic file system scans [HRDN-7230]
  4945. [09:03:52] Hardening: assigned 1 hardening points (max for this item: 3), current: 98, total: 210
  4946. [09:03:54] ===---------------------------------------------------------------===
  4947. [09:03:54] Action: Performing tests from category: Custom Tests
  4948. [09:03:54] Test: Checking for tests_custom file
  4949. [09:03:54] Checking permissions of /usr/share/lynis/include/report
  4950. [09:03:54] File permissions are OK
  4951. [09:03:54] ===---------------------------------------------------------------===
  4952. [09:03:54] Hardening index : [46] [######### ]
  4953. [09:03:54] Hardening strength: System has not or a low amount been hardened
  4954. [09:03:54] ================================================================================
  4955. [09:03:54] Tests performed: 189
  4956. [09:03:54] Total tests: 336
  4957. [09:03:54] Active plugins: 1
  4958. [09:03:54] Total plugins: 1
  4959. [09:03:54] ================================================================================
  4960. [09:03:54] Lynis 2.1.1
  4961. [09:03:54] Copyright 2007-2015 - CISOfy, https://cisofy.com
  4962. [09:03:54] Enterprise support and plugins available via CISOfy
  4963. [09:03:54] Program ended successfully
  4964. [09:03:54] ================================================================================
  4965. [09:03:54] PID file removed (/var/run/lynis.pid)
  4966. root@node8-new-21:/var/log# ls -la
  4967. total 992
  4968. drwxrwxr-x 7 root syslog 4096 Oct 3 09:02 .
  4969. drwxr-xr-x 13 root root 4096 Dec 8 2017 ..
  4970. -rw-r--r-- 1 root root 0 Jul 20 06:25 alternatives.log
  4971. -rw-r--r-- 1 root root 1286 Jul 19 13:41 alternatives.log.1
  4972. -rw-r--r-- 1 root root 134 Jun 14 06:23 alternatives.log.2.gz
  4973. -rw-r--r-- 1 root root 135 May 25 06:41 alternatives.log.3.gz
  4974. -rw-r--r-- 1 root root 134 Apr 18 06:19 alternatives.log.4.gz
  4975. -rw-r--r-- 1 root root 110 Jan 23 2018 alternatives.log.5.gz
  4976. -rw-r--r-- 1 root root 164 Dec 23 2017 alternatives.log.6.gz
  4977. drwxr-xr-x 2 root root 4096 Oct 1 06:25 apt
  4978. -rw-r----- 1 syslog adm 16083 Oct 3 09:02 auth.log
  4979. -rw-r----- 1 syslog adm 59026 Oct 1 06:25 auth.log.1
  4980. -rw-r----- 1 syslog adm 5353 Sep 23 06:25 auth.log.2.gz
  4981. -rw-r----- 1 syslog adm 2193 Sep 17 06:25 auth.log.3.gz
  4982. -rw-r----- 1 syslog adm 3304 Sep 9 06:25 auth.log.4.gz
  4983. -rw-rw---- 1 root utmp 0 Oct 1 06:25 btmp
  4984. -rw-rw---- 1 root utmp 0 Sep 1 06:25 btmp.1
  4985. -rw-r--r-- 1 syslog adm 404526 Jul 19 13:43 cloud-init.log
  4986. -rw-r--r-- 1 root root 12820 Jul 19 13:43 cloud-init-output.log
  4987. drwxr-xr-x 2 root root 4096 Oct 20 2017 dist-upgrade
  4988. -rw-r--r-- 1 root root 8527 Oct 3 09:02 dpkg.log
  4989. -rw-r--r-- 1 root root 16473 Sep 28 06:17 dpkg.log.1
  4990. -rw-r--r-- 1 root root 1899 Dec 26 2017 dpkg.log.10.gz
  4991. -rw-r--r-- 1 root root 1401 Aug 31 06:37 dpkg.log.2.gz
  4992. -rw-r--r-- 1 root root 8625 Jul 19 13:41 dpkg.log.3.gz
  4993. -rw-r--r-- 1 root root 1826 Jun 29 06:54 dpkg.log.4.gz
  4994. -rw-r--r-- 1 root root 1875 May 31 06:22 dpkg.log.5.gz
  4995. -rw-r--r-- 1 root root 1542 Apr 24 06:30 dpkg.log.6.gz
  4996. -rw-r--r-- 1 root root 735 Mar 30 2018 dpkg.log.7.gz
  4997. -rw-r--r-- 1 root root 1746 Feb 27 2018 dpkg.log.8.gz
  4998. -rw-r--r-- 1 root root 2828 Jan 26 2018 dpkg.log.9.gz
  4999. drwxr-xr-x 2 root root 4096 Dec 8 2017 fsck
  5000. -rw-r----- 1 syslog adm 356 Oct 2 15:49 kern.log
  5001. -rw-r----- 1 syslog adm 1424 Sep 26 18:19 kern.log.1
  5002. -rw-r----- 1 syslog adm 647 Sep 22 06:29 kern.log.2.gz
  5003. -rw-r----- 1 syslog adm 251 Sep 10 00:10 kern.log.3.gz
  5004. -rw-r----- 1 syslog adm 508 Sep 7 09:53 kern.log.4.gz
  5005. -rw-rw-r-- 1 root utmp 292000 Oct 3 09:02 lastlog
  5006. drwxr-xr-x 2 root root 4096 Dec 7 2017 lxd
  5007. -rw-r----- 1 root root 248931 Oct 3 09:03 lynis.log
  5008. -rw-r----- 1 root root 34225 Oct 3 09:03 lynis-report.dat
  5009. -rw-r----- 1 syslog adm 2192 Oct 3 09:03 syslog
  5010. -rw-r----- 1 syslog adm 11961 Oct 3 06:25 syslog.1
  5011. -rw-r----- 1 syslog adm 1007 Oct 2 06:25 syslog.2.gz
  5012. -rw-r----- 1 syslog adm 1004 Oct 1 06:25 syslog.3.gz
  5013. -rw-r----- 1 syslog adm 1070 Sep 30 06:25 syslog.4.gz
  5014. -rw-r----- 1 syslog adm 973 Sep 29 06:25 syslog.5.gz
  5015. -rw-r----- 1 syslog adm 1006 Sep 28 06:25 syslog.6.gz
  5016. -rw-r----- 1 syslog adm 1267 Sep 27 06:25 syslog.7.gz
  5017. drwxr-x--- 2 root adm 4096 Oct 1 06:25 unattended-upgrades
  5018. -rw-rw-r-- 1 root utmp 384 Oct 3 09:02 wtmp
  5019. -rw-rw-r-- 1 root utmp 0 Sep 1 06:25 wtmp.1
  5020. root@node8-new-21:/var/log# chkrootkit
  5021. The program 'chkrootkit' is currently not installed. You can install it by typing:
  5022. apt install chkrootkit
  5023. root@node8-new-21:/var/log# apt-get install chkrootkit -y
  5024. Reading package lists... Done
  5025. Building dependency tree
  5026. Reading state information... Done
  5027. The following packages were automatically installed and are no longer required:
  5028. grub-pc-bin linux-headers-4.4.0-103 linux-headers-4.4.0-103-generic linux-headers-4.4.0-104 linux-headers-4.4.0-104-generic linux-headers-4.4.0-108
  5029. linux-headers-4.4.0-108-generic linux-headers-4.4.0-109 linux-headers-4.4.0-109-generic linux-headers-4.4.0-112 linux-headers-4.4.0-112-generic
  5030. linux-headers-4.4.0-116 linux-headers-4.4.0-116-generic linux-headers-4.4.0-119 linux-headers-4.4.0-119-generic linux-headers-4.4.0-121
  5031. linux-headers-4.4.0-121-generic linux-headers-4.4.0-124 linux-headers-4.4.0-124-generic linux-headers-4.4.0-127 linux-headers-4.4.0-127-generic
  5032. linux-headers-4.4.0-128 linux-headers-4.4.0-128-generic linux-headers-4.4.0-133 linux-headers-4.4.0-133-generic linux-image-4.4.0-103-generic
  5033. linux-image-4.4.0-104-generic linux-image-4.4.0-108-generic linux-image-4.4.0-109-generic linux-image-4.4.0-112-generic linux-image-4.4.0-116-generic
  5034. linux-image-4.4.0-119-generic linux-image-4.4.0-121-generic linux-image-4.4.0-124-generic linux-image-4.4.0-127-generic linux-image-4.4.0-128-generic
  5035. linux-image-4.4.0-133-generic
  5036. Use 'apt autoremove' to remove them.
  5037. The following additional packages will be installed:
  5038. binutils
  5039. Suggested packages:
  5040. binutils-doc
  5041. The following NEW packages will be installed:
  5042. binutils chkrootkit
  5043. 0 upgraded, 2 newly installed, 0 to remove and 33 not upgraded.
  5044. Need to get 2,636 kB of archives.
  5045. After this operation, 14.7 MB of additional disk space will be used.
  5046. Get:1 http://nyc2.mirrors.digitalocean.com/ubuntu xenial-updates/main amd64 binutils amd64 2.26.1-1ubuntu1~16.04.7 [2,309 kB]
  5047. Get:2 http://nyc2.mirrors.digitalocean.com/ubuntu xenial/universe amd64 chkrootkit amd64 0.50-3.2 [326 kB]
  5048. Fetched 2,636 kB in 0s (7,993 kB/s)
  5049. Preconfiguring packages ...
  5050. Selecting previously unselected package binutils.
  5051. (Reading database ... 451643 files and directories currently installed.)
  5052. Preparing to unpack .../binutils_2.26.1-1ubuntu1~16.04.7_amd64.deb ...
  5053. Unpacking binutils (2.26.1-1ubuntu1~16.04.7) ...
  5054. Selecting previously unselected package chkrootkit.
  5055. Preparing to unpack .../chkrootkit_0.50-3.2_amd64.deb ...
  5056. Unpacking chkrootkit (0.50-3.2) ...
  5057. Processing triggers for libc-bin (2.23-0ubuntu10) ...
  5058. Processing triggers for man-db (2.7.5-1) ...
  5059. Setting up binutils (2.26.1-1ubuntu1~16.04.7) ...
  5060. Setting up chkrootkit (0.50-3.2) ...
  5061. Processing triggers for libc-bin (2.23-0ubuntu10) ...
  5062. root@node8-new-21:/var/log# chkrootkit
  5063. ROOTDIR is `/'
  5064. Checking `amd'... not found
  5065. Checking `basename'... not infected
  5066. Checking `biff'... not found
  5067. Checking `chfn'... not infected
  5068. Checking `chsh'... not infected
  5069. Checking `cron'... not infected
  5070. Checking `crontab'... not infected
  5071. Checking `date'... not infected
  5072. Checking `du'... not infected
  5073. Checking `dirname'... not infected
  5074. Checking `echo'... not infected
  5075. Checking `egrep'... not infected
  5076. Checking `env'... not infected
  5077. Checking `find'... not infected
  5078. Checking `fingerd'... not found
  5079. Checking `gpm'... not found
  5080. Checking `grep'... not infected
  5081. Checking `hdparm'... not infected
  5082. Checking `su'... not infected
  5083. Checking `ifconfig'... not infected
  5084. Checking `inetd'... not infected
  5085. Checking `inetdconf'... not found
  5086. Checking `identd'... not found
  5087. Checking `init'... not infected
  5088. Checking `killall'... not infected
  5089. Checking `ldsopreload'... not infected
  5090. Checking `login'... not infected
  5091. Checking `ls'... not infected
  5092. Checking `lsof'... not infected
  5093. Checking `mail'... not found
  5094. Checking `mingetty'... not found
  5095. Checking `netstat'... not infected
  5096. Checking `named'... not found
  5097. Checking `passwd'... not infected
  5098. Checking `pidof'... not infected
  5099. Checking `pop2'... not found
  5100. Checking `pop3'... not found
  5101. Checking `ps'... not infected
  5102. Checking `pstree'... not infected
  5103. Checking `rpcinfo'... not found
  5104. Checking `rlogind'... not found
  5105. Checking `rshd'... not found
  5106. Checking `slogin'... not infected
  5107. Checking `sendmail'... not found
  5108. Checking `sshd'... not infected
  5109. Checking `syslogd'... not tested
  5110. Checking `tar'... not infected
  5111. Checking `tcpd'... not infected
  5112. Checking `tcpdump'... not infected
  5113. Checking `top'... not infected
  5114. Checking `telnetd'... not found
  5115. Checking `timed'... not found
  5116. Checking `traceroute'... not found
  5117. Checking `vdir'... not infected
  5118. Checking `w'... not infected
  5119. Checking `write'... not infected
  5120. Checking `aliens'... no suspect files
  5121. Searching for sniffer's logs, it may take a while... nothing found
  5122. Searching for rootkit HiDrootkit's default files... nothing found
  5123. Searching for rootkit t0rn's default files... nothing found
  5124. Searching for t0rn's v8 defaults... nothing found
  5125. Searching for rootkit Lion's default files... nothing found
  5126. Searching for rootkit RSHA's default files... nothing found
  5127. Searching for rootkit RH-Sharpe's default files... nothing found
  5128. Searching for Ambient's rootkit (ark) default files and dirs... nothing found
  5129. Searching for suspicious files and dirs, it may take a while... The following suspicious files and directories were found:
  5130. /usr/lib/node_modules/npm/.npmignore /usr/lib/node_modules/npm/.github /usr/lib/node_modules/npm/.mailmap /usr/lib/node_modules/npm/node_modules/lazy-property/.npmignore /usr/lib/node_modules/npm/node_modules/archy/.travis.yml /usr/lib/node_modules/npm/node_modules/sha/.npmignore /usr/lib/node_modules/npm/node_modules/umask/.npmignore /usr/lib/node_modules/npm/node_modules/JSONStream/.npmignore /usr/lib/node_modules/npm/node_modules/JSONStream/node_modules/jsonparse/.npmignore /usr/lib/node_modules/npm/node_modules/JSONStream/node_modules/through/.travis.yml /usr/lib/node_modules/npm/node_modules/JSONStream/.travis.yml /usr/lib/node_modules/npm/node_modules/request/node_modules/hawk/.npmignore /usr/lib/node_modules/npm/node_modules/request/node_modules/hawk/node_modules/sntp/.npmignore /usr/lib/node_modules/npm/node_modules/request/node_modules/hawk/node_modules/hoek/.npmignore /usr/lib/node_modules/npm/node_modules/request/node_modules/hawk/node_modules/cryptiles/.npmignore /usr/lib/node_modules/npm/node_modules/request/node_modules/performance-now/.npmignore /usr/lib/node_modules/npm/node_modules/request/node_modules/performance-now/.tm_properties /usr/lib/node_modules/npm/node_modules/request/node_modules/performance-now/.travis.yml /usr/lib/node_modules/npm/node_modules/request/node_modules/combined-stream/node_modules/delayed-stream/.npmignore /usr/lib/node_modules/npm/node_modules/request/node_modules/isstream/.npmignore /usr/lib/node_modules/npm/node_modules/request/node_modules/isstream/.travis.yml /usr/lib/node_modules/npm/node_modules/request/node_modules/http-signature/.dir-locals.el /usr/lib/node_modules/npm/node_modules/request/node_modules/http-signature/.npmignore /usr/lib/node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/jsprim/node_modules/verror/.npmignore /usr/lib/node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/jsprim/node_modules/extsprintf/.gitmodules /usr/lib/node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/jsprim/node_modules/extsprintf/.npmignore /usr/lib/node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/.npmignore /usr/lib/node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/getpass/.npmignore /usr/lib/node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/getpass/.travis.yml /usr/lib/node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/jsbn/.npmignore /usr/lib/node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/asn1/.npmignore /usr/lib/node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/asn1/.travis.yml /usr/lib/node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/tweetnacl/.npmignore /usr/lib/node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/node_modules/ecc-jsbn/.npmignore /usr/lib/node_modules/npm/node_modules/request/node_modules/http-signature/node_modules/sshpk/.travis.yml /usr/lib/node_modules/npm/node_modules/request/node_modules/extend/.npmignore /usr/lib/node_modules/npm/node_modules/request/node_modules/extend/.travis.yml /usr/lib/node_modules/npm/node_modules/request/node_modules/extend/.jscs.json /usr/lib/node_modules/npm/node_modules/request/node_modules/qs/.eslintignore /usr/lib/node_modules/npm/node_modules/request/node_modules/qs/.editorconfig /usr/lib/node_modules/npm/node_modules/request/node_modules/stringstream/.npmignore /usr/lib/node_modules/npm/node_modules/request/node_modules/stringstream/.travis.yml /usr/lib/node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/ajv/.tonic_example.js /usr/lib/node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/ajv/node_modules/json-stable-stringify/.npmignore /usr/lib/node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/ajv/node_modules/json-stable-stringify/.travis.yml /usr/lib/node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/ajv/node_modules/fast-deep-equal/benchmark/.eslintrc.yml /usr/lib/node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/ajv/node_modules/fast-deep-equal/.npmignore /usr/lib/node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/ajv/node_modules/fast-deep-equal/spec/.eslintrc.yml /usr/lib/node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/ajv/node_modules/fast-deep-equal/.eslintrc.yml /usr/lib/node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/ajv/node_modules/fast-deep-equal/.travis.yml /usr/lib/node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/ajv/node_modules/json-schema-traverse/.npmignore /usr/lib/node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/ajv/node_modules/json-schema-traverse/spec/.eslintrc.yml /usr/lib/node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/ajv/node_modules/json-schema-traverse/.eslintrc.yml /usr/lib/node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/ajv/node_modules/json-schema-traverse/.travis.yml /usr/lib/node_modules/npm/node_modules/request/node_modules/har-validator/node_modules/ajv/scripts/.eslintrc.yml /usr/lib/node_modules/npm/node_modules/request/node_modules/aws4/.tern-port /usr/lib/node_modules/npm/node_modules/request/node_modules/aws4/.npmignore /usr/lib/node_modules/npm/node_modules/request/node_modules/aws4/.travis.yml /usr/lib/node_modules/npm/node_modules/request/node_modules/json-stringify-safe/.npmignore /usr/lib/node_modules/npm/node_modules/fs-write-stream-atomic/.npmignore /usr/lib/node_modules/npm/node_modules/fs-write-stream-atomic/.travis.yml /usr/lib/node_modules/npm/node_modules/qrcode-terminal/.npmignore /usr/lib/node_modules/npm/node_modules/qrcode-terminal/.travis.yml /usr/lib/node_modules/npm/node_modules/cli-table2/.npmignore /usr/lib/node_modules/npm/node_modules/cli-table2/.travis.yml /usr/lib/node_modules/npm/node_modules/read-cmd-shim/.npmignore /usr/lib/node_modules/npm/node_modules/safe-buffer/.travis.yml /usr/lib/node_modules/npm/node_modules/nopt/.npmignore /usr/lib/node_modules/npm/node_modules/nopt/.travis.yml /usr/lib/node_modules/npm/node_modules/readable-stream/.npmignore /usr/lib/node_modules/npm/node_modules/readable-stream/node_modules/string_decoder/.npmignore /usr/lib/node_modules/npm/node_modules/readable-stream/node_modules/process-nextick-args/.travis.yml /usr/lib/node_modules/npm/node_modules/readable-stream/node_modules/isarray/.npmignore /usr/lib/node_modules/npm/node_modules/readable-stream/node_modules/isarray/.travis.yml /usr/lib/node_modules/npm/node_modules/readable-stream/.travis.yml /usr/lib/node_modules/npm/node_modules/tar/node_modules/minipass/.npmignore /usr/lib/node_modules/npm/node_modules/tar/node_modules/minipass/.travis.yml /usr/lib/node_modules/npm/node_modules/fs-vacuum/.eslintrc /usr/lib/node_modules/npm/node_modules/fs-vacuum/.npmignore /usr/lib/node_modules/npm/node_modules/fs-vacuum/.travis.yml /usr/lib/node_modules/npm/node_modules/init-package-json/node_modules/promzard/.npmignore /usr/lib/node_modules/npm/node_modules/dezalgo/.travis.yml /usr/lib/node_modules/npm/node_modules/npm-profile/node_modules/make-fetch-happen/node_modules/https-proxy-agent/.npmignore /usr/lib/node_modules/npm/node_modules/npm-profile/node_modules/make-fetch-happen/node_modules/https-proxy-agent/node_modules/agent-base/.npmignore /usr/lib/node_modules/npm/node_modules/npm-profile/node_modules/make-fetch-happen/node_modules/https-proxy-agent/node_modules/agent-base/.travis.yml /usr/lib/node_modules/npm/node_modules/npm-profile/node_modules/make-fetch-happen/node_modules/https-proxy-agent/node_modules/debug/.npmignore /usr/lib/node_modules/npm/node_modules/npm-profile/node_modules/make-fetch-happen/node_modules/https-proxy-agent/node_modules/debug/.coveralls.yml /usr/lib/node_modules/npm/node_modules/npm-profile/node_modules/make-fetch-happen/node_modules/https-proxy-agent/node_modules/debug/.travis.yml /usr/lib/node_modules/npm/node_modules/npm-profile/node_modules/make-fetch-happen/node_modules/https-proxy-agent/.travis.yml /usr/lib/node_modules/npm/node_modules/npm-profile/node_modules/make-fetch-happen/node_modules/http-proxy-agent/.npmignore /usr/lib/node_modules/npm/node_modules/npm-profile/node_modules/make-fetch-happen/node_modules/http-proxy-agent/node_modules/agent-base/.npmignore /usr/lib/node_modules/npm/node_modules/npm-profile/node_modules/make-fetch-happen/node_modules/http-proxy-agent/node_modules/agent-base/.travis.yml /usr/lib/node_modules/npm/node_modules/npm-profile/node_modules/make-fetch-happen/node_modules/http-proxy-agent/node_modules/debug/.npmignore /usr/lib/node_modules/npm/node_modules/npm-profile/node_modules/make-fetch-happen/node_modules/http-proxy-agent/node_modules/debug/.coveralls.yml /usr/lib/node_modules/npm/node_modules/npm-profile/node_modules/make-fetch-happen/node_modules/http-proxy-agent/node_modules/debug/.travis.yml /usr/lib/node_modules/npm/node_modules/npm-profile/node_modules/make-fetch-happen/node_modules/http-proxy-agent/.travis.yml /usr/lib/node_modules/npm/node_modules/npm-profile/node_modules/make-fetch-happen/node_modules/socks-proxy-agent/.npmignore /usr/lib/node_modules/npm/node_modules/npm-profile/node_modules/make-fetch-happen/node_modules/socks-proxy-agent/node_modules/agent-base/.npmignore /usr/lib/node_modules/npm/node_modules/npm-profile/node_modules/make-fetch-happen/node_modules/socks-proxy-agent/node_modules/agent-base/.travis.yml /usr/lib/node_modules/npm/node_modules/npm-profile/node_modules/make-fetch-happen/node_modules/socks-proxy-agent/node_modules/socks/.npmignore /usr/lib/node_modules/npm/node_modules/npm-profile/node_modules/make-fetch-happen/node_modules/socks-proxy-agent/node_modules/socks/node_modules/smart-buffer/.npmignore /usr/lib/node_modules/npm/node_modules/npm-profile/node_modules/make-fetch-happen/node_modules/socks-proxy-agent/node_modules/socks/node_modules/smart-buffer/.travis.yml /usr/lib/node_modules/npm/node_modules/npm-profile/node_modules/make-fetch-happen/node_modules/socks-proxy-agent/node_modules/socks/node_modules/ip/.npmignore /usr/lib/node_modules/npm/node_modules/npm-profile/node_modules/make-fetch-happen/node_modules/socks-proxy-agent/node_modules/socks/node_modules/ip/.jscsrc /usr/lib/node_modules/npm/node_modules/npm-profile/node_modules/make-fetch-happen/node_modules/socks-proxy-agent/node_modules/socks/node_modules/ip/.travis.yml /usr/lib/node_modules/npm/node_modules/npm-profile/node_modules/make-fetch-happen/node_modules/socks-proxy-agent/.travis.yml /usr/lib/node_modules/npm/node_modules/npm-profile/node_modules/make-fetch-happen/node_modules/promise-retry/.editorconfig /usr/lib/node_modules/npm/node_modules/npm-profile/node_modules/make-fetch-happen/node_modules/promise-retry/.npmignore /usr/lib/node_modules/npm/node_modules/npm-profile/node_modules/make-fetch-happen/node_modules/promise-retry/node_modules/err-code/.editorconfig /usr/lib/node_modules/npm/node_modules/npm-profile/node_modules/make-fetch-happen/node_modules/promise-retry/node_modules/err-code/.npmignore /usr/lib/node_modules/npm/node_modules/npm-profile/node_modules/make-fetch-happen/node_modules/promise-retry/node_modules/err-code/.eslintrc.json /usr/lib/node_modules/npm/node_modules/npm-profile/node_modules/make-fetch-happen/node_modules/promise-retry/node_modules/err-code/.travis.yml /usr/lib/node_modules/npm/node_modules/npm-profile/node_modules/make-fetch-happen/node_modules/promise-retry/.travis.yml /usr/lib/node_modules/npm/node_modules/npm-profile/node_modules/make-fetch-happen/node_modules/node-fetch-npm/node_modules/encoding/.npmignore /usr/lib/node_modules/npm/node_modules/npm-profile/node_modules/make-fetch-happen/node_modules/node-fetch-npm/node_modules/encoding/node_modules/iconv-lite/.npmignore /usr/lib/node_modules/npm/node_modules/npm-profile/node_modules/make-fetch-happen/node_modules/node-fetch-npm/node_modules/encoding/node_modules/iconv-lite/.travis.yml /usr/lib/node_modules/npm/node_modules/npm-profile/node_modules/make-fetch-happen/node_modules/node-fetch-npm/node_modules/encoding/.travis.yml /usr/lib/node_modules/npm/node_modules/sorted-union-stream/.npmignore /usr/lib/node_modules/npm/node_modules/sorted-union-stream/node_modules/stream-iterate/.npmignore /usr/lib/node_modules/npm/node_modules/sorted-union-stream/node_modules/stream-iterate/node_modules/stream-shift/.npmignore /usr/lib/node_modules/npm/node_modules/sorted-union-stream/node_modules/stream-iterate/node_modules/stream-shift/.travis.yml /usr/lib/node_modules/npm/node_modules/sorted-union-stream/node_modules/stream-iterate/.travis.yml /usr/lib/node_modules/npm/node_modules/sorted-union-stream/node_modules/from2/node_modules/readable-stream/.npmignore /usr/lib/node_modules/npm/node_modules/sorted-union-stream/node_modules/from2/node_modules/readable-stream/node_modules/string_decoder/.npmignore /usr/lib/node_modules/npm/node_modules/sorted-union-stream/.travis.yml /usr/lib/node_modules/npm/node_modules/npm-packlist/node_modules/ignore-walk/node_modules/minimatch/node_modules/brace-expansion/node_modules/balanced-match/.npmignore /usr/lib/node_modules/npm/node_modules/npm-packlist/node_modules/ignore-walk/node_modules/minimatch/node_modules/brace-expansion/node_modules/concat-map/.travis.yml /usr/lib/node_modules/npm/node_modules/read-installed/.npmignore /usr/lib/node_modules/npm/node_modules/read-installed/.travis.yml /usr/lib/node_modules/npm/node_modules/uuid/.eslintrc.json /usr/lib/node_modules/npm/node_modules/cmd-shim/.npmignore /usr/lib/node_modules/npm/node_modules/cmd-shim/.travis.yml /usr/lib/node_modules/npm/node_modules/text-table/.travis.yml /usr/lib/node_modules/npm/node_modules/lockfile/.npmignore /usr/lib/node_modules/npm/node_modules/lockfile/.travis.yml /usr/lib/node_modules/npm/node_modules/worker-farm/node_modules/xtend/.npmignore /usr/lib/node_modules/npm/node_modules/worker-farm/node_modules/errno/.npmignore /usr/lib/node_modules/npm/node_modules/worker-farm/node_modules/errno/node_modules/prr/.npmignore /usr/lib/node_modules/npm/node_modules/worker-farm/node_modules/errno/node_modules/prr/.travis.yml /usr/lib/node_modules/npm/node_modules/worker-farm/.travis.yml /usr/lib/node_modules/npm/node_modules/retry/.npmignore /usr/lib/node_modules/npm/node_modules/columnify/node_modules/wcwidth/.npmignore /usr/lib/node_modules/npm/node_modules/columnify/node_modules/wcwidth/node_modules/defaults/.npmignore /usr/lib/node_modules/npm/node_modules/columnify/node_modules/wcwidth/node_modules/defaults/node_modules/clone/.npmignore /usr/lib/node_modules/npm/node_modules/columnify/node_modules/wcwidth/node_modules/defaults/node_modules/clone/.travis.yml /usr/lib/node_modules/npm/node_modules/unique-filename/.npmignore /usr/lib/node_modules/npm/node_modules/unique-filename/node_modules/unique-slug/.npmignore /usr/lib/node_modules/npm/node_modules/unique-filename/node_modules/unique-slug/.travis.yml /usr/lib/node_modules/npm/node_modules/which/node_modules/isexe/.npmignore /usr/lib/node_modules/npm/node_modules/meant/.npmignore /usr/lib/node_modules/npm/node_modules/meant/.travis.yml /usr/lib/node_modules/npm/node_modules/is-cidr/.npmignore /usr/lib/node_modules/npm/node_modules/is-cidr/node_modules/cidr-regex/.npmignore /usr/lib/node_modules/npm/node_modules/is-cidr/.travis.yml /usr/lib/node_modules/npm/node_modules/npmlog/node_modules/are-we-there-yet/node_modules/delegates/.npmignore /usr/lib/node_modules/npm/node_modules/mkdirp/node_modules/minimist/.travis.yml /usr/lib/node_modules/npm/node_modules/mkdirp/.travis.yml /usr/lib/node_modules/npm/node_modules/readdir-scoped-modules/.travis.yml /usr/lib/node_modules/npm/node_modules/validate-npm-package-name/.npmignore /usr/lib/node_modules/npm/node_modules/validate-npm-package-name/node_modules/builtins/.travis.yml /usr/lib/node_modules/npm/node_modules/validate-npm-package-name/.travis.yml /usr/lib/node_modules/npm/node_modules/config-chain/.npmignore /usr/lib/node_modules/npm/node_modules/npm-registry-client/node_modules/concat-stream/node_modules/typedarray/.travis.yml /usr/lib/node_modules/npm/node_modules/glob/node_modules/minimatch/node_modules/brace-expansion/node_modules/balanced-match/.npmignore /usr/lib/node_modules/npm/node_modules/glob/node_modules/minimatch/node_modules/brace-expansion/node_modules/concat-map/.travis.yml /usr/lib/node_modules/npm/node_modules/libnpx/node_modules/yargs/node_modules/require-main-filename/.npmignore /usr/lib/node_modules/npm/node_modules/libnpx/node_modules/yargs/node_modules/require-main-filename/.travis.yml /usr/lib/node_modules/npm/node_modules/libnpx/node_modules/yargs/node_modules/read-pkg-up/node_modules/read-pkg/node_modules/load-json-file/node_modules/parse-json/node_modules/error-ex/node_modules/is-arrayish/.editorconfig /usr/lib/node_modules/npm/node_modules/libnpx/node_modules/yargs/node_modules/read-pkg-up/node_modules/read-pkg/node_modules/load-json-file/node_modules/parse-json/node_modules/error-ex/node_modules/is-arrayish/.npmignore /usr/lib/node_modules/npm/node_modules/libnpx/node_modules/yargs/node_modules/read-pkg-up/node_modules/read-pkg/node_modules/load-json-file/node_modules/parse-json/node_modules/error-ex/node_modules/is-arrayish/.istanbul.yml /usr/lib/node_modules/npm/node_modules/libnpx/node_modules/yargs/node_modules/read-pkg-up/node_modules/read-pkg/node_modules/load-json-file/node_modules/parse-json/node_modules/error-ex/node_modules/is-arrayish/.travis.yml /usr/lib/node_modules/npm/node_modules/libnpx/node_modules/yargs/node_modules/require-directory/.npmignore /usr/lib/node_modules/npm/node_modules/libnpx/node_modules/yargs/node_modules/require-directory/.travis.yml /usr/lib/node_modules/npm/node_modules/read/node_modules/mute-stream/.travis.yml /usr/lib/node_modules/npm/node_modules/osenv/.npmignore /usr/lib/node_modules/npm/node_modules/osenv/.travis.yml /usr/lib/node_modules/npm/node_modules/pacote/node_modules/promise-retry/.editorconfig /usr/lib/node_modules/npm/node_modules/pacote/node_modules/promise-retry/.npmignore /usr/lib/node_modules/npm/node_modules/pacote/node_modules/promise-retry/node_modules/err-code/.editorconfig /usr/lib/node_modules/npm/node_modules/pacote/node_modules/promise-retry/node_modules/err-code/.npmignore /usr/lib/node_modules/npm/node_modules/pacote/node_modules/promise-retry/node_modules/err-code/.eslintrc.json /usr/lib/node_modules/npm/node_modules/pacote/node_modules/promise-retry/node_modules/err-code/.travis.yml /usr/lib/node_modules/npm/node_modules/pacote/node_modules/promise-retry/.travis.yml /usr/lib/node_modules/npm/node_modules/pacote/node_modules/minimatch/node_modules/brace-expansion/node_modules/balanced-match/.npmignore /usr/lib/node_modules/npm/node_modules/pacote/node_modules/minimatch/node_modules/brace-expansion/node_modules/concat-map/.travis.yml /usr/lib/node_modules/npm/node_modules/pacote/node_modules/make-fetch-happen/node_modules/https-proxy-agent/.npmignore /usr/lib/node_modules/npm/node_modules/pacote/node_modules/make-fetch-happen/node_modules/https-proxy-agent/node_modules/agent-base/.travis.yml /usr/lib/node_modules/npm/node_modules/pacote/node_modules/make-fetch-happen/node_modules/https-proxy-agent/node_modules/debug/.npmignore /usr/lib/node_modules/npm/node_modules/pacote/node_modules/make-fetch-happen/node_modules/https-proxy-agent/node_modules/debug/.coveralls.yml /usr/lib/node_modules/npm/node_modules/pacote/node_modules/make-fetch-happen/node_modules/https-proxy-agent/node_modules/debug/.travis.yml /usr/lib/node_modules/npm/node_modules/pacote/node_modules/make-fetch-happen/node_modules/https-proxy-agent/.travis.yml /usr/lib/node_modules/npm/node_modules/pacote/node_modules/make-fetch-happen/node_modules/http-proxy-agent/.npmignore /usr/lib/node_modules/npm/node_modules/pacote/node_modules/make-fetch-happen/node_modules/http-proxy-agent/node_modules/agent-base/.travis.yml /usr/lib/node_modules/npm/node_modules/pacote/node_modules/make-fetch-happen/node_modules/http-proxy-agent/node_modules/debug/.npmignore /usr/lib/node_modules/npm/node_modules/pacote/node_modules/make-fetch-happen/node_modules/http-proxy-agent/node_modules/debug/.coveralls.yml /usr/lib/node_modules/npm/node_modules/pacote/node_modules/make-fetch-happen/node_modules/http-proxy-agent/node_modules/debug/.travis.yml /usr/lib/node_modules/npm/node_modules/pacote/node_modules/make-fetch-happen/node_modules/http-proxy-agent/.travis.yml /usr/lib/node_modules/npm/node_modules/pacote/node_modules/make-fetch-happen/node_modules/socks-proxy-agent/.npmignore /usr/lib/node_modules/npm/node_modules/pacote/node_modules/make-fetch-happen/node_modules/socks-proxy-agent/node_modules/agent-base/.travis.yml /usr/lib/node_modules/npm/node_modules/pacote/node_modules/make-fetch-happen/node_modules/socks-proxy-agent/node_modules/socks/.npmignore /usr/lib/node_modules/npm/node_modules/pacote/node_modules/make-fetch-happen/node_modules/socks-proxy-agent/node_modules/socks/node_modules/smart-buffer/.npmignore /usr/lib/node_modules/npm/node_modules/pacote/node_modules/make-fetch-happen/node_modules/socks-proxy-agent/node_modules/socks/node_modules/smart-buffer/.travis.yml /usr/lib/node_modules/npm/node_modules/pacote/node_modules/make-fetch-happen/node_modules/socks-proxy-agent/node_modules/socks/node_modules/ip/.npmignore /usr/lib/node_modules/npm/node_modules/pacote/node_modules/make-fetch-happen/node_modules/socks-proxy-agent/node_modules/socks/node_modules/ip/.jscsrc /usr/lib/node_modules/npm/node_modules/pacote/node_modules/make-fetch-happen/node_modules/socks-proxy-agent/node_modules/socks/node_modules/ip/.travis.yml /usr/lib/node_modules/npm/node_modules/pacote/node_modules/make-fetch-happen/node_modules/socks-proxy-agent/.travis.yml /usr/lib/node_modules/npm/node_modules/pacote/node_modules/make-fetch-happen/node_modules/node-fetch-npm/node_modules/encoding/.npmignore /usr/lib/node_modules/npm/node_modules/pacote/node_modules/make-fetch-happen/node_modules/node-fetch-npm/node_modules/encoding/node_modules/iconv-lite/.npmignore /usr/lib/node_modules/npm/node_modules/pacote/node_modules/make-fetch-happen/node_modules/node-fetch-npm/node_modules/encoding/node_modules/iconv-lite/.travis.yml /usr/lib/node_modules/npm/node_modules/pacote/node_modules/make-fetch-happen/node_modules/node-fetch-npm/node_modules/encoding/.travis.yml /usr/lib/node_modules/npm/node_modules/update-notifier/node_modules/chalk/node_modules/ansi-styles/node_modules/color-convert/node_modules/color-name/.npmignore /usr/lib/node_modules/npm/node_modules/update-notifier/node_modules/chalk/node_modules/ansi-styles/node_modules/color-convert/node_modules/color-name/.eslintrc.json /usr/lib/node_modules/npm/node_modules/update-notifier/node_modules/latest-version/node_modules/package-json/node_modules/registry-auth-token/.npmignore /usr/lib/node_modules/npm/node_modules/update-notifier/node_modules/latest-version/node_modules/package-json/node_modules/registry-auth-token/node_modules/rc/.npmignore /usr/lib/node_modules/npm/node_modules/update-notifier/node_modules/latest-version/node_modules/package-json/node_modules/registry-auth-token/node_modules/rc/node_modules/minimist/.travis.yml /usr/lib/node_modules/npm/node_modules/update-notifier/node_modules/latest-version/node_modules/package-json/node_modules/registry-url/node_modules/rc/.npmignore /usr/lib/node_modules/npm/node_modules/update-notifier/node_modules/latest-version/node_modules/package-json/node_modules/registry-url/node_modules/rc/node_modules/minimist/.travis.yml /usr/lib/node_modules/npm/node_modules/node-gyp/gyp/.npmignore /usr/lib/node_modules/npm/node_modules/node-gyp/.npmignore /usr/lib/node_modules/npm/node_modules/node-gyp/node_modules/nopt/.npmignore /usr/lib/node_modules/npm/node_modules/node-gyp/node_modules/nopt/.travis.yml /usr/lib/node_modules/npm/node_modules/node-gyp/node_modules/tar/.npmignore /usr/lib/node_modules/npm/node_modules/node-gyp/node_modules/tar/.travis.yml /usr/lib/node_modules/npm/node_modules/node-gyp/node_modules/minimatch/node_modules/brace-expansion/node_modules/balanced-match/.npmignore /usr/lib/node_modules/npm/node_modules/node-gyp/node_modules/minimatch/node_modules/brace-expansion/node_modules/concat-map/.travis.yml /usr/lib/node_modules/npm/node_modules/node-gyp/node_modules/fstream/.npmignore /usr/lib/node_modules/npm/node_modules/node-gyp/node_modules/fstream/.travis.yml /usr/lib/node_modules/npm/node_modules/node-gyp/.jshintrc /usr/lib/node_modules/npm/node_modules/mississippi/.npmignore /usr/lib/node_modules/npm/node_modules/mississippi/node_modules/stream-each/.npmignore /usr/lib/node_modules/npm/node_modules/mississippi/node_modules/stream-each/node_modules/stream-shift/.npmignore /usr/lib/node_modules/npm/node_modules/mississippi/node_modules/stream-each/node_modules/stream-shift/.travis.yml /usr/lib/node_modules/npm/node_modules/mississippi/node_modules/stream-each/.travis.yml /usr/lib/node_modules/npm/node_modules/mississippi/node_modules/pumpify/.npmignore /usr/lib/node_modules/npm/node_modules/mississippi/node_modules/pumpify/.travis.yml /usr/lib/node_modules/npm/node_modules/mississippi/node_modules/duplexify/.npmignore /usr/lib/node_modules/npm/node_modules/mississippi/node_modules/duplexify/node_modules/stream-shift/.npmignore /usr/lib/node_modules/npm/node_modules/mississippi/node_modules/duplexify/node_modules/stream-shift/.travis.yml /usr/lib/node_modules/npm/node_modules/mississippi/node_modules/duplexify/node_modules/end-of-stream/.npmignore /usr/lib/node_modules/npm/node_modules/mississippi/node_modules/duplexify/.travis.yml /usr/lib/node_modules/npm/node_modules/mississippi/node_modules/through2/.npmignore /usr/lib/node_modules/npm/node_modules/mississippi/node_modules/through2/node_modules/xtend/.npmignore /usr/lib/node_modules/npm/node_modules/mississippi/node_modules/pump/.npmignore /usr/lib/node_modules/npm/node_modules/mississippi/node_modules/pump/.travis.yml /usr/lib/node_modules/npm/node_modules/mississippi/node_modules/flush-write-stream/.npmignore /usr/lib/node_modules/npm/node_modules/mississippi/node_modules/flush-write-stream/.travis.yml /usr/lib/node_modules/npm/node_modules/mississippi/node_modules/concat-stream/node_modules/typedarray/.travis.yml /usr/lib/node_modules/npm/node_modules/mississippi/node_modules/parallel-transform/.npmignore /usr/lib/node_modules/npm/node_modules/mississippi/node_modules/parallel-transform/node_modules/cyclist/.npmignore /usr/lib/node_modules/npm/node_modules/mississippi/node_modules/from2/.travis.yml /usr/lib/node_modules/npm/node_modules/iferr/.npmignore /usr/lib/node_modules/npm/.travis.yml /usr/lib/node_modules/forever/.editorconfig /usr/lib/node_modules/forever/.npmignore /usr/lib/node_modules/forever/node_modules/string_decoder/.npmignore /usr/lib/node_modules/forever/node_modules/optimist/.travis.yml /usr/lib/node_modules/forever/node_modules/ps-tree/.npmignore /usr/lib/node_modules/forever/node_modules/nssocket/.npmignore /usr/lib/node_modules/forever/node_modules/nssocket/.travis.yml /usr/lib/node_modules/forever/node_modules/async-each/.npmignore /usr/lib/node_modules/forever/node_modules/defined/.travis.yml /usr/lib/node_modules/forever/node_modules/timespan/.npmignore /usr/lib/node_modules/forever/node_modules/balanced-match/.npmignore /usr/lib/node_modules/forever/node_modules/stack-trace/.npmignore /usr/lib/node_modules/forever/node_modules/broadway/.npmignore /usr/lib/node_modules/forever/node_modules/broadway/node_modules/cliff/.npmignore /usr/lib/node_modules/forever/node_modules/broadway/node_modules/winston/.npmignore /usr/lib/node_modules/forever/node_modules/broadway/node_modules/winston/test/fixtures/.gitkeep /usr/lib/node_modules/forever/node_modules/broadway/node_modules/winston/test/fixtures/logs/.gitkeep /usr/lib/node_modules/forever/node_modules/broadway/node_modules/winston/.travis.yml /usr/lib/node_modules/forever/node_modules/broadway/test/fixtures/empty-app/.gitkeep /usr/lib/node_modules/forever/node_modules/broadway/test/fixtures/.gitkeep /usr/lib/node_modules/forever/node_modules/broadway/.travis.yml /usr/lib/node_modules/forever/node_modules/resumer/.travis.yml /usr/lib/node_modules/forever/node_modules/process-nextick-args/.travis.yml /usr/lib/node_modules/forever/node_modules/prompt/.npmignore /usr/lib/node_modules/forever/node_modules/prompt/.travis.yml /usr/lib/node_modules/forever/node_modules/prompt/.jshintrc /usr/lib/node_modules/forever/node_modules/glob-parent/.npmignore /usr/lib/node_modules/forever/node_modules/glob-parent/.travis.yml /usr/lib/node_modules/forever/node_modules/tape/.npmignore /usr/lib/node_modules/forever/node_modules/tape/node_modules/deep-equal/.travis.yml /usr/lib/node_modules/forever/node_modules/tape/.travis.yml /usr/lib/node_modules/forever/node_modules/safe-buffer/.travis.yml /usr/lib/node_modules/forever/node_modules/minimist/.travis.yml /usr/lib/node_modules/forever/node_modules/readable-stream/.npmignore /usr/lib/node_modules/forever/node_modules/readable-stream/.travis.yml /usr/lib/node_modules/forever/node_modules/clone/.npmignore /usr/lib/node_modules/forever/node_modules/deep-equal/.travis.yml /usr/lib/node_modules/forever/node_modules/lazy/.npmignore /usr/lib/node_modules/forever/node_modules/cliff/.npmignore /usr/lib/node_modules/forever/node_modules/cliff/node_modules/colors/.travis.yml /usr/lib/node_modules/forever/node_modules/caller/.npmignore /usr/lib/node_modules/forever/node_modules/preserve/.npmignore /usr/lib/node_modules/forever/node_modules/preserve/.gitattributes /usr/lib/node_modules/forever/node_modules/preserve/.verb.md /usr/lib/node_modules/forever/node_modules/preserve/.travis.yml /usr/lib/node_modules/forever/node_modules/preserve/.jshintrc /usr/lib/node_modules/forever/node_modules/shush/.npmignore /usr/lib/node_modules/forever/node_modules/shush/.travis.yml /usr/lib/node_modules/forever/node_modules/pkginfo/.npmignore /usr/lib/node_modules/forever/node_modules/utile/.npmignore /usr/lib/node_modules/forever/node_modules/utile/.travis.yml /usr/lib/node_modules/forever/node_modules/event-stream/.gitmodules /usr/lib/node_modules/forever/node_modules/event-stream/.npmignore /usr/lib/node_modules/forever/node_modules/event-stream/node_modules/optimist/.gitignore /usr/lib/node_modules/forever/node_modules/event-stream/node_modules/optimist/.npmignore /usr/lib/node_modules/forever/node_modules/event-stream/test/.npmignore /usr/lib/node_modules/forever/node_modules/isstream/.npmignore /usr/lib/node_modules/forever/node_modules/isstream/.travis.yml /usr/lib/node_modules/forever/node_modules/isstream/.jshintrc /usr/lib/node_modules/forever/node_modules/nconf/.npmignore /usr/lib/node_modules/forever/node_modules/nconf/node_modules/optimist/.travis.yml /usr/lib/node_modules/forever/node_modules/nconf/.travis.yml /usr/lib/node_modules/forever/node_modules/isarray/.npmignore /usr/lib/node_modules/forever/node_modules/isarray/.travis.yml /usr/lib/node_modules/forever/node_modules/winston/.npmignore /usr/lib/node_modules/forever/node_modules/winston/test/fixtures/.gitkeep /usr/lib/node_modules/forever/node_modules/winston/test/fixtures/logs/.gitkeep /usr/lib/node_modules/forever/node_modules/winston/.travis.yml /usr/lib/node_modules/forever/node_modules/winston/.jshintrc /usr/lib/node_modules/forever/node_modules/concat-map/.travis.yml /usr/lib/node_modules/forever/node_modules/director/.npmignore /usr/lib/node_modules/forever/node_modules/director/.travis.yml /usr/lib/node_modules/forever/node_modules/mkdirp/node_modules/minimist/.travis.yml /usr/lib/node_modules/forever/node_modules/mkdirp/.travis.yml /usr/lib/node_modules/forever/node_modules/ncp/.npmignore /usr/lib/node_modules/forever/node_modules/ncp/.travis.yml /usr/lib/node_modules/forever/node_modules/forever-monitor/.npmignore /usr/lib/node_modules/forever/node_modules/forever-monitor/test/fixtures/watch/.foreverignore /usr/lib/node_modules/forever/node_modules/forever-monitor/.travis.yml /usr/lib/node_modules/forever/node_modules/i/.npmignore /usr/lib/node_modules/forever/node_modules/i/.travis.yml /usr/lib/node_modules/forever/node_modules/.bin /usr/lib/node_modules/forever/node_modules/mute-stream/.travis.yml /usr/lib/node_modules/forever/node_modules/mute-stream/.nyc_output /usr/lib/node_modules/forever/node_modules/through/.travis.yml /usr/lib/node_modules/forever/node_modules/prettyjson/.npmignore /usr/lib/node_modules/forever/node_modules/prettyjson/node_modules/minimist/.travis.yml /usr/lib/node_modules/forever/node_modules/prettyjson/.travis.yml /usr/lib/node_modules/forever/node_modules/prettyjson/.jshintrc /usr/lib/node_modules/forever/node_modules/flatiron/.npmignore /usr/lib/node_modules/forever/node_modules/flatiron/node_modules/optimist/.travis.yml /usr/lib/node_modules/forever/node_modules/flatiron/.travis.yml /usr/lib/node_modules/forever/node_modules/readdirp/.npmignore /usr/lib/node_modules/forever/node_modules/readdirp/.travis.yml /usr/lib/node_modules/forever/node_modules/revalidator/.npmignore /usr/lib/node_modules/forever/node_modules/revalidator/.travis.yml /usr/lib/node_modules/forever/.travis.yml /usr/lib/node_modules/forever/.jshintrc /usr/lib/node_modules/nodemon/.github /usr/lib/node_modules/nodemon/.jscsrc /usr/lib/node_modules/nodemon/node_modules/string_decoder/.npmignore /usr/lib/node_modules/nodemon/node_modules/ps-tree/.appveyor.yml /usr/lib/node_modules/nodemon/node_modules/ps-tree/.npmignore /usr/lib/node_modules/nodemon/node_modules/ps-tree/.travis.yml /usr/lib/node_modules/nodemon/node_modules/async-each/.npmignore /usr/lib/node_modules/nodemon/node_modules/balanced-match/.npmignore /usr/lib/node_modules/nodemon/node_modules/pause-stream/.npmignore /usr/lib/node_modules/nodemon/node_modules/process-nextick-args/.travis.yml /usr/lib/node_modules/nodemon/node_modules/glob-parent/.npmignore /usr/lib/node_modules/nodemon/node_modules/glob-parent/.travis.yml /usr/lib/node_modules/nodemon/node_modules/split/.npmignore /usr/lib/node_modules/nodemon/node_modules/split/.travis.yml /usr/lib/node_modules/nodemon/node_modules/safe-buffer/.travis.yml /usr/lib/node_modules/nodemon/node_modules/minimist/.travis.yml /usr/lib/node_modules/nodemon/node_modules/nopt/.npmignore /usr/lib/node_modules/nodemon/node_modules/readable-stream/.npmignore /usr/lib/node_modules/nodemon/node_modules/readable-stream/.travis.yml /usr/lib/node_modules/nodemon/node_modules/rc/.npmignore /usr/lib/node_modules/nodemon/node_modules/preserve/.npmignore /usr/lib/node_modules/nodemon/node_modules/preserve/.gitattributes /usr/lib/node_modules/nodemon/node_modules/preserve/.verb.md /usr/lib/node_modules/nodemon/node_modules/preserve/.travis.yml /usr/lib/node_modules/nodemon/node_modules/preserve/.jshintrc /usr/lib/node_modules/nodemon/node_modules/pstree.remy/.travis.yml /usr/lib/node_modules/nodemon/node_modules/event-stream/.npmignore /usr/lib/node_modules/nodemon/node_modules/event-stream/.travis.yml /usr/lib/node_modules/nodemon/node_modules/registry-auth-token/.npmignore /usr/lib/node_modules/nodemon/node_modules/isexe/.npmignore /usr/lib/node_modules/nodemon/node_modules/map-stream/.npmignore /usr/lib/node_modules/nodemon/node_modules/map-stream/.travis.yml /usr/lib/node_modules/nodemon/node_modules/isarray/.npmignore /usr/lib/node_modules/nodemon/node_modules/isarray/.travis.yml /usr/lib/node_modules/nodemon/node_modules/concat-map/.travis.yml /usr/lib/node_modules/nodemon/node_modules/stream-combiner/.npmignore /usr/lib/node_modules/nodemon/node_modules/stream-combiner/.travis.yml /usr/lib/node_modules/nodemon/node_modules/from/.npmignore /usr/lib/node_modules/nodemon/node_modules/from/.travis.yml /usr/lib/node_modules/nodemon/node_modules/undefsafe/.npmignore /usr/lib/node_modules/nodemon/node_modules/undefsafe/.travis.yml /usr/lib/node_modules/nodemon/node_modules/debug/.eslintrc /usr/lib/node_modules/nodemon/node_modules/debug/.npmignore /usr/lib/node_modules/nodemon/node_modules/debug/.coveralls.yml /usr/lib/node_modules/nodemon/node_modules/debug/.travis.yml /usr/lib/node_modules/nodemon/node_modules/duplexer/.npmignore /usr/lib/node_modules/nodemon/node_modules/duplexer/.travis.yml /usr/lib/node_modules/nodemon/node_modules/.bin /usr/lib/node_modules/nodemon/node_modules/color-name/.npmignore /usr/lib/node_modules/nodemon/node_modules/color-name/.eslintrc.json /usr/lib/node_modules/nodemon/node_modules/through/.travis.yml /usr/lib/node_modules/nodemon/node_modules/readdirp/.npmignore /usr/lib/node_modules/nodemon/node_modules/readdirp/.travis.yml /usr/lib/node_modules/nodemon/.travis.yml /usr/lib/node_modules/nodemon/.jshintrc /lib/modules/4.4.0-121-generic/vdso/.build-id /lib/modules/4.4.0-127-generic/vdso/.build-id /lib/modules/4.4.0-137-generic/vdso/.build-id /lib/modules/4.4.0-128-generic/vdso/.build-id /lib/modules/4.4.0-109-generic/vdso/.build-id /lib/modules/4.4.0-116-generic/vdso/.build-id /lib/modules/4.4.0-119-generic/vdso/.build-id /lib/modules/4.4.0-104-generic/vdso/.build-id /lib/modules/4.4.0-133-generic/vdso/.build-id /lib/modules/4.4.0-124-generic/vdso/.build-id /lib/modules/4.4.0-108-generic/vdso/.build-id /lib/modules/4.4.0-134-generic/vdso/.build-id /lib/modules/4.4.0-103-generic/vdso/.build-id /lib/modules/4.4.0-112-generic/vdso/.build-id /lib/modules/4.4.0-130-generic/vdso/.build-id
  5131. /usr/lib/node_modules/npm/.github /usr/lib/node_modules/forever/node_modules/.bin /usr/lib/node_modules/forever/node_modules/mute-stream/.nyc_output /usr/lib/node_modules/nodemon/.github /usr/lib/node_modules/nodemon/node_modules/.bin /lib/modules/4.4.0-121-generic/vdso/.build-id /lib/modules/4.4.0-127-generic/vdso/.build-id /lib/modules/4.4.0-137-generic/vdso/.build-id /lib/modules/4.4.0-128-generic/vdso/.build-id /lib/modules/4.4.0-109-generic/vdso/.build-id /lib/modules/4.4.0-116-generic/vdso/.build-id /lib/modules/4.4.0-119-generic/vdso/.build-id /lib/modules/4.4.0-104-generic/vdso/.build-id /lib/modules/4.4.0-133-generic/vdso/.build-id /lib/modules/4.4.0-124-generic/vdso/.build-id /lib/modules/4.4.0-108-generic/vdso/.build-id /lib/modules/4.4.0-134-generic/vdso/.build-id /lib/modules/4.4.0-103-generic/vdso/.build-id /lib/modules/4.4.0-112-generic/vdso/.build-id /lib/modules/4.4.0-130-generic/vdso/.build-id
  5132. Searching for LPD Worm files and dirs... nothing found
  5133. Searching for Ramen Worm files and dirs... nothing found
  5134. Searching for Maniac files and dirs... nothing found
  5135. Searching for RK17 files and dirs... nothing found
  5136. Searching for Ducoci rootkit... nothing found
  5137. Searching for Adore Worm... nothing found
  5138. Searching for ShitC Worm... nothing found
  5139. Searching for Omega Worm... nothing found
  5140. Searching for Sadmind/IIS Worm... nothing found
  5141. Searching for MonKit... nothing found
  5142. Searching for Showtee... nothing found
  5143. Searching for OpticKit... nothing found
  5144. Searching for T.R.K... nothing found
  5145. Searching for Mithra... nothing found
  5146. Searching for LOC rootkit... nothing found
  5147. Searching for Romanian rootkit... nothing found
  5148. Searching for Suckit rootkit... nothing found
  5149. Searching for Volc rootkit... nothing found
  5150. Searching for Gold2 rootkit... nothing found
  5151. Searching for TC2 Worm default files and dirs... nothing found
  5152. Searching for Anonoying rootkit default files and dirs... nothing found
  5153. Searching for ZK rootkit default files and dirs... nothing found
  5154. Searching for ShKit rootkit default files and dirs... nothing found
  5155. Searching for AjaKit rootkit default files and dirs... nothing found
  5156. Searching for zaRwT rootkit default files and dirs... nothing found
  5157. Searching for Madalin rootkit default files... nothing found
  5158. Searching for Fu rootkit default files... nothing found
  5159. Searching for ESRK rootkit default files... nothing found
  5160. Searching for rootedoor... nothing found
  5161. Searching for ENYELKM rootkit default files... nothing found
  5162. Searching for common ssh-scanners default files... nothing found
  5163. Searching for Linux/Ebury - Operation Windigo ssh... Possible Linux/Ebury - Operation Windigo installetd
  5164. Searching for 64-bit Linux Rootkit ... nothing found
  5165. Searching for 64-bit Linux Rootkit modules... nothing found
  5166. Searching for suspect PHP files... nothing found
  5167. Searching for anomalies in shell history files... nothing found
  5168. Checking `asp'... not infected
  5169. Checking `bindshell'... not infected
  5170. Checking `lkm'... chkproc: nothing detected
  5171. chkdirs: nothing detected
  5172. Checking `rexedcs'... not found
  5173. Checking `sniffer'... lo: not promisc and no packet sniffer sockets
  5174. eth0: not promisc and no packet sniffer sockets
  5175. eth0: not promisc and no packet sniffer sockets
  5176. Checking `w55808'... not infected
  5177. Checking `wted'... chkwtmp: nothing deleted
  5178. Checking `scalper'... not infected
  5179. Checking `slapper'... not infected
  5180. Checking `z2'... chklastlog: nothing deleted
  5181. Checking `chkutmp'... chkutmp: nothing deleted
  5182. Checking `OSX_RSPLUG'... not infected
  5183. root@node8-new-21:/var/log# ifconfig
  5184. eth0 Link encap:Ethernet HWaddr ce:4f:e2:7f:f5:ed
  5185. inet addr:165.227.222.101 Bcast:165.227.223.255 Mask:255.255.240.0
  5186. inet6 addr: fe80::cc4f:e2ff:fe7f:f5ed/64 Scope:Link
  5187. UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
  5188. RX packets:314002395 errors:0 dropped:0 overruns:0 frame:0
  5189. TX packets:263839775 errors:0 dropped:0 overruns:0 carrier:0
  5190. collisions:0 txqueuelen:1000
  5191. RX bytes:377528674404 (377.5 GB) TX bytes:56676789792 (56.6 GB)
  5192.  
  5193. lo Link encap:Local Loopback
  5194. inet addr:127.0.0.1 Mask:255.0.0.0
  5195. inet6 addr: ::1/128 Scope:Host
  5196. UP LOOPBACK RUNNING MTU:65536 Metric:1
  5197. RX packets:582 errors:0 dropped:0 overruns:0 frame:0
  5198. TX packets:582 errors:0 dropped:0 overruns:0 carrier:0
  5199. collisions:0 txqueuelen:1
  5200. RX bytes:51068 (51.0 KB) TX bytes:51068 (51.0 KB)
  5201.  
  5202. root@node8-new-21:/var/log# mv lynis-report.dat /var/log/165_227_222_101.dat
  5203. root@node8-new-21:/var/log# chmod 777 165_227_222_101.dat
  5204. root@node8-new-21:/var/log# ftp 45.76.145.249
  5205. Connected to 45.76.145.249.
  5206. 220---------- Welcome to Pure-FTPd [privsep] [TLS] ----------
  5207. 220-You are user number 4 of 50 allowed.
  5208. 220-Local time is now 12:40. Server port: 21.
  5209. 220-This is a private system - No anonymous login
  5210. 220-IPv6 connections are also welcome on this server.
  5211. 220 You will be disconnected after 15 minutes of inactivity.
  5212. Name (45.76.145.249:root): ftpman
  5213. 331 User ftpman OK. Password required
  5214. Password:
  5215. 230 OK. Current directory is /var/www
  5216. Remote system type is UNIX.
  5217. Using binary mode to transfer files.
  5218. ftp> put 165_227_222_101.dat
  5219. local: 165_227_222_101.dat remote: 165_227_222_101.dat
  5220. 200 PORT command successful
  5221. 150 Connecting to port 46820
  5222. 226-File successfully transferred
  5223. 226 0.550 seconds (measured here), 60.77 Kbytes per second
  5224. 34225 bytes sent in 0.00 secs (299.4450 MB/s)
  5225. ftp> exit
  5226. 221-Goodbye. You uploaded 34 and downloaded 0 kbytes.
  5227. 221 Logout.
  5228. root@node8-new-21:/var/log#
  5229. root@node8-new-21:/var/log#
  5230. root@node8-new-21:/var/log#
  5231. root@node8-new-21:/var/log#
  5232. root@node8-new-21:/var/log#
Add Comment
Please, Sign In to add comment