[Previo por Fecha] [Siguiente por Fecha] [Previo por Hilo] [Siguiente por Hilo]

[Hilos de Discusión] [Fecha] [Tema] [Autor]

[Ayuda] ARCHIVO DE HACKEO



------------------  Mensaje de Advertencia de Virus (en malone.itam.mx)

Found virus ELF_ROOTKIT.D1 in file lame/bind/bind (in lame.tgz)
Found virus ELF_ROOTKIT.D8 in file lame/bind/bindscan (in lame.tgz)
Found virus ELF_ROOTKIT.F1 in file lame/bind/broot (in lame.tgz)
Found virus ELF_ROOTKIT.D9 in file lame/bind/bscan (in lame.tgz)
Found virus ELF_ROOTKIT.F2 in file lame/bind/incerc (in lame.tgz)
Found virus ELF_ROOTKIT.D23 in file lame/bind/x496 (in lame.tgz)
Found virus ELF_ROOTKIT.D10 in file lame/local/crontab.x (in lame.tgz)
Found virus ELF_ROOTKIT.D11 in file lame/local/kernel.x (in lame.tgz)
Found virus ELF_ROOTKIT.F3 in file lame/local/mail.x (in lame.tgz)
Found virus ELF_ROOTKIT.F4 in file lame/local/perl.x (in lame.tgz)
Found virus ELF_ROOTKIT.F5 in file lame/local/prlnx.sh (in lame.tgz)
Found virus ELF_ROOTKIT.D12 in file lame/lpd/lpd (in lame.tgz)
Found virus ELF_ROOTKIT.D13 in file lame/lpd/lroot (in lame.tgz)
Found virus UNIX_LAMER.A in file lame/rpc/root (in lame.tgz)
Found virus ELF_ROOTKIT.D14 in file lame/rpc/scan (in lame.tgz)
Found virus ELF_ROOTKIT.D16 in file lame/rpc/statdx (in lame.tgz)
Found virus ELF_ROOTKIT.D2 in file lame/rpc/scan2 (in lame.tgz)
Found virus ELF_ROOTKIT.D3 in file lame/rpc/statdx2 (in lame.tgz)
Found virus UNIX_LAMER.A in file lame/rpc/root2 (in lame.tgz)
Found virus ELF_ROOTKIT.F6 in file lame/wuftp/wroot (in lame.tgz)
Found virus ELF_ROOTKIT.D22 in file lame/wuftp/wscan (in lame.tgz)
Found virus ELF_ROOTKIT.D6 in file lame/wuftp/wu (in lame.tgz)
Found virus ELF_ROOTKIT.D15 in file lame/flood/slice3 (in lame.tgz)
Found virus ELF_ROOTKIT.D17 in file lame/flood/stream (in lame.tgz)
Found virus ELF_ROOTKIT.D18 in file lame/flood/stream2 (in lame.tgz)
Found virus ELF_ROOTKIT.D19 in file lame/flood/synk7 (in lame.tgz)
Found virus ELF_ROOTKIT.D20 in file lame/flood/synsend (in lame.tgz)
Found virus ELF_ROOTKIT.D4 in file lame/flood/synhose (in lame.tgz)
Found virus ELF_ROOTKIT.D5 in file lame/flood/trash (in lame.tgz)
Found virus ELF_ROOTKIT.D21 in file lame/flood/trash2 (in lame.tgz)
Found virus ELF_ROOTKIT.D24 in file lame/flood/xdestroy (in lame.tgz)
Found virus ELF_ROOTKIT.D7 in file lame/flood/xshock (in lame.tgz)
The uncleanable file is deleted.

---------------------------------------------------------
Hola!

Encontré que se metieron a mi servidor principal y dejó de funcionar el servicio de pop3. Al examinar el sistema me encontre el archivo lame.tgz en el directorio /tmp, y ahi mismo un directorio /lame con varios subdirectorios, que vienen del mismo .tgz

Por seguridad voy a borrar y reinstalar el servidor, pero envío adjunto a este mail el archivo lame.tgz para que me den su opinion al respecto.


Gracias y saludos.


Alejandro Lotwin

------------------  Mensaje de Advertencia de Virus (en malone.itam.mx)

lame.tgz is removed from here because it contains a virus.

---------------------------------------------------------


[Hilos de Discusión] [Fecha] [Tema] [Autor]