rootkit / roottool : 本来はUNIXで root 権限を不正に取得するツール群を指していましたが、
その多くに不正侵入しツールを仕込んだ事を隠ぺいする機能があったため、不正なツールを仕込み
それを隠ぺいすることを rootkit/tool と呼ぶようになりました。
RPMForge より入手可能
# yum list chkrootkit : Available Packages chkrootkit.i386 0.49-1.el5.rf rpmforge
オプション | 意味 |
---|---|
-h | ヘルプの表示 |
-q | メッセージの抑制(不要なメッセージを表示しない) |
-r DIR | 指定したディレクトリをルートとする |
-p DIR1:DIR2 | 指定したディレクトリのコマンドを用いる |
Script started on Mon Aug 27 18:11:01 2012 [root@vboxm ~]# which chkrootkit /usr/bin/chkrootkit [root@vboxm ~]# chkrootkit ROOTDIR is `/' Checking `amd'... not found Checking `basename'... not infected Checking `biff'... not found Checking `chfn'... not infected Checking `chsh'... not infected Checking `cron'... not infected Checking `crontab'... not infected Checking `date'... not infected Checking `du'... not infected Checking `dirname'... not infected Checking `echo'... not infected Checking `egrep'... not infected Checking `env'... not infected Checking `find'... not infected Checking `fingerd'... not found Checking `gpm'... not infected Checking `grep'... not infected Checking `hdparm'... not infected Checking `su'... not infected Checking `ifconfig'... not infected Checking `inetd'... not found Checking `inetdconf'... not found Checking `identd'... not found Checking `init'... not infected Checking `killall'... not infected Checking `ldsopreload'... not infected Checking `login'... not infected Checking `ls'... not infected Checking `lsof'... not infected Checking `mail'... not infected Checking `mingetty'... not infected Checking `netstat'... not infected Checking `named'... not infected Checking `passwd'... not infected Checking `pidof'... not infected Checking `pop2'... not found Checking `pop3'... not found Checking `ps'... not infected Checking `pstree'... not infected Checking `rpcinfo'... not infected Checking `rlogind'... not found Checking `rshd'... not found Checking `slogin'... not infected Checking `sendmail'... not infected Checking `sshd'... not infected Checking `syslogd'... not infected Checking `tar'... not infected Checking `tcpd'... not infected Checking `tcpdump'... not infected Checking `top'... not infected Checking `telnetd'... not found Checking `timed'... not found Checking `traceroute'... not infected Checking `vdir'... not infected Checking `w'... not infected Checking `write'... not infected Checking `aliens'... no suspect files Searching for sniffer's logs, it may take a while... nothing found Searching for HiDrootkit's default dir... nothing found Searching for t0rn's default files and dirs... nothing found Searching for t0rn's v8 defaults... nothing found Searching for Lion Worm default files and dirs... nothing found Searching for RSHA's default files and dir... nothing found Searching for RH-Sharpe's default files... nothing found Searching for Ambient's rootkit (ark) default files and dirs... nothing found Searching for suspicious files and dirs, it may take a while... /usr/lib/perl5/5.8.8/i386-linux-thread-multi/.packlist /usr/lib/perl5/vendor_perl/5.8.8/i386-linux-thread-multi/auto/NKF/.packlist /usr/lib/gtk-2.0/immodules/.relocation-tag /usr/lib/python2.4/plat-linux2/.relocation-tag /usr/lib/python2.4/distutils/.relocation-tag /usr/lib/python2.4/config/.relocation-tag /usr/lib/.libfipscheck.so.1.1.0.hmac /usr/lib/.libgcrypt.so.11.hmac /usr/lib/.libfipscheck.so.1.hmac /lib/.libssl.so.6.hmac /lib/.libssl.so.0.9.8e.hmac /lib/.libcrypto.so.0.9.8e.hmac /lib/.libcrypto.so.6.hmac Searching for LPD Worm files and dirs... nothing found Searching for Ramen Worm files and dirs... nothing found Searching for Maniac files and dirs... nothing found Searching for RK17 files and dirs... nothing found Searching for Ducoci rootkit... nothing found Searching for Adore Worm... nothing found Searching for ShitC Worm... nothing found Searching for Omega Worm... nothing found Searching for Sadmind/IIS Worm... nothing found Searching for MonKit... nothing found Searching for Showtee... nothing found Searching for OpticKit... nothing found Searching for T.R.K... nothing found Searching for Mithra... nothing found Searching for LOC rootkit... nothing found Searching for Romanian rootkit... nothing found Searching for HKRK rootkit... nothing found Searching for Suckit rootkit... nothing found Searching for Volc rootkit... nothing found Searching for Gold2 rootkit... nothing found Searching for TC2 Worm default files and dirs... nothing found Searching for Anonoying rootkit default files and dirs... nothing found Searching for ZK rootkit default files and dirs... nothing found Searching for ShKit rootkit default files and dirs... nothing found Searching for AjaKit rootkit default files and dirs... nothing found Searching for zaRwT rootkit default files and dirs... nothing found Searching for Madalin rootkit default files... nothing found Searching for Fu rootkit default files... nothing found Searching for ESRK rootkit default files... nothing found Searching for rootedoor... nothing found Searching for ENYELKM rootkit default files... nothing found Searching for common ssh-scanners default files... nothing found Searching for suspect PHP files... nothing found Searching for anomalies in shell history files... nothing found Checking `asp'... not infected Checking `bindshell'... not infected Checking `lkm'... chkproc: nothing detected chkdirs: nothing detected Checking `rexedcs'... not found Checking `sniffer'... eth0: PF_PACKET(/sbin/dhclient) eth1: not promisc and no PF_PACKET sockets Checking `w55808'... not infected Checking `wted'... chkwtmp: nothing deleted Checking `scalper'... not infected Checking `slapper'... not infected Checking `z2'... chklastlog: nothing deleted Checking `chkutmp'... chkutmp: nothing deleted Checking `OSX_RSPLUG'... not infected
RPMForge より入手可能
# yum list rkhunter : Installed Packages rkhunter.noarch 1.4.0-1.el5.rf rpmforge
データベース(パターンファイル)の更新
# rkhunter --update
バックドアの検出
# rkhunter --check --createlogfile
実行例
# yes "" | rkhunter --check --createlogfile [19:54:02] Running Rootkit Hunter version 1.4.6 on cent79 [19:54:02] [19:54:02] Info: Start date is 2023年 4月 28日 金曜日 19:54:02 JST [19:54:02] [19:54:02] Checking configuration file and command-line options... [19:54:02] Info: Detected operating system is 'Linux' [19:54:02] Info: Uname output is 'Linux cent79.home.ycos 3.10.0-1160.88.1.el7.x86_64 #1 SMP Tue Mar 7 15:41:52 UTC 2023 x86_64 x86_64 x86_64 GNU/Linux' [19:54:02] Info: Command line is /usr/bin/rkhunter --update --createlogfile [19:54:02] Info: Environment shell is /bin/bash; rkhunter is using bash [19:54:02] Info: Using configuration file '/etc/rkhunter.conf' [19:54:02] Info: Installation directory is '/usr' [19:54:02] Info: Using language 'en' [19:54:02] Info: Using '/var/lib/rkhunter/db' as the database directory [19:54:02] Info: Using '/usr/share/rkhunter/scripts' as the support script directory [19:54:02] Info: Using '/usr/local/bin /usr/bin /usr/local/sbin /usr/sbin /home/student/bin /bin /sbin /usr/libexec /usr/local/libexec' as the command directories [19:54:02] Info: Using '/var/lib/rkhunter' as the temporary directory [19:54:02] Info: X will be automatically detected [19:54:02] Info: Found the 'basename' command: /usr/bin/basename [19:54:02] Info: Found the 'diff' command: /usr/bin/diff [19:54:02] Info: Found the 'dirname' command: /usr/bin/dirname [19:54:02] Info: Found the 'file' command: /usr/bin/file [19:54:02] Info: Found the 'find' command: /usr/bin/find [19:54:02] Info: Found the 'ifconfig' command: /usr/sbin/ifconfig [19:54:02] Info: Found the 'ip' command: /usr/sbin/ip [19:54:02] Info: Found the 'ipcs' command: /usr/bin/ipcs [19:54:02] Info: Found the 'ldd' command: /usr/bin/ldd [19:54:02] Info: Found the 'lsattr' command: /usr/bin/lsattr [19:54:02] Info: Found the 'lsmod' command: /usr/sbin/lsmod [19:54:02] Info: Found the 'lsof' command: /usr/sbin/lsof [19:54:02] Info: Found the 'mktemp' command: /usr/bin/mktemp [19:54:02] Info: Found the 'netstat' command: /usr/bin/netstat [19:54:02] Info: Found the 'numfmt' command: /usr/bin/numfmt [19:54:02] Info: Found the 'perl' command: /usr/bin/perl [19:54:02] Info: Found the 'pgrep' command: /usr/bin/pgrep [19:54:02] Info: Found the 'ps' command: /usr/bin/ps [19:54:02] Info: Found the 'pwd' command: /usr/bin/pwd [19:54:02] Info: Found the 'readlink' command: /usr/bin/readlink [19:54:02] Info: Found the 'stat' command: /usr/bin/stat [19:54:02] Info: Found the 'strings' command: /usr/bin/strings [19:54:02] Info: Found the 'wget' command: /usr/bin/wget [19:54:02] Info: The mirrors file will be rotated [19:54:02] Info: Both local and remote mirrors will be used [19:54:02] Info: The mirrors file will be updated [19:54:02] Info: Logging to log file: /var/log/rkhunter.log [19:54:02] Info: Current logging will be appended to the log file [19:54:02] Info: Locking is not being used [19:54:02] [19:54:02] Checking rkhunter data files... [19:54:02] Info: Created temporary file '/var/lib/rkhunter/rkhunter.upd.zctT52OS0L' [19:54:02] Info: Created temporary file '/var/lib/rkhunter/mirrors.dat.kx6NIB09oZ' [19:54:02] Info: The mirrors file has been rotated: /var/lib/rkhunter/db/mirrors.dat [19:54:02] Info: Executing download command '/usr/bin/wget -q -O "/var/lib/rkhunter/rkhunter.upd.zctT52OS0L" http://rkhunter.sourceforge.net/1.4/mirrors.dat 2>/dev/null' [19:54:02] Info: This version : 2021020602 [19:54:02] Info: Latest version: 2021020602 [19:54:02] Checking file mirrors.dat [ No update ] [19:54:02] Info: Executing download command '/usr/bin/wget -q -O "/var/lib/rkhunter/rkhunter.upd.zctT52OS0L" http://rkhunter.sourceforge.net/1.4/programs_bad.dat 2>/dev/null' [19:54:03] Info: This version : 2014042901 [19:54:03] Info: Latest version: 2014042901 [19:54:03] Checking file programs_bad.dat [ No update ] [19:54:03] Info: Executing download command '/usr/bin/wget -q -O "/var/lib/rkhunter/rkhunter.upd.zctT52OS0L" http://rkhunter.sourceforge.net/1.4/backdoorports.dat 2>/dev/null' [19:54:03] Info: This version : 2010111401 [19:54:03] Info: Latest version: 2010111401 [19:54:03] Checking file backdoorports.dat [ No update ] [19:54:03] Info: Executing download command '/usr/bin/wget -q -O "/var/lib/rkhunter/rkhunter.upd.zctT52OS0L" http://rkhunter.sourceforge.net/1.4/suspscan.dat 2>/dev/null' [19:54:03] Info: This version : 2009112901 [19:54:03] Info: Latest version: 2009112901 [19:54:03] Checking file suspscan.dat [ No update ] [19:54:03] Info: Executing download command '/usr/bin/wget -q -O "/var/lib/rkhunter/rkhunter.upd.zctT52OS0L" http://rkhunter.sourceforge.net/1.4/i18n/1.4.6/i18n.ver 2>/dev/null' [19:54:03] Info: This version : 2009091601 [19:54:03] Info: Latest version: 2009091601 [19:54:03] Checking file i18n/cn [ No update ] [19:54:03] Info: This version : 2014010301 [19:54:03] Info: Latest version: 2014010301 [19:54:03] Checking file i18n/de [ No update ] [19:54:03] Info: This version : 2018021101 [19:54:03] Info: Latest version: 2018021101 [19:54:03] Checking file i18n/en [ No update ] [19:54:03] Info: This version : 2017080401 [19:54:03] Info: Latest version: 2017080401 [19:54:03] Checking file i18n/tr [ No update ] [19:54:03] Info: This version : 2017080401 [19:54:03] Info: Latest version: 2017080401 [19:54:03] Checking file i18n/tr.utf8 [ No update ] [19:54:03] Info: This version : 2009091601 [19:54:03] Info: Latest version: 2009091601 [19:54:03] Checking file i18n/zh [ No update ] [19:54:03] Info: This version : 2009091601 [19:54:03] Info: Latest version: 2009091601 [19:54:03] Checking file i18n/zh.utf8 [ No update ] [19:54:03] Info: This version : 2013112401 [19:54:03] Info: Latest version: 2013112401 [19:54:03] Checking file i18n/ja [ No update ] [19:54:03] [19:54:03] Info: End date is 2023年 4月 28日 金曜日 19:54:03 JST [19:54:17] Running Rootkit Hunter version 1.4.6 on cent79 [19:54:17] [19:54:17] Info: Start date is 2023年 4月 28日 金曜日 19:54:17 JST [19:54:17] [19:54:17] Checking configuration file and command-line options... [19:54:17] Info: Detected operating system is 'Linux' [19:54:17] Info: Uname output is 'Linux cent79.home.ycos 3.10.0-1160.88.1.el7.x86_64 #1 SMP Tue Mar 7 15:41:52 UTC 2023 x86_64 x86_64 x86_64 GNU/Linux' [19:54:17] Info: Command line is /usr/bin/rkhunter -c --createlogfile [19:54:17] Info: Environment shell is /bin/bash; rkhunter is using bash [19:54:17] Info: Using configuration file '/etc/rkhunter.conf' [19:54:17] Info: Installation directory is '/usr' [19:54:17] Info: Using language 'en' [19:54:17] Info: Using '/var/lib/rkhunter/db' as the database directory [19:54:17] Info: Using '/usr/share/rkhunter/scripts' as the support script directory [19:54:17] Info: Using '/usr/local/bin /usr/bin /usr/local/sbin /usr/sbin /home/student/bin /bin /sbin /usr/libexec /usr/local/libexec' as the command directories [19:54:17] Info: Using '/var/lib/rkhunter' as the temporary directory [19:54:17] Info: No mail-on-warning address configured [19:54:17] Info: X will be automatically detected [19:54:17] Info: Found the 'basename' command: /usr/bin/basename [19:54:17] Info: Found the 'diff' command: /usr/bin/diff [19:54:17] Info: Found the 'dirname' command: /usr/bin/dirname [19:54:17] Info: Found the 'file' command: /usr/bin/file [19:54:17] Info: Found the 'find' command: /usr/bin/find [19:54:17] Info: Found the 'ifconfig' command: /usr/sbin/ifconfig [19:54:17] Info: Found the 'ip' command: /usr/sbin/ip [19:54:17] Info: Found the 'ipcs' command: /usr/bin/ipcs [19:54:17] Info: Found the 'ldd' command: /usr/bin/ldd [19:54:17] Info: Found the 'lsattr' command: /usr/bin/lsattr [19:54:17] Info: Found the 'lsmod' command: /usr/sbin/lsmod [19:54:17] Info: Found the 'lsof' command: /usr/sbin/lsof [19:54:17] Info: Found the 'mktemp' command: /usr/bin/mktemp [19:54:17] Info: Found the 'netstat' command: /usr/bin/netstat [19:54:17] Info: Found the 'numfmt' command: /usr/bin/numfmt [19:54:17] Info: Found the 'perl' command: /usr/bin/perl [19:54:17] Info: Found the 'pgrep' command: /usr/bin/pgrep [19:54:17] Info: Found the 'ps' command: /usr/bin/ps [19:54:17] Info: Found the 'pwd' command: /usr/bin/pwd [19:54:17] Info: Found the 'readlink' command: /usr/bin/readlink [19:54:17] Info: Found the 'stat' command: /usr/bin/stat [19:54:17] Info: Found the 'strings' command: /usr/bin/strings [19:54:17] Info: System is not using prelinking [19:54:17] Info: Using the '/usr/bin/sha256sum' command for the file hash checks [19:54:17] Info: The hash function field index is set to 1 [19:54:17] Info: Using package manager 'RPM' for file property checks [19:54:17] Info: Found the 'rpm' command: /usr/bin/rpm [19:54:17] Info: Previous file attributes were stored [19:54:17] Info: Enabled tests are: all [19:54:17] Info: Disabled tests are: suspscan hidden_ports deleted_files packet_cap_apps apps ipc_shared_mem [19:54:17] Info: Current logging will be appended to the log file [19:54:17] Info: Found kernel symbols file '/proc/kallsyms' [19:54:17] Info: Using 'date' to process epoch second times [19:54:17] Info: Locking is not being used [19:54:17] [19:54:17] Starting system checks... [19:54:17] [19:54:17] Info: Starting test name 'system_commands' [19:54:17] Checking system commands... [19:54:17] [19:54:17] Info: Starting test name 'strings' [19:54:17] Performing 'strings' command checks [19:54:17] Scanning for string /usr/sbin/ntpsx [ OK ] [19:54:17] Scanning for string /usr/sbin/.../bkit-ava [ OK ] [19:54:17] Scanning for string /usr/sbin/.../bkit-d [ OK ] [19:54:17] Scanning for string /usr/sbin/.../bkit-shd [ OK ] [19:54:17] Scanning for string /usr/sbin/.../bkit-f [ OK ] [19:54:17] Scanning for string /usr/include/.../proc.h [ OK ] [19:54:17] Scanning for string /usr/include/.../.bash_history [ OK ] [19:54:17] Scanning for string /usr/include/.../bkit-get [ OK ] [19:54:17] Scanning for string /usr/include/.../bkit-dl [ OK ] [19:54:17] Scanning for string /usr/include/.../bkit-screen [ OK ] [19:54:17] Scanning for string /usr/include/.../bkit-sleep [ OK ] [19:54:17] Scanning for string /usr/lib/.../bkit-adore.o [ OK ] [19:54:17] Scanning for string /usr/lib/.../ls [ OK ] [19:54:17] Scanning for string /usr/lib/.../netstat [ OK ] [19:54:17] Scanning for string /usr/lib/.../lsof [ OK ] [19:54:17] Scanning for string /usr/lib/.../bkit-ssh/bkit-shdcfg [ OK ] [19:54:17] Scanning for string /usr/lib/.../bkit-ssh/bkit-shhk [ OK ] [19:54:17] Scanning for string /usr/lib/.../bkit-ssh/bkit-pw [ OK ] [19:54:18] Scanning for string /usr/lib/.../bkit-ssh/bkit-shrs [ OK ] [19:54:18] Scanning for string /usr/lib/.../bkit-ssh/bkit-mots [ OK ] [19:54:18] Scanning for string /usr/lib/.../uconf.inv [ OK ] [19:54:18] Scanning for string /usr/lib/.../psr [ OK ] [19:54:18] Scanning for string /usr/lib/.../find [ OK ] [19:54:18] Scanning for string /usr/lib/.../pstree [ OK ] [19:54:18] Scanning for string /usr/lib/.../slocate [ OK ] [19:54:18] Scanning for string /usr/lib/.../du [ OK ] [19:54:18] Scanning for string /usr/lib/.../top [ OK ] [19:54:18] Scanning for string /usr/sbin/... [ OK ] [19:54:18] Scanning for string /usr/include/... [ OK ] [19:54:18] Scanning for string /usr/include/.../.tmp [ OK ] [19:54:18] Scanning for string /usr/lib/... [ OK ] [19:54:18] Scanning for string /usr/lib/.../.ssh [ OK ] [19:54:18] Scanning for string /usr/lib/.../bkit-ssh [ OK ] [19:54:18] Scanning for string /usr/lib/.bkit- [ OK ] [19:54:18] Scanning for string /tmp/.bkp [ OK ] [19:54:18] Scanning for string /tmp/.cinik [ OK ] [19:54:18] Scanning for string /tmp/.font-unix/.cinik [ OK ] [19:54:18] Scanning for string /lib/.sso [ OK ] [19:54:18] Scanning for string /lib/.so [ OK ] [19:54:18] Scanning for string /var/run/...dica/clean [ OK ] [19:54:18] Scanning for string /var/run/...dica/dxr [ OK ] [19:54:18] Scanning for string /var/run/...dica/read [ OK ] [19:54:18] Scanning for string /var/run/...dica/write [ OK ] [19:54:18] Scanning for string /var/run/...dica/lf [ OK ] [19:54:18] Scanning for string /var/run/...dica/xl [ OK ] [19:54:18] Scanning for string /var/run/...dica/xdr [ OK ] [19:54:18] Scanning for string /var/run/...dica/psg [ OK ] [19:54:18] Scanning for string /var/run/...dica/secure [ OK ] [19:54:18] Scanning for string /var/run/...dica/rdx [ OK ] [19:54:18] Scanning for string /var/run/...dica/va [ OK ] [19:54:18] Scanning for string /var/run/...dica/cl.sh [ OK ] [19:54:18] Scanning for string /var/run/...dica/last.log [ OK ] [19:54:18] Scanning for string /usr/bin/.etc [ OK ] [19:54:18] Scanning for string /etc/sshd_config [ OK ] [19:54:18] Scanning for string /etc/ssh_host_key [ OK ] [19:54:18] Scanning for string /etc/ssh_random_seed [ OK ] [19:54:18] Scanning for string /dev/ptyp [ OK ] [19:54:18] Scanning for string /dev/ptyq [ OK ] [19:54:18] Scanning for string /dev/ptyr [ OK ] [19:54:18] Scanning for string /dev/ptys [ OK ] [19:54:18] Scanning for string /dev/ptyt [ OK ] [19:54:18] Scanning for string /dev/fd/.88/freshb-bsd [ OK ] [19:54:18] Scanning for string /dev/fd/.88/fresht [ OK ] [19:54:18] Scanning for string /dev/fd/.88/zxsniff [ OK ] [19:54:18] Scanning for string /dev/fd/.88/zxsniff.log [ OK ] [19:54:18] Scanning for string /dev/fd/.99/.ttyf00 [ OK ] [19:54:18] Scanning for string /dev/fd/.99/.ttyp00 [ OK ] [19:54:18] Scanning for string /dev/fd/.99/.ttyq00 [ OK ] [19:54:18] Scanning for string /dev/fd/.99/.ttys00 [ OK ] [19:54:18] Scanning for string /dev/fd/.99/.pwsx00 [ OK ] [19:54:18] Scanning for string /etc/.acid [ OK ] [19:54:18] Scanning for string /usr/lib/.fx/sched_host.2 [ OK ] [19:54:19] Scanning for string /usr/lib/.fx/random_d.2 [ OK ] [19:54:19] Scanning for string /usr/lib/.fx/set_pid.2 [ OK ] [19:54:19] Scanning for string /usr/lib/.fx/setrgrp.2 [ OK ] [19:54:19] Scanning for string /usr/lib/.fx/TOHIDE [ OK ] [19:54:19] Scanning for string /usr/lib/.fx/cons.saver [ OK ] [19:54:19] Scanning for string /usr/lib/.fx/adore/ava/ava [ OK ] [19:54:19] Scanning for string /usr/lib/.fx/adore/adore/adore.ko [ OK ] [19:54:19] Scanning for string /bin/sysback [ OK ] [19:54:19] Scanning for string /usr/local/bin/sysback [ OK ] [19:54:19] Scanning for string /usr/lib/.tbd [ OK ] [19:54:19] Scanning for string /dev/.lib/lib/lib/t0rns [ OK ] [19:54:19] Scanning for string /dev/.lib/lib/lib/du [ OK ] [19:54:19] Scanning for string /dev/.lib/lib/lib/ls [ OK ] [19:54:19] Scanning for string /dev/.lib/lib/lib/t0rnsb [ OK ] [19:54:19] Scanning for string /dev/.lib/lib/lib/ps [ OK ] [19:54:19] Scanning for string /dev/.lib/lib/lib/t0rnp [ OK ] [19:54:19] Scanning for string /dev/.lib/lib/lib/find [ OK ] [19:54:19] Scanning for string /dev/.lib/lib/lib/ifconfig [ OK ] [19:54:19] Scanning for string /dev/.lib/lib/lib/pg [ OK ] [19:54:19] Scanning for string /dev/.lib/lib/lib/ssh.tgz [ OK ] [19:54:19] Scanning for string /dev/.lib/lib/lib/top [ OK ] [19:54:19] Scanning for string /dev/.lib/lib/lib/sz [ OK ] [19:54:19] Scanning for string /dev/.lib/lib/lib/login [ OK ] [19:54:19] Scanning for string /dev/.lib/lib/lib/in.fingerd [ OK ] [19:54:19] Scanning for string /dev/.lib/lib/lib/1i0n.sh [ OK ] [19:54:19] Scanning for string /dev/.lib/lib/lib/pstree [ OK ] [19:54:19] Scanning for string /dev/.lib/lib/lib/in.telnetd [ OK ] [19:54:19] Scanning for string /dev/.lib/lib/lib/mjy [ OK ] [19:54:19] Scanning for string /dev/.lib/lib/lib/sush [ OK ] [19:54:19] Scanning for string /dev/.lib/lib/lib/tfn [ OK ] [19:54:19] Scanning for string /dev/.lib/lib/lib/name [ OK ] [19:54:19] Scanning for string /dev/.lib/lib/lib/getip.sh [ OK ] [19:54:19] Scanning for string /usr/info/.torn/sh* [ OK ] [19:54:19] Scanning for string /usr/src/.puta/.1addr [ OK ] [19:54:19] Scanning for string /usr/src/.puta/.1file [ OK ] [19:54:19] Scanning for string /usr/src/.puta/.1proc [ OK ] [19:54:19] Scanning for string /usr/src/.puta/.1logz [ OK ] [19:54:19] Scanning for string /usr/info/.t0rn [ OK ] [19:54:19] Scanning for string /dev/.lib [ OK ] [19:54:19] Scanning for string /dev/.lib/lib [ OK ] [19:54:19] Scanning for string /dev/.lib/lib/lib [ OK ] [19:54:19] Scanning for string /dev/.lib/lib/lib/dev [ OK ] [19:54:19] Scanning for string /dev/.lib/lib/scan [ OK ] [19:54:19] Scanning for string /usr/src/.puta [ OK ] [19:54:19] Scanning for string /usr/man/man1/man1 [ OK ] [19:54:19] Scanning for string /usr/man/man1/man1/lib [ OK ] [19:54:19] Scanning for string /usr/man/man1/man1/lib/.lib [ OK ] [19:54:19] Scanning for string /usr/man/man1/man1/lib/.lib/.backup [ OK ] [19:54:19] [19:54:19] Info: Starting test name 'shared_libs' [19:54:19] Performing 'shared libraries' checks [19:54:19] Checking for preloading variables [ None found ] [19:54:19] Checking for preloaded libraries [ None found ] [19:54:19] [19:54:19] Info: Starting test name 'shared_libs_path' [19:54:19] Checking LD_LIBRARY_PATH variable [ Not found ] [19:54:19] [19:54:19] Info: Starting test name 'properties' [19:54:20] Performing file properties checks [19:54:20] Warning: Checking for prerequisites [ Warning ] [19:54:20] The file of stored file properties (rkhunter.dat) does not exist, and should be created. To do this type in 'rkhunter --propupd'. [19:54:20] Info: The file properties check will still run as there are checks that can be performed without the 'rkhunter.dat' file. [19:54:20] [19:54:20] Warning: WARNING! It is the users responsibility to ensure that when the '--propupd' option is used, all the files on their system are known to be genuine, and installed from a reliable source. The rkhunter '--check' option will compare the current file properties against previously stored values, and report if any values differ. However, rkhunter cannot determine what has caused the change, that is for the user to do. [19:54:20] /usr/bin/awk [ OK ] [19:54:20] /usr/bin/basename [ OK ] [19:54:20] /usr/bin/bash [ OK ] [19:54:20] /usr/bin/cat [ OK ] [19:54:20] /usr/bin/chattr [ OK ] [19:54:20] /usr/bin/chmod [ OK ] [19:54:20] /usr/bin/chown [ OK ] [19:54:20] /usr/bin/cp [ OK ] [19:54:20] /usr/bin/curl [ OK ] [19:54:20] /usr/bin/cut [ OK ] [19:54:20] /usr/bin/date [ OK ] [19:54:20] /usr/bin/df [ OK ] [19:54:20] /usr/bin/diff [ OK ] [19:54:20] /usr/bin/dirname [ OK ] [19:54:20] /usr/bin/dmesg [ OK ] [19:54:20] /usr/bin/du [ OK ] [19:54:20] /usr/bin/echo [ OK ] [19:54:20] /usr/bin/egrep [ Warning ] [19:54:21] Warning: The command '/usr/bin/egrep' has been replaced by a script: /usr/bin/egrep: POSIX shell script, ASCII text executable [19:54:21] /usr/bin/env [ OK ] [19:54:21] /usr/bin/fgrep [ Warning ] [19:54:21] Warning: The command '/usr/bin/fgrep' has been replaced by a script: /usr/bin/fgrep: POSIX shell script, ASCII text executable [19:54:21] /usr/bin/file [ OK ] [19:54:21] /usr/bin/find [ OK ] [19:54:21] /usr/bin/grep [ OK ] [19:54:21] /usr/bin/groups [ OK ] [19:54:21] Info: Found file '/usr/bin/groups': it is whitelisted for the 'script replacement' check. [19:54:21] /usr/bin/head [ OK ] [19:54:21] /usr/bin/id [ OK ] [19:54:21] /usr/bin/ipcs [ OK ] [19:54:21] /usr/bin/kill [ OK ] [19:54:21] /usr/bin/last [ OK ] [19:54:21] /usr/bin/lastlog [ OK ] [19:54:21] /usr/bin/ldd [ OK ] [19:54:21] Info: Found file '/usr/bin/ldd': it is whitelisted for the 'script replacement' check. [19:54:21] /usr/bin/less [ OK ] [19:54:21] /usr/bin/logger [ OK ] [19:54:21] /usr/bin/login [ OK ] [19:54:21] /usr/bin/ls [ OK ] [19:54:21] /usr/bin/lsattr [ OK ] [19:54:21] /usr/bin/mail [ OK ] [19:54:21] /usr/bin/md5sum [ OK ] [19:54:21] /usr/bin/mktemp [ OK ] [19:54:21] /usr/bin/more [ OK ] [19:54:21] /usr/bin/mount [ OK ] [19:54:21] /usr/bin/mv [ OK ] [19:54:21] /usr/bin/netstat [ OK ] [19:54:22] /usr/bin/newgrp [ OK ] [19:54:22] /usr/bin/passwd [ OK ] [19:54:22] /usr/bin/perl [ OK ] [19:54:22] /usr/bin/pgrep [ OK ] [19:54:22] /usr/bin/ping [ OK ] [19:54:22] /usr/bin/pkill [ OK ] [19:54:22] /usr/bin/ps [ OK ] [19:54:22] /usr/bin/pwd [ OK ] [19:54:22] /usr/bin/readlink [ OK ] [19:54:22] /usr/bin/rkhunter [ OK ] [19:54:22] /usr/bin/rpm [ OK ] [19:54:22] /usr/bin/runcon [ OK ] [19:54:22] /usr/bin/sed [ OK ] [19:54:22] /usr/bin/sh [ OK ] [19:54:22] /usr/bin/sha1sum [ OK ] [19:54:22] /usr/bin/sha224sum [ OK ] [19:54:22] /usr/bin/sha256sum [ OK ] [19:54:22] /usr/bin/sha384sum [ OK ] [19:54:22] /usr/bin/sha512sum [ OK ] [19:54:22] /usr/bin/size [ OK ] [19:54:22] /usr/bin/sort [ OK ] [19:54:22] /usr/bin/ssh [ OK ] [19:54:22] /usr/bin/stat [ OK ] [19:54:22] /usr/bin/strings [ OK ] [19:54:22] /usr/bin/su [ OK ] [19:54:22] /usr/bin/sudo [ OK ] [19:54:22] /usr/bin/tail [ OK ] [19:54:23] /usr/bin/telnet [ OK ] [19:54:23] /usr/bin/test [ OK ] [19:54:23] /usr/bin/top [ OK ] [19:54:23] /usr/bin/touch [ OK ] [19:54:23] /usr/bin/tr [ OK ] [19:54:23] /usr/bin/uname [ OK ] [19:54:23] /usr/bin/uniq [ OK ] [19:54:23] /usr/bin/users [ OK ] [19:54:23] /usr/bin/vmstat [ OK ] [19:54:23] /usr/bin/w [ OK ] [19:54:23] /usr/bin/watch [ OK ] [19:54:23] /usr/bin/wc [ OK ] [19:54:23] /usr/bin/wget [ OK ] [19:54:23] /usr/bin/whatis [ OK ] [19:54:23] Info: Found file '/usr/bin/whatis': it is whitelisted for the 'script replacement' check. [19:54:23] /usr/bin/whereis [ OK ] [19:54:23] /usr/bin/which [ OK ] [19:54:23] /usr/bin/who [ OK ] [19:54:23] /usr/bin/whoami [ OK ] [19:54:23] /usr/bin/numfmt [ OK ] [19:54:23] /usr/bin/gawk [ OK ] [19:54:23] /usr/bin/mailx [ OK ] [19:54:23] /usr/bin/kmod [ OK ] [19:54:23] /usr/bin/systemctl [ OK ] [19:54:24] /usr/sbin/adduser [ OK ] [19:54:24] /usr/sbin/chkconfig [ OK ] [19:54:24] /usr/sbin/chroot [ OK ] [19:54:24] /usr/sbin/depmod [ OK ] [19:54:24] /usr/sbin/fsck [ OK ] [19:54:24] /usr/sbin/groupadd [ OK ] [19:54:24] /usr/sbin/groupdel [ OK ] [19:54:24] /usr/sbin/groupmod [ OK ] [19:54:24] /usr/sbin/grpck [ OK ] [19:54:24] /usr/sbin/ifconfig [ OK ] [19:54:24] /usr/sbin/ifdown [ Warning ] [19:54:24] Warning: The command '/usr/sbin/ifdown' has been replaced by a script: /usr/sbin/ifdown: Bourne-Again shell script, ASCII text executable [19:54:24] /usr/sbin/ifup [ Warning ] [19:54:24] Warning: The command '/usr/sbin/ifup' has been replaced by a script: /usr/sbin/ifup: Bourne-Again shell script, ASCII text executable [19:54:24] /usr/sbin/init [ OK ] [19:54:24] /usr/sbin/insmod [ OK ] [19:54:24] /usr/sbin/ip [ OK ] [19:54:24] /usr/sbin/lsmod [ OK ] [19:54:24] /usr/sbin/lsof [ OK ] [19:54:24] /usr/sbin/modinfo [ OK ] [19:54:24] /usr/sbin/modprobe [ OK ] [19:54:24] /usr/sbin/nologin [ OK ] [19:54:24] /usr/sbin/pwck [ OK ] [19:54:24] /usr/sbin/rmmod [ OK ] [19:54:25] /usr/sbin/route [ OK ] [19:54:25] /usr/sbin/rsyslogd [ OK ] [19:54:25] /usr/sbin/runlevel [ OK ] [19:54:25] /usr/sbin/sestatus [ OK ] [19:54:25] /usr/sbin/sshd [ OK ] [19:54:25] /usr/sbin/sulogin [ OK ] [19:54:25] /usr/sbin/sysctl [ OK ] [19:54:25] /usr/sbin/useradd [ OK ] [19:54:25] /usr/sbin/userdel [ OK ] [19:54:25] /usr/sbin/usermod [ OK ] [19:54:25] /usr/sbin/vipw [ OK ] [19:54:25] /home/student/bin/links [ Warning ] [19:54:25] Warning: The command '/home/student/bin/links' has been replaced by a script: /home/student/bin/links: Bourne-Again shell script, ASCII text executable [19:54:26] /usr/lib/systemd/systemd [ OK ] [19:54:31] [19:54:31] Info: Starting test name 'rootkits' [19:54:31] Checking for rootkits... [19:54:31] [19:54:31] Info: Starting test name 'known_rkts' [19:54:31] Performing check of known rootkit files and directories [19:54:31] [19:54:31] Checking for 55808 Trojan - Variant A... [19:54:31] Checking for file '/tmp/.../r' [ Not found ] [19:54:31] Checking for file '/tmp/.../a' [ Not found ] [19:54:31] 55808 Trojan - Variant A [ Not found ] [19:54:31] [19:54:31] Checking for ADM Worm... [19:54:31] Checking for string 'w0rm' [ Not found ] [19:54:31] ADM Worm [ Not found ] [19:54:31] [19:54:31] Checking for AjaKit Rootkit... [19:54:31] Checking for file '/dev/tux/.addr' [ Not found ] [19:54:31] Checking for file '/dev/tux/.proc' [ Not found ] [19:54:31] Checking for file '/dev/tux/.file' [ Not found ] [19:54:31] Checking for file '/lib/.libgh-gh/cleaner' [ Not found ] [19:54:31] Checking for file '/lib/.libgh-gh/Patch/patch' [ Not found ] [19:54:31] Checking for file '/lib/.libgh-gh/sb0k' [ Not found ] [19:54:31] Checking for directory '/dev/tux' [ Not found ] [19:54:31] Checking for directory '/lib/.libgh-gh' [ Not found ] [19:54:32] AjaKit Rootkit [ Not found ] [19:54:32] [19:54:32] Checking for Adore Rootkit... [19:54:32] Checking for file '/usr/secure' [ Not found ] [19:54:32] Checking for file '/usr/doc/sys/qrt' [ Not found ] [19:54:32] Checking for file '/usr/doc/sys/run' [ Not found ] [19:54:32] Checking for file '/usr/doc/sys/crond' [ Not found ] [19:54:32] Checking for file '/usr/sbin/kfd' [ Not found ] [19:54:32] Checking for file '/usr/doc/kern/var' [ Not found ] [19:54:32] Checking for file '/usr/doc/kern/string.o' [ Not found ] [19:54:32] Checking for file '/usr/doc/kern/ava' [ Not found ] [19:54:32] Checking for file '/usr/doc/kern/adore.o' [ Not found ] [19:54:32] Checking for file '/var/log/ssh/old' [ Not found ] [19:54:32] Checking for directory '/lib/security/.config/ssh' [ Not found ] [19:54:32] Checking for directory '/usr/doc/kern' [ Not found ] [19:54:32] Checking for directory '/usr/doc/backup' [ Not found ] [19:54:32] Checking for directory '/usr/doc/backup/txt' [ Not found ] [19:54:32] Checking for directory '/lib/backup' [ Not found ] [19:54:32] Checking for directory '/lib/backup/txt' [ Not found ] [19:54:32] Checking for directory '/usr/doc/work' [ Not found ] [19:54:32] Checking for directory '/usr/doc/sys' [ Not found ] [19:54:32] Checking for directory '/var/log/ssh' [ Not found ] [19:54:32] Checking for directory '/usr/doc/.spool' [ Not found ] [19:54:32] Checking for directory '/usr/lib/kterm' [ Not found ] [19:54:32] Adore Rootkit [ Not found ] [19:54:32] [19:54:32] Checking for aPa Kit... [19:54:32] Checking for file '/usr/share/.aPa' [ Not found ] [19:54:32] aPa Kit [ Not found ] [19:54:32] [19:54:32] Checking for Apache Worm... [19:54:32] Checking for file '/bin/.log' [ Not found ] [19:54:32] Apache Worm [ Not found ] [19:54:32] [19:54:32] Checking for Ambient (ark) Rootkit... [19:54:32] Checking for file '/usr/lib/.ark?' [ Not found ] [19:54:32] Checking for file '/dev/ptyxx/.log' [ Not found ] [19:54:32] Checking for file '/dev/ptyxx/.file' [ Not found ] [19:54:32] Checking for file '/dev/ptyxx/.proc' [ Not found ] [19:54:32] Checking for file '/dev/ptyxx/.addr' [ Not found ] [19:54:32] Checking for directory '/dev/ptyxx' [ Not found ] [19:54:32] Ambient (ark) Rootkit [ Not found ] [19:54:32] [19:54:32] Checking for Balaur Rootkit... [19:54:32] Checking for file '/usr/lib/liblog.o' [ Not found ] [19:54:32] Checking for directory '/usr/lib/.kinetic' [ Not found ] [19:54:32] Checking for directory '/usr/lib/.egcs' [ Not found ] [19:54:32] Checking for directory '/usr/lib/.wormie' [ Not found ] [19:54:32] Balaur Rootkit [ Not found ] [19:54:32] [19:54:32] Checking for BeastKit Rootkit... [19:54:32] Checking for file '/usr/sbin/arobia' [ Not found ] [19:54:32] Checking for file '/usr/sbin/idrun' [ Not found ] [19:54:32] Checking for file '/usr/lib/elm/arobia/elm' [ Not found ] [19:54:32] Checking for file '/usr/lib/elm/arobia/elm/hk' [ Not found ] [19:54:32] Checking for file '/usr/lib/elm/arobia/elm/hk.pub' [ Not found ] [19:54:32] Checking for file '/usr/lib/elm/arobia/elm/sc' [ Not found ] [19:54:32] Checking for file '/usr/lib/elm/arobia/elm/sd.pp' [ Not found ] [19:54:32] Checking for file '/usr/lib/elm/arobia/elm/sdco' [ Not found ] [19:54:32] Checking for file '/usr/lib/elm/arobia/elm/srsd' [ Not found ] [19:54:32] Checking for directory '/lib/ldd.so/bktools' [ Not found ] [19:54:32] BeastKit Rootkit [ Not found ] [19:54:33] [19:54:33] Checking for beX2 Rootkit... [19:54:33] Checking for file '/usr/info/termcap.info-5.gz' [ Not found ] [19:54:33] Checking for file '/usr/bin/sshd2' [ Not found ] [19:54:33] Checking for directory '/usr/include/bex' [ Not found ] [19:54:33] beX2 Rootkit [ Not found ] [19:54:33] [19:54:33] Checking for BOBKit Rootkit... [19:54:33] Checking for file '/usr/sbin/ntpsx' [ Not found ] [19:54:33] Checking for file '/usr/sbin/.../bkit-ava' [ Not found ] [19:54:33] Checking for file '/usr/sbin/.../bkit-d' [ Not found ] [19:54:33] Checking for file '/usr/sbin/.../bkit-shd' [ Not found ] [19:54:33] Checking for file '/usr/sbin/.../bkit-f' [ Not found ] [19:54:33] Checking for file '/usr/include/.../proc.h' [ Not found ] [19:54:33] Checking for file '/usr/include/.../.bash_history' [ Not found ] [19:54:33] Checking for file '/usr/include/.../bkit-get' [ Not found ] [19:54:33] Checking for file '/usr/include/.../bkit-dl' [ Not found ] [19:54:33] Checking for file '/usr/include/.../bkit-screen' [ Not found ] [19:54:33] Checking for file '/usr/include/.../bkit-sleep' [ Not found ] [19:54:33] Checking for file '/usr/lib/.../bkit-adore.o' [ Not found ] [19:54:33] Checking for file '/usr/lib/.../ls' [ Not found ] [19:54:33] Checking for file '/usr/lib/.../netstat' [ Not found ] [19:54:33] Checking for file '/usr/lib/.../lsof' [ Not found ] [19:54:33] Checking for file '/usr/lib/.../bkit-ssh/bkit-shdcfg' [ Not found ] [19:54:33] Checking for file '/usr/lib/.../bkit-ssh/bkit-shhk' [ Not found ] [19:54:33] Checking for file '/usr/lib/.../bkit-ssh/bkit-pw' [ Not found ] [19:54:33] Checking for file '/usr/lib/.../bkit-ssh/bkit-shrs' [ Not found ] [19:54:33] Checking for file '/usr/lib/.../bkit-ssh/bkit-mots' [ Not found ] [19:54:33] Checking for file '/usr/lib/.../uconf.inv' [ Not found ] [19:54:33] Checking for file '/usr/lib/.../psr' [ Not found ] [19:54:33] Checking for file '/usr/lib/.../find' [ Not found ] [19:54:33] Checking for file '/usr/lib/.../pstree' [ Not found ] [19:54:33] Checking for file '/usr/lib/.../slocate' [ Not found ] [19:54:33] Checking for file '/usr/lib/.../du' [ Not found ] [19:54:33] Checking for file '/usr/lib/.../top' [ Not found ] [19:54:33] Checking for directory '/usr/sbin/...' [ Not found ] [19:54:33] Checking for directory '/usr/include/...' [ Not found ] [19:54:33] Checking for directory '/usr/include/.../.tmp' [ Not found ] [19:54:33] Checking for directory '/usr/lib/...' [ Not found ] [19:54:33] Checking for directory '/usr/lib/.../.ssh' [ Not found ] [19:54:33] Checking for directory '/usr/lib/.../bkit-ssh' [ Not found ] [19:54:33] Checking for directory '/usr/lib/.bkit-' [ Not found ] [19:54:33] Checking for directory '/tmp/.bkp' [ Not found ] [19:54:33] BOBKit Rootkit [ Not found ] [19:54:33] [19:54:33] Checking for cb Rootkit... [19:54:33] Checking for file '/dev/srd0' [ Not found ] [19:54:33] Checking for file '/lib/libproc.so.2.0.6' [ Not found ] [19:54:33] Checking for file '/dev/mounnt' [ Not found ] [19:54:33] Checking for file '/etc/rc.d/init.d/init' [ Not found ] [19:54:33] Checking for file '/usr/bin/.zeen/../cl' [ Not found ] [19:54:33] Checking for file '/usr/bin/.zeen/.. /.x.tgz' [ Not found ] [19:54:33] Checking for file '/usr/bin/.zeen/.. /statdx' [ Not found ] [19:54:33] Checking for file '/usr/bin/.zeen/.. /wted' [ Not found ] [19:54:33] Checking for file '/usr/bin/.zeen/.. /write' [ Not found ] [19:54:33] Checking for file '/usr/bin/.zeen/.. /scan' [ Not found ] [19:54:33] Checking for file '/usr/bin/.zeen/.. /sc' [ Not found ] [19:54:34] Checking for file '/usr/bin/.zeen/.. /sl2' [ Not found ] [19:54:34] Checking for file '/usr/bin/.zeen/.. /wroot' [ Not found ] [19:54:34] Checking for file '/usr/bin/.zeen/.. /wscan' [ Not found ] [19:54:34] Checking for file '/usr/bin/.zeen/.. /wu' [ Not found ] [19:54:34] Checking for file '/usr/bin/.zeen/.. /v' [ Not found ] [19:54:34] Checking for file '/usr/bin/.zeen/.. /read' [ Not found ] [19:54:34] Checking for file '/usr/lib/sshrc' [ Not found ] [19:54:34] Checking for file '/usr/lib/ssh_host_key' [ Not found ] [19:54:34] Checking for file '/usr/lib/ssh_host_key.pub' [ Not found ] [19:54:34] Checking for file '/usr/lib/ssh_random_seed' [ Not found ] [19:54:34] Checking for file '/usr/lib/sshd_config' [ Not found ] [19:54:34] Checking for file '/usr/lib/shosts.equiv' [ Not found ] [19:54:34] Checking for file '/usr/lib/ssh_known_hosts' [ Not found ] [19:54:34] Checking for file '/u/zappa/.ssh/pid' [ Not found ] [19:54:34] Checking for file '/usr/bin/.system/.. /tcp.log' [ Not found ] [19:54:34] Checking for file '/usr/bin/.zeen/.. /curatare/attrib' [ Not found ] [19:54:34] Checking for file '/usr/bin/.zeen/.. /curatare/chattr' [ Not found ] [19:54:34] Checking for file '/usr/bin/.zeen/.. /curatare/ps' [ Not found ] [19:54:34] Checking for file '/usr/bin/.zeen/.. /curatare/pstree' [ Not found ] [19:54:34] Checking for file '/usr/bin/.system/.. /.x/xC.o' [ Not found ] [19:54:34] Checking for directory '/usr/bin/.zeen' [ Not found ] [19:54:34] Checking for directory '/usr/bin/.zeen/.. /curatare' [ Not found ] [19:54:34] Checking for directory '/usr/bin/.zeen/.. /scan' [ Not found ] [19:54:34] Checking for directory '/usr/bin/.system/.. ' [ Not found ] [19:54:34] cb Rootkit [ Not found ] [19:54:34] [19:54:34] Checking for CiNIK Worm (Slapper.B variant)... [19:54:34] Checking for file '/tmp/.cinik' [ Not found ] [19:54:34] Checking for directory '/tmp/.font-unix/.cinik' [ Not found ] [19:54:34] CiNIK Worm (Slapper.B variant) [ Not found ] [19:54:34] [19:54:34] Checking for Danny-Boy's Abuse Kit... [19:54:34] Checking for file '/dev/mdev' [ Not found ] [19:54:34] Checking for file '/usr/lib/libX.a' [ Not found ] [19:54:34] Danny-Boy's Abuse Kit [ Not found ] [19:54:34] [19:54:34] Checking for Devil RootKit... [19:54:34] Checking for file '/var/lib/games/.src' [ Not found ] [19:54:34] Checking for file '/dev/dsx' [ Not found ] [19:54:34] Checking for file '/dev/caca' [ Not found ] [19:54:34] Checking for file '/dev/pro' [ Not found ] [19:54:34] Checking for file '/bin/bye' [ Not found ] [19:54:34] Checking for file '/bin/homedir' [ Not found ] [19:54:34] Checking for file '/usr/bin/xfss' [ Not found ] [19:54:34] Checking for file '/usr/sbin/tzava' [ Not found ] [19:54:34] Checking for file '/usr/doc/tar/.../.dracusor/stuff/holber' [ Not found ] [19:54:34] Checking for file '/usr/doc/tar/.../.dracusor/stuff/sense' [ Not found ] [19:54:34] Checking for file '/usr/doc/tar/.../.dracusor/stuff/clear' [ Not found ] [19:54:34] Checking for file '/usr/doc/tar/.../.dracusor/stuff/tzava' [ Not found ] [19:54:34] Checking for file '/usr/doc/tar/.../.dracusor/stuff/citeste' [ Not found ] [19:54:34] Checking for file '/usr/doc/tar/.../.dracusor/stuff/killrk' [ Not found ] [19:54:34] Checking for file '/usr/doc/tar/.../.dracusor/stuff/searchlog' [ Not found ] [19:54:34] Checking for file '/usr/doc/tar/.../.dracusor/stuff/gaoaza' [ Not found ] [19:54:34] Checking for file '/usr/doc/tar/.../.dracusor/stuff/cleaner' [ Not found ] [19:54:34] Checking for file '/usr/doc/tar/.../.dracusor/stuff/shk' [ Not found ] [19:54:34] Checking for file '/usr/doc/tar/.../.dracusor/stuff/srs' [ Not found ] [19:54:34] Checking for file '/usr/doc/tar/.../.dracusor/utile.tgz' [ Not found ] [19:54:34] Checking for file '/usr/doc/tar/.../.dracusor/webpage' [ Not found ] [19:54:35] Checking for file '/usr/doc/tar/.../.dracusor/getpsy' [ Not found ] [19:54:35] Checking for file '/usr/doc/tar/.../.dracusor/getbnc' [ Not found ] [19:54:35] Checking for file '/usr/doc/tar/.../.dracusor/getemech' [ Not found ] [19:54:35] Checking for file '/usr/doc/tar/.../.dracusor/localroot.sh' [ Not found ] [19:54:35] Checking for file '/usr/doc/tar/.../.dracusor/stuff/old/sense' [ Not found ] [19:54:35] Checking for directory '/usr/doc/tar/.../.dracusor' [ Not found ] [19:54:35] Devil RootKit [ Not found ] [19:54:35] [19:54:35] Checking for Diamorphine LKM... [19:54:35] Checking for kernel symbol 'diamorphine' [ Not found ] [19:54:35] Checking for kernel symbol 'module_hide' [ Not found ] [19:54:35] Checking for kernel symbol 'module_hidden' [ Not found ] [19:54:35] Checking for kernel symbol 'is_invisible' [ Not found ] [19:54:35] Checking for kernel symbol 'hacked_getdents' [ Not found ] [19:54:35] Checking for kernel symbol 'hacked_kill' [ Not found ] [19:54:35] Diamorphine LKM [ Not found ] [19:54:35] [19:54:35] Checking for Dica-Kit Rootkit... [19:54:35] Checking for file '/lib/.sso' [ Not found ] [19:54:35] Checking for file '/lib/.so' [ Not found ] [19:54:35] Checking for file '/var/run/...dica/clean' [ Not found ] [19:54:35] Checking for file '/var/run/...dica/dxr' [ Not found ] [19:54:35] Checking for file '/var/run/...dica/read' [ Not found ] [19:54:35] Checking for file '/var/run/...dica/write' [ Not found ] [19:54:35] Checking for file '/var/run/...dica/lf' [ Not found ] [19:54:35] Checking for file '/var/run/...dica/xl' [ Not found ] [19:54:35] Checking for file '/var/run/...dica/xdr' [ Not found ] [19:54:35] Checking for file '/var/run/...dica/psg' [ Not found ] [19:54:35] Checking for file '/var/run/...dica/secure' [ Not found ] [19:54:35] Checking for file '/var/run/...dica/rdx' [ Not found ] [19:54:35] Checking for file '/var/run/...dica/va' [ Not found ] [19:54:35] Checking for file '/var/run/...dica/cl.sh' [ Not found ] [19:54:35] Checking for file '/var/run/...dica/last.log' [ Not found ] [19:54:35] Checking for file '/usr/bin/.etc' [ Not found ] [19:54:35] Checking for file '/etc/sshd_config' [ Not found ] [19:54:35] Checking for file '/etc/ssh_host_key' [ Not found ] [19:54:35] Checking for file '/etc/ssh_random_seed' [ Not found ] [19:54:35] Checking for directory '/var/run/...dica' [ Not found ] [19:54:35] Checking for directory '/var/run/...dica/mh' [ Not found ] [19:54:35] Checking for directory '/var/run/...dica/scan' [ Not found ] [19:54:35] Dica-Kit Rootkit [ Not found ] [19:54:35] [19:54:35] Checking for Dreams Rootkit... [19:54:35] Checking for file '/dev/ttyoa' [ Not found ] [19:54:35] Checking for file '/dev/ttyof' [ Not found ] [19:54:35] Checking for file '/dev/ttyop' [ Not found ] [19:54:35] Checking for file '/usr/bin/sense' [ Not found ] [19:54:36] Checking for file '/usr/bin/sl2' [ Not found ] [19:54:36] Checking for file '/usr/bin/logclear' [ Not found ] [19:54:36] Checking for file '/usr/bin/(swapd)' [ Not found ] [19:54:36] Checking for file '/usr/bin/initrd' [ Not found ] [19:54:36] Checking for file '/usr/bin/crontabs' [ Not found ] [19:54:36] Checking for file '/usr/bin/snfs' [ Not found ] [19:54:36] Checking for file '/usr/lib/libsss' [ Not found ] [19:54:36] Checking for file '/usr/lib/libsnf.log' [ Not found ] [19:54:36] Checking for file '/usr/lib/libshtift/top' [ Not found ] [19:54:36] Checking for file '/usr/lib/libshtift/ps' [ Not found ] [19:54:36] Checking for file '/usr/lib/libshtift/netstat' [ Not found ] [19:54:36] Checking for file '/usr/lib/libshtift/ls' [ Not found ] [19:54:36] Checking for file '/usr/lib/libshtift/ifconfig' [ Not found ] [19:54:36] Checking for file '/usr/include/linseed.h' [ Not found ] [19:54:36] Checking for file '/usr/include/linpid.h' [ Not found ] [19:54:36] Checking for file '/usr/include/linkey.h' [ Not found ] [19:54:36] Checking for file '/usr/include/linconf.h' [ Not found ] [19:54:36] Checking for file '/usr/include/iceseed.h' [ Not found ] [19:54:36] Checking for file '/usr/include/icepid.h' [ Not found ] [19:54:36] Checking for file '/usr/include/icekey.h' [ Not found ] [19:54:36] Checking for file '/usr/include/iceconf.h' [ Not found ] [19:54:36] Checking for directory '/dev/ida/.hpd' [ Not found ] [19:54:36] Checking for directory '/usr/lib/libshtift' [ Not found ] [19:54:36] Dreams Rootkit [ Not found ] [19:54:36] [19:54:36] Checking for Duarawkz Rootkit... [19:54:36] Checking for file '/usr/bin/duarawkz/loginpass' [ Not found ] [19:54:36] Checking for directory '/usr/bin/duarawkz' [ Not found ] [19:54:36] Duarawkz Rootkit [ Not found ] [19:54:36] [19:54:36] Checking for Ebury backdoor... [19:54:36] Checking for file '/lib/libns2.so' [ Not found ] [19:54:36] Checking for file '/lib64/libns2.so' [ Not found ] [19:54:36] Checking for file '/lib/libns5.so' [ Not found ] [19:54:36] Checking for file '/lib64/libns5.so' [ Not found ] [19:54:36] Checking for file '/lib/libpw3.so' [ Not found ] [19:54:36] Checking for file '/lib64/libpw3.so' [ Not found ] [19:54:36] Checking for file '/lib/libpw5.so' [ Not found ] [19:54:36] Checking for file '/lib64/libpw5.so' [ Not found ] [19:54:36] Checking for file '/lib/libsbr.so' [ Not found ] [19:54:36] Checking for file '/lib64/libsbr.so' [ Not found ] [19:54:36] Checking for file '/lib/libslr.so' [ Not found ] [19:54:36] Checking for file '/lib64/libslr.so' [ Not found ] [19:54:36] Ebury backdoor [ Not found ] [19:54:36] [19:54:36] Checking for Enye LKM... [19:54:36] Checking for file '/etc/.enyelkmHIDE^IT.ko' [ Not found ] [19:54:36] Checking for file '/etc/.enyelkmOCULTAR.ko' [ Not found ] [19:54:36] Enye LKM [ Not found ] [19:54:36] [19:54:36] Checking for Flea Linux Rootkit... [19:54:36] Checking for file '/etc/ld.so.hash' [ Not found ] [19:54:36] Checking for file '/lib/security/.config/ssh/sshd_config' [ Not found ] [19:54:36] Checking for file '/lib/security/.config/ssh/ssh_host_key' [ Not found ] [19:54:36] Checking for file '/lib/security/.config/ssh/ssh_host_key.pub' [ Not found ] [19:54:36] Checking for file '/lib/security/.config/ssh/ssh_random_seed' [ Not found ] [19:54:36] Checking for file '/usr/bin/ssh2d' [ Not found ] [19:54:36] Checking for file '/usr/lib/ldlibns.so' [ Not found ] [19:54:36] Checking for file '/usr/lib/ldlibps.so' [ Not found ] [19:54:36] Checking for file '/usr/lib/ldlibpst.so' [ Not found ] [19:54:37] Checking for file '/usr/lib/ldlibdu.so' [ Not found ] [19:54:37] Checking for file '/usr/lib/ldlibct.so' [ Not found ] [19:54:37] Checking for directory '/lib/security/.config/ssh' [ Not found ] [19:54:37] Checking for directory '/dev/..0' [ Not found ] [19:54:37] Checking for directory '/dev/..0/backup' [ Not found ] [19:54:37] Flea Linux Rootkit [ Not found ] [19:54:37] [19:54:37] Checking for Fu Rootkit... [19:54:37] Checking for file '/sbin/xc' [ Not found ] [19:54:37] Checking for file '/usr/include/ivtype.h' [ Not found ] [19:54:37] Checking for file '/bin/.lib' [ Not found ] [19:54:37] Fu Rootkit [ Not found ] [19:54:37] [19:54:37] Checking for Fuck`it Rootkit... [19:54:37] Checking for file '/lib/libproc.so.2.0.7' [ Not found ] [19:54:37] Checking for file '/dev/proc/.bash_profile' [ Not found ] [19:54:37] Checking for file '/dev/proc/.bashrc' [ Not found ] [19:54:37] Checking for file '/dev/proc/.cshrc' [ Not found ] [19:54:37] Checking for file '/dev/proc/fuckit/hax0r' [ Not found ] [19:54:37] Checking for file '/dev/proc/fuckit/hax0rshell' [ Not found ] [19:54:37] Checking for file '/dev/proc/fuckit/config/lports' [ Not found ] [19:54:37] Checking for file '/dev/proc/fuckit/config/rports' [ Not found ] [19:54:37] Checking for file '/dev/proc/fuckit/config/rkconf' [ Not found ] [19:54:37] Checking for file '/dev/proc/fuckit/config/password' [ Not found ] [19:54:37] Checking for file '/dev/proc/fuckit/config/progs' [ Not found ] [19:54:37] Checking for file '/dev/proc/fuckit/system-bins/init' [ Not found ] [19:54:37] Checking for file '/usr/lib/libcps.a' [ Not found ] [19:54:37] Checking for file '/usr/lib/libtty.a' [ Not found ] [19:54:37] Checking for directory '/dev/proc' [ Not found ] [19:54:37] Checking for directory '/dev/proc/fuckit' [ Not found ] [19:54:37] Checking for directory '/dev/proc/fuckit/system-bins' [ Not found ] [19:54:37] Checking for directory '/dev/proc/toolz' [ Not found ] [19:54:37] Fuck`it Rootkit [ Not found ] [19:54:37] [19:54:37] Checking for GasKit Rootkit... [19:54:37] Checking for file '/dev/dev/gaskit/sshd/sshdd' [ Not found ] [19:54:37] Checking for directory '/dev/dev' [ Not found ] [19:54:37] Checking for directory '/dev/dev/gaskit' [ Not found ] [19:54:37] Checking for directory '/dev/dev/gaskit/sshd' [ Not found ] [19:54:37] GasKit Rootkit [ Not found ] [19:54:37] [19:54:37] Checking for Heroin LKM... [19:54:37] Checking for kernel symbol 'heroin' [ Not found ] [19:54:37] Heroin LKM [ Not found ] [19:54:37] [19:54:37] Checking for HjC Kit... [19:54:37] Checking for directory '/dev/.hijackerz' [ Not found ] [19:54:37] HjC Kit [ Not found ] [19:54:37] [19:54:37] Checking for ignoKit Rootkit... [19:54:37] Checking for file '/lib/defs/p' [ Not found ] [19:54:37] Checking for file '/lib/defs/q' [ Not found ] [19:54:37] Checking for file '/lib/defs/r' [ Not found ] [19:54:37] Checking for file '/lib/defs/s' [ Not found ] [19:54:37] Checking for file '/lib/defs/t' [ Not found ] [19:54:37] Checking for file '/usr/lib/defs/p' [ Not found ] [19:54:37] Checking for file '/usr/lib/defs/q' [ Not found ] [19:54:37] Checking for file '/usr/lib/defs/r' [ Not found ] [19:54:37] Checking for file '/usr/lib/defs/s' [ Not found ] [19:54:37] Checking for file '/usr/lib/defs/t' [ Not found ] [19:54:38] Checking for file '/usr/lib/.libigno/pkunsec' [ Not found ] [19:54:38] Checking for file '/usr/lib/.libigno/.igno/psybnc/psybnc' [ Not found ] [19:54:38] Checking for directory '/usr/lib/.libigno' [ Not found ] [19:54:38] Checking for directory '/usr/lib/.libigno/.igno' [ Not found ] [19:54:38] ignoKit Rootkit [ Not found ] [19:54:38] [19:54:38] Checking for IntoXonia-NG Rootkit... [19:54:38] Checking for kernel symbol 'funces' [ Not found ] [19:54:38] Checking for kernel symbol 'ixinit' [ Not found ] [19:54:38] Checking for kernel symbol 'tricks' [ Not found ] [19:54:38] Checking for kernel symbol 'kernel_unlink' [ Not found ] [19:54:38] Checking for kernel symbol 'rootme' [ Not found ] [19:54:38] Checking for kernel symbol 'hide_module' [ Not found ] [19:54:38] Checking for kernel symbol 'find_sys_call_tbl' [ Not found ] [19:54:38] IntoXonia-NG Rootkit [ Not found ] [19:54:38] [19:54:38] Checking for Irix Rootkit... [19:54:38] Checking for directory '/dev/pts/01' [ Not found ] [19:54:38] Checking for directory '/dev/pts/01/backup' [ Not found ] [19:54:38] Checking for directory '/dev/pts/01/etc' [ Not found ] [19:54:38] Checking for directory '/dev/pts/01/tmp' [ Not found ] [19:54:38] Irix Rootkit [ Not found ] [19:54:38] [19:54:38] Checking for Jynx Rootkit... [19:54:38] Checking for file '/xochikit/bc' [ Not found ] [19:54:38] Checking for file '/xochikit/ld_poison.so' [ Not found ] [19:54:38] Checking for file '/omgxochi/bc' [ Not found ] [19:54:38] Checking for file '/omgxochi/ld_poison.so' [ Not found ] [19:54:38] Checking for file '/var/local/^^/bc' [ Not found ] [19:54:38] Checking for file '/var/local/^^/ld_poison.so' [ Not found ] [19:54:38] Checking for directory '/xochikit' [ Not found ] [19:54:38] Checking for directory '/omgxochi' [ Not found ] [19:54:38] Checking for directory '/var/local/^^' [ Not found ] [19:54:38] Jynx Rootkit [ Not found ] [19:54:38] [19:54:38] Checking for Jynx2 Rootkit... [19:54:38] Checking for file '/XxJynx/reality.so' [ Not found ] [19:54:38] Checking for directory '/XxJynx' [ Not found ] [19:54:38] Jynx2 Rootkit [ Not found ] [19:54:38] [19:54:38] Checking for KBeast Rootkit... [19:54:38] Checking for file '/usr/_h4x_/ipsecs-kbeast-v1.ko' [ Not found ] [19:54:38] Checking for file '/usr/_h4x_/_h4x_bd' [ Not found ] [19:54:38] Checking for file '/usr/_h4x_/acctlog' [ Not found ] [19:54:38] Checking for directory '/usr/_h4x_' [ Not found ] [19:54:38] Checking for kernel symbol 'h4x_delete_module' [ Not found ] [19:54:39] Checking for kernel symbol 'h4x_getdents64' [ Not found ] [19:54:39] Checking for kernel symbol 'h4x_kill' [ Not found ] [19:54:39] Checking for kernel symbol 'h4x_open' [ Not found ] [19:54:39] Checking for kernel symbol 'h4x_read' [ Not found ] [19:54:39] Checking for kernel symbol 'h4x_rename' [ Not found ] [19:54:39] Checking for kernel symbol 'h4x_rmdir' [ Not found ] [19:54:39] Checking for kernel symbol 'h4x_tcp4_seq_show' [ Not found ] [19:54:39] Checking for kernel symbol 'h4x_write' [ Not found ] [19:54:39] KBeast Rootkit [ Not found ] [19:54:39] [19:54:39] Checking for Kitko Rootkit... [19:54:39] Checking for directory '/usr/src/redhat/SRPMS/...' [ Not found ] [19:54:39] Kitko Rootkit [ Not found ] [19:54:39] [19:54:39] Checking for Knark Rootkit... [19:54:39] Checking for file '/proc/knark/pids' [ Not found ] [19:54:39] Checking for directory '/proc/knark' [ Not found ] [19:54:39] Knark Rootkit [ Not found ] [19:54:39] [19:54:39] Checking for ld-linuxv.so Rootkit... [19:54:39] Checking for file '/lib/ld-linuxv.so.1' [ Not found ] [19:54:39] Checking for directory '/var/opt/_so_cache' [ Not found ] [19:54:39] Checking for directory '/var/opt/_so_cache/ld' [ Not found ] [19:54:39] Checking for directory '/var/opt/_so_cache/lc' [ Not found ] [19:54:39] ld-linuxv.so Rootkit [ Not found ] [19:54:39] [19:54:39] Checking for Li0n Worm... [19:54:39] Checking for file '/bin/in.telnetd' [ Not found ] [19:54:39] Checking for file '/bin/mjy' [ Not found ] [19:54:39] Checking for file '/usr/man/man1/man1/lib/.lib/mjy' [ Not found ] [19:54:39] Checking for file '/usr/man/man1/man1/lib/.lib/in.telnetd' [ Not found ] [19:54:39] Checking for file '/usr/man/man1/man1/lib/.lib/.x' [ Not found ] [19:54:39] Checking for file '/dev/.lib/lib/scan/1i0n.sh' [ Not found ] [19:54:39] Checking for file '/dev/.lib/lib/scan/hack.sh' [ Not found ] [19:54:39] Checking for file '/dev/.lib/lib/scan/bind' [ Not found ] [19:54:39] Checking for file '/dev/.lib/lib/scan/randb' [ Not found ] [19:54:39] Checking for file '/dev/.lib/lib/scan/scan.sh' [ Not found ] [19:54:39] Checking for file '/dev/.lib/lib/scan/pscan' [ Not found ] [19:54:39] Checking for file '/dev/.lib/lib/scan/star.sh' [ Not found ] [19:54:39] Checking for file '/dev/.lib/lib/scan/bindx.sh' [ Not found ] [19:54:39] Checking for file '/dev/.lib/lib/scan/bindname.log' [ Not found ] [19:54:39] Checking for file '/dev/.lib/lib/1i0n.sh' [ Not found ] [19:54:39] Checking for file '/dev/.lib/lib/lib/netstat' [ Not found ] [19:54:39] Checking for file '/dev/.lib/lib/lib/dev/.1addr' [ Not found ] [19:54:39] Checking for file '/dev/.lib/lib/lib/dev/.1logz' [ Not found ] [19:54:40] Checking for file '/dev/.lib/lib/lib/dev/.1proc' [ Not found ] [19:54:40] Checking for file '/dev/.lib/lib/lib/dev/.1file' [ Not found ] [19:54:40] Li0n Worm [ Not found ] [19:54:40] [19:54:40] Checking for Lockit / LJK2 Rootkit... [19:54:40] Checking for file '/usr/lib/libmen.oo/.LJK2/ssh_config' [ Not found ] [19:54:40] Checking for file '/usr/lib/libmen.oo/.LJK2/ssh_host_key' [ Not found ] [19:54:40] Checking for file '/usr/lib/libmen.oo/.LJK2/ssh_host_key.pub' [ Not found ] [19:54:40] Checking for file '/usr/lib/libmen.oo/.LJK2/ssh_random_seed*' [ Not found ] [19:54:40] Checking for file '/usr/lib/libmen.oo/.LJK2/sshd_config' [ Not found ] [19:54:40] Checking for file '/usr/lib/libmen.oo/.LJK2/backdoor/RK1bd' [ Not found ] [19:54:40] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/du' [ Not found ] [19:54:40] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/ifconfig' [ Not found ] [19:54:40] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/inetd.conf' [ Not found ] [19:54:40] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/locate' [ Not found ] [19:54:40] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/login' [ Not found ] [19:54:40] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/ls' [ Not found ] [19:54:40] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/netstat' [ Not found ] [19:54:40] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/ps' [ Not found ] [19:54:40] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/pstree' [ Not found ] [19:54:40] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/rc.sysinit' [ Not found ] [19:54:40] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/syslogd' [ Not found ] [19:54:40] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/tcpd' [ Not found ] [19:54:40] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/top' [ Not found ] [19:54:40] Checking for file '/usr/lib/libmen.oo/.LJK2/clean/RK1sauber' [ Not found ] [19:54:40] Checking for file '/usr/lib/libmen.oo/.LJK2/clean/RK1wted' [ Not found ] [19:54:40] Checking for file '/usr/lib/libmen.oo/.LJK2/hack/RK1parse' [ Not found ] [19:54:40] Checking for file '/usr/lib/libmen.oo/.LJK2/hack/RK1sniff' [ Not found ] [19:54:40] Checking for file '/usr/lib/libmen.oo/.LJK2/hide/.RK1addr' [ Not found ] [19:54:40] Checking for file '/usr/lib/libmen.oo/.LJK2/hide/.RK1dir' [ Not found ] [19:54:40] Checking for file '/usr/lib/libmen.oo/.LJK2/hide/.RK1log' [ Not found ] [19:54:40] Checking for file '/usr/lib/libmen.oo/.LJK2/hide/.RK1proc' [ Not found ] [19:54:40] Checking for file '/usr/lib/libmen.oo/.LJK2/hide/RK1phidemod.c' [ Not found ] [19:54:40] Checking for file '/usr/lib/libmen.oo/.LJK2/modules/README.modules' [ Not found ] [19:54:40] Checking for file '/usr/lib/libmen.oo/.LJK2/modules/RK1hidem.c' [ Not found ] [19:54:40] Checking for file '/usr/lib/libmen.oo/.LJK2/modules/RK1phide' [ Not found ] [19:54:40] Checking for file '/usr/lib/libmen.oo/.LJK2/sshconfig/RK1ssh' [ Not found ] [19:54:40] Checking for directory '/usr/lib/libmen.oo/.LJK2' [ Not found ] [19:54:40] Lockit / LJK2 Rootkit [ Not found ] [19:54:40] [19:54:40] Checking for Mokes backdoor... [19:54:40] Checking for file '/tmp/ss0-[0-9][0-9][0-9][0-9][0-9][0-9]-[0-9][0-9][0-9][0-9][0-9][0-9]-[0-9][0-9][0-9].sst' [ Not found ] [19:54:40] Checking for file '/tmp/aa0-[0-9][0-9][0-9][0-9][0-9][0-9]-[0-9][0-9][0-9][0-9][0-9][0-9]-[0-9][0-9][0-9].aat' [ Not found ] [19:54:40] Checking for file '/tmp/kk0-[0-9][0-9][0-9][0-9][0-9][0-9]-[0-9][0-9][0-9][0-9][0-9][0-9]-[0-9][0-9][0-9].kkt' [ Not found ] [19:54:40] Checking for file '/tmp/dd0-[0-9][0-9][0-9][0-9][0-9][0-9]-[0-9][0-9][0-9][0-9][0-9][0-9]-[0-9][0-9][0-9].ddt' [ Not found ] [19:54:40] Mokes backdoor [ Not found ] [19:54:40] [19:54:40] Checking for Mood-NT Rootkit... [19:54:40] Checking for file '/sbin/init__mood-nt-_-_cthulhu' [ Not found ] [19:54:40] Checking for file '/_cthulhu/mood-nt.init' [ Not found ] [19:54:40] Checking for file '/_cthulhu/mood-nt.conf' [ Not found ] [19:54:40] Checking for file '/_cthulhu/mood-nt.sniff' [ Not found ] [19:54:40] Checking for directory '/_cthulhu' [ Not found ] [19:54:40] Mood-NT Rootkit [ Not found ] [19:54:40] [19:54:40] Checking for MRK Rootkit... [19:54:40] Checking for file '/dev/ida/.inet/pid' [ Not found ] [19:54:40] Checking for file '/dev/ida/.inet/ssh_host_key' [ Not found ] [19:54:40] Checking for file '/dev/ida/.inet/ssh_random_seed' [ Not found ] [19:54:40] Checking for file '/dev/ida/.inet/tcp.log' [ Not found ] [19:54:41] Checking for directory '/dev/ida/.inet' [ Not found ] [19:54:41] Checking for directory '/var/spool/cron/.sh' [ Not found ] [19:54:41] MRK Rootkit [ Not found ] [19:54:41] [19:54:41] Checking for Ni0 Rootkit... [19:54:41] Checking for file '/var/lock/subsys/...datafile.../...net...' [ Not found ] [19:54:41] Checking for file '/var/lock/subsys/...datafile.../...port...' [ Not found ] [19:54:41] Checking for file '/var/lock/subsys/...datafile.../...ps...' [ Not found ] [19:54:41] Checking for file '/var/lock/subsys/...datafile.../...file...' [ Not found ] [19:54:41] Checking for directory '/tmp/waza' [ Not found ] [19:54:41] Checking for directory '/var/lock/subsys/...datafile...' [ Not found ] [19:54:41] Checking for directory '/usr/sbin/es' [ Not found ] [19:54:41] Ni0 Rootkit [ Not found ] [19:54:41] [19:54:41] Checking for Ohhara Rootkit... [19:54:41] Checking for file '/var/lock/subsys/...datafile.../...datafile.../in.smbd.log' [ Not found ] [19:54:41] Checking for directory '/var/lock/subsys/...datafile...' [ Not found ] [19:54:41] Checking for directory '/var/lock/subsys/...datafile.../...datafile...' [ Not found ] [19:54:41] Checking for directory '/var/lock/subsys/...datafile.../...datafile.../bin' [ Not found ] [19:54:41] Checking for directory '/var/lock/subsys/...datafile.../...datafile.../usr/bin' [ Not found ] [19:54:41] Checking for directory '/var/lock/subsys/...datafile.../...datafile.../usr/sbin' [ Not found ] [19:54:41] Checking for directory '/var/lock/subsys/...datafile.../...datafile.../lib/security' [ Not found ] [19:54:41] Ohhara Rootkit [ Not found ] [19:54:41] [19:54:41] Checking for Optic Kit (Tux) Worm... [19:54:41] Checking for directory '/dev/tux' [ Not found ] [19:54:41] Checking for directory '/usr/bin/xchk' [ Not found ] [19:54:41] Checking for directory '/usr/bin/xsf' [ Not found ] [19:54:41] Checking for directory '/usr/bin/ssh2d' [ Not found ] [19:54:41] Optic Kit (Tux) Worm [ Not found ] [19:54:41] [19:54:41] Checking for Oz Rootkit... [19:54:41] Checking for file '/dev/.oz/.nap/rkit/terror' [ Not found ] [19:54:41] Checking for directory '/dev/.oz' [ Not found ] [19:54:41] Oz Rootkit [ Not found ] [19:54:41] [19:54:41] Checking for Phalanx Rootkit... [19:54:41] Checking for file '/uNFuNF' [ Not found ] [19:54:41] Checking for file '/etc/host.ph1' [ Not found ] [19:54:41] Checking for file '/bin/host.ph1' [ Not found ] [19:54:41] Checking for file '/usr/share/.home.ph1/phalanx' [ Not found ] [19:54:41] Checking for file '/usr/share/.home.ph1/cb' [ Not found ] [19:54:41] Checking for file '/usr/share/.home.ph1/kebab' [ Not found ] [19:54:41] Checking for directory '/usr/share/.home.ph1' [ Not found ] [19:54:41] Checking for directory '/usr/share/.home.ph1/tty' [ Not found ] [19:54:41] Phalanx Rootkit [ Not found ] [19:54:41] [19:54:41] Checking for Phalanx2 Rootkit... [19:54:41] Checking for file '/etc/khubd.p2/.p2rc' [ Not found ] [19:54:41] Checking for file '/etc/khubd.p2/.phalanx2' [ Not found ] [19:54:41] Checking for file '/etc/khubd.p2/.sniff' [ Not found ] [19:54:41] Checking for file '/etc/khubd.p2/sshgrab.py' [ Not found ] [19:54:41] Checking for file '/etc/lolzz.p2/.p2rc' [ Not found ] [19:54:41] Checking for file '/etc/lolzz.p2/.phalanx2' [ Not found ] [19:54:41] Checking for file '/etc/lolzz.p2/.sniff' [ Not found ] [19:54:41] Checking for file '/etc/lolzz.p2/sshgrab.py' [ Not found ] [19:54:41] Checking for file '/etc/cron.d/zupzzplaceholder' [ Not found ] [19:54:41] Checking for file '/usr/lib/zupzz.p2/.p-2.3d' [ Not found ] [19:54:41] Checking for file '/usr/lib/zupzz.p2/.p2rc' [ Not found ] [19:54:41] Checking for directory '/etc/khubd.p2' [ Not found ] [19:54:41] Checking for directory '/etc/lolzz.p2' [ Not found ] [19:54:41] Checking for directory '/usr/lib/zupzz.p2' [ Not found ] [19:54:42] Phalanx2 Rootkit [ Not found ] [19:54:42] [19:54:42] Checking for Phalanx2 Rootkit (extended tests)... [19:54:42] Checking for directory '/etc/khubd.p2' [ Not found ] [19:54:42] Checking for directory '/etc/lolzz.p2' [ Not found ] [19:54:42] Checking for directory '/usr/lib/zupzz.p2' [ Not found ] [19:54:42] Phalanx2 Rootkit (extended tests) [ Not found ] [19:54:42] [19:54:42] Checking for Portacelo Rootkit... [19:54:42] Checking for file '/var/lib/.../.ak' [ Not found ] [19:54:42] Checking for file '/var/lib/.../.hk' [ Not found ] [19:54:42] Checking for file '/var/lib/.../.rs' [ Not found ] [19:54:42] Checking for file '/var/lib/.../.p' [ Not found ] [19:54:42] Checking for file '/var/lib/.../getty' [ Not found ] [19:54:42] Checking for file '/var/lib/.../lkt.o' [ Not found ] [19:54:42] Checking for file '/var/lib/.../show' [ Not found ] [19:54:42] Checking for file '/var/lib/.../nlkt.o' [ Not found ] [19:54:42] Checking for file '/var/lib/.../ssshrc' [ Not found ] [19:54:42] Checking for file '/var/lib/.../sssh_equiv' [ Not found ] [19:54:42] Checking for file '/var/lib/.../sssh_known_hosts' [ Not found ] [19:54:42] Checking for file '/var/lib/.../sssh_pid' [ Not found ] [19:54:42] Checking for file '~/.sssh/known_hosts' [ Not found ] [19:54:42] Portacelo Rootkit [ Not found ] [19:54:42] [19:54:42] Checking for R3dstorm Toolkit... [19:54:42] Checking for file '/var/log/tk02/see_all' [ Not found ] [19:54:42] Checking for file '/var/log/tk02/.scris' [ Not found ] [19:54:42] Checking for file '/bin/.../sshd/sbin/sshd1' [ Not found ] [19:54:42] Checking for file '/bin/.../hate/sk' [ Not found ] [19:54:42] Checking for file '/bin/.../see_all' [ Not found ] [19:54:42] Checking for directory '/var/log/tk02' [ Not found ] [19:54:42] Checking for directory '/var/log/tk02/old' [ Not found ] [19:54:42] Checking for directory '/bin/...' [ Not found ] [19:54:42] R3dstorm Toolkit [ Not found ] [19:54:42] [19:54:42] Checking for RH-Sharpe's Rootkit... [19:54:42] Checking for file '/bin/lps' [ Not found ] [19:54:42] Checking for file '/usr/bin/lpstree' [ Not found ] [19:54:42] Checking for file '/usr/bin/ltop' [ Not found ] [19:54:42] Checking for file '/usr/bin/lkillall' [ Not found ] [19:54:42] Checking for file '/usr/bin/ldu' [ Not found ] [19:54:42] Checking for file '/usr/bin/lnetstat' [ Not found ] [19:54:42] Checking for file '/usr/bin/wp' [ Not found ] [19:54:42] Checking for file '/usr/bin/shad' [ Not found ] [19:54:42] Checking for file '/usr/bin/vadim' [ Not found ] [19:54:42] Checking for file '/usr/bin/slice' [ Not found ] [19:54:42] Checking for file '/usr/bin/cleaner' [ Not found ] [19:54:42] Checking for file '/usr/include/rpcsvc/du' [ Not found ] [19:54:42] RH-Sharpe's Rootkit [ Not found ] [19:54:42] [19:54:42] Checking for RSHA's Rootkit... [19:54:42] Checking for file '/bin/kr4p' [ Not found ] [19:54:42] Checking for file '/usr/bin/n3tstat' [ Not found ] [19:54:42] Checking for file '/usr/bin/chsh2' [ Not found ] [19:54:42] Checking for file '/usr/bin/slice2' [ Not found ] [19:54:42] Checking for file '/usr/src/linux/arch/alpha/lib/.lib/.1proc' [ Not found ] [19:54:42] Checking for file '/etc/rc.d/arch/alpha/lib/.lib/.1addr' [ Not found ] [19:54:42] Checking for directory '/etc/rc.d/rsha' [ Not found ] [19:54:42] Checking for directory '/etc/rc.d/arch/alpha/lib/.lib' [ Not found ] [19:54:42] RSHA's Rootkit [ Not found ] [19:54:43] [19:54:43] Checking for Scalper Worm... [19:54:43] Checking for file '/tmp/.a' [ Not found ] [19:54:43] Checking for file '/tmp/.uua' [ Not found ] [19:54:43] Scalper Worm [ Not found ] [19:54:43] [19:54:43] Checking for Sebek LKM... [19:54:43] Checking for kernel symbol 'adore or sebek' [ Not found ] [19:54:43] Sebek LKM [ Not found ] [19:54:43] [19:54:43] Checking for Shutdown Rootkit... [19:54:43] Checking for file '/usr/man/man5/.. /.dir/scannah/asus' [ Not found ] [19:54:43] Checking for file '/usr/man/man5/.. /.dir/see' [ Not found ] [19:54:43] Checking for file '/usr/man/man5/.. /.dir/nscd' [ Not found ] [19:54:43] Checking for file '/usr/man/man5/.. /.dir/alpd' [ Not found ] [19:54:43] Checking for file '/etc/rc.d/rc.local ' [ Not found ] [19:54:43] Checking for directory '/usr/man/man5/.. /.dir' [ Not found ] [19:54:43] Checking for directory '/usr/man/man5/.. /.dir/scannah' [ Not found ] [19:54:43] Checking for directory '/etc/rc.d/rc0.d/.. /.dir' [ Not found ] [19:54:43] Shutdown Rootkit [ Not found ] [19:54:43] [19:54:43] Checking for SHV4 Rootkit... [19:54:43] Checking for file '/etc/ld.so.hash' [ Not found ] [19:54:43] Checking for file '/lib/libext-2.so.7' [ Not found ] [19:54:43] Checking for file '/lib/lidps1.so' [ Not found ] [19:54:43] Checking for file '/lib/libproc.a' [ Not found ] [19:54:43] Checking for file '/lib/libproc.so.2.0.6' [ Not found ] [19:54:43] Checking for file '/lib/ldd.so/tks' [ Not found ] [19:54:43] Checking for file '/lib/ldd.so/tkp' [ Not found ] [19:54:43] Checking for file '/lib/ldd.so/tksb' [ Not found ] [19:54:43] Checking for file '/lib/security/.config/sshd' [ Not found ] [19:54:43] Checking for file '/lib/security/.config/ssh/ssh_host_key' [ Not found ] [19:54:43] Checking for file '/lib/security/.config/ssh/ssh_host_key.pub' [ Not found ] [19:54:43] Checking for file '/lib/security/.config/ssh/ssh_random_seed' [ Not found ] [19:54:43] Checking for file '/usr/include/file.h' [ Not found ] [19:54:43] Checking for file '/usr/include/hosts.h' [ Not found ] [19:54:43] Checking for file '/usr/include/lidps1.so' [ Not found ] [19:54:43] Checking for file '/usr/include/log.h' [ Not found ] [19:54:43] Checking for file '/usr/include/proc.h' [ Not found ] [19:54:43] Checking for file '/usr/sbin/xntps' [ Not found ] [19:54:43] Checking for file '/dev/srd0' [ Not found ] [19:54:43] Checking for directory '/lib/ldd.so' [ Not found ] [19:54:43] Checking for directory '/lib/security/.config' [ Not found ] [19:54:43] Checking for directory '/lib/security/.config/ssh' [ Not found ] [19:54:43] SHV4 Rootkit [ Not found ] [19:54:43] [19:54:43] Checking for SHV5 Rootkit... [19:54:43] Checking for file '/etc/sh.conf' [ Not found ] [19:54:43] Checking for file '/lib/libproc.a' [ Not found ] [19:54:43] Checking for file '/lib/libproc.so.2.0.6' [ Not found ] [19:54:43] Checking for file '/lib/lidps1.so' [ Not found ] [19:54:43] Checking for file '/lib/libsh.so/bash' [ Not found ] [19:54:43] Checking for file '/usr/include/file.h' [ Not found ] [19:54:43] Checking for file '/usr/include/hosts.h' [ Not found ] [19:54:43] Checking for file '/usr/include/log.h' [ Not found ] [19:54:43] Checking for file '/usr/include/proc.h' [ Not found ] [19:54:43] Checking for file '/lib/libsh.so/shdcf2' [ Not found ] [19:54:43] Checking for file '/lib/libsh.so/shhk' [ Not found ] [19:54:43] Checking for file '/lib/libsh.so/shhk.pub' [ Not found ] [19:54:44] Checking for file '/lib/libsh.so/shrs' [ Not found ] [19:54:44] Checking for file '/usr/lib/libsh/.bashrc' [ Not found ] [19:54:44] Checking for file '/usr/lib/libsh/shsb' [ Not found ] [19:54:44] Checking for file '/usr/lib/libsh/hide' [ Not found ] [19:54:44] Checking for file '/usr/lib/libsh/.sniff/shsniff' [ Not found ] [19:54:44] Checking for file '/usr/lib/libsh/.sniff/shp' [ Not found ] [19:54:44] Checking for file '/dev/srd0' [ Not found ] [19:54:44] Checking for directory '/lib/libsh.so' [ Not found ] [19:54:44] Checking for directory '/usr/lib/libsh' [ Not found ] [19:54:44] Checking for directory '/usr/lib/libsh/utilz' [ Not found ] [19:54:44] Checking for directory '/usr/lib/libsh/.backup' [ Not found ] [19:54:44] SHV5 Rootkit [ Not found ] [19:54:44] [19:54:44] Checking for Sin Rootkit... [19:54:44] Checking for file '/dev/.haos/haos1/.f/Denyed' [ Not found ] [19:54:44] Checking for file '/dev/ttyoa' [ Not found ] [19:54:44] Checking for file '/dev/ttyof' [ Not found ] [19:54:44] Checking for file '/dev/ttyop' [ Not found ] [19:54:44] Checking for file '/dev/ttyos' [ Not found ] [19:54:44] Checking for file '/usr/lib/.lib' [ Not found ] [19:54:44] Checking for file '/usr/lib/sn/.X' [ Not found ] [19:54:44] Checking for file '/usr/lib/sn/.sys' [ Not found ] [19:54:44] Checking for file '/usr/lib/ld/.X' [ Not found ] [19:54:44] Checking for file '/usr/man/man1/...' [ Not found ] [19:54:44] Checking for file '/usr/man/man1/.../.m' [ Not found ] [19:54:44] Checking for file '/usr/man/man1/.../.w' [ Not found ] [19:54:44] Checking for directory '/usr/lib/sn' [ Not found ] [19:54:44] Checking for directory '/usr/lib/man1/...' [ Not found ] [19:54:44] Checking for directory '/dev/.haos' [ Not found ] [19:54:44] Sin Rootkit [ Not found ] [19:54:44] [19:54:44] Checking for Slapper Worm... [19:54:44] Checking for file '/tmp/.bugtraq' [ Not found ] [19:54:44] Checking for file '/tmp/.uubugtraq' [ Not found ] [19:54:44] Checking for file '/tmp/.bugtraq.c' [ Not found ] [19:54:44] Checking for file '/tmp/httpd' [ Not found ] [19:54:44] Checking for file '/tmp/.unlock' [ Not found ] [19:54:44] Checking for file '/tmp/update' [ Not found ] [19:54:44] Checking for file '/tmp/.cinik' [ Not found ] [19:54:44] Checking for file '/tmp/.b' [ Not found ] [19:54:44] Slapper Worm [ Not found ] [19:54:44] [19:54:44] Checking for Sneakin Rootkit... [19:54:44] Checking for directory '/tmp/.X11-unix/.../rk' [ Not found ] [19:54:44] Sneakin Rootkit [ Not found ] [19:54:44] [19:54:44] Checking for 'Spanish' Rootkit... [19:54:44] Checking for file '/dev/ptyq' [ Not found ] [19:54:44] Checking for file '/bin/ad' [ Not found ] [19:54:44] Checking for file '/bin/ava' [ Not found ] [19:54:44] Checking for file '/bin/server' [ Not found ] [19:54:44] Checking for file '/usr/sbin/rescue' [ Not found ] [19:54:44] Checking for file '/usr/share/.../chrps' [ Not found ] [19:54:44] Checking for file '/usr/share/.../chrifconfig' [ Not found ] [19:54:44] Checking for file '/usr/share/.../netstat' [ Not found ] [19:54:44] Checking for file '/usr/share/.../linsniffer' [ Not found ] [19:54:44] Checking for file '/usr/share/.../charbd' [ Not found ] [19:54:44] Checking for file '/usr/share/.../charbd2' [ Not found ] [19:54:44] Checking for file '/usr/share/.../charbd3' [ Not found ] [19:54:45] Checking for file '/usr/share/.../charbd4' [ Not found ] [19:54:45] Checking for file '/usr/man/tmp/update.tgz' [ Not found ] [19:54:45] Checking for file '/var/lib/rpm/db.rpm' [ Not found ] [19:54:45] Checking for file '/var/cache/man/.cat' [ Not found ] [19:54:45] Checking for file '/var/spool/lpd/remote/.lpq' [ Not found ] [19:54:45] Checking for directory '/usr/share/...' [ Not found ] [19:54:45] 'Spanish' Rootkit [ Not found ] [19:54:45] [19:54:45] Checking for Suckit Rootkit... [19:54:45] Checking for file '/sbin/initsk12' [ Not found ] [19:54:45] Checking for file '/sbin/initxrk' [ Not found ] [19:54:45] Checking for file '/usr/bin/null' [ Not found ] [19:54:45] Checking for file '/usr/share/locale/sk/.sk12/sk' [ Not found ] [19:54:45] Checking for file '/etc/rc.d/rc0.d/S23kmdac' [ Not found ] [19:54:45] Checking for file '/etc/rc.d/rc1.d/S23kmdac' [ Not found ] [19:54:45] Checking for file '/etc/rc.d/rc2.d/S23kmdac' [ Not found ] [19:54:45] Checking for file '/etc/rc.d/rc3.d/S23kmdac' [ Not found ] [19:54:45] Checking for file '/etc/rc.d/rc4.d/S23kmdac' [ Not found ] [19:54:45] Checking for file '/etc/rc.d/rc5.d/S23kmdac' [ Not found ] [19:54:45] Checking for file '/etc/rc.d/rc6.d/S23kmdac' [ Not found ] [19:54:45] Checking for directory '/dev/sdhu0/tehdrakg' [ Not found ] [19:54:45] Checking for directory '/etc/.MG' [ Not found ] [19:54:45] Checking for directory '/usr/share/locale/sk/.sk12' [ Not found ] [19:54:45] Checking for directory '/usr/lib/perl5/site_perl/i386-linux/auto/TimeDate/.packlist' [ Not found ] [19:54:45] Suckit Rootkit [ Not found ] [19:54:45] [19:54:45] Checking for Superkit Rootkit... [19:54:45] Checking for file '/usr/man/.sman/sk/backsh' [ Not found ] [19:54:45] Checking for file '/usr/man/.sman/sk/izbtrag' [ Not found ] [19:54:45] Checking for file '/usr/man/.sman/sk/sksniff' [ Not found ] [19:54:45] Checking for file '/var/www/cgi-bin/cgiback.cgi' [ Not found ] [19:54:45] Checking for directory '/usr/man/.sman/sk' [ Not found ] [19:54:45] Superkit Rootkit [ Not found ] [19:54:45] [19:54:45] Checking for TBD (Telnet BackDoor)... [19:54:45] Checking for file '/usr/lib/.tbd' [ Not found ] [19:54:45] TBD (Telnet BackDoor) [ Not found ] [19:54:45] [19:54:45] Checking for TeLeKiT Rootkit... [19:54:45] Checking for file '/usr/man/man3/.../TeLeKiT/bin/sniff' [ Not found ] [19:54:45] Checking for file '/usr/man/man3/.../TeLeKiT/bin/telnetd' [ Not found ] [19:54:45] Checking for file '/usr/man/man3/.../TeLeKiT/bin/teleulo' [ Not found ] [19:54:45] Checking for file '/usr/man/man3/.../cl' [ Not found ] [19:54:45] Checking for file '/dev/ptyr' [ Not found ] [19:54:45] Checking for file '/dev/ptyp' [ Not found ] [19:54:45] Checking for file '/dev/ptyq' [ Not found ] [19:54:45] Checking for file '/dev/hda06' [ Not found ] [19:54:45] Checking for file '/usr/info/libc1.so' [ Not found ] [19:54:45] Checking for directory '/usr/man/man3/...' [ Not found ] [19:54:45] Checking for directory '/usr/man/man3/.../lsniff' [ Not found ] [19:54:45] Checking for directory '/usr/man/man3/.../TeLeKiT' [ Not found ] [19:54:45] TeLeKiT Rootkit [ Not found ] [19:54:45] [19:54:45] Checking for T0rn Rootkit... [19:54:45] Checking for file '/dev/.lib/lib/lib/t0rns' [ Not found ] [19:54:45] Checking for file '/dev/.lib/lib/lib/du' [ Not found ] [19:54:45] Checking for file '/dev/.lib/lib/lib/ls' [ Not found ] [19:54:45] Checking for file '/dev/.lib/lib/lib/t0rnsb' [ Not found ] [19:54:45] Checking for file '/dev/.lib/lib/lib/ps' [ Not found ] [19:54:45] Checking for file '/dev/.lib/lib/lib/t0rnp' [ Not found ] [19:54:45] Checking for file '/dev/.lib/lib/lib/find' [ Not found ] [19:54:46] Checking for file '/dev/.lib/lib/lib/ifconfig' [ Not found ] [19:54:46] Checking for file '/dev/.lib/lib/lib/pg' [ Not found ] [19:54:46] Checking for file '/dev/.lib/lib/lib/ssh.tgz' [ Not found ] [19:54:46] Checking for file '/dev/.lib/lib/lib/top' [ Not found ] [19:54:46] Checking for file '/dev/.lib/lib/lib/sz' [ Not found ] [19:54:46] Checking for file '/dev/.lib/lib/lib/login' [ Not found ] [19:54:46] Checking for file '/dev/.lib/lib/lib/in.fingerd' [ Not found ] [19:54:46] Checking for file '/dev/.lib/lib/lib/1i0n.sh' [ Not found ] [19:54:46] Checking for file '/dev/.lib/lib/lib/pstree' [ Not found ] [19:54:46] Checking for file '/dev/.lib/lib/lib/in.telnetd' [ Not found ] [19:54:46] Checking for file '/dev/.lib/lib/lib/mjy' [ Not found ] [19:54:46] Checking for file '/dev/.lib/lib/lib/sush' [ Not found ] [19:54:46] Checking for file '/dev/.lib/lib/lib/tfn' [ Not found ] [19:54:46] Checking for file '/dev/.lib/lib/lib/name' [ Not found ] [19:54:46] Checking for file '/dev/.lib/lib/lib/getip.sh' [ Not found ] [19:54:46] Checking for file '/usr/info/.torn/sh*' [ Not found ] [19:54:46] Checking for file '/usr/src/.puta/.1addr' [ Not found ] [19:54:46] Checking for file '/usr/src/.puta/.1file' [ Not found ] [19:54:46] Checking for file '/usr/src/.puta/.1proc' [ Not found ] [19:54:46] Checking for file '/usr/src/.puta/.1logz' [ Not found ] [19:54:46] Checking for file '/usr/info/.t0rn' [ Not found ] [19:54:46] Checking for directory '/dev/.lib' [ Not found ] [19:54:46] Checking for directory '/dev/.lib/lib' [ Not found ] [19:54:46] Checking for directory '/dev/.lib/lib/lib' [ Not found ] [19:54:46] Checking for directory '/dev/.lib/lib/lib/dev' [ Not found ] [19:54:46] Checking for directory '/dev/.lib/lib/scan' [ Not found ] [19:54:46] Checking for directory '/usr/src/.puta' [ Not found ] [19:54:46] Checking for directory '/usr/man/man1/man1' [ Not found ] [19:54:46] Checking for directory '/usr/man/man1/man1/lib' [ Not found ] [19:54:46] Checking for directory '/usr/man/man1/man1/lib/.lib' [ Not found ] [19:54:46] Checking for directory '/usr/man/man1/man1/lib/.lib/.backup' [ Not found ] [19:54:46] T0rn Rootkit [ Not found ] [19:54:46] [19:54:46] Checking for trNkit Rootkit... [19:54:46] Checking for file '/usr/lib/libbins.la' [ Not found ] [19:54:46] Checking for file '/usr/lib/libtcs.so' [ Not found ] [19:54:46] Checking for file '/dev/.ttpy/ulogin.sh' [ Not found ] [19:54:46] Checking for file '/dev/.ttpy/tcpshell.sh' [ Not found ] [19:54:46] Checking for file '/dev/.ttpy/bupdu' [ Not found ] [19:54:46] Checking for file '/dev/.ttpy/buloc' [ Not found ] [19:54:46] Checking for file '/dev/.ttpy/buloc1' [ Not found ] [19:54:46] Checking for file '/dev/.ttpy/buloc2' [ Not found ] [19:54:46] Checking for file '/dev/.ttpy/stat' [ Not found ] [19:54:46] Checking for file '/dev/.ttpy/backps' [ Not found ] [19:54:46] Checking for file '/dev/.ttpy/tree' [ Not found ] [19:54:46] Checking for file '/dev/.ttpy/topk' [ Not found ] [19:54:46] Checking for file '/dev/.ttpy/wold' [ Not found ] [19:54:46] Checking for file '/dev/.ttpy/whoold' [ Not found ] [19:54:46] Checking for file '/dev/.ttpy/backdoors' [ Not found ] [19:54:46] trNkit Rootkit [ Not found ] [19:54:46] [19:54:46] Checking for Trojanit Kit... [19:54:46] Checking for file '/bin/.ls' [ Not found ] [19:54:46] Checking for file '/bin/.ps' [ Not found ] [19:54:46] Checking for file '/bin/.netstat' [ Not found ] [19:54:46] Checking for file '/usr/bin/.nop' [ Not found ] [19:54:46] Checking for file '/usr/bin/.who' [ Not found ] [19:54:46] Trojanit Kit [ Not found ] [19:54:47] [19:54:47] Checking for Tuxtendo Rootkit... [19:54:47] Checking for file '/lib/libproc.so.2.0.7' [ Not found ] [19:54:47] Checking for file '/usr/bin/xchk' [ Not found ] [19:54:47] Checking for file '/usr/bin/xsf' [ Not found ] [19:54:47] Checking for file '/dev/tux/suidsh' [ Not found ] [19:54:47] Checking for file '/dev/tux/.addr' [ Not found ] [19:54:47] Checking for file '/dev/tux/.cron' [ Not found ] [19:54:47] Checking for file '/dev/tux/.file' [ Not found ] [19:54:47] Checking for file '/dev/tux/.log' [ Not found ] [19:54:47] Checking for file '/dev/tux/.proc' [ Not found ] [19:54:47] Checking for file '/dev/tux/.iface' [ Not found ] [19:54:47] Checking for file '/dev/tux/.pw' [ Not found ] [19:54:47] Checking for file '/dev/tux/.df' [ Not found ] [19:54:47] Checking for file '/dev/tux/.ssh' [ Not found ] [19:54:47] Checking for file '/dev/tux/.tux' [ Not found ] [19:54:47] Checking for file '/dev/tux/ssh2/sshd2_config' [ Not found ] [19:54:47] Checking for file '/dev/tux/ssh2/hostkey' [ Not found ] [19:54:47] Checking for file '/dev/tux/ssh2/hostkey.pub' [ Not found ] [19:54:47] Checking for file '/dev/tux/ssh2/logo' [ Not found ] [19:54:47] Checking for file '/dev/tux/ssh2/random_seed' [ Not found ] [19:54:47] Checking for file '/dev/tux/backup/crontab' [ Not found ] [19:54:47] Checking for file '/dev/tux/backup/df' [ Not found ] [19:54:47] Checking for file '/dev/tux/backup/dir' [ Not found ] [19:54:47] Checking for file '/dev/tux/backup/find' [ Not found ] [19:54:47] Checking for file '/dev/tux/backup/ifconfig' [ Not found ] [19:54:47] Checking for file '/dev/tux/backup/locate' [ Not found ] [19:54:47] Checking for file '/dev/tux/backup/netstat' [ Not found ] [19:54:47] Checking for file '/dev/tux/backup/ps' [ Not found ] [19:54:47] Checking for file '/dev/tux/backup/pstree' [ Not found ] [19:54:47] Checking for file '/dev/tux/backup/syslogd' [ Not found ] [19:54:47] Checking for file '/dev/tux/backup/tcpd' [ Not found ] [19:54:47] Checking for file '/dev/tux/backup/top' [ Not found ] [19:54:47] Checking for file '/dev/tux/backup/updatedb' [ Not found ] [19:54:47] Checking for file '/dev/tux/backup/vdir' [ Not found ] [19:54:47] Checking for directory '/dev/tux' [ Not found ] [19:54:47] Checking for directory '/dev/tux/ssh2' [ Not found ] [19:54:47] Checking for directory '/dev/tux/backup' [ Not found ] [19:54:47] Tuxtendo Rootkit [ Not found ] [19:54:47] [19:54:47] Checking for URK Rootkit... [19:54:47] Checking for file '/dev/prom/sn.l' [ Not found ] [19:54:47] Checking for file '/usr/lib/ldlibps.so' [ Not found ] [19:54:47] Checking for file '/usr/lib/ldlibnet.so' [ Not found ] [19:54:47] Checking for file '/dev/pts/01/uconf.inv' [ Not found ] [19:54:47] Checking for file '/dev/pts/01/cleaner' [ Not found ] [19:54:47] Checking for file '/dev/pts/01/bin/psniff' [ Not found ] [19:54:47] Checking for file '/dev/pts/01/bin/du' [ Not found ] [19:54:47] Checking for file '/dev/pts/01/bin/ls' [ Not found ] [19:54:47] Checking for file '/dev/pts/01/bin/passwd' [ Not found ] [19:54:47] Checking for file '/dev/pts/01/bin/ps' [ Not found ] [19:54:47] Checking for file '/dev/pts/01/bin/psr' [ Not found ] [19:54:47] Checking for file '/dev/pts/01/bin/su' [ Not found ] [19:54:47] Checking for file '/dev/pts/01/bin/find' [ Not found ] [19:54:47] Checking for file '/dev/pts/01/bin/netstat' [ Not found ] [19:54:47] Checking for file '/dev/pts/01/bin/ping' [ Not found ] [19:54:47] Checking for file '/dev/pts/01/bin/strings' [ Not found ] [19:54:47] Checking for file '/dev/pts/01/bin/bash' [ Not found ] [19:54:48] Checking for file '/usr/man/man1/xxxxxxbin/du' [ Not found ] [19:54:48] Checking for file '/usr/man/man1/xxxxxxbin/ls' [ Not found ] [19:54:48] Checking for file '/usr/man/man1/xxxxxxbin/passwd' [ Not found ] [19:54:48] Checking for file '/usr/man/man1/xxxxxxbin/ps' [ Not found ] [19:54:48] Checking for file '/usr/man/man1/xxxxxxbin/psr' [ Not found ] [19:54:48] Checking for file '/usr/man/man1/xxxxxxbin/su' [ Not found ] [19:54:48] Checking for file '/usr/man/man1/xxxxxxbin/find' [ Not found ] [19:54:48] Checking for file '/usr/man/man1/xxxxxxbin/netstat' [ Not found ] [19:54:48] Checking for file '/usr/man/man1/xxxxxxbin/ping' [ Not found ] [19:54:48] Checking for file '/usr/man/man1/xxxxxxbin/strings' [ Not found ] [19:54:48] Checking for file '/usr/man/man1/xxxxxxbin/bash' [ Not found ] [19:54:48] Checking for file '/tmp/conf.inv' [ Not found ] [19:54:48] Checking for directory '/dev/prom' [ Not found ] [19:54:48] Checking for directory '/dev/pts/01' [ Not found ] [19:54:48] Checking for directory '/dev/pts/01/bin' [ Not found ] [19:54:48] Checking for directory '/usr/man/man1/xxxxxxbin' [ Not found ] [19:54:48] URK Rootkit [ Not found ] [19:54:48] [19:54:48] Checking for Vampire Rootkit... [19:54:48] Checking for kernel symbol 'new_getdents' [ Not found ] [19:54:48] Checking for kernel symbol 'old_getdents' [ Not found ] [19:54:48] Checking for kernel symbol 'should_hide_file_name' [ Not found ] [19:54:48] Checking for kernel symbol 'should_hide_task_name' [ Not found ] [19:54:48] Vampire Rootkit [ Not found ] [19:54:48] [19:54:48] Checking for VcKit Rootkit... [19:54:48] Checking for directory '/usr/include/linux/modules/lib.so' [ Not found ] [19:54:48] Checking for directory '/usr/include/linux/modules/lib.so/bin' [ Not found ] [19:54:48] VcKit Rootkit [ Not found ] [19:54:48] [19:54:48] Checking for Volc Rootkit... [19:54:48] Checking for file '/usr/bin/volc' [ Not found ] [19:54:48] Checking for file '/usr/lib/volc/backdoor/divine' [ Not found ] [19:54:48] Checking for file '/usr/lib/volc/linsniff' [ Not found ] [19:54:48] Checking for file '/etc/rc.d/rc1.d/S25sysconf' [ Not found ] [19:54:48] Checking for file '/etc/rc.d/rc2.d/S25sysconf' [ Not found ] [19:54:48] Checking for file '/etc/rc.d/rc3.d/S25sysconf' [ Not found ] [19:54:48] Checking for file '/etc/rc.d/rc4.d/S25sysconf' [ Not found ] [19:54:48] Checking for file '/etc/rc.d/rc5.d/S25sysconf' [ Not found ] [19:54:48] Checking for directory '/var/spool/.recent' [ Not found ] [19:54:48] Checking for directory '/var/spool/.recent/.files' [ Not found ] [19:54:48] Checking for directory '/usr/lib/volc' [ Not found ] [19:54:48] Checking for directory '/usr/lib/volc/backup' [ Not found ] [19:54:48] Volc Rootkit [ Not found ] [19:54:48] [19:54:48] Checking for Xzibit Rootkit... [19:54:48] Checking for file '/dev/dsx' [ Not found ] [19:54:48] Checking for file '/dev/caca' [ Not found ] [19:54:48] Checking for file '/dev/ida/.inet/linsniffer' [ Not found ] [19:54:48] Checking for file '/dev/ida/.inet/logclear' [ Not found ] [19:54:48] Checking for file '/dev/ida/.inet/sense' [ Not found ] [19:54:48] Checking for file '/dev/ida/.inet/sl2' [ Not found ] [19:54:48] Checking for file '/dev/ida/.inet/sshdu' [ Not found ] [19:54:49] Checking for file '/dev/ida/.inet/s' [ Not found ] [19:54:49] Checking for file '/dev/ida/.inet/ssh_host_key' [ Not found ] [19:54:49] Checking for file '/dev/ida/.inet/ssh_random_seed' [ Not found ] [19:54:49] Checking for file '/dev/ida/.inet/sl2new.c' [ Not found ] [19:54:49] Checking for file '/dev/ida/.inet/tcp.log' [ Not found ] [19:54:49] Checking for file '/home/httpd/cgi-bin/becys.cgi' [ Not found ] [19:54:49] Checking for file '/usr/local/httpd/cgi-bin/becys.cgi' [ Not found ] [19:54:49] Checking for file '/usr/local/apache/cgi-bin/becys.cgi' [ Not found ] [19:54:49] Checking for file '/www/httpd/cgi-bin/becys.cgi' [ Not found ] [19:54:49] Checking for file '/www/cgi-bin/becys.cgi' [ Not found ] [19:54:49] Checking for directory '/dev/ida/.inet' [ Not found ] [19:54:49] Xzibit Rootkit [ Not found ] [19:54:49] [19:54:49] Checking for zaRwT.KiT Rootkit... [19:54:49] Checking for file '/dev/rd/s/sendmeil' [ Not found ] [19:54:49] Checking for file '/dev/ttyf' [ Not found ] [19:54:49] Checking for file '/dev/ttyp' [ Not found ] [19:54:49] Checking for file '/dev/ttyn' [ Not found ] [19:54:49] Checking for file '/rk/tulz' [ Not found ] [19:54:49] Checking for directory '/rk' [ Not found ] [19:54:49] Checking for directory '/dev/rd/s' [ Not found ] [19:54:49] zaRwT.KiT Rootkit [ Not found ] [19:54:49] [19:54:49] Checking for ZK Rootkit... [19:54:49] Checking for file '/usr/share/.zk/zk' [ Not found ] [19:54:49] Checking for file '/usr/X11R6/.zk/xfs' [ Not found ] [19:54:49] Checking for file '/usr/X11R6/.zk/echo' [ Not found ] [19:54:49] Checking for file '/etc/1ssue.net' [ Not found ] [19:54:49] Checking for file '/etc/sysconfig/console/load.zk' [ Not found ] [19:54:49] Checking for directory '/usr/share/.zk' [ Not found ] [19:54:49] Checking for directory '/usr/X11R6/.zk' [ Not found ] [19:54:49] ZK Rootkit [ Not found ] [19:54:52] [19:54:52] Info: Starting test name 'additional_rkts' [19:54:52] Performing additional rootkit checks [19:54:52] [19:54:52] Performing Suckit Rootkit additional checks [19:54:52] Checking hard link count on '/sbin/init' [ OK ] [19:54:52] Checking for hidden file extensions [ None found ] [19:54:52] Running skdet command [ Skipped ] [19:54:52] Info: Unable to find the 'skdet' command [19:54:52] Suckit Rootkit additional checks [ OK ] [19:54:52] [19:54:52] Info: Starting test name 'possible_rkt_files' [19:54:52] Performing check of possible rootkit files and directories [19:54:52] Checking for file '/dev/sdr0' [ Not found ] [19:54:52] Checking for file '/dev/pisu' [ Not found ] [19:54:52] Checking for file '/dev/xdta' [ Not found ] [19:54:52] Checking for file '/dev/saux' [ Not found ] [19:54:52] Checking for file '/dev/hdx' [ Not found ] [19:54:52] Checking for file '/dev/hdx1' [ Not found ] [19:54:52] Checking for file '/dev/hdx2' [ Not found ] [19:54:52] Checking for file '/dev/ptyy' [ Not found ] [19:54:53] Checking for file '/dev/ptyu' [ Not found ] [19:54:53] Checking for file '/dev/ptyv' [ Not found ] [19:54:53] Checking for file '/dev/hdbb' [ Not found ] [19:54:53] Checking for file '/tmp/.syshackfile' [ Not found ] [19:54:53] Checking for file '/tmp/.bash_history' [ Not found ] [19:54:53] Checking for file '/usr/info/.clib' [ Not found ] [19:54:53] Checking for file '/usr/sbin/tcp.log' [ Not found ] [19:54:53] Checking for file '/usr/bin/take/pid' [ Not found ] [19:54:53] Checking for file '/sbin/create' [ Not found ] [19:54:53] Checking for file '/dev/ttypz' [ Not found ] [19:54:53] Checking for file '/var/log/tcp.log' [ Not found ] [19:54:53] Checking for file '/usr/include/audit.h' [ Not found ] [19:54:53] Checking for file '/usr/bin/sourcemask' [ Not found ] [19:54:53] Checking for file '/usr/bin/ras2xm' [ Not found ] [19:54:53] Checking for file '/dev/xmx' [ Not found ] [19:54:53] Checking for file '/usr/sbin/gpm.root' [ Not found ] [19:54:53] Checking for file '/bin/vobiscum' [ Not found ] [19:54:53] Checking for file '/bin/psr' [ Not found ] [19:54:53] Checking for file '/dev/kdx' [ Not found ] [19:54:53] Checking for file '/dev/dkx' [ Not found ] [19:54:53] Checking for file '/usr/sbin/sshd3' [ Not found ] [19:54:53] Checking for file '/usr/sbin/jcd' [ Not found ] [19:54:53] Checking for file '/usr/sbin/atd2' [ Not found ] [19:54:53] Checking for file '/home/httpd/cgi-bin/linux.cgi' [ Not found ] [19:54:53] Checking for file '/home/httpd/cgi-bin/psid' [ Not found ] [19:54:53] Checking for file '/home/httpd/cgi-bin/void.cgi' [ Not found ] [19:54:53] Checking for file '/etc/rc.d/init.d/system' [ Not found ] [19:54:53] Checking for file '/etc/rc.d/rc3.d/S93users' [ Not found ] [19:54:53] Checking for file '/tmp/.ush' [ Not found ] [19:54:53] Checking for file '/usr/lib/libhidefile.so' [ Not found ] [19:54:53] Checking for file '/etc/cron.d/kmod' [ Not found ] [19:54:53] Checking for file '/usr/lib/dmis/dmisd' [ Not found ] [19:54:53] Checking for file '/lib/secure/libhij.so' [ Not found ] [19:54:53] Checking for file '/usr/sbin/sshd3' [ Not found ] [19:54:53] Checking for file '/etc/rc.d/init.d/crontab' [ Not found ] [19:54:53] Checking for file '/etc/rc.d/init.d/jcd' [ Not found ] [19:54:53] Checking for file '/usr/sbin/atd2' [ Not found ] [19:54:53] Checking for file '/etc/rc.d/rc5.d/S93users' [ Not found ] [19:54:53] Checking for file '/usr/include/mysql/mysql.hh1' [ Not found ] [19:54:53] Checking for file '/etc/init.d/xfs3' [ Not found ] [19:54:53] Checking for file '/usr/sbin/t.txt' [ Not found ] [19:54:53] Checking for file '/usr/sbin/change' [ Not found ] [19:54:53] Checking for file '/usr/sbin/s' [ Not found ] [19:54:54] Checking for file '/bin/f' [ Not found ] [19:54:54] Checking for file '/bin/i' [ Not found ] [19:54:54] Checking for file '/lib/libncom.so.4.0.1' [ Not found ] [19:54:54] Checking for file '/sbin/zinit' [ Not found ] [19:54:54] Checking for file '/tmp/pass_ssh.log' [ Not found ] [19:54:54] Checking for file '/usr/include/gpm2.h' [ Not found ] [19:54:54] Checking for file '/etc/ssh/.sshd_auth' [ Not found ] [19:54:54] Checking for file '/usr/lib/.sshd.h' [ Not found ] [19:54:54] Checking for file '/var/run/.defunct' [ Not found ] [19:54:54] Checking for file '/etc/httpd/run/.defunct' [ Not found ] [19:54:54] Checking for file '/usr/share/pci.r' [ Not found ] [19:54:54] Checking for file '/etc/cron.daily/dnsquery' [ Not found ] [19:54:54] Checking for file '/usr/lib/libutil1.2.1.2.so' [ Not found ] [19:54:54] Checking for file '/usr/lib/libppopen.so' [ Not found ] [19:54:54] Checking for file '/usr/include/libutil2.1.h' [ Not found ] [19:54:54] Checking for file '/usr/bin/munchhausen' [ Not found ] [19:54:54] Checking for file '/bin/ceva' [ Not found ] [19:54:54] Checking for file '/sbin/syslogd ' [ Not found ] [19:54:54] Checking for file '/usr/include/shup.h' [ Not found ] [19:54:54] Checking for file '/etc/rpm/sshdOLD' [ Not found ] [19:54:54] Checking for file '/etc/rpm/sshOLD' [ Not found ] [19:54:54] Checking for file '/usr/share/passwd.h' [ Not found ] [19:54:54] Checking for file '/lib/.xsyslog' [ Not found ] [19:54:54] Checking for file '/etc/.xsyslog' [ Not found ] [19:54:54] Checking for file '/lib/.ssyslog' [ Not found ] [19:54:54] Checking for file '/tmp/.sendmail' [ Not found ] [19:54:54] Checking for file '/usr/share/sshd.sync' [ Not found ] [19:54:54] Checking for file '/bin/zcut' [ Not found ] [19:54:54] Checking for file '/usr/bin/zmuie' [ Not found ] [19:54:54] Checking for file '/IptabLes' [ Not found ] [19:54:54] Checking for file '/.IptabLex' [ Not found ] [19:54:54] Checking for file '/boot/.IptabLex' [ Not found ] [19:54:54] Checking for file '/boot/.IptabLes' [ Not found ] [19:54:54] Checking for file '/boot/IptabLes' [ Not found ] [19:54:54] Checking for file '/tmp/IptabLes' [ Not found ] [19:54:54] Checking for file '/etc/rc.d/init.d/IptabLex' [ Not found ] [19:54:54] Checking for file '/etc/rc.d/init.d/IptabLes' [ Not found ] [19:54:54] Checking for file '/etc/rc.d/rc0.d/S55IptabLex' [ Not found ] [19:54:54] Checking for file '/etc/rc.d/rc1.d/S55IptabLex' [ Not found ] [19:54:54] Checking for file '/etc/rc.d/rc2.d/S55IptabLex' [ Not found ] [19:54:54] Checking for file '/etc/rc.d/rc3.d/S55IptabLex' [ Not found ] [19:54:54] Checking for file '/etc/rc.d/rc4.d/S55IptabLex' [ Not found ] [19:54:55] Checking for file '/etc/rc.d/rc5.d/S55IptabLex' [ Not found ] [19:54:55] Checking for file '/etc/rc.d/rc6.d/S55IptabLex' [ Not found ] [19:54:55] Checking for file '/var/lib/update-rc.d/IptabLex' [ Not found ] [19:54:55] Checking for file '/delallmykkk' [ Not found ] [19:54:55] Checking for file '/usr/.IptabLes' [ Not found ] [19:54:55] Checking for file '/usr/IptabLes' [ Not found ] [19:54:55] Checking for file '/tmp/.flush' [ Not found ] [19:54:55] Checking for file '/var/log/.flush' [ Not found ] [19:54:55] Checking for file '/usr/.flush' [ Not found ] [19:54:55] Checking for file '/etc/init.d/bluetoothdaemon' [ Not found ] [19:54:55] Checking for file '/usr/bin/btdaemon' [ Not found ] [19:54:55] Checking for file '/etc/rc1.d/S90bluetooth' [ Not found ] [19:54:55] Checking for file '/etc/rc2.d/S90bluetooth' [ Not found ] [19:54:55] Checking for file '/etc/rc3.d/S90bluetooth' [ Not found ] [19:54:55] Checking for file '/etc/rc4.d/S90bluetooth' [ Not found ] [19:54:55] Checking for file '/etc/rc5.d/S90bluetooth' [ Not found ] [19:54:55] Checking for file '/etc/rc6.d/S90bluetooth' [ Not found ] [19:54:55] Checking for file '/boot/pro' [ Not found ] [19:54:55] Checking for file '/boot/proh' [ Not found ] [19:54:55] Checking for file '/etc/atdd' [ Not found ] [19:54:55] Checking for file '/etc/atddd' [ Not found ] [19:54:55] Checking for file '/etc/cupsdd' [ Not found ] [19:54:55] Checking for file '/etc/cupsddd' [ Not found ] [19:54:55] Checking for file '/etc/cupsddh' [ Not found ] [19:54:55] Checking for file '/etc/dsfrefr' [ Not found ] [19:54:55] Checking for file '/etc/fdsfsfvff' [ Not found ] [19:54:55] Checking for file '/etc/ferwfrre' [ Not found ] [19:54:55] Checking for file '/etc/fwke.cfg' [ Not found ] [19:54:55] Checking for file '/etc/gdmorpen' [ Not found ] [19:54:55] Checking for file '/etc/gfhddsfew' [ Not found ] [19:54:55] Checking for file '/etc/gfhjrtfyhuf' [ Not found ] [19:54:55] Checking for file '/etc/ksapd' [ Not found ] [19:54:55] Checking for file '/etc/ksapdd' [ Not found ] [19:54:55] Checking for file '/etc/kysapd' [ Not found ] [19:54:55] Checking for file '/etc/kysapdd' [ Not found ] [19:54:55] Checking for file '/etc/rewgtf3er4t' [ Not found ] [19:54:55] Checking for file '/etc/sdmfdsfhjfe' [ Not found ] [19:54:55] Checking for file '/etc/sfewfesfs' [ Not found ] [19:54:55] Checking for file '/etc/sfewfesfsh' [ Not found ] [19:54:55] Checking for file '/etc/sksapd' [ Not found ] [19:54:55] Checking for file '/etc/sksapdd' [ Not found ] [19:54:55] Checking for file '/etc/skysapd' [ Not found ] [19:54:56] Checking for file '/etc/skysapdd' [ Not found ] [19:54:56] Checking for file '/etc/smarvtd' [ Not found ] [19:54:56] Checking for file '/etc/whitptabil' [ Not found ] [19:54:56] Checking for file '/etc/xfsdx' [ Not found ] [19:54:56] Checking for file '/etc/xfsdxd' [ Not found ] [19:54:56] Checking for file '/tmp/bill.lock' [ Not found ] [19:54:56] Checking for file '/tmp/gates.lock' [ Not found ] [19:54:56] Checking for file '/tmp/gates.lod' [ Not found ] [19:54:56] Checking for file '/tmp/moni.lock' [ Not found ] [19:54:56] Checking for file '/tmp/moni.lod' [ Not found ] [19:54:56] Checking for file '/tmp/notify.file' [ Not found ] [19:54:56] Checking for file '/usr/bin/.sshd' [ Not found ] [19:54:56] Checking for file '/usr/bin/bsd-port/getty' [ Not found ] [19:54:56] Checking for file '/usr/bin/bsd-port/getty.lock' [ Not found ] [19:54:56] Checking for file '/usr/bin/bsd-port/udevd.lock' [ Not found ] [19:54:56] Checking for file '/usr/bin/pojie' [ Not found ] [19:54:56] Checking for file '/usr/lib/libamplify.so' [ Not found ] [19:54:56] Checking for file '/etc/init.d/DbSecuritySpt' [ Not found ] [19:54:56] Checking for file '/etc/rc.d/init.d/DbSecuritySpt' [ Not found ] [19:54:56] Checking for file '/etc/cron.hourly/gcc.sh' [ Not found ] [19:54:56] Checking for file '/root/2016ttfacai' [ Not found ] [19:54:56] Checking for file '/proc/rs_dev' [ Not found ] [19:54:56] Checking for file '/var/run/sftp.pid' [ Not found ] [19:54:56] Checking for file '/var/run/udev.pid' [ Not found ] [19:54:56] Checking for file '/var/run/mount.pid' [ Not found ] [19:54:56] Checking for file '/etc/cron.hourly/cron.sh' [ Not found ] [19:54:56] Checking for file '/etc/cron.hourly/udev.sh' [ Not found ] [19:54:56] Checking for file '/etc/cron.hourly/udev.sh' [ Not found ] [19:54:56] Checking for file '/lib/libgcc.so' [ Not found ] [19:54:56] Checking for file '/lib/libgcc.so.bak' [ Not found ] [19:54:56] Checking for file '/lib/libgcc4.so' [ Not found ] [19:54:56] Checking for file '/lib/libgcc4.4.so' [ Not found ] [19:54:56] Checking for file '/lib/udev/udev' [ Not found ] [19:54:56] Checking for file '/lib/udev/debug' [ Not found ] [19:54:56] Checking for directory '/dev/ptyas' [ Not found ] [19:54:56] Checking for directory '/usr/bin/take' [ Not found ] [19:54:56] Checking for directory '/usr/src/.lib' [ Not found ] [19:54:56] Checking for directory '/usr/share/man/man1/.1c' [ Not found ] [19:54:56] Checking for directory '/lib/lblip.tk' [ Not found ] [19:54:56] Checking for directory '/usr/sbin/...' [ Not found ] [19:54:56] Checking for directory '/usr/share/.gun' [ Not found ] [19:54:56] Checking for directory '/unde/vrei/tu/sa/te/ascunzi/in/server' [ Not found ] [19:54:57] Checking for directory '/usr/man/man1/.. /.dir' [ Not found ] [19:54:57] Checking for directory '/usr/X11R6/include/X11/...' [ Not found ] [19:54:57] Checking for directory '/usr/X11R6/lib/X11/.fonts/misc/...' [ Not found ] [19:54:57] Checking for directory '/tmp/.sys' [ Not found ] [19:54:57] Checking for directory '/tmp/'' [ Not found ] [19:54:57] Checking for directory '/tmp/.,' [ Not found ] [19:54:57] Checking for directory '/tmp/,.,' [ Not found ] [19:54:57] Checking for directory '/dev/shm/emilien' [ Not found ] [19:54:57] Checking for directory '/var/tmp/.log' [ Not found ] [19:54:57] Checking for directory '/tmp/zmeu/... ' [ Not found ] [19:54:57] Checking for directory '/var/log/ssh' [ Not found ] [19:54:57] Checking for directory '/dev/ida' [ Not found ] [19:54:57] Checking for directory '/var/lib/games/.src/ssk/shit' [ Not found ] [19:54:57] Checking for directory '/usr/lib/libshtift' [ Not found ] [19:54:57] Checking for directory '/usr/src/.poop' [ Not found ] [19:54:57] Checking for directory '/dev/wd4' [ Not found ] [19:54:57] Checking for directory '/var/run/.tmp' [ Not found ] [19:54:57] Checking for directory '/usr/man/man1/lib/.lib' [ Not found ] [19:54:57] Checking for directory '/dev/portd' [ Not found ] [19:54:57] Checking for directory '/dev/...' [ Not found ] [19:54:57] Checking for directory '/usr/share/man/mansps' [ Not found ] [19:54:57] Checking for directory '/lib/.so' [ Not found ] [19:54:57] Checking for directory '/lib/.sso' [ Not found ] [19:54:57] Checking for directory '/usr/include/sslv3' [ Not found ] [19:54:57] Checking for directory '/dev/shm/sshd' [ Not found ] [19:54:57] Checking for directory '/usr/share/locale/mk/.dev/sk' [ Not found ] [19:54:57] Checking for directory '/usr/share/locale/mk/.dev' [ Not found ] [19:54:57] Checking for directory '/usr/include/netda.h' [ Not found ] [19:54:57] Checking for directory '/usr/include/.ssh' [ Not found ] [19:54:57] Checking for directory '/usr/share/locale/jp/. ' [ Not found ] [19:54:57] Checking for directory '/usr/share/.sqe' [ Not found ] [19:54:57] Checking for possible rootkit files and directories [ None found ] [19:54:57] [19:54:57] Info: Starting test name 'possible_rkt_strings' [19:54:57] Performing check for possible rootkit strings [19:54:57] Info: Using system startup paths: /etc/rc.d /etc/inittab /etc/systemd/system [19:54:57] Checking for string 'LOGNAME=root' [ Not found ] [19:54:57] Checking for string 'phalanx' [ Not found ] [19:54:57] Checking for string '/dev/proc/fuckit' [ Not found ] [19:54:57] Checking for string 'FUCK' [ Not found ] [19:54:57] Checking for string 'backdoor' [ Not found ] [19:54:58] Checking for string '/usr/bin/rcpc' [ Not found ] [19:54:58] Checking for string '/usr/sbin/login' [ Not found ] [19:54:58] Checking for string 'vt200' [ Not found ] [19:54:58] Checking for string '/usr/bin/xstat' [ Not found ] [19:54:58] Checking for string '/bin/envpc' [ Not found ] [19:54:58] Checking for string 'L4m3r0x' [ Not found ] [19:54:58] Checking for string '/lib/libext' [ Not found ] [19:54:58] Checking for string '/usr/sbin/login' [ Not found ] [19:54:58] Checking for string '/usr/lib/.tbd' [ Not found ] [19:54:58] Checking for string 'sendmail' [ Not found ] [19:54:58] Checking for string 'cocacola' [ Not found ] [19:54:58] Checking for string 'joao' [ Not found ] [19:54:58] Checking for string '/dev/ptyxx/.file' [ Not found ] [19:54:58] Checking for string '/dev/ptyxx/.file' [ Not found ] [19:54:58] Checking for string '/dev/sgk' [ Not found ] [19:54:58] Checking for string '/var/lock/subsys/...datafile...' [ Not found ] [19:54:58] Checking for string '/usr/lib/.tbd' [ Not found ] [19:54:58] Checking for string '/dev/proc/fuckit' [ Not found ] [19:54:58] Checking for string '/lib/.sso' [ Not found ] [19:54:58] Checking for string '/var/lock/subsys/...datafile...' [ Not found ] [19:54:58] Checking for string '/dev/caca' [ Not found ] [19:54:58] Checking for string '/dev/ttyoa' [ Not found ] [19:54:58] Checking for string '/usr/lib/ldlibns.so' [ Not found ] [19:54:58] Checking for string '/dev/ptyxx/.addr' [ Not found ] [19:54:58] Checking for string 'syg' [ Not found ] [19:54:58] Checking for string '/var/lock/subsys/...datafile...' [ Not found ] [19:54:58] Checking for string '/dev/pts/01' [ Not found ] [19:54:58] Checking for string 'tw33dl3' [ Not found ] [19:54:58] Checking for string 'psniff' [ Not found ] [19:54:58] Checking for string 'uconf.inv' [ Not found ] [19:54:58] Checking for string 'lib/ldlibps.so' [ Not found ] [19:54:58] Checking for string 'libproc.so.2.0.7' [ Not found ] [19:54:58] Checking for string '/dev/ptyxx/.proc' [ Not found ] [19:54:58] Checking for string 'libproc.so.2.0.7' [ Not found ] [19:54:58] Checking for string 'libproc.so.2.0.7' [ Not found ] [19:54:58] Checking for string '/bin/bash' [ Not found ] [19:54:58] Checking for string '/dev/ptyxx' [ Not found ] [19:54:59] Checking for string '/.config' [ Not found ] [19:54:59] Checking for string '\$.*\$\!.*\!\!\$' [ Not found ] [19:54:59] Checking for string 'backdoor.h' [ Not found ] [19:54:59] Checking for string 'backdoor_active' [ Not found ] [19:54:59] Checking for string 'magic_pass_active' [ Not found ] [19:54:59] Checking for string '/usr/include/gpm2.h' [ Not found ] [19:54:59] Checking for string '/usr/include/openssl' [ Not found ] [19:54:59] Checking for string 'aion' [ Not found ] [19:54:59] Checking for string 'pcszPass' [ Not found ] [19:54:59] Checking for string 'LogPass' [ Not found ] [19:54:59] Checking for string 'Login_Check' [ Not found ] [19:54:59] Checking for string 'includes.h' [ Not found ] [19:54:59] Checking for string 'DecodeString' [ Not found ] [19:54:59] Checking for string 'EncodeString' [ Not found ] [19:54:59] Checking for string 'libns2.so' [ Not found ] [19:54:59] Checking for string 'libns5.so' [ Not found ] [19:54:59] Checking for string 'libpw3.so' [ Not found ] [19:54:59] Checking for string 'libpw5.so' [ Not found ] [19:54:59] Checking for string 'libsbr.so' [ Not found ] [19:54:59] Checking for string 'libslr.so' [ Not found ] [19:54:59] Checking for string '/usr/lib/.tbd' [ Not found ] [19:54:59] Checking for string '/dev/ptyxx/.proc' [ Not found ] [19:54:59] Checking for string 'in.inetd' [ Not found ] [19:55:00] Checking for string '# ' [ Not found ] [19:55:00] Checking for string 'bin/xchk' [ Not found ] [19:55:00] Checking for string 'bin/xsf' [ Not found ] [19:55:00] Checking for string '/usr/bin/ssh2d' [ Not found ] [19:55:00] Checking for string '/usr/sbin/xntps' [ Not found ] [19:55:00] Checking for string 'ttyload' [ Not found ] [19:55:00] Checking for string '/etc/rc.d/init.d/init' [ Not found ] [19:55:00] Checking for string 'usr/bin/xfss' [ Not found ] [19:55:01] Checking for string '/usr/sbin/rpc.netinet' [ Not found ] [19:55:01] Checking for string '/usr/lib/.fx/cons.saver' [ Not found ] [19:55:01] Checking for string '/usr/lib/.fx/xs' [ Not found ] [19:55:01] Checking for string '/ssh2d' [ Not found ] [19:55:01] Checking for string '/dev/kmod' [ Not found ] [19:55:01] Checking for string '/crth.o' [ Not found ] [19:55:01] Checking for string '/crtz.o' [ Not found ] [19:55:01] Checking for string '/dev/dos' [ Not found ] [19:55:02] Checking for string '/lpq' [ Not found ] [19:55:02] Checking for string '/usr/sbin/rescue' [ Not found ] [19:55:02] Checking for string '/usr/lib/lpstart' [ Not found ] [19:55:02] Checking for string '/volc' [ Not found ] [19:55:02] Checking for string 'sourcemask' [ Not found ] [19:55:02] Checking for string '/bin/vobiscum' [ Not found ] [19:55:02] Checking for string '/usr/sbin/in.telnet' [ Not found ] [19:55:03] Checking for string '/usr/bin/hdparm?-t1?-X53?-p' [ Not found ] [19:55:03] Checking for string '/lib/.xsyslog' [ Not found ] [19:55:03] Checking for string '/etc/.xsyslog' [ Not found ] [19:55:03] Checking for string '/lib/.ssyslog' [ Not found ] [19:55:03] Checking for string '/tmp/.sendmail' [ Not found ] [19:55:03] Checking for string 'IptabLex' [ Not found ] [19:55:03] Checking for string 'IptabLes' [ Not found ] [19:55:03] Checking for string '/lib/ldd.so/tkps' [ Not found ] [19:55:04] Checking for string 't0rnkit' [ Not found ] [19:55:04] Checking for string '/dev/proc/fuckit' [ Not found ] [19:55:04] Checking for string 'backdoor.h' [ Not found ] [19:55:04] Checking for string 'backdoor_active' [ Not found ] [19:55:04] Checking for string 'magic_pass_active' [ Not found ] [19:55:04] Checking for string '/usr/include/gpm2.h' [ Not found ] [19:55:04] Checking for string 'libproc.so.2.0.7' [ Not found ] [19:55:04] Checking for string 'libproc.so.2.0.7' [ Not found ] [19:55:04] Checking for string 'libproc.so.2.0.7' [ Not found ] [19:55:04] Checking for string '/usr/lib/ldlibdu.so' [ Not found ] [19:55:04] Checking for string '/dev/ptyxx/.file' [ Not found ] [19:55:04] Checking for string 'libproc.so.2.0.7' [ Not found ] [19:55:04] Checking for string '/usr/include/mysql/mysql.hh1' [ Not found ] [19:55:04] Checking for string '/usr/include/mysql/mysql.hh1' [ Not found ] [19:55:04] Checking for string '/usr/include/mysql/mysql.hh1' [ Not found ] [19:55:04] Checking for string '/usr/include/mysql/mysql.hh1' [ Not found ] [19:55:04] Checking for string '/usr/include/mysql/mysql.hh1' [ Not found ] [19:55:04] Checking for string '/usr/include/mysql/mysql.hh1' [ Not found ] [19:55:04] Checking for string 'backconnect' [ Not found ] [19:55:04] Checking for string 'magic?packet?received' [ Not found ] [19:55:04] Checking for possible rootkit strings [ None found ] [19:55:04] [19:55:04] Info: Starting test name 'malware' [19:55:04] Performing malware checks [19:55:04] [19:55:04] Info: Test 'deleted_files' disabled at users request. [19:55:04] [19:55:04] Info: Starting test name 'running_procs' [19:55:05] Checking running processes for suspicious files [ None found ] [19:55:05] [19:55:05] Info: Starting test name 'hidden_procs' [19:55:05] Info: Unable to find the 'unhide' command [19:55:05] Info: Unable to find the 'unhide-linux' command [19:55:05] Checking for hidden processes [ Skipped ] [19:55:05] [19:55:05] Info: Test 'suspscan' disabled at users request. [19:55:05] [19:55:05] Info: Starting test name 'login_backdoors' [19:55:05] Checking for '/bin/.login' [ Not found ] [19:55:05] Checking for '/sbin/.login' [ Not found ] [19:55:05] Checking for login backdoors [ None found ] [19:55:05] [19:55:05] Info: Starting test name 'sniffer_logs' [19:55:05] Checking for file '/usr/lib/libice.log' [ Not found ] [19:55:05] Checking for file '/dev/prom/sn.l' [ Not found ] [19:55:05] Checking for file '/dev/fd/.88/zxsniff.log' [ Not found ] [19:55:05] Checking for sniffer log files [ None found ] [19:55:05] [19:55:05] Info: Starting test name 'tripwire' [19:55:05] Checking for software intrusions [ Skipped ] [19:55:05] Info: Check skipped - tripwire not installed [19:55:05] [19:55:05] Info: Starting test name 'susp_dirs' [19:55:05] Checking for directory '/usr/X11R6/bin/.,/copy' [ Not found ] [19:55:05] Checking for directory '/dev/rd/cdb' [ Not found ] [19:55:05] Checking for suspicious directories [ None found ] [19:55:05] [19:55:05] Info: Test 'ipc_shared_mem' disabled at users request. [19:55:05] [19:55:05] Info: Starting test name 'trojans' [19:55:05] Performing trojan specific checks [19:55:05] Checking for enabled inetd services [ Skipped ] [19:55:05] Info: Check skipped - file '/etc/inetd.conf' does not exist. [19:55:05] Checking for enabled xinetd services [ Skipped ] [19:55:05] Info: Check skipped - file '/etc/xinetd.conf' does not exist. [19:55:05] Checking for Apache backdoor [ Not found ] [19:55:05] [19:55:05] Info: Starting test name 'os_specific' [19:55:05] Performing Linux specific checks [19:55:05] Checking loaded kernel modules [ OK ] [19:55:05] Info: Using modules pathname of '/lib/modules/3.10.0-1160.88.1.el7.x86_64' [19:55:05] Checking kernel module names [ OK ] [19:55:12] [19:55:12] Info: Starting test name 'network' [19:55:12] Checking the network... [19:55:12] [19:55:12] Performing checks on the network ports [19:55:12] Info: Starting test name 'ports' [19:55:12] Performing check for backdoor ports [19:55:12] Checking for TCP port 1524 [ Not found ] [19:55:12] Checking for TCP port 1984 [ Not found ] [19:55:12] Checking for UDP port 2001 [ Not found ] [19:55:12] Checking for TCP port 2006 [ Not found ] [19:55:12] Checking for TCP port 2128 [ Not found ] [19:55:12] Checking for TCP port 6666 [ Not found ] [19:55:13] Checking for TCP port 6667 [ Not found ] [19:55:13] Checking for TCP port 6668 [ Not found ] [19:55:13] Checking for TCP port 6669 [ Not found ] [19:55:13] Checking for TCP port 7000 [ Not found ] [19:55:13] Checking for TCP port 13000 [ Not found ] [19:55:13] Checking for TCP port 14856 [ Not found ] [19:55:13] Checking for TCP port 25000 [ Not found ] [19:55:13] Checking for TCP port 29812 [ Not found ] [19:55:13] Checking for TCP port 31337 [ Not found ] [19:55:13] Checking for TCP port 32982 [ Not found ] [19:55:13] Checking for TCP port 33369 [ Not found ] [19:55:13] Checking for TCP port 47107 [ Not found ] [19:55:13] Checking for TCP port 47018 [ Not found ] [19:55:13] Checking for TCP port 60922 [ Not found ] [19:55:13] Checking for TCP port 62883 [ Not found ] [19:55:13] Checking for TCP port 65535 [ Not found ] [19:55:13] Checking for backdoor ports [ None found ] [19:55:13] [19:55:13] Info: Test 'hidden_ports' disabled at users request. [19:55:13] [19:55:13] Performing checks on the network interfaces [19:55:13] Info: Starting test name 'promisc' [19:55:13] Checking for promiscuous interfaces [ None found ] [19:55:13] [19:55:13] Info: Test 'packet_cap_apps' disabled at users request. [19:55:13] [19:55:13] Info: Starting test name 'local_host' [19:55:13] Checking the local host... [19:55:13] [19:55:13] Info: Starting test name 'startup_files' [19:55:13] Performing system boot checks [19:55:13] Checking for local host name [ Found ] [19:55:13] [19:55:13] Info: Starting test name 'startup_malware' [19:55:13] Checking for system startup files [ Found ] [19:55:14] Checking system startup files for malware [ None found ] [19:55:14] [19:55:14] Info: Starting test name 'group_accounts' [19:55:14] Performing group and account checks [19:55:14] Checking for passwd file [ Found ] [19:55:14] Info: Found password file: /etc/passwd [19:55:14] Checking for root equivalent (UID 0) accounts [ None found ] [19:55:14] Info: Found shadow file: /etc/shadow [19:55:14] Checking for passwordless accounts [ None found ] [19:55:14] [19:55:14] Info: Starting test name 'passwd_changes' [19:55:14] Checking for passwd file changes [ Warning ] [19:55:14] Warning: Unable to check for passwd file differences: no copy of the passwd file exists. [19:55:14] [19:55:14] Info: Starting test name 'group_changes' [19:55:14] Checking for group file changes [ Warning ] [19:55:14] Warning: Unable to check for group file differences: no copy of the group file exists. [19:55:14] Checking root account shell history files [ OK ] [19:55:14] [19:55:14] Info: Starting test name 'system_configs' [19:55:14] Performing system configuration file checks [19:55:14] [19:55:14] Info: Starting test name 'system_configs_ssh' [19:55:14] Checking for an SSH configuration file [ Found ] [19:55:14] Info: Found an SSH configuration file: /etc/ssh/sshd_config [19:55:14] Info: Rkhunter option ALLOW_SSH_ROOT_USER set to 'unset'. [19:55:14] Info: Rkhunter option ALLOW_SSH_PROT_V1 set to '2'. [19:55:14] Checking if SSH root access is allowed [ Not set ] [19:55:14] Checking if SSH protocol v1 is allowed [ Not set ] [19:55:14] Checking for other suspicious configuration settings [ None found ] [19:55:14] [19:55:14] Info: Starting test name 'system_configs_syslog' [19:55:14] Checking for a running system logging daemon [ Found ] [19:55:14] Info: A running 'rsyslog' daemon has been found. [19:55:14] Info: A running 'systemd-journald' daemon has been found. [19:55:14] Info: Found an rsyslog configuration file: /etc/rsyslog.conf [19:55:14] Info: Found a systemd configuration file: /etc/systemd/journald.conf [19:55:14] Checking for a system logging configuration file [ Found ] [19:55:14] Checking if syslog remote logging is allowed [ Not allowed ] [19:55:14] [19:55:14] Info: Starting test name 'filesystem' [19:55:14] Performing filesystem checks [19:55:14] Info: SCAN_MODE_DEV set to 'THOROUGH' [19:55:16] Checking /dev for suspicious file types [ None found ] [19:55:16] Info: Found hidden file '/etc/.updated': it is whitelisted. [19:55:16] Info: Found hidden file '/usr/share/man/man1/..1.gz': it is whitelisted. [19:55:16] Info: Found hidden file '/usr/share/man/man5/.k5identity.5.gz': it is whitelisted. [19:55:16] Info: Found hidden file '/usr/share/man/man5/.k5login.5.gz': it is whitelisted. [19:55:16] Checking for hidden files and directories [ None found ] [19:55:16] Checking for missing log files [ Skipped ] [19:55:16] Info: No missing log file names configured. [19:55:16] Checking for empty log files [ Skipped ] [19:55:16] Info: No empty log file names configured. [19:57:01] Running Rootkit Hunter version 1.4.6 on cent79 [19:57:01] [19:57:01] Info: Start date is 2023年 4月 28日 金曜日 19:57:01 JST [19:57:01] [19:57:01] Checking configuration file and command-line options... [19:57:01] Info: Detected operating system is 'Linux' [19:57:01] Info: Uname output is 'Linux cent79.home.ycos 3.10.0-1160.88.1.el7.x86_64 #1 SMP Tue Mar 7 15:41:52 UTC 2023 x86_64 x86_64 x86_64 GNU/Linux' [19:57:01] Info: Command line is /usr/bin/rkhunter -c --createlogfile [19:57:01] Info: Environment shell is /bin/bash; rkhunter is using bash [19:57:01] Info: Using configuration file '/etc/rkhunter.conf' [19:57:01] Info: Installation directory is '/usr' [19:57:01] Info: Using language 'en' [19:57:01] Info: Using '/var/lib/rkhunter/db' as the database directory [19:57:01] Info: Using '/usr/share/rkhunter/scripts' as the support script directory [19:57:01] Info: Using '/usr/local/bin /usr/bin /usr/local/sbin /usr/sbin /home/student/bin /bin /sbin /usr/libexec /usr/local/libexec' as the command directories [19:57:01] Info: Using '/var/lib/rkhunter' as the temporary directory [19:57:01] Info: No mail-on-warning address configured [19:57:01] Info: X will be automatically detected [19:57:01] Info: Found the 'basename' command: /usr/bin/basename [19:57:01] Info: Found the 'diff' command: /usr/bin/diff [19:57:01] Info: Found the 'dirname' command: /usr/bin/dirname [19:57:01] Info: Found the 'file' command: /usr/bin/file [19:57:01] Info: Found the 'find' command: /usr/bin/find [19:57:01] Info: Found the 'ifconfig' command: /usr/sbin/ifconfig [19:57:01] Info: Found the 'ip' command: /usr/sbin/ip [19:57:01] Info: Found the 'ipcs' command: /usr/bin/ipcs [19:57:01] Info: Found the 'ldd' command: /usr/bin/ldd [19:57:01] Info: Found the 'lsattr' command: /usr/bin/lsattr [19:57:01] Info: Found the 'lsmod' command: /usr/sbin/lsmod [19:57:01] Info: Found the 'lsof' command: /usr/sbin/lsof [19:57:01] Info: Found the 'mktemp' command: /usr/bin/mktemp [19:57:01] Info: Found the 'netstat' command: /usr/bin/netstat [19:57:01] Info: Found the 'numfmt' command: /usr/bin/numfmt [19:57:01] Info: Found the 'perl' command: /usr/bin/perl [19:57:01] Info: Found the 'pgrep' command: /usr/bin/pgrep [19:57:01] Info: Found the 'ps' command: /usr/bin/ps [19:57:01] Info: Found the 'pwd' command: /usr/bin/pwd [19:57:01] Info: Found the 'readlink' command: /usr/bin/readlink [19:57:01] Info: Found the 'stat' command: /usr/bin/stat [19:57:01] Info: Found the 'strings' command: /usr/bin/strings [19:57:01] Info: System is not using prelinking [19:57:01] Info: Using the '/usr/bin/sha256sum' command for the file hash checks [19:57:01] Info: The hash function field index is set to 1 [19:57:01] Info: Using package manager 'RPM' for file property checks [19:57:01] Info: Found the 'rpm' command: /usr/bin/rpm [19:57:01] Info: Previous file attributes were stored [19:57:01] Info: Enabled tests are: all [19:57:01] Info: Disabled tests are: suspscan hidden_ports deleted_files packet_cap_apps apps ipc_shared_mem [19:57:01] Info: Current logging will be appended to the log file [19:57:01] Info: Found kernel symbols file '/proc/kallsyms' [19:57:01] Info: Using 'date' to process epoch second times [19:57:01] Info: Locking is not being used [19:57:01] [19:57:01] Starting system checks... [19:57:01] [19:57:01] Info: Starting test name 'system_commands' [19:57:01] Checking system commands... [19:57:01] [19:57:01] Info: Starting test name 'strings' [19:57:01] Performing 'strings' command checks [19:57:01] Scanning for string /usr/sbin/ntpsx [ OK ] [19:57:01] Scanning for string /usr/sbin/.../bkit-ava [ OK ] [19:57:01] Scanning for string /usr/sbin/.../bkit-d [ OK ] [19:57:01] Scanning for string /usr/sbin/.../bkit-shd [ OK ] [19:57:01] Scanning for string /usr/sbin/.../bkit-f [ OK ] [19:57:01] Scanning for string /usr/include/.../proc.h [ OK ] [19:57:01] Scanning for string /usr/include/.../.bash_history [ OK ] [19:57:01] Scanning for string /usr/include/.../bkit-get [ OK ] [19:57:01] Scanning for string /usr/include/.../bkit-dl [ OK ] [19:57:01] Scanning for string /usr/include/.../bkit-screen [ OK ] [19:57:01] Scanning for string /usr/include/.../bkit-sleep [ OK ] [19:57:01] Scanning for string /usr/lib/.../bkit-adore.o [ OK ] [19:57:01] Scanning for string /usr/lib/.../ls [ OK ] [19:57:02] Scanning for string /usr/lib/.../netstat [ OK ] [19:57:02] Scanning for string /usr/lib/.../lsof [ OK ] [19:57:02] Scanning for string /usr/lib/.../bkit-ssh/bkit-shdcfg [ OK ] [19:57:02] Scanning for string /usr/lib/.../bkit-ssh/bkit-shhk [ OK ] [19:57:02] Scanning for string /usr/lib/.../bkit-ssh/bkit-pw [ OK ] [19:57:02] Scanning for string /usr/lib/.../bkit-ssh/bkit-shrs [ OK ] [19:57:02] Scanning for string /usr/lib/.../bkit-ssh/bkit-mots [ OK ] [19:57:02] Scanning for string /usr/lib/.../uconf.inv [ OK ] [19:57:02] Scanning for string /usr/lib/.../psr [ OK ] [19:57:02] Scanning for string /usr/lib/.../find [ OK ] [19:57:02] Scanning for string /usr/lib/.../pstree [ OK ] [19:57:02] Scanning for string /usr/lib/.../slocate [ OK ] [19:57:02] Scanning for string /usr/lib/.../du [ OK ] [19:57:02] Scanning for string /usr/lib/.../top [ OK ] [19:57:02] Scanning for string /usr/sbin/... [ OK ] [19:57:02] Scanning for string /usr/include/... [ OK ] [19:57:02] Scanning for string /usr/include/.../.tmp [ OK ] [19:57:02] Scanning for string /usr/lib/... [ OK ] [19:57:02] Scanning for string /usr/lib/.../.ssh [ OK ] [19:57:02] Scanning for string /usr/lib/.../bkit-ssh [ OK ] [19:57:02] Scanning for string /usr/lib/.bkit- [ OK ] [19:57:02] Scanning for string /tmp/.bkp [ OK ] [19:57:02] Scanning for string /tmp/.cinik [ OK ] [19:57:02] Scanning for string /tmp/.font-unix/.cinik [ OK ] [19:57:02] Scanning for string /lib/.sso [ OK ] [19:57:02] Scanning for string /lib/.so [ OK ] [19:57:02] Scanning for string /var/run/...dica/clean [ OK ] [19:57:02] Scanning for string /var/run/...dica/dxr [ OK ] [19:57:02] Scanning for string /var/run/...dica/read [ OK ] [19:57:02] Scanning for string /var/run/...dica/write [ OK ] [19:57:02] Scanning for string /var/run/...dica/lf [ OK ] [19:57:02] Scanning for string /var/run/...dica/xl [ OK ] [19:57:02] Scanning for string /var/run/...dica/xdr [ OK ] [19:57:02] Scanning for string /var/run/...dica/psg [ OK ] [19:57:02] Scanning for string /var/run/...dica/secure [ OK ] [19:57:02] Scanning for string /var/run/...dica/rdx [ OK ] [19:57:02] Scanning for string /var/run/...dica/va [ OK ] [19:57:02] Scanning for string /var/run/...dica/cl.sh [ OK ] [19:57:02] Scanning for string /var/run/...dica/last.log [ OK ] [19:57:02] Scanning for string /usr/bin/.etc [ OK ] [19:57:02] Scanning for string /etc/sshd_config [ OK ] [19:57:02] Scanning for string /etc/ssh_host_key [ OK ] [19:57:02] Scanning for string /etc/ssh_random_seed [ OK ] [19:57:02] Scanning for string /dev/ptyp [ OK ] [19:57:02] Scanning for string /dev/ptyq [ OK ] [19:57:02] Scanning for string /dev/ptyr [ OK ] [19:57:02] Scanning for string /dev/ptys [ OK ] [19:57:02] Scanning for string /dev/ptyt [ OK ] [19:57:02] Scanning for string /dev/fd/.88/freshb-bsd [ OK ] [19:57:02] Scanning for string /dev/fd/.88/fresht [ OK ] [19:57:02] Scanning for string /dev/fd/.88/zxsniff [ OK ] [19:57:02] Scanning for string /dev/fd/.88/zxsniff.log [ OK ] [19:57:02] Scanning for string /dev/fd/.99/.ttyf00 [ OK ] [19:57:03] Scanning for string /dev/fd/.99/.ttyp00 [ OK ] [19:57:03] Scanning for string /dev/fd/.99/.ttyq00 [ OK ] [19:57:03] Scanning for string /dev/fd/.99/.ttys00 [ OK ] [19:57:03] Scanning for string /dev/fd/.99/.pwsx00 [ OK ] [19:57:03] Scanning for string /etc/.acid [ OK ] [19:57:03] Scanning for string /usr/lib/.fx/sched_host.2 [ OK ] [19:57:03] Scanning for string /usr/lib/.fx/random_d.2 [ OK ] [19:57:03] Scanning for string /usr/lib/.fx/set_pid.2 [ OK ] [19:57:03] Scanning for string /usr/lib/.fx/setrgrp.2 [ OK ] [19:57:03] Scanning for string /usr/lib/.fx/TOHIDE [ OK ] [19:57:03] Scanning for string /usr/lib/.fx/cons.saver [ OK ] [19:57:03] Scanning for string /usr/lib/.fx/adore/ava/ava [ OK ] [19:57:03] Scanning for string /usr/lib/.fx/adore/adore/adore.ko [ OK ] [19:57:03] Scanning for string /bin/sysback [ OK ] [19:57:03] Scanning for string /usr/local/bin/sysback [ OK ] [19:57:03] Scanning for string /usr/lib/.tbd [ OK ] [19:57:03] Scanning for string /dev/.lib/lib/lib/t0rns [ OK ] [19:57:03] Scanning for string /dev/.lib/lib/lib/du [ OK ] [19:57:03] Scanning for string /dev/.lib/lib/lib/ls [ OK ] [19:57:03] Scanning for string /dev/.lib/lib/lib/t0rnsb [ OK ] [19:57:03] Scanning for string /dev/.lib/lib/lib/ps [ OK ] [19:57:03] Scanning for string /dev/.lib/lib/lib/t0rnp [ OK ] [19:57:03] Scanning for string /dev/.lib/lib/lib/find [ OK ] [19:57:03] Scanning for string /dev/.lib/lib/lib/ifconfig [ OK ] [19:57:03] Scanning for string /dev/.lib/lib/lib/pg [ OK ] [19:57:03] Scanning for string /dev/.lib/lib/lib/ssh.tgz [ OK ] [19:57:03] Scanning for string /dev/.lib/lib/lib/top [ OK ] [19:57:03] Scanning for string /dev/.lib/lib/lib/sz [ OK ] [19:57:03] Scanning for string /dev/.lib/lib/lib/login [ OK ] [19:57:03] Scanning for string /dev/.lib/lib/lib/in.fingerd [ OK ] [19:57:03] Scanning for string /dev/.lib/lib/lib/1i0n.sh [ OK ] [19:57:03] Scanning for string /dev/.lib/lib/lib/pstree [ OK ] [19:57:03] Scanning for string /dev/.lib/lib/lib/in.telnetd [ OK ] [19:57:03] Scanning for string /dev/.lib/lib/lib/mjy [ OK ] [19:57:03] Scanning for string /dev/.lib/lib/lib/sush [ OK ] [19:57:03] Scanning for string /dev/.lib/lib/lib/tfn [ OK ] [19:57:03] Scanning for string /dev/.lib/lib/lib/name [ OK ] [19:57:03] Scanning for string /dev/.lib/lib/lib/getip.sh [ OK ] [19:57:03] Scanning for string /usr/info/.torn/sh* [ OK ] [19:57:03] Scanning for string /usr/src/.puta/.1addr [ OK ] [19:57:03] Scanning for string /usr/src/.puta/.1file [ OK ] [19:57:03] Scanning for string /usr/src/.puta/.1proc [ OK ] [19:57:03] Scanning for string /usr/src/.puta/.1logz [ OK ] [19:57:03] Scanning for string /usr/info/.t0rn [ OK ] [19:57:03] Scanning for string /dev/.lib [ OK ] [19:57:03] Scanning for string /dev/.lib/lib [ OK ] [19:57:03] Scanning for string /dev/.lib/lib/lib [ OK ] [19:57:03] Scanning for string /dev/.lib/lib/lib/dev [ OK ] [19:57:03] Scanning for string /dev/.lib/lib/scan [ OK ] [19:57:03] Scanning for string /usr/src/.puta [ OK ] [19:57:04] Scanning for string /usr/man/man1/man1 [ OK ] [19:57:04] Scanning for string /usr/man/man1/man1/lib [ OK ] [19:57:04] Scanning for string /usr/man/man1/man1/lib/.lib [ OK ] [19:57:04] Scanning for string /usr/man/man1/man1/lib/.lib/.backup [ OK ] [19:57:04] [19:57:04] Info: Starting test name 'shared_libs' [19:57:04] Performing 'shared libraries' checks [19:57:04] Checking for preloading variables [ None found ] [19:57:04] Checking for preloaded libraries [ None found ] [19:57:04] [19:57:04] Info: Starting test name 'shared_libs_path' [19:57:04] Checking LD_LIBRARY_PATH variable [ Not found ] [19:57:04] [19:57:04] Info: Starting test name 'properties' [19:57:04] Performing file properties checks [19:57:04] Warning: Checking for prerequisites [ Warning ] [19:57:04] The file of stored file properties (rkhunter.dat) does not exist, and should be created. To do this type in 'rkhunter --propupd'. [19:57:04] Info: The file properties check will still run as there are checks that can be performed without the 'rkhunter.dat' file. [19:57:04] [19:57:04] Warning: WARNING! It is the users responsibility to ensure that when the '--propupd' option is used, all the files on their system are known to be genuine, and installed from a reliable source. The rkhunter '--check' option will compare the current file properties against previously stored values, and report if any values differ. However, rkhunter cannot determine what has caused the change, that is for the user to do. [19:57:04] /usr/bin/awk [ OK ] [19:57:04] /usr/bin/basename [ OK ] [19:57:04] /usr/bin/bash [ OK ] [19:57:04] /usr/bin/cat [ OK ] [19:57:04] /usr/bin/chattr [ OK ] [19:57:04] /usr/bin/chmod [ OK ] [19:57:04] /usr/bin/chown [ OK ] [19:57:04] /usr/bin/cp [ OK ] [19:57:04] /usr/bin/curl [ OK ] [19:57:04] /usr/bin/cut [ OK ] [19:57:04] /usr/bin/date [ OK ] [19:57:04] /usr/bin/df [ OK ] [19:57:05] /usr/bin/diff [ OK ] [19:57:05] /usr/bin/dirname [ OK ] [19:57:05] /usr/bin/dmesg [ OK ] [19:57:05] /usr/bin/du [ OK ] [19:57:05] /usr/bin/echo [ OK ] [19:57:05] /usr/bin/egrep [ Warning ] [19:57:05] Warning: The command '/usr/bin/egrep' has been replaced by a script: /usr/bin/egrep: POSIX shell script, ASCII text executable [19:57:05] /usr/bin/env [ OK ] [19:57:05] /usr/bin/fgrep [ Warning ] [19:57:05] Warning: The command '/usr/bin/fgrep' has been replaced by a script: /usr/bin/fgrep: POSIX shell script, ASCII text executable [19:57:05] /usr/bin/file [ OK ] [19:57:05] /usr/bin/find [ OK ] [19:57:05] /usr/bin/grep [ OK ] [19:57:05] /usr/bin/groups [ OK ] [19:57:05] Info: Found file '/usr/bin/groups': it is whitelisted for the 'script replacement' check. [19:57:05] /usr/bin/head [ OK ] [19:57:05] /usr/bin/id [ OK ] [19:57:05] /usr/bin/ipcs [ OK ] [19:57:05] /usr/bin/kill [ OK ] [19:57:05] /usr/bin/last [ OK ] [19:57:05] /usr/bin/lastlog [ OK ] [19:57:05] /usr/bin/ldd [ OK ] [19:57:05] Info: Found file '/usr/bin/ldd': it is whitelisted for the 'script replacement' check. [19:57:05] /usr/bin/less [ OK ] [19:57:05] /usr/bin/logger [ OK ] [19:57:05] /usr/bin/login [ OK ] [19:57:05] /usr/bin/ls [ OK ] [19:57:05] /usr/bin/lsattr [ OK ] [19:57:05] /usr/bin/mail [ OK ] [19:57:06] /usr/bin/md5sum [ OK ] [19:57:06] /usr/bin/mktemp [ OK ] [19:57:06] /usr/bin/more [ OK ] [19:57:06] /usr/bin/mount [ OK ] [19:57:06] /usr/bin/mv [ OK ] [19:57:06] /usr/bin/netstat [ OK ] [19:57:06] /usr/bin/newgrp [ OK ] [19:57:06] /usr/bin/passwd [ OK ] [19:57:06] /usr/bin/perl [ OK ] [19:57:06] /usr/bin/pgrep [ OK ] [19:57:06] /usr/bin/ping [ OK ] [19:57:06] /usr/bin/pkill [ OK ] [19:57:06] /usr/bin/ps [ OK ] [19:57:06] /usr/bin/pwd [ OK ] [19:57:06] /usr/bin/readlink [ OK ] [19:57:06] /usr/bin/rkhunter [ OK ] [19:57:06] /usr/bin/rpm [ OK ] [19:57:06] /usr/bin/runcon [ OK ] [19:57:06] /usr/bin/sed [ OK ] [19:57:06] /usr/bin/sh [ OK ] [19:57:06] /usr/bin/sha1sum [ OK ] [19:57:06] /usr/bin/sha224sum [ OK ] [19:57:06] /usr/bin/sha256sum [ OK ] [19:57:06] /usr/bin/sha384sum [ OK ] [19:57:06] /usr/bin/sha512sum [ OK ] [19:57:06] /usr/bin/size [ OK ] [19:57:07] /usr/bin/sort [ OK ] [19:57:07] /usr/bin/ssh [ OK ] [19:57:07] /usr/bin/stat [ OK ] [19:57:07] /usr/bin/strings [ OK ] [19:57:07] /usr/bin/su [ OK ] [19:57:07] /usr/bin/sudo [ OK ] [19:57:07] /usr/bin/tail [ OK ] [19:57:07] /usr/bin/telnet [ OK ] [19:57:07] /usr/bin/test [ OK ] [19:57:07] /usr/bin/top [ OK ] [19:57:07] /usr/bin/touch [ OK ] [19:57:07] /usr/bin/tr [ OK ] [19:57:07] /usr/bin/uname [ OK ] [19:57:07] /usr/bin/uniq [ OK ] [19:57:07] /usr/bin/users [ OK ] [19:57:07] /usr/bin/vmstat [ OK ] [19:57:07] /usr/bin/w [ OK ] [19:57:07] /usr/bin/watch [ OK ] [19:57:07] /usr/bin/wc [ OK ] [19:57:07] /usr/bin/wget [ OK ] [19:57:07] /usr/bin/whatis [ OK ] [19:57:07] Info: Found file '/usr/bin/whatis': it is whitelisted for the 'script replacement' check. [19:57:07] /usr/bin/whereis [ OK ] [19:57:07] /usr/bin/which [ OK ] [19:57:07] /usr/bin/who [ OK ] [19:57:07] /usr/bin/whoami [ OK ] [19:57:08] /usr/bin/numfmt [ OK ] [19:57:08] /usr/bin/gawk [ OK ] [19:57:08] /usr/bin/mailx [ OK ] [19:57:08] /usr/bin/kmod [ OK ] [19:57:08] /usr/bin/systemctl [ OK ] [19:57:08] /usr/sbin/adduser [ OK ] [19:57:08] /usr/sbin/chkconfig [ OK ] [19:57:08] /usr/sbin/chroot [ OK ] [19:57:08] /usr/sbin/depmod [ OK ] [19:57:08] /usr/sbin/fsck [ OK ] [19:57:08] /usr/sbin/groupadd [ OK ] [19:57:08] /usr/sbin/groupdel [ OK ] [19:57:08] /usr/sbin/groupmod [ OK ] [19:57:08] /usr/sbin/grpck [ OK ] [19:57:08] /usr/sbin/ifconfig [ OK ] [19:57:08] /usr/sbin/ifdown [ Warning ] [19:57:08] Warning: The command '/usr/sbin/ifdown' has been replaced by a script: /usr/sbin/ifdown: Bourne-Again shell script, ASCII text executable [19:57:08] /usr/sbin/ifup [ Warning ] [19:57:08] Warning: The command '/usr/sbin/ifup' has been replaced by a script: /usr/sbin/ifup: Bourne-Again shell script, ASCII text executable [19:57:08] /usr/sbin/init [ OK ] [19:57:08] /usr/sbin/insmod [ OK ] [19:57:09] /usr/sbin/ip [ OK ] [19:57:09] /usr/sbin/lsmod [ OK ] [19:57:09] /usr/sbin/lsof [ OK ] [19:57:09] /usr/sbin/modinfo [ OK ] [19:57:09] /usr/sbin/modprobe [ OK ] [19:57:09] /usr/sbin/nologin [ OK ] [19:57:09] /usr/sbin/pwck [ OK ] [19:57:09] /usr/sbin/rmmod [ OK ] [19:57:09] /usr/sbin/route [ OK ] [19:57:09] /usr/sbin/rsyslogd [ OK ] [19:57:09] /usr/sbin/runlevel [ OK ] [19:57:09] /usr/sbin/sestatus [ OK ] [19:57:09] /usr/sbin/sshd [ OK ] [19:57:09] /usr/sbin/sulogin [ OK ] [19:57:09] /usr/sbin/sysctl [ OK ] [19:57:09] /usr/sbin/useradd [ OK ] [19:57:09] /usr/sbin/userdel [ OK ] [19:57:09] /usr/sbin/usermod [ OK ] [19:57:09] /usr/sbin/vipw [ OK ] [19:57:09] /home/student/bin/links [ Warning ] [19:57:09] Warning: The command '/home/student/bin/links' has been replaced by a script: /home/student/bin/links: Bourne-Again shell script, ASCII text executable [19:57:10] /usr/lib/systemd/systemd [ OK ] [19:57:10] [19:57:10] Info: Starting test name 'rootkits' [19:57:10] Checking for rootkits... [19:57:10] [19:57:10] Info: Starting test name 'known_rkts' [19:57:10] Performing check of known rootkit files and directories [19:57:11] [19:57:11] Checking for 55808 Trojan - Variant A... [19:57:11] Checking for file '/tmp/.../r' [ Not found ] [19:57:11] Checking for file '/tmp/.../a' [ Not found ] [19:57:11] 55808 Trojan - Variant A [ Not found ] [19:57:11] [19:57:11] Checking for ADM Worm... [19:57:11] Checking for string 'w0rm' [ Not found ] [19:57:11] ADM Worm [ Not found ] [19:57:11] [19:57:11] Checking for AjaKit Rootkit... [19:57:11] Checking for file '/dev/tux/.addr' [ Not found ] [19:57:11] Checking for file '/dev/tux/.proc' [ Not found ] [19:57:11] Checking for file '/dev/tux/.file' [ Not found ] [19:57:11] Checking for file '/lib/.libgh-gh/cleaner' [ Not found ] [19:57:11] Checking for file '/lib/.libgh-gh/Patch/patch' [ Not found ] [19:57:11] Checking for file '/lib/.libgh-gh/sb0k' [ Not found ] [19:57:11] Checking for directory '/dev/tux' [ Not found ] [19:57:11] Checking for directory '/lib/.libgh-gh' [ Not found ] [19:57:11] AjaKit Rootkit [ Not found ] [19:57:11] [19:57:11] Checking for Adore Rootkit... [19:57:11] Checking for file '/usr/secure' [ Not found ] [19:57:11] Checking for file '/usr/doc/sys/qrt' [ Not found ] [19:57:11] Checking for file '/usr/doc/sys/run' [ Not found ] [19:57:11] Checking for file '/usr/doc/sys/crond' [ Not found ] [19:57:11] Checking for file '/usr/sbin/kfd' [ Not found ] [19:57:11] Checking for file '/usr/doc/kern/var' [ Not found ] [19:57:11] Checking for file '/usr/doc/kern/string.o' [ Not found ] [19:57:11] Checking for file '/usr/doc/kern/ava' [ Not found ] [19:57:11] Checking for file '/usr/doc/kern/adore.o' [ Not found ] [19:57:11] Checking for file '/var/log/ssh/old' [ Not found ] [19:57:11] Checking for directory '/lib/security/.config/ssh' [ Not found ] [19:57:11] Checking for directory '/usr/doc/kern' [ Not found ] [19:57:11] Checking for directory '/usr/doc/backup' [ Not found ] [19:57:11] Checking for directory '/usr/doc/backup/txt' [ Not found ] [19:57:11] Checking for directory '/lib/backup' [ Not found ] [19:57:11] Checking for directory '/lib/backup/txt' [ Not found ] [19:57:11] Checking for directory '/usr/doc/work' [ Not found ] [19:57:11] Checking for directory '/usr/doc/sys' [ Not found ] [19:57:11] Checking for directory '/var/log/ssh' [ Not found ] [19:57:11] Checking for directory '/usr/doc/.spool' [ Not found ] [19:57:11] Checking for directory '/usr/lib/kterm' [ Not found ] [19:57:11] Adore Rootkit [ Not found ] [19:57:11] [19:57:11] Checking for aPa Kit... [19:57:11] Checking for file '/usr/share/.aPa' [ Not found ] [19:57:11] aPa Kit [ Not found ] [19:57:11] [19:57:11] Checking for Apache Worm... [19:57:11] Checking for file '/bin/.log' [ Not found ] [19:57:11] Apache Worm [ Not found ] [19:57:11] [19:57:11] Checking for Ambient (ark) Rootkit... [19:57:11] Checking for file '/usr/lib/.ark?' [ Not found ] [19:57:11] Checking for file '/dev/ptyxx/.log' [ Not found ] [19:57:11] Checking for file '/dev/ptyxx/.file' [ Not found ] [19:57:11] Checking for file '/dev/ptyxx/.proc' [ Not found ] [19:57:11] Checking for file '/dev/ptyxx/.addr' [ Not found ] [19:57:11] Checking for directory '/dev/ptyxx' [ Not found ] [19:57:11] Ambient (ark) Rootkit [ Not found ] [19:57:12] [19:57:12] Checking for Balaur Rootkit... [19:57:12] Checking for file '/usr/lib/liblog.o' [ Not found ] [19:57:12] Checking for directory '/usr/lib/.kinetic' [ Not found ] [19:57:12] Checking for directory '/usr/lib/.egcs' [ Not found ] [19:57:12] Checking for directory '/usr/lib/.wormie' [ Not found ] [19:57:12] Balaur Rootkit [ Not found ] [19:57:12] [19:57:12] Checking for BeastKit Rootkit... [19:57:12] Checking for file '/usr/sbin/arobia' [ Not found ] [19:57:12] Checking for file '/usr/sbin/idrun' [ Not found ] [19:57:12] Checking for file '/usr/lib/elm/arobia/elm' [ Not found ] [19:57:12] Checking for file '/usr/lib/elm/arobia/elm/hk' [ Not found ] [19:57:12] Checking for file '/usr/lib/elm/arobia/elm/hk.pub' [ Not found ] [19:57:12] Checking for file '/usr/lib/elm/arobia/elm/sc' [ Not found ] [19:57:12] Checking for file '/usr/lib/elm/arobia/elm/sd.pp' [ Not found ] [19:57:12] Checking for file '/usr/lib/elm/arobia/elm/sdco' [ Not found ] [19:57:12] Checking for file '/usr/lib/elm/arobia/elm/srsd' [ Not found ] [19:57:12] Checking for directory '/lib/ldd.so/bktools' [ Not found ] [19:57:12] BeastKit Rootkit [ Not found ] [19:57:12] [19:57:12] Checking for beX2 Rootkit... [19:57:12] Checking for file '/usr/info/termcap.info-5.gz' [ Not found ] [19:57:12] Checking for file '/usr/bin/sshd2' [ Not found ] [19:57:12] Checking for directory '/usr/include/bex' [ Not found ] [19:57:12] beX2 Rootkit [ Not found ] [19:57:12] [19:57:12] Checking for BOBKit Rootkit... [19:57:12] Checking for file '/usr/sbin/ntpsx' [ Not found ] [19:57:12] Checking for file '/usr/sbin/.../bkit-ava' [ Not found ] [19:57:12] Checking for file '/usr/sbin/.../bkit-d' [ Not found ] [19:57:12] Checking for file '/usr/sbin/.../bkit-shd' [ Not found ] [19:57:12] Checking for file '/usr/sbin/.../bkit-f' [ Not found ] [19:57:12] Checking for file '/usr/include/.../proc.h' [ Not found ] [19:57:12] Checking for file '/usr/include/.../.bash_history' [ Not found ] [19:57:12] Checking for file '/usr/include/.../bkit-get' [ Not found ] [19:57:12] Checking for file '/usr/include/.../bkit-dl' [ Not found ] [19:57:12] Checking for file '/usr/include/.../bkit-screen' [ Not found ] [19:57:12] Checking for file '/usr/include/.../bkit-sleep' [ Not found ] [19:57:12] Checking for file '/usr/lib/.../bkit-adore.o' [ Not found ] [19:57:12] Checking for file '/usr/lib/.../ls' [ Not found ] [19:57:12] Checking for file '/usr/lib/.../netstat' [ Not found ] [19:57:12] Checking for file '/usr/lib/.../lsof' [ Not found ] [19:57:12] Checking for file '/usr/lib/.../bkit-ssh/bkit-shdcfg' [ Not found ] [19:57:12] Checking for file '/usr/lib/.../bkit-ssh/bkit-shhk' [ Not found ] [19:57:12] Checking for file '/usr/lib/.../bkit-ssh/bkit-pw' [ Not found ] [19:57:12] Checking for file '/usr/lib/.../bkit-ssh/bkit-shrs' [ Not found ] [19:57:12] Checking for file '/usr/lib/.../bkit-ssh/bkit-mots' [ Not found ] [19:57:12] Checking for file '/usr/lib/.../uconf.inv' [ Not found ] [19:57:12] Checking for file '/usr/lib/.../psr' [ Not found ] [19:57:12] Checking for file '/usr/lib/.../find' [ Not found ] [19:57:12] Checking for file '/usr/lib/.../pstree' [ Not found ] [19:57:12] Checking for file '/usr/lib/.../slocate' [ Not found ] [19:57:12] Checking for file '/usr/lib/.../du' [ Not found ] [19:57:12] Checking for file '/usr/lib/.../top' [ Not found ] [19:57:12] Checking for directory '/usr/sbin/...' [ Not found ] [19:57:12] Checking for directory '/usr/include/...' [ Not found ] [19:57:12] Checking for directory '/usr/include/.../.tmp' [ Not found ] [19:57:13] Checking for directory '/usr/lib/...' [ Not found ] [19:57:13] Checking for directory '/usr/lib/.../.ssh' [ Not found ] [19:57:13] Checking for directory '/usr/lib/.../bkit-ssh' [ Not found ] [19:57:13] Checking for directory '/usr/lib/.bkit-' [ Not found ] [19:57:13] Checking for directory '/tmp/.bkp' [ Not found ] [19:57:13] BOBKit Rootkit [ Not found ] [19:57:13] [19:57:13] Checking for cb Rootkit... [19:57:13] Checking for file '/dev/srd0' [ Not found ] [19:57:13] Checking for file '/lib/libproc.so.2.0.6' [ Not found ] [19:57:13] Checking for file '/dev/mounnt' [ Not found ] [19:57:13] Checking for file '/etc/rc.d/init.d/init' [ Not found ] [19:57:13] Checking for file '/usr/bin/.zeen/.. /cl' [ Not found ] [19:57:13] Checking for file '/usr/bin/.zeen/.. /.x.tgz' [ Not found ] [19:57:13] Checking for file '/usr/bin/.zeen/.. /statdx' [ Not found ] [19:57:13] Checking for file '/usr/bin/.zeen/.. /wted' [ Not found ] [19:57:13] Checking for file '/usr/bin/.zeen/.. /write' [ Not found ] [19:57:13] Checking for file '/usr/bin/.zeen/.. /scan' [ Not found ] [19:57:13] Checking for file '/usr/bin/.zeen/.. /sc' [ Not found ] [19:57:13] Checking for file '/usr/bin/.zeen/.. /sl2' [ Not found ] [19:57:13] Checking for file '/usr/bin/.zeen/.. /wroot' [ Not found ] [19:57:13] Checking for file '/usr/bin/.zeen/.. /wscan' [ Not found ] [19:57:13] Checking for file '/usr/bin/.zeen/.. /wu' [ Not found ] [19:57:13] Checking for file '/usr/bin/.zeen/.. /v' [ Not found ] [19:57:13] Checking for file '/usr/bin/.zeen/.. /read' [ Not found ] [19:57:13] Checking for file '/usr/lib/sshrc' [ Not found ] [19:57:13] Checking for file '/usr/lib/ssh_host_key' [ Not found ] [19:57:13] Checking for file '/usr/lib/ssh_host_key.pub' [ Not found ] [19:57:13] Checking for file '/usr/lib/ssh_random_seed' [ Not found ] [19:57:13] Checking for file '/usr/lib/sshd_config' [ Not found ] [19:57:13] Checking for file '/usr/lib/shosts.equiv' [ Not found ] [19:57:13] Checking for file '/usr/lib/ssh_known_hosts' [ Not found ] [19:57:13] Checking for file '/u/zappa/.ssh/pid' [ Not found ] [19:57:13] Checking for file '/usr/bin/.system/.. /tcp.log' [ Not found ] [19:57:13] Checking for file '/usr/bin/.zeen/.. /curatare/attrib' [ Not found ] [19:57:13] Checking for file '/usr/bin/.zeen/.. /curatare/chattr' [ Not found ] [19:57:13] Checking for file '/usr/bin/.zeen/.. /curatare/ps' [ Not found ] [19:57:13] Checking for file '/usr/bin/.zeen/.. /curatare/pstree' [ Not found ] [19:57:13] Checking for file '/usr/bin/.system/.. /.x/xC.o' [ Not found ] [19:57:13] Checking for directory '/usr/bin/.zeen' [ Not found ] [19:57:13] Checking for directory '/usr/bin/.zeen/.. /curatare' [ Not found ] [19:57:13] Checking for directory '/usr/bin/.zeen/.. /scan' [ Not found ] [19:57:13] Checking for directory '/usr/bin/.system/.. ' [ Not found ] [19:57:13] cb Rootkit [ Not found ] [19:57:13] [19:57:13] Checking for CiNIK Worm (Slapper.B variant)... [19:57:13] Checking for file '/tmp/.cinik' [ Not found ] [19:57:13] Checking for directory '/tmp/.font-unix/.cinik' [ Not found ] [19:57:13] CiNIK Worm (Slapper.B variant) [ Not found ] [19:57:13] [19:57:13] Checking for Danny-Boy's Abuse Kit... [19:57:13] Checking for file '/dev/mdev' [ Not found ] [19:57:13] Checking for file '/usr/lib/libX.a' [ Not found ] [19:57:13] Danny-Boy's Abuse Kit [ Not found ] [19:57:13] [19:57:13] Checking for Devil RootKit... [19:57:13] Checking for file '/var/lib/games/.src' [ Not found ] [19:57:13] Checking for file '/dev/dsx' [ Not found ] [19:57:14] Checking for file '/dev/caca' [ Not found ] [19:57:14] Checking for file '/dev/pro' [ Not found ] [19:57:14] Checking for file '/bin/bye' [ Not found ] [19:57:14] Checking for file '/bin/homedir' [ Not found ] [19:57:14] Checking for file '/usr/bin/xfss' [ Not found ] [19:57:14] Checking for file '/usr/sbin/tzava' [ Not found ] [19:57:14] Checking for file '/usr/doc/tar/.../.dracusor/stuff/holber' [ Not found ] [19:57:14] Checking for file '/usr/doc/tar/.../.dracusor/stuff/sense' [ Not found ] [19:57:14] Checking for file '/usr/doc/tar/.../.dracusor/stuff/clear' [ Not found ] [19:57:14] Checking for file '/usr/doc/tar/.../.dracusor/stuff/tzava' [ Not found ] [19:57:14] Checking for file '/usr/doc/tar/.../.dracusor/stuff/citeste' [ Not found ] [19:57:14] Checking for file '/usr/doc/tar/.../.dracusor/stuff/killrk' [ Not found ] [19:57:14] Checking for file '/usr/doc/tar/.../.dracusor/stuff/searchlog' [ Not found ] [19:57:14] Checking for file '/usr/doc/tar/.../.dracusor/stuff/gaoaza' [ Not found ] [19:57:14] Checking for file '/usr/doc/tar/.../.dracusor/stuff/cleaner' [ Not found ] [19:57:14] Checking for file '/usr/doc/tar/.../.dracusor/stuff/shk' [ Not found ] [19:57:14] Checking for file '/usr/doc/tar/.../.dracusor/stuff/srs' [ Not found ] [19:57:14] Checking for file '/usr/doc/tar/.../.dracusor/utile.tgz' [ Not found ] [19:57:14] Checking for file '/usr/doc/tar/.../.dracusor/webpage' [ Not found ] [19:57:14] Checking for file '/usr/doc/tar/.../.dracusor/getpsy' [ Not found ] [19:57:14] Checking for file '/usr/doc/tar/.../.dracusor/getbnc' [ Not found ] [19:57:14] Checking for file '/usr/doc/tar/.../.dracusor/getemech' [ Not found ] [19:57:14] Checking for file '/usr/doc/tar/.../.dracusor/localroot.sh' [ Not found ] [19:57:14] Checking for file '/usr/doc/tar/.../.dracusor/stuff/old/sense' [ Not found ] [19:57:14] Checking for directory '/usr/doc/tar/.../.dracusor' [ Not found ] [19:57:14] Devil RootKit [ Not found ] [19:57:14] [19:57:14] Checking for Diamorphine LKM... [19:57:14] Checking for kernel symbol 'diamorphine' [ Not found ] [19:57:14] Checking for kernel symbol 'module_hide' [ Not found ] [19:57:14] Checking for kernel symbol 'module_hidden' [ Not found ] [19:57:14] Checking for kernel symbol 'is_invisible' [ Not found ] [19:57:14] Checking for kernel symbol 'hacked_getdents' [ Not found ] [19:57:14] Checking for kernel symbol 'hacked_kill' [ Not found ] [19:57:14] Diamorphine LKM [ Not found ] [19:57:14] [19:57:14] Checking for Dica-Kit Rootkit... [19:57:14] Checking for file '/lib/.sso' [ Not found ] [19:57:14] Checking for file '/lib/.so' [ Not found ] [19:57:14] Checking for file '/var/run/...dica/clean' [ Not found ] [19:57:15] Checking for file '/var/run/...dica/dxr' [ Not found ] [19:57:15] Checking for file '/var/run/...dica/read' [ Not found ] [19:57:15] Checking for file '/var/run/...dica/write' [ Not found ] [19:57:15] Checking for file '/var/run/...dica/lf' [ Not found ] [19:57:15] Checking for file '/var/run/...dica/xl' [ Not found ] [19:57:15] Checking for file '/var/run/...dica/xdr' [ Not found ] [19:57:15] Checking for file '/var/run/...dica/psg' [ Not found ] [19:57:15] Checking for file '/var/run/...dica/secure' [ Not found ] [19:57:15] Checking for file '/var/run/...dica/rdx' [ Not found ] [19:57:15] Checking for file '/var/run/...dica/va' [ Not found ] [19:57:15] Checking for file '/var/run/...dica/cl.sh' [ Not found ] [19:57:15] Checking for file '/var/run/...dica/last.log' [ Not found ] [19:57:15] Checking for file '/usr/bin/.etc' [ Not found ] [19:57:15] Checking for file '/etc/sshd_config' [ Not found ] [19:57:15] Checking for file '/etc/ssh_host_key' [ Not found ] [19:57:15] Checking for file '/etc/ssh_random_seed' [ Not found ] [19:57:15] Checking for directory '/var/run/...dica' [ Not found ] [19:57:15] Checking for directory '/var/run/...dica/mh' [ Not found ] [19:57:15] Checking for directory '/var/run/...dica/scan' [ Not found ] [19:57:15] Dica-Kit Rootkit [ Not found ] [19:57:15] [19:57:15] Checking for Dreams Rootkit... [19:57:15] Checking for file '/dev/ttyoa' [ Not found ] [19:57:15] Checking for file '/dev/ttyof' [ Not found ] [19:57:15] Checking for file '/dev/ttyop' [ Not found ] [19:57:15] Checking for file '/usr/bin/sense' [ Not found ] [19:57:15] Checking for file '/usr/bin/sl2' [ Not found ] [19:57:15] Checking for file '/usr/bin/logclear' [ Not found ] [19:57:15] Checking for file '/usr/bin/(swapd)' [ Not found ] [19:57:15] Checking for file '/usr/bin/initrd' [ Not found ] [19:57:15] Checking for file '/usr/bin/crontabs' [ Not found ] [19:57:15] Checking for file '/usr/bin/snfs' [ Not found ] [19:57:15] Checking for file '/usr/lib/libsss' [ Not found ] [19:57:15] Checking for file '/usr/lib/libsnf.log' [ Not found ] [19:57:15] Checking for file '/usr/lib/libshtift/top' [ Not found ] [19:57:15] Checking for file '/usr/lib/libshtift/ps' [ Not found ] [19:57:15] Checking for file '/usr/lib/libshtift/netstat' [ Not found ] [19:57:15] Checking for file '/usr/lib/libshtift/ls' [ Not found ] [19:57:15] Checking for file '/usr/lib/libshtift/ifconfig' [ Not found ] [19:57:15] Checking for file '/usr/include/linseed.h' [ Not found ] [19:57:15] Checking for file '/usr/include/linpid.h' [ Not found ] [19:57:15] Checking for file '/usr/include/linkey.h' [ Not found ] [19:57:15] Checking for file '/usr/include/linconf.h' [ Not found ] [19:57:15] Checking for file '/usr/include/iceseed.h' [ Not found ] [19:57:15] Checking for file '/usr/include/icepid.h' [ Not found ] [19:57:15] Checking for file '/usr/include/icekey.h' [ Not found ] [19:57:15] Checking for file '/usr/include/iceconf.h' [ Not found ] [19:57:15] Checking for directory '/dev/ida/.hpd' [ Not found ] [19:57:15] Checking for directory '/usr/lib/libshtift' [ Not found ] [19:57:15] Dreams Rootkit [ Not found ] [19:57:15] [19:57:15] Checking for Duarawkz Rootkit... [19:57:15] Checking for file '/usr/bin/duarawkz/loginpass' [ Not found ] [19:57:15] Checking for directory '/usr/bin/duarawkz' [ Not found ] [19:57:15] Duarawkz Rootkit [ Not found ] [19:57:16] [19:57:16] Checking for Ebury backdoor... [19:57:16] Checking for file '/lib/libns2.so' [ Not found ] [19:57:16] Checking for file '/lib64/libns2.so' [ Not found ] [19:57:16] Checking for file '/lib/libns5.so' [ Not found ] [19:57:16] Checking for file '/lib64/libns5.so' [ Not found ] [19:57:16] Checking for file '/lib/libpw3.so' [ Not found ] [19:57:16] Checking for file '/lib64/libpw3.so' [ Not found ] [19:57:16] Checking for file '/lib/libpw5.so' [ Not found ] [19:57:16] Checking for file '/lib64/libpw5.so' [ Not found ] [19:57:16] Checking for file '/lib/libsbr.so' [ Not found ] [19:57:16] Checking for file '/lib64/libsbr.so' [ Not found ] [19:57:16] Checking for file '/lib/libslr.so' [ Not found ] [19:57:16] Checking for file '/lib64/libslr.so' [ Not found ] [19:57:16] Ebury backdoor [ Not found ] [19:57:16] [19:57:16] Checking for Enye LKM... [19:57:16] Checking for file '/etc/.enyelkmHIDE^IT.ko' [ Not found ] [19:57:16] Checking for file '/etc/.enyelkmOCULTAR.ko' [ Not found ] [19:57:16] Enye LKM [ Not found ] [19:57:16] [19:57:16] Checking for Flea Linux Rootkit... [19:57:16] Checking for file '/etc/ld.so.hash' [ Not found ] [19:57:16] Checking for file '/lib/security/.config/ssh/sshd_config' [ Not found ] [19:57:16] Checking for file '/lib/security/.config/ssh/ssh_host_key' [ Not found ] [19:57:16] Checking for file '/lib/security/.config/ssh/ssh_host_key.pub' [ Not found ] [19:57:16] Checking for file '/lib/security/.config/ssh/ssh_random_seed' [ Not found ] [19:57:16] Checking for file '/usr/bin/ssh2d' [ Not found ] [19:57:16] Checking for file '/usr/lib/ldlibns.so' [ Not found ] [19:57:16] Checking for file '/usr/lib/ldlibps.so' [ Not found ] [19:57:16] Checking for file '/usr/lib/ldlibpst.so' [ Not found ] [19:57:16] Checking for file '/usr/lib/ldlibdu.so' [ Not found ] [19:57:16] Checking for file '/usr/lib/ldlibct.so' [ Not found ] [19:57:16] Checking for directory '/lib/security/.config/ssh' [ Not found ] [19:57:16] Checking for directory '/dev/..0' [ Not found ] [19:57:16] Checking for directory '/dev/..0/backup' [ Not found ] [19:57:16] Flea Linux Rootkit [ Not found ] [19:57:16] [19:57:16] Checking for Fu Rootkit... [19:57:16] Checking for file '/sbin/xc' [ Not found ] [19:57:16] Checking for file '/usr/include/ivtype.h' [ Not found ] [19:57:16] Checking for file '/bin/.lib' [ Not found ] [19:57:16] Fu Rootkit [ Not found ] [19:57:16] [19:57:16] Checking for Fuck`it Rootkit... [19:57:16] Checking for file '/lib/libproc.so.2.0.7' [ Not found ] [19:57:16] Checking for file '/dev/proc/.bash_profile' [ Not found ] [19:57:16] Checking for file '/dev/proc/.bashrc' [ Not found ] [19:57:16] Checking for file '/dev/proc/.cshrc' [ Not found ] [19:57:16] Checking for file '/dev/proc/fuckit/hax0r' [ Not found ] [19:57:16] Checking for file '/dev/proc/fuckit/hax0rshell' [ Not found ] [19:57:16] Checking for file '/dev/proc/fuckit/config/lports' [ Not found ] [19:57:16] Checking for file '/dev/proc/fuckit/config/rports' [ Not found ] [19:57:16] Checking for file '/dev/proc/fuckit/config/rkconf' [ Not found ] [19:57:16] Checking for file '/dev/proc/fuckit/config/password' [ Not found ] [19:57:16] Checking for file '/dev/proc/fuckit/config/progs' [ Not found ] [19:57:16] Checking for file '/dev/proc/fuckit/system-bins/init' [ Not found ] [19:57:16] Checking for file '/usr/lib/libcps.a' [ Not found ] [19:57:16] Checking for file '/usr/lib/libtty.a' [ Not found ] [19:57:17] Checking for directory '/dev/proc' [ Not found ] [19:57:17] Checking for directory '/dev/proc/fuckit' [ Not found ] [19:57:17] Checking for directory '/dev/proc/fuckit/system-bins' [ Not found ] [19:57:17] Checking for directory '/dev/proc/toolz' [ Not found ] [19:57:17] Fuck`it Rootkit [ Not found ] [19:57:17] [19:57:17] Checking for GasKit Rootkit... [19:57:17] Checking for file '/dev/dev/gaskit/sshd/sshdd' [ Not found ] [19:57:17] Checking for directory '/dev/dev' [ Not found ] [19:57:17] Checking for directory '/dev/dev/gaskit' [ Not found ] [19:57:17] Checking for directory '/dev/dev/gaskit/sshd' [ Not found ] [19:57:17] GasKit Rootkit [ Not found ] [19:57:17] [19:57:17] Checking for Heroin LKM... [19:57:17] Checking for kernel symbol 'heroin' [ Not found ] [19:57:17] Heroin LKM [ Not found ] [19:57:17] [19:57:17] Checking for HjC Kit... [19:57:17] Checking for directory '/dev/.hijackerz' [ Not found ] [19:57:17] HjC Kit [ Not found ] [19:57:17] [19:57:17] Checking for ignoKit Rootkit... [19:57:17] Checking for file '/lib/defs/p' [ Not found ] [19:57:17] Checking for file '/lib/defs/q' [ Not found ] [19:57:17] Checking for file '/lib/defs/r' [ Not found ] [19:57:17] Checking for file '/lib/defs/s' [ Not found ] [19:57:17] Checking for file '/lib/defs/t' [ Not found ] [19:57:17] Checking for file '/usr/lib/defs/p' [ Not found ] [19:57:17] Checking for file '/usr/lib/defs/q' [ Not found ] [19:57:17] Checking for file '/usr/lib/defs/r' [ Not found ] [19:57:17] Checking for file '/usr/lib/defs/s' [ Not found ] [19:57:17] Checking for file '/usr/lib/defs/t' [ Not found ] [19:57:17] Checking for file '/usr/lib/.libigno/pkunsec' [ Not found ] [19:57:17] Checking for file '/usr/lib/.libigno/.igno/psybnc/psybnc' [ Not found ] [19:57:17] Checking for directory '/usr/lib/.libigno' [ Not found ] [19:57:17] Checking for directory '/usr/lib/.libigno/.igno' [ Not found ] [19:57:17] ignoKit Rootkit [ Not found ] [19:57:17] [19:57:17] Checking for IntoXonia-NG Rootkit... [19:57:17] Checking for kernel symbol 'funces' [ Not found ] [19:57:17] Checking for kernel symbol 'ixinit' [ Not found ] [19:57:17] Checking for kernel symbol 'tricks' [ Not found ] [19:57:17] Checking for kernel symbol 'kernel_unlink' [ Not found ] [19:57:17] Checking for kernel symbol 'rootme' [ Not found ] [19:57:17] Checking for kernel symbol 'hide_module' [ Not found ] [19:57:18] Checking for kernel symbol 'find_sys_call_tbl' [ Not found ] [19:57:18] IntoXonia-NG Rootkit [ Not found ] [19:57:18] [19:57:18] Checking for Irix Rootkit... [19:57:18] Checking for directory '/dev/pts/01' [ Not found ] [19:57:18] Checking for directory '/dev/pts/01/backup' [ Not found ] [19:57:18] Checking for directory '/dev/pts/01/etc' [ Not found ] [19:57:18] Checking for directory '/dev/pts/01/tmp' [ Not found ] [19:57:18] Irix Rootkit [ Not found ] [19:57:18] [19:57:18] Checking for Jynx Rootkit... [19:57:18] Checking for file '/xochikit/bc' [ Not found ] [19:57:18] Checking for file '/xochikit/ld_poison.so' [ Not found ] [19:57:18] Checking for file '/omgxochi/bc' [ Not found ] [19:57:18] Checking for file '/omgxochi/ld_poison.so' [ Not found ] [19:57:18] Checking for file '/var/local/^^/bc' [ Not found ] [19:57:18] Checking for file '/var/local/^^/ld_poison.so' [ Not found ] [19:57:18] Checking for directory '/xochikit' [ Not found ] [19:57:18] Checking for directory '/omgxochi' [ Not found ] [19:57:18] Checking for directory '/var/local/^^' [ Not found ] [19:57:18] Jynx Rootkit [ Not found ] [19:57:18] [19:57:18] Checking for Jynx2 Rootkit... [19:57:18] Checking for file '/XxJynx/reality.so' [ Not found ] [19:57:18] Checking for directory '/XxJynx' [ Not found ] [19:57:18] Jynx2 Rootkit [ Not found ] [19:57:18] [19:57:18] Checking for KBeast Rootkit... [19:57:18] Checking for file '/usr/_h4x_/ipsecs-kbeast-v1.ko' [ Not found ] [19:57:18] Checking for file '/usr/_h4x_/_h4x_bd' [ Not found ] [19:57:18] Checking for file '/usr/_h4x_/acctlog' [ Not found ] [19:57:18] Checking for directory '/usr/_h4x_' [ Not found ] [19:57:18] Checking for kernel symbol 'h4x_delete_module' [ Not found ] [19:57:18] Checking for kernel symbol 'h4x_getdents64' [ Not found ] [19:57:18] Checking for kernel symbol 'h4x_kill' [ Not found ] [19:57:18] Checking for kernel symbol 'h4x_open' [ Not found ] [19:57:18] Checking for kernel symbol 'h4x_read' [ Not found ] [19:57:18] Checking for kernel symbol 'h4x_rename' [ Not found ] [19:57:18] Checking for kernel symbol 'h4x_rmdir' [ Not found ] [19:57:18] Checking for kernel symbol 'h4x_tcp4_seq_show' [ Not found ] [19:57:18] Checking for kernel symbol 'h4x_write' [ Not found ] [19:57:19] KBeast Rootkit [ Not found ] [19:57:19] [19:57:19] Checking for Kitko Rootkit... [19:57:19] Checking for directory '/usr/src/redhat/SRPMS/...' [ Not found ] [19:57:19] Kitko Rootkit [ Not found ] [19:57:19] [19:57:19] Checking for Knark Rootkit... [19:57:19] Checking for file '/proc/knark/pids' [ Not found ] [19:57:19] Checking for directory '/proc/knark' [ Not found ] [19:57:19] Knark Rootkit [ Not found ] [19:57:19] [19:57:19] Checking for ld-linuxv.so Rootkit... [19:57:19] Checking for file '/lib/ld-linuxv.so.1' [ Not found ] [19:57:19] Checking for directory '/var/opt/_so_cache' [ Not found ] [19:57:19] Checking for directory '/var/opt/_so_cache/ld' [ Not found ] [19:57:19] Checking for directory '/var/opt/_so_cache/lc' [ Not found ] [19:57:19] ld-linuxv.so Rootkit [ Not found ] [19:57:19] [19:57:19] Checking for Li0n Worm... [19:57:19] Checking for file '/bin/in.telnetd' [ Not found ] [19:57:19] Checking for file '/bin/mjy' [ Not found ] [19:57:19] Checking for file '/usr/man/man1/man1/lib/.lib/mjy' [ Not found ] [19:57:19] Checking for file '/usr/man/man1/man1/lib/.lib/in.telnetd' [ Not found ] [19:57:19] Checking for file '/usr/man/man1/man1/lib/.lib/.x' [ Not found ] [19:57:19] Checking for file '/dev/.lib/lib/scan/1i0n.sh' [ Not found ] [19:57:19] Checking for file '/dev/.lib/lib/scan/hack.sh' [ Not found ] [19:57:19] Checking for file '/dev/.lib/lib/scan/bind' [ Not found ] [19:57:19] Checking for file '/dev/.lib/lib/scan/randb' [ Not found ] [19:57:19] Checking for file '/dev/.lib/lib/scan/scan.sh' [ Not found ] [19:57:19] Checking for file '/dev/.lib/lib/scan/pscan' [ Not found ] [19:57:19] Checking for file '/dev/.lib/lib/scan/star.sh' [ Not found ] [19:57:19] Checking for file '/dev/.lib/lib/scan/bindx.sh' [ Not found ] [19:57:19] Checking for file '/dev/.lib/lib/scan/bindname.log' [ Not found ] [19:57:19] Checking for file '/dev/.lib/lib/1i0n.sh' [ Not found ] [19:57:19] Checking for file '/dev/.lib/lib/lib/netstat' [ Not found ] [19:57:19] Checking for file '/dev/.lib/lib/lib/dev/.1addr' [ Not found ] [19:57:19] Checking for file '/dev/.lib/lib/lib/dev/.1logz' [ Not found ] [19:57:19] Checking for file '/dev/.lib/lib/lib/dev/.1proc' [ Not found ] [19:57:19] Checking for file '/dev/.lib/lib/lib/dev/.1file' [ Not found ] [19:57:19] Li0n Worm [ Not found ] [19:57:19] [19:57:19] Checking for Lockit / LJK2 Rootkit... [19:57:19] Checking for file '/usr/lib/libmen.oo/.LJK2/ssh_config' [ Not found ] [19:57:19] Checking for file '/usr/lib/libmen.oo/.LJK2/ssh_host_key' [ Not found ] [19:57:19] Checking for file '/usr/lib/libmen.oo/.LJK2/ssh_host_key.pub' [ Not found ] [19:57:19] Checking for file '/usr/lib/libmen.oo/.LJK2/ssh_random_seed*' [ Not found ] [19:57:19] Checking for file '/usr/lib/libmen.oo/.LJK2/sshd_config' [ Not found ] [19:57:19] Checking for file '/usr/lib/libmen.oo/.LJK2/backdoor/RK1bd' [ Not found ] [19:57:19] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/du' [ Not found ] [19:57:19] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/ifconfig' [ Not found ] [19:57:19] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/inetd.conf' [ Not found ] [19:57:19] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/locate' [ Not found ] [19:57:19] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/login' [ Not found ] [19:57:19] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/ls' [ Not found ] [19:57:19] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/netstat' [ Not found ] [19:57:19] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/ps' [ Not found ] [19:57:19] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/pstree' [ Not found ] [19:57:19] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/rc.sysinit' [ Not found ] [19:57:19] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/syslogd' [ Not found ] [19:57:20] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/tcpd' [ Not found ] [19:57:20] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/top' [ Not found ] [19:57:20] Checking for file '/usr/lib/libmen.oo/.LJK2/clean/RK1sauber' [ Not found ] [19:57:20] Checking for file '/usr/lib/libmen.oo/.LJK2/clean/RK1wted' [ Not found ] [19:57:20] Checking for file '/usr/lib/libmen.oo/.LJK2/hack/RK1parse' [ Not found ] [19:57:20] Checking for file '/usr/lib/libmen.oo/.LJK2/hack/RK1sniff' [ Not found ] [19:57:20] Checking for file '/usr/lib/libmen.oo/.LJK2/hide/.RK1addr' [ Not found ] [19:57:20] Checking for file '/usr/lib/libmen.oo/.LJK2/hide/.RK1dir' [ Not found ] [19:57:20] Checking for file '/usr/lib/libmen.oo/.LJK2/hide/.RK1log' [ Not found ] [19:57:20] Checking for file '/usr/lib/libmen.oo/.LJK2/hide/.RK1proc' [ Not found ] [19:57:20] Checking for file '/usr/lib/libmen.oo/.LJK2/hide/RK1phidemod.c' [ Not found ] [19:57:20] Checking for file '/usr/lib/libmen.oo/.LJK2/modules/README.modules' [ Not found ] [19:57:20] Checking for file '/usr/lib/libmen.oo/.LJK2/modules/RK1hidem.c' [ Not found ] [19:57:20] Checking for file '/usr/lib/libmen.oo/.LJK2/modules/RK1phide' [ Not found ] [19:57:20] Checking for file '/usr/lib/libmen.oo/.LJK2/sshconfig/RK1ssh' [ Not found ] [19:57:20] Checking for directory '/usr/lib/libmen.oo/.LJK2' [ Not found ] [19:57:20] Lockit / LJK2 Rootkit [ Not found ] [19:57:20] [19:57:20] Checking for Mokes backdoor... [19:57:20] Checking for file '/tmp/ss0-[0-9][0-9][0-9][0-9][0-9][0-9]-[0-9][0-9][0-9][0-9][0-9][0-9]-[0-9][0-9][0-9].sst' [ Not found ] [19:57:20] Checking for file '/tmp/aa0-[0-9][0-9][0-9][0-9][0-9][0-9]-[0-9][0-9][0-9][0-9][0-9][0-9]-[0-9][0-9][0-9].aat' [ Not found ] [19:57:20] Checking for file '/tmp/kk0-[0-9][0-9][0-9][0-9][0-9][0-9]-[0-9][0-9][0-9][0-9][0-9][0-9]-[0-9][0-9][0-9].kkt' [ Not found ] [19:57:20] Checking for file '/tmp/dd0-[0-9][0-9][0-9][0-9][0-9][0-9]-[0-9][0-9][0-9][0-9][0-9][0-9]-[0-9][0-9][0-9].ddt' [ Not found ] [19:57:20] Mokes backdoor [ Not found ] [19:57:20] [19:57:20] Checking for Mood-NT Rootkit... [19:57:20] Checking for file '/sbin/init__mood-nt-_-_cthulhu' [ Not found ] [19:57:20] Checking for file '/_cthulhu/mood-nt.init' [ Not found ] [19:57:20] Checking for file '/_cthulhu/mood-nt.conf' [ Not found ] [19:57:20] Checking for file '/_cthulhu/mood-nt.sniff' [ Not found ] [19:57:20] Checking for directory '/_cthulhu' [ Not found ] [19:57:20] Mood-NT Rootkit [ Not found ] [19:57:20] [19:57:20] Checking for MRK Rootkit... [19:57:20] Checking for file '/dev/ida/.inet/pid' [ Not found ] [19:57:20] Checking for file '/dev/ida/.inet/ssh_host_key' [ Not found ] [19:57:20] Checking for file '/dev/ida/.inet/ssh_random_seed' [ Not found ] [19:57:20] Checking for file '/dev/ida/.inet/tcp.log' [ Not found ] [19:57:20] Checking for directory '/dev/ida/.inet' [ Not found ] [19:57:20] Checking for directory '/var/spool/cron/.sh' [ Not found ] [19:57:20] MRK Rootkit [ Not found ] [19:57:20] [19:57:20] Checking for Ni0 Rootkit... [19:57:20] Checking for file '/var/lock/subsys/...datafile.../...net...' [ Not found ] [19:57:20] Checking for file '/var/lock/subsys/...datafile.../...port...' [ Not found ] [19:57:20] Checking for file '/var/lock/subsys/...datafile.../...ps...' [ Not found ] [19:57:20] Checking for file '/var/lock/subsys/...datafile.../...file...' [ Not found ] [19:57:20] Checking for directory '/tmp/waza' [ Not found ] [19:57:20] Checking for directory '/var/lock/subsys/...datafile...' [ Not found ] [19:57:20] Checking for directory '/usr/sbin/es' [ Not found ] [19:57:20] Ni0 Rootkit [ Not found ] [19:57:20] [19:57:20] Checking for Ohhara Rootkit... [19:57:20] Checking for file '/var/lock/subsys/...datafile.../...datafile.../in.smbd.log' [ Not found ] [19:57:20] Checking for directory '/var/lock/subsys/...datafile...' [ Not found ] [19:57:20] Checking for directory '/var/lock/subsys/...datafile.../...datafile...' [ Not found ] [19:57:20] Checking for directory '/var/lock/subsys/...datafile.../...datafile.../bin' [ Not found ] [19:57:20] Checking for directory '/var/lock/subsys/...datafile.../...datafile.../usr/bin' [ Not found ] [19:57:20] Checking for directory '/var/lock/subsys/...datafile.../...datafile.../usr/sbin' [ Not found ] [19:57:21] Checking for directory '/var/lock/subsys/...datafile.../...datafile.../lib/security' [ Not found ] [19:57:21] Ohhara Rootkit [ Not found ] [19:57:21] [19:57:21] Checking for Optic Kit (Tux) Worm... [19:57:21] Checking for directory '/dev/tux' [ Not found ] [19:57:21] Checking for directory '/usr/bin/xchk' [ Not found ] [19:57:21] Checking for directory '/usr/bin/xsf' [ Not found ] [19:57:21] Checking for directory '/usr/bin/ssh2d' [ Not found ] [19:57:21] Optic Kit (Tux) Worm [ Not found ] [19:57:21] [19:57:21] Checking for Oz Rootkit... [19:57:21] Checking for file '/dev/.oz/.nap/rkit/terror' [ Not found ] [19:57:21] Checking for directory '/dev/.oz' [ Not found ] [19:57:21] Oz Rootkit [ Not found ] [19:57:21] [19:57:21] Checking for Phalanx Rootkit... [19:57:21] Checking for file '/uNFuNF' [ Not found ] [19:57:21] Checking for file '/etc/host.ph1' [ Not found ] [19:57:21] Checking for file '/bin/host.ph1' [ Not found ] [19:57:21] Checking for file '/usr/share/.home.ph1/phalanx' [ Not found ] [19:57:21] Checking for file '/usr/share/.home.ph1/cb' [ Not found ] [19:57:21] Checking for file '/usr/share/.home.ph1/kebab' [ Not found ] [19:57:21] Checking for directory '/usr/share/.home.ph1' [ Not found ] [19:57:21] Checking for directory '/usr/share/.home.ph1/tty' [ Not found ] [19:57:21] Phalanx Rootkit [ Not found ] [19:57:21] [19:57:21] Checking for Phalanx2 Rootkit... [19:57:21] Checking for file '/etc/khubd.p2/.p2rc' [ Not found ] [19:57:21] Checking for file '/etc/khubd.p2/.phalanx2' [ Not found ] [19:57:21] Checking for file '/etc/khubd.p2/.sniff' [ Not found ] [19:57:21] Checking for file '/etc/khubd.p2/sshgrab.py' [ Not found ] [19:57:21] Checking for file '/etc/lolzz.p2/.p2rc' [ Not found ] [19:57:21] Checking for file '/etc/lolzz.p2/.phalanx2' [ Not found ] [19:57:21] Checking for file '/etc/lolzz.p2/.sniff' [ Not found ] [19:57:21] Checking for file '/etc/lolzz.p2/sshgrab.py' [ Not found ] [19:57:21] Checking for file '/etc/cron.d/zupzzplaceholder' [ Not found ] [19:57:21] Checking for file '/usr/lib/zupzz.p2/.p-2.3d' [ Not found ] [19:57:21] Checking for file '/usr/lib/zupzz.p2/.p2rc' [ Not found ] [19:57:21] Checking for directory '/etc/khubd.p2' [ Not found ] [19:57:21] Checking for directory '/etc/lolzz.p2' [ Not found ] [19:57:21] Checking for directory '/usr/lib/zupzz.p2' [ Not found ] [19:57:21] Phalanx2 Rootkit [ Not found ] [19:57:21] [19:57:21] Checking for Phalanx2 Rootkit (extended tests)... [19:57:21] Checking for directory '/etc/khubd.p2' [ Not found ] [19:57:21] Checking for directory '/etc/lolzz.p2' [ Not found ] [19:57:21] Checking for directory '/usr/lib/zupzz.p2' [ Not found ] [19:57:21] Phalanx2 Rootkit (extended tests) [ Not found ] [19:57:21] [19:57:21] Checking for Portacelo Rootkit... [19:57:21] Checking for file '/var/lib/.../.ak' [ Not found ] [19:57:21] Checking for file '/var/lib/.../.hk' [ Not found ] [19:57:21] Checking for file '/var/lib/.../.rs' [ Not found ] [19:57:21] Checking for file '/var/lib/.../.p' [ Not found ] [19:57:21] Checking for file '/var/lib/.../getty' [ Not found ] [19:57:21] Checking for file '/var/lib/.../lkt.o' [ Not found ] [19:57:21] Checking for file '/var/lib/.../show' [ Not found ] [19:57:21] Checking for file '/var/lib/.../nlkt.o' [ Not found ] [19:57:21] Checking for file '/var/lib/.../ssshrc' [ Not found ] [19:57:21] Checking for file '/var/lib/.../sssh_equiv' [ Not found ] [19:57:22] Checking for file '/var/lib/.../sssh_known_hosts' [ Not found ] [19:57:22] Checking for file '/var/lib/.../sssh_pid' [ Not found ] [19:57:22] Checking for file '~/.sssh/known_hosts' [ Not found ] [19:57:22] Portacelo Rootkit [ Not found ] [19:57:22] [19:57:22] Checking for R3dstorm Toolkit... [19:57:22] Checking for file '/var/log/tk02/see_all' [ Not found ] [19:57:22] Checking for file '/var/log/tk02/.scris' [ Not found ] [19:57:22] Checking for file '/bin/.../sshd/sbin/sshd1' [ Not found ] [19:57:22] Checking for file '/bin/.../hate/sk' [ Not found ] [19:57:22] Checking for file '/bin/.../see_all' [ Not found ] [19:57:22] Checking for directory '/var/log/tk02' [ Not found ] [19:57:22] Checking for directory '/var/log/tk02/old' [ Not found ] [19:57:22] Checking for directory '/bin/...' [ Not found ] [19:57:22] R3dstorm Toolkit [ Not found ] [19:57:22] [19:57:22] Checking for RH-Sharpe's Rootkit... [19:57:22] Checking for file '/bin/lps' [ Not found ] [19:57:22] Checking for file '/usr/bin/lpstree' [ Not found ] [19:57:22] Checking for file '/usr/bin/ltop' [ Not found ] [19:57:22] Checking for file '/usr/bin/lkillall' [ Not found ] [19:57:22] Checking for file '/usr/bin/ldu' [ Not found ] [19:57:22] Checking for file '/usr/bin/lnetstat' [ Not found ] [19:57:22] Checking for file '/usr/bin/wp' [ Not found ] [19:57:22] Checking for file '/usr/bin/shad' [ Not found ] [19:57:22] Checking for file '/usr/bin/vadim' [ Not found ] [19:57:22] Checking for file '/usr/bin/slice' [ Not found ] [19:57:22] Checking for file '/usr/bin/cleaner' [ Not found ] [19:57:22] Checking for file '/usr/include/rpcsvc/du' [ Not found ] [19:57:22] RH-Sharpe's Rootkit [ Not found ] [19:57:22] [19:57:22] Checking for RSHA's Rootkit... [19:57:22] Checking for file '/bin/kr4p' [ Not found ] [19:57:22] Checking for file '/usr/bin/n3tstat' [ Not found ] [19:57:22] Checking for file '/usr/bin/chsh2' [ Not found ] [19:57:22] Checking for file '/usr/bin/slice2' [ Not found ] [19:57:22] Checking for file '/usr/src/linux/arch/alpha/lib/.lib/.1proc' [ Not found ] [19:57:22] Checking for file '/etc/rc.d/arch/alpha/lib/.lib/.1addr' [ Not found ] [19:57:22] Checking for directory '/etc/rc.d/rsha' [ Not found ] [19:57:22] Checking for directory '/etc/rc.d/arch/alpha/lib/.lib' [ Not found ] [19:57:22] RSHA's Rootkit [ Not found ] [19:57:22] [19:57:22] Checking for Scalper Worm... [19:57:22] Checking for file '/tmp/.a' [ Not found ] [19:57:22] Checking for file '/tmp/.uua' [ Not found ] [19:57:22] Scalper Worm [ Not found ] [19:57:22] [19:57:22] Checking for Sebek LKM... [19:57:22] Checking for kernel symbol 'adore or sebek' [ Not found ] [19:57:22] Sebek LKM [ Not found ] [19:57:22] [19:57:22] Checking for Shutdown Rootkit... [19:57:22] Checking for file '/usr/man/man5/.. /.dir/scannah/asus' [ Not found ] [19:57:22] Checking for file '/usr/man/man5/.. /.dir/see' [ Not found ] [19:57:22] Checking for file '/usr/man/man5/.. /.dir/nscd' [ Not found ] [19:57:22] Checking for file '/usr/man/man5/.. /.dir/alpd' [ Not found ] [19:57:22] Checking for file '/etc/rc.d/rc.local ' [ Not found ] [19:57:23] Checking for directory '/usr/man/man5/.. /.dir' [ Not found ] [19:57:23] Checking for directory '/usr/man/man5/.. /.dir/scannah' [ Not found ] [19:57:23] Checking for directory '/etc/rc.d/rc0.d/.. /.dir' [ Not found ] [19:57:23] Shutdown Rootkit [ Not found ] [19:57:23] [19:57:23] Checking for SHV4 Rootkit... [19:57:23] Checking for file '/etc/ld.so.hash' [ Not found ] [19:57:23] Checking for file '/lib/libext-2.so.7' [ Not found ] [19:57:23] Checking for file '/lib/lidps1.so' [ Not found ] [19:57:23] Checking for file '/lib/libproc.a' [ Not found ] [19:57:23] Checking for file '/lib/libproc.so.2.0.6' [ Not found ] [19:57:23] Checking for file '/lib/ldd.so/tks' [ Not found ] [19:57:23] Checking for file '/lib/ldd.so/tkp' [ Not found ] [19:57:23] Checking for file '/lib/ldd.so/tksb' [ Not found ] [19:57:23] Checking for file '/lib/security/.config/sshd' [ Not found ] [19:57:23] Checking for file '/lib/security/.config/ssh/ssh_host_key' [ Not found ] [19:57:23] Checking for file '/lib/security/.config/ssh/ssh_host_key.pub' [ Not found ] [19:57:23] Checking for file '/lib/security/.config/ssh/ssh_random_seed' [ Not found ] [19:57:23] Checking for file '/usr/include/file.h' [ Not found ] [19:57:23] Checking for file '/usr/include/hosts.h' [ Not found ] [19:57:23] Checking for file '/usr/include/lidps1.so' [ Not found ] [19:57:23] Checking for file '/usr/include/log.h' [ Not found ] [19:57:23] Checking for file '/usr/include/proc.h' [ Not found ] [19:57:23] Checking for file '/usr/sbin/xntps' [ Not found ] [19:57:23] Checking for file '/dev/srd0' [ Not found ] [19:57:23] Checking for directory '/lib/ldd.so' [ Not found ] [19:57:23] Checking for directory '/lib/security/.config' [ Not found ] [19:57:23] Checking for directory '/lib/security/.config/ssh' [ Not found ] [19:57:23] SHV4 Rootkit [ Not found ] [19:57:23] [19:57:23] Checking for SHV5 Rootkit... [19:57:23] Checking for file '/etc/sh.conf' [ Not found ] [19:57:23] Checking for file '/lib/libproc.a' [ Not found ] [19:57:23] Checking for file '/lib/libproc.so.2.0.6' [ Not found ] [19:57:23] Checking for file '/lib/lidps1.so' [ Not found ] [19:57:23] Checking for file '/lib/libsh.so/bash' [ Not found ] [19:57:23] Checking for file '/usr/include/file.h' [ Not found ] [19:57:23] Checking for file '/usr/include/hosts.h' [ Not found ] [19:57:23] Checking for file '/usr/include/log.h' [ Not found ] [19:57:23] Checking for file '/usr/include/proc.h' [ Not found ] [19:57:23] Checking for file '/lib/libsh.so/shdcf2' [ Not found ] [19:57:23] Checking for file '/lib/libsh.so/shhk' [ Not found ] [19:57:23] Checking for file '/lib/libsh.so/shhk.pub' [ Not found ] [19:57:23] Checking for file '/lib/libsh.so/shrs' [ Not found ] [19:57:23] Checking for file '/usr/lib/libsh/.bashrc' [ Not found ] [19:57:23] Checking for file '/usr/lib/libsh/shsb' [ Not found ] [19:57:23] Checking for file '/usr/lib/libsh/hide' [ Not found ] [19:57:23] Checking for file '/usr/lib/libsh/.sniff/shsniff' [ Not found ] [19:57:23] Checking for file '/usr/lib/libsh/.sniff/shp' [ Not found ] [19:57:23] Checking for file '/dev/srd0' [ Not found ] [19:57:23] Checking for directory '/lib/libsh.so' [ Not found ] [19:57:23] Checking for directory '/usr/lib/libsh' [ Not found ] [19:57:23] Checking for directory '/usr/lib/libsh/utilz' [ Not found ] [19:57:24] Checking for directory '/usr/lib/libsh/.backup' [ Not found ] [19:57:24] SHV5 Rootkit [ Not found ] [19:57:24] [19:57:24] Checking for Sin Rootkit... [19:57:24] Checking for file '/dev/.haos/haos1/.f/Denyed' [ Not found ] [19:57:24] Checking for file '/dev/ttyoa' [ Not found ] [19:57:24] Checking for file '/dev/ttyof' [ Not found ] [19:57:24] Checking for file '/dev/ttyop' [ Not found ] [19:57:24] Checking for file '/dev/ttyos' [ Not found ] [19:57:24] Checking for file '/usr/lib/.lib' [ Not found ] [19:57:24] Checking for file '/usr/lib/sn/.X' [ Not found ] [19:57:24] Checking for file '/usr/lib/sn/.sys' [ Not found ] [19:57:24] Checking for file '/usr/lib/ld/.X' [ Not found ] [19:57:24] Checking for file '/usr/man/man1/...' [ Not found ] [19:57:24] Checking for file '/usr/man/man1/.../.m' [ Not found ] [19:57:24] Checking for file '/usr/man/man1/.../.w' [ Not found ] [19:57:24] Checking for directory '/usr/lib/sn' [ Not found ] [19:57:24] Checking for directory '/usr/lib/man1/...' [ Not found ] [19:57:24] Checking for directory '/dev/.haos' [ Not found ] [19:57:24] Sin Rootkit [ Not found ] [19:57:24] [19:57:24] Checking for Slapper Worm... [19:57:24] Checking for file '/tmp/.bugtraq' [ Not found ] [19:57:24] Checking for file '/tmp/.uubugtraq' [ Not found ] [19:57:24] Checking for file '/tmp/.bugtraq.c' [ Not found ] [19:57:24] Checking for file '/tmp/httpd' [ Not found ] [19:57:24] Checking for file '/tmp/.unlock' [ Not found ] [19:57:24] Checking for file '/tmp/update' [ Not found ] [19:57:24] Checking for file '/tmp/.cinik' [ Not found ] [19:57:24] Checking for file '/tmp/.b' [ Not found ] [19:57:24] Slapper Worm [ Not found ] [19:57:24] [19:57:24] Checking for Sneakin Rootkit... [19:57:24] Checking for directory '/tmp/.X11-unix/.../rk' [ Not found ] [19:57:24] Sneakin Rootkit [ Not found ] [19:57:24] [19:57:24] Checking for 'Spanish' Rootkit... [19:57:24] Checking for file '/dev/ptyq' [ Not found ] [19:57:24] Checking for file '/bin/ad' [ Not found ] [19:57:24] Checking for file '/bin/ava' [ Not found ] [19:57:24] Checking for file '/bin/server' [ Not found ] [19:57:24] Checking for file '/usr/sbin/rescue' [ Not found ] [19:57:24] Checking for file '/usr/share/.../chrps' [ Not found ] [19:57:24] Checking for file '/usr/share/.../chrifconfig' [ Not found ] [19:57:24] Checking for file '/usr/share/.../netstat' [ Not found ] [19:57:24] Checking for file '/usr/share/.../linsniffer' [ Not found ] [19:57:24] Checking for file '/usr/share/.../charbd' [ Not found ] [19:57:24] Checking for file '/usr/share/.../charbd2' [ Not found ] [19:57:24] Checking for file '/usr/share/.../charbd3' [ Not found ] [19:57:24] Checking for file '/usr/share/.../charbd4' [ Not found ] [19:57:24] Checking for file '/usr/man/tmp/update.tgz' [ Not found ] [19:57:24] Checking for file '/var/lib/rpm/db.rpm' [ Not found ] [19:57:24] Checking for file '/var/cache/man/.cat' [ Not found ] [19:57:24] Checking for file '/var/spool/lpd/remote/.lpq' [ Not found ] [19:57:24] Checking for directory '/usr/share/...' [ Not found ] [19:57:24] 'Spanish' Rootkit [ Not found ] [19:57:24] [19:57:24] Checking for Suckit Rootkit... [19:57:24] Checking for file '/sbin/initsk12' [ Not found ] [19:57:25] Checking for file '/sbin/initxrk' [ Not found ] [19:57:25] Checking for file '/usr/bin/null' [ Not found ] [19:57:25] Checking for file '/usr/share/locale/sk/.sk12/sk' [ Not found ] [19:57:25] Checking for file '/etc/rc.d/rc0.d/S23kmdac' [ Not found ] [19:57:25] Checking for file '/etc/rc.d/rc1.d/S23kmdac' [ Not found ] [19:57:25] Checking for file '/etc/rc.d/rc2.d/S23kmdac' [ Not found ] [19:57:25] Checking for file '/etc/rc.d/rc3.d/S23kmdac' [ Not found ] [19:57:25] Checking for file '/etc/rc.d/rc4.d/S23kmdac' [ Not found ] [19:57:25] Checking for file '/etc/rc.d/rc5.d/S23kmdac' [ Not found ] [19:57:25] Checking for file '/etc/rc.d/rc6.d/S23kmdac' [ Not found ] [19:57:25] Checking for directory '/dev/sdhu0/tehdrakg' [ Not found ] [19:57:25] Checking for directory '/etc/.MG' [ Not found ] [19:57:25] Checking for directory '/usr/share/locale/sk/.sk12' [ Not found ] [19:57:25] Checking for directory '/usr/lib/perl5/site_perl/i386-linux/auto/TimeDate/.packlist' [ Not found ] [19:57:25] Suckit Rootkit [ Not found ] [19:57:25] [19:57:25] Checking for Superkit Rootkit... [19:57:25] Checking for file '/usr/man/.sman/sk/backsh' [ Not found ] [19:57:25] Checking for file '/usr/man/.sman/sk/izbtrag' [ Not found ] [19:57:25] Checking for file '/usr/man/.sman/sk/sksniff' [ Not found ] [19:57:25] Checking for file '/var/www/cgi-bin/cgiback.cgi' [ Not found ] [19:57:25] Checking for directory '/usr/man/.sman/sk' [ Not found ] [19:57:25] Superkit Rootkit [ Not found ] [19:57:25] [19:57:25] Checking for TBD (Telnet BackDoor)... [19:57:25] Checking for file '/usr/lib/.tbd' [ Not found ] [19:57:25] TBD (Telnet BackDoor) [ Not found ] [19:57:25] [19:57:25] Checking for TeLeKiT Rootkit... [19:57:25] Checking for file '/usr/man/man3/.../TeLeKiT/bin/sniff' [ Not found ] [19:57:25] Checking for file '/usr/man/man3/.../TeLeKiT/bin/telnetd' [ Not found ] [19:57:25] Checking for file '/usr/man/man3/.../TeLeKiT/bin/teleulo' [ Not found ] [19:57:25] Checking for file '/usr/man/man3/.../cl' [ Not found ] [19:57:25] Checking for file '/dev/ptyr' [ Not found ] [19:57:25] Checking for file '/dev/ptyp' [ Not found ] [19:57:25] Checking for file '/dev/ptyq' [ Not found ] [19:57:25] Checking for file '/dev/hda06' [ Not found ] [19:57:25] Checking for file '/usr/info/libc1.so' [ Not found ] [19:57:25] Checking for directory '/usr/man/man3/...' [ Not found ] [19:57:25] Checking for directory '/usr/man/man3/.../lsniff' [ Not found ] [19:57:25] Checking for directory '/usr/man/man3/.../TeLeKiT' [ Not found ] [19:57:25] TeLeKiT Rootkit [ Not found ] [19:57:25] [19:57:25] Checking for T0rn Rootkit... [19:57:25] Checking for file '/dev/.lib/lib/lib/t0rns' [ Not found ] [19:57:25] Checking for file '/dev/.lib/lib/lib/du' [ Not found ] [19:57:25] Checking for file '/dev/.lib/lib/lib/ls' [ Not found ] [19:57:25] Checking for file '/dev/.lib/lib/lib/t0rnsb' [ Not found ] [19:57:25] Checking for file '/dev/.lib/lib/lib/ps' [ Not found ] [19:57:25] Checking for file '/dev/.lib/lib/lib/t0rnp' [ Not found ] [19:57:25] Checking for file '/dev/.lib/lib/lib/find' [ Not found ] [19:57:25] Checking for file '/dev/.lib/lib/lib/ifconfig' [ Not found ] [19:57:25] Checking for file '/dev/.lib/lib/lib/pg' [ Not found ] [19:57:25] Checking for file '/dev/.lib/lib/lib/ssh.tgz' [ Not found ] [19:57:25] Checking for file '/dev/.lib/lib/lib/top' [ Not found ] [19:57:25] Checking for file '/dev/.lib/lib/lib/sz' [ Not found ] [19:57:26] Checking for file '/dev/.lib/lib/lib/login' [ Not found ] [19:57:26] Checking for file '/dev/.lib/lib/lib/in.fingerd' [ Not found ] [19:57:26] Checking for file '/dev/.lib/lib/lib/1i0n.sh' [ Not found ] [19:57:26] Checking for file '/dev/.lib/lib/lib/pstree' [ Not found ] [19:57:26] Checking for file '/dev/.lib/lib/lib/in.telnetd' [ Not found ] [19:57:26] Checking for file '/dev/.lib/lib/lib/mjy' [ Not found ] [19:57:26] Checking for file '/dev/.lib/lib/lib/sush' [ Not found ] [19:57:26] Checking for file '/dev/.lib/lib/lib/tfn' [ Not found ] [19:57:26] Checking for file '/dev/.lib/lib/lib/name' [ Not found ] [19:57:26] Checking for file '/dev/.lib/lib/lib/getip.sh' [ Not found ] [19:57:26] Checking for file '/usr/info/.torn/sh*' [ Not found ] [19:57:26] Checking for file '/usr/src/.puta/.1addr' [ Not found ] [19:57:26] Checking for file '/usr/src/.puta/.1file' [ Not found ] [19:57:26] Checking for file '/usr/src/.puta/.1proc' [ Not found ] [19:57:26] Checking for file '/usr/src/.puta/.1logz' [ Not found ] [19:57:26] Checking for file '/usr/info/.t0rn' [ Not found ] [19:57:26] Checking for directory '/dev/.lib' [ Not found ] [19:57:26] Checking for directory '/dev/.lib/lib' [ Not found ] [19:57:26] Checking for directory '/dev/.lib/lib/lib' [ Not found ] [19:57:26] Checking for directory '/dev/.lib/lib/lib/dev' [ Not found ] [19:57:26] Checking for directory '/dev/.lib/lib/scan' [ Not found ] [19:57:26] Checking for directory '/usr/src/.puta' [ Not found ] [19:57:26] Checking for directory '/usr/man/man1/man1' [ Not found ] [19:57:26] Checking for directory '/usr/man/man1/man1/lib' [ Not found ] [19:57:26] Checking for directory '/usr/man/man1/man1/lib/.lib' [ Not found ] [19:57:26] Checking for directory '/usr/man/man1/man1/lib/.lib/.backup' [ Not found ] [19:57:26] T0rn Rootkit [ Not found ] [19:57:26] [19:57:26] Checking for trNkit Rootkit... [19:57:26] Checking for file '/usr/lib/libbins.la' [ Not found ] [19:57:26] Checking for file '/usr/lib/libtcs.so' [ Not found ] [19:57:26] Checking for file '/dev/.ttpy/ulogin.sh' [ Not found ] [19:57:26] Checking for file '/dev/.ttpy/tcpshell.sh' [ Not found ] [19:57:26] Checking for file '/dev/.ttpy/bupdu' [ Not found ] [19:57:26] Checking for file '/dev/.ttpy/buloc' [ Not found ] [19:57:26] Checking for file '/dev/.ttpy/buloc1' [ Not found ] [19:57:26] Checking for file '/dev/.ttpy/buloc2' [ Not found ] [19:57:26] Checking for file '/dev/.ttpy/stat' [ Not found ] [19:57:26] Checking for file '/dev/.ttpy/backps' [ Not found ] [19:57:26] Checking for file '/dev/.ttpy/tree' [ Not found ] [19:57:26] Checking for file '/dev/.ttpy/topk' [ Not found ] [19:57:26] Checking for file '/dev/.ttpy/wold' [ Not found ] [19:57:26] Checking for file '/dev/.ttpy/whoold' [ Not found ] [19:57:26] Checking for file '/dev/.ttpy/backdoors' [ Not found ] [19:57:26] trNkit Rootkit [ Not found ] [19:57:26] [19:57:26] Checking for Trojanit Kit... [19:57:26] Checking for file '/bin/.ls' [ Not found ] [19:57:26] Checking for file '/bin/.ps' [ Not found ] [19:57:26] Checking for file '/bin/.netstat' [ Not found ] [19:57:26] Checking for file '/usr/bin/.nop' [ Not found ] [19:57:26] Checking for file '/usr/bin/.who' [ Not found ] [19:57:26] Trojanit Kit [ Not found ] [19:57:27] [19:57:27] Checking for Tuxtendo Rootkit... [19:57:27] Checking for file '/lib/libproc.so.2.0.7' [ Not found ] [19:57:27] Checking for file '/usr/bin/xchk' [ Not found ] [19:57:27] Checking for file '/usr/bin/xsf' [ Not found ] [19:57:27] Checking for file '/dev/tux/suidsh' [ Not found ] [19:57:27] Checking for file '/dev/tux/.addr' [ Not found ] [19:57:27] Checking for file '/dev/tux/.cron' [ Not found ] [19:57:27] Checking for file '/dev/tux/.file' [ Not found ] [19:57:27] Checking for file '/dev/tux/.log' [ Not found ] [19:57:27] Checking for file '/dev/tux/.proc' [ Not found ] [19:57:27] Checking for file '/dev/tux/.iface' [ Not found ] [19:57:27] Checking for file '/dev/tux/.pw' [ Not found ] [19:57:27] Checking for file '/dev/tux/.df' [ Not found ] [19:57:27] Checking for file '/dev/tux/.ssh' [ Not found ] [19:57:27] Checking for file '/dev/tux/.tux' [ Not found ] [19:57:27] Checking for file '/dev/tux/ssh2/sshd2_config' [ Not found ] [19:57:27] Checking for file '/dev/tux/ssh2/hostkey' [ Not found ] [19:57:27] Checking for file '/dev/tux/ssh2/hostkey.pub' [ Not found ] [19:57:27] Checking for file '/dev/tux/ssh2/logo' [ Not found ] [19:57:27] Checking for file '/dev/tux/ssh2/random_seed' [ Not found ] [19:57:27] Checking for file '/dev/tux/backup/crontab' [ Not found ] [19:57:27] Checking for file '/dev/tux/backup/df' [ Not found ] [19:57:27] Checking for file '/dev/tux/backup/dir' [ Not found ] [19:57:27] Checking for file '/dev/tux/backup/find' [ Not found ] [19:57:27] Checking for file '/dev/tux/backup/ifconfig' [ Not found ] [19:57:27] Checking for file '/dev/tux/backup/locate' [ Not found ] [19:57:27] Checking for file '/dev/tux/backup/netstat' [ Not found ] [19:57:27] Checking for file '/dev/tux/backup/ps' [ Not found ] [19:57:27] Checking for file '/dev/tux/backup/pstree' [ Not found ] [19:57:27] Checking for file '/dev/tux/backup/syslogd' [ Not found ] [19:57:27] Checking for file '/dev/tux/backup/tcpd' [ Not found ] [19:57:27] Checking for file '/dev/tux/backup/top' [ Not found ] [19:57:27] Checking for file '/dev/tux/backup/updatedb' [ Not found ] [19:57:27] Checking for file '/dev/tux/backup/vdir' [ Not found ] [19:57:27] Checking for directory '/dev/tux' [ Not found ] [19:57:27] Checking for directory '/dev/tux/ssh2' [ Not found ] [19:57:27] Checking for directory '/dev/tux/backup' [ Not found ] [19:57:27] Tuxtendo Rootkit [ Not found ] [19:57:27] [19:57:27] Checking for URK Rootkit... [19:57:27] Checking for file '/dev/prom/sn.l' [ Not found ] [19:57:27] Checking for file '/usr/lib/ldlibps.so' [ Not found ] [19:57:27] Checking for file '/usr/lib/ldlibnet.so' [ Not found ] [19:57:27] Checking for file '/dev/pts/01/uconf.inv' [ Not found ] [19:57:27] Checking for file '/dev/pts/01/cleaner' [ Not found ] [19:57:27] Checking for file '/dev/pts/01/bin/psniff' [ Not found ] [19:57:27] Checking for file '/dev/pts/01/bin/du' [ Not found ] [19:57:27] Checking for file '/dev/pts/01/bin/ls' [ Not found ] [19:57:27] Checking for file '/dev/pts/01/bin/passwd' [ Not found ] [19:57:27] Checking for file '/dev/pts/01/bin/ps' [ Not found ] [19:57:27] Checking for file '/dev/pts/01/bin/psr' [ Not found ] [19:57:27] Checking for file '/dev/pts/01/bin/su' [ Not found ] [19:57:27] Checking for file '/dev/pts/01/bin/find' [ Not found ] [19:57:27] Checking for file '/dev/pts/01/bin/netstat' [ Not found ] [19:57:27] Checking for file '/dev/pts/01/bin/ping' [ Not found ] [19:57:28] Checking for file '/dev/pts/01/bin/strings' [ Not found ] [19:57:28] Checking for file '/dev/pts/01/bin/bash' [ Not found ] [19:57:28] Checking for file '/usr/man/man1/xxxxxxbin/du' [ Not found ] [19:57:28] Checking for file '/usr/man/man1/xxxxxxbin/ls' [ Not found ] [19:57:28] Checking for file '/usr/man/man1/xxxxxxbin/passwd' [ Not found ] [19:57:28] Checking for file '/usr/man/man1/xxxxxxbin/ps' [ Not found ] [19:57:28] Checking for file '/usr/man/man1/xxxxxxbin/psr' [ Not found ] [19:57:28] Checking for file '/usr/man/man1/xxxxxxbin/su' [ Not found ] [19:57:28] Checking for file '/usr/man/man1/xxxxxxbin/find' [ Not found ] [19:57:28] Checking for file '/usr/man/man1/xxxxxxbin/netstat' [ Not found ] [19:57:28] Checking for file '/usr/man/man1/xxxxxxbin/ping' [ Not found ] [19:57:28] Checking for file '/usr/man/man1/xxxxxxbin/strings' [ Not found ] [19:57:28] Checking for file '/usr/man/man1/xxxxxxbin/bash' [ Not found ] [19:57:28] Checking for file '/tmp/conf.inv' [ Not found ] [19:57:28] Checking for directory '/dev/prom' [ Not found ] [19:57:28] Checking for directory '/dev/pts/01' [ Not found ] [19:57:28] Checking for directory '/dev/pts/01/bin' [ Not found ] [19:57:28] Checking for directory '/usr/man/man1/xxxxxxbin' [ Not found ] [19:57:28] URK Rootkit [ Not found ] [19:57:28] [19:57:28] Checking for Vampire Rootkit... [19:57:28] Checking for kernel symbol 'new_getdents' [ Not found ] [19:57:28] Checking for kernel symbol 'old_getdents' [ Not found ] [19:57:28] Checking for kernel symbol 'should_hide_file_name' [ Not found ] [19:57:28] Checking for kernel symbol 'should_hide_task_name' [ Not found ] [19:57:28] Vampire Rootkit [ Not found ] [19:57:28] [19:57:28] Checking for VcKit Rootkit... [19:57:28] Checking for directory '/usr/include/linux/modules/lib.so' [ Not found ] [19:57:28] Checking for directory '/usr/include/linux/modules/lib.so/bin' [ Not found ] [19:57:28] VcKit Rootkit [ Not found ] [19:57:28] [19:57:28] Checking for Volc Rootkit... [19:57:28] Checking for file '/usr/bin/volc' [ Not found ] [19:57:28] Checking for file '/usr/lib/volc/backdoor/divine' [ Not found ] [19:57:28] Checking for file '/usr/lib/volc/linsniff' [ Not found ] [19:57:28] Checking for file '/etc/rc.d/rc1.d/S25sysconf' [ Not found ] [19:57:28] Checking for file '/etc/rc.d/rc2.d/S25sysconf' [ Not found ] [19:57:28] Checking for file '/etc/rc.d/rc3.d/S25sysconf' [ Not found ] [19:57:28] Checking for file '/etc/rc.d/rc4.d/S25sysconf' [ Not found ] [19:57:28] Checking for file '/etc/rc.d/rc5.d/S25sysconf' [ Not found ] [19:57:28] Checking for directory '/var/spool/.recent' [ Not found ] [19:57:28] Checking for directory '/var/spool/.recent/.files' [ Not found ] [19:57:28] Checking for directory '/usr/lib/volc' [ Not found ] [19:57:28] Checking for directory '/usr/lib/volc/backup' [ Not found ] [19:57:28] Volc Rootkit [ Not found ] [19:57:28] [19:57:28] Checking for Xzibit Rootkit... [19:57:28] Checking for file '/dev/dsx' [ Not found ] [19:57:28] Checking for file '/dev/caca' [ Not found ] [19:57:28] Checking for file '/dev/ida/.inet/linsniffer' [ Not found ] [19:57:29] Checking for file '/dev/ida/.inet/logclear' [ Not found ] [19:57:29] Checking for file '/dev/ida/.inet/sense' [ Not found ] [19:57:29] Checking for file '/dev/ida/.inet/sl2' [ Not found ] [19:57:29] Checking for file '/dev/ida/.inet/sshdu' [ Not found ] [19:57:29] Checking for file '/dev/ida/.inet/s' [ Not found ] [19:57:29] Checking for file '/dev/ida/.inet/ssh_host_key' [ Not found ] [19:57:29] Checking for file '/dev/ida/.inet/ssh_random_seed' [ Not found ] [19:57:29] Checking for file '/dev/ida/.inet/sl2new.c' [ Not found ] [19:57:29] Checking for file '/dev/ida/.inet/tcp.log' [ Not found ] [19:57:29] Checking for file '/home/httpd/cgi-bin/becys.cgi' [ Not found ] [19:57:29] Checking for file '/usr/local/httpd/cgi-bin/becys.cgi' [ Not found ] [19:57:29] Checking for file '/usr/local/apache/cgi-bin/becys.cgi' [ Not found ] [19:57:29] Checking for file '/www/httpd/cgi-bin/becys.cgi' [ Not found ] [19:57:29] Checking for file '/www/cgi-bin/becys.cgi' [ Not found ] [19:57:29] Checking for directory '/dev/ida/.inet' [ Not found ] [19:57:29] Xzibit Rootkit [ Not found ] [19:57:29] [19:57:29] Checking for zaRwT.KiT Rootkit... [19:57:29] Checking for file '/dev/rd/s/sendmeil' [ Not found ] [19:57:29] Checking for file '/dev/ttyf' [ Not found ] [19:57:29] Checking for file '/dev/ttyp' [ Not found ] [19:57:29] Checking for file '/dev/ttyn' [ Not found ] [19:57:29] Checking for file '/rk/tulz' [ Not found ] [19:57:29] Checking for directory '/rk' [ Not found ] [19:57:29] Checking for directory '/dev/rd/s' [ Not found ] [19:57:29] zaRwT.KiT Rootkit [ Not found ] [19:57:29] [19:57:29] Checking for ZK Rootkit... [19:57:29] Checking for file '/usr/share/.zk/zk' [ Not found ] [19:57:29] Checking for file '/usr/X11R6/.zk/xfs' [ Not found ] [19:57:29] Checking for file '/usr/X11R6/.zk/echo' [ Not found ] [19:57:29] Checking for file '/etc/1ssue.net' [ Not found ] [19:57:29] Checking for file '/etc/sysconfig/console/load.zk' [ Not found ] [19:57:29] Checking for directory '/usr/share/.zk' [ Not found ] [19:57:29] Checking for directory '/usr/X11R6/.zk' [ Not found ] [19:57:29] ZK Rootkit [ Not found ] [19:57:29] [19:57:29] Info: Starting test name 'additional_rkts' [19:57:29] Performing additional rootkit checks [19:57:29] [19:57:29] Performing Suckit Rootkit additional checks [19:57:29] Checking hard link count on '/sbin/init' [ OK ] [19:57:29] Checking for hidden file extensions [ None found ] [19:57:29] Running skdet command [ Skipped ] [19:57:29] Info: Unable to find the 'skdet' command [19:57:29] Suckit Rootkit additional checks [ OK ] [19:57:29] [19:57:29] Info: Starting test name 'possible_rkt_files' [19:57:29] Performing check of possible rootkit files and directories [19:57:29] Checking for file '/dev/sdr0' [ Not found ] [19:57:29] Checking for file '/dev/pisu' [ Not found ] [19:57:29] Checking for file '/dev/xdta' [ Not found ] [19:57:29] Checking for file '/dev/saux' [ Not found ] [19:57:29] Checking for file '/dev/hdx' [ Not found ] [19:57:29] Checking for file '/dev/hdx1' [ Not found ] [19:57:29] Checking for file '/dev/hdx2' [ Not found ] [19:57:29] Checking for file '/dev/ptyy' [ Not found ] [19:57:30] Checking for file '/dev/ptyu' [ Not found ] [19:57:30] Checking for file '/dev/ptyv' [ Not found ] [19:57:30] Checking for file '/dev/hdbb' [ Not found ] [19:57:30] Checking for file '/tmp/.syshackfile' [ Not found ] [19:57:30] Checking for file '/tmp/.bash_history' [ Not found ] [19:57:30] Checking for file '/usr/info/.clib' [ Not found ] [19:57:30] Checking for file '/usr/sbin/tcp.log' [ Not found ] [19:57:30] Checking for file '/usr/bin/take/pid' [ Not found ] [19:57:30] Checking for file '/sbin/create' [ Not found ] [19:57:30] Checking for file '/dev/ttypz' [ Not found ] [19:57:30] Checking for file '/var/log/tcp.log' [ Not found ] [19:57:30] Checking for file '/usr/include/audit.h' [ Not found ] [19:57:30] Checking for file '/usr/bin/sourcemask' [ Not found ] [19:57:30] Checking for file '/usr/bin/ras2xm' [ Not found ] [19:57:30] Checking for file '/dev/xmx' [ Not found ] [19:57:30] Checking for file '/usr/sbin/gpm.root' [ Not found ] [19:57:30] Checking for file '/bin/vobiscum' [ Not found ] [19:57:30] Checking for file '/bin/psr' [ Not found ] [19:57:30] Checking for file '/dev/kdx' [ Not found ] [19:57:30] Checking for file '/dev/dkx' [ Not found ] [19:57:30] Checking for file '/usr/sbin/sshd3' [ Not found ] [19:57:30] Checking for file '/usr/sbin/jcd' [ Not found ] [19:57:30] Checking for file '/usr/sbin/atd2' [ Not found ] [19:57:30] Checking for file '/home/httpd/cgi-bin/linux.cgi' [ Not found ] [19:57:30] Checking for file '/home/httpd/cgi-bin/psid' [ Not found ] [19:57:30] Checking for file '/home/httpd/cgi-bin/void.cgi' [ Not found ] [19:57:30] Checking for file '/etc/rc.d/init.d/system' [ Not found ] [19:57:30] Checking for file '/etc/rc.d/rc3.d/S93users' [ Not found ] [19:57:30] Checking for file '/tmp/.ush' [ Not found ] [19:57:30] Checking for file '/usr/lib/libhidefile.so' [ Not found ] [19:57:30] Checking for file '/etc/cron.d/kmod' [ Not found ] [19:57:30] Checking for file '/usr/lib/dmis/dmisd' [ Not found ] [19:57:30] Checking for file '/lib/secure/libhij.so' [ Not found ] [19:57:30] Checking for file '/usr/sbin/sshd3' [ Not found ] [19:57:30] Checking for file '/etc/rc.d/init.d/crontab' [ Not found ] [19:57:30] Checking for file '/etc/rc.d/init.d/jcd' [ Not found ] [19:57:30] Checking for file '/usr/sbin/atd2' [ Not found ] [19:57:30] Checking for file '/etc/rc.d/rc5.d/S93users' [ Not found ] [19:57:30] Checking for file '/usr/include/mysql/mysql.hh1' [ Not found ] [19:57:31] Checking for file '/etc/init.d/xfs3' [ Not found ] [19:57:31] Checking for file '/usr/sbin/t.txt' [ Not found ] [19:57:31] Checking for file '/usr/sbin/change' [ Not found ] [19:57:31] Checking for file '/usr/sbin/s' [ Not found ] [19:57:31] Checking for file '/bin/f' [ Not found ] [19:57:31] Checking for file '/bin/i' [ Not found ] [19:57:31] Checking for file '/lib/libncom.so.4.0.1' [ Not found ] [19:57:31] Checking for file '/sbin/zinit' [ Not found ] [19:57:31] Checking for file '/tmp/pass_ssh.log' [ Not found ] [19:57:31] Checking for file '/usr/include/gpm2.h' [ Not found ] [19:57:31] Checking for file '/etc/ssh/.sshd_auth' [ Not found ] [19:57:31] Checking for file '/usr/lib/.sshd.h' [ Not found ] [19:57:31] Checking for file '/var/run/.defunct' [ Not found ] [19:57:31] Checking for file '/etc/httpd/run/.defunct' [ Not found ] [19:57:31] Checking for file '/usr/share/pci.r' [ Not found ] [19:57:31] Checking for file '/etc/cron.daily/dnsquery' [ Not found ] [19:57:31] Checking for file '/usr/lib/libutil1.2.1.2.so' [ Not found ] [19:57:31] Checking for file '/usr/lib/libppopen.so' [ Not found ] [19:57:31] Checking for file '/usr/include/libutil2.1.h' [ Not found ] [19:57:31] Checking for file '/usr/bin/munchhausen' [ Not found ] [19:57:31] Checking for file '/bin/ceva' [ Not found ] [19:57:31] Checking for file '/sbin/syslogd ' [ Not found ] [19:57:31] Checking for file '/usr/include/shup.h' [ Not found ] [19:57:31] Checking for file '/etc/rpm/sshdOLD' [ Not found ] [19:57:31] Checking for file '/etc/rpm/sshOLD' [ Not found ] [19:57:31] Checking for file '/usr/share/passwd.h' [ Not found ] [19:57:31] Checking for file '/lib/.xsyslog' [ Not found ] [19:57:31] Checking for file '/etc/.xsyslog' [ Not found ] [19:57:31] Checking for file '/lib/.ssyslog' [ Not found ] [19:57:31] Checking for file '/tmp/.sendmail' [ Not found ] [19:57:31] Checking for file '/usr/share/sshd.sync' [ Not found ] [19:57:31] Checking for file '/bin/zcut' [ Not found ] [19:57:31] Checking for file '/usr/bin/zmuie' [ Not found ] [19:57:31] Checking for file '/IptabLes' [ Not found ] [19:57:31] Checking for file '/.IptabLex' [ Not found ] [19:57:31] Checking for file '/boot/.IptabLex' [ Not found ] [19:57:31] Checking for file '/boot/.IptabLes' [ Not found ] [19:57:31] Checking for file '/boot/IptabLes' [ Not found ] [19:57:31] Checking for file '/tmp/IptabLes' [ Not found ] [19:57:31] Checking for file '/etc/rc.d/init.d/IptabLex' [ Not found ] [19:57:32] Checking for file '/etc/rc.d/init.d/IptabLes' [ Not found ] [19:57:32] Checking for file '/etc/rc.d/rc0.d/S55IptabLex' [ Not found ] [19:57:32] Checking for file '/etc/rc.d/rc1.d/S55IptabLex' [ Not found ] [19:57:32] Checking for file '/etc/rc.d/rc2.d/S55IptabLex' [ Not found ] [19:57:32] Checking for file '/etc/rc.d/rc3.d/S55IptabLex' [ Not found ] [19:57:32] Checking for file '/etc/rc.d/rc4.d/S55IptabLex' [ Not found ] [19:57:32] Checking for file '/etc/rc.d/rc5.d/S55IptabLex' [ Not found ] [19:57:32] Checking for file '/etc/rc.d/rc6.d/S55IptabLex' [ Not found ] [19:57:32] Checking for file '/var/lib/update-rc.d/IptabLex' [ Not found ] [19:57:32] Checking for file '/delallmykkk' [ Not found ] [19:57:32] Checking for file '/usr/.IptabLes' [ Not found ] [19:57:32] Checking for file '/usr/IptabLes' [ Not found ] [19:57:32] Checking for file '/tmp/.flush' [ Not found ] [19:57:32] Checking for file '/var/log/.flush' [ Not found ] [19:57:32] Checking for file '/usr/.flush' [ Not found ] [19:57:32] Checking for file '/etc/init.d/bluetoothdaemon' [ Not found ] [19:57:32] Checking for file '/usr/bin/btdaemon' [ Not found ] [19:57:32] Checking for file '/etc/rc1.d/S90bluetooth' [ Not found ] [19:57:32] Checking for file '/etc/rc2.d/S90bluetooth' [ Not found ] [19:57:32] Checking for file '/etc/rc3.d/S90bluetooth' [ Not found ] [19:57:32] Checking for file '/etc/rc4.d/S90bluetooth' [ Not found ] [19:57:32] Checking for file '/etc/rc5.d/S90bluetooth' [ Not found ] [19:57:32] Checking for file '/etc/rc6.d/S90bluetooth' [ Not found ] [19:57:32] Checking for file '/boot/pro' [ Not found ] [19:57:32] Checking for file '/boot/proh' [ Not found ] [19:57:32] Checking for file '/etc/atdd' [ Not found ] [19:57:32] Checking for file '/etc/atddd' [ Not found ] [19:57:32] Checking for file '/etc/cupsdd' [ Not found ] [19:57:32] Checking for file '/etc/cupsddd' [ Not found ] [19:57:32] Checking for file '/etc/cupsddh' [ Not found ] [19:57:32] Checking for file '/etc/dsfrefr' [ Not found ] [19:57:32] Checking for file '/etc/fdsfsfvff' [ Not found ] [19:57:32] Checking for file '/etc/ferwfrre' [ Not found ] [19:57:32] Checking for file '/etc/fwke.cfg' [ Not found ] [19:57:32] Checking for file '/etc/gdmorpen' [ Not found ] [19:57:32] Checking for file '/etc/gfhddsfew' [ Not found ] [19:57:32] Checking for file '/etc/gfhjrtfyhuf' [ Not found ] [19:57:32] Checking for file '/etc/ksapd' [ Not found ] [19:57:32] Checking for file '/etc/ksapdd' [ Not found ] [19:57:32] Checking for file '/etc/kysapd' [ Not found ] [19:57:33] Checking for file '/etc/kysapdd' [ Not found ] [19:57:33] Checking for file '/etc/rewgtf3er4t' [ Not found ] [19:57:33] Checking for file '/etc/sdmfdsfhjfe' [ Not found ] [19:57:33] Checking for file '/etc/sfewfesfs' [ Not found ] [19:57:33] Checking for file '/etc/sfewfesfsh' [ Not found ] [19:57:33] Checking for file '/etc/sksapd' [ Not found ] [19:57:33] Checking for file '/etc/sksapdd' [ Not found ] [19:57:33] Checking for file '/etc/skysapd' [ Not found ] [19:57:33] Checking for file '/etc/skysapdd' [ Not found ] [19:57:33] Checking for file '/etc/smarvtd' [ Not found ] [19:57:33] Checking for file '/etc/whitptabil' [ Not found ] [19:57:33] Checking for file '/etc/xfsdx' [ Not found ] [19:57:33] Checking for file '/etc/xfsdxd' [ Not found ] [19:57:33] Checking for file '/tmp/bill.lock' [ Not found ] [19:57:33] Checking for file '/tmp/gates.lock' [ Not found ] [19:57:33] Checking for file '/tmp/gates.lod' [ Not found ] [19:57:33] Checking for file '/tmp/moni.lock' [ Not found ] [19:57:33] Checking for file '/tmp/moni.lod' [ Not found ] [19:57:33] Checking for file '/tmp/notify.file' [ Not found ] [19:57:33] Checking for file '/usr/bin/.sshd' [ Not found ] [19:57:33] Checking for file '/usr/bin/bsd-port/getty' [ Not found ] [19:57:33] Checking for file '/usr/bin/bsd-port/getty.lock' [ Not found ] [19:57:33] Checking for file '/usr/bin/bsd-port/udevd.lock' [ Not found ] [19:57:33] Checking for file '/usr/bin/pojie' [ Not found ] [19:57:33] Checking for file '/usr/lib/libamplify.so' [ Not found ] [19:57:33] Checking for file '/etc/init.d/DbSecuritySpt' [ Not found ] [19:57:33] Checking for file '/etc/rc.d/init.d/DbSecuritySpt' [ Not found ] [19:57:33] Checking for file '/etc/cron.hourly/gcc.sh' [ Not found ] [19:57:33] Checking for file '/root/2016ttfacai' [ Not found ] [19:57:33] Checking for file '/proc/rs_dev' [ Not found ] [19:57:33] Checking for file '/var/run/sftp.pid' [ Not found ] [19:57:33] Checking for file '/var/run/udev.pid' [ Not found ] [19:57:33] Checking for file '/var/run/mount.pid' [ Not found ] [19:57:33] Checking for file '/etc/cron.hourly/cron.sh' [ Not found ] [19:57:33] Checking for file '/etc/cron.hourly/udev.sh' [ Not found ] [19:57:33] Checking for file '/etc/cron.hourly/udev.sh' [ Not found ] [19:57:33] Checking for file '/lib/libgcc.so' [ Not found ] [19:57:33] Checking for file '/lib/libgcc.so.bak' [ Not found ] [19:57:33] Checking for file '/lib/libgcc4.so' [ Not found ] [19:57:34] Checking for file '/lib/libgcc4.4.so' [ Not found ] [19:57:34] Checking for file '/lib/udev/udev' [ Not found ] [19:57:34] Checking for file '/lib/udev/debug' [ Not found ] [19:57:34] Checking for directory '/dev/ptyas' [ Not found ] [19:57:34] Checking for directory '/usr/bin/take' [ Not found ] [19:57:34] Checking for directory '/usr/src/.lib' [ Not found ] [19:57:34] Checking for directory '/usr/share/man/man1/.1c' [ Not found ] [19:57:34] Checking for directory '/lib/lblip.tk' [ Not found ] [19:57:34] Checking for directory '/usr/sbin/...' [ Not found ] [19:57:34] Checking for directory '/usr/share/.gun' [ Not found ] [19:57:34] Checking for directory '/unde/vrei/tu/sa/te/ascunzi/in/server' [ Not found ] [19:57:34] Checking for directory '/usr/man/man1/.. /.dir' [ Not found ] [19:57:34] Checking for directory '/usr/X11R6/include/X11/...' [ Not found ] [19:57:34] Checking for directory '/usr/X11R6/lib/X11/.fonts/misc/...' [ Not found ] [19:57:34] Checking for directory '/tmp/.sys' [ Not found ] [19:57:34] Checking for directory '/tmp/'' [ Not found ] [19:57:34] Checking for directory '/tmp/.,' [ Not found ] [19:57:34] Checking for directory '/tmp/,.,' [ Not found ] [19:57:34] Checking for directory '/dev/shm/emilien' [ Not found ] [19:57:34] Checking for directory '/var/tmp/.log' [ Not found ] [19:57:34] Checking for directory '/tmp/zmeu/... ' [ Not found ] [19:57:34] Checking for directory '/var/log/ssh' [ Not found ] [19:57:34] Checking for directory '/dev/ida' [ Not found ] [19:57:34] Checking for directory '/var/lib/games/.src/ssk/shit' [ Not found ] [19:57:34] Checking for directory '/usr/lib/libshtift' [ Not found ] [19:57:34] Checking for directory '/usr/src/.poop' [ Not found ] [19:57:34] Checking for directory '/dev/wd4' [ Not found ] [19:57:34] Checking for directory '/var/run/.tmp' [ Not found ] [19:57:34] Checking for directory '/usr/man/man1/lib/.lib' [ Not found ] [19:57:34] Checking for directory '/dev/portd' [ Not found ] [19:57:34] Checking for directory '/dev/...' [ Not found ] [19:57:34] Checking for directory '/usr/share/man/mansps' [ Not found ] [19:57:34] Checking for directory '/lib/.so' [ Not found ] [19:57:34] Checking for directory '/lib/.sso' [ Not found ] [19:57:34] Checking for directory '/usr/include/sslv3' [ Not found ] [19:57:34] Checking for directory '/dev/shm/sshd' [ Not found ] [19:57:34] Checking for directory '/usr/share/locale/mk/.dev/sk' [ Not found ] [19:57:34] Checking for directory '/usr/share/locale/mk/.dev' [ Not found ] [19:57:34] Checking for directory '/usr/include/netda.h' [ Not found ] [19:57:34] Checking for directory '/usr/include/.ssh' [ Not found ] [19:57:35] Checking for directory '/usr/share/locale/jp/. ' [ Not found ] [19:57:35] Checking for directory '/usr/share/.sqe' [ Not found ] [19:57:35] Checking for possible rootkit files and directories [ None found ] [19:57:35] [19:57:35] Info: Starting test name 'possible_rkt_strings' [19:57:35] Performing check for possible rootkit strings [19:57:35] Info: Using system startup paths: /etc/rc.d /etc/inittab /etc/systemd/system [19:57:35] Checking for string 'LOGNAME=root' [ Not found ] [19:57:35] Checking for string 'phalanx' [ Not found ] [19:57:35] Checking for string '/dev/proc/fuckit' [ Not found ] [19:57:35] Checking for string 'FUCK' [ Not found ] [19:57:35] Checking for string 'backdoor' [ Not found ] [19:57:35] Checking for string '/usr/bin/rcpc' [ Not found ] [19:57:35] Checking for string '/usr/sbin/login' [ Not found ] [19:57:35] Checking for string 'vt200' [ Not found ] [19:57:35] Checking for string '/usr/bin/xstat' [ Not found ] [19:57:35] Checking for string '/bin/envpc' [ Not found ] [19:57:35] Checking for string 'L4m3r0x' [ Not found ] [19:57:35] Checking for string '/lib/libext' [ Not found ] [19:57:35] Checking for string '/usr/sbin/login' [ Not found ] [19:57:35] Checking for string '/usr/lib/.tbd' [ Not found ] [19:57:35] Checking for string 'sendmail' [ Not found ] [19:57:35] Checking for string 'cocacola' [ Not found ] [19:57:35] Checking for string 'joao' [ Not found ] [19:57:35] Checking for string '/dev/ptyxx/.file' [ Not found ] [19:57:35] Checking for string '/dev/ptyxx/.file' [ Not found ] [19:57:35] Checking for string '/dev/sgk' [ Not found ] [19:57:35] Checking for string '/var/lock/subsys/...datafile...' [ Not found ] [19:57:35] Checking for string '/usr/lib/.tbd' [ Not found ] [19:57:35] Checking for string '/dev/proc/fuckit' [ Not found ] [19:57:35] Checking for string '/lib/.sso' [ Not found ] [19:57:35] Checking for string '/var/lock/subsys/...datafile...' [ Not found ] [19:57:35] Checking for string '/dev/caca' [ Not found ] [19:57:35] Checking for string '/dev/ttyoa' [ Not found ] [19:57:35] Checking for string '/usr/lib/ldlibns.so' [ Not found ] [19:57:35] Checking for string '/dev/ptyxx/.addr' [ Not found ] [19:57:35] Checking for string 'syg' [ Not found ] [19:57:36] Checking for string '/var/lock/subsys/...datafile...' [ Not found ] [19:57:36] Checking for string '/dev/pts/01' [ Not found ] [19:57:36] Checking for string 'tw33dl3' [ Not found ] [19:57:36] Checking for string 'psniff' [ Not found ] [19:57:36] Checking for string 'uconf.inv' [ Not found ] [19:57:36] Checking for string 'lib/ldlibps.so' [ Not found ] [19:57:36] Checking for string 'libproc.so.2.0.7' [ Not found ] [19:57:36] Checking for string '/dev/ptyxx/.proc' [ Not found ] [19:57:36] Checking for string 'libproc.so.2.0.7' [ Not found ] [19:57:36] Checking for string 'libproc.so.2.0.7' [ Not found ] [19:57:36] Checking for string '/bin/bash' [ Not found ] [19:57:36] Checking for string '/dev/ptyxx' [ Not found ] [19:57:36] Checking for string '/.config' [ Not found ] [19:57:36] Checking for string '\$.*\$\!.*\!\!\$' [ Not found ] [19:57:36] Checking for string 'backdoor.h' [ Not found ] [19:57:36] Checking for string 'backdoor_active' [ Not found ] [19:57:36] Checking for string 'magic_pass_active' [ Not found ] [19:57:36] Checking for string '/usr/include/gpm2.h' [ Not found ] [19:57:36] Checking for string '/usr/include/openssl' [ Not found ] [19:57:36] Checking for string 'aion' [ Not found ] [19:57:36] Checking for string 'pcszPass' [ Not found ] [19:57:36] Checking for string 'LogPass' [ Not found ] [19:57:36] Checking for string 'Login_Check' [ Not found ] [19:57:36] Checking for string 'includes.h' [ Not found ] [19:57:36] Checking for string 'DecodeString' [ Not found ] [19:57:36] Checking for string 'EncodeString' [ Not found ] [19:57:36] Checking for string 'libns2.so' [ Not found ] [19:57:36] Checking for string 'libns5.so' [ Not found ] [19:57:36] Checking for string 'libpw3.so' [ Not found ] [19:57:36] Checking for string 'libpw5.so' [ Not found ] [19:57:36] Checking for string 'libsbr.so' [ Not found ] [19:57:36] Checking for string 'libslr.so' [ Not found ] [19:57:37] Checking for string '/usr/lib/.tbd' [ Not found ] [19:57:37] Checking for string '/dev/ptyxx/.proc' [ Not found ] [19:57:37] Checking for string 'in.inetd' [ Not found ] [19:57:37] Checking for string '# ' [ Not found ] [19:57:37] Checking for string 'bin/xchk' [ Not found ] [19:57:37] Checking for string 'bin/xsf' [ Not found ] [19:57:37] Checking for string '/usr/bin/ssh2d' [ Not found ] [19:57:38] Checking for string '/usr/sbin/xntps' [ Not found ] [19:57:38] Checking for string 'ttyload' [ Not found ] [19:57:38] Checking for string '/etc/rc.d/init.d/init' [ Not found ] [19:57:38] Checking for string 'usr/bin/xfss' [ Not found ] [19:57:38] Checking for string '/usr/sbin/rpc.netinet' [ Not found ] [19:57:38] Checking for string '/usr/lib/.fx/cons.saver' [ Not found ] [19:57:38] Checking for string '/usr/lib/.fx/xs' [ Not found ] [19:57:38] Checking for string '/ssh2d' [ Not found ] [19:57:39] Checking for string '/dev/kmod' [ Not found ] [19:57:39] Checking for string '/crth.o' [ Not found ] [19:57:39] Checking for string '/crtz.o' [ Not found ] [19:57:39] Checking for string '/dev/dos' [ Not found ] [19:57:39] Checking for string '/lpq' [ Not found ] [19:57:39] Checking for string '/usr/sbin/rescue' [ Not found ] [19:57:39] Checking for string '/usr/lib/lpstart' [ Not found ] [19:57:40] Checking for string '/volc' [ Not found ] [19:57:40] Checking for string 'sourcemask' [ Not found ] [19:57:40] Checking for string '/bin/vobiscum' [ Not found ] [19:57:40] Checking for string '/usr/sbin/in.telnet' [ Not found ] [19:57:40] Checking for string '/usr/bin/hdparm?-t1?-X53?-p' [ Not found ] [19:57:40] Checking for string '/lib/.xsyslog' [ Not found ] [19:57:40] Checking for string '/etc/.xsyslog' [ Not found ] [19:57:41] Checking for string '/lib/.ssyslog' [ Not found ] [19:57:41] Checking for string '/tmp/.sendmail' [ Not found ] [19:57:41] Checking for string 'IptabLex' [ Not found ] [19:57:41] Checking for string 'IptabLes' [ Not found ] [19:57:41] Checking for string '/lib/ldd.so/tkps' [ Not found ] [19:57:41] Checking for string 't0rnkit' [ Not found ] [19:57:41] Checking for string '/dev/proc/fuckit' [ Not found ] [19:57:41] Checking for string 'backdoor.h' [ Not found ] [19:57:41] Checking for string 'backdoor_active' [ Not found ] [19:57:41] Checking for string 'magic_pass_active' [ Not found ] [19:57:41] Checking for string '/usr/include/gpm2.h' [ Not found ] [19:57:41] Checking for string 'libproc.so.2.0.7' [ Not found ] [19:57:41] Checking for string 'libproc.so.2.0.7' [ Not found ] [19:57:41] Checking for string 'libproc.so.2.0.7' [ Not found ] [19:57:41] Checking for string '/usr/lib/ldlibdu.so' [ Not found ] [19:57:41] Checking for string '/dev/ptyxx/.file' [ Not found ] [19:57:41] Checking for string 'libproc.so.2.0.7' [ Not found ] [19:57:41] Checking for string '/usr/include/mysql/mysql.hh1' [ Not found ] [19:57:41] Checking for string '/usr/include/mysql/mysql.hh1' [ Not found ] [19:57:41] Checking for string '/usr/include/mysql/mysql.hh1' [ Not found ] [19:57:42] Checking for string '/usr/include/mysql/mysql.hh1' [ Not found ] [19:57:42] Checking for string '/usr/include/mysql/mysql.hh1' [ Not found ] [19:57:42] Checking for string '/usr/include/mysql/mysql.hh1' [ Not found ] [19:57:42] Checking for string 'backconnect' [ Not found ] [19:57:42] Checking for string 'magic?packet?received' [ Not found ] [19:57:42] Checking for possible rootkit strings [ None found ] [19:57:42] [19:57:42] Info: Starting test name 'malware' [19:57:42] Performing malware checks [19:57:42] [19:57:42] Info: Test 'deleted_files' disabled at users request. [19:57:42] [19:57:42] Info: Starting test name 'running_procs' [19:57:42] Checking running processes for suspicious files [ None found ] [19:57:42] [19:57:42] Info: Starting test name 'hidden_procs' [19:57:42] Info: Unable to find the 'unhide' command [19:57:42] Info: Unable to find the 'unhide-linux' command [19:57:42] Checking for hidden processes [ Skipped ] [19:57:42] [19:57:42] Info: Test 'suspscan' disabled at users request. [19:57:42] [19:57:42] Info: Starting test name 'login_backdoors' [19:57:42] Checking for '/bin/.login' [ Not found ] [19:57:42] Checking for '/sbin/.login' [ Not found ] [19:57:42] Checking for login backdoors [ None found ] [19:57:42] [19:57:42] Info: Starting test name 'sniffer_logs' [19:57:42] Checking for file '/usr/lib/libice.log' [ Not found ] [19:57:42] Checking for file '/dev/prom/sn.l' [ Not found ] [19:57:42] Checking for file '/dev/fd/.88/zxsniff.log' [ Not found ] [19:57:42] Checking for sniffer log files [ None found ] [19:57:42] [19:57:42] Info: Starting test name 'tripwire' [19:57:42] Checking for software intrusions [ Skipped ] [19:57:42] Info: Check skipped - tripwire not installed [19:57:42] [19:57:42] Info: Starting test name 'susp_dirs' [19:57:42] Checking for directory '/usr/X11R6/bin/.,/copy' [ Not found ] [19:57:42] Checking for directory '/dev/rd/cdb' [ Not found ] [19:57:42] Checking for suspicious directories [ None found ] [19:57:42] [19:57:42] Info: Test 'ipc_shared_mem' disabled at users request. [19:57:42] [19:57:42] Info: Starting test name 'trojans' [19:57:43] Performing trojan specific checks [19:57:43] Checking for enabled inetd services [ Skipped ] [19:57:43] Info: Check skipped - file '/etc/inetd.conf' does not exist. [19:57:43] Checking for enabled xinetd services [ Skipped ] [19:57:43] Info: Check skipped - file '/etc/xinetd.conf' does not exist. [19:57:43] Checking for Apache backdoor [ Not found ] [19:57:43] [19:57:43] Info: Starting test name 'os_specific' [19:57:43] Performing Linux specific checks [19:57:43] Checking loaded kernel modules [ OK ] [19:57:43] Info: Using modules pathname of '/lib/modules/3.10.0-1160.88.1.el7.x86_64' [19:57:43] Checking kernel module names [ OK ] [19:57:43] [19:57:43] Info: Starting test name 'network' [19:57:43] Checking the network... [19:57:43] [19:57:43] Performing checks on the network ports [19:57:43] Info: Starting test name 'ports' [19:57:43] Performing check for backdoor ports [19:57:43] Checking for TCP port 1524 [ Not found ] [19:57:43] Checking for TCP port 1984 [ Not found ] [19:57:43] Checking for UDP port 2001 [ Not found ] [19:57:43] Checking for TCP port 2006 [ Not found ] [19:57:43] Checking for TCP port 2128 [ Not found ] [19:57:43] Checking for TCP port 6666 [ Not found ] [19:57:43] Checking for TCP port 6667 [ Not found ] [19:57:43] Checking for TCP port 6668 [ Not found ] [19:57:43] Checking for TCP port 6669 [ Not found ] [19:57:43] Checking for TCP port 7000 [ Not found ] [19:57:43] Checking for TCP port 13000 [ Not found ] [19:57:43] Checking for TCP port 14856 [ Not found ] [19:57:43] Checking for TCP port 25000 [ Not found ] [19:57:43] Checking for TCP port 29812 [ Not found ] [19:57:43] Checking for TCP port 31337 [ Not found ] [19:57:43] Checking for TCP port 32982 [ Not found ] [19:57:43] Checking for TCP port 33369 [ Not found ] [19:57:43] Checking for TCP port 47107 [ Not found ] [19:57:43] Checking for TCP port 47018 [ Not found ] [19:57:43] Checking for TCP port 60922 [ Not found ] [19:57:43] Checking for TCP port 62883 [ Not found ] [19:57:43] Checking for TCP port 65535 [ Not found ] [19:57:43] Checking for backdoor ports [ None found ] [19:57:44] [19:57:44] Info: Test 'hidden_ports' disabled at users request. [19:57:44] [19:57:44] Performing checks on the network interfaces [19:57:44] Info: Starting test name 'promisc' [19:57:44] Checking for promiscuous interfaces [ None found ] [19:57:44] [19:57:44] Info: Test 'packet_cap_apps' disabled at users request. [19:57:44] [19:57:44] Info: Starting test name 'local_host' [19:57:44] Checking the local host... [19:57:44] [19:57:44] Info: Starting test name 'startup_files' [19:57:44] Performing system boot checks [19:57:44] Checking for local host name [ Found ] [19:57:44] [19:57:44] Info: Starting test name 'startup_malware' [19:57:44] Checking for system startup files [ Found ] [19:57:44] Checking system startup files for malware [ None found ] [19:57:44] [19:57:44] Info: Starting test name 'group_accounts' [19:57:44] Performing group and account checks [19:57:44] Checking for passwd file [ Found ] [19:57:44] Info: Found password file: /etc/passwd [19:57:44] Checking for root equivalent (UID 0) accounts [ None found ] [19:57:44] Info: Found shadow file: /etc/shadow [19:57:44] Checking for passwordless accounts [ None found ] [19:57:44] [19:57:44] Info: Starting test name 'passwd_changes' [19:57:44] Checking for passwd file changes [ None found ] [19:57:44] [19:57:44] Info: Starting test name 'group_changes' [19:57:44] Checking for group file changes [ None found ] [19:57:44] Checking root account shell history files [ OK ] [19:57:44] [19:57:44] Info: Starting test name 'system_configs' [19:57:44] Performing system configuration file checks [19:57:44] [19:57:44] Info: Starting test name 'system_configs_ssh' [19:57:44] Checking for an SSH configuration file [ Found ] [19:57:44] Info: Found an SSH configuration file: /etc/ssh/sshd_config [19:57:44] Info: Rkhunter option ALLOW_SSH_ROOT_USER set to 'unset'. [19:57:44] Info: Rkhunter option ALLOW_SSH_PROT_V1 set to '2'. [19:57:44] Checking if SSH root access is allowed [ Not set ] [19:57:44] Checking if SSH protocol v1 is allowed [ Not set ] [19:57:44] Checking for other suspicious configuration settings [ None found ] [19:57:45] [19:57:45] Info: Starting test name 'system_configs_syslog' [19:57:45] Checking for a running system logging daemon [ Found ] [19:57:45] Info: A running 'rsyslog' daemon has been found. [19:57:45] Info: A running 'systemd-journald' daemon has been found. [19:57:45] Info: Found an rsyslog configuration file: /etc/rsyslog.conf [19:57:45] Info: Found a systemd configuration file: /etc/systemd/journald.conf [19:57:45] Checking for a system logging configuration file [ Found ] [19:57:45] Checking if syslog remote logging is allowed [ Not allowed ] [19:57:45] [19:57:45] Info: Starting test name 'filesystem' [19:57:45] Performing filesystem checks [19:57:45] Info: SCAN_MODE_DEV set to 'THOROUGH' [19:57:46] Checking /dev for suspicious file types [ None found ] [19:57:46] Info: Found hidden file '/etc/.updated': it is whitelisted. [19:57:46] Info: Found hidden file '/usr/share/man/man1/..1.gz': it is whitelisted. [19:57:46] Info: Found hidden file '/usr/share/man/man5/.k5identity.5.gz': it is whitelisted. [19:57:46] Info: Found hidden file '/usr/share/man/man5/.k5login.5.gz': it is whitelisted. [19:57:46] Checking for hidden files and directories [ None found ] [19:57:46] Checking for missing log files [ Skipped ] [19:57:46] Info: No missing log file names configured. [19:57:46] Checking for empty log files [ Skipped ] [19:57:46] Info: No empty log file names configured. [19:57:46] [19:57:46] Info: Test 'apps' disabled at users request. [19:57:46] [19:57:46] System checks summary [19:57:46] ===================== [19:57:46] [19:57:46] File properties checks... [19:57:46] Required commands check failed [19:57:46] Files checked: 128 [19:57:46] Suspect files: 5 [19:57:46] [19:57:46] Rootkit checks... [19:57:46] Rootkits checked : 490 [19:57:46] Possible rootkits: 0 [19:57:46] [19:57:46] Applications checks... [19:57:46] All checks skipped [19:57:46] [19:57:46] The system checks took: 45 seconds [19:57:46] [19:57:46] Info: End date is 2023年 4月 28日 金曜日 19:57:46 JST [20:07:57] Running Rootkit Hunter version 1.4.6 on cent79 [20:07:57] [20:07:57] Info: Start date is 2023年 4月 28日 金曜日 20:07:57 JST [20:07:57] [20:07:57] Checking configuration file and command-line options... [20:07:57] Info: Detected operating system is 'Linux' [20:07:57] Info: Uname output is 'Linux cent79.home.ycos 3.10.0-1160.88.1.el7.x86_64 #1 SMP Tue Mar 7 15:41:52 UTC 2023 x86_64 x86_64 x86_64 GNU/Linux' [20:07:57] Info: Command line is /usr/bin/rkhunter --check --createlogfile [20:07:57] Info: Environment shell is /bin/bash; rkhunter is using bash [20:07:57] Info: Using configuration file '/etc/rkhunter.conf' [20:07:57] Info: Installation directory is '/usr' [20:07:57] Info: Using language 'en' [20:07:57] Info: Using '/var/lib/rkhunter/db' as the database directory [20:07:57] Info: Using '/usr/share/rkhunter/scripts' as the support script directory [20:07:58] Info: Using '/usr/local/bin /usr/bin /usr/local/sbin /usr/sbin /home/student/bin /bin /sbin /usr/libexec /usr/local/libexec' as the command directories [20:07:58] Info: Using '/var/lib/rkhunter' as the temporary directory [20:07:58] Info: No mail-on-warning address configured [20:07:58] Info: X will be automatically detected [20:07:58] Info: Found the 'basename' command: /usr/bin/basename [20:07:58] Info: Found the 'diff' command: /usr/bin/diff [20:07:58] Info: Found the 'dirname' command: /usr/bin/dirname [20:07:58] Info: Found the 'file' command: /usr/bin/file [20:07:58] Info: Found the 'find' command: /usr/bin/find [20:07:58] Info: Found the 'ifconfig' command: /usr/sbin/ifconfig [20:07:58] Info: Found the 'ip' command: /usr/sbin/ip [20:07:58] Info: Found the 'ipcs' command: /usr/bin/ipcs [20:07:58] Info: Found the 'ldd' command: /usr/bin/ldd [20:07:58] Info: Found the 'lsattr' command: /usr/bin/lsattr [20:07:58] Info: Found the 'lsmod' command: /usr/sbin/lsmod [20:07:58] Info: Found the 'lsof' command: /usr/sbin/lsof [20:07:58] Info: Found the 'mktemp' command: /usr/bin/mktemp [20:07:58] Info: Found the 'netstat' command: /usr/bin/netstat [20:07:58] Info: Found the 'numfmt' command: /usr/bin/numfmt [20:07:58] Info: Found the 'perl' command: /usr/bin/perl [20:07:58] Info: Found the 'pgrep' command: /usr/bin/pgrep [20:07:58] Info: Found the 'ps' command: /usr/bin/ps [20:07:58] Info: Found the 'pwd' command: /usr/bin/pwd [20:07:58] Info: Found the 'readlink' command: /usr/bin/readlink [20:07:58] Info: Found the 'stat' command: /usr/bin/stat [20:07:58] Info: Found the 'strings' command: /usr/bin/strings [20:07:58] Info: System is not using prelinking [20:07:58] Info: Using the '/usr/bin/sha256sum' command for the file hash checks [20:07:58] Info: The hash function field index is set to 1 [20:07:58] Info: Using package manager 'RPM' for file property checks [20:07:58] Info: Found the 'rpm' command: /usr/bin/rpm [20:07:58] Info: Previous file attributes were stored [20:07:58] Info: Enabled tests are: all [20:07:58] Info: Disabled tests are: suspscan hidden_ports deleted_files packet_cap_apps apps ipc_shared_mem [20:07:58] Info: Current logging will be appended to the log file [20:07:58] Info: Found kernel symbols file '/proc/kallsyms' [20:07:58] Info: Using 'date' to process epoch second times [20:07:58] Info: Locking is not being used [20:07:58] [20:07:58] Starting system checks... [20:07:58] [20:07:58] Info: Starting test name 'system_commands' [20:07:58] Checking system commands... [20:07:58] [20:07:58] Info: Starting test name 'strings' [20:07:58] Performing 'strings' command checks [20:07:58] Scanning for string /usr/sbin/ntpsx [ OK ] [20:07:58] Scanning for string /usr/sbin/.../bkit-ava [ OK ] [20:07:58] Scanning for string /usr/sbin/.../bkit-d [ OK ] [20:07:58] Scanning for string /usr/sbin/.../bkit-shd [ OK ] [20:07:58] Scanning for string /usr/sbin/.../bkit-f [ OK ] [20:07:58] Scanning for string /usr/include/.../proc.h [ OK ] [20:07:58] Scanning for string /usr/include/.../.bash_history [ OK ] [20:07:58] Scanning for string /usr/include/.../bkit-get [ OK ] [20:07:58] Scanning for string /usr/include/.../bkit-dl [ OK ] [20:07:58] Scanning for string /usr/include/.../bkit-screen [ OK ] [20:07:58] Scanning for string /usr/include/.../bkit-sleep [ OK ] [20:07:58] Scanning for string /usr/lib/.../bkit-adore.o [ OK ] [20:07:58] Scanning for string /usr/lib/.../ls [ OK ] [20:07:58] Scanning for string /usr/lib/.../netstat [ OK ] [20:07:58] Scanning for string /usr/lib/.../lsof [ OK ] [20:07:58] Scanning for string /usr/lib/.../bkit-ssh/bkit-shdcfg [ OK ] [20:07:58] Scanning for string /usr/lib/.../bkit-ssh/bkit-shhk [ OK ] [20:07:58] Scanning for string /usr/lib/.../bkit-ssh/bkit-pw [ OK ] [20:07:58] Scanning for string /usr/lib/.../bkit-ssh/bkit-shrs [ OK ] [20:07:58] Scanning for string /usr/lib/.../bkit-ssh/bkit-mots [ OK ] [20:07:58] Scanning for string /usr/lib/.../uconf.inv [ OK ] [20:07:58] Scanning for string /usr/lib/.../psr [ OK ] [20:07:58] Scanning for string /usr/lib/.../find [ OK ] [20:07:58] Scanning for string /usr/lib/.../pstree [ OK ] [20:07:58] Scanning for string /usr/lib/.../slocate [ OK ] [20:07:58] Scanning for string /usr/lib/.../du [ OK ] [20:07:58] Scanning for string /usr/lib/.../top [ OK ] [20:07:58] Scanning for string /usr/sbin/... [ OK ] [20:07:58] Scanning for string /usr/include/... [ OK ] [20:07:58] Scanning for string /usr/include/.../.tmp [ OK ] [20:07:58] Scanning for string /usr/lib/... [ OK ] [20:07:58] Scanning for string /usr/lib/.../.ssh [ OK ] [20:07:58] Scanning for string /usr/lib/.../bkit-ssh [ OK ] [20:07:59] Scanning for string /usr/lib/.bkit- [ OK ] [20:07:59] Scanning for string /tmp/.bkp [ OK ] [20:07:59] Scanning for string /tmp/.cinik [ OK ] [20:07:59] Scanning for string /tmp/.font-unix/.cinik [ OK ] [20:07:59] Scanning for string /lib/.sso [ OK ] [20:07:59] Scanning for string /lib/.so [ OK ] [20:07:59] Scanning for string /var/run/...dica/clean [ OK ] [20:07:59] Scanning for string /var/run/...dica/dxr [ OK ] [20:07:59] Scanning for string /var/run/...dica/read [ OK ] [20:07:59] Scanning for string /var/run/...dica/write [ OK ] [20:07:59] Scanning for string /var/run/...dica/lf [ OK ] [20:07:59] Scanning for string /var/run/...dica/xl [ OK ] [20:07:59] Scanning for string /var/run/...dica/xdr [ OK ] [20:07:59] Scanning for string /var/run/...dica/psg [ OK ] [20:07:59] Scanning for string /var/run/...dica/secure [ OK ] [20:07:59] Scanning for string /var/run/...dica/rdx [ OK ] [20:07:59] Scanning for string /var/run/...dica/va [ OK ] [20:07:59] Scanning for string /var/run/...dica/cl.sh [ OK ] [20:07:59] Scanning for string /var/run/...dica/last.log [ OK ] [20:07:59] Scanning for string /usr/bin/.etc [ OK ] [20:07:59] Scanning for string /etc/sshd_config [ OK ] [20:07:59] Scanning for string /etc/ssh_host_key [ OK ] [20:07:59] Scanning for string /etc/ssh_random_seed [ OK ] [20:07:59] Scanning for string /dev/ptyp [ OK ] [20:07:59] Scanning for string /dev/ptyq [ OK ] [20:07:59] Scanning for string /dev/ptyr [ OK ] [20:07:59] Scanning for string /dev/ptys [ OK ] [20:07:59] Scanning for string /dev/ptyt [ OK ] [20:07:59] Scanning for string /dev/fd/.88/freshb-bsd [ OK ] [20:07:59] Scanning for string /dev/fd/.88/fresht [ OK ] [20:07:59] Scanning for string /dev/fd/.88/zxsniff [ OK ] [20:07:59] Scanning for string /dev/fd/.88/zxsniff.log [ OK ] [20:07:59] Scanning for string /dev/fd/.99/.ttyf00 [ OK ] [20:07:59] Scanning for string /dev/fd/.99/.ttyp00 [ OK ] [20:07:59] Scanning for string /dev/fd/.99/.ttyq00 [ OK ] [20:07:59] Scanning for string /dev/fd/.99/.ttys00 [ OK ] [20:07:59] Scanning for string /dev/fd/.99/.pwsx00 [ OK ] [20:07:59] Scanning for string /etc/.acid [ OK ] [20:07:59] Scanning for string /usr/lib/.fx/sched_host.2 [ OK ] [20:07:59] Scanning for string /usr/lib/.fx/random_d.2 [ OK ] [20:07:59] Scanning for string /usr/lib/.fx/set_pid.2 [ OK ] [20:07:59] Scanning for string /usr/lib/.fx/setrgrp.2 [ OK ] [20:07:59] Scanning for string /usr/lib/.fx/TOHIDE [ OK ] [20:07:59] Scanning for string /usr/lib/.fx/cons.saver [ OK ] [20:07:59] Scanning for string /usr/lib/.fx/adore/ava/ava [ OK ] [20:07:59] Scanning for string /usr/lib/.fx/adore/adore/adore.ko [ OK ] [20:07:59] Scanning for string /bin/sysback [ OK ] [20:07:59] Scanning for string /usr/local/bin/sysback [ OK ] [20:07:59] Scanning for string /usr/lib/.tbd [ OK ] [20:07:59] Scanning for string /dev/.lib/lib/lib/t0rns [ OK ] [20:07:59] Scanning for string /dev/.lib/lib/lib/du [ OK ] [20:07:59] Scanning for string /dev/.lib/lib/lib/ls [ OK ] [20:07:59] Scanning for string /dev/.lib/lib/lib/t0rnsb [ OK ] [20:08:00] Scanning for string /dev/.lib/lib/lib/ps [ OK ] [20:08:00] Scanning for string /dev/.lib/lib/lib/t0rnp [ OK ] [20:08:00] Scanning for string /dev/.lib/lib/lib/find [ OK ] [20:08:00] Scanning for string /dev/.lib/lib/lib/ifconfig [ OK ] [20:08:00] Scanning for string /dev/.lib/lib/lib/pg [ OK ] [20:08:00] Scanning for string /dev/.lib/lib/lib/ssh.tgz [ OK ] [20:08:00] Scanning for string /dev/.lib/lib/lib/top [ OK ] [20:08:00] Scanning for string /dev/.lib/lib/lib/sz [ OK ] [20:08:00] Scanning for string /dev/.lib/lib/lib/login [ OK ] [20:08:00] Scanning for string /dev/.lib/lib/lib/in.fingerd [ OK ] [20:08:00] Scanning for string /dev/.lib/lib/lib/1i0n.sh [ OK ] [20:08:00] Scanning for string /dev/.lib/lib/lib/pstree [ OK ] [20:08:00] Scanning for string /dev/.lib/lib/lib/in.telnetd [ OK ] [20:08:00] Scanning for string /dev/.lib/lib/lib/mjy [ OK ] [20:08:00] Scanning for string /dev/.lib/lib/lib/sush [ OK ] [20:08:00] Scanning for string /dev/.lib/lib/lib/tfn [ OK ] [20:08:00] Scanning for string /dev/.lib/lib/lib/name [ OK ] [20:08:00] Scanning for string /dev/.lib/lib/lib/getip.sh [ OK ] [20:08:00] Scanning for string /usr/info/.torn/sh* [ OK ] [20:08:00] Scanning for string /usr/src/.puta/.1addr [ OK ] [20:08:00] Scanning for string /usr/src/.puta/.1file [ OK ] [20:08:00] Scanning for string /usr/src/.puta/.1proc [ OK ] [20:08:00] Scanning for string /usr/src/.puta/.1logz [ OK ] [20:08:00] Scanning for string /usr/info/.t0rn [ OK ] [20:08:00] Scanning for string /dev/.lib [ OK ] [20:08:00] Scanning for string /dev/.lib/lib [ OK ] [20:08:00] Scanning for string /dev/.lib/lib/lib [ OK ] [20:08:00] Scanning for string /dev/.lib/lib/lib/dev [ OK ] [20:08:00] Scanning for string /dev/.lib/lib/scan [ OK ] [20:08:00] Scanning for string /usr/src/.puta [ OK ] [20:08:00] Scanning for string /usr/man/man1/man1 [ OK ] [20:08:00] Scanning for string /usr/man/man1/man1/lib [ OK ] [20:08:00] Scanning for string /usr/man/man1/man1/lib/.lib [ OK ] [20:08:00] Scanning for string /usr/man/man1/man1/lib/.lib/.backup [ OK ] [20:08:00] [20:08:00] Info: Starting test name 'shared_libs' [20:08:00] Performing 'shared libraries' checks [20:08:00] Checking for preloading variables [ None found ] [20:08:00] Checking for preloaded libraries [ None found ] [20:08:00] [20:08:00] Info: Starting test name 'shared_libs_path' [20:08:00] Checking LD_LIBRARY_PATH variable [ Not found ] [20:08:00] [20:08:00] Info: Starting test name 'properties' [20:08:00] Performing file properties checks [20:08:00] Warning: Checking for prerequisites [ Warning ] [20:08:00] The file of stored file properties (rkhunter.dat) does not exist, and should be created. To do this type in 'rkhunter --propupd'. [20:08:00] Info: The file properties check will still run as there are checks that can be performed without the 'rkhunter.dat' file. [20:08:00] [20:08:00] Warning: WARNING! It is the users responsibility to ensure that when the '--propupd' option is used, all the files on their system are known to be genuine, and installed from a reliable source. The rkhunter '--check' option will compare the current file properties against previously stored values, and report if any values differ. However, rkhunter cannot determine what has caused the change, that is for the user to do. [20:08:01] /usr/bin/awk [ OK ] [20:08:01] /usr/bin/basename [ OK ] [20:08:01] /usr/bin/bash [ OK ] [20:08:01] /usr/bin/cat [ OK ] [20:08:01] /usr/bin/chattr [ OK ] [20:08:01] /usr/bin/chmod [ OK ] [20:08:01] /usr/bin/chown [ OK ] [20:08:01] /usr/bin/cp [ OK ] [20:08:01] /usr/bin/curl [ OK ] [20:08:01] /usr/bin/cut [ OK ] [20:08:01] /usr/bin/date [ OK ] [20:08:01] /usr/bin/df [ OK ] [20:08:01] /usr/bin/diff [ OK ] [20:08:01] /usr/bin/dirname [ OK ] [20:08:01] /usr/bin/dmesg [ OK ] [20:08:01] /usr/bin/du [ OK ] [20:08:01] /usr/bin/echo [ OK ] [20:08:01] /usr/bin/egrep [ Warning ] [20:08:01] Warning: The command '/usr/bin/egrep' has been replaced by a script: /usr/bin/egrep: POSIX shell script, ASCII text executable [20:08:01] /usr/bin/env [ OK ] [20:08:01] /usr/bin/fgrep [ Warning ] [20:08:01] Warning: The command '/usr/bin/fgrep' has been replaced by a script: /usr/bin/fgrep: POSIX shell script, ASCII text executable [20:08:01] /usr/bin/file [ OK ] [20:08:01] /usr/bin/find [ OK ] [20:08:01] /usr/bin/grep [ OK ] [20:08:02] /usr/bin/groups [ OK ] [20:08:02] Info: Found file '/usr/bin/groups': it is whitelisted for the 'script replacement' check. [20:08:02] /usr/bin/head [ OK ] [20:08:02] /usr/bin/id [ OK ] [20:08:02] /usr/bin/ipcs [ OK ] [20:08:02] /usr/bin/kill [ OK ] [20:08:02] /usr/bin/last [ OK ] [20:08:02] /usr/bin/lastlog [ OK ] [20:08:02] /usr/bin/ldd [ OK ] [20:08:02] Info: Found file '/usr/bin/ldd': it is whitelisted for the 'script replacement' check. [20:08:02] /usr/bin/less [ OK ] [20:08:02] /usr/bin/logger [ OK ] [20:08:02] /usr/bin/login [ OK ] [20:08:02] /usr/bin/ls [ OK ] [20:08:02] /usr/bin/lsattr [ OK ] [20:08:02] /usr/bin/mail [ OK ] [20:08:02] /usr/bin/md5sum [ OK ] [20:08:02] /usr/bin/mktemp [ OK ] [20:08:02] /usr/bin/more [ OK ] [20:08:02] /usr/bin/mount [ OK ] [20:08:02] /usr/bin/mv [ OK ] [20:08:02] /usr/bin/netstat [ OK ] [20:08:02] /usr/bin/newgrp [ OK ] [20:08:02] /usr/bin/passwd [ OK ] [20:08:02] /usr/bin/perl [ OK ] [20:08:02] /usr/bin/pgrep [ OK ] [20:08:02] /usr/bin/ping [ OK ] [20:08:03] /usr/bin/pkill [ OK ] [20:08:03] /usr/bin/ps [ OK ] [20:08:03] /usr/bin/pwd [ OK ] [20:08:03] /usr/bin/readlink [ OK ] [20:08:03] /usr/bin/rkhunter [ OK ] [20:08:03] /usr/bin/rpm [ OK ] [20:08:03] /usr/bin/runcon [ OK ] [20:08:03] /usr/bin/sed [ OK ] [20:08:03] /usr/bin/sh [ OK ] [20:08:03] /usr/bin/sha1sum [ OK ] [20:08:03] /usr/bin/sha224sum [ OK ] [20:08:03] /usr/bin/sha256sum [ OK ] [20:08:03] /usr/bin/sha384sum [ OK ] [20:08:03] /usr/bin/sha512sum [ OK ] [20:08:03] /usr/bin/size [ OK ] [20:08:03] /usr/bin/sort [ OK ] [20:08:03] /usr/bin/ssh [ OK ] [20:08:03] /usr/bin/stat [ OK ] [20:08:03] /usr/bin/strings [ OK ] [20:08:03] /usr/bin/su [ OK ] [20:08:03] /usr/bin/sudo [ OK ] [20:08:03] /usr/bin/tail [ OK ] [20:08:03] /usr/bin/telnet [ OK ] [20:08:03] /usr/bin/test [ OK ] [20:08:03] /usr/bin/top [ OK ] [20:08:03] /usr/bin/touch [ OK ] [20:08:04] /usr/bin/tr [ OK ] [20:08:04] /usr/bin/uname [ OK ] [20:08:04] /usr/bin/uniq [ OK ] [20:08:04] /usr/bin/users [ OK ] [20:08:04] /usr/bin/vmstat [ OK ] [20:08:04] /usr/bin/w [ OK ] [20:08:04] /usr/bin/watch [ OK ] [20:08:04] /usr/bin/wc [ OK ] [20:08:04] /usr/bin/wget [ OK ] [20:08:04] /usr/bin/whatis [ OK ] [20:08:04] Info: Found file '/usr/bin/whatis': it is whitelisted for the 'script replacement' check. [20:08:04] /usr/bin/whereis [ OK ] [20:08:04] /usr/bin/which [ OK ] [20:08:04] /usr/bin/who [ OK ] [20:08:04] /usr/bin/whoami [ OK ] [20:08:04] /usr/bin/numfmt [ OK ] [20:08:04] /usr/bin/gawk [ OK ] [20:08:04] /usr/bin/mailx [ OK ] [20:08:04] /usr/bin/kmod [ OK ] [20:08:04] /usr/bin/systemctl [ OK ] [20:08:04] /usr/sbin/adduser [ OK ] [20:08:05] /usr/sbin/chkconfig [ OK ] [20:08:05] /usr/sbin/chroot [ OK ] [20:08:05] /usr/sbin/depmod [ OK ] [20:08:05] /usr/sbin/fsck [ OK ] [20:08:05] /usr/sbin/groupadd [ OK ] [20:08:05] /usr/sbin/groupdel [ OK ] [20:08:05] /usr/sbin/groupmod [ OK ] [20:08:05] /usr/sbin/grpck [ OK ] [20:08:05] /usr/sbin/ifconfig [ OK ] [20:08:05] /usr/sbin/ifdown [ Warning ] [20:08:05] Warning: The command '/usr/sbin/ifdown' has been replaced by a script: /usr/sbin/ifdown: Bourne-Again shell script, ASCII text executable [20:08:05] /usr/sbin/ifup [ Warning ] [20:08:05] Warning: The command '/usr/sbin/ifup' has been replaced by a script: /usr/sbin/ifup: Bourne-Again shell script, ASCII text executable [20:08:05] /usr/sbin/init [ OK ] [20:08:05] /usr/sbin/insmod [ OK ] [20:08:05] /usr/sbin/ip [ OK ] [20:08:05] /usr/sbin/lsmod [ OK ] [20:08:05] /usr/sbin/lsof [ OK ] [20:08:05] /usr/sbin/modinfo [ OK ] [20:08:05] /usr/sbin/modprobe [ OK ] [20:08:05] /usr/sbin/nologin [ OK ] [20:08:05] /usr/sbin/pwck [ OK ] [20:08:05] /usr/sbin/rmmod [ OK ] [20:08:05] /usr/sbin/route [ OK ] [20:08:05] /usr/sbin/rsyslogd [ OK ] [20:08:05] /usr/sbin/runlevel [ OK ] [20:08:06] /usr/sbin/sestatus [ OK ] [20:08:06] /usr/sbin/sshd [ OK ] [20:08:06] /usr/sbin/sulogin [ OK ] [20:08:06] /usr/sbin/sysctl [ OK ] [20:08:06] /usr/sbin/useradd [ OK ] [20:08:06] /usr/sbin/userdel [ OK ] [20:08:06] /usr/sbin/usermod [ OK ] [20:08:06] /usr/sbin/vipw [ OK ] [20:08:06] /home/student/bin/links [ Warning ] [20:08:06] Warning: The command '/home/student/bin/links' has been replaced by a script: /home/student/bin/links: Bourne-Again shell script, ASCII text executable [20:08:07] /usr/lib/systemd/systemd [ OK ] [20:08:23] Running Rootkit Hunter version 1.4.6 on cent79 [20:08:23] [20:08:23] Info: Start date is 2023年 4月 28日 金曜日 20:08:23 JST [20:08:23] [20:08:23] Checking configuration file and command-line options... [20:08:23] Info: Detected operating system is 'Linux' [20:08:23] Info: Uname output is 'Linux cent79.home.ycos 3.10.0-1160.88.1.el7.x86_64 #1 SMP Tue Mar 7 15:41:52 UTC 2023 x86_64 x86_64 x86_64 GNU/Linux' [20:08:23] Info: Command line is /usr/bin/rkhunter --check --createlogfile [20:08:23] Info: Environment shell is /bin/bash; rkhunter is using bash [20:08:23] Info: Using configuration file '/etc/rkhunter.conf' [20:08:23] Info: Installation directory is '/usr' [20:08:23] Info: Using language 'en' [20:08:23] Info: Using '/var/lib/rkhunter/db' as the database directory [20:08:23] Info: Using '/usr/share/rkhunter/scripts' as the support script directory [20:08:23] Info: Using '/usr/local/bin /usr/bin /usr/local/sbin /usr/sbin /home/student/bin /bin /sbin /usr/libexec /usr/local/libexec' as the command directories [20:08:23] Info: Using '/var/lib/rkhunter' as the temporary directory [20:08:23] Info: No mail-on-warning address configured [20:08:23] Info: X will be automatically detected [20:08:23] Info: Found the 'basename' command: /usr/bin/basename [20:08:23] Info: Found the 'diff' command: /usr/bin/diff [20:08:23] Info: Found the 'dirname' command: /usr/bin/dirname [20:08:23] Info: Found the 'file' command: /usr/bin/file [20:08:23] Info: Found the 'find' command: /usr/bin/find [20:08:23] Info: Found the 'ifconfig' command: /usr/sbin/ifconfig [20:08:23] Info: Found the 'ip' command: /usr/sbin/ip [20:08:23] Info: Found the 'ipcs' command: /usr/bin/ipcs [20:08:23] Info: Found the 'ldd' command: /usr/bin/ldd [20:08:23] Info: Found the 'lsattr' command: /usr/bin/lsattr [20:08:23] Info: Found the 'lsmod' command: /usr/sbin/lsmod [20:08:23] Info: Found the 'lsof' command: /usr/sbin/lsof [20:08:23] Info: Found the 'mktemp' command: /usr/bin/mktemp [20:08:23] Info: Found the 'netstat' command: /usr/bin/netstat [20:08:23] Info: Found the 'numfmt' command: /usr/bin/numfmt [20:08:23] Info: Found the 'perl' command: /usr/bin/perl [20:08:23] Info: Found the 'pgrep' command: /usr/bin/pgrep [20:08:23] Info: Found the 'ps' command: /usr/bin/ps [20:08:23] Info: Found the 'pwd' command: /usr/bin/pwd [20:08:23] Info: Found the 'readlink' command: /usr/bin/readlink [20:08:23] Info: Found the 'stat' command: /usr/bin/stat [20:08:23] Info: Found the 'strings' command: /usr/bin/strings [20:08:23] Info: System is not using prelinking [20:08:23] Info: Using the '/usr/bin/sha256sum' command for the file hash checks [20:08:23] Info: The hash function field index is set to 1 [20:08:23] Info: Using package manager 'RPM' for file property checks [20:08:23] Info: Found the 'rpm' command: /usr/bin/rpm [20:08:23] Info: Previous file attributes were stored [20:08:23] Info: Enabled tests are: all [20:08:23] Info: Disabled tests are: suspscan hidden_ports deleted_files packet_cap_apps apps ipc_shared_mem [20:08:23] Info: Current logging will be appended to the log file [20:08:23] Info: Found kernel symbols file '/proc/kallsyms' [20:08:23] Info: Using 'date' to process epoch second times [20:08:23] Info: Locking is not being used [20:08:23] [20:08:23] Starting system checks... [20:08:23] [20:08:23] Info: Starting test name 'system_commands' [20:08:23] Checking system commands... [20:08:23] [20:08:23] Info: Starting test name 'strings' [20:08:23] Performing 'strings' command checks [20:08:23] Scanning for string /usr/sbin/ntpsx [ OK ] [20:08:23] Scanning for string /usr/sbin/.../bkit-ava [ OK ] [20:08:24] Scanning for string /usr/sbin/.../bkit-d [ OK ] [20:08:24] Scanning for string /usr/sbin/.../bkit-shd [ OK ] [20:08:24] Scanning for string /usr/sbin/.../bkit-f [ OK ] [20:08:24] Scanning for string /usr/include/.../proc.h [ OK ] [20:08:24] Scanning for string /usr/include/.../.bash_history [ OK ] [20:08:24] Scanning for string /usr/include/.../bkit-get [ OK ] [20:08:24] Scanning for string /usr/include/.../bkit-dl [ OK ] [20:08:24] Scanning for string /usr/include/.../bkit-screen [ OK ] [20:08:24] Scanning for string /usr/include/.../bkit-sleep [ OK ] [20:08:24] Scanning for string /usr/lib/.../bkit-adore.o [ OK ] [20:08:24] Scanning for string /usr/lib/.../ls [ OK ] [20:08:24] Scanning for string /usr/lib/.../netstat [ OK ] [20:08:24] Scanning for string /usr/lib/.../lsof [ OK ] [20:08:24] Scanning for string /usr/lib/.../bkit-ssh/bkit-shdcfg [ OK ] [20:08:24] Scanning for string /usr/lib/.../bkit-ssh/bkit-shhk [ OK ] [20:08:24] Scanning for string /usr/lib/.../bkit-ssh/bkit-pw [ OK ] [20:08:24] Scanning for string /usr/lib/.../bkit-ssh/bkit-shrs [ OK ] [20:08:24] Scanning for string /usr/lib/.../bkit-ssh/bkit-mots [ OK ] [20:08:24] Scanning for string /usr/lib/.../uconf.inv [ OK ] [20:08:24] Scanning for string /usr/lib/.../psr [ OK ] [20:08:24] Scanning for string /usr/lib/.../find [ OK ] [20:08:24] Scanning for string /usr/lib/.../pstree [ OK ] [20:08:24] Scanning for string /usr/lib/.../slocate [ OK ] [20:08:24] Scanning for string /usr/lib/.../du [ OK ] [20:08:24] Scanning for string /usr/lib/.../top [ OK ] [20:08:24] Scanning for string /usr/sbin/... [ OK ] [20:08:24] Scanning for string /usr/include/... [ OK ] [20:08:24] Scanning for string /usr/include/.../.tmp [ OK ] [20:08:24] Scanning for string /usr/lib/... [ OK ] [20:08:24] Scanning for string /usr/lib/.../.ssh [ OK ] [20:08:24] Scanning for string /usr/lib/.../bkit-ssh [ OK ] [20:08:24] Scanning for string /usr/lib/.bkit- [ OK ] [20:08:24] Scanning for string /tmp/.bkp [ OK ] [20:08:24] Scanning for string /tmp/.cinik [ OK ] [20:08:24] Scanning for string /tmp/.font-unix/.cinik [ OK ] [20:08:24] Scanning for string /lib/.sso [ OK ] [20:08:24] Scanning for string /lib/.so [ OK ] [20:08:24] Scanning for string /var/run/...dica/clean [ OK ] [20:08:24] Scanning for string /var/run/...dica/dxr [ OK ] [20:08:24] Scanning for string /var/run/...dica/read [ OK ] [20:08:24] Scanning for string /var/run/...dica/write [ OK ] [20:08:24] Scanning for string /var/run/...dica/lf [ OK ] [20:08:24] Scanning for string /var/run/...dica/xl [ OK ] [20:08:24] Scanning for string /var/run/...dica/xdr [ OK ] [20:08:24] Scanning for string /var/run/...dica/psg [ OK ] [20:08:24] Scanning for string /var/run/...dica/secure [ OK ] [20:08:24] Scanning for string /var/run/...dica/rdx [ OK ] [20:08:24] Scanning for string /var/run/...dica/va [ OK ] [20:08:24] Scanning for string /var/run/...dica/cl.sh [ OK ] [20:08:24] Scanning for string /var/run/...dica/last.log [ OK ] [20:08:24] Scanning for string /usr/bin/.etc [ OK ] [20:08:24] Scanning for string /etc/sshd_config [ OK ] [20:08:24] Scanning for string /etc/ssh_host_key [ OK ] [20:08:24] Scanning for string /etc/ssh_random_seed [ OK ] [20:08:24] Scanning for string /dev/ptyp [ OK ] [20:08:25] Scanning for string /dev/ptyq [ OK ] [20:08:25] Scanning for string /dev/ptyr [ OK ] [20:08:25] Scanning for string /dev/ptys [ OK ] [20:08:25] Scanning for string /dev/ptyt [ OK ] [20:08:25] Scanning for string /dev/fd/.88/freshb-bsd [ OK ] [20:08:25] Scanning for string /dev/fd/.88/fresht [ OK ] [20:08:25] Scanning for string /dev/fd/.88/zxsniff [ OK ] [20:08:25] Scanning for string /dev/fd/.88/zxsniff.log [ OK ] [20:08:25] Scanning for string /dev/fd/.99/.ttyf00 [ OK ] [20:08:25] Scanning for string /dev/fd/.99/.ttyp00 [ OK ] [20:08:25] Scanning for string /dev/fd/.99/.ttyq00 [ OK ] [20:08:25] Scanning for string /dev/fd/.99/.ttys00 [ OK ] [20:08:25] Scanning for string /dev/fd/.99/.pwsx00 [ OK ] [20:08:25] Scanning for string /etc/.acid [ OK ] [20:08:25] Scanning for string /usr/lib/.fx/sched_host.2 [ OK ] [20:08:25] Scanning for string /usr/lib/.fx/random_d.2 [ OK ] [20:08:25] Scanning for string /usr/lib/.fx/set_pid.2 [ OK ] [20:08:25] Scanning for string /usr/lib/.fx/setrgrp.2 [ OK ] [20:08:25] Scanning for string /usr/lib/.fx/TOHIDE [ OK ] [20:08:25] Scanning for string /usr/lib/.fx/cons.saver [ OK ] [20:08:25] Scanning for string /usr/lib/.fx/adore/ava/ava [ OK ] [20:08:25] Scanning for string /usr/lib/.fx/adore/adore/adore.ko [ OK ] [20:08:25] Scanning for string /bin/sysback [ OK ] [20:08:25] Scanning for string /usr/local/bin/sysback [ OK ] [20:08:25] Scanning for string /usr/lib/.tbd [ OK ] [20:08:25] Scanning for string /dev/.lib/lib/lib/t0rns [ OK ] [20:08:25] Scanning for string /dev/.lib/lib/lib/du [ OK ] [20:08:25] Scanning for string /dev/.lib/lib/lib/ls [ OK ] [20:08:25] Scanning for string /dev/.lib/lib/lib/t0rnsb [ OK ] [20:08:25] Scanning for string /dev/.lib/lib/lib/ps [ OK ] [20:08:25] Scanning for string /dev/.lib/lib/lib/t0rnp [ OK ] [20:08:25] Scanning for string /dev/.lib/lib/lib/find [ OK ] [20:08:25] Scanning for string /dev/.lib/lib/lib/ifconfig [ OK ] [20:08:25] Scanning for string /dev/.lib/lib/lib/pg [ OK ] [20:08:25] Scanning for string /dev/.lib/lib/lib/ssh.tgz [ OK ] [20:08:25] Scanning for string /dev/.lib/lib/lib/top [ OK ] [20:08:25] Scanning for string /dev/.lib/lib/lib/sz [ OK ] [20:08:25] Scanning for string /dev/.lib/lib/lib/login [ OK ] [20:08:25] Scanning for string /dev/.lib/lib/lib/in.fingerd [ OK ] [20:08:25] Scanning for string /dev/.lib/lib/lib/1i0n.sh [ OK ] [20:08:25] Scanning for string /dev/.lib/lib/lib/pstree [ OK ] [20:08:25] Scanning for string /dev/.lib/lib/lib/in.telnetd [ OK ] [20:08:25] Scanning for string /dev/.lib/lib/lib/mjy [ OK ] [20:08:25] Scanning for string /dev/.lib/lib/lib/sush [ OK ] [20:08:25] Scanning for string /dev/.lib/lib/lib/tfn [ OK ] [20:08:25] Scanning for string /dev/.lib/lib/lib/name [ OK ] [20:08:25] Scanning for string /dev/.lib/lib/lib/getip.sh [ OK ] [20:08:25] Scanning for string /usr/info/.torn/sh* [ OK ] [20:08:25] Scanning for string /usr/src/.puta/.1addr [ OK ] [20:08:25] Scanning for string /usr/src/.puta/.1file [ OK ] [20:08:25] Scanning for string /usr/src/.puta/.1proc [ OK ] [20:08:25] Scanning for string /usr/src/.puta/.1logz [ OK ] [20:08:25] Scanning for string /usr/info/.t0rn [ OK ] [20:08:25] Scanning for string /dev/.lib [ OK ] [20:08:26] Scanning for string /dev/.lib/lib [ OK ] [20:08:26] Scanning for string /dev/.lib/lib/lib [ OK ] [20:08:26] Scanning for string /dev/.lib/lib/lib/dev [ OK ] [20:08:26] Scanning for string /dev/.lib/lib/scan [ OK ] [20:08:26] Scanning for string /usr/src/.puta [ OK ] [20:08:26] Scanning for string /usr/man/man1/man1 [ OK ] [20:08:26] Scanning for string /usr/man/man1/man1/lib [ OK ] [20:08:26] Scanning for string /usr/man/man1/man1/lib/.lib [ OK ] [20:08:26] Scanning for string /usr/man/man1/man1/lib/.lib/.backup [ OK ] [20:08:26] [20:08:26] Info: Starting test name 'shared_libs' [20:08:26] Performing 'shared libraries' checks [20:08:26] Checking for preloading variables [ None found ] [20:08:26] Checking for preloaded libraries [ None found ] [20:08:26] [20:08:26] Info: Starting test name 'shared_libs_path' [20:08:26] Checking LD_LIBRARY_PATH variable [ Not found ] [20:08:26] [20:08:26] Info: Starting test name 'properties' [20:08:26] Performing file properties checks [20:08:26] Warning: Checking for prerequisites [ Warning ] [20:08:26] The file of stored file properties (rkhunter.dat) does not exist, and should be created. To do this type in 'rkhunter --propupd'. [20:08:26] Info: The file properties check will still run as there are checks that can be performed without the 'rkhunter.dat' file. [20:08:26] [20:08:26] Warning: WARNING! It is the users responsibility to ensure that when the '--propupd' option is used, all the files on their system are known to be genuine, and installed from a reliable source. The rkhunter '--check' option will compare the current file properties against previously stored values, and report if any values differ. However, rkhunter cannot determine what has caused the change, that is for the user to do. [20:08:26] /usr/bin/awk [ OK ] [20:08:26] /usr/bin/basename [ OK ] [20:08:26] /usr/bin/bash [ OK ] [20:08:26] /usr/bin/cat [ OK ] [20:08:26] /usr/bin/chattr [ OK ] [20:08:26] /usr/bin/chmod [ OK ] [20:08:26] /usr/bin/chown [ OK ] [20:08:26] /usr/bin/cp [ OK ] [20:08:26] /usr/bin/curl [ OK ] [20:08:26] /usr/bin/cut [ OK ] [20:08:27] /usr/bin/date [ OK ] [20:08:27] /usr/bin/df [ OK ] [20:08:27] /usr/bin/diff [ OK ] [20:08:27] /usr/bin/dirname [ OK ] [20:08:27] /usr/bin/dmesg [ OK ] [20:08:27] /usr/bin/du [ OK ] [20:08:27] /usr/bin/echo [ OK ] [20:08:27] /usr/bin/egrep [ Warning ] [20:08:27] Warning: The command '/usr/bin/egrep' has been replaced by a script: /usr/bin/egrep: POSIX shell script, ASCII text executable [20:08:27] /usr/bin/env [ OK ] [20:08:27] /usr/bin/fgrep [ Warning ] [20:08:27] Warning: The command '/usr/bin/fgrep' has been replaced by a script: /usr/bin/fgrep: POSIX shell script, ASCII text executable [20:08:27] /usr/bin/file [ OK ] [20:08:27] /usr/bin/find [ OK ] [20:08:27] /usr/bin/grep [ OK ] [20:08:27] /usr/bin/groups [ OK ] [20:08:27] Info: Found file '/usr/bin/groups': it is whitelisted for the 'script replacement' check. [20:08:27] /usr/bin/head [ OK ] [20:08:27] /usr/bin/id [ OK ] [20:08:27] /usr/bin/ipcs [ OK ] [20:08:27] /usr/bin/kill [ OK ] [20:08:27] /usr/bin/last [ OK ] [20:08:27] /usr/bin/lastlog [ OK ] [20:08:27] /usr/bin/ldd [ OK ] [20:08:27] Info: Found file '/usr/bin/ldd': it is whitelisted for the 'script replacement' check. [20:08:27] /usr/bin/less [ OK ] [20:08:27] /usr/bin/logger [ OK ] [20:08:27] /usr/bin/login [ OK ] [20:08:27] /usr/bin/ls [ OK ] [20:08:27] /usr/bin/lsattr [ OK ] [20:08:28] /usr/bin/mail [ OK ] [20:08:28] /usr/bin/md5sum [ OK ] [20:08:28] /usr/bin/mktemp [ OK ] [20:08:28] /usr/bin/more [ OK ] [20:08:28] /usr/bin/mount [ OK ] [20:08:28] /usr/bin/mv [ OK ] [20:08:28] /usr/bin/netstat [ OK ] [20:08:28] /usr/bin/newgrp [ OK ] [20:08:28] /usr/bin/passwd [ OK ] [20:08:28] /usr/bin/perl [ OK ] [20:08:28] /usr/bin/pgrep [ OK ] [20:08:28] /usr/bin/ping [ OK ] [20:08:28] /usr/bin/pkill [ OK ] [20:08:28] /usr/bin/ps [ OK ] [20:08:28] /usr/bin/pwd [ OK ] [20:08:28] /usr/bin/readlink [ OK ] [20:08:28] /usr/bin/rkhunter [ OK ] [20:08:28] /usr/bin/rpm [ OK ] [20:08:28] /usr/bin/runcon [ OK ] [20:08:28] /usr/bin/sed [ OK ] [20:08:28] /usr/bin/sh [ OK ] [20:08:28] /usr/bin/sha1sum [ OK ] [20:08:28] /usr/bin/sha224sum [ OK ] [20:08:28] /usr/bin/sha256sum [ OK ] [20:08:28] /usr/bin/sha384sum [ OK ] [20:08:28] /usr/bin/sha512sum [ OK ] [20:08:29] /usr/bin/size [ OK ] [20:08:29] /usr/bin/sort [ OK ] [20:08:29] /usr/bin/ssh [ OK ] [20:08:29] /usr/bin/stat [ OK ] [20:08:29] /usr/bin/strings [ OK ] [20:08:29] /usr/bin/su [ OK ] [20:08:29] /usr/bin/sudo [ OK ] [20:08:29] /usr/bin/tail [ OK ] [20:08:29] /usr/bin/telnet [ OK ] [20:08:29] /usr/bin/test [ OK ] [20:08:29] /usr/bin/top [ OK ] [20:08:29] /usr/bin/touch [ OK ] [20:08:29] /usr/bin/tr [ OK ] [20:08:29] /usr/bin/uname [ OK ] [20:08:29] /usr/bin/uniq [ OK ] [20:08:29] /usr/bin/users [ OK ] [20:08:29] /usr/bin/vmstat [ OK ] [20:08:29] /usr/bin/w [ OK ] [20:08:29] /usr/bin/watch [ OK ] [20:08:29] /usr/bin/wc [ OK ] [20:08:29] /usr/bin/wget [ OK ] [20:08:29] /usr/bin/whatis [ OK ] [20:08:29] Info: Found file '/usr/bin/whatis': it is whitelisted for the 'script replacement' check. [20:08:29] /usr/bin/whereis [ OK ] [20:08:29] /usr/bin/which [ OK ] [20:08:29] /usr/bin/who [ OK ] [20:08:29] /usr/bin/whoami [ OK ] [20:08:29] /usr/bin/numfmt [ OK ] [20:08:30] /usr/bin/gawk [ OK ] [20:08:30] /usr/bin/mailx [ OK ] [20:08:30] /usr/bin/kmod [ OK ] [20:08:30] /usr/bin/systemctl [ OK ] [20:08:30] /usr/sbin/adduser [ OK ] [20:08:30] /usr/sbin/chkconfig [ OK ] [20:08:30] /usr/sbin/chroot [ OK ] [20:08:30] /usr/sbin/depmod [ OK ] [20:08:30] /usr/sbin/fsck [ OK ] [20:08:30] /usr/sbin/groupadd [ OK ] [20:08:30] /usr/sbin/groupdel [ OK ] [20:08:30] /usr/sbin/groupmod [ OK ] [20:08:30] /usr/sbin/grpck [ OK ] [20:08:30] /usr/sbin/ifconfig [ OK ] [20:08:30] /usr/sbin/ifdown [ Warning ] [20:08:30] Warning: The command '/usr/sbin/ifdown' has been replaced by a script: /usr/sbin/ifdown: Bourne-Again shell script, ASCII text executable [20:08:30] /usr/sbin/ifup [ Warning ] [20:08:30] Warning: The command '/usr/sbin/ifup' has been replaced by a script: /usr/sbin/ifup: Bourne-Again shell script, ASCII text executable [20:08:30] /usr/sbin/init [ OK ] [20:08:30] /usr/sbin/insmod [ OK ] [20:08:31] /usr/sbin/ip [ OK ] [20:08:31] /usr/sbin/lsmod [ OK ] [20:08:31] /usr/sbin/lsof [ OK ] [20:08:31] /usr/sbin/modinfo [ OK ] [20:08:31] /usr/sbin/modprobe [ OK ] [20:08:31] /usr/sbin/nologin [ OK ] [20:08:31] /usr/sbin/pwck [ OK ] [20:08:31] /usr/sbin/rmmod [ OK ] [20:08:31] /usr/sbin/route [ OK ] [20:08:31] /usr/sbin/rsyslogd [ OK ] [20:08:31] /usr/sbin/runlevel [ OK ] [20:08:31] /usr/sbin/sestatus [ OK ] [20:08:31] /usr/sbin/sshd [ OK ] [20:08:31] /usr/sbin/sulogin [ OK ] [20:08:31] /usr/sbin/sysctl [ OK ] [20:08:31] /usr/sbin/useradd [ OK ] [20:08:31] /usr/sbin/userdel [ OK ] [20:08:31] /usr/sbin/usermod [ OK ] [20:08:31] /usr/sbin/vipw [ OK ] [20:08:31] /home/student/bin/links [ Warning ] [20:08:31] Warning: The command '/home/student/bin/links' has been replaced by a script: /home/student/bin/links: Bourne-Again shell script, ASCII text executable [20:08:32] /usr/lib/systemd/systemd [ OK ] [20:08:32] [20:08:32] Info: Starting test name 'rootkits' [20:08:32] Checking for rootkits... [20:08:32] [20:08:32] Info: Starting test name 'known_rkts' [20:08:32] Performing check of known rootkit files and directories [20:08:32] [20:08:32] Checking for 55808 Trojan - Variant A... [20:08:32] Checking for file '/tmp/.../r' [ Not found ] [20:08:32] Checking for file '/tmp/.../a' [ Not found ] [20:08:32] 55808 Trojan - Variant A [ Not found ] [20:08:32] [20:08:32] Checking for ADM Worm... [20:08:32] Checking for string 'w0rm' [ Not found ] [20:08:32] ADM Worm [ Not found ] [20:08:33] [20:08:33] Checking for AjaKit Rootkit... [20:08:33] Checking for file '/dev/tux/.addr' [ Not found ] [20:08:33] Checking for file '/dev/tux/.proc' [ Not found ] [20:08:33] Checking for file '/dev/tux/.file' [ Not found ] [20:08:33] Checking for file '/lib/.libgh-gh/cleaner' [ Not found ] [20:08:33] Checking for file '/lib/.libgh-gh/Patch/patch' [ Not found ] [20:08:33] Checking for file '/lib/.libgh-gh/sb0k' [ Not found ] [20:08:33] Checking for directory '/dev/tux' [ Not found ] [20:08:33] Checking for directory '/lib/.libgh-gh' [ Not found ] [20:08:33] AjaKit Rootkit [ Not found ] [20:08:33] [20:08:33] Checking for Adore Rootkit... [20:08:33] Checking for file '/usr/secure' [ Not found ] [20:08:33] Checking for file '/usr/doc/sys/qrt' [ Not found ] [20:08:33] Checking for file '/usr/doc/sys/run' [ Not found ] [20:08:33] Checking for file '/usr/doc/sys/crond' [ Not found ] [20:08:33] Checking for file '/usr/sbin/kfd' [ Not found ] [20:08:33] Checking for file '/usr/doc/kern/var' [ Not found ] [20:08:33] Checking for file '/usr/doc/kern/string.o' [ Not found ] [20:08:33] Checking for file '/usr/doc/kern/ava' [ Not found ] [20:08:33] Checking for file '/usr/doc/kern/adore.o' [ Not found ] [20:08:33] Checking for file '/var/log/ssh/old' [ Not found ] [20:08:33] Checking for directory '/lib/security/.config/ssh' [ Not found ] [20:08:33] Checking for directory '/usr/doc/kern' [ Not found ] [20:08:33] Checking for directory '/usr/doc/backup' [ Not found ] [20:08:33] Checking for directory '/usr/doc/backup/txt' [ Not found ] [20:08:33] Checking for directory '/lib/backup' [ Not found ] [20:08:33] Checking for directory '/lib/backup/txt' [ Not found ] [20:08:33] Checking for directory '/usr/doc/work' [ Not found ] [20:08:33] Checking for directory '/usr/doc/sys' [ Not found ] [20:08:33] Checking for directory '/var/log/ssh' [ Not found ] [20:08:33] Checking for directory '/usr/doc/.spool' [ Not found ] [20:08:33] Checking for directory '/usr/lib/kterm' [ Not found ] [20:08:33] Adore Rootkit [ Not found ] [20:08:33] [20:08:33] Checking for aPa Kit... [20:08:33] Checking for file '/usr/share/.aPa' [ Not found ] [20:08:33] aPa Kit [ Not found ] [20:08:33] [20:08:33] Checking for Apache Worm... [20:08:33] Checking for file '/bin/.log' [ Not found ] [20:08:33] Apache Worm [ Not found ] [20:08:33] [20:08:33] Checking for Ambient (ark) Rootkit... [20:08:33] Checking for file '/usr/lib/.ark?' [ Not found ] [20:08:33] Checking for file '/dev/ptyxx/.log' [ Not found ] [20:08:33] Checking for file '/dev/ptyxx/.file' [ Not found ] [20:08:33] Checking for file '/dev/ptyxx/.proc' [ Not found ] [20:08:33] Checking for file '/dev/ptyxx/.addr' [ Not found ] [20:08:33] Checking for directory '/dev/ptyxx' [ Not found ] [20:08:33] Ambient (ark) Rootkit [ Not found ] [20:08:33] [20:08:33] Checking for Balaur Rootkit... [20:08:33] Checking for file '/usr/lib/liblog.o' [ Not found ] [20:08:33] Checking for directory '/usr/lib/.kinetic' [ Not found ] [20:08:33] Checking for directory '/usr/lib/.egcs' [ Not found ] [20:08:33] Checking for directory '/usr/lib/.wormie' [ Not found ] [20:08:33] Balaur Rootkit [ Not found ] [20:08:33] [20:08:33] Checking for BeastKit Rootkit... [20:08:33] Checking for file '/usr/sbin/arobia' [ Not found ] [20:08:33] Checking for file '/usr/sbin/idrun' [ Not found ] [20:08:34] Checking for file '/usr/lib/elm/arobia/elm' [ Not found ] [20:08:34] Checking for file '/usr/lib/elm/arobia/elm/hk' [ Not found ] [20:08:34] Checking for file '/usr/lib/elm/arobia/elm/hk.pub' [ Not found ] [20:08:34] Checking for file '/usr/lib/elm/arobia/elm/sc' [ Not found ] [20:08:34] Checking for file '/usr/lib/elm/arobia/elm/sd.pp' [ Not found ] [20:08:34] Checking for file '/usr/lib/elm/arobia/elm/sdco' [ Not found ] [20:08:34] Checking for file '/usr/lib/elm/arobia/elm/srsd' [ Not found ] [20:08:34] Checking for directory '/lib/ldd.so/bktools' [ Not found ] [20:08:34] BeastKit Rootkit [ Not found ] [20:08:34] [20:08:34] Checking for beX2 Rootkit... [20:08:34] Checking for file '/usr/info/termcap.info-5.gz' [ Not found ] [20:08:34] Checking for file '/usr/bin/sshd2' [ Not found ] [20:08:34] Checking for directory '/usr/include/bex' [ Not found ] [20:08:34] beX2 Rootkit [ Not found ] [20:08:34] [20:08:34] Checking for BOBKit Rootkit... [20:08:34] Checking for file '/usr/sbin/ntpsx' [ Not found ] [20:08:34] Checking for file '/usr/sbin/.../bkit-ava' [ Not found ] [20:08:34] Checking for file '/usr/sbin/.../bkit-d' [ Not found ] [20:08:34] Checking for file '/usr/sbin/.../bkit-shd' [ Not found ] [20:08:34] Checking for file '/usr/sbin/.../bkit-f' [ Not found ] [20:08:34] Checking for file '/usr/include/.../proc.h' [ Not found ] [20:08:34] Checking for file '/usr/include/.../.bash_history' [ Not found ] [20:08:34] Checking for file '/usr/include/.../bkit-get' [ Not found ] [20:08:34] Checking for file '/usr/include/.../bkit-dl' [ Not found ] [20:08:34] Checking for file '/usr/include/.../bkit-screen' [ Not found ] [20:08:34] Checking for file '/usr/include/.../bkit-sleep' [ Not found ] [20:08:34] Checking for file '/usr/lib/.../bkit-adore.o' [ Not found ] [20:08:34] Checking for file '/usr/lib/.../ls' [ Not found ] [20:08:34] Checking for file '/usr/lib/.../netstat' [ Not found ] [20:08:34] Checking for file '/usr/lib/.../lsof' [ Not found ] [20:08:34] Checking for file '/usr/lib/.../bkit-ssh/bkit-shdcfg' [ Not found ] [20:08:34] Checking for file '/usr/lib/.../bkit-ssh/bkit-shhk' [ Not found ] [20:08:34] Checking for file '/usr/lib/.../bkit-ssh/bkit-pw' [ Not found ] [20:08:34] Checking for file '/usr/lib/.../bkit-ssh/bkit-shrs' [ Not found ] [20:08:34] Checking for file '/usr/lib/.../bkit-ssh/bkit-mots' [ Not found ] [20:08:34] Checking for file '/usr/lib/.../uconf.inv' [ Not found ] [20:08:34] Checking for file '/usr/lib/.../psr' [ Not found ] [20:08:34] Checking for file '/usr/lib/.../find' [ Not found ] [20:08:34] Checking for file '/usr/lib/.../pstree' [ Not found ] [20:08:34] Checking for file '/usr/lib/.../slocate' [ Not found ] [20:08:34] Checking for file '/usr/lib/.../du' [ Not found ] [20:08:34] Checking for file '/usr/lib/.../top' [ Not found ] [20:08:34] Checking for directory '/usr/sbin/...' [ Not found ] [20:08:34] Checking for directory '/usr/include/...' [ Not found ] [20:08:34] Checking for directory '/usr/include/.../.tmp' [ Not found ] [20:08:34] Checking for directory '/usr/lib/...' [ Not found ] [20:08:34] Checking for directory '/usr/lib/.../.ssh' [ Not found ] [20:08:34] Checking for directory '/usr/lib/.../bkit-ssh' [ Not found ] [20:08:34] Checking for directory '/usr/lib/.bkit-' [ Not found ] [20:08:34] Checking for directory '/tmp/.bkp' [ Not found ] [20:08:34] BOBKit Rootkit [ Not found ] [20:08:34] [20:08:34] Checking for cb Rootkit... [20:08:34] Checking for file '/dev/srd0' [ Not found ] [20:08:34] Checking for file '/lib/libproc.so.2.0.6' [ Not found ] [20:08:34] Checking for file '/dev/mounnt' [ Not found ] [20:08:35] Checking for file '/etc/rc.d/init.d/init' [ Not found ] [20:08:35] Checking for file '/usr/bin/.zeen/.. /cl' [ Not found ] [20:08:35] Checking for file '/usr/bin/.zeen/.. /.x.tgz' [ Not found ] [20:08:35] Checking for file '/usr/bin/.zeen/.. /statdx' [ Not found ] [20:08:35] Checking for file '/usr/bin/.zeen/.. /wted' [ Not found ] [20:08:35] Checking for file '/usr/bin/.zeen/.. /write' [ Not found ] [20:08:35] Checking for file '/usr/bin/.zeen/.. /scan' [ Not found ] [20:08:35] Checking for file '/usr/bin/.zeen/.. /sc' [ Not found ] [20:08:35] Checking for file '/usr/bin/.zeen/.. /sl2' [ Not found ] [20:08:35] Checking for file '/usr/bin/.zeen/.. /wroot' [ Not found ] [20:08:35] Checking for file '/usr/bin/.zeen/.. /wscan' [ Not found ] [20:08:35] Checking for file '/usr/bin/.zeen/.. /wu' [ Not found ] [20:08:35] Checking for file '/usr/bin/.zeen/.. /v' [ Not found ] [20:08:35] Checking for file '/usr/bin/.zeen/.. /read' [ Not found ] [20:08:35] Checking for file '/usr/lib/sshrc' [ Not found ] [20:08:35] Checking for file '/usr/lib/ssh_host_key' [ Not found ] [20:08:35] Checking for file '/usr/lib/ssh_host_key.pub' [ Not found ] [20:08:35] Checking for file '/usr/lib/ssh_random_seed' [ Not found ] [20:08:35] Checking for file '/usr/lib/sshd_config' [ Not found ] [20:08:35] Checking for file '/usr/lib/shosts.equiv' [ Not found ] [20:08:35] Checking for file '/usr/lib/ssh_known_hosts' [ Not found ] [20:08:35] Checking for file '/u/zappa/.ssh/pid' [ Not found ] [20:08:35] Checking for file '/usr/bin/.system/.. /tcp.log' [ Not found ] [20:08:35] Checking for file '/usr/bin/.zeen/.. /curatare/attrib' [ Not found ] [20:08:35] Checking for file '/usr/bin/.zeen/.. /curatare/chattr' [ Not found ] [20:08:35] Checking for file '/usr/bin/.zeen/.. /curatare/ps' [ Not found ] [20:08:35] Checking for file '/usr/bin/.zeen/.. /curatare/pstree' [ Not found ] [20:08:35] Checking for file '/usr/bin/.system/.. /.x/xC.o' [ Not found ] [20:08:35] Checking for directory '/usr/bin/.zeen' [ Not found ] [20:08:35] Checking for directory '/usr/bin/.zeen/.. /curatare' [ Not found ] [20:08:35] Checking for directory '/usr/bin/.zeen/.. /scan' [ Not found ] [20:08:35] Checking for directory '/usr/bin/.system/.. ' [ Not found ] [20:08:35] cb Rootkit [ Not found ] [20:08:35] [20:08:35] Checking for CiNIK Worm (Slapper.B variant)... [20:08:35] Checking for file '/tmp/.cinik' [ Not found ] [20:08:35] Checking for directory '/tmp/.font-unix/.cinik' [ Not found ] [20:08:35] CiNIK Worm (Slapper.B variant) [ Not found ] [20:08:35] [20:08:35] Checking for Danny-Boy's Abuse Kit... [20:08:35] Checking for file '/dev/mdev' [ Not found ] [20:08:35] Checking for file '/usr/lib/libX.a' [ Not found ] [20:08:35] Danny-Boy's Abuse Kit [ Not found ] [20:08:35] [20:08:35] Checking for Devil RootKit... [20:08:35] Checking for file '/var/lib/games/.src' [ Not found ] [20:08:35] Checking for file '/dev/dsx' [ Not found ] [20:08:35] Checking for file '/dev/caca' [ Not found ] [20:08:35] Checking for file '/dev/pro' [ Not found ] [20:08:35] Checking for file '/bin/bye' [ Not found ] [20:08:35] Checking for file '/bin/homedir' [ Not found ] [20:08:35] Checking for file '/usr/bin/xfss' [ Not found ] [20:08:35] Checking for file '/usr/sbin/tzava' [ Not found ] [20:08:35] Checking for file '/usr/doc/tar/.../.dracusor/stuff/holber' [ Not found ] [20:08:35] Checking for file '/usr/doc/tar/.../.dracusor/stuff/sense' [ Not found ] [20:08:35] Checking for file '/usr/doc/tar/.../.dracusor/stuff/clear' [ Not found ] [20:08:35] Checking for file '/usr/doc/tar/.../.dracusor/stuff/tzava' [ Not found ] [20:08:35] Checking for file '/usr/doc/tar/.../.dracusor/stuff/citeste' [ Not found ] [20:08:36] Checking for file '/usr/doc/tar/.../.dracusor/stuff/killrk' [ Not found ] [20:08:36] Checking for file '/usr/doc/tar/.../.dracusor/stuff/searchlog' [ Not found ] [20:08:36] Checking for file '/usr/doc/tar/.../.dracusor/stuff/gaoaza' [ Not found ] [20:08:36] Checking for file '/usr/doc/tar/.../.dracusor/stuff/cleaner' [ Not found ] [20:08:36] Checking for file '/usr/doc/tar/.../.dracusor/stuff/shk' [ Not found ] [20:08:36] Checking for file '/usr/doc/tar/.../.dracusor/stuff/srs' [ Not found ] [20:08:36] Checking for file '/usr/doc/tar/.../.dracusor/utile.tgz' [ Not found ] [20:08:36] Checking for file '/usr/doc/tar/.../.dracusor/webpage' [ Not found ] [20:08:36] Checking for file '/usr/doc/tar/.../.dracusor/getpsy' [ Not found ] [20:08:36] Checking for file '/usr/doc/tar/.../.dracusor/getbnc' [ Not found ] [20:08:36] Checking for file '/usr/doc/tar/.../.dracusor/getemech' [ Not found ] [20:08:36] Checking for file '/usr/doc/tar/.../.dracusor/localroot.sh' [ Not found ] [20:08:36] Checking for file '/usr/doc/tar/.../.dracusor/stuff/old/sense' [ Not found ] [20:08:36] Checking for directory '/usr/doc/tar/.../.dracusor' [ Not found ] [20:08:36] Devil RootKit [ Not found ] [20:08:36] [20:08:36] Checking for Diamorphine LKM... [20:08:36] Checking for kernel symbol 'diamorphine' [ Not found ] [20:08:36] Checking for kernel symbol 'module_hide' [ Not found ] [20:08:36] Checking for kernel symbol 'module_hidden' [ Not found ] [20:08:36] Checking for kernel symbol 'is_invisible' [ Not found ] [20:08:36] Checking for kernel symbol 'hacked_getdents' [ Not found ] [20:08:36] Checking for kernel symbol 'hacked_kill' [ Not found ] [20:08:36] Diamorphine LKM [ Not found ] [20:08:36] [20:08:36] Checking for Dica-Kit Rootkit... [20:08:36] Checking for file '/lib/.sso' [ Not found ] [20:08:36] Checking for file '/lib/.so' [ Not found ] [20:08:36] Checking for file '/var/run/...dica/clean' [ Not found ] [20:08:36] Checking for file '/var/run/...dica/dxr' [ Not found ] [20:08:36] Checking for file '/var/run/...dica/read' [ Not found ] [20:08:36] Checking for file '/var/run/...dica/write' [ Not found ] [20:08:36] Checking for file '/var/run/...dica/lf' [ Not found ] [20:08:36] Checking for file '/var/run/...dica/xl' [ Not found ] [20:08:36] Checking for file '/var/run/...dica/xdr' [ Not found ] [20:08:36] Checking for file '/var/run/...dica/psg' [ Not found ] [20:08:36] Checking for file '/var/run/...dica/secure' [ Not found ] [20:08:36] Checking for file '/var/run/...dica/rdx' [ Not found ] [20:08:36] Checking for file '/var/run/...dica/va' [ Not found ] [20:08:36] Checking for file '/var/run/...dica/cl.sh' [ Not found ] [20:08:36] Checking for file '/var/run/...dica/last.log' [ Not found ] [20:08:36] Checking for file '/usr/bin/.etc' [ Not found ] [20:08:36] Checking for file '/etc/sshd_config' [ Not found ] [20:08:36] Checking for file '/etc/ssh_host_key' [ Not found ] [20:08:36] Checking for file '/etc/ssh_random_seed' [ Not found ] [20:08:36] Checking for directory '/var/run/...dica' [ Not found ] [20:08:37] Checking for directory '/var/run/...dica/mh' [ Not found ] [20:08:37] Checking for directory '/var/run/...dica/scan' [ Not found ] [20:08:37] Dica-Kit Rootkit [ Not found ] [20:08:37] [20:08:37] Checking for Dreams Rootkit... [20:08:37] Checking for file '/dev/ttyoa' [ Not found ] [20:08:37] Checking for file '/dev/ttyof' [ Not found ] [20:08:37] Checking for file '/dev/ttyop' [ Not found ] [20:08:37] Checking for file '/usr/bin/sense' [ Not found ] [20:08:37] Checking for file '/usr/bin/sl2' [ Not found ] [20:08:37] Checking for file '/usr/bin/logclear' [ Not found ] [20:08:37] Checking for file '/usr/bin/(swapd)' [ Not found ] [20:08:37] Checking for file '/usr/bin/initrd' [ Not found ] [20:08:37] Checking for file '/usr/bin/crontabs' [ Not found ] [20:08:37] Checking for file '/usr/bin/snfs' [ Not found ] [20:08:37] Checking for file '/usr/lib/libsss' [ Not found ] [20:08:37] Checking for file '/usr/lib/libsnf.log' [ Not found ] [20:08:37] Checking for file '/usr/lib/libshtift/top' [ Not found ] [20:08:37] Checking for file '/usr/lib/libshtift/ps' [ Not found ] [20:08:37] Checking for file '/usr/lib/libshtift/netstat' [ Not found ] [20:08:37] Checking for file '/usr/lib/libshtift/ls' [ Not found ] [20:08:37] Checking for file '/usr/lib/libshtift/ifconfig' [ Not found ] [20:08:37] Checking for file '/usr/include/linseed.h' [ Not found ] [20:08:37] Checking for file '/usr/include/linpid.h' [ Not found ] [20:08:37] Checking for file '/usr/include/linkey.h' [ Not found ] [20:08:37] Checking for file '/usr/include/linconf.h' [ Not found ] [20:08:37] Checking for file '/usr/include/iceseed.h' [ Not found ] [20:08:37] Checking for file '/usr/include/icepid.h' [ Not found ] [20:08:37] Checking for file '/usr/include/icekey.h' [ Not found ] [20:08:37] Checking for file '/usr/include/iceconf.h' [ Not found ] [20:08:37] Checking for directory '/dev/ida/.hpd' [ Not found ] [20:08:37] Checking for directory '/usr/lib/libshtift' [ Not found ] [20:08:37] Dreams Rootkit [ Not found ] [20:08:37] [20:08:37] Checking for Duarawkz Rootkit... [20:08:37] Checking for file '/usr/bin/duarawkz/loginpass' [ Not found ] [20:08:37] Checking for directory '/usr/bin/duarawkz' [ Not found ] [20:08:37] Duarawkz Rootkit [ Not found ] [20:08:37] [20:08:37] Checking for Ebury backdoor... [20:08:37] Checking for file '/lib/libns2.so' [ Not found ] [20:08:37] Checking for file '/lib64/libns2.so' [ Not found ] [20:08:37] Checking for file '/lib/libns5.so' [ Not found ] [20:08:37] Checking for file '/lib64/libns5.so' [ Not found ] [20:08:37] Checking for file '/lib/libpw3.so' [ Not found ] [20:08:37] Checking for file '/lib64/libpw3.so' [ Not found ] [20:08:37] Checking for file '/lib/libpw5.so' [ Not found ] [20:08:37] Checking for file '/lib64/libpw5.so' [ Not found ] [20:08:37] Checking for file '/lib/libsbr.so' [ Not found ] [20:08:37] Checking for file '/lib64/libsbr.so' [ Not found ] [20:08:37] Checking for file '/lib/libslr.so' [ Not found ] [20:08:37] Checking for file '/lib64/libslr.so' [ Not found ] [20:08:37] Ebury backdoor [ Not found ] [20:08:37] [20:08:37] Checking for Enye LKM... [20:08:37] Checking for file '/etc/.enyelkmHIDE^IT.ko' [ Not found ] [20:08:37] Checking for file '/etc/.enyelkmOCULTAR.ko' [ Not found ] [20:08:37] Enye LKM [ Not found ] [20:08:37] [20:08:37] Checking for Flea Linux Rootkit... [20:08:37] Checking for file '/etc/ld.so.hash' [ Not found ] [20:08:38] Checking for file '/lib/security/.config/ssh/sshd_config' [ Not found ] [20:08:38] Checking for file '/lib/security/.config/ssh/ssh_host_key' [ Not found ] [20:08:38] Checking for file '/lib/security/.config/ssh/ssh_host_key.pub' [ Not found ] [20:08:38] Checking for file '/lib/security/.config/ssh/ssh_random_seed' [ Not found ] [20:08:38] Checking for file '/usr/bin/ssh2d' [ Not found ] [20:08:38] Checking for file '/usr/lib/ldlibns.so' [ Not found ] [20:08:38] Checking for file '/usr/lib/ldlibps.so' [ Not found ] [20:08:38] Checking for file '/usr/lib/ldlibpst.so' [ Not found ] [20:08:38] Checking for file '/usr/lib/ldlibdu.so' [ Not found ] [20:08:38] Checking for file '/usr/lib/ldlibct.so' [ Not found ] [20:08:38] Checking for directory '/lib/security/.config/ssh' [ Not found ] [20:08:38] Checking for directory '/dev/..0' [ Not found ] [20:08:38] Checking for directory '/dev/..0/backup' [ Not found ] [20:08:38] Flea Linux Rootkit [ Not found ] [20:08:38] [20:08:38] Checking for Fu Rootkit... [20:08:38] Checking for file '/sbin/xc' [ Not found ] [20:08:38] Checking for file '/usr/include/ivtype.h' [ Not found ] [20:08:38] Checking for file '/bin/.lib' [ Not found ] [20:08:38] Fu Rootkit [ Not found ] [20:08:38] [20:08:38] Checking for Fuck`it Rootkit... [20:08:38] Checking for file '/lib/libproc.so.2.0.7' [ Not found ] [20:08:38] Checking for file '/dev/proc/.bash_profile' [ Not found ] [20:08:38] Checking for file '/dev/proc/.bashrc' [ Not found ] [20:08:38] Checking for file '/dev/proc/.cshrc' [ Not found ] [20:08:38] Checking for file '/dev/proc/fuckit/hax0r' [ Not found ] [20:08:38] Checking for file '/dev/proc/fuckit/hax0rshell' [ Not found ] [20:08:38] Checking for file '/dev/proc/fuckit/config/lports' [ Not found ] [20:08:38] Checking for file '/dev/proc/fuckit/config/rports' [ Not found ] [20:08:38] Checking for file '/dev/proc/fuckit/config/rkconf' [ Not found ] [20:08:38] Checking for file '/dev/proc/fuckit/config/password' [ Not found ] [20:08:38] Checking for file '/dev/proc/fuckit/config/progs' [ Not found ] [20:08:38] Checking for file '/dev/proc/fuckit/system-bins/init' [ Not found ] [20:08:38] Checking for file '/usr/lib/libcps.a' [ Not found ] [20:08:38] Checking for file '/usr/lib/libtty.a' [ Not found ] [20:08:38] Checking for directory '/dev/proc' [ Not found ] [20:08:38] Checking for directory '/dev/proc/fuckit' [ Not found ] [20:08:38] Checking for directory '/dev/proc/fuckit/system-bins' [ Not found ] [20:08:38] Checking for directory '/dev/proc/toolz' [ Not found ] [20:08:38] Fuck`it Rootkit [ Not found ] [20:08:38] [20:08:38] Checking for GasKit Rootkit... [20:08:38] Checking for file '/dev/dev/gaskit/sshd/sshdd' [ Not found ] [20:08:38] Checking for directory '/dev/dev' [ Not found ] [20:08:38] Checking for directory '/dev/dev/gaskit' [ Not found ] [20:08:38] Checking for directory '/dev/dev/gaskit/sshd' [ Not found ] [20:08:38] GasKit Rootkit [ Not found ] [20:08:38] [20:08:38] Checking for Heroin LKM... [20:08:38] Checking for kernel symbol 'heroin' [ Not found ] [20:08:38] Heroin LKM [ Not found ] [20:08:38] [20:08:38] Checking for HjC Kit... [20:08:38] Checking for directory '/dev/.hijackerz' [ Not found ] [20:08:38] HjC Kit [ Not found ] [20:08:38] [20:08:38] Checking for ignoKit Rootkit... [20:08:38] Checking for file '/lib/defs/p' [ Not found ] [20:08:38] Checking for file '/lib/defs/q' [ Not found ] [20:08:39] Checking for file '/lib/defs/r' [ Not found ] [20:08:39] Checking for file '/lib/defs/s' [ Not found ] [20:08:39] Checking for file '/lib/defs/t' [ Not found ] [20:08:39] Checking for file '/usr/lib/defs/p' [ Not found ] [20:08:39] Checking for file '/usr/lib/defs/q' [ Not found ] [20:08:39] Checking for file '/usr/lib/defs/r' [ Not found ] [20:08:39] Checking for file '/usr/lib/defs/s' [ Not found ] [20:08:39] Checking for file '/usr/lib/defs/t' [ Not found ] [20:08:39] Checking for file '/usr/lib/.libigno/pkunsec' [ Not found ] [20:08:39] Checking for file '/usr/lib/.libigno/.igno/psybnc/psybnc' [ Not found ] [20:08:39] Checking for directory '/usr/lib/.libigno' [ Not found ] [20:08:39] Checking for directory '/usr/lib/.libigno/.igno' [ Not found ] [20:08:39] ignoKit Rootkit [ Not found ] [20:08:39] [20:08:39] Checking for IntoXonia-NG Rootkit... [20:08:39] Checking for kernel symbol 'funces' [ Not found ] [20:08:39] Checking for kernel symbol 'ixinit' [ Not found ] [20:08:39] Checking for kernel symbol 'tricks' [ Not found ] [20:08:39] Checking for kernel symbol 'kernel_unlink' [ Not found ] [20:08:39] Checking for kernel symbol 'rootme' [ Not found ] [20:08:39] Checking for kernel symbol 'hide_module' [ Not found ] [20:08:39] Checking for kernel symbol 'find_sys_call_tbl' [ Not found ] [20:08:39] IntoXonia-NG Rootkit [ Not found ] [20:08:39] [20:08:39] Checking for Irix Rootkit... [20:08:39] Checking for directory '/dev/pts/01' [ Not found ] [20:08:39] Checking for directory '/dev/pts/01/backup' [ Not found ] [20:08:39] Checking for directory '/dev/pts/01/etc' [ Not found ] [20:08:39] Checking for directory '/dev/pts/01/tmp' [ Not found ] [20:08:39] Irix Rootkit [ Not found ] [20:08:39] [20:08:39] Checking for Jynx Rootkit... [20:08:39] Checking for file '/xochikit/bc' [ Not found ] [20:08:39] Checking for file '/xochikit/ld_poison.so' [ Not found ] [20:08:39] Checking for file '/omgxochi/bc' [ Not found ] [20:08:39] Checking for file '/omgxochi/ld_poison.so' [ Not found ] [20:08:39] Checking for file '/var/local/^^/bc' [ Not found ] [20:08:39] Checking for file '/var/local/^^/ld_poison.so' [ Not found ] [20:08:39] Checking for directory '/xochikit' [ Not found ] [20:08:39] Checking for directory '/omgxochi' [ Not found ] [20:08:39] Checking for directory '/var/local/^^' [ Not found ] [20:08:39] Jynx Rootkit [ Not found ] [20:08:39] [20:08:39] Checking for Jynx2 Rootkit... [20:08:39] Checking for file '/XxJynx/reality.so' [ Not found ] [20:08:39] Checking for directory '/XxJynx' [ Not found ] [20:08:40] Jynx2 Rootkit [ Not found ] [20:08:40] [20:08:40] Checking for KBeast Rootkit... [20:08:40] Checking for file '/usr/_h4x_/ipsecs-kbeast-v1.ko' [ Not found ] [20:08:40] Checking for file '/usr/_h4x_/_h4x_bd' [ Not found ] [20:08:40] Checking for file '/usr/_h4x_/acctlog' [ Not found ] [20:08:40] Checking for directory '/usr/_h4x_' [ Not found ] [20:08:40] Checking for kernel symbol 'h4x_delete_module' [ Not found ] [20:08:40] Checking for kernel symbol 'h4x_getdents64' [ Not found ] [20:08:40] Checking for kernel symbol 'h4x_kill' [ Not found ] [20:08:40] Checking for kernel symbol 'h4x_open' [ Not found ] [20:08:40] Checking for kernel symbol 'h4x_read' [ Not found ] [20:08:40] Checking for kernel symbol 'h4x_rename' [ Not found ] [20:08:40] Checking for kernel symbol 'h4x_rmdir' [ Not found ] [20:08:40] Checking for kernel symbol 'h4x_tcp4_seq_show' [ Not found ] [20:08:40] Checking for kernel symbol 'h4x_write' [ Not found ] [20:08:40] KBeast Rootkit [ Not found ] [20:08:40] [20:08:40] Checking for Kitko Rootkit... [20:08:40] Checking for directory '/usr/src/redhat/SRPMS/...' [ Not found ] [20:08:40] Kitko Rootkit [ Not found ] [20:08:40] [20:08:40] Checking for Knark Rootkit... [20:08:40] Checking for file '/proc/knark/pids' [ Not found ] [20:08:40] Checking for directory '/proc/knark' [ Not found ] [20:08:40] Knark Rootkit [ Not found ] [20:08:40] [20:08:40] Checking for ld-linuxv.so Rootkit... [20:08:40] Checking for file '/lib/ld-linuxv.so.1' [ Not found ] [20:08:40] Checking for directory '/var/opt/_so_cache' [ Not found ] [20:08:40] Checking for directory '/var/opt/_so_cache/ld' [ Not found ] [20:08:40] Checking for directory '/var/opt/_so_cache/lc' [ Not found ] [20:08:40] ld-linuxv.so Rootkit [ Not found ] [20:08:40] [20:08:40] Checking for Li0n Worm... [20:08:40] Checking for file '/bin/in.telnetd' [ Not found ] [20:08:40] Checking for file '/bin/mjy' [ Not found ] [20:08:40] Checking for file '/usr/man/man1/man1/lib/.lib/mjy' [ Not found ] [20:08:40] Checking for file '/usr/man/man1/man1/lib/.lib/in.telnetd' [ Not found ] [20:08:40] Checking for file '/usr/man/man1/man1/lib/.lib/.x' [ Not found ] [20:08:40] Checking for file '/dev/.lib/lib/scan/1i0n.sh' [ Not found ] [20:08:40] Checking for file '/dev/.lib/lib/scan/hack.sh' [ Not found ] [20:08:40] Checking for file '/dev/.lib/lib/scan/bind' [ Not found ] [20:08:40] Checking for file '/dev/.lib/lib/scan/randb' [ Not found ] [20:08:41] Checking for file '/dev/.lib/lib/scan/scan.sh' [ Not found ] [20:08:41] Checking for file '/dev/.lib/lib/scan/pscan' [ Not found ] [20:08:41] Checking for file '/dev/.lib/lib/scan/star.sh' [ Not found ] [20:08:41] Checking for file '/dev/.lib/lib/scan/bindx.sh' [ Not found ] [20:08:41] Checking for file '/dev/.lib/lib/scan/bindname.log' [ Not found ] [20:08:41] Checking for file '/dev/.lib/lib/1i0n.sh' [ Not found ] [20:08:41] Checking for file '/dev/.lib/lib/lib/netstat' [ Not found ] [20:08:41] Checking for file '/dev/.lib/lib/lib/dev/.1addr' [ Not found ] [20:08:41] Checking for file '/dev/.lib/lib/lib/dev/.1logz' [ Not found ] [20:08:41] Checking for file '/dev/.lib/lib/lib/dev/.1proc' [ Not found ] [20:08:41] Checking for file '/dev/.lib/lib/lib/dev/.1file' [ Not found ] [20:08:41] Li0n Worm [ Not found ] [20:08:41] [20:08:41] Checking for Lockit / LJK2 Rootkit... [20:08:41] Checking for file '/usr/lib/libmen.oo/.LJK2/ssh_config' [ Not found ] [20:08:41] Checking for file '/usr/lib/libmen.oo/.LJK2/ssh_host_key' [ Not found ] [20:08:41] Checking for file '/usr/lib/libmen.oo/.LJK2/ssh_host_key.pub' [ Not found ] [20:08:41] Checking for file '/usr/lib/libmen.oo/.LJK2/ssh_random_seed*' [ Not found ] [20:08:41] Checking for file '/usr/lib/libmen.oo/.LJK2/sshd_config' [ Not found ] [20:08:41] Checking for file '/usr/lib/libmen.oo/.LJK2/backdoor/RK1bd' [ Not found ] [20:08:41] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/du' [ Not found ] [20:08:41] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/ifconfig' [ Not found ] [20:08:41] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/inetd.conf' [ Not found ] [20:08:41] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/locate' [ Not found ] [20:08:41] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/login' [ Not found ] [20:08:41] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/ls' [ Not found ] [20:08:41] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/netstat' [ Not found ] [20:08:41] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/ps' [ Not found ] [20:08:41] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/pstree' [ Not found ] [20:08:41] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/rc.sysinit' [ Not found ] [20:08:41] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/syslogd' [ Not found ] [20:08:41] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/tcpd' [ Not found ] [20:08:41] Checking for file '/usr/lib/libmen.oo/.LJK2/backup/top' [ Not found ] [20:08:41] Checking for file '/usr/lib/libmen.oo/.LJK2/clean/RK1sauber' [ Not found ] [20:08:41] Checking for file '/usr/lib/libmen.oo/.LJK2/clean/RK1wted' [ Not found ] [20:08:41] Checking for file '/usr/lib/libmen.oo/.LJK2/hack/RK1parse' [ Not found ] [20:08:41] Checking for file '/usr/lib/libmen.oo/.LJK2/hack/RK1sniff' [ Not found ] [20:08:41] Checking for file '/usr/lib/libmen.oo/.LJK2/hide/.RK1addr' [ Not found ] [20:08:41] Checking for file '/usr/lib/libmen.oo/.LJK2/hide/.RK1dir' [ Not found ] [20:08:41] Checking for file '/usr/lib/libmen.oo/.LJK2/hide/.RK1log' [ Not found ] [20:08:41] Checking for file '/usr/lib/libmen.oo/.LJK2/hide/.RK1proc' [ Not found ] [20:08:41] Checking for file '/usr/lib/libmen.oo/.LJK2/hide/RK1phidemod.c' [ Not found ] [20:08:41] Checking for file '/usr/lib/libmen.oo/.LJK2/modules/README.modules' [ Not found ] [20:08:41] Checking for file '/usr/lib/libmen.oo/.LJK2/modules/RK1hidem.c' [ Not found ] [20:08:41] Checking for file '/usr/lib/libmen.oo/.LJK2/modules/RK1phide' [ Not found ] [20:08:41] Checking for file '/usr/lib/libmen.oo/.LJK2/sshconfig/RK1ssh' [ Not found ] [20:08:41] Checking for directory '/usr/lib/libmen.oo/.LJK2' [ Not found ] [20:08:41] Lockit / LJK2 Rootkit [ Not found ] [20:08:41] [20:08:41] Checking for Mokes backdoor... [20:08:41] Checking for file '/tmp/ss0-[0-9][0-9][0-9][0-9][0-9][0-9]-[0-9][0-9][0-9][0-9][0-9][0-9]-[0-9][0-9][0-9].sst' [ Not found ] [20:08:41] Checking for file '/tmp/aa0-[0-9][0-9][0-9][0-9][0-9][0-9]-[0-9][0-9][0-9][0-9][0-9][0-9]-[0-9][0-9][0-9].aat' [ Not found ] [20:08:41] Checking for file '/tmp/kk0-[0-9][0-9][0-9][0-9][0-9][0-9]-[0-9][0-9][0-9][0-9][0-9][0-9]-[0-9][0-9][0-9].kkt' [ Not found ] [20:08:41] Checking for file '/tmp/dd0-[0-9][0-9][0-9][0-9][0-9][0-9]-[0-9][0-9][0-9][0-9][0-9][0-9]-[0-9][0-9][0-9].ddt' [ Not found ] [20:08:41] Mokes backdoor [ Not found ] [20:08:41] [20:08:41] Checking for Mood-NT Rootkit... [20:08:41] Checking for file '/sbin/init__mood-nt-_-_cthulhu' [ Not found ] [20:08:42] Checking for file '/_cthulhu/mood-nt.init' [ Not found ] [20:08:42] Checking for file '/_cthulhu/mood-nt.conf' [ Not found ] [20:08:42] Checking for file '/_cthulhu/mood-nt.sniff' [ Not found ] [20:08:42] Checking for directory '/_cthulhu' [ Not found ] [20:08:42] Mood-NT Rootkit [ Not found ] [20:08:42] [20:08:42] Checking for MRK Rootkit... [20:08:42] Checking for file '/dev/ida/.inet/pid' [ Not found ] [20:08:42] Checking for file '/dev/ida/.inet/ssh_host_key' [ Not found ] [20:08:42] Checking for file '/dev/ida/.inet/ssh_random_seed' [ Not found ] [20:08:42] Checking for file '/dev/ida/.inet/tcp.log' [ Not found ] [20:08:42] Checking for directory '/dev/ida/.inet' [ Not found ] [20:08:42] Checking for directory '/var/spool/cron/.sh' [ Not found ] [20:08:42] MRK Rootkit [ Not found ] [20:08:42] [20:08:42] Checking for Ni0 Rootkit... [20:08:42] Checking for file '/var/lock/subsys/...datafile.../...net...' [ Not found ] [20:08:42] Checking for file '/var/lock/subsys/...datafile.../...port...' [ Not found ] [20:08:42] Checking for file '/var/lock/subsys/...datafile.../...ps...' [ Not found ] [20:08:42] Checking for file '/var/lock/subsys/...datafile.../...file...' [ Not found ] [20:08:42] Checking for directory '/tmp/waza' [ Not found ] [20:08:42] Checking for directory '/var/lock/subsys/...datafile...' [ Not found ] [20:08:42] Checking for directory '/usr/sbin/es' [ Not found ] [20:08:42] Ni0 Rootkit [ Not found ] [20:08:42] [20:08:42] Checking for Ohhara Rootkit... [20:08:42] Checking for file '/var/lock/subsys/...datafile.../...datafile.../in.smbd.log' [ Not found ] [20:08:42] Checking for directory '/var/lock/subsys/...datafile...' [ Not found ] [20:08:42] Checking for directory '/var/lock/subsys/...datafile.../...datafile...' [ Not found ] [20:08:42] Checking for directory '/var/lock/subsys/...datafile.../...datafile.../bin' [ Not found ] [20:08:42] Checking for directory '/var/lock/subsys/...datafile.../...datafile.../usr/bin' [ Not found ] [20:08:42] Checking for directory '/var/lock/subsys/...datafile.../...datafile.../usr/sbin' [ Not found ] [20:08:42] Checking for directory '/var/lock/subsys/...datafile.../...datafile.../lib/security' [ Not found ] [20:08:42] Ohhara Rootkit [ Not found ] [20:08:42] [20:08:42] Checking for Optic Kit (Tux) Worm... [20:08:42] Checking for directory '/dev/tux' [ Not found ] [20:08:42] Checking for directory '/usr/bin/xchk' [ Not found ] [20:08:42] Checking for directory '/usr/bin/xsf' [ Not found ] [20:08:42] Checking for directory '/usr/bin/ssh2d' [ Not found ] [20:08:42] Optic Kit (Tux) Worm [ Not found ] [20:08:42] [20:08:42] Checking for Oz Rootkit... [20:08:42] Checking for file '/dev/.oz/.nap/rkit/terror' [ Not found ] [20:08:42] Checking for directory '/dev/.oz' [ Not found ] [20:08:42] Oz Rootkit [ Not found ] [20:08:42] [20:08:42] Checking for Phalanx Rootkit... [20:08:42] Checking for file '/uNFuNF' [ Not found ] [20:08:42] Checking for file '/etc/host.ph1' [ Not found ] [20:08:42] Checking for file '/bin/host.ph1' [ Not found ] [20:08:42] Checking for file '/usr/share/.home.ph1/phalanx' [ Not found ] [20:08:42] Checking for file '/usr/share/.home.ph1/cb' [ Not found ] [20:08:42] Checking for file '/usr/share/.home.ph1/kebab' [ Not found ] [20:08:42] Checking for directory '/usr/share/.home.ph1' [ Not found ] [20:08:42] Checking for directory '/usr/share/.home.ph1/tty' [ Not found ] [20:08:42] Phalanx Rootkit [ Not found ] [20:08:42] [20:08:42] Checking for Phalanx2 Rootkit... [20:08:42] Checking for file '/etc/khubd.p2/.p2rc' [ Not found ] [20:08:42] Checking for file '/etc/khubd.p2/.phalanx2' [ Not found ] [20:08:42] Checking for file '/etc/khubd.p2/.sniff' [ Not found ] [20:08:42] Checking for file '/etc/khubd.p2/sshgrab.py' [ Not found ] [20:08:43] Checking for file '/etc/lolzz.p2/.p2rc' [ Not found ] [20:08:43] Checking for file '/etc/lolzz.p2/.phalanx2' [ Not found ] [20:08:43] Checking for file '/etc/lolzz.p2/.sniff' [ Not found ] [20:08:43] Checking for file '/etc/lolzz.p2/sshgrab.py' [ Not found ] [20:08:43] Checking for file '/etc/cron.d/zupzzplaceholder' [ Not found ] [20:08:43] Checking for file '/usr/lib/zupzz.p2/.p-2.3d' [ Not found ] [20:08:43] Checking for file '/usr/lib/zupzz.p2/.p2rc' [ Not found ] [20:08:43] Checking for directory '/etc/khubd.p2' [ Not found ] [20:08:43] Checking for directory '/etc/lolzz.p2' [ Not found ] [20:08:43] Checking for directory '/usr/lib/zupzz.p2' [ Not found ] [20:08:43] Phalanx2 Rootkit [ Not found ] [20:08:43] [20:08:43] Checking for Phalanx2 Rootkit (extended tests)... [20:08:43] Checking for directory '/etc/khubd.p2' [ Not found ] [20:08:43] Checking for directory '/etc/lolzz.p2' [ Not found ] [20:08:43] Checking for directory '/usr/lib/zupzz.p2' [ Not found ] [20:08:43] Phalanx2 Rootkit (extended tests) [ Not found ] [20:08:43] [20:08:43] Checking for Portacelo Rootkit... [20:08:43] Checking for file '/var/lib/.../.ak' [ Not found ] [20:08:43] Checking for file '/var/lib/.../.hk' [ Not found ] [20:08:43] Checking for file '/var/lib/.../.rs' [ Not found ] [20:08:43] Checking for file '/var/lib/.../.p' [ Not found ] [20:08:43] Checking for file '/var/lib/.../getty' [ Not found ] [20:08:43] Checking for file '/var/lib/.../lkt.o' [ Not found ] [20:08:43] Checking for file '/var/lib/.../show' [ Not found ] [20:08:43] Checking for file '/var/lib/.../nlkt.o' [ Not found ] [20:08:43] Checking for file '/var/lib/.../ssshrc' [ Not found ] [20:08:43] Checking for file '/var/lib/.../sssh_equiv' [ Not found ] [20:08:43] Checking for file '/var/lib/.../sssh_known_hosts' [ Not found ] [20:08:43] Checking for file '/var/lib/.../sssh_pid' [ Not found ] [20:08:43] Checking for file '~/.sssh/known_hosts' [ Not found ] [20:08:43] Portacelo Rootkit [ Not found ] [20:08:43] [20:08:43] Checking for R3dstorm Toolkit... [20:08:43] Checking for file '/var/log/tk02/see_all' [ Not found ] [20:08:43] Checking for file '/var/log/tk02/.scris' [ Not found ] [20:08:43] Checking for file '/bin/.../sshd/sbin/sshd1' [ Not found ] [20:08:43] Checking for file '/bin/.../hate/sk' [ Not found ] [20:08:43] Checking for file '/bin/.../see_all' [ Not found ] [20:08:43] Checking for directory '/var/log/tk02' [ Not found ] [20:08:43] Checking for directory '/var/log/tk02/old' [ Not found ] [20:08:43] Checking for directory '/bin/...' [ Not found ] [20:08:43] R3dstorm Toolkit [ Not found ] [20:08:43] [20:08:43] Checking for RH-Sharpe's Rootkit... [20:08:43] Checking for file '/bin/lps' [ Not found ] [20:08:43] Checking for file '/usr/bin/lpstree' [ Not found ] [20:08:43] Checking for file '/usr/bin/ltop' [ Not found ] [20:08:43] Checking for file '/usr/bin/lkillall' [ Not found ] [20:08:43] Checking for file '/usr/bin/ldu' [ Not found ] [20:08:43] Checking for file '/usr/bin/lnetstat' [ Not found ] [20:08:43] Checking for file '/usr/bin/wp' [ Not found ] [20:08:43] Checking for file '/usr/bin/shad' [ Not found ] [20:08:43] Checking for file '/usr/bin/vadim' [ Not found ] [20:08:43] Checking for file '/usr/bin/slice' [ Not found ] [20:08:43] Checking for file '/usr/bin/cleaner' [ Not found ] [20:08:43] Checking for file '/usr/include/rpcsvc/du' [ Not found ] [20:08:44] RH-Sharpe's Rootkit [ Not found ] [20:08:44] [20:08:44] Checking for RSHA's Rootkit... [20:08:44] Checking for file '/bin/kr4p' [ Not found ] [20:08:44] Checking for file '/usr/bin/n3tstat' [ Not found ] [20:08:44] Checking for file '/usr/bin/chsh2' [ Not found ] [20:08:44] Checking for file '/usr/bin/slice2' [ Not found ] [20:08:44] Checking for file '/usr/src/linux/arch/alpha/lib/.lib/.1proc' [ Not found ] [20:08:44] Checking for file '/etc/rc.d/arch/alpha/lib/.lib/.1addr' [ Not found ] [20:08:44] Checking for directory '/etc/rc.d/rsha' [ Not found ] [20:08:44] Checking for directory '/etc/rc.d/arch/alpha/lib/.lib' [ Not found ] [20:08:44] RSHA's Rootkit [ Not found ] [20:08:44] [20:08:44] Checking for Scalper Worm... [20:08:44] Checking for file '/tmp/.a' [ Not found ] [20:08:44] Checking for file '/tmp/.uua' [ Not found ] [20:08:44] Scalper Worm [ Not found ] [20:08:44] [20:08:44] Checking for Sebek LKM... [20:08:44] Checking for kernel symbol 'adore or sebek' [ Not found ] [20:08:44] Sebek LKM [ Not found ] [20:08:44] [20:08:44] Checking for Shutdown Rootkit... [20:08:44] Checking for file '/usr/man/man5/.. /.dir/scannah/asus' [ Not found ] [20:08:44] Checking for file '/usr/man/man5/.. /.dir/see' [ Not found ] [20:08:44] Checking for file '/usr/man/man5/.. /.dir/nscd' [ Not found ] [20:08:44] Checking for file '/usr/man/man5/.. /.dir/alpd' [ Not found ] [20:08:44] Checking for file '/etc/rc.d/rc.local ' [ Not found ] [20:08:44] Checking for directory '/usr/man/man5/.. /.dir' [ Not found ] [20:08:44] Checking for directory '/usr/man/man5/.. /.dir/scannah' [ Not found ] [20:08:44] Checking for directory '/etc/rc.d/rc0.d/.. /.dir' [ Not found ] [20:08:44] Shutdown Rootkit [ Not found ] [20:08:44] [20:08:44] Checking for SHV4 Rootkit... [20:08:44] Checking for file '/etc/ld.so.hash' [ Not found ] [20:08:44] Checking for file '/lib/libext-2.so.7' [ Not found ] [20:08:44] Checking for file '/lib/lidps1.so' [ Not found ] [20:08:44] Checking for file '/lib/libproc.a' [ Not found ] [20:08:44] Checking for file '/lib/libproc.so.2.0.6' [ Not found ] [20:08:44] Checking for file '/lib/ldd.so/tks' [ Not found ] [20:08:44] Checking for file '/lib/ldd.so/tkp' [ Not found ] [20:08:44] Checking for file '/lib/ldd.so/tksb' [ Not found ] [20:08:44] Checking for file '/lib/security/.config/sshd' [ Not found ] [20:08:44] Checking for file '/lib/security/.config/ssh/ssh_host_key' [ Not found ] [20:08:44] Checking for file '/lib/security/.config/ssh/ssh_host_key.pub' [ Not found ] [20:08:44] Checking for file '/lib/security/.config/ssh/ssh_random_seed' [ Not found ] [20:08:44] Checking for file '/usr/include/file.h' [ Not found ] [20:08:44] Checking for file '/usr/include/hosts.h' [ Not found ] [20:08:44] Checking for file '/usr/include/lidps1.so' [ Not found ] [20:08:44] Checking for file '/usr/include/log.h' [ Not found ] [20:08:44] Checking for file '/usr/include/proc.h' [ Not found ] [20:08:44] Checking for file '/usr/sbin/xntps' [ Not found ] [20:08:44] Checking for file '/dev/srd0' [ Not found ] [20:08:44] Checking for directory '/lib/ldd.so' [ Not found ] [20:08:44] Checking for directory '/lib/security/.config' [ Not found ] [20:08:44] Checking for directory '/lib/security/.config/ssh' [ Not found ] [20:08:44] SHV4 Rootkit [ Not found ] [20:08:44] [20:08:44] Checking for SHV5 Rootkit... [20:08:44] Checking for file '/etc/sh.conf' [ Not found ] [20:08:45] Checking for file '/lib/libproc.a' [ Not found ] [20:08:45] Checking for file '/lib/libproc.so.2.0.6' [ Not found ] [20:08:45] Checking for file '/lib/lidps1.so' [ Not found ] [20:08:45] Checking for file '/lib/libsh.so/bash' [ Not found ] [20:08:45] Checking for file '/usr/include/file.h' [ Not found ] [20:08:45] Checking for file '/usr/include/hosts.h' [ Not found ] [20:08:45] Checking for file '/usr/include/log.h' [ Not found ] [20:08:45] Checking for file '/usr/include/proc.h' [ Not found ] [20:08:45] Checking for file '/lib/libsh.so/shdcf2' [ Not found ] [20:08:45] Checking for file '/lib/libsh.so/shhk' [ Not found ] [20:08:45] Checking for file '/lib/libsh.so/shhk.pub' [ Not found ] [20:08:45] Checking for file '/lib/libsh.so/shrs' [ Not found ] [20:08:45] Checking for file '/usr/lib/libsh/.bashrc' [ Not found ] [20:08:45] Checking for file '/usr/lib/libsh/shsb' [ Not found ] [20:08:45] Checking for file '/usr/lib/libsh/hide' [ Not found ] [20:08:45] Checking for file '/usr/lib/libsh/.sniff/shsniff' [ Not found ] [20:08:45] Checking for file '/usr/lib/libsh/.sniff/shp' [ Not found ] [20:08:45] Checking for file '/dev/srd0' [ Not found ] [20:08:45] Checking for directory '/lib/libsh.so' [ Not found ] [20:08:45] Checking for directory '/usr/lib/libsh' [ Not found ] [20:08:45] Checking for directory '/usr/lib/libsh/utilz' [ Not found ] [20:08:45] Checking for directory '/usr/lib/libsh/.backup' [ Not found ] [20:08:45] SHV5 Rootkit [ Not found ] [20:08:45] [20:08:45] Checking for Sin Rootkit... [20:08:45] Checking for file '/dev/.haos/haos1/.f/Denyed' [ Not found ] [20:08:45] Checking for file '/dev/ttyoa' [ Not found ] [20:08:45] Checking for file '/dev/ttyof' [ Not found ] [20:08:45] Checking for file '/dev/ttyop' [ Not found ] [20:08:45] Checking for file '/dev/ttyos' [ Not found ] [20:08:45] Checking for file '/usr/lib/.lib' [ Not found ] [20:08:45] Checking for file '/usr/lib/sn/.X' [ Not found ] [20:08:45] Checking for file '/usr/lib/sn/.sys' [ Not found ] [20:08:45] Checking for file '/usr/lib/ld/.X' [ Not found ] [20:08:45] Checking for file '/usr/man/man1/...' [ Not found ] [20:08:45] Checking for file '/usr/man/man1/.../.m' [ Not found ] [20:08:45] Checking for file '/usr/man/man1/.../.w' [ Not found ] [20:08:45] Checking for directory '/usr/lib/sn' [ Not found ] [20:08:45] Checking for directory '/usr/lib/man1/...' [ Not found ] [20:08:45] Checking for directory '/dev/.haos' [ Not found ] [20:08:45] Sin Rootkit [ Not found ] [20:08:45] [20:08:45] Checking for Slapper Worm... [20:08:45] Checking for file '/tmp/.bugtraq' [ Not found ] [20:08:45] Checking for file '/tmp/.uubugtraq' [ Not found ] [20:08:45] Checking for file '/tmp/.bugtraq.c' [ Not found ] [20:08:45] Checking for file '/tmp/httpd' [ Not found ] [20:08:45] Checking for file '/tmp/.unlock' [ Not found ] [20:08:45] Checking for file '/tmp/update' [ Not found ] [20:08:45] Checking for file '/tmp/.cinik' [ Not found ] [20:08:45] Checking for file '/tmp/.b' [ Not found ] [20:08:45] Slapper Worm [ Not found ] [20:08:45] [20:08:45] Checking for Sneakin Rootkit... [20:08:45] Checking for directory '/tmp/.X11-unix/.../rk' [ Not found ] [20:08:45] Sneakin Rootkit [ Not found ] [20:08:45] [20:08:45] Checking for 'Spanish' Rootkit... [20:08:45] Checking for file '/dev/ptyq' [ Not found ] [20:08:46] Checking for file '/bin/ad' [ Not found ] [20:08:46] Checking for file '/bin/ava' [ Not found ] [20:08:46] Checking for file '/bin/server' [ Not found ] [20:08:46] Checking for file '/usr/sbin/rescue' [ Not found ] [20:08:46] Checking for file '/usr/share/.../chrps' [ Not found ] [20:08:46] Checking for file '/usr/share/.../chrifconfig' [ Not found ] [20:08:46] Checking for file '/usr/share/.../netstat' [ Not found ] [20:08:46] Checking for file '/usr/share/.../linsniffer' [ Not found ] [20:08:46] Checking for file '/usr/share/.../charbd' [ Not found ] [20:08:46] Checking for file '/usr/share/.../charbd2' [ Not found ] [20:08:46] Checking for file '/usr/share/.../charbd3' [ Not found ] [20:08:46] Checking for file '/usr/share/.../charbd4' [ Not found ] [20:08:46] Checking for file '/usr/man/tmp/update.tgz' [ Not found ] [20:08:46] Checking for file '/var/lib/rpm/db.rpm' [ Not found ] [20:08:46] Checking for file '/var/cache/man/.cat' [ Not found ] [20:08:46] Checking for file '/var/spool/lpd/remote/.lpq' [ Not found ] [20:08:46] Checking for directory '/usr/share/...' [ Not found ] [20:08:46] 'Spanish' Rootkit [ Not found ] [20:08:46] [20:08:46] Checking for Suckit Rootkit... [20:08:46] Checking for file '/sbin/initsk12' [ Not found ] [20:08:46] Checking for file '/sbin/initxrk' [ Not found ] [20:08:46] Checking for file '/usr/bin/null' [ Not found ] [20:08:46] Checking for file '/usr/share/locale/sk/.sk12/sk' [ Not found ] [20:08:46] Checking for file '/etc/rc.d/rc0.d/S23kmdac' [ Not found ] [20:08:46] Checking for file '/etc/rc.d/rc1.d/S23kmdac' [ Not found ] [20:08:46] Checking for file '/etc/rc.d/rc2.d/S23kmdac' [ Not found ] [20:08:46] Checking for file '/etc/rc.d/rc3.d/S23kmdac' [ Not found ] [20:08:46] Checking for file '/etc/rc.d/rc4.d/S23kmdac' [ Not found ] [20:08:46] Checking for file '/etc/rc.d/rc5.d/S23kmdac' [ Not found ] [20:08:46] Checking for file '/etc/rc.d/rc6.d/S23kmdac' [ Not found ] [20:08:46] Checking for directory '/dev/sdhu0/tehdrakg' [ Not found ] [20:08:46] Checking for directory '/etc/.MG' [ Not found ] [20:08:46] Checking for directory '/usr/share/locale/sk/.sk12' [ Not found ] [20:08:46] Checking for directory '/usr/lib/perl5/site_perl/i386-linux/auto/TimeDate/.packlist' [ Not found ] [20:08:46] Suckit Rootkit [ Not found ] [20:08:46] [20:08:46] Checking for Superkit Rootkit... [20:08:46] Checking for file '/usr/man/.sman/sk/backsh' [ Not found ] [20:08:46] Checking for file '/usr/man/.sman/sk/izbtrag' [ Not found ] [20:08:46] Checking for file '/usr/man/.sman/sk/sksniff' [ Not found ] [20:08:46] Checking for file '/var/www/cgi-bin/cgiback.cgi' [ Not found ] [20:08:46] Checking for directory '/usr/man/.sman/sk' [ Not found ] [20:08:46] Superkit Rootkit [ Not found ] [20:08:46] [20:08:46] Checking for TBD (Telnet BackDoor)... [20:08:46] Checking for file '/usr/lib/.tbd' [ Not found ] [20:08:46] TBD (Telnet BackDoor) [ Not found ] [20:08:46] [20:08:46] Checking for TeLeKiT Rootkit... [20:08:46] Checking for file '/usr/man/man3/.../TeLeKiT/bin/sniff' [ Not found ] [20:08:46] Checking for file '/usr/man/man3/.../TeLeKiT/bin/telnetd' [ Not found ] [20:08:46] Checking for file '/usr/man/man3/.../TeLeKiT/bin/teleulo' [ Not found ] [20:08:46] Checking for file '/usr/man/man3/.../cl' [ Not found ] [20:08:46] Checking for file '/dev/ptyr' [ Not found ] [20:08:46] Checking for file '/dev/ptyp' [ Not found ] [20:08:46] Checking for file '/dev/ptyq' [ Not found ] [20:08:46] Checking for file '/dev/hda06' [ Not found ] [20:08:46] Checking for file '/usr/info/libc1.so' [ Not found ] [20:08:47] Checking for directory '/usr/man/man3/...' [ Not found ] [20:08:47] Checking for directory '/usr/man/man3/.../lsniff' [ Not found ] [20:08:47] Checking for directory '/usr/man/man3/.../TeLeKiT' [ Not found ] [20:08:47] TeLeKiT Rootkit [ Not found ] [20:08:47] [20:08:47] Checking for T0rn Rootkit... [20:08:47] Checking for file '/dev/.lib/lib/lib/t0rns' [ Not found ] [20:08:47] Checking for file '/dev/.lib/lib/lib/du' [ Not found ] [20:08:47] Checking for file '/dev/.lib/lib/lib/ls' [ Not found ] [20:08:47] Checking for file '/dev/.lib/lib/lib/t0rnsb' [ Not found ] [20:08:47] Checking for file '/dev/.lib/lib/lib/ps' [ Not found ] [20:08:47] Checking for file '/dev/.lib/lib/lib/t0rnp' [ Not found ] [20:08:47] Checking for file '/dev/.lib/lib/lib/find' [ Not found ] [20:08:47] Checking for file '/dev/.lib/lib/lib/ifconfig' [ Not found ] [20:08:47] Checking for file '/dev/.lib/lib/lib/pg' [ Not found ] [20:08:47] Checking for file '/dev/.lib/lib/lib/ssh.tgz' [ Not found ] [20:08:47] Checking for file '/dev/.lib/lib/lib/top' [ Not found ] [20:08:47] Checking for file '/dev/.lib/lib/lib/sz' [ Not found ] [20:08:47] Checking for file '/dev/.lib/lib/lib/login' [ Not found ] [20:08:47] Checking for file '/dev/.lib/lib/lib/in.fingerd' [ Not found ] [20:08:47] Checking for file '/dev/.lib/lib/lib/1i0n.sh' [ Not found ] [20:08:47] Checking for file '/dev/.lib/lib/lib/pstree' [ Not found ] [20:08:47] Checking for file '/dev/.lib/lib/lib/in.telnetd' [ Not found ] [20:08:47] Checking for file '/dev/.lib/lib/lib/mjy' [ Not found ] [20:08:47] Checking for file '/dev/.lib/lib/lib/sush' [ Not found ] [20:08:47] Checking for file '/dev/.lib/lib/lib/tfn' [ Not found ] [20:08:47] Checking for file '/dev/.lib/lib/lib/name' [ Not found ] [20:08:47] Checking for file '/dev/.lib/lib/lib/getip.sh' [ Not found ] [20:08:47] Checking for file '/usr/info/.torn/sh*' [ Not found ] [20:08:47] Checking for file '/usr/src/.puta/.1addr' [ Not found ] [20:08:47] Checking for file '/usr/src/.puta/.1file' [ Not found ] [20:08:47] Checking for file '/usr/src/.puta/.1proc' [ Not found ] [20:08:47] Checking for file '/usr/src/.puta/.1logz' [ Not found ] [20:08:47] Checking for file '/usr/info/.t0rn' [ Not found ] [20:08:47] Checking for directory '/dev/.lib' [ Not found ] [20:08:47] Checking for directory '/dev/.lib/lib' [ Not found ] [20:08:47] Checking for directory '/dev/.lib/lib/lib' [ Not found ] [20:08:47] Checking for directory '/dev/.lib/lib/lib/dev' [ Not found ] [20:08:47] Checking for directory '/dev/.lib/lib/scan' [ Not found ] [20:08:47] Checking for directory '/usr/src/.puta' [ Not found ] [20:08:47] Checking for directory '/usr/man/man1/man1' [ Not found ] [20:08:47] Checking for directory '/usr/man/man1/man1/lib' [ Not found ] [20:08:47] Checking for directory '/usr/man/man1/man1/lib/.lib' [ Not found ] [20:08:47] Checking for directory '/usr/man/man1/man1/lib/.lib/.backup' [ Not found ] [20:08:47] T0rn Rootkit [ Not found ] [20:08:47] [20:08:47] Checking for trNkit Rootkit... [20:08:47] Checking for file '/usr/lib/libbins.la' [ Not found ] [20:08:47] Checking for file '/usr/lib/libtcs.so' [ Not found ] [20:08:47] Checking for file '/dev/.ttpy/ulogin.sh' [ Not found ] [20:08:47] Checking for file '/dev/.ttpy/tcpshell.sh' [ Not found ] [20:08:47] Checking for file '/dev/.ttpy/bupdu' [ Not found ] [20:08:47] Checking for file '/dev/.ttpy/buloc' [ Not found ] [20:08:47] Checking for file '/dev/.ttpy/buloc1' [ Not found ] [20:08:47] Checking for file '/dev/.ttpy/buloc2' [ Not found ] [20:08:47] Checking for file '/dev/.ttpy/stat' [ Not found ] [20:08:48] Checking for file '/dev/.ttpy/backps' [ Not found ] [20:08:48] Checking for file '/dev/.ttpy/tree' [ Not found ] [20:08:48] Checking for file '/dev/.ttpy/topk' [ Not found ] [20:08:48] Checking for file '/dev/.ttpy/wold' [ Not found ] [20:08:48] Checking for file '/dev/.ttpy/whoold' [ Not found ] [20:08:48] Checking for file '/dev/.ttpy/backdoors' [ Not found ] [20:08:48] trNkit Rootkit [ Not found ] [20:08:48] [20:08:48] Checking for Trojanit Kit... [20:08:48] Checking for file '/bin/.ls' [ Not found ] [20:08:48] Checking for file '/bin/.ps' [ Not found ] [20:08:48] Checking for file '/bin/.netstat' [ Not found ] [20:08:48] Checking for file '/usr/bin/.nop' [ Not found ] [20:08:48] Checking for file '/usr/bin/.who' [ Not found ] [20:08:48] Trojanit Kit [ Not found ] [20:08:48] [20:08:48] Checking for Tuxtendo Rootkit... [20:08:48] Checking for file '/lib/libproc.so.2.0.7' [ Not found ] [20:08:48] Checking for file '/usr/bin/xchk' [ Not found ] [20:08:48] Checking for file '/usr/bin/xsf' [ Not found ] [20:08:48] Checking for file '/dev/tux/suidsh' [ Not found ] [20:08:48] Checking for file '/dev/tux/.addr' [ Not found ] [20:08:48] Checking for file '/dev/tux/.cron' [ Not found ] [20:08:48] Checking for file '/dev/tux/.file' [ Not found ] [20:08:48] Checking for file '/dev/tux/.log' [ Not found ] [20:08:48] Checking for file '/dev/tux/.proc' [ Not found ] [20:08:48] Checking for file '/dev/tux/.iface' [ Not found ] [20:08:48] Checking for file '/dev/tux/.pw' [ Not found ] [20:08:48] Checking for file '/dev/tux/.df' [ Not found ] [20:08:48] Checking for file '/dev/tux/.ssh' [ Not found ] [20:08:48] Checking for file '/dev/tux/.tux' [ Not found ] [20:08:48] Checking for file '/dev/tux/ssh2/sshd2_config' [ Not found ] [20:08:48] Checking for file '/dev/tux/ssh2/hostkey' [ Not found ] [20:08:48] Checking for file '/dev/tux/ssh2/hostkey.pub' [ Not found ] [20:08:48] Checking for file '/dev/tux/ssh2/logo' [ Not found ] [20:08:48] Checking for file '/dev/tux/ssh2/random_seed' [ Not found ] [20:08:48] Checking for file '/dev/tux/backup/crontab' [ Not found ] [20:08:48] Checking for file '/dev/tux/backup/df' [ Not found ] [20:08:48] Checking for file '/dev/tux/backup/dir' [ Not found ] [20:08:48] Checking for file '/dev/tux/backup/find' [ Not found ] [20:08:48] Checking for file '/dev/tux/backup/ifconfig' [ Not found ] [20:08:48] Checking for file '/dev/tux/backup/locate' [ Not found ] [20:08:48] Checking for file '/dev/tux/backup/netstat' [ Not found ] [20:08:48] Checking for file '/dev/tux/backup/ps' [ Not found ] [20:08:48] Checking for file '/dev/tux/backup/pstree' [ Not found ] [20:08:48] Checking for file '/dev/tux/backup/syslogd' [ Not found ] [20:08:48] Checking for file '/dev/tux/backup/tcpd' [ Not found ] [20:08:48] Checking for file '/dev/tux/backup/top' [ Not found ] [20:08:48] Checking for file '/dev/tux/backup/updatedb' [ Not found ] [20:08:48] Checking for file '/dev/tux/backup/vdir' [ Not found ] [20:08:48] Checking for directory '/dev/tux' [ Not found ] [20:08:48] Checking for directory '/dev/tux/ssh2' [ Not found ] [20:08:48] Checking for directory '/dev/tux/backup' [ Not found ] [20:08:48] Tuxtendo Rootkit [ Not found ] [20:08:48] [20:08:48] Checking for URK Rootkit... [20:08:48] Checking for file '/dev/prom/sn.l' [ Not found ] [20:08:48] Checking for file '/usr/lib/ldlibps.so' [ Not found ] [20:08:48] Checking for file '/usr/lib/ldlibnet.so' [ Not found ] [20:08:49] Checking for file '/dev/pts/01/uconf.inv' [ Not found ] [20:08:49] Checking for file '/dev/pts/01/cleaner' [ Not found ] [20:08:49] Checking for file '/dev/pts/01/bin/psniff' [ Not found ] [20:08:49] Checking for file '/dev/pts/01/bin/du' [ Not found ] [20:08:49] Checking for file '/dev/pts/01/bin/ls' [ Not found ] [20:08:49] Checking for file '/dev/pts/01/bin/passwd' [ Not found ] [20:08:49] Checking for file '/dev/pts/01/bin/ps' [ Not found ] [20:08:49] Checking for file '/dev/pts/01/bin/psr' [ Not found ] [20:08:49] Checking for file '/dev/pts/01/bin/su' [ Not found ] [20:08:49] Checking for file '/dev/pts/01/bin/find' [ Not found ] [20:08:49] Checking for file '/dev/pts/01/bin/netstat' [ Not found ] [20:08:49] Checking for file '/dev/pts/01/bin/ping' [ Not found ] [20:08:49] Checking for file '/dev/pts/01/bin/strings' [ Not found ] [20:08:49] Checking for file '/dev/pts/01/bin/bash' [ Not found ] [20:08:49] Checking for file '/usr/man/man1/xxxxxxbin/du' [ Not found ] [20:08:49] Checking for file '/usr/man/man1/xxxxxxbin/ls' [ Not found ] [20:08:49] Checking for file '/usr/man/man1/xxxxxxbin/passwd' [ Not found ] [20:08:49] Checking for file '/usr/man/man1/xxxxxxbin/ps' [ Not found ] [20:08:49] Checking for file '/usr/man/man1/xxxxxxbin/psr' [ Not found ] [20:08:49] Checking for file '/usr/man/man1/xxxxxxbin/su' [ Not found ] [20:08:49] Checking for file '/usr/man/man1/xxxxxxbin/find' [ Not found ] [20:08:49] Checking for file '/usr/man/man1/xxxxxxbin/netstat' [ Not found ] [20:08:49] Checking for file '/usr/man/man1/xxxxxxbin/ping' [ Not found ] [20:08:49] Checking for file '/usr/man/man1/xxxxxxbin/strings' [ Not found ] [20:08:49] Checking for file '/usr/man/man1/xxxxxxbin/bash' [ Not found ] [20:08:49] Checking for file '/tmp/conf.inv' [ Not found ] [20:08:49] Checking for directory '/dev/prom' [ Not found ] [20:08:49] Checking for directory '/dev/pts/01' [ Not found ] [20:08:49] Checking for directory '/dev/pts/01/bin' [ Not found ] [20:08:49] Checking for directory '/usr/man/man1/xxxxxxbin' [ Not found ] [20:08:49] URK Rootkit [ Not found ] [20:08:49] [20:08:49] Checking for Vampire Rootkit... [20:08:49] Checking for kernel symbol 'new_getdents' [ Not found ] [20:08:49] Checking for kernel symbol 'old_getdents' [ Not found ] [20:08:49] Checking for kernel symbol 'should_hide_file_name' [ Not found ] [20:08:49] Checking for kernel symbol 'should_hide_task_name' [ Not found ] [20:08:49] Vampire Rootkit [ Not found ] [20:08:49] [20:08:49] Checking for VcKit Rootkit... [20:08:49] Checking for directory '/usr/include/linux/modules/lib.so' [ Not found ] [20:08:49] Checking for directory '/usr/include/linux/modules/lib.so/bin' [ Not found ] [20:08:49] VcKit Rootkit [ Not found ] [20:08:49] [20:08:49] Checking for Volc Rootkit... [20:08:49] Checking for file '/usr/bin/volc' [ Not found ] [20:08:49] Checking for file '/usr/lib/volc/backdoor/divine' [ Not found ] [20:08:49] Checking for file '/usr/lib/volc/linsniff' [ Not found ] [20:08:49] Checking for file '/etc/rc.d/rc1.d/S25sysconf' [ Not found ] [20:08:49] Checking for file '/etc/rc.d/rc2.d/S25sysconf' [ Not found ] [20:08:49] Checking for file '/etc/rc.d/rc3.d/S25sysconf' [ Not found ] [20:08:50] Checking for file '/etc/rc.d/rc4.d/S25sysconf' [ Not found ] [20:08:50] Checking for file '/etc/rc.d/rc5.d/S25sysconf' [ Not found ] [20:08:50] Checking for directory '/var/spool/.recent' [ Not found ] [20:08:50] Checking for directory '/var/spool/.recent/.files' [ Not found ] [20:08:50] Checking for directory '/usr/lib/volc' [ Not found ] [20:08:50] Checking for directory '/usr/lib/volc/backup' [ Not found ] [20:08:50] Volc Rootkit [ Not found ] [20:08:50] [20:08:50] Checking for Xzibit Rootkit... [20:08:50] Checking for file '/dev/dsx' [ Not found ] [20:08:50] Checking for file '/dev/caca' [ Not found ] [20:08:50] Checking for file '/dev/ida/.inet/linsniffer' [ Not found ] [20:08:50] Checking for file '/dev/ida/.inet/logclear' [ Not found ] [20:08:50] Checking for file '/dev/ida/.inet/sense' [ Not found ] [20:08:50] Checking for file '/dev/ida/.inet/sl2' [ Not found ] [20:08:50] Checking for file '/dev/ida/.inet/sshdu' [ Not found ] [20:08:50] Checking for file '/dev/ida/.inet/s' [ Not found ] [20:08:50] Checking for file '/dev/ida/.inet/ssh_host_key' [ Not found ] [20:08:50] Checking for file '/dev/ida/.inet/ssh_random_seed' [ Not found ] [20:08:50] Checking for file '/dev/ida/.inet/sl2new.c' [ Not found ] [20:08:50] Checking for file '/dev/ida/.inet/tcp.log' [ Not found ] [20:08:50] Checking for file '/home/httpd/cgi-bin/becys.cgi' [ Not found ] [20:08:50] Checking for file '/usr/local/httpd/cgi-bin/becys.cgi' [ Not found ] [20:08:50] Checking for file '/usr/local/apache/cgi-bin/becys.cgi' [ Not found ] [20:08:50] Checking for file '/www/httpd/cgi-bin/becys.cgi' [ Not found ] [20:08:50] Checking for file '/www/cgi-bin/becys.cgi' [ Not found ] [20:08:50] Checking for directory '/dev/ida/.inet' [ Not found ] [20:08:50] Xzibit Rootkit [ Not found ] [20:08:50] [20:08:50] Checking for zaRwT.KiT Rootkit... [20:08:50] Checking for file '/dev/rd/s/sendmeil' [ Not found ] [20:08:50] Checking for file '/dev/ttyf' [ Not found ] [20:08:50] Checking for file '/dev/ttyp' [ Not found ] [20:08:50] Checking for file '/dev/ttyn' [ Not found ] [20:08:50] Checking for file '/rk/tulz' [ Not found ] [20:08:50] Checking for directory '/rk' [ Not found ] [20:08:50] Checking for directory '/dev/rd/s' [ Not found ] [20:08:50] zaRwT.KiT Rootkit [ Not found ] [20:08:50] [20:08:50] Checking for ZK Rootkit... [20:08:50] Checking for file '/usr/share/.zk/zk' [ Not found ] [20:08:50] Checking for file '/usr/X11R6/.zk/xfs' [ Not found ] [20:08:50] Checking for file '/usr/X11R6/.zk/echo' [ Not found ] [20:08:50] Checking for file '/etc/1ssue.net' [ Not found ] [20:08:50] Checking for file '/etc/sysconfig/console/load.zk' [ Not found ] [20:08:50] Checking for directory '/usr/share/.zk' [ Not found ] [20:08:50] Checking for directory '/usr/X11R6/.zk' [ Not found ] [20:08:50] ZK Rootkit [ Not found ] [20:08:50] [20:08:50] Info: Starting test name 'additional_rkts' [20:08:50] Performing additional rootkit checks [20:08:50] [20:08:50] Performing Suckit Rootkit additional checks [20:08:50] Checking hard link count on '/sbin/init' [ OK ] [20:08:50] Checking for hidden file extensions [ None found ] [20:08:50] Running skdet command [ Skipped ] [20:08:50] Info: Unable to find the 'skdet' command [20:08:50] Suckit Rootkit additional checks [ OK ] [20:08:50] [20:08:50] Info: Starting test name 'possible_rkt_files' [20:08:50] Performing check of possible rootkit files and directories [20:08:50] Checking for file '/dev/sdr0' [ Not found ] [20:08:51] Checking for file '/dev/pisu' [ Not found ] [20:08:51] Checking for file '/dev/xdta' [ Not found ] [20:08:51] Checking for file '/dev/saux' [ Not found ] [20:08:51] Checking for file '/dev/hdx' [ Not found ] [20:08:51] Checking for file '/dev/hdx1' [ Not found ] [20:08:51] Checking for file '/dev/hdx2' [ Not found ] [20:08:51] Checking for file '/dev/ptyy' [ Not found ] [20:08:51] Checking for file '/dev/ptyu' [ Not found ] [20:08:51] Checking for file '/dev/ptyv' [ Not found ] [20:08:51] Checking for file '/dev/hdbb' [ Not found ] [20:08:51] Checking for file '/tmp/.syshackfile' [ Not found ] [20:08:51] Checking for file '/tmp/.bash_history' [ Not found ] [20:08:51] Checking for file '/usr/info/.clib' [ Not found ] [20:08:51] Checking for file '/usr/sbin/tcp.log' [ Not found ] [20:08:51] Checking for file '/usr/bin/take/pid' [ Not found ] [20:08:51] Checking for file '/sbin/create' [ Not found ] [20:08:51] Checking for file '/dev/ttypz' [ Not found ] [20:08:51] Checking for file '/var/log/tcp.log' [ Not found ] [20:08:51] Checking for file '/usr/include/audit.h' [ Not found ] [20:08:51] Checking for file '/usr/bin/sourcemask' [ Not found ] [20:08:51] Checking for file '/usr/bin/ras2xm' [ Not found ] [20:08:51] Checking for file '/dev/xmx' [ Not found ] [20:08:51] Checking for file '/usr/sbin/gpm.root' [ Not found ] [20:08:51] Checking for file '/bin/vobiscum' [ Not found ] [20:08:51] Checking for file '/bin/psr' [ Not found ] [20:08:51] Checking for file '/dev/kdx' [ Not found ] [20:08:51] Checking for file '/dev/dkx' [ Not found ] [20:08:51] Checking for file '/usr/sbin/sshd3' [ Not found ] [20:08:51] Checking for file '/usr/sbin/jcd' [ Not found ] [20:08:51] Checking for file '/usr/sbin/atd2' [ Not found ] [20:08:51] Checking for file '/home/httpd/cgi-bin/linux.cgi' [ Not found ] [20:08:51] Checking for file '/home/httpd/cgi-bin/psid' [ Not found ] [20:08:51] Checking for file '/home/httpd/cgi-bin/void.cgi' [ Not found ] [20:08:51] Checking for file '/etc/rc.d/init.d/system' [ Not found ] [20:08:51] Checking for file '/etc/rc.d/rc3.d/S93users' [ Not found ] [20:08:51] Checking for file '/tmp/.ush' [ Not found ] [20:08:51] Checking for file '/usr/lib/libhidefile.so' [ Not found ] [20:08:51] Checking for file '/etc/cron.d/kmod' [ Not found ] [20:08:51] Checking for file '/usr/lib/dmis/dmisd' [ Not found ] [20:08:51] Checking for file '/lib/secure/libhij.so' [ Not found ] [20:08:51] Checking for file '/usr/sbin/sshd3' [ Not found ] [20:08:52] Checking for file '/etc/rc.d/init.d/crontab' [ Not found ] [20:08:52] Checking for file '/etc/rc.d/init.d/jcd' [ Not found ] [20:08:52] Checking for file '/usr/sbin/atd2' [ Not found ] [20:08:52] Checking for file '/etc/rc.d/rc5.d/S93users' [ Not found ] [20:08:52] Checking for file '/usr/include/mysql/mysql.hh1' [ Not found ] [20:08:52] Checking for file '/etc/init.d/xfs3' [ Not found ] [20:08:52] Checking for file '/usr/sbin/t.txt' [ Not found ] [20:08:52] Checking for file '/usr/sbin/change' [ Not found ] [20:08:52] Checking for file '/usr/sbin/s' [ Not found ] [20:08:52] Checking for file '/bin/f' [ Not found ] [20:08:52] Checking for file '/bin/i' [ Not found ] [20:08:52] Checking for file '/lib/libncom.so.4.0.1' [ Not found ] [20:08:52] Checking for file '/sbin/zinit' [ Not found ] [20:08:52] Checking for file '/tmp/pass_ssh.log' [ Not found ] [20:08:52] Checking for file '/usr/include/gpm2.h' [ Not found ] [20:08:52] Checking for file '/etc/ssh/.sshd_auth' [ Not found ] [20:08:52] Checking for file '/usr/lib/.sshd.h' [ Not found ] [20:08:52] Checking for file '/var/run/.defunct' [ Not found ] [20:08:52] Checking for file '/etc/httpd/run/.defunct' [ Not found ] [20:08:52] Checking for file '/usr/share/pci.r' [ Not found ] [20:08:52] Checking for file '/etc/cron.daily/dnsquery' [ Not found ] [20:08:52] Checking for file '/usr/lib/libutil1.2.1.2.so' [ Not found ] [20:08:52] Checking for file '/usr/lib/libppopen.so' [ Not found ] [20:08:52] Checking for file '/usr/include/libutil2.1.h' [ Not found ] [20:08:52] Checking for file '/usr/bin/munchhausen' [ Not found ] [20:08:52] Checking for file '/bin/ceva' [ Not found ] [20:08:52] Checking for file '/sbin/syslogd ' [ Not found ] [20:08:52] Checking for file '/usr/include/shup.h' [ Not found ] [20:08:52] Checking for file '/etc/rpm/sshdOLD' [ Not found ] [20:08:52] Checking for file '/etc/rpm/sshOLD' [ Not found ] [20:08:52] Checking for file '/usr/share/passwd.h' [ Not found ] [20:08:52] Checking for file '/lib/.xsyslog' [ Not found ] [20:08:52] Checking for file '/etc/.xsyslog' [ Not found ] [20:08:52] Checking for file '/lib/.ssyslog' [ Not found ] [20:08:52] Checking for file '/tmp/.sendmail' [ Not found ] [20:08:52] Checking for file '/usr/share/sshd.sync' [ Not found ] [20:08:52] Checking for file '/bin/zcut' [ Not found ] [20:08:52] Checking for file '/usr/bin/zmuie' [ Not found ] [20:08:52] Checking for file '/IptabLes' [ Not found ] [20:08:52] Checking for file '/.IptabLex' [ Not found ] [20:08:52] Checking for file '/boot/.IptabLex' [ Not found ] [20:08:53] Checking for file '/boot/.IptabLes' [ Not found ] [20:08:53] Checking for file '/boot/IptabLes' [ Not found ] [20:08:53] Checking for file '/tmp/IptabLes' [ Not found ] [20:08:53] Checking for file '/etc/rc.d/init.d/IptabLex' [ Not found ] [20:08:53] Checking for file '/etc/rc.d/init.d/IptabLes' [ Not found ] [20:08:53] Checking for file '/etc/rc.d/rc0.d/S55IptabLex' [ Not found ] [20:08:53] Checking for file '/etc/rc.d/rc1.d/S55IptabLex' [ Not found ] [20:08:53] Checking for file '/etc/rc.d/rc2.d/S55IptabLex' [ Not found ] [20:08:53] Checking for file '/etc/rc.d/rc3.d/S55IptabLex' [ Not found ] [20:08:53] Checking for file '/etc/rc.d/rc4.d/S55IptabLex' [ Not found ] [20:08:53] Checking for file '/etc/rc.d/rc5.d/S55IptabLex' [ Not found ] [20:08:53] Checking for file '/etc/rc.d/rc6.d/S55IptabLex' [ Not found ] [20:08:53] Checking for file '/var/lib/update-rc.d/IptabLex' [ Not found ] [20:08:53] Checking for file '/delallmykkk' [ Not found ] [20:08:53] Checking for file '/usr/.IptabLes' [ Not found ] [20:08:53] Checking for file '/usr/IptabLes' [ Not found ] [20:08:53] Checking for file '/tmp/.flush' [ Not found ] [20:08:53] Checking for file '/var/log/.flush' [ Not found ] [20:08:53] Checking for file '/usr/.flush' [ Not found ] [20:08:53] Checking for file '/etc/init.d/bluetoothdaemon' [ Not found ] [20:08:53] Checking for file '/usr/bin/btdaemon' [ Not found ] [20:08:53] Checking for file '/etc/rc1.d/S90bluetooth' [ Not found ] [20:08:53] Checking for file '/etc/rc2.d/S90bluetooth' [ Not found ] [20:08:53] Checking for file '/etc/rc3.d/S90bluetooth' [ Not found ] [20:08:53] Checking for file '/etc/rc4.d/S90bluetooth' [ Not found ] [20:08:53] Checking for file '/etc/rc5.d/S90bluetooth' [ Not found ] [20:08:53] Checking for file '/etc/rc6.d/S90bluetooth' [ Not found ] [20:08:53] Checking for file '/boot/pro' [ Not found ] [20:08:53] Checking for file '/boot/proh' [ Not found ] [20:08:53] Checking for file '/etc/atdd' [ Not found ] [20:08:53] Checking for file '/etc/atddd' [ Not found ] [20:08:53] Checking for file '/etc/cupsdd' [ Not found ] [20:08:53] Checking for file '/etc/cupsddd' [ Not found ] [20:08:53] Checking for file '/etc/cupsddh' [ Not found ] [20:08:53] Checking for file '/etc/dsfrefr' [ Not found ] [20:08:53] Checking for file '/etc/fdsfsfvff' [ Not found ] [20:08:53] Checking for file '/etc/ferwfrre' [ Not found ] [20:08:53] Checking for file '/etc/fwke.cfg' [ Not found ] [20:08:53] Checking for file '/etc/gdmorpen' [ Not found ] [20:08:53] Checking for file '/etc/gfhddsfew' [ Not found ] [20:08:54] Checking for file '/etc/gfhjrtfyhuf' [ Not found ] [20:08:54] Checking for file '/etc/ksapd' [ Not found ] [20:08:54] Checking for file '/etc/ksapdd' [ Not found ] [20:08:54] Checking for file '/etc/kysapd' [ Not found ] [20:08:54] Checking for file '/etc/kysapdd' [ Not found ] [20:08:54] Checking for file '/etc/rewgtf3er4t' [ Not found ] [20:08:54] Checking for file '/etc/sdmfdsfhjfe' [ Not found ] [20:08:54] Checking for file '/etc/sfewfesfs' [ Not found ] [20:08:54] Checking for file '/etc/sfewfesfsh' [ Not found ] [20:08:54] Checking for file '/etc/sksapd' [ Not found ] [20:08:54] Checking for file '/etc/sksapdd' [ Not found ] [20:08:54] Checking for file '/etc/skysapd' [ Not found ] [20:08:54] Checking for file '/etc/skysapdd' [ Not found ] [20:08:54] Checking for file '/etc/smarvtd' [ Not found ] [20:08:54] Checking for file '/etc/whitptabil' [ Not found ] [20:08:54] Checking for file '/etc/xfsdx' [ Not found ] [20:08:54] Checking for file '/etc/xfsdxd' [ Not found ] [20:08:54] Checking for file '/tmp/bill.lock' [ Not found ] [20:08:54] Checking for file '/tmp/gates.lock' [ Not found ] [20:08:54] Checking for file '/tmp/gates.lod' [ Not found ] [20:08:54] Checking for file '/tmp/moni.lock' [ Not found ] [20:08:54] Checking for file '/tmp/moni.lod' [ Not found ] [20:08:54] Checking for file '/tmp/notify.file' [ Not found ] [20:08:54] Checking for file '/usr/bin/.sshd' [ Not found ] [20:08:54] Checking for file '/usr/bin/bsd-port/getty' [ Not found ] [20:08:54] Checking for file '/usr/bin/bsd-port/getty.lock' [ Not found ] [20:08:54] Checking for file '/usr/bin/bsd-port/udevd.lock' [ Not found ] [20:08:54] Checking for file '/usr/bin/pojie' [ Not found ] [20:08:54] Checking for file '/usr/lib/libamplify.so' [ Not found ] [20:08:54] Checking for file '/etc/init.d/DbSecuritySpt' [ Not found ] [20:08:54] Checking for file '/etc/rc.d/init.d/DbSecuritySpt' [ Not found ] [20:08:54] Checking for file '/etc/cron.hourly/gcc.sh' [ Not found ] [20:08:54] Checking for file '/root/2016ttfacai' [ Not found ] [20:08:54] Checking for file '/proc/rs_dev' [ Not found ] [20:08:54] Checking for file '/var/run/sftp.pid' [ Not found ] [20:08:54] Checking for file '/var/run/udev.pid' [ Not found ] [20:08:54] Checking for file '/var/run/mount.pid' [ Not found ] [20:08:54] Checking for file '/etc/cron.hourly/cron.sh' [ Not found ] [20:08:54] Checking for file '/etc/cron.hourly/udev.sh' [ Not found ] [20:08:54] Checking for file '/etc/cron.hourly/udev.sh' [ Not found ] [20:08:54] Checking for file '/lib/libgcc.so' [ Not found ] [20:08:55] Checking for file '/lib/libgcc.so.bak' [ Not found ] [20:08:55] Checking for file '/lib/libgcc4.so' [ Not found ] [20:08:55] Checking for file '/lib/libgcc4.4.so' [ Not found ] [20:08:55] Checking for file '/lib/udev/udev' [ Not found ] [20:08:55] Checking for file '/lib/udev/debug' [ Not found ] [20:08:55] Checking for directory '/dev/ptyas' [ Not found ] [20:08:55] Checking for directory '/usr/bin/take' [ Not found ] [20:08:55] Checking for directory '/usr/src/.lib' [ Not found ] [20:08:55] Checking for directory '/usr/share/man/man1/.1c' [ Not found ] [20:08:55] Checking for directory '/lib/lblip.tk' [ Not found ] [20:08:55] Checking for directory '/usr/sbin/...' [ Not found ] [20:08:55] Checking for directory '/usr/share/.gun' [ Not found ] [20:08:55] Checking for directory '/unde/vrei/tu/sa/te/ascunzi/in/server' [ Not found ] [20:08:55] Checking for directory '/usr/man/man1/.. /.dir' [ Not found ] [20:08:55] Checking for directory '/usr/X11R6/include/X11/...' [ Not found ] [20:08:55] Checking for directory '/usr/X11R6/lib/X11/.fonts/misc/...' [ Not found ] [20:08:55] Checking for directory '/tmp/.sys' [ Not found ] [20:08:55] Checking for directory '/tmp/'' [ Not found ] [20:08:55] Checking for directory '/tmp/.,' [ Not found ] [20:08:55] Checking for directory '/tmp/,.,' [ Not found ] [20:08:55] Checking for directory '/dev/shm/emilien' [ Not found ] [20:08:55] Checking for directory '/var/tmp/.log' [ Not found ] [20:08:55] Checking for directory '/tmp/zmeu/... ' [ Not found ] [20:08:55] Checking for directory '/var/log/ssh' [ Not found ] [20:08:55] Checking for directory '/dev/ida' [ Not found ] [20:08:55] Checking for directory '/var/lib/games/.src/ssk/shit' [ Not found ] [20:08:55] Checking for directory '/usr/lib/libshtift' [ Not found ] [20:08:55] Checking for directory '/usr/src/.poop' [ Not found ] [20:08:55] Checking for directory '/dev/wd4' [ Not found ] [20:08:55] Checking for directory '/var/run/.tmp' [ Not found ] [20:08:55] Checking for directory '/usr/man/man1/lib/.lib' [ Not found ] [20:08:55] Checking for directory '/dev/portd' [ Not found ] [20:08:55] Checking for directory '/dev/...' [ Not found ] [20:08:55] Checking for directory '/usr/share/man/mansps' [ Not found ] [20:08:55] Checking for directory '/lib/.so' [ Not found ] [20:08:55] Checking for directory '/lib/.sso' [ Not found ] [20:08:55] Checking for directory '/usr/include/sslv3' [ Not found ] [20:08:55] Checking for directory '/dev/shm/sshd' [ Not found ] [20:08:55] Checking for directory '/usr/share/locale/mk/.dev/sk' [ Not found ] [20:08:55] Checking for directory '/usr/share/locale/mk/.dev' [ Not found ] [20:08:56] Checking for directory '/usr/include/netda.h' [ Not found ] [20:08:56] Checking for directory '/usr/include/.ssh' [ Not found ] [20:08:56] Checking for directory '/usr/share/locale/jp/. ' [ Not found ] [20:08:56] Checking for directory '/usr/share/.sqe' [ Not found ] [20:08:56] Checking for possible rootkit files and directories [ None found ] [20:08:56] [20:08:56] Info: Starting test name 'possible_rkt_strings' [20:08:56] Performing check for possible rootkit strings [20:08:56] Info: Using system startup paths: /etc/rc.d /etc/inittab /etc/systemd/system [20:08:56] Checking for string 'LOGNAME=root' [ Not found ] [20:08:56] Checking for string 'phalanx' [ Not found ] [20:08:56] Checking for string '/dev/proc/fuckit' [ Not found ] [20:08:56] Checking for string 'FUCK' [ Not found ] [20:08:56] Checking for string 'backdoor' [ Not found ] [20:08:56] Checking for string '/usr/bin/rcpc' [ Not found ] [20:08:56] Checking for string '/usr/sbin/login' [ Not found ] [20:08:56] Checking for string 'vt200' [ Not found ] [20:08:56] Checking for string '/usr/bin/xstat' [ Not found ] [20:08:56] Checking for string '/bin/envpc' [ Not found ] [20:08:56] Checking for string 'L4m3r0x' [ Not found ] [20:08:56] Checking for string '/lib/libext' [ Not found ] [20:08:56] Checking for string '/usr/sbin/login' [ Not found ] [20:08:56] Checking for string '/usr/lib/.tbd' [ Not found ] [20:08:56] Checking for string 'sendmail' [ Not found ] [20:08:56] Checking for string 'cocacola' [ Not found ] [20:08:56] Checking for string 'joao' [ Not found ] [20:08:56] Checking for string '/dev/ptyxx/.file' [ Not found ] [20:08:56] Checking for string '/dev/ptyxx/.file' [ Not found ] [20:08:56] Checking for string '/dev/sgk' [ Not found ] [20:08:56] Checking for string '/var/lock/subsys/...datafile...' [ Not found ] [20:08:56] Checking for string '/usr/lib/.tbd' [ Not found ] [20:08:56] Checking for string '/dev/proc/fuckit' [ Not found ] [20:08:56] Checking for string '/lib/.sso' [ Not found ] [20:08:56] Checking for string '/var/lock/subsys/...datafile...' [ Not found ] [20:08:56] Checking for string '/dev/caca' [ Not found ] [20:08:56] Checking for string '/dev/ttyoa' [ Not found ] [20:08:56] Checking for string '/usr/lib/ldlibns.so' [ Not found ] [20:08:56] Checking for string '/dev/ptyxx/.addr' [ Not found ] [20:08:56] Checking for string 'syg' [ Not found ] [20:08:57] Checking for string '/var/lock/subsys/...datafile...' [ Not found ] [20:08:57] Checking for string '/dev/pts/01' [ Not found ] [20:08:57] Checking for string 'tw33dl3' [ Not found ] [20:08:57] Checking for string 'psniff' [ Not found ] [20:08:57] Checking for string 'uconf.inv' [ Not found ] [20:08:57] Checking for string 'lib/ldlibps.so' [ Not found ] [20:08:57] Checking for string 'libproc.so.2.0.7' [ Not found ] [20:08:57] Checking for string '/dev/ptyxx/.proc' [ Not found ] [20:08:57] Checking for string 'libproc.so.2.0.7' [ Not found ] [20:08:57] Checking for string 'libproc.so.2.0.7' [ Not found ] [20:08:57] Checking for string '/bin/bash' [ Not found ] [20:08:57] Checking for string '/dev/ptyxx' [ Not found ] [20:08:57] Checking for string '/.config' [ Not found ] [20:08:57] Checking for string '\$.*\$\!.*\!\!\$' [ Not found ] [20:08:57] Checking for string 'backdoor.h' [ Not found ] [20:08:57] Checking for string 'backdoor_active' [ Not found ] [20:08:57] Checking for string 'magic_pass_active' [ Not found ] [20:08:57] Checking for string '/usr/include/gpm2.h' [ Not found ] [20:08:57] Checking for string '/usr/include/openssl' [ Not found ] [20:08:57] Checking for string 'aion' [ Not found ] [20:08:57] Checking for string 'pcszPass' [ Not found ] [20:08:57] Checking for string 'LogPass' [ Not found ] [20:08:57] Checking for string 'Login_Check' [ Not found ] [20:08:57] Checking for string 'includes.h' [ Not found ] [20:08:57] Checking for string 'DecodeString' [ Not found ] [20:08:57] Checking for string 'EncodeString' [ Not found ] [20:08:57] Checking for string 'libns2.so' [ Not found ] [20:08:57] Checking for string 'libns5.so' [ Not found ] [20:08:57] Checking for string 'libpw3.so' [ Not found ] [20:08:57] Checking for string 'libpw5.so' [ Not found ] [20:08:57] Checking for string 'libsbr.so' [ Not found ] [20:08:57] Checking for string 'libslr.so' [ Not found ] [20:08:58] Checking for string '/usr/lib/.tbd' [ Not found ] [20:08:58] Checking for string '/dev/ptyxx/.proc' [ Not found ] [20:08:58] Checking for string 'in.inetd' [ Not found ] [20:08:58] Checking for string '# ' [ Not found ] [20:08:58] Checking for string 'bin/xchk' [ Not found ] [20:08:58] Checking for string 'bin/xsf' [ Not found ] [20:08:58] Checking for string '/usr/bin/ssh2d' [ Not found ] [20:08:58] Checking for string '/usr/sbin/xntps' [ Not found ] [20:08:59] Checking for string 'ttyload' [ Not found ] [20:08:59] Checking for string '/etc/rc.d/init.d/init' [ Not found ] [20:08:59] Checking for string 'usr/bin/xfss' [ Not found ] [20:08:59] Checking for string '/usr/sbin/rpc.netinet' [ Not found ] [20:08:59] Checking for string '/usr/lib/.fx/cons.saver' [ Not found ] [20:08:59] Checking for string '/usr/lib/.fx/xs' [ Not found ] [20:08:59] Checking for string '/ssh2d' [ Not found ] [20:08:59] Checking for string '/dev/kmod' [ Not found ] [20:09:00] Checking for string '/crth.o' [ Not found ] [20:09:00] Checking for string '/crtz.o' [ Not found ] [20:09:00] Checking for string '/dev/dos' [ Not found ] [20:09:00] Checking for string '/lpq' [ Not found ] [20:09:00] Checking for string '/usr/sbin/rescue' [ Not found ] [20:09:00] Checking for string '/usr/lib/lpstart' [ Not found ] [20:09:00] Checking for string '/volc' [ Not found ] [20:09:01] Checking for string 'sourcemask' [ Not found ] [20:09:01] Checking for string '/bin/vobiscum' [ Not found ] [20:09:01] Checking for string '/usr/sbin/in.telnet' [ Not found ] [20:09:01] Checking for string '/usr/bin/hdparm?-t1?-X53?-p' [ Not found ] [20:09:01] Checking for string '/lib/.xsyslog' [ Not found ] [20:09:01] Checking for string '/etc/.xsyslog' [ Not found ] [20:09:01] Checking for string '/lib/.ssyslog' [ Not found ] [20:09:01] Checking for string '/tmp/.sendmail' [ Not found ] [20:09:02] Checking for string 'IptabLex' [ Not found ] [20:09:02] Checking for string 'IptabLes' [ Not found ] [20:09:02] Checking for string '/lib/ldd.so/tkps' [ Not found ] [20:09:02] Checking for string 't0rnkit' [ Not found ] [20:09:02] Checking for string '/dev/proc/fuckit' [ Not found ] [20:09:02] Checking for string 'backdoor.h' [ Not found ] [20:09:02] Checking for string 'backdoor_active' [ Not found ] [20:09:02] Checking for string 'magic_pass_active' [ Not found ] [20:09:02] Checking for string '/usr/include/gpm2.h' [ Not found ] [20:09:02] Checking for string 'libproc.so.2.0.7' [ Not found ] [20:09:02] Checking for string 'libproc.so.2.0.7' [ Not found ] [20:09:02] Checking for string 'libproc.so.2.0.7' [ Not found ] [20:09:02] Checking for string '/usr/lib/ldlibdu.so' [ Not found ] [20:09:02] Checking for string '/dev/ptyxx/.file' [ Not found ] [20:09:02] Checking for string 'libproc.so.2.0.7' [ Not found ] [20:09:02] Checking for string '/usr/include/mysql/mysql.hh1' [ Not found ] [20:09:02] Checking for string '/usr/include/mysql/mysql.hh1' [ Not found ] [20:09:02] Checking for string '/usr/include/mysql/mysql.hh1' [ Not found ] [20:09:02] Checking for string '/usr/include/mysql/mysql.hh1' [ Not found ] [20:09:02] Checking for string '/usr/include/mysql/mysql.hh1' [ Not found ] [20:09:02] Checking for string '/usr/include/mysql/mysql.hh1' [ Not found ] [20:09:02] Checking for string 'backconnect' [ Not found ] [20:09:02] Checking for string 'magic?packet?received' [ Not found ] [20:09:02] Checking for possible rootkit strings [ None found ] [20:09:02] [20:09:02] Info: Starting test name 'malware' [20:09:02] Performing malware checks [20:09:02] [20:09:02] Info: Test 'deleted_files' disabled at users request. [20:09:02] [20:09:02] Info: Starting test name 'running_procs' [20:09:03] Checking running processes for suspicious files [ None found ] [20:09:03] [20:09:03] Info: Starting test name 'hidden_procs' [20:09:03] Info: Unable to find the 'unhide' command [20:09:03] Info: Unable to find the 'unhide-linux' command [20:09:03] Checking for hidden processes [ Skipped ] [20:09:03] [20:09:03] Info: Test 'suspscan' disabled at users request. [20:09:03] [20:09:03] Info: Starting test name 'login_backdoors' [20:09:03] Checking for '/bin/.login' [ Not found ] [20:09:03] Checking for '/sbin/.login' [ Not found ] [20:09:03] Checking for login backdoors [ None found ] [20:09:03] [20:09:03] Info: Starting test name 'sniffer_logs' [20:09:03] Checking for file '/usr/lib/libice.log' [ Not found ] [20:09:03] Checking for file '/dev/prom/sn.l' [ Not found ] [20:09:03] Checking for file '/dev/fd/.88/zxsniff.log' [ Not found ] [20:09:03] Checking for sniffer log files [ None found ] [20:09:03] [20:09:03] Info: Starting test name 'tripwire' [20:09:03] Checking for software intrusions [ Skipped ] [20:09:03] Info: Check skipped - tripwire not installed [20:09:03] [20:09:03] Info: Starting test name 'susp_dirs' [20:09:03] Checking for directory '/usr/X11R6/bin/.,/copy' [ Not found ] [20:09:03] Checking for directory '/dev/rd/cdb' [ Not found ] [20:09:03] Checking for suspicious directories [ None found ] [20:09:03] [20:09:03] Info: Test 'ipc_shared_mem' disabled at users request. [20:09:03] [20:09:03] Info: Starting test name 'trojans' [20:09:03] Performing trojan specific checks [20:09:03] Checking for enabled inetd services [ Skipped ] [20:09:03] Info: Check skipped - file '/etc/inetd.conf' does not exist. [20:09:03] Checking for enabled xinetd services [ Skipped ] [20:09:03] Info: Check skipped - file '/etc/xinetd.conf' does not exist. [20:09:03] Checking for Apache backdoor [ Not found ] [20:09:03] [20:09:03] Info: Starting test name 'os_specific' [20:09:03] Performing Linux specific checks [20:09:03] Checking loaded kernel modules [ OK ] [20:09:03] Info: Using modules pathname of '/lib/modules/3.10.0-1160.88.1.el7.x86_64' [20:09:03] Checking kernel module names [ OK ] [20:09:03] [20:09:03] Info: Starting test name 'network' [20:09:03] Checking the network... [20:09:04] [20:09:04] Performing checks on the network ports [20:09:04] Info: Starting test name 'ports' [20:09:04] Performing check for backdoor ports [20:09:04] Checking for TCP port 1524 [ Not found ] [20:09:04] Checking for TCP port 1984 [ Not found ] [20:09:04] Checking for UDP port 2001 [ Not found ] [20:09:04] Checking for TCP port 2006 [ Not found ] [20:09:04] Checking for TCP port 2128 [ Not found ] [20:09:04] Checking for TCP port 6666 [ Not found ] [20:09:04] Checking for TCP port 6667 [ Not found ] [20:09:04] Checking for TCP port 6668 [ Not found ] [20:09:04] Checking for TCP port 6669 [ Not found ] [20:09:04] Checking for TCP port 7000 [ Not found ] [20:09:04] Checking for TCP port 13000 [ Not found ] [20:09:04] Checking for TCP port 14856 [ Not found ] [20:09:04] Checking for TCP port 25000 [ Not found ] [20:09:04] Checking for TCP port 29812 [ Not found ] [20:09:04] Checking for TCP port 31337 [ Not found ] [20:09:04] Checking for TCP port 32982 [ Not found ] [20:09:04] Checking for TCP port 33369 [ Not found ] [20:09:04] Checking for TCP port 47107 [ Not found ] [20:09:04] Checking for TCP port 47018 [ Not found ] [20:09:04] Checking for TCP port 60922 [ Not found ] [20:09:04] Checking for TCP port 62883 [ Not found ] [20:09:04] Checking for TCP port 65535 [ Not found ] [20:09:04] Checking for backdoor ports [ None found ] [20:09:04] [20:09:04] Info: Test 'hidden_ports' disabled at users request. [20:09:04] [20:09:04] Performing checks on the network interfaces [20:09:04] Info: Starting test name 'promisc' [20:09:04] Checking for promiscuous interfaces [ None found ] [20:09:04] [20:09:04] Info: Test 'packet_cap_apps' disabled at users request. [20:09:04] [20:09:04] Info: Starting test name 'local_host' [20:09:04] Checking the local host... [20:09:04] [20:09:04] Info: Starting test name 'startup_files' [20:09:04] Performing system boot checks [20:09:04] Checking for local host name [ Found ] [20:09:04] [20:09:04] Info: Starting test name 'startup_malware' [20:09:04] Checking for system startup files [ Found ] [20:09:05] Checking system startup files for malware [ None found ] [20:09:05] [20:09:05] Info: Starting test name 'group_accounts' [20:09:05] Performing group and account checks [20:09:05] Checking for passwd file [ Found ] [20:09:05] Info: Found password file: /etc/passwd [20:09:05] Checking for root equivalent (UID 0) accounts [ None found ] [20:09:05] Info: Found shadow file: /etc/shadow [20:09:05] Checking for passwordless accounts [ None found ] [20:09:05] [20:09:05] Info: Starting test name 'passwd_changes' [20:09:05] Checking for passwd file changes [ None found ] [20:09:05] [20:09:05] Info: Starting test name 'group_changes' [20:09:05] Checking for group file changes [ None found ] [20:09:05] Checking root account shell history files [ OK ] [20:09:05] [20:09:05] Info: Starting test name 'system_configs' [20:09:05] Performing system configuration file checks [20:09:05] [20:09:05] Info: Starting test name 'system_configs_ssh' [20:09:05] Checking for an SSH configuration file [ Found ] [20:09:05] Info: Found an SSH configuration file: /etc/ssh/sshd_config [20:09:05] Info: Rkhunter option ALLOW_SSH_ROOT_USER set to 'unset'. [20:09:05] Info: Rkhunter option ALLOW_SSH_PROT_V1 set to '2'. [20:09:05] Checking if SSH root access is allowed [ Not set ] [20:09:05] Checking if SSH protocol v1 is allowed [ Not set ] [20:09:05] Checking for other suspicious configuration settings [ None found ] [20:09:05] [20:09:05] Info: Starting test name 'system_configs_syslog' [20:09:05] Checking for a running system logging daemon [ Found ] [20:09:05] Info: A running 'rsyslog' daemon has been found. [20:09:05] Info: A running 'systemd-journald' daemon has been found. [20:09:05] Info: Found an rsyslog configuration file: /etc/rsyslog.conf [20:09:05] Info: Found a systemd configuration file: /etc/systemd/journald.conf [20:09:05] Checking for a system logging configuration file [ Found ] [20:09:05] Checking if syslog remote logging is allowed [ Not allowed ] [20:09:05] [20:09:05] Info: Starting test name 'filesystem' [20:09:05] Performing filesystem checks [20:09:05] Info: SCAN_MODE_DEV set to 'THOROUGH' [20:09:07] Checking /dev for suspicious file types [ None found ] [20:09:07] Info: Found hidden file '/etc/.updated': it is whitelisted. [20:09:07] Info: Found hidden file '/usr/share/man/man1/..1.gz': it is whitelisted. [20:09:07] Info: Found hidden file '/usr/share/man/man5/.k5identity.5.gz': it is whitelisted. [20:09:07] Info: Found hidden file '/usr/share/man/man5/.k5login.5.gz': it is whitelisted. [20:09:07] Checking for hidden files and directories [ None found ] [20:09:07] Checking for missing log files [ Skipped ] [20:09:07] Info: No missing log file names configured. [20:09:07] Checking for empty log files [ Skipped ] [20:09:07] Info: No empty log file names configured. [20:09:07] [20:09:07] Info: Test 'apps' disabled at users request. [20:09:07] [20:09:07] System checks summary [20:09:07] ===================== [20:09:07] [20:09:07] File properties checks... [20:09:07] Required commands check failed [20:09:07] Files checked: 128 [20:09:07] Suspect files: 5 [20:09:07] [20:09:07] Rootkit checks... [20:09:07] Rootkits checked : 490 [20:09:07] Possible rootkits: 0 [20:09:07] [20:09:07] Applications checks... [20:09:07] All checks skipped [20:09:07] [20:09:07] The system checks took: 44 seconds [20:09:07] [20:09:07] Info: End date is 2023年 4月 28日 金曜日 20:09:07 JST