{"id":23188,"date":"2020-12-09T09:59:52","date_gmt":"2020-12-09T01:59:52","guid":{"rendered":"https:\/\/web.mwwsb.com.my\/pjci\/?post_type=kb&#038;p=23188"},"modified":"2022-09-08T20:00:20","modified_gmt":"2022-09-08T12:00:20","slug":"security-tips-rootkit-trojan","status":"publish","type":"kb","link":"https:\/\/www.casbay.com\/guide\/kb\/security-tips-rootkit-trojan","title":{"rendered":"SECURITY TIPS: RootKit Trojan"},"content":{"rendered":"\t\t<div data-elementor-type=\"wp-post\" data-elementor-id=\"23188\" class=\"elementor elementor-23188\" data-elementor-post-type=\"kb\">\n\t\t\t\t\t\t\t\t\t<section class=\"elementor-section elementor-top-section elementor-element elementor-element-c1a5c56 elementor-section-boxed elementor-section-height-default elementor-section-height-default\" data-id=\"c1a5c56\" data-element_type=\"section\">\n\t\t\t\t\t\t<div class=\"elementor-container elementor-column-gap-default\">\n\t\t\t\t\t<div class=\"elementor-column elementor-col-100 elementor-top-column elementor-element elementor-element-ad24d99\" data-id=\"ad24d99\" data-element_type=\"column\">\n\t\t\t<div class=\"elementor-widget-wrap elementor-element-populated\">\n\t\t\t\t\t\t\t\t<div class=\"elementor-element elementor-element-e5a69bb elementor-widget elementor-widget-heading\" data-id=\"e5a69bb\" data-element_type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t<h2 class=\"elementor-heading-title elementor-size-default\">SECURITY TIPS: RootKit Trojan<\/h2>\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-5bee7ea elementor-widget elementor-widget-text-editor\" data-id=\"5bee7ea\" data-element_type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<p>Tips RootKit Trojan \u2013 Scanning &amp; Prevention<\/p><p>Dear valued customers,<\/p><p>Our security team has reported that some of the <a href=\"https:\/\/www.casbay.com\/vps-hosting-malaysia\">VPS <\/a>and <a href=\"https:\/\/www.casbay.com\/asia-dedicated-server\/malaysia\">dedicated servers <\/a>have been <strong><em>infected with Trojan RootKit<\/em><\/strong>.<br \/>We would therefore like to take this chance to inform all of our owners of dedicated &amp; VPS servers to be vigilant and try not to let Trojan RootKit in their servers.<\/p><p><strong>Scanner Tools for RootKit Trojan<\/strong><br \/><em>a)\u00a0<strong>rkHunter<\/strong>\u00a0\u2013 rootkit scanner,\u00a0<\/em><br \/><em>b)\u00a0<strong>chkrootkit<\/strong>\u00a0\u2013 another rootkit scanner,\u00a0<\/em><br \/><em>c)\u00a0<strong>clamav<\/strong>\u00a0\u2013 anti-virus scanner,\u00a0<\/em><br \/><em>#\u00a0<strong>rpm based installer<\/strong>,<br \/><\/em><\/p><p>If you need\u00a0any further assistance, please contact us again.<\/p>\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-70f17db elementor-widget elementor-widget-text-editor\" data-id=\"70f17db\" data-element_type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<p>In case if you are wondering,<\/p>\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-5b05036 elementor-widget elementor-widget-heading\" data-id=\"5b05036\" data-element_type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t<h2 class=\"elementor-heading-title elementor-size-medium\">What is a Rootkit?<\/h2>\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-36c8a9c elementor-widget elementor-widget-image\" data-id=\"36c8a9c\" data-element_type=\"widget\" data-widget_type=\"image.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t<img decoding=\"async\" src=\"https:\/\/casbay.com\/guide\/wp-content\/uploads\/2021\/02\/rootkit-definition.png\" title=\"\" alt=\"\" loading=\"lazy\" \/>\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-3da8cd1 elementor-widget elementor-widget-text-editor\" data-id=\"3da8cd1\" data-element_type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<div class=\"brief-summary hs_cos_wrapper\"><p>A rootkit is an application\/ set of applications that conceals its presence, or the presence of another application, like adware or spyware, on a device. Rootkits hide by using some of the lower layers of the operating system, including API function redirection or undocumented OS functions. This makes us almost unable to detect them by using common anti-malware software.<\/p><\/div><div class=\"detailed-summary hs_cos_wrapper\"><p>Have you ever wondered- where does the term \u201crootkit\u201d comes from? In Unix and Linux operating systems (OS), the system admin, there is an all-powerful account with full privileges and access with no restrictions (similar to the administrator account in Windows). We call the account- <strong>\u201croot\u201d<\/strong>. Moreover, the applications that allow unauthorized root\/admin-level access to the device and restricted areas, we refer them as- <strong>\u201ckit\u201d<\/strong>.<\/p><p>So, put the two together, you will get \u201c<strong>rootkit<\/strong>\u201d. In other words, a rootkit is <strong>a program<\/strong> that lets <strong>someone with legitimate or malicious intent privilege access<\/strong> a<strong> computer <\/strong>or <strong>mobile device<\/strong>. Through this, the person can now control the device remotely without the owner\u2019s knowledge or consent.<\/p><p>Unfortunately, rootkits allow creating unauthorized access to computers. It aids cybercriminals in stealing personal data and financial information, install malware, or use computers as part of a botnet. The purpose is to circulate spam and participate in <a href=\"https:\/\/www.avg.com\/en\/signal\/what-is-ddos-attack\" rel=\" noopener\">DDoS (distributed denial-of-service) attacks<\/a>.<\/p><p>Lastly, imagine a burglar who wants to break in and steal from your home. They often dress in black to blend into the darkness and move quietly. However, unlike the thief who takes something and leaves immediately, a rootkit <strong>sticks around in your computer.<\/strong> It will <strong>eventually rob your data <\/strong>or<strong> manipulating <\/strong>what\u2019s inside the computer <strong>over time<\/strong>.<\/p><\/div>\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/div>\n\t\t\t\t\t\t\t<\/div>\n\t\t<\/section>\n\t\t\t\t\t\t\t<\/div>\n\t\t","protected":false},"excerpt":{"rendered":"<p>SECURITY TIPS: RootKit Trojan Tips RootKit Trojan \u2013 Scanning &amp; Prevention Dear valued customers, Our security team has reported that some of the VPS and dedicated servers have been infected with Trojan RootKit.We would therefore like to take this chance to inform all of our owners of dedicated &amp; VPS servers to be vigilant and [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","template":"","meta":{"site-sidebar-layout":"no-sidebar","site-content-layout":"page-builder","ast-site-content-layout":"","site-content-style":"default","site-sidebar-style":"default","ast-global-header-display":"","ast-banner-title-visibility":"","ast-main-header-display":"","ast-hfb-above-header-display":"","ast-hfb-below-header-display":"","ast-hfb-mobile-header-display":"","site-post-title":"disabled","ast-breadcrumbs-content":"","ast-featured-img":"disabled","footer-sml-layout":"","theme-transparent-header-meta":"default","adv-header-id-meta":"","stick-header-meta":"default","header-above-stick-meta":"","header-main-stick-meta":"","header-below-stick-meta":"","astra-migrate-meta-layouts":"default","ast-page-background-enabled":"default","ast-page-background-meta":{"desktop":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-gradient":""},"tablet":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-gradient":""},"mobile":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-gradient":""}},"ast-content-background-meta":{"desktop":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-gradient":""},"tablet":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-gradient":""},"mobile":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-gradient":""}}},"kbtopic":[113],"kbtag":[106],"mkb_version":[],"_links":{"self":[{"href":"https:\/\/www.casbay.com\/guide\/wp-json\/wp\/v2\/kb\/23188"}],"collection":[{"href":"https:\/\/www.casbay.com\/guide\/wp-json\/wp\/v2\/kb"}],"about":[{"href":"https:\/\/www.casbay.com\/guide\/wp-json\/wp\/v2\/types\/kb"}],"author":[{"embeddable":true,"href":"https:\/\/www.casbay.com\/guide\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.casbay.com\/guide\/wp-json\/wp\/v2\/comments?post=23188"}],"version-history":[{"count":14,"href":"https:\/\/www.casbay.com\/guide\/wp-json\/wp\/v2\/kb\/23188\/revisions"}],"predecessor-version":[{"id":36785,"href":"https:\/\/www.casbay.com\/guide\/wp-json\/wp\/v2\/kb\/23188\/revisions\/36785"}],"wp:attachment":[{"href":"https:\/\/www.casbay.com\/guide\/wp-json\/wp\/v2\/media?parent=23188"}],"wp:term":[{"taxonomy":"kbtopic","embeddable":true,"href":"https:\/\/www.casbay.com\/guide\/wp-json\/wp\/v2\/kbtopic?post=23188"},{"taxonomy":"kbtag","embeddable":true,"href":"https:\/\/www.casbay.com\/guide\/wp-json\/wp\/v2\/kbtag?post=23188"},{"taxonomy":"mkb_version","embeddable":true,"href":"https:\/\/www.casbay.com\/guide\/wp-json\/wp\/v2\/mkb_version?post=23188"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}