<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
	<channel>
		<atom:link href="http://dev1galaxy.org/extern.php?action=feed&amp;tid=2608&amp;type=rss" rel="self" type="application/rss+xml" />
		<title><![CDATA[Dev1 Galaxy Forum / Openssh problems virus]]></title>
		<link>http://dev1galaxy.org/viewtopic.php?id=2608</link>
		<description><![CDATA[The most recent posts in Openssh problems virus.]]></description>
		<lastBuildDate>Wed, 23 Jan 2019 23:14:43 +0000</lastBuildDate>
		<generator>FluxBB</generator>
		<item>
			<title><![CDATA[Re: Openssh problems virus]]></title>
			<link>http://dev1galaxy.org/viewtopic.php?pid=13800#p13800</link>
			<description><![CDATA[<p>Bueno aunque ahorA la pagina oficial muestra la version 0.101.1 como version estable del clam antivirus, he buscado con<br />aptitude show clamav muestra la version 0.100.2+dfsg-0+deb9u1</p>]]></description>
			<author><![CDATA[dummy@example.com (Hectagon)]]></author>
			<pubDate>Wed, 23 Jan 2019 23:14:43 +0000</pubDate>
			<guid>http://dev1galaxy.org/viewtopic.php?pid=13800#p13800</guid>
		</item>
		<item>
			<title><![CDATA[Re: Openssh problems virus]]></title>
			<link>http://dev1galaxy.org/viewtopic.php?pid=13799#p13799</link>
			<description><![CDATA[<p>Hola disculpen la tardanza en responder quizas devuan tenga que resolver muchos errores quizas sea por quitar systemd el genera dependencias sobre muchos paquetes y tener que readaptar esos paquetes para que no dependan de systemd .Otro problema que observe en mi sistema es que instale clamav desde los repositorios oficiales y este es de una version inestable creo que la version que yo instale era 0.101.2 y la version que muestra en la pagina oficial de clam antivirus es 0.101.0 .claro la version que yo instale a mitad de analisis me mostro un error de libreria quizas por eso mi paranoia.O la verdad nose si hackearon servodores de paquetes de devuan y pusieron esa version de clamav</p>]]></description>
			<author><![CDATA[dummy@example.com (Hectagon)]]></author>
			<pubDate>Wed, 23 Jan 2019 23:02:06 +0000</pubDate>
			<guid>http://dev1galaxy.org/viewtopic.php?pid=13799#p13799</guid>
		</item>
		<item>
			<title><![CDATA[Re: Openssh problems virus]]></title>
			<link>http://dev1galaxy.org/viewtopic.php?pid=13795#p13795</link>
			<description><![CDATA[<p>I suppose I should quote the translation, in case one of our Spanish-speaking members notices a translation error, and also for the English-speaking members so they don&#039;t have to go to the translator just to follow the thread.</p>]]></description>
			<author><![CDATA[dummy@example.com (fsmithred)]]></author>
			<pubDate>Wed, 23 Jan 2019 17:11:39 +0000</pubDate>
			<guid>http://dev1galaxy.org/viewtopic.php?pid=13795#p13795</guid>
		</item>
		<item>
			<title><![CDATA[Re: Openssh problems virus]]></title>
			<link>http://dev1galaxy.org/viewtopic.php?pid=13786#p13786</link>
			<description><![CDATA[<p>a good online translator will help with posts.&#160; I suggest <a href="http://www.worldlingo.com/en/products_services/worldlingo_translator.html" rel="nofollow">http://www.worldlingo.com/en/products_s … lator.html</a></p><p>Regarding UFW this may help: <a href="https://medium.com/@jasonrigden/a-guide-to-the-uncomplicated-firewall-ufw-for-linux-570c3774d7f4" rel="nofollow">https://medium.com/@jasonrigden/a-guide … 0c3774d7f4</a><br /><a href="https://www.linux.com/learn/introduction-uncomplicated-firewall-ufw" rel="nofollow">https://www.linux.com/learn/introductio … rewall-ufw</a><br /><a href="https://wiki.archlinux.org/index.php/Uncomplicated_Firewall" rel="nofollow">https://wiki.archlinux.org/index.php/Un … d_Firewall</a></p>]]></description>
			<author><![CDATA[dummy@example.com (ChuangTzu)]]></author>
			<pubDate>Tue, 22 Jan 2019 20:44:58 +0000</pubDate>
			<guid>http://dev1galaxy.org/viewtopic.php?pid=13786#p13786</guid>
		</item>
		<item>
			<title><![CDATA[Re: Openssh problems virus]]></title>
			<link>http://dev1galaxy.org/viewtopic.php?pid=13772#p13772</link>
			<description><![CDATA[<p>Your ssh files look good. If you are very paranoid, you could download the deb package and compare against the md5sums inside the package instead of the list in /var/lib/dpkg/info/.</p><div class="codebox"><pre><code>apt-get download openssh-server
debsums openssh-server_1%3a7.4p1-10+deb9u4_amd64.deb</code></pre></div><p>Then do the same for the client package. </p><p>I don&#039;t know ufw. Maybe start a separate discussion for that problem. It might be a policykit problem.</p>]]></description>
			<author><![CDATA[dummy@example.com (fsmithred)]]></author>
			<pubDate>Tue, 22 Jan 2019 12:14:59 +0000</pubDate>
			<guid>http://dev1galaxy.org/viewtopic.php?pid=13772#p13772</guid>
		</item>
		<item>
			<title><![CDATA[Re: Openssh problems virus]]></title>
			<link>http://dev1galaxy.org/viewtopic.php?pid=13767#p13767</link>
			<description><![CDATA[<p>Yo antes de modificar gufw.desktop habia ejecutado varias veces gufw en i3wm y nunca se abrio ni tampoco un mensage de error entonces modifique el desktop lo ejecuto aparece la caja parA insertar contrasena e ingreso bien y no se abre gufw</p>]]></description>
			<author><![CDATA[dummy@example.com (Hectagon)]]></author>
			<pubDate>Mon, 21 Jan 2019 23:41:57 +0000</pubDate>
			<guid>http://dev1galaxy.org/viewtopic.php?pid=13767#p13767</guid>
		</item>
		<item>
			<title><![CDATA[Re: Openssh problems virus]]></title>
			<link>http://dev1galaxy.org/viewtopic.php?pid=13766#p13766</link>
			<description><![CDATA[<p>Debsums&#160; openssh-server arroja</p><p>/lib/systemd/system/ssh.service&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160;OK<br />/lib/systemd/system/ssh.socket&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; OK<br />/lib/systemd/system/ssh@.service&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; OK<br />/usr/lib/openssh/ssh-session-cleanup&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; OK<br />/usr/lib/tmpfiles.d/sshd.conf&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160;OK<br />/usr/sbin/sshd&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; OK<br />/usr/share/apport/package-hooks/openssh-server.py&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160;OK<br />/usr/share/doc/openssh-client/examples/ssh-session-cleanup.service&#160; &#160; &#160; &#160; &#160; &#160; OK<br />/usr/share/lintian/overrides/openssh-server&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160;OK<br />/usr/share/man/man5/sshd_config.5.gz&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; OK<br />/usr/share/man/man8/sshd.8.gz&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160;OK<br />/usr/share/openssh/sshd_config&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; OK<br />/usr/share/openssh/sshd_config.md5sum&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160;OK</p><p>debsums openssh-client </p><p>/usr/bin/scp&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; OK<br />/usr/bin/sftp&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160;OK<br />/usr/bin/ssh&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; OK<br />/usr/bin/ssh-add&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; OK<br />/usr/bin/ssh-agent&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; OK<br />/usr/bin/ssh-argv0&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; OK<br />/usr/bin/ssh-copy-id&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; OK<br />/usr/bin/ssh-keygen&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160;OK<br />/usr/bin/ssh-keyscan&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; OK<br />/usr/lib/openssh/agent-launch&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160;OK<br />/usr/lib/openssh/ssh-keysign&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; OK<br />/usr/lib/openssh/ssh-pkcs11-helper&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; OK<br />/usr/lib/systemd/user/ssh-agent.service&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160;OK<br />/usr/share/apport/package-hooks/openssh-client.py&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160;OK<br />/usr/share/doc/openssh-client/ChangeLog.gssapi&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; OK<br />/usr/share/doc/openssh-client/NEWS.Debian.gz&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; OK<br />/usr/share/doc/openssh-client/OVERVIEW.gz&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160;OK<br />/usr/share/doc/openssh-client/README&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; OK<br />/usr/share/doc/openssh-client/README.Debian.gz&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; OK<br />/usr/share/doc/openssh-client/README.dns&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; OK<br />/usr/share/doc/openssh-client/README.tun.gz&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160;OK<br />/usr/share/doc/openssh-client/changelog.Debian.gz&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160;OK<br />/usr/share/doc/openssh-client/changelog.gz&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; OK<br />/usr/share/doc/openssh-client/copyright&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160;OK<br />/usr/share/doc/openssh-client/faq.html&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; OK<br />/usr/share/lintian/overrides/openssh-client&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160;OK<br />/usr/share/man/man1/scp.1.gz&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; OK<br />/usr/share/man/man1/sftp.1.gz&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160;OK<br />/usr/share/man/man1/ssh-add.1.gz&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; OK<br />/usr/share/man/man1/ssh-agent.1.gz&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; OK<br />/usr/share/man/man1/ssh-argv0.1.gz&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; OK<br />/usr/share/man/man1/ssh-copy-id.1.gz&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; OK<br />/usr/share/man/man1/ssh-keygen.1.gz&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160;OK<br />/usr/share/man/man1/ssh-keyscan.1.gz&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; OK<br />/usr/share/man/man1/ssh.1.gz&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; OK<br />/usr/share/man/man5/moduli.5.gz&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160;OK<br />/usr/share/man/man5/ssh_config.5.gz&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160;OK<br />/usr/share/man/man8/ssh-keysign.8.gz&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; OK<br />/usr/share/man/man8/ssh-pkcs11-helper.8.gz&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; OK<br />/usr/share/upstart/sessions/ssh-agent.conf&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; OK<br />/usr/share/upstart/systemd-session/upstart/ssh-agent.override&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160;OK</p><p>Debsums -ca</p><p>/usr/share/applications/gufw.desktop<br />/etc/mime.types</p><p>Yo habia modificado gufw.desktop para que se ejecute con gksudo o gksu sea como sea la interfas grafica gufw no funciona</p>]]></description>
			<author><![CDATA[dummy@example.com (Hectagon)]]></author>
			<pubDate>Mon, 21 Jan 2019 23:23:51 +0000</pubDate>
			<guid>http://dev1galaxy.org/viewtopic.php?pid=13766#p13766</guid>
		</item>
		<item>
			<title><![CDATA[Re: Openssh problems virus]]></title>
			<link>http://dev1galaxy.org/viewtopic.php?pid=13765#p13765</link>
			<description><![CDATA[<p>I don&#039;t know how to interpret the output from dpkg -V. I like debsums better.</p><p>Check the installed package:</p><div class="codebox"><pre><code>$ debsums openssh-server
/lib/systemd/system/ssh.service                                               OK
/lib/systemd/system/ssh.socket                                                OK
/lib/systemd/system/ssh@.service                                              OK
/usr/lib/tmpfiles.d/sshd.conf                                                 OK
/usr/sbin/sshd                                                                OK
/usr/share/apport/package-hooks/openssh-server.py                             OK
/usr/share/doc/openssh-client/examples/sshd_config                            OK
/usr/share/lintian/overrides/openssh-server                                   OK
/usr/share/man/man5/sshd_config.5.gz                                          OK
/usr/share/man/man8/sshd.8.gz                                                 OK</code></pre></div><p>List changed package files from all installed packages with checksums. (Run this one as root)</p><div class="codebox"><pre><code># debsums -ca
/usr/share/abiword-3.0/system.profile
/usr/share/applications/sol.desktop
/etc/apache2/sites-available/000-default.conf
/etc/cron.daily/apt
/etc/firejail/thunderbird.profile
/etc/firejail/firefox.profile
/usr/bin/firemenu
/usr/share/applications/gparted.desktop
/etc/grub.d/05_debian_theme</code></pre></div><p>I have some files that were changed. This is OK - I know that I changed these files. (Note: I just learned this command, and I really like it a lot. The above list was much longer, but I truncated it. It shows all the system files I&#039;ve edited, including all the ones I forgot about.)</p>]]></description>
			<author><![CDATA[dummy@example.com (fsmithred)]]></author>
			<pubDate>Mon, 21 Jan 2019 21:36:43 +0000</pubDate>
			<guid>http://dev1galaxy.org/viewtopic.php?pid=13765#p13765</guid>
		</item>
		<item>
			<title><![CDATA[Re: Openssh problems virus]]></title>
			<link>http://dev1galaxy.org/viewtopic.php?pid=13761#p13761</link>
			<description><![CDATA[<p>Hola dpkg -V arroja&#160; &#160;<a href="http://www.subirimagenes.com/imagen-kik1-9882498.html" rel="nofollow"><span class="postimg"><img src="http://s2.subirimagenes.com/imagen/previo/thump_9882498kik1.png" alt="thump_9882498kik1.png" /></span></a> no se que error o problemas tendran esos paquetes</p>]]></description>
			<author><![CDATA[dummy@example.com (Hectagon)]]></author>
			<pubDate>Mon, 21 Jan 2019 16:27:27 +0000</pubDate>
			<guid>http://dev1galaxy.org/viewtopic.php?pid=13761#p13761</guid>
		</item>
		<item>
			<title><![CDATA[Re: Openssh problems virus]]></title>
			<link>http://dev1galaxy.org/viewtopic.php?pid=13760#p13760</link>
			<description><![CDATA[<p>/etc/shadow- and /etc/gshadow- are backup files that get created when you add/remove a user or group. Their presence does not indicate that you have been hacked. And if you have been hacked, removing those files will not help you.</p><p>Edit: If you remove /etc/shadow or /etc/gshadow, you won&#039;t be able to log in.<br />See <span class="bbc">man shadow</span> and <span class="bbc">man gshadow</span> for more information.</p><p><a href="https://www.securityweek.com/researchers-find-dozen-undocumented-openssh-backdoors" rel="nofollow">https://www.securityweek.com/researcher … -backdoors</a></p><div class="quotebox"><blockquote><div><p>On a Debian-based distribution, <br /><span class="bbc">debsums</span> or <span class="bbc">dpkg -V</span> can be used to compare MD5 hashes of installed files with a manifest stored on disk in /var/lib/dpkg/info/. It’s a start, but the manifest file, which only contains paths and MD5 sums, can be tampered with. An mportant thing to know is that in the Debian and Ubuntu official repositories, only the metadata is PGP-signed. The .deb package itself isn’t signed. The metadata contains the hash of .deb packages and that is the only thing that can be trusted.</p></div></blockquote></div>]]></description>
			<author><![CDATA[dummy@example.com (fsmithred)]]></author>
			<pubDate>Sun, 20 Jan 2019 21:54:57 +0000</pubDate>
			<guid>http://dev1galaxy.org/viewtopic.php?pid=13760#p13760</guid>
		</item>
		<item>
			<title><![CDATA[Re: Openssh problems virus]]></title>
			<link>http://dev1galaxy.org/viewtopic.php?pid=13757#p13757</link>
			<description><![CDATA[<p>Here webpage which view vulnarability <a href="https://www.linuxadictos.com/eset-identifico-21-paquetes-maliciosos-que-reemplazan-a-openssh.html" rel="nofollow">https://www.linuxadictos.com/eset-ident … enssh.html</a></p>]]></description>
			<author><![CDATA[dummy@example.com (Hectagon)]]></author>
			<pubDate>Sun, 20 Jan 2019 16:08:47 +0000</pubDate>
			<guid>http://dev1galaxy.org/viewtopic.php?pid=13757#p13757</guid>
		</item>
		<item>
			<title><![CDATA[Openssh problems virus]]></title>
			<link>http://dev1galaxy.org/viewtopic.php?pid=13755#p13755</link>
			<description><![CDATA[<p>Hola lei en linuxadictos.com que eset publico un hackeo a los servidores de paquetes de linux el tema es que el paquete openssh<br />o relacionados a este genera una puerta trasera o similar , y genera un archivo en /etc/ llamado gshadow- el cual he verificado que tengo .Quisiera saber si puedo eliminar dicho archivo (gshadow-) y como saber si ya no estoy infectado .He realizado un analisis con eset antivirus usblive y este no detecta infeccion pero sigo teniendo el&#160; archivo gshadow- lo cual me hace sospechar que sigo infectado</p>]]></description>
			<author><![CDATA[dummy@example.com (Hectagon)]]></author>
			<pubDate>Sun, 20 Jan 2019 00:58:40 +0000</pubDate>
			<guid>http://dev1galaxy.org/viewtopic.php?pid=13755#p13755</guid>
		</item>
	</channel>
</rss>
