Linux Lite Forums
ssh backdoor - Printable Version

+- Linux Lite Forums (https://www.freecinema2022.gq/forums)
+-- Forum: General (https://www.freecinema2022.gq/forums/forumdisplay.php?fid=4)
+--- Forum: Security & Bug Fixes (https://www.freecinema2022.gq/forums/forumdisplay.php?fid=16)
+--- Thread: ssh backdoor (/showthread.php?tid=9235)



ssh backdoor - trinidad - 09-04-2024

Any news about this leak? I haven't found a fix as yet in Ubuntu.

https://dbts-analytics.com/sshbackdoor.html

TC


RE: ssh backdoor - LL-user - 09-05-2024

Thanks, TC, for the reminder of this concerning malware.

For anyone who's not familiar with Ebury, one of the most advanced server-side malware campaigns, here is a good start.

TC, I had a look at your screenshots. Could you please explain, what you're trying to do? Am must be missing something.
To my knowledge the command is run like this:
Code:
ssh -G <host>

Without the <host> part it will fail (as shown on your screenshots) and therefore print "System infected" according to your following conditions.