Skip to content
New issue

Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? # to your account

Upgrading Debian 7 with vlany installed to Debian 8 disable vlany #23

Open
unixfox opened this issue Mar 31, 2017 · 5 comments
Open

Upgrading Debian 7 with vlany installed to Debian 8 disable vlany #23

unixfox opened this issue Mar 31, 2017 · 5 comments

Comments

@unixfox
Copy link
Collaborator

unixfox commented Mar 31, 2017

I found that during some search with Debian 7 that if vlany is installed on the box and then box is upgraded to Debian 8, vlany will no longer be installed / executed at reboot.
I don't really know why this is happening?
Proof:
asciicast
Interesting parts at [00:00-00:50] & [08:25-09:30]

@unixfox unixfox changed the title Upgrading Debian 7 with vlany installed to Debian 8 erases vlany Upgrading Debian 7 with vlany installed to Debian 8 disable vlany Mar 31, 2017
@mempodippy
Copy link
Owner

Well this is understandable... I think I might know why this happens though.
Are the rootkit libraries/the rootkit's hidden directory completely gone too? Don't see why they would've been wiped. What about the new ld.so.preload file? Is that gone?

@unixfox
Copy link
Collaborator Author

unixfox commented Apr 1, 2017

I can give you the access to the box to diagnostic, if I add your github public key to the VPS it's okay?
EDIT: I just added it: ssh root@95.85.39.182

@mempodippy
Copy link
Owner

Access would be appreciated. Sure.

@unixfox
Copy link
Collaborator Author

unixfox commented Apr 1, 2017

I just added your public key to the VPS: ssh root@95.85.39.182.

@unixfox
Copy link
Collaborator Author

unixfox commented Apr 2, 2017

I'll let the VPS on until tonight because I pay for it and I think you've the ability to reproduce the bug on your environment.

# for free to join this conversation on GitHub. Already have an account? # to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants