Become a MacRumors Supporter for $50/year with no ads, ability to filter front page stories, and private forums.

Help404

macrumors newbie
Original poster
Feb 3, 2011
16
0
France
Hello,
I try just for informations chrootkit on my el capitan. It said few days ago that windigo is in.
Well, ok... I did some research and studies tell thats its on servers and you have to tape in Terminal:

ssh -G 2>&1 | grep -e illegal -e unknown > /dev/null && echo “System clean” || echo “System infected”

And I have “System infected”.

Ok... Then I reinstalled El Capitan following what is recommended.
And now I just do some research on Google just to find the command line, and I tried to not to be online during the install, I tried the command line and guess what? “System infected”!!
What's wrong with that command line? Is it unix command? I am a few aware about command line in Linux but ssh -G i didn't know, and all that command line I don't understand very well what its expecting in a mac...
Well should I be worried or no?
 
My Linux machine is not infected.

My mac does report as being infected. However, both of these systems have a different version of ssh. The mac supports an option called -G, where Lubuntu does not. So although it states that you're infected, I wouldn't worry about it currently.
 
Last edited:
  • Like
Reactions: Help404
Register on MacRumors! This sidebar will go away, and you'll see fewer ads.