{"id":3137,"date":"2018-10-03T07:30:59","date_gmt":"2018-10-03T04:00:59","guid":{"rendered":"http:\/\/webide.ir\/blog\/?p=3137"},"modified":"2018-10-02T13:28:09","modified_gmt":"2018-10-02T09:58:09","slug":"%d8%a7%d8%a8%d8%b2%d8%a7%d8%b1%d9%87%d8%a7%db%8c%db%8c-%da%a9%d9%87-%d9%85%db%8c-%d8%aa%d9%88%d8%a7%d9%86-%d8%a7%d8%b2-%d8%a2%d9%86%e2%80%8c%d9%87%d8%a7-%d8%a8%d8%b1%d8%a7%db%8c-%d8%a7%d8%b3%da%a9","status":"publish","type":"post","link":"https:\/\/webide.ir\/blog\/%d8%a7%d8%a8%d8%b2%d8%a7%d8%b1%d9%87%d8%a7%db%8c%db%8c-%da%a9%d9%87-%d9%85%db%8c-%d8%aa%d9%88%d8%a7%d9%86-%d8%a7%d8%b2-%d8%a2%d9%86%e2%80%8c%d9%87%d8%a7-%d8%a8%d8%b1%d8%a7%db%8c-%d8%a7%d8%b3%da%a9","title":{"rendered":"\u0627\u0628\u0632\u0627\u0631\u0647\u0627\u06cc\u06cc \u06a9\u0647 \u0645\u06cc \u062a\u0648\u0627\u0646 \u0627\u0632 \u0622\u0646\u200c\u0647\u0627 \u0628\u0631\u0627\u06cc \u0627\u0633\u06a9\u0646 \u0648\u06cc\u0631\u0648\u0633\u200c\u0647\u0627\u06cc \u0633\u0631\u0648\u0631\u0647\u0627\u06cc \u0644\u06cc\u0646\u0648\u06a9\u0633\u06cc \u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u06a9\u0631\u062f"},"content":{"rendered":"<p>\u0633\u0631\u0648\u0631\u0647\u0627\u06cc\u06cc \u06a9\u0647 \u0628\u0647 \u0627\u06cc\u0646\u062a\u0631\u0646\u062a \u0648\u0635\u0644 \u0645\u06cc \u0634\u0648\u0646\u062f \u0645\u0645\u06a9\u0646 \u0627\u0633\u062a \u0628\u0647 \u0637\u0648\u0631 \u0645\u062f\u0627\u0648\u0645 \u062f\u0631 \u062e\u0637\u0631 \u062d\u0645\u0644\u0647 \u0642\u0631\u0627\u0631 \u062f\u0627\u0634\u062a\u0647 \u0628\u0627\u0634\u0646\u062f \u0648 \u0628\u0647 \u0647\u0645\u06cc\u0646 \u062e\u0627\u0637\u0631 \u0627\u062f\u0645\u06cc\u0646 \u0633\u0631\u0648\u0631\u0647\u0627 \u0628\u0627\u06cc\u062f \u0628\u0647 \u0637\u0648\u0631 \u0645\u0646\u0638\u0645 \u0686\u0646\u06cc\u0646\u00a0 \u0645\u0648\u0627\u0631\u062f\u06cc \u0631\u0627 \u0627\u0633\u06a9\u0646 \u0648 \u0628\u0631\u0631\u0633\u06cc \u0646\u0645\u0627\u06cc\u0646\u062f. \u0628\u0627 \u0627\u06cc\u0646\u06a9\u0647 \u0641\u0627\u06cc\u0631\u0648\u0627\u0644 \u0647\u0627 \u0648 \u0628\u0647 \u0631\u0648\u0632\u0631\u0633\u0627\u0646\u06cc \u0645\u0639\u0645\u0648\u0644 \u0648 \u0645\u0646\u0638\u0645 \u0633\u06cc\u0633\u062a\u0645 \u0647\u0627 \u0645\u06cc \u062a\u0648\u0627\u0646\u062f \u06af\u0632\u06cc\u0646\u0647 \u062f\u0641\u0627\u0639\u06cc \u062e\u0648\u0628\u06cc \u0628\u0631\u0627\u06cc \u0627\u0645\u0646 \u0646\u06af\u0647 \u062f\u0627\u0634\u062a\u0646 \u0633\u06cc\u0633\u062a\u0645 \u0647\u0627 \u0628\u0627\u0634\u062f \u0627\u0645\u0627 \u0634\u0645\u0627 \u0628\u0627\u06cc\u062f \u0628\u0647 \u0637\u0648\u0631 \u0645\u0646\u0638\u0645 \u0633\u0631\u0648\u0631 \u062e\u0648\u062f \u0631\u0627 \u0645\u0648\u0631\u062f \u0628\u0631\u0631\u0633\u06cc \u0642\u0631\u0627\u0631 \u062f\u0647\u06cc\u062f \u062a\u0627 \u0645\u0637\u0645\u0626\u0646 \u0634\u0648\u06cc\u062f \u062d\u0645\u0644\u0647 \u0627\u06cc \u0628\u0647 \u0622\u0646 \u0627\u0646\u062c\u0627\u0645 \u0646\u0634\u062f\u0647 \u0627\u0633\u062a. \u0627\u0628\u0632\u0627\u0631\u0647\u0627\u06cc\u06cc \u06a9\u0647 \u062f\u0631 \u0627\u06cc\u0646 \u0645\u0642\u0627\u0644\u0647 \u0628\u0647 \u062a\u0648\u0636\u06cc\u062d \u0622\u0646 \u0647\u0627 \u062e\u0648\u0627\u0647\u06cc\u0645 \u067e\u0631\u062f\u0627\u062e\u062a \u0628\u0631\u0627\u06cc \u0686\u0646\u06cc\u0646 \u062a\u0633\u062a \u0647\u0627\u06cc\u06cc \u0637\u0631\u0627\u062d\u06cc \u0634\u062f\u0647 \u0627\u0646\u062f \u0648 \u0645\u06cc \u062a\u0648\u0627\u0646\u0646\u062f \u0633\u0631\u0648\u0631 \u0634\u0645\u0627 \u0631\u0627 \u0628\u0631\u0627\u06cc \u0628\u062f\u0627\u0641\u0632\u0627\u0631\u0647\u0627\u060c \u0648\u06cc\u0631\u0648\u0633 \u0647\u0627\u00a0 \u0648 \u0631\u0648\u062a \u06a9\u06cc\u062a \u0647\u0627 \u0628\u0631\u0631\u0633\u06cc \u0646\u0645\u0627\u06cc\u0646\u062f. \u0627\u06cc\u0646 \u0627\u0628\u0632\u0627\u0631\u0647\u0627 \u0628\u0627\u06cc\u062f \u0628\u0647 \u0637\u0648\u0631 \u0645\u0646\u0638\u0645 \u0645\u062b\u0644\u0627 \u0647\u0631 \u0634\u0628 \u0627\u062c\u0631\u0627 \u0634\u0648\u0646\u062f \u0648 \u06af\u0632\u0627\u0631\u0634 \u0622\u0646 \u0647\u0627 \u0627\u0632 \u0637\u0631\u06cc\u0642 \u0627\u06cc\u0645\u06cc\u0644 \u0628\u0631\u0627\u06cc\u062a\u0627\u0646 \u0627\u0631\u0633\u0627\u0644 \u06af\u0631\u062f\u062f. \u0634\u0645\u0627 \u0645\u06cc \u062a\u0648\u0627\u0646\u06cc\u062f \u0628\u0631\u0627\u06cc \u0627\u0633\u06a9\u0646 \u0633\u06cc\u0633\u062a\u0645 \u062e\u0648\u062f \u0628\u0647 \u0647\u0646\u06af\u0627\u0645 \u0628\u0631\u0648\u0632 \u0641\u0639\u0627\u0644\u06cc\u062a \u0647\u0627\u06cc \u0645\u0634\u06a9\u0648\u06a9 \u0647\u0645\u0686\u0648\u0646 \u0644\u0648\u062f \u0628\u0627\u0644\u0627\u060c \u0641\u0631\u0622\u06cc\u0646\u062f\u0647\u0627\u06cc \u0645\u0634\u06a9\u0648\u06a9 \u06cc\u0627 \u0632\u0645\u0627\u0646\u06cc \u06a9\u0647 \u0633\u0631\u0648\u0631 \u0628\u0647\u00a0 \u0637\u0631\u0648 \u0646\u0627\u06af\u0647\u0627\u0646\u06cc \u0634\u0631\u0648\u0639 \u0628\u0647 \u0627\u0631\u0633\u0627\u0644 \u0628\u062f\u0627\u0641\u0632\u0627\u0631 \u0645\u06cc \u06a9\u0646\u062f \u0627\u0632 \u0645\u0648\u0627\u0631\u062f\u06cc \u0647\u0645\u0686\u0648\u0646 Chkrootkit, Rkhunter \u0648 \u00a0ISPProtect \u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u06a9\u0646\u06cc\u062f. \u0647\u0645\u0647 \u0627\u06cc\u0646 \u0627\u0633\u06a9\u0646\u0631\u0647\u0627 \u0628\u0627\u06cc\u062f \u0628\u0647 \u0639\u0646\u0648\u0627\u0646 \u06a9\u0627\u0631\u0628\u0631 \u0631\u0648\u062a \u0627\u062c\u0631\u0627 \u0634\u0648\u0646\u062f. \u0642\u0628\u0644 \u0627\u0632 \u0627\u06cc\u0646\u06a9\u0647 \u0628\u062e\u0648\u0627\u0647\u06cc\u062f \u0628\u0631 \u0631\u0648\u06cc \u0633\u06cc\u0633\u062a\u0645 \u062e\u0648\u062f \u06a9\u0627\u0631 \u0631\u0627 \u0622\u063a\u0627\u0632 \u06a9\u0646\u06cc\u062f \u0628\u0647 \u0635\u0648\u0631\u062a \u06a9\u0627\u0631\u0628\u0631 \u0631\u0648\u062a \u0648\u0627\u0631\u062f \u0622\u0646 \u0634\u0648\u06cc\u062f. \u0633\u067e\u0633 \u0628\u0647 \u0627\u062c\u0631\u0627\u06cc \u0627\u06cc\u0646 \u0627\u0633\u06a9\u0646\u0631\u0647\u0627 \u0628\u067e\u0631\u062f\u0627\u0632\u06cc\u062f. \u062f\u0631 \u0627\u06cc\u0646 \u0645\u0642\u0627\u0644\u0647 \u0642\u0635\u062f \u062f\u0627\u0631\u06cc\u0645 \u0627\u06cc\u0646 \u0627\u0628\u0632\u0627\u0631\u0647\u0627 \u0631\u0627 \u0628\u0627 \u062c\u0632\u06cc\u06cc\u0627\u062a \u0628\u06cc\u0634\u062a\u0631\u06cc \u0645\u0648\u0631\u062f \u0628\u0631\u0631\u0633\u06cc \u0642\u0631\u0627\u0631 \u062f\u0647\u06cc\u0645. \u067e\u0633 \u0647\u0645\u0631\u0627\u0647 \u0648\u0628 \u0627\u06cc\u062f\u0647 \u0628\u0627\u0634\u06cc\u062f.<\/p>\n<p><!--more--><\/p>\n<p><strong>\u0627\u0628\u0632\u0627\u0631 chkrootkit: \u0627\u0633\u06a9\u0646\u0631 \u0631\u0648\u062a \u06a9\u06cc\u062a \u0644\u06cc\u0646\u0648\u06a9\u0633<\/strong><\/p>\n<p>chkrootkit \u06cc\u06a9 \u0627\u0633\u06a9\u0646\u0631 \u06a9\u0644\u0627\u0633\u06cc\u06a9 \u0628\u0631\u0627\u06cc \u0631\u0648\u062a \u06a9\u06cc\u062a\u200c\u0647\u0627\u0633\u062a. \u0627\u06cc\u0646 \u0627\u0628\u0632\u0627\u0631 \u0633\u0631\u0648\u0631 \u0634\u0645\u0627 \u0631\u0627 \u0628\u0631\u0627\u06cc \u0641\u0631\u0627\u06cc\u0646\u062f\u0647\u0627\u06cc \u0631\u0648\u062a \u06a9\u06cc\u062a \u0645\u0634\u06a9\u0648\u06a9 \u0628\u0631\u0631\u0633\u06cc \u0645\u06cc \u06a9\u0646\u062f \u0648 \u0628\u0647 \u062f\u0646\u0628\u0627\u0644 \u0641\u0627\u06cc\u0644 \u0631\u0648\u062a \u06a9\u06cc\u062a \u0647\u0627\u06cc \u0634\u0646\u0627\u062e\u062a\u0647 \u0634\u062f\u0647 \u0645\u06cc \u06af\u0631\u062f\u062f. \u0634\u0645\u0627 \u0645\u06cc \u062a\u0648\u0627\u0646\u06cc\u062f \u067e\u06a9\u06cc\u062c\u06cc \u06a9\u0647 \u0628\u0647 \u0647\u0645\u0631\u0627\u0647 \u062a\u0648\u0632\u06cc\u0639 \u062a\u0627\u0646 \u0627\u0631\u0627\u0626\u0647 \u0634\u062f\u0647 \u0627\u0633\u062a \u0631\u0627 \u0646\u0635\u0628 \u06a9\u0646\u06cc\u062f. \u0628\u0631 \u0631\u0648\u06cc \u062f\u0628\u06cc\u0627\u0646 \u0648 \u0627\u0628\u0648\u0646\u062a\u0648 \u0645\u06cc \u062a\u0648\u0627\u0646\u06cc\u062f \u062f\u0633\u062a\u0648\u0631 \u0632\u06cc\u0631 \u0631\u0627 \u0627\u062c\u0631\u0627 \u0646\u0645\u0627\u06cc\u06cc\u062f.<\/p>\n<pre class=\"lang:default decode:true \">apt-get install chkrootkit<\/pre>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<p>\u0628\u0627 \u0627\u06cc\u0646\u06a9\u0647 \u0633\u0648\u0631\u0633 \u0622\u0646 \u0631\u0627 \u0627\u0632 \u0633\u0627\u06cc\u062a chkrootkit.org \u062f\u0627\u0646\u0644\u0648\u062f \u06a9\u0646\u06cc\u062f \u0648 \u0628\u0647 \u0635\u0648\u0631\u062a \u062f\u0633\u062a\u06cc \u0622\u0646 \u0631\u0627 \u0646\u0635\u0628 \u0646\u0645\u0627\u06cc\u06cc\u062f:<\/p>\n<pre class=\"lang:default decode:true \">wget --passive-ftp ftp:\/\/ftp.pangeia.com.br\/pub\/seg\/pac\/chkrootkit.tar.gz\r\ntar xvfz chkrootkit.tar.gz\r\ncd chkrootkit-*\/\r\nmake sense\r\n\r\n<\/pre>\n<p>&nbsp;<\/p>\n<p>\u0628\u0639\u062f \u0627\u0632 \u0627\u0646\u062c\u0627\u0645 \u0627\u06cc\u0646\u06a9\u0627\u0631 \u0645\u06cc \u062a\u0648\u0627\u0646\u06cc\u062f \u062f\u0627\u06cc\u0631\u06a9\u062a\u0648\u0631\u06cc chkrootkit \u0628\u0647 \u062c\u0627\u06cc \u062f\u06cc\u06af\u0631\u06cc \u0647\u0645\u0686\u0648\u0646 \/usr\/local\/chkrootkit \u0627\u0646\u062a\u0642\u0627\u0644 \u062f\u0647\u06cc\u062f.<\/p>\n<pre class=\"lang:default decode:true \">cd ..\r\nmv chkrootkit-&lt;version&gt;\/ \/usr\/local\/chkrootkit<\/pre>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<p>\u062d\u0627\u0644\u0627 \u06cc\u06a9 Symlink \u0628\u0631\u0627\u06cc \u062f\u0633\u062a\u0631\u0633\u06cc \u0627\u0633\u0627\u0646 \u0627\u06cc\u062c\u0627\u062f \u0646\u0645\u0627\u06cc\u06cc\u062f. \u0628\u0631\u0627\u06cc \u0627\u06cc\u0646\u06a9\u0627\u0631 \u0627\u0632 \u062f\u0633\u062a\u0648\u0631 \u0632\u06cc\u0631 \u0628\u0647\u0631\u0647 \u0628\u06af\u06cc\u0631\u06cc\u062f:<\/p>\n<pre class=\"lang:default decode:true \">ln -s \/usr\/local\/chkrootkit\/chkrootkit\u00a0\/usr\/local\/bin\/chkrootkit<\/pre>\n<p>&nbsp;<\/p>\n<p>\u0628\u0631\u0627\u06cc \u0627\u06cc\u0646\u06a9\u0647 \u0628\u062a\u0648\u0627\u0646\u06cc\u062f \u0633\u0631\u0648\u0631 \u062e\u0648\u062f \u0631\u0627 \u0628\u0627 \u0627\u06cc\u0646 \u0627\u0628\u0632\u0627\u0631 \u0645\u0648\u0631\u062f \u0628\u0631\u0631\u0633\u06cc \u0642\u0631\u0627\u0631 \u062f\u0647\u06cc\u062f \u062f\u0633\u062a\u0648\u0631 \u0632\u06cc\u0631 \u0631\u0627 \u0627\u062c\u0631\u0627 \u0646\u0645\u0627\u06cc\u06cc\u062f:<\/p>\n<pre class=\"lang:default decode:true \">chkrootkit<\/pre>\n<p>&nbsp;<\/p>\n<p>\u06cc\u06a9\u06cc \u0627\u0632 \u06af\u0632\u0627\u0631\u0634 \u0647\u0627\u06cc \u0645\u062b\u0628\u062a \u06a9\u0627\u0630\u0628 \u0631\u0627\u06cc\u062c \u0628\u0647 \u0634\u06a9\u0644 \u0632\u06cc\u0631 \u0627\u0633\u062a:<\/p>\n<pre class=\"lang:default decode:true \">Checking `bindshell'... \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 \u00a0 INFECTED (PORTS: \u00a0465)<\/pre>\n<p>&nbsp;<\/p>\n<p>\u0632\u0645\u0627\u0646\u06cc \u06a9\u0647 \u0686\u0646\u06cc\u0646 \u067e\u06cc\u0627\u0645\u06cc \u0631\u0627 \u0628\u0631 \u0631\u0648\u06cc \u0633\u0631\u0648\u0631 \u0627\u06cc\u0645\u06cc\u0644\u06cc \u062e\u0648\u062f \u062f\u0631\u06cc\u0627\u0641\u062a \u0645\u06cc \u06a9\u0646\u06cc\u062f \u0632\u06cc\u0627\u062f \u0646\u06af\u0631\u0627\u0646 \u0646\u0628\u0627\u0634\u06cc\u062f. \u0627\u06cc\u0646 \u067e\u0648\u0631\u062a SMTPS \u0633\u06cc\u0633\u062a\u0645 \u0627\u06cc\u0645\u06cc\u0644\u06cc \u0634\u0645\u0627\u0633\u062a \u0648 \u0628\u0647 \u0639\u0646\u0648\u0627\u0646 \u0645\u062b\u0628\u062a \u06a9\u0627\u0630\u0628 \u0634\u0646\u0627\u062e\u062a\u0647 \u0645\u06cc \u0634\u0648\u062f. \u0647\u0645\u0686\u0646\u06cc\u0646 \u0645\u06cc \u062a\u0648\u0627\u0646\u06cc\u062f chkrootkit \u0631\u0627 \u0628\u0647 \u06a9\u0645\u06a9 cron job \u0647\u0645 \u0627\u062c\u0631\u0627 \u0646\u0645\u0627\u06cc\u06cc\u062f \u0648 \u0646\u062a\u0627\u06cc\u062c \u0631\u0627 \u0628\u0647 \u0635\u0648\u0631\u062a \u0627\u06cc\u0645\u06cc\u0644 \u062f\u0631\u06cc\u0627\u0641\u062a \u06a9\u0646\u06cc\u062f.<\/p>\n<p>\u0642\u0628\u0644 \u0627\u0632 \u0647\u0631 \u06a9\u0627\u0631\u06cc \u0628\u0627\u06cc\u062f \u062c\u0627\u06cc\u06cc \u06a9\u0647 chkrootkit \u0628\u0631 \u0631\u0648\u06cc \u0633\u0631\u0648\u0631\u062a\u0627\u0646 \u0646\u0635\u0628 \u0634\u062f\u0647 \u0627\u0633\u062a \u0631\u0627 \u0628\u0647 \u06a9\u0645\u06a9 \u062f\u0633\u062a\u0648\u0631 \u0632\u06cc\u0631 \u067e\u06cc\u062f\u0627 \u06a9\u0646\u06cc\u062f.<\/p>\n<pre class=\"lang:default decode:true \">which chkrootkit<\/pre>\n<p>&nbsp;<\/p>\n<p>\u0646\u0645\u0648\u0646\u0647 \u062e\u0631\u0648\u062c\u06cc:<\/p>\n<pre class=\"lang:default decode:true \">root@server1:\/tmp\/chkrootkit-0.50# which chkrootkit\r\n\/usr\/sbin\/chkrootkit\r\n\r\n<\/pre>\n<p>&nbsp;<\/p>\n<p>\u0647\u0645\u0627\u0646\u0637\u0648\u0631 \u06a9\u0647 \u0645\u06cc \u0628\u06cc\u0646\u06cc\u062f \u0627\u06cc\u0646 \u0627\u0628\u0632\u0627\u0631 \u062f\u0631 \u0645\u0633\u06cc\u0631 \/usr\/sbin\/chkrootkit \u0646\u0635\u0628 \u0634\u062f\u0647 \u0627\u0633\u062a. \u0645\u0627 \u0628\u0647 \u0627\u06cc\u0646 \u0645\u0633\u06cc\u0631 \u062f\u0631 \u062e\u0637 cron \u0632\u06cc\u0631 \u0646\u06cc\u0627\u0632 \u062f\u0627\u0631\u06cc\u0645. \u062f\u0633\u062a\u0648\u0631 \u0632\u06cc\u0631 \u0631\u0627 \u0627\u062c\u0631\u0627 \u06a9\u0646\u06cc\u062f:<\/p>\n<pre class=\"lang:default decode:true \">crontab -e<\/pre>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<p>\u0628\u0631\u0627\u06cc \u0627\u06cc\u062c\u0627\u062f cron job \u0627\u06cc \u0647\u0645\u0686\u0648\u0646 \u0645\u0648\u0631\u062f \u0632\u06cc\u0631:<\/p>\n<pre class=\"lang:default decode:true \">0 3 * * * \/usr\/sbin\/chkrootkit 2&gt;&amp;1 | mail -s \"chkrootkit output of my server\" you@yourdomain.com)<\/pre>\n<p>&nbsp;<\/p>\n<p>\u0627\u06cc\u0646 \u06af\u0632\u06cc\u0646\u0647 \u0628\u0647 \u0627\u0628\u0632\u0627\u0631 \u06a9\u0645\u06a9 \u0645\u06cc \u06a9\u0646\u062f \u0647\u0631 \u0634\u0628 \u0633\u0627\u0639\u062a 3.00 \u0633\u0631\u0648\u0631 \u0634\u0645\u0627 \u0631\u0627 \u0628\u0631\u0631\u0633\u06cc \u06a9\u0646\u062f. \u0645\u0633\u06cc\u0631 \u0627\u06cc\u0646 \u0627\u0628\u0632\u0627\u0631 \u0631\u0627 \u0628\u0627 \u0645\u0633\u06cc\u0631\u06cc \u06a9\u0647 \u0627\u0632 \u062f\u0633\u062a\u0648\u0631 \u0628\u0627\u0644\u0627 \u062f\u0631\u06cc\u0627\u0641\u062a \u06a9\u0631\u062f\u0647 \u0627\u06cc\u062f \u062c\u0627\u06cc\u06af\u0632\u06cc\u0646 \u0646\u0645\u0627\u06cc\u06cc\u062f\u00a0 \u0648 \u0622\u062f\u0631\u0633 \u0627\u06cc\u0645\u06cc\u0644 \u062e\u0648\u062f \u0631\u0627 \u0648\u0627\u0631\u062f \u06a9\u0646\u06cc\u062f.<\/p>\n<p><strong>\u0627\u0628\u0632\u0627\u0631 Lynis: \u0627\u0628\u0632\u0627\u0631 \u0628\u0631\u0631\u0633\u06cc \u062c\u0627\u0645\u0639 \u0648 \u0627\u0633\u06a9\u0646\u0631 \u0631\u0648\u062a \u06a9\u06cc\u062a<\/strong><\/p>\n<p>\u0627\u06cc\u0646 \u0627\u0628\u0632\u0627\u0631 \u06cc\u06a9\u06cc \u0627\u0632 \u0627\u0628\u0632\u0627\u0631\u0647\u0627\u06cc \u0628\u0631\u0631\u0633\u06cc \u0627\u0645\u0646\u06cc\u062a \u0628\u0631\u0627\u06cc \u0633\u06cc\u0633\u062a\u0645 \u0647\u0627\u06cc \u0644\u06cc\u0646\u0648\u06a9\u0633\u06cc \u0648 \u0645\u0628\u062a\u0646\u06cc \u0628\u0631 BSD \u0627\u0633\u062a. \u0627\u06cc\u0646 \u0627\u0628\u0632\u0627\u0631 \u0628\u0631\u0631\u0633\u06cc \u062f\u0642\u06cc\u0642\u06cc \u0627\u0632 \u062c\u0648\u0627\u0646\u0628 \u0627\u0645\u0646\u06cc\u062a\u06cc \u0648 \u067e\u06cc\u06a9\u0631\u0628\u0646\u062f\u06cc \u0647\u0627\u06cc \u0633\u06cc\u0633\u062a\u0645 \u0634\u0645\u0627 \u0627\u0646\u062c\u0627\u0645 \u0645\u06cc \u062f\u0647\u062f.\u00a0 \u0645\u06cc \u062a\u0648\u0627\u0646\u06cc\u062f \u0633\u0648\u0631\u0633 \u0627\u06cc\u0646 \u0627\u0628\u0632\u0627\u0631 \u0631\u0627 \u0627\u0632 \u0633\u0627\u06cc\u062a \u0622\u0646 \u062f\u0627\u0646\u0644\u0648\u062f \u06a9\u0646\u06cc\u062f:<\/p>\n<pre class=\"lang:default decode:true \">cd \/tmp\r\nwget\u00a0https:\/\/cisofy.com\/files\/lynis-2.6.8.tar.gz\r\ntar xvfz\u00a0lynis-2.6.8.tar.gz\r\nmv lynis \/usr\/local\/\r\nln -s \/usr\/local\/lynis\/lynis \/usr\/local\/bin\/lynis<\/pre>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<p>\u0627\u06cc\u0646 \u06af\u0632\u06cc\u0646\u0647 \u0627\u0628\u0632\u0627\u0631 \u0645\u062f\u0646\u0638\u0631 \u0631\u0627 \u0628\u0647 \u062f\u0627\u06cc\u0631\u06a9\u062a\u0648\u0631\u06cc \/usr\/local\/lynis \u0646\u0635\u0628 \u0645\u06cc \u06a9\u0646\u062f \u0648 \u06cc\u06a9 Symlink \u0628\u0631\u0627\u06cc \u062f\u0633\u062a\u0631\u0633\u06cc \u0627\u0633\u0627\u0646 \u0627\u06cc\u062c\u0627\u062f \u0645\u06cc \u0646\u0645\u0627\u06cc\u062f. \u062f\u0633\u062a\u0648\u0631 \u0632\u06cc\u0631 \u0631\u0627 \u0627\u062c\u0631\u0627 \u06a9\u0646\u06cc\u062f \u062a\u0627 \u0628\u0628\u06cc\u0646\u06cc\u062f \u0627\u062e\u0631\u06cc\u0646 \u0646\u0633\u062e\u0647 \u0627\u0632 \u0622\u0646 \u0631\u0627 \u062f\u0627\u0631\u06cc\u062f \u06cc\u0627 \u062e\u06cc\u0631.<\/p>\n<pre class=\"lang:default decode:true \">lynis\u00a0update info<\/pre>\n<p>&nbsp;<\/p>\n<p>\u062d\u0627\u0644\u0627 \u0645\u06cc \u062a\u0648\u0627\u0646\u06cc\u062f \u0633\u06cc\u0633\u062a\u0645 \u062e\u0648\u062f \u0631\u0627 \u0628\u0647 \u06a9\u0645\u06a9 \u062f\u0633\u062a\u0648\u0631 \u0632\u06cc\u0631 \u0628\u0631\u0631\u0633\u06cc \u06a9\u0646\u06cc\u062f:<\/p>\n<pre class=\"lang:default decode:true \">lynis audit system<\/pre>\n<p>&nbsp;<\/p>\n<p>\u0627\u06cc\u0646 \u0627\u0628\u0632\u0627\u0631 \u0686\u0646\u062f\u06cc\u0646 \u0645\u0648\u0631\u062f \u0631\u0627 \u0628\u0631\u0631\u0633\u06cc \u0645\u06cc \u06a9\u0646\u062f \u0648 \u0633\u067e\u0633 \u06a9\u0627\u0631 \u0631\u0627 \u0645\u062a\u0648\u0642\u0641\u00a0 \u0645\u06cc \u06a9\u0646\u062f \u062a\u0627 \u0628\u062a\u0648\u0627\u0646\u06cc\u062f \u0646\u062a\u0627\u06cc\u062c \u062d\u0627\u0635\u0644 \u0631\u0627 \u0645\u0637\u0627\u0644\u0639\u0647 \u06a9\u0646\u06cc\u062f. \u06a9\u0644\u06cc\u062f \u0627\u06cc\u0646\u062a\u0631 \u0631\u0627 \u0628\u0632\u0646\u06cc\u062f \u062a\u0627 \u06a9\u0627\u0631 \u0627\u0633\u06a9\u0646 \u062f\u0648\u0628\u0627\u0631\u0647 \u0622\u063a\u0627\u0632 \u0634\u0648\u062f. \u062f\u0631 \u0627\u0646\u062a\u0647\u0627\u06cc \u06a9\u0627\u0631 \u062e\u0644\u0627\u0635\u0647 \u0627\u06cc \u0627\u0632 \u0627\u0633\u06a9\u0646 \u0628\u0631\u0627\u06cc\u062a\u0627\u0646 \u0627\u0631\u0627\u0626\u0647 \u062e\u0648\u0627\u0647\u062f \u0634\u062f. \u0645\u06cc \u062a\u0648\u0627\u0646\u06cc\u062f \u0627\u0632 \u062f\u0633\u062a\u0648\u0631 \u0632\u06cc\u0631 \u0628\u0631\u0627\u06cc \u0627\u062c\u0631\u0627\u06cc \u063a\u06cc\u0631 \u062a\u0639\u0627\u0645\u0644\u06cc \u0627\u06cc\u0646 \u0627\u0628\u0632\u0627\u0631 \u0647\u0645 \u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u06a9\u0646\u06cc\u062f:<\/p>\n<pre class=\"lang:default decode:true \">lynis --quick<\/pre>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<p><strong>\u0627\u0628\u0632\u0627\u0631 ISPProtect: \u0627\u0633\u06a9\u0646\u0631 \u0628\u062f\u0627\u0641\u0632\u0627\u0631\u0647\u0627\u06cc \u0633\u0627\u06cc\u062a<\/strong><\/p>\n<p>\u0627\u06cc\u0646 \u06af\u0632\u06cc\u0646\u0647 \u0627\u0633\u06a9\u0646\u0631 \u0628\u062f\u0627\u0641\u0632\u0627\u0631\u0647\u0627 \u0628\u0631\u0627\u06cc \u0648\u0628 \u0633\u0631\u0648\u0631\u0647\u0627\u0633\u062a \u0648 \u0645\u06cc \u062a\u0648\u0627\u0646\u062f \u0628\u062f\u0627\u0641\u0632\u0627\u0631\u0647\u0627\u06cc \u0645\u0648\u062c\u0648\u062f \u062f\u0631 \u0641\u0627\u06cc\u0644 \u0633\u0627\u06cc\u062a \u0648 \u0633\u06cc\u0633\u062a\u0645 \u0647\u0627\u06cc CMS \u0627\u06cc \u0647\u0645\u0686\u0648\u0646 \u0648\u0631\u062f\u067e\u0631\u0633\u060c \u062c\u0648\u0645\u0644\u0627 \u0648 \u062f\u0631\u0648\u067e\u0627\u0644 \u0631\u0627 \u0628\u0631\u0631\u0633\u06cc \u06a9\u0646\u062f. \u0627\u06af\u0631 \u0633\u0631\u0648\u0631 \u0647\u0627\u0633\u062a\u06cc\u0646\u06af \u062f\u0627\u0631\u06cc\u062f\u00a0 \u0633\u0627\u06cc\u062a \u0647\u0627\u06cc \u0645\u06cc\u0632\u0628\u0627\u0646\u06cc \u0634\u062f\u0647 \u0645\u0645\u06a9\u0646 \u0627\u0633\u062a \u0628\u06cc\u0634\u062a\u0631 \u0627\u0632 \u0633\u0627\u06cc\u0631 \u0642\u0633\u0645\u062a \u0647\u0627 \u0645\u0648\u0631\u062f \u062d\u0645\u0644\u0647 \u0642\u0631\u0627\u0631 \u06af\u06cc\u0631\u0646\u062f. \u062a\u0648\u0635\u06cc\u0647 \u0645\u06cc \u0634\u0648\u062f \u0627\u06cc\u0646 \u0633\u0627\u06cc\u062a \u0647\u0627 \u0631\u0627 \u0628\u0647 \u0637\u0648\u0631 \u0645\u0646\u0638\u0645 \u0628\u0631\u0631\u0633\u06cc \u06a9\u0646\u06cc\u062f. \u0627\u06cc\u0646 \u0627\u0628\u0632\u0627\u0631 \u062c\u0632\u0648 \u0646\u0631\u0645 \u0627\u0641\u0632\u0627\u0631\u0647\u0627\u06cc \u0631\u0627\u06cc\u06af\u0627\u0646 \u0646\u06cc\u0633\u062a \u0627\u0645\u0627 \u0634\u0645\u0627 \u0645\u06cc \u062a\u0648\u0627\u0646\u06cc\u062f \u0628\u0647 \u0635\u0648\u0631\u062a \u0631\u0627\u06cc\u06af\u0627\u0646 \u0627\u0646 \u0631\u0627 \u062a\u0633\u062a \u06a9\u0646\u06cc\u062f. \u0627\u0628\u0632\u0627\u0631 ISPProtect \u0646\u06cc\u0627\u0632\u0645\u0646\u062f \u0646\u0635\u0628 PHP \u0648 clamav \u0628\u0631 \u0631\u0648\u06cc \u0633\u0631\u0648\u0631 \u0627\u0633\u062a. \u0628\u0631\u0627\u06cc \u0646\u0635\u0628 \u0645\u06cc \u062a\u0648\u0627\u0646\u06cc\u062f \u0627\u0632 \u062f\u0633\u062a\u0648\u0631 \u0632\u06cc\u0631 \u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u06a9\u0646\u06cc\u062f. \u0628\u0631 \u0631\u0648\u06cc \u062f\u0628\u06cc\u0627\u0646 9:<\/p>\n<pre class=\"lang:default decode:true \">apt-get install php7.0-cli\u00a0clamav<\/pre>\n<p>&nbsp;<\/p>\n<p>\u0628\u0631 \u0631\u0648\u06cc \u0627\u0648\u0628\u0648\u0646\u062a\u0648 18.04:<\/p>\n<pre class=\"lang:default decode:true \">apt-get install php7.2-cli\u00a0clamav<\/pre>\n<p>&nbsp;<\/p>\n<p>\u0628\u0631 \u0631\u0648\u06cc \u0641\u062f\u0648\u0631\u0627 \u06cc\u0627 \u0633\u0646\u062a \u0627\u0648 \u0627\u0633:<\/p>\n<pre class=\"lang:default decode:true \">yum install php<\/pre>\n<p>&nbsp;<\/p>\n<p>\u0628\u0631\u0627\u06cc \u0646\u0635\u0628 ISPProtect \u0645\u06cc \u062a\u0648\u0627\u0646\u06cc\u062f \u0627\u0632 \u062f\u0633\u062a\u0648\u0631 \u0632\u06cc\u0631 \u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u06a9\u0646\u06cc\u062f:<\/p>\n<pre class=\"lang:default decode:true \">mkdir -p \/usr\/local\/ispprotect\r\n\r\nchown -R root:root \/usr\/local\/ispprotect\r\n\r\nchmod -R 750 \/usr\/local\/ispprotect\r\n\r\ncd \/usr\/local\/ispprotect\r\n\r\nwget http:\/\/www.ispprotect.com\/download\/ispp_scan.tar.gz\r\n\r\ntar xzf ispp_scan.tar.gz\r\n\r\nrm -f ispp_scan.tar.gz\r\n\r\nln -s \/usr\/local\/ispprotect\/ispp_scan \/usr\/local\/bin\/ispp_scan<\/pre>\n<p>&nbsp;<\/p>\n<p>\u0628\u0631\u0627\u06cc \u0627\u0633\u062a\u0627\u0631\u062a \u0627\u06cc\u0646 \u0627\u0628\u0632\u0627\u0631 \u0645\u06cc \u062a\u0648\u0627\u0646\u06cc\u062f \u0627\u0632 \u062f\u0633\u062a\u0648\u0631 \u0632\u06cc\u0631 \u06a9\u0645\u06a9 \u0628\u06af\u06cc\u0631\u06cc\u062f:<\/p>\n<pre class=\"lang:default decode:true \">ispp_scan<\/pre>\n<p>&nbsp;<\/p>\n<p>\u0627\u06cc\u0646 \u0627\u0633\u06a9\u0646\u0631 \u0628\u0647 \u0637\u0648\u0631 \u062e\u0648\u062f\u06a9\u0627\u0631 \u0628\u0647 \u062f\u0646\u0628\u0627\u0644 \u0622\u067e\u062f\u06cc\u062a \u0647\u0627 \u0645\u06cc \u06af\u0631\u062f\u062f \u0648 \u0633\u067e\u0633 \u062f\u0646\u0628\u0627\u0644 key\u062e\u0648\u0627\u0647\u062f \u0628\u0648\u062f \u0648 \u0645\u0633\u06cc\u0631 \u0633\u0627\u06cc\u062a \u0631\u0627 \u0627\u0632 \u0634\u0645\u0627 \u0645\u06cc \u067e\u0631\u0633\u062f \u06a9\u0647 \u0645\u0639\u0645\u0648\u0644\u0627 \/var\/www \u0627\u0633\u062a:<\/p>\n<pre class=\"lang:default decode:true \">Please enter scan key: &lt;-- trial\r\nPlease enter path to scan: &lt;-- \/var\/www<\/pre>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<p>\u062d\u0627\u0644\u0627 \u0627\u0633\u06a9\u0646\u0631 \u0645\u06cc \u062a\u0648\u0627\u0646\u062f \u0627\u0633\u06a9\u0646 \u0631\u0627 \u0622\u063a\u0627\u0632 \u0646\u0645\u0627\u06cc\u062f. \u0641\u0631\u0627\u06cc\u0646\u062f \u0627\u0633\u06a9\u0646 \u0646\u0634\u0627\u0646 \u062f\u0627\u062f\u0647 \u0645\u06cc \u0634\u0648\u062f. \u0641\u0627\u06cc\u0644\u06cc \u06a9\u0647 \u062a\u0648\u0633\u0637 \u0628\u062f\u0627\u0641\u0632\u0627\u0631\u0647\u0627 \u0645\u0648\u0631\u062f \u062d\u0645\u0644\u0647 \u0642\u0631\u0627\u0631 \u06af\u0631\u0641\u062a\u0647 \u0646\u06cc\u0632 \u0646\u0634\u0627\u0646 \u062f\u0627\u062f\u0647 \u0645\u06cc \u0634\u0648\u062f \u0648 \u0646\u062a\u0627\u06cc\u062c \u062f\u0631 \u0641\u0627\u06cc\u0644 sin \u0630\u062e\u06cc\u0631\u0647 \u0645\u06cc \u0634\u0648\u062f:<\/p>\n<pre class=\"lang:default decode:true \">After the scan is completed, you will find the results also in the following files:\r\nMalware =&gt; \/usr\/local\/ispprotect\/found_malware_20180605115005.txt\r\nWordpress =&gt; \/usr\/local\/ispprotect\/software_wordpress_20180605115005.txt\r\nJoomla =&gt; \/usr\/local\/ispprotect\/software_joomla_20180605115005.txt\r\nDrupal =&gt; \/usr\/local\/ispprotect\/software_drupal_20180605115005.txt\r\nMediawiki =&gt; \/usr\/local\/ispprotect\/software_mediawiki_20180605115005.txt\r\nContao =&gt; \/usr\/local\/ispprotect\/software_contao_20180605115005.txt\r\nMagentocommerce =&gt; \/usr\/local\/ispprotect\/software_magentocommerce_20180605115005.txt\r\nWoltlab Burning Board =&gt; \/usr\/local\/ispprotect\/software_woltlab_burning_board_20180605115005.txt\r\nCms Made Simple =&gt; \/usr\/local\/ispprotect\/software_cms_made_simple_20180605115005.txt\r\nPhpmyadmin =&gt; \/usr\/local\/ispprotect\/software_phpmyadmin_20180605115005.txt\r\nTypo3 =&gt; \/usr\/local\/ispprotect\/software_typo3_20180605115005.txt\r\nRoundcube =&gt; \/usr\/local\/ispprotect\/software_roundcube_20180605115005.txt\r\nShopware =&gt; \/usr\/local\/ispprotect\/software_shopware_20180605115005.txt\r\nMysqldumper =&gt; \/usr\/local\/ispprotect\/software_mysqldumper_20180605115005.txt\r\nStarting scan level 1 ...\r\nScanning 3471 files now ...<\/pre>\n<p>&nbsp;<\/p>\n<p>\u0628\u0631\u0627\u06cc \u0627\u06cc\u0646\u06a9\u0647 \u0628\u062a\u0648\u0627\u0646\u06cc\u062f \u0627\u06cc\u0646 \u0627\u0628\u0632\u0627\u0631 \u0631\u0627 \u0628\u0647 \u0639\u0646\u0648\u0627\u0646 cronjob \u0634\u0628\u0627\u0646\u0647 \u0627\u062c\u0631\u0627 \u06a9\u0646\u06cc\u062f \u06cc\u06a9 \u0641\u0627\u06cc\u0644 cron \u0628\u0627 \u0646\u0627\u0646\u0648 \u0627\u06cc\u062c\u0627\u062f \u0646\u0645\u0627\u06cc\u06cc\u062f:<\/p>\n<pre class=\"lang:default decode:true \">nano \/etc\/cron.d\/ispprotect<\/pre>\n<p>&nbsp;<\/p>\n<p>\u062e\u0637 \u0632\u06cc\u0631 \u0631\u0627 \u062f\u0631 \u0622\u0646 \u0642\u0631\u0627\u0631 \u062f\u0647\u06cc\u062f:<\/p>\n<pre class=\"lang:default decode:true \">0 3\u00a0 * * *\u00a0\u00a0 root\u00a0\u00a0 \/usr\/local\/ispprotect\/ispp_scan --update &amp;&amp; \/usr\/local\/ispprotect\/ispp_scan --path=\/var\/www --email-results=root@localhost --non-interactive --scan-key=AAA-BBB-CCC-DDD<\/pre>\n<p>&nbsp;<\/p>\n<p>\u0639\u0628\u0627\u0631\u062a root@localhost \u0631\u0627 \u0628\u0627 \u0622\u062f\u0631\u0633 \u0627\u06cc\u0645\u06cc\u0644 \u062e\u0648\u062f \u062c\u0627\u06cc\u06af\u0632\u06cc\u0646 \u0646\u0645\u0627\u06cc\u06cc\u062f . \u0633\u067e\u0633 AAA-BBB-CCC-DDD \u0631\u0627 \u0628\u0627 license key \u062e\u0648\u062f \u0639\u0648\u0636 \u06a9\u0646\u06cc\u062f.\u062f\u0633\u062a\u0648\u0631\u0627\u062a \u06a9\u0627\u0645\u0644 \u0627\u06cc\u0646 \u0627\u0628\u0632\u0627\u0631 \u0631\u0627 \u0628\u0647 \u06a9\u0645\u06a9 \u062f\u0633\u062a\u0648\u0631 \u0632\u06cc\u0631 \u0645\u06cc \u062a\u0648\u0627\u0646\u06cc\u062f \u0645\u0634\u0627\u0647\u062f\u0647 \u06a9\u0646\u06cc\u062f:<\/p>\n<pre class=\"lang:default decode:true \">ispp_scan --help<\/pre>\n<p>&nbsp;<\/p>\n<p><strong>\u0627\u0628\u0632\u0627\u0631 Rkhunter: \u0627\u0633\u06a9\u0646\u0631 \u0631\u0648\u062a \u06a9\u06cc\u062a \u0644\u06cc\u0646\u0648\u06a9\u0633<\/strong><\/p>\n<p>\u0627\u06cc\u0646 \u06af\u0632\u06cc\u0646\u0647 \u06cc\u06a9\u06cc \u0627\u0632 \u0627\u0628\u0632\u0627\u0631\u0647\u0627\u06cc \u0633\u0627\u062f\u0647\u060c\u0642\u062f\u0631\u062a\u0645\u0646\u062f \u0648 \u0645\u062a\u0646 \u0628\u0627\u0632 \u0648 \u0634\u0646\u0627\u062e\u062a\u0647 \u0634\u062f\u0647 \u0628\u0631\u0627\u06cc \u0627\u0633\u06a9\u0646 Backdoor \u0647\u0627\u060c \u0631\u0648\u062a \u06a9\u06cc\u062a \u0647\u0627 \u0648 \u062a\u0647\u0627\u062c\u0645 \u0647\u0627\u06cc \u0645\u062d\u0644\u06cc \u0628\u0631 \u0631\u0648\u06cc \u0633\u06cc\u0633\u062a\u0645 \u0647\u0627\u06cc\u06cc \u0647\u0645\u0686\u0648\u0646 \u0644\u06cc\u0646\u0648\u06a9\u0633 \u0627\u0633\u062a. \u0647\u0645\u0627\u0646\u0637\u0648\u0631 \u06a9\u0647 \u0627\u0632 \u0646\u0627\u0645\u0634 \u067e\u06cc\u062f\u0627\u0633\u062a \u0627\u06cc\u0646 \u06af\u0632\u06cc\u0646\u0647 \u0628\u0647 \u0645\u0627\u0646\u06cc\u062a\u0648\u0631\u06cc\u0646\u06af \u0648 \u062a\u062c\u0632\u06cc\u0647 \u0648 \u062a\u062d\u0644\u06cc\u0644 \u0645\u0634\u06a9\u0644\u0627\u062a \u067e\u0646\u0647\u0627\u0646\u06cc \u0633\u06cc\u0633\u062a\u0645 \u0645\u06cc \u067e\u0631\u062f\u0627\u0632\u062f. \u0645\u06cc \u062a\u0648\u0627\u0646\u06cc\u062f \u0628\u0647 \u06a9\u0645\u06a9 \u062f\u0633\u062a\u0648\u0631 \u0632\u06cc\u0631 \u0627\u06cc\u0646 \u0627\u0628\u0632\u0627\u0631 \u0631\u0627 \u0628\u0631 \u0631\u0648\u06cc \u0633\u06cc\u0633\u062a\u0645 \u0647\u0627\u06cc \u0645\u0628\u062a\u0646\u06cc \u0628\u0631 \u0633\u0646\u062a \u0627\u0648 \u0627\u0633 \u0648 \u0627\u0648\u0628\u0648\u0646\u062a\u0648 \u0646\u0635\u0628 \u06a9\u0646\u06cc\u062f:<\/p>\n<pre class=\"lang:default decode:true \">$ sudo apt install rkhunter# yum install epel-release# yum install rkhunter<\/pre>\n<p>&nbsp;<\/p>\n<p>\u0628\u0631\u0627\u06cc \u0628\u0631\u0631\u0633\u06cc \u0633\u0631\u0648\u0631 \u0628\u0627 \u0627\u06cc\u0646 \u0627\u0628\u0632\u0627\u0631 \u0627\u0632 \u062f\u0633\u062a\u0648\u0631 \u0632\u06cc\u0631 \u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u06a9\u0646\u06cc\u062f:<\/p>\n<pre class=\"lang:default decode:true \"># rkhunter -c<\/pre>\n<p>&nbsp;<\/p>\n<p>\u0628\u0631\u0627\u06cc \u0627\u06cc\u0646\u06a9\u0647 \u0627\u06cc\u0646 \u0627\u0628\u0632\u0627\u0631 \u0628\u0647 \u0637\u0648\u0631 \u062e\u0648\u062f\u06a9\u0627\u0631 \u0647\u0631 \u0634\u0628 \u0627\u062c\u0631\u0627 \u0634\u0648\u062f\u060c cron \u0632\u06cc\u0631 \u0631\u0627 \u0627\u06cc\u062c\u0627\u062f \u06a9\u0646\u06cc\u062f \u06a9\u0647 \u0633\u0627\u0639\u062a \u0633\u0647 \u0646\u06cc\u0645\u0647 \u0634\u0628 \u0627\u062c\u0631\u0627 \u0645\u06cc \u0634\u0648\u062f \u0648 \u06af\u0632\u0627\u0631\u0634 \u0647\u0627\u06cc \u0645\u0648\u062c\u0648\u062f \u0631\u0627 \u0628\u0647 \u0627\u062f\u0631\u0633 \u0627\u06cc\u0645\u06cc\u0644\u06cc \u062a\u0627\u0646 \u0627\u0631\u0633\u0627\u0644 \u0645\u06cc \u06a9\u0646\u062f:<\/p>\n<pre class=\"lang:default decode:true \">0 3 * * * \/usr\/sbin\/rkhunter -c 2&gt;&amp;1 | mail -s \"rkhunter Reports of My<\/pre>\n<p>&nbsp;<\/p>\n<h3><\/h3>\n<p>\u0627\u0628\u0632\u0627\u0631 LMD: \u0627\u0628\u0632\u0627\u0631 \u0634\u0646\u0627\u0633\u0627\u06af\u0631 \u0628\u062f\u0627\u0641\u0632\u0627\u0631\u0647\u0627\u06cc \u0644\u06cc\u0646\u0648\u06a9\u0633\u06cc<\/p>\n<p>\u0627\u06cc\u0646 \u0627\u0628\u0632\u0627\u0631 \u06cc\u06a9\u06cc \u0627\u0632 \u0627\u0633\u06a9\u0646\u0631\u0647\u0627\u06cc \u0642\u062f\u0631\u062a\u0645\u0646\u062f\u060c \u0645\u062a\u0646 \u0628\u0627\u0632 \u0648 \u0628\u0627 \u0648\u06cc\u0698\u06af\u06cc \u0647\u0627\u06cc \u0645\u062a\u0639\u062f\u062f \u0628\u0631\u0627\u06cc \u0644\u06cc\u0646\u0648\u06a9\u0633 \u0627\u0633\u062a \u0648 \u0645\u06cc \u062a\u0648\u0627\u0646\u062f\u00a0 \u0645\u062d\u06cc\u0637 \u0647\u0627\u06cc \u0647\u0627\u0633\u062a \u0627\u0634\u062a\u0631\u0627\u06a9\u06cc \u0645\u0648\u0631\u062f \u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u0642\u0631\u0627\u0631 \u06af\u06cc\u0631\u062f \u0627\u0645\u0627 \u0634\u0645\u0627 \u0645\u06cc \u062a\u0648\u0627\u0646\u06cc\u062f \u0627\u0632 \u0622\u0646 \u0628\u0631\u0627\u06cc \u0634\u0646\u0627\u0633\u0627\u06cc\u06cc \u062a\u0647\u062f\u06cc\u062f\u0647\u0627\u06cc \u0647\u0631 \u0633\u06cc\u0633\u062a\u0645 \u0644\u06cc\u0646\u0648\u06a9\u0633\u06cc \u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u06a9\u0646\u06cc\u062f. \u0627\u06cc\u0646 \u0627\u0628\u0632\u0627\u0631 \u0631\u0627 \u0645\u06cc \u062a\u0648\u0627\u0646 \u0628\u0631\u0627\u06cc \u0628\u0647\u0628\u0648\u062f \u06a9\u0627\u0631\u0627\u06cc\u06cc \u0648 \u0628\u0647\u0631\u0647 \u0648\u0631\u06cc\u060c \u0628\u0627 \u0645\u0648\u062a\u0648\u0631 \u0627\u0633\u06a9\u0646\u0631 ClamAV \u0627\u062f\u063a\u0627\u0645 \u06a9\u0631\u062f. \u0627\u06cc\u0646 \u0627\u0628\u0632\u0627\u0631 \u0633\u06cc\u0633\u062a\u0645 \u06af\u0632\u0627\u0631\u0634 \u062f\u0647\u06cc \u06a9\u0627\u0645\u0644\u06cc \u0631\u0627 \u0628\u0631\u0627\u06cc \u0645\u0634\u0627\u0647\u062f\u0647 \u0646\u062a\u0627\u06cc\u062c \u0627\u0633\u06a9\u0646 \u0642\u0628\u0644\u06cc \u0648 \u0641\u0639\u0644\u06cc \u0627\u0631\u0627\u0626\u0647 \u0645\u06cc \u06a9\u0646\u062f \u0648 \u0627\u0632 \u06af\u0632\u0627\u0631\u0634 \u062f\u0647\u06cc \u0627\u06cc\u0645\u06cc\u0644\u06cc \u067e\u0634\u062a\u06cc\u0628\u0627\u0646\u06cc \u0645\u06cc \u0646\u0645\u0627\u06cc\u062f. \u0634\u0645\u0627 \u0645\u06cc \u062a\u0648\u0627\u0646\u06cc\u062f \u0642\u0627\u0628\u0644\u06cc\u062a \u0647\u0627\u06cc \u0645\u062a\u0639\u062f\u062f \u062f\u06cc\u06af\u0631\u06cc \u0647\u0645 \u062f\u0631 \u0627\u06cc\u0646 \u0627\u0628\u0632\u0627\u0631 \u0628\u06cc\u0627\u0628\u06cc\u062f.<\/p>\n<p>&nbsp;<\/p>\n\n\n<div class=\"kk-star-ratings kksr-auto kksr-align-right kksr-valign-bottom\"\n    data-payload='{&quot;align&quot;:&quot;right&quot;,&quot;id&quot;:&quot;3137&quot;,&quot;slug&quot;:&quot;default&quot;,&quot;valign&quot;:&quot;bottom&quot;,&quot;ignore&quot;:&quot;&quot;,&quot;reference&quot;:&quot;auto&quot;,&quot;class&quot;:&quot;&quot;,&quot;count&quot;:&quot;0&quot;,&quot;legendonly&quot;:&quot;&quot;,&quot;readonly&quot;:&quot;&quot;,&quot;score&quot;:&quot;0&quot;,&quot;starsonly&quot;:&quot;&quot;,&quot;best&quot;:&quot;5&quot;,&quot;gap&quot;:&quot;5&quot;,&quot;greet&quot;:&quot;Rate this post&quot;,&quot;legend&quot;:&quot;0\\\/5 - (0 \u0627\u0645\u062a\u06cc\u0627\u0632)&quot;,&quot;size&quot;:&quot;24&quot;,&quot;title&quot;:&quot;\u0627\u0628\u0632\u0627\u0631\u0647\u0627\u06cc\u06cc \u06a9\u0647 \u0645\u06cc \u062a\u0648\u0627\u0646 \u0627\u0632 \u0622\u0646\u200c\u0647\u0627 \u0628\u0631\u0627\u06cc \u0627\u0633\u06a9\u0646 \u0648\u06cc\u0631\u0648\u0633\u200c\u0647\u0627\u06cc \u0633\u0631\u0648\u0631\u0647\u0627\u06cc \u0644\u06cc\u0646\u0648\u06a9\u0633\u06cc \u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u06a9\u0631\u062f&quot;,&quot;width&quot;:&quot;0&quot;,&quot;_legend&quot;:&quot;{score}\\\/{best} - ({count} {votes})&quot;,&quot;font_factor&quot;:&quot;1.25&quot;}'>\n            \n<div class=\"kksr-stars\">\n    \n<div class=\"kksr-stars-inactive\">\n            <div class=\"kksr-star\" data-star=\"1\" style=\"padding-left: 5px\">\n            \n\n<div class=\"kksr-icon\" style=\"width: 24px; height: 24px;\"><\/div>\n        <\/div>\n            <div class=\"kksr-star\" data-star=\"2\" style=\"padding-left: 5px\">\n            \n\n<div class=\"kksr-icon\" style=\"width: 24px; height: 24px;\"><\/div>\n        <\/div>\n            <div class=\"kksr-star\" data-star=\"3\" style=\"padding-left: 5px\">\n            \n\n<div class=\"kksr-icon\" style=\"width: 24px; height: 24px;\"><\/div>\n        <\/div>\n            <div class=\"kksr-star\" data-star=\"4\" style=\"padding-left: 5px\">\n            \n\n<div class=\"kksr-icon\" style=\"width: 24px; height: 24px;\"><\/div>\n        <\/div>\n            <div class=\"kksr-star\" data-star=\"5\" style=\"padding-left: 5px\">\n            \n\n<div class=\"kksr-icon\" style=\"width: 24px; height: 24px;\"><\/div>\n        <\/div>\n    <\/div>\n    \n<div class=\"kksr-stars-active\" style=\"width: 0px;\">\n            <div class=\"kksr-star\" style=\"padding-left: 5px\">\n            \n\n<div class=\"kksr-icon\" style=\"width: 24px; height: 24px;\"><\/div>\n        <\/div>\n            <div class=\"kksr-star\" style=\"padding-left: 5px\">\n            \n\n<div class=\"kksr-icon\" style=\"width: 24px; height: 24px;\"><\/div>\n        <\/div>\n            <div class=\"kksr-star\" style=\"padding-left: 5px\">\n            \n\n<div class=\"kksr-icon\" style=\"width: 24px; height: 24px;\"><\/div>\n        <\/div>\n            <div class=\"kksr-star\" style=\"padding-left: 5px\">\n            \n\n<div class=\"kksr-icon\" style=\"width: 24px; height: 24px;\"><\/div>\n        <\/div>\n            <div class=\"kksr-star\" style=\"padding-left: 5px\">\n            \n\n<div class=\"kksr-icon\" style=\"width: 24px; height: 24px;\"><\/div>\n        <\/div>\n    <\/div>\n<\/div>\n                \n\n<div class=\"kksr-legend\" style=\"font-size: 19.2px;\">\n            <span class=\"kksr-muted\">Rate this post<\/span>\n    <\/div>\n    <\/div>\n","protected":false},"excerpt":{"rendered":"<p>\u0633\u0631\u0648\u0631\u0647\u0627\u06cc\u06cc \u06a9\u0647 \u0628\u0647 \u0627\u06cc\u0646\u062a\u0631\u0646\u062a \u0648\u0635\u0644 \u0645\u06cc \u0634\u0648\u0646\u062f \u0645\u0645\u06a9\u0646 \u0627\u0633\u062a \u0628\u0647 \u0637\u0648\u0631 \u0645\u062f\u0627\u0648\u0645 \u062f\u0631 \u062e\u0637\u0631 \u062d\u0645\u0644\u0647 \u0642\u0631\u0627\u0631 \u062f\u0627\u0634\u062a\u0647 \u0628\u0627\u0634\u0646\u062f \u0648 \u0628\u0647 \u0647\u0645\u06cc\u0646 \u062e\u0627\u0637\u0631 \u0627\u062f\u0645\u06cc\u0646 \u0633\u0631\u0648\u0631\u0647\u0627 \u0628\u0627\u06cc\u062f \u0628\u0647 \u0637\u0648\u0631 \u0645\u0646\u0638\u0645 \u0686\u0646\u06cc\u0646\u00a0 \u0645\u0648\u0627\u0631\u062f\u06cc \u0631\u0627 \u0627\u0633\u06a9\u0646 \u0648 \u0628\u0631\u0631\u0633\u06cc \u0646\u0645\u0627\u06cc\u0646\u062f. \u0628\u0627 \u0627\u06cc\u0646\u06a9\u0647 \u0641\u0627\u06cc\u0631\u0648\u0627\u0644 \u0647\u0627 \u0648 \u0628\u0647 \u0631\u0648\u0632\u0631\u0633\u0627\u0646\u06cc \u0645\u0639\u0645\u0648\u0644 \u0648 \u0645\u0646\u0638\u0645 \u0633\u06cc\u0633\u062a\u0645 \u0647\u0627 \u0645\u06cc \u062a\u0648\u0627\u0646\u062f \u06af\u0632\u06cc\u0646\u0647 \u062f\u0641\u0627\u0639\u06cc \u062e\u0648\u0628\u06cc \u0628\u0631\u0627\u06cc \u0627\u0645\u0646 \u0646\u06af\u0647 &hellip;<\/p>\n","protected":false},"author":8,"featured_media":3138,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[1370,3],"tags":[2456,2455,2457,2454,1530,13],"class_list":["post-3137","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-linux","category-web-articles","tag-2456","tag-2455","tag-2457","tag-2454","tag-1530","tag-13"],"jetpack_featured_media_url":"https:\/\/webide.ir\/blog\/wp-content\/uploads\/2018\/10\/linux_copy.jpg","views":"1334","jetpack_sharing_enabled":true,"jetpack_shortlink":"https:\/\/wp.me\/parry3-OB","_links":{"self":[{"href":"https:\/\/webide.ir\/blog\/wp-json\/wp\/v2\/posts\/3137","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/webide.ir\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/webide.ir\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/webide.ir\/blog\/wp-json\/wp\/v2\/users\/8"}],"replies":[{"embeddable":true,"href":"https:\/\/webide.ir\/blog\/wp-json\/wp\/v2\/comments?post=3137"}],"version-history":[{"count":0,"href":"https:\/\/webide.ir\/blog\/wp-json\/wp\/v2\/posts\/3137\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/webide.ir\/blog\/wp-json\/wp\/v2\/media\/3138"}],"wp:attachment":[{"href":"https:\/\/webide.ir\/blog\/wp-json\/wp\/v2\/media?parent=3137"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/webide.ir\/blog\/wp-json\/wp\/v2\/categories?post=3137"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/webide.ir\/blog\/wp-json\/wp\/v2\/tags?post=3137"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}