rshd가 infected 되었다고 하는데..
작성자 정보
- 최성준 작성
- 작성일
컨텐츠 정보
- 2,036 조회
- 0 추천
- 목록
본문
./chkrootkit 으로 점검해 보니 이상한 부분들이 있네요..
어떻게 해결해야 할지요?
# ./chkrootkit
Checking `chfn'...Not vulnerable
Checking `chsh'...Not vulnerable
Checking `cron'...which: no cron in (/usr/local/sbin:/usr/local/bin:/sbin:/bin:/us
r/sbin:/usr/bin:/usr/X11R6/bin:/root/bin)
NOT TESTED
Checking `sshd'...Not vulnerable
Checking `du'...Not vulnerable
Checking `find'...Not vulnerable
Checking `fingerd'...which: no fingerd in (/usr/local/sbin:/usr/local/bin:/sbin:/b
in:/usr/sbin:/usr/bin:/usr/X11R6/bin:/root/bin)
Not vulnerable
Checking `su'...Not vulnerable
Checking `ifconfig'...Not vulnerable
Checking `inetd'...which: no inetd in (/usr/local/sbin:/usr/local/bin:/sbin:/bin:/
usr/sbin:/usr/bin:/usr/X11R6/bin:/root/bin)
NOT TESTED
Checking `killall'...Not vulnerable
Checking `login'...Not vulnerable
Checking `ls'...Not vulnerable
Checking `netstat'...Not vulnerable
Checking `passwd'...NOT TESTED
Checking `pidof'...Not vulnerable
Checking `ps'...Not vulnerable
Checking `rshd'...INFECTED
Checking `syslogd'...Not vulnerable
Checking `tcpd'...grep: /etc/inetd.conf: No such file or directory
NOT TESTED
Checking `top'...Not vulnerable
Checking `telnetd'...which: no telnetd in (/usr/local/sbin:/usr/local/bin:/sbin:/b
in:/usr/sbin:/usr/bin:/usr/X11R6/bin:/root/bin)
Not vulnerable
Checking `bindshell'...Not vulnerable
Checking `z2'..../chkrootkit: ./chklastlog: No such file or directory
Checking `wted'..../chkrootkit: ./chkwtmp: No such file or directory
Checking `sniffer'...
./chkrootkit: ./ifpromisc: No such file or directory
Checking `aliens'...No suspect files
Searching for sniffer's logs, please wait MANY minutes...Nothing found
Searching for t0rn's default files and dirs ...Nothing found
Checking `lkm'..../chkrootkit: ./chkproc: No such file or directory
Warning: Possible LKM Trojan instaled
관련자료
-
이전
-
다음