{"id":21695,"date":"2017-11-09T12:43:06","date_gmt":"2017-11-09T05:43:06","guid":{"rendered":"https:\/\/help.ruk-com.in.th\/topic\/21695\/"},"modified":"2017-11-09T12:43:06","modified_gmt":"2017-11-09T05:43:06","slug":"%e0%ba%81%e0%ba%a7%e0%ba%94%e0%ba%ab%e0%ba%b2%e0%ba%a1%e0%ba%b1%e0%ba%94%e0%bb%81%e0%ba%a7%e0%bb%83%e0%ba%99%e0%bb%80%e0%ba%84%e0%ba%b7%e0%bb%88%e0%ba%ad%e0%ba%87%e0%bb%80%e0%ba%8a%e0%ba%b5%e0%ba%9a","status":"publish","type":"dt_articles","link":"https:\/\/help.ruk-com.in.th\/lo-la\/topic\/21695\/","title":{"rendered":"\u0e81\u0ea7\u0e94\u0eab\u0eb2\u0ea1\u0eb1\u0e94\u0ec1\u0ea7\u0ec3\u0e99\u0ec0\u0e84\u0eb7\u0ec8\u0ead\u0e87\u0ec0\u0e8a\u0eb5\u0e9a\u0ec0\u0ea7\u0eb5\u0e94\u0ec9\u0ea7\u0e8d LMD (CENTOS 6.4)"},"content":{"rendered":"<p><a data-lightbox=\"image-set\"><img decoding=\"async\" style=\"display: block; margin-left: auto; margin-right: auto;\" src=\"https:\/\/www.ruk-com.in.th\/wp-content\/uploads\/2013\/09\/malware-bug.jpg\" alt=\"\"><\/a><\/p>\n<p><strong>LMD (Linux Malware Detect)<\/strong> \u0ec0\u0e9b\u0eb1\u0e99 Software \u0e97\u0eb5\u0ec8\u0e96\u0eb7\u0e81\u0e9e\u0eb1\u0e94\u0e97\u0eb0\u0e99\u0eb2\u0ec0\u0e9e\u0eb7\u0ec8\u0ead\u0eab\u0eb2\u0ea1\u0eb1\u0e94\u0ec1\u0ea7\u0ec3\u0e99\u0ec0\u0e84\u0eb7\u0ec8\u0ead\u0e87 Linux \u0ec2\u0e94\u0e8d\u0eaa\u0eb0\u0ec0\u0e9e\u0eb2\u0eb0\u0ec0\u0e8a\u0eb4\u0ec8\u0e87\u0ea1\u0eb5\u0e9f\u0eb5\u0ec0\u0e88\u0eb5\u0e97\u0eb5\u0ec8\u0e82\u0ec9\u0ead\u0e99\u0e82\u0ec9\u0eb2\u0e87\u0e84\u0ea7\u0e9a\u0e84\u0eb8\u0ea1\u0e97\u0eb1\u0e87\u0e81\u0eb2\u0e99\u0e81\u0ea7\u0e94\u0eaa\u0ead\u0e9a\u0eab\u0eb2\u0ea1\u0eb1\u0e94\u0ec1\u0ea7\u0e88\u0eb2\u0e81 signatures \u0e97\u0eb5\u0ec8\u0ea1\u0eb5\u0e81\u0eb2\u0e99\u0ec0\u0e82\u0ebb\u0ec9\u0eb2\u0ea5\u0eb0\u0eab\u0eb1\u0e94 MD5 , HEX , Base64 , PHP Shell \u0ec1\u0ea5\u0eb0 \u0ead\u0eb7\u0ec8\u0e99\u0ec6 ( \u0e88\u0eb0\u0ea1\u0eb5\u0e81\u0eb2\u0e99\u0ead\u0eb1\u0e9a\u0ec0\u0e94\u0e94\u0e96\u0eb2\u0e99\u0e82\u0ecd\u0ec9\u0ea1\u0eb9\u0e99\u0ea1\u0eb1\u0e94\u0ec1\u0ea7\u0ec3\u0edd\u0ec8\u0ec6\u0e88\u0eb2\u0e81\u0ec0\u0e8a\u0eb5\u0e9a\u0ec0\u0ea7\u0eb5\u0e82\u0ead\u0e87\u0e9c\u0eb9\u0ec9\u0e9e\u0eb1\u0e94\u0e97\u0eb0\u0e99\u0eb2\u0ea2\u0eb9\u0ec8\u0eaa\u0eb0\u0ec0\u0edd\u0eb5) \u0ec1\u0ea5\u0eb0 \u0e88\u0eb2\u0e81\u0e97\u0eb5\u0ec8\u0ec0\u0eae\u0ebb\u0eb2\u0e97\u0ebb\u0e94\u0ea5\u0ead\u0e87\u0ec3\u0e8a\u0ec9\u0ea1\u0eb2\u0e81\u0ecd\u0e96\u0eb7\u0ea7\u0ec8\u0eb2\u0e82\u0ec9\u0ead\u0e99\u0e82\u0ec9\u0eb2\u0e87\u0e96\u0eb7\u0e81\u0e95\u0ec9\u0ead\u0e87 \u0ec1\u0ea5\u0eb0 \u0ec0\u0edd\u0eb2\u0eb0\u0eaa\u0ebb\u0ea1\u0e81\u0eb1\u0e9a\u0ec0\u0ea7\u0eb1\u0e9a\u0ec0\u0e8a\u0eb5\u0e9a\u0ec0\u0ea7\u0eb5\u0eab\u0ebc\u0eb2\u0e8d \u0e88\u0eb6\u0ec8\u0e87\u0ea2\u0eb2\u0e81\u0ec1\u0e99\u0eb0\u0e99\u0ecd\u0eb2\u0ec3\u0eab\u0ec9\u0ec4\u0e94\u0ec9\u0e97\u0ebb\u0e94\u0ea5\u0ead\u0e87\u0ec3\u0e8a\u0ec9 \u0e97\u0eb5\u0ec8\u0eaa\u0ecd\u0eb2\u0e84\u0eb1\u0e99\u0ec0\u0e9b\u0eb1\u0e99 Open Source<\/p>\n<p><strong><span style=\"text-decoration: underline;\">Features:<\/span><\/strong><\/p>\n<pre>\u2013 MD5 file hash detection for quick threat identification\n\u2013 HEX based pattern matching for identifying threat variants\n\u2013 statistical analysis component for detection of obfuscated threats (e.g: base64)\n\u2013 integrated detection of ClamAV to use as scanner engine for improved performance\n\u2013 integrated signature update feature with -u|\u2013update\n\u2013 integrated version update feature with -d|\u2013update-ver\n\u2013 scan-recent option to scan only files that have been added\/changed in X days\n\u2013 scan-all option for full path based scanning\n\u2013 checkout option to upload suspected malware to rfxn.com for review \/ hashing\n\u2013 full reporting system to view current and previous scan results\n\u2013 quarantine queue that stores threats in a safe fashion with no permissions\n\u2013 quarantine batching option to quarantine the results of a current or past scans\n\u2013 quarantine restore option to restore files to original path, owner and perms\n\u2013 quarantine suspend account option to Cpanel suspend or shell revoke users\n\u2013 cleaner rules to attempt removal of malware injected strings\n\u2013 cleaner batching option to attempt cleaning of previous scan reports\n\u2013 cleaner rules to remove base64 and gzinflate(base64 injected malware\n\u2013 daily cron based scanning of all changes in last 24h in user homedirs\n\u2013 daily cron script compatible with stock RH style systems, Cpanel &amp; Ensim\n\u2013 kernel based inotify real time file scanning of created\/modified\/moved files\n\u2013 kernel inotify monitor that can take path data from STDIN or FILE\n\u2013 kernel inotify monitor convenience feature to monitor system users\n\u2013 kernel inotify monitor can be restricted to a configurable user html root\n\u2013 kernel inotify monitor with dynamic sysctl limits for optimal performance\n\u2013 kernel inotify alerting through daily and\/or optional weekly reports\n\u2013 e-mail alert reporting after every scan execution (manual &amp; daily)\n\u2013 path, extension and signature based ignore options\n\u2013 background scanner option for unattended scan operations\n\u2013 verbose logging &amp; output of all actions\n<\/pre>\n<p><span style=\"text-decoration: underline;\"><strong>\u0e82\u0eb1\u0ec9\u0e99\u0e95\u0ead\u0e99\u0e81\u0eb2\u0e99\u0e95\u0eb4\u0e94\u0e95\u0eb1\u0ec9\u0e87 (CentOS 6.4)<\/strong><\/span><\/p>\n<p>1 &gt; \u0e94\u0eb2\u0ea7\u0ec2\u0eab\u0ebc\u0e94 Linux Malware Detect (LMD)<\/p>\n<pre># cd \/root\n# wget http:\/\/www.rfxn.com\/downloads\/maldetect-current.tar.gz\n<\/pre>\n<p>2 &gt; \u0e95\u0eb4\u0e94\u0e95\u0eb1\u0ec9\u0e87 LMD<\/p>\n<pre># tar xfz maldetect-current.tar.gz\n# cd maldetect-1.4.2\n# chmod 775 install.sh\n# sh install.sh\n<\/pre>\n<p><a data-lightbox=\"image-set\"><img decoding=\"async\" src=\"https:\/\/www.ruk-com.in.th\/wp-content\/uploads\/2013\/09\/17-9-2556-14-47-10.png\" alt=\"\"><\/a><\/p>\n<p>3 &gt; \u0e82\u0eb1\u0ec9\u0e99\u0e95\u0ead\u0e99\u0e81\u0eb2\u0e99 Config<\/p>\n<pre>vi \/usr\/local\/maldetect\/conf.maldet\n<\/pre>\n<p>email_alert : \u0eab\u0eb2\u0e81\u0ec3\u0eab\u0ec9\u0ea1\u0eb5\u0e81\u0eb2\u0e99\u0ec1\u0e88\u0ec9\u0e87\u0ec0\u0e95\u0eb7\u0ead\u0e99\u0ec4\u0e9b\u0e97\u0eb5\u0ec8 email \u0ec3\u0eab\u0ec9\u0e81\u0ecd\u0eb2\u0e99\u0ebb\u0e94\u0ec0\u0e9b\u0eb1\u0e99 1<br \/>\nemail_subj : \u0eab\u0ebb\u0ea7\u0e82\u0ecd\u0ec9 Email \u0e97\u0eb5\u0ec8\u0ec3\u0e8a\u0ec9\u0eaa\u0ecd\u0eb2\u0ea5\u0eb1\u0e9a\u0ec1\u0e88\u0ec9\u0e87\u0ec0\u0e95\u0eb7\u0ead\u0e99<br \/>\nemail_addr : \u0e95\u0eb1\u0ec9\u0e87\u0e84\u0ec8\u0eb2 Email \u0e97\u0eb5\u0ec8\u0ec3\u0e8a\u0ec9\u0eaa\u0ecd\u0eb2\u0ea5\u0eb1\u0e9a\u0ec1\u0e88\u0ec9\u0e87\u0ec0\u0e95\u0eb7\u0ead\u0e99<br \/>\nquar_hits : \u0eab\u0eb2\u0e81\u0e81\u0ea7\u0e94\u0e9e\u0ebb\u0e9a\u0ea1\u0eb1\u0e94\u0ec1\u0ea7 \u0e81\u0ecd\u0eb2\u0e99\u0ebb\u0e94 0 \u0e84\u0eb7\u0ec3\u0eab\u0ec9\u0e81\u0eb2\u0e99\u0ec1\u0e88\u0ec9\u0e87\u0ec0\u0e95\u0eb7\u0ead\u0e99\u0ec0\u0eaa\u0eb5\u0e8d\u0ec6 \u0e81\u0ecd\u0eb2\u0e99\u0ebb\u0e94 1 \u0ec0\u0e9e\u0eb7\u0ec8\u0ead\u0e9a\u0ecd\u0ec8\u0ec3\u0eab\u0ec9\u0e81\u0eb1\u0e81\u0e81\u0eb1\u0e99\u0e9a\u0ecd\u0ec8\u0ec3\u0eab\u0ec9\u0ea1\u0eb5\u0e81\u0eb2\u0e99 execute \u0ec4\u0e9f\u0ea5\u0e94\u0eb1\u0ec8\u0e87\u0e81\u0ec8\u0eb2\u0ea7<br \/>\nquar_clean : \u0eab\u0eb2\u0e81\u0e95\u0ec9\u0ead\u0e87\u0e81\u0eb2\u0e99\u0e81\u0ecd\u0eb2\u0e88\u0eb1\u0e94\u0ea1\u0eb1\u0e94\u0ec1\u0ea7\u0ec0\u0ea5\u0eb5\u0e8d\u0ec3\u0eab\u0ec9\u0e81\u0ecd\u0eb2\u0e99\u0ebb\u0e94\u0e84\u0ec8\u0eb2 1<br \/>\nquar_susp : suspend Account \u0e97\u0eb5\u0ec8\u0e81\u0ea7\u0e94\u0e9e\u0ebb\u0e9a\u0ea1\u0eb1\u0e94\u0ec1\u0ea7 \u0ec1\u0e99\u0eb0\u0e99\u0ecd\u0eb2\u0e84\u0ec8\u0eb2 0 \u0ec0\u0e9e\u0eb2\u0eb0\u0ead\u0eb2\u0e94\u0e88\u0eb0\u0e81\u0eb0\u0e97\u0ebb\u0e9a\u0e81\u0eb1\u0e9a service \u0e9a\u0eb2\u0e87\u0ea2\u0ec8\u0eb2\u0e87\u0ec4\u0e94\u0ec9<br \/>\nquar_susp_minuid : \u0ec4\u0ea5\u0e8d\u0eb0\u0ec0\u0ea7\u0ea5\u0eb2 suspend Account<\/p>\n<pre># [ EMAIL ALERTS ]\n##\n# The default email alert toggle\n# [0 = disabled, 1 = enabled]\nemail_alert=1\n# The subject line for email alerts\nemail_subj=\u201dmaldet alert from $(hostname)\u201d\n# The destination addresses for email alerts\n# [ values are comma (,) spaced ]\nemail_addr=\u201dtecmint.com@gmail.com\u201d\n# Ignore e-mail alerts for reports in which all hits have been cleaned.\n# This is ideal on very busy servers where cleaned hits can drown out\n# other more actionable reports.\nemail_ignore_clean=0\n##\n# [ QUARANTINE OPTIONS ]\n##\n# The default quarantine action for malware hits\n# [0 = alert only, 1 = move to quarantine &amp; alert]\nquar_hits=1\n# Try to clean string based malware injections\n# [NOTE: quar_hits=1 required]\n# [0 = disabled, 1 = clean]\nquar_clean=1\n# The default suspend action for users wih hits\n# Cpanel suspend or set shell \/bin\/false on non-Cpanel\n# [NOTE: quar_hits=1 required]\n# [0 = disabled, 1 = suspend account]\nquar_susp=0\n# minimum userid that can be suspended\nquar_susp_minuid=500\n<\/pre>\n<p>4 &gt; \u0ea7\u0eb4\u0e97\u0eb5\u0e81\u0eb2\u0e99\u0e99\u0ecd\u0eb2\u0ec3\u0e8a\u0ec9 maldet<\/p>\n<pre># maldet \u2013scan-all \/home\n<\/pre>\n<p><a data-lightbox=\"image-set\"><img decoding=\"async\" src=\"https:\/\/www.ruk-com.in.th\/wp-content\/uploads\/2013\/09\/17-9-2556-14-59-08.png\" alt=\"\"><\/a><\/p>\n<pre># maldet \u2013quarantine SCANID\nOR\n# maldet \u2013clean SCANID\n<\/pre>\n<p>\u0eaa\u0eb2\u0ea1\u0eb2\u0e94\u0e95\u0eb1\u0ec9\u0e87\u0e84\u0ec8\u0eb2\u0ec3\u0eab\u0ec9 maldet \u0ec0\u0eae\u0eb1\u0e94\u0ea7\u0ebd\u0e81\u0e97\u0eb8\u0e81\u0ec6\u0ec0\u0ea7\u0ea5\u0eb2\u0e97\u0eb5\u0ec8\u0ec0\u0eae\u0ebb\u0eb2\u0e95\u0ec9\u0ead\u0e87\u0e81\u0eb2\u0e99\u0ec4\u0e94\u0ec9\u0ec2\u0e94\u0e8d\u0ec1\u0e81\u0ec9\u0ec4\u0e82\u0e84\u0ec8\u0eb2 config \u0e97\u0eb5\u0ec8\u0ec4\u0e9f\u0ea5 \/etc\/cron.daily\/maldet<\/p>\n<p><span style=\"text-decoration: underline;\"><strong>\u0e82\u0ecd\u0ec9\u0ea1\u0eb9\u0e99\u0ec0\u0e9e\u0eb5\u0ec8\u0ea1\u0ec0\u0e95\u0eb5\u0ea1<\/strong><\/span><br \/>\n<a href=\"http:\/\/www.rfxn.com\/projects\/linux-malware-detect\/\">http:\/\/www.rfxn.com\/projects\/linux-malware-detect<\/a><br \/>\n<a href=\"http:\/\/www.tecmint.com\/install-linux-malware-detect-lmd-in-rhel-centos-and-fedora\/\">http:\/\/www.tecmint.com\/install-linux-malware-detect-lmd-in-rhel-centos-and-fedora\/<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>LMD (Linux Malware Detect) \u0ec0\u0e9b\u0eb1\u0e99 Software \u0e97\u0eb5\u0ec8\u0e96\u0eb7\u0e81\u0e9e\u0eb1\u0e94\u0e97\u0eb0\u0e99\u0eb2\u0ec0\u0e9e\u0eb7\u0ec8\u0ead\u0eab\u0eb2\u0ea1\u0eb1\u0e94\u0ec1\u0ea7\u0ec3\u0e99\u0ec0\u0e84\u0eb7\u0ec8\u0ead\u0e87 Linux \u0ec2\u0e94\u0e8d\u0eaa\u0eb0\u0ec0\u0e9e\u0eb2\u0eb0\u0ec0\u0e8a\u0eb4\u0ec8\u0e87\u0ea1\u0eb5\u0e9f\u0eb5\u0ec0\u0e88\u0eb5\u0e97\u0eb5\u0ec8\u0e82\u0ec9\u0ead\u0e99\u0e82\u0ec9\u0eb2\u0e87\u0e84\u0ea7\u0e9a\u0e84\u0eb8\u0ea1\u0e97\u0eb1\u0e87\u0e81\u0eb2\u0e99\u0e81\u0ea7\u0e94\u0eaa\u0ead\u0e9a\u0eab\u0eb2\u0ea1\u0eb1\u0e94\u0ec1\u0ea7\u0e88\u0eb2\u0e81 signatures \u0e97\u0eb5\u0ec8\u0ea1\u0eb5\u0e81\u0eb2\u0e99\u0ec0\u0e82\u0ebb\u0ec9\u0eb2\u0ea5\u0eb0\u0eab\u0eb1\u0e94 MD5 , HEX , Base64 , PHP Shell \u0ec1\u0ea5\u0eb0 \u0ead\u0eb7\u0ec8\u0e99\u0ec6 ( \u0e88\u0eb0\u0ea1\u0eb5\u0e81\u0eb2\u0e99\u0ead\u0eb1\u0e9a\u0ec0\u0e94\u0e94\u0e96\u0eb2\u0e99\u0e82\u0ecd\u0ec9\u0ea1\u0eb9\u0e99\u0ea1\u0eb1\u0e94\u0ec1\u0ea7\u0ec3\u0edd\u0ec8\u0ec6\u0e88\u0eb2\u0e81\u0ec0\u0e8a\u0eb5\u0e9a\u0ec0\u0ea7\u0eb5\u0e82\u0ead\u0e87\u0e9c\u0eb9\u0ec9\u0e9e\u0eb1\u0e94\u0e97\u0eb0\u0e99\u0eb2\u0ea2\u0eb9\u0ec8\u0eaa\u0eb0\u0ec0\u0edd\u0eb5) \u0ec1\u0ea5\u0eb0 \u0e88\u0eb2\u0e81\u0e97\u0eb5\u0ec8\u0ec0\u0eae\u0ebb\u0eb2\u0e97\u0ebb\u0e94\u0ea5\u0ead\u0e87\u0ec3\u0e8a\u0ec9\u0ea1\u0eb2\u0e81\u0ecd\u0e96\u0eb7\u0ea7\u0ec8\u0eb2\u0e82\u0ec9\u0ead\u0e99\u0e82\u0ec9\u0eb2\u0e87\u0e96\u0eb7\u0e81\u0e95\u0ec9\u0ead\u0e87 \u0ec1\u0ea5\u0eb0 \u0ec0\u0edd\u0eb2\u0eb0\u0eaa\u0ebb\u0ea1\u0e81\u0eb1\u0e9a\u0ec0\u0ea7\u0eb1\u0e9a\u0ec0\u0e8a\u0eb5\u0e9a\u0ec0\u0ea7\u0eb5\u0eab\u0ebc\u0eb2\u0e8d \u0e88\u0eb6\u0ec8\u0e87\u0ea2\u0eb2\u0e81\u0ec1\u0e99\u0eb0\u0e99\u0ecd\u0eb2\u0ec3\u0eab\u0ec9\u0ec4\u0e94\u0ec9\u0e97\u0ebb\u0e94\u0ea5\u0ead\u0e87\u0ec3\u0e8a\u0ec9 \u0e97\u0eb5\u0ec8\u0eaa\u0ecd\u0eb2\u0e84\u0eb1\u0e99\u0ec0\u0e9b\u0eb1\u0e99 Open Source Features: \u2013 MD5 file hash detection for quick threat identification \u2013 HEX based pattern matching for identifying threat variants \u2013 statistical analysis component for [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":16771,"template":"","article_entries":[297],"article_tags":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v23.9 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>\u0e81\u0ea7\u0e94\u0eab\u0eb2\u0ea1\u0eb1\u0e94\u0ec1\u0ea7\u0ec3\u0e99\u0ec0\u0e84\u0eb7\u0ec8\u0ead\u0e87\u0ec0\u0e8a\u0eb5\u0e9a\u0ec0\u0ea7\u0eb5\u0e94\u0ec9\u0ea7\u0e8d LMD (CENTOS 6.4) - Ruk-Com Hosting<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/help.ruk-com.in.th\/topic\/21695\/\" \/>\n<meta property=\"og:locale\" content=\"lo_LA\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"\u0e81\u0ea7\u0e94\u0eab\u0eb2\u0ea1\u0eb1\u0e94\u0ec1\u0ea7\u0ec3\u0e99\u0ec0\u0e84\u0eb7\u0ec8\u0ead\u0e87\u0ec0\u0e8a\u0eb5\u0e9a\u0ec0\u0ea7\u0eb5\u0e94\u0ec9\u0ea7\u0e8d LMD (CENTOS 6.4) - Ruk-Com Hosting\" \/>\n<meta property=\"og:description\" content=\"LMD (Linux Malware Detect) \u0ec0\u0e9b\u0eb1\u0e99 Software \u0e97\u0eb5\u0ec8\u0e96\u0eb7\u0e81\u0e9e\u0eb1\u0e94\u0e97\u0eb0\u0e99\u0eb2\u0ec0\u0e9e\u0eb7\u0ec8\u0ead\u0eab\u0eb2\u0ea1\u0eb1\u0e94\u0ec1\u0ea7\u0ec3\u0e99\u0ec0\u0e84\u0eb7\u0ec8\u0ead\u0e87 Linux \u0ec2\u0e94\u0e8d\u0eaa\u0eb0\u0ec0\u0e9e\u0eb2\u0eb0\u0ec0\u0e8a\u0eb4\u0ec8\u0e87\u0ea1\u0eb5\u0e9f\u0eb5\u0ec0\u0e88\u0eb5\u0e97\u0eb5\u0ec8\u0e82\u0ec9\u0ead\u0e99\u0e82\u0ec9\u0eb2\u0e87\u0e84\u0ea7\u0e9a\u0e84\u0eb8\u0ea1\u0e97\u0eb1\u0e87\u0e81\u0eb2\u0e99\u0e81\u0ea7\u0e94\u0eaa\u0ead\u0e9a\u0eab\u0eb2\u0ea1\u0eb1\u0e94\u0ec1\u0ea7\u0e88\u0eb2\u0e81 signatures \u0e97\u0eb5\u0ec8\u0ea1\u0eb5\u0e81\u0eb2\u0e99\u0ec0\u0e82\u0ebb\u0ec9\u0eb2\u0ea5\u0eb0\u0eab\u0eb1\u0e94 MD5 , HEX , Base64 , PHP Shell \u0ec1\u0ea5\u0eb0 \u0ead\u0eb7\u0ec8\u0e99\u0ec6 ( \u0e88\u0eb0\u0ea1\u0eb5\u0e81\u0eb2\u0e99\u0ead\u0eb1\u0e9a\u0ec0\u0e94\u0e94\u0e96\u0eb2\u0e99\u0e82\u0ecd\u0ec9\u0ea1\u0eb9\u0e99\u0ea1\u0eb1\u0e94\u0ec1\u0ea7\u0ec3\u0edd\u0ec8\u0ec6\u0e88\u0eb2\u0e81\u0ec0\u0e8a\u0eb5\u0e9a\u0ec0\u0ea7\u0eb5\u0e82\u0ead\u0e87\u0e9c\u0eb9\u0ec9\u0e9e\u0eb1\u0e94\u0e97\u0eb0\u0e99\u0eb2\u0ea2\u0eb9\u0ec8\u0eaa\u0eb0\u0ec0\u0edd\u0eb5) \u0ec1\u0ea5\u0eb0 \u0e88\u0eb2\u0e81\u0e97\u0eb5\u0ec8\u0ec0\u0eae\u0ebb\u0eb2\u0e97\u0ebb\u0e94\u0ea5\u0ead\u0e87\u0ec3\u0e8a\u0ec9\u0ea1\u0eb2\u0e81\u0ecd\u0e96\u0eb7\u0ea7\u0ec8\u0eb2\u0e82\u0ec9\u0ead\u0e99\u0e82\u0ec9\u0eb2\u0e87\u0e96\u0eb7\u0e81\u0e95\u0ec9\u0ead\u0e87 \u0ec1\u0ea5\u0eb0 \u0ec0\u0edd\u0eb2\u0eb0\u0eaa\u0ebb\u0ea1\u0e81\u0eb1\u0e9a\u0ec0\u0ea7\u0eb1\u0e9a\u0ec0\u0e8a\u0eb5\u0e9a\u0ec0\u0ea7\u0eb5\u0eab\u0ebc\u0eb2\u0e8d \u0e88\u0eb6\u0ec8\u0e87\u0ea2\u0eb2\u0e81\u0ec1\u0e99\u0eb0\u0e99\u0ecd\u0eb2\u0ec3\u0eab\u0ec9\u0ec4\u0e94\u0ec9\u0e97\u0ebb\u0e94\u0ea5\u0ead\u0e87\u0ec3\u0e8a\u0ec9 \u0e97\u0eb5\u0ec8\u0eaa\u0ecd\u0eb2\u0e84\u0eb1\u0e99\u0ec0\u0e9b\u0eb1\u0e99 Open Source Features: \u2013 MD5 file hash detection for quick threat identification \u2013 HEX based pattern matching for identifying threat variants \u2013 statistical analysis component for [&hellip;]\" \/>\n<meta property=\"og:url\" content=\"https:\/\/help.ruk-com.in.th\/topic\/21695\/\" \/>\n<meta property=\"og:site_name\" content=\"Ruk-Com Hosting\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.ruk-com.in.th\/wp-content\/uploads\/2013\/09\/malware-bug.jpg\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data1\" content=\"3 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/help.ruk-com.in.th\/topic\/21695\/\",\"url\":\"https:\/\/help.ruk-com.in.th\/topic\/21695\/\",\"name\":\"\u0e81\u0ea7\u0e94\u0eab\u0eb2\u0ea1\u0eb1\u0e94\u0ec1\u0ea7\u0ec3\u0e99\u0ec0\u0e84\u0eb7\u0ec8\u0ead\u0e87\u0ec0\u0e8a\u0eb5\u0e9a\u0ec0\u0ea7\u0eb5\u0e94\u0ec9\u0ea7\u0e8d LMD (CENTOS 6.4) - Ruk-Com Hosting\",\"isPartOf\":{\"@id\":\"https:\/\/help.ruk-com.in.th\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/help.ruk-com.in.th\/topic\/21695\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/help.ruk-com.in.th\/topic\/21695\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/help.ruk-com.in.th\/wp-content\/uploads\/2017\/11\/antivirus_002.jpg\",\"datePublished\":\"2017-11-09T05:43:06+00:00\",\"dateModified\":\"2017-11-09T05:43:06+00:00\",\"breadcrumb\":{\"@id\":\"https:\/\/help.ruk-com.in.th\/topic\/21695\/#breadcrumb\"},\"inLanguage\":\"lo-LA\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/help.ruk-com.in.th\/topic\/21695\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"lo-LA\",\"@id\":\"https:\/\/help.ruk-com.in.th\/topic\/21695\/#primaryimage\",\"url\":\"https:\/\/help.ruk-com.in.th\/wp-content\/uploads\/2017\/11\/antivirus_002.jpg\",\"contentUrl\":\"https:\/\/help.ruk-com.in.th\/wp-content\/uploads\/2017\/11\/antivirus_002.jpg\",\"width\":600,\"height\":277},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/help.ruk-com.in.th\/topic\/21695\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/help.ruk-com.in.th\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Articles\",\"item\":\"https:\/\/help.ruk-com.in.th\/topic\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"\u0e81\u0ea7\u0e94\u0eab\u0eb2\u0ea1\u0eb1\u0e94\u0ec1\u0ea7\u0ec3\u0e99\u0ec0\u0e84\u0eb7\u0ec8\u0ead\u0e87\u0ec0\u0e8a\u0eb5\u0e9a\u0ec0\u0ea7\u0eb5\u0e94\u0ec9\u0ea7\u0e8d LMD (CENTOS 6.4)\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/help.ruk-com.in.th\/#website\",\"url\":\"https:\/\/help.ruk-com.in.th\/\",\"name\":\"Ruk-Com Hosting\",\"description\":\"Knowledgebase System\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/help.ruk-com.in.th\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"lo-LA\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"\u0e81\u0ea7\u0e94\u0eab\u0eb2\u0ea1\u0eb1\u0e94\u0ec1\u0ea7\u0ec3\u0e99\u0ec0\u0e84\u0eb7\u0ec8\u0ead\u0e87\u0ec0\u0e8a\u0eb5\u0e9a\u0ec0\u0ea7\u0eb5\u0e94\u0ec9\u0ea7\u0e8d LMD (CENTOS 6.4) - Ruk-Com Hosting","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/help.ruk-com.in.th\/topic\/21695\/","og_locale":"lo_LA","og_type":"article","og_title":"\u0e81\u0ea7\u0e94\u0eab\u0eb2\u0ea1\u0eb1\u0e94\u0ec1\u0ea7\u0ec3\u0e99\u0ec0\u0e84\u0eb7\u0ec8\u0ead\u0e87\u0ec0\u0e8a\u0eb5\u0e9a\u0ec0\u0ea7\u0eb5\u0e94\u0ec9\u0ea7\u0e8d LMD (CENTOS 6.4) - Ruk-Com Hosting","og_description":"LMD (Linux Malware Detect) \u0ec0\u0e9b\u0eb1\u0e99 Software \u0e97\u0eb5\u0ec8\u0e96\u0eb7\u0e81\u0e9e\u0eb1\u0e94\u0e97\u0eb0\u0e99\u0eb2\u0ec0\u0e9e\u0eb7\u0ec8\u0ead\u0eab\u0eb2\u0ea1\u0eb1\u0e94\u0ec1\u0ea7\u0ec3\u0e99\u0ec0\u0e84\u0eb7\u0ec8\u0ead\u0e87 Linux \u0ec2\u0e94\u0e8d\u0eaa\u0eb0\u0ec0\u0e9e\u0eb2\u0eb0\u0ec0\u0e8a\u0eb4\u0ec8\u0e87\u0ea1\u0eb5\u0e9f\u0eb5\u0ec0\u0e88\u0eb5\u0e97\u0eb5\u0ec8\u0e82\u0ec9\u0ead\u0e99\u0e82\u0ec9\u0eb2\u0e87\u0e84\u0ea7\u0e9a\u0e84\u0eb8\u0ea1\u0e97\u0eb1\u0e87\u0e81\u0eb2\u0e99\u0e81\u0ea7\u0e94\u0eaa\u0ead\u0e9a\u0eab\u0eb2\u0ea1\u0eb1\u0e94\u0ec1\u0ea7\u0e88\u0eb2\u0e81 signatures \u0e97\u0eb5\u0ec8\u0ea1\u0eb5\u0e81\u0eb2\u0e99\u0ec0\u0e82\u0ebb\u0ec9\u0eb2\u0ea5\u0eb0\u0eab\u0eb1\u0e94 MD5 , HEX , Base64 , PHP Shell \u0ec1\u0ea5\u0eb0 \u0ead\u0eb7\u0ec8\u0e99\u0ec6 ( \u0e88\u0eb0\u0ea1\u0eb5\u0e81\u0eb2\u0e99\u0ead\u0eb1\u0e9a\u0ec0\u0e94\u0e94\u0e96\u0eb2\u0e99\u0e82\u0ecd\u0ec9\u0ea1\u0eb9\u0e99\u0ea1\u0eb1\u0e94\u0ec1\u0ea7\u0ec3\u0edd\u0ec8\u0ec6\u0e88\u0eb2\u0e81\u0ec0\u0e8a\u0eb5\u0e9a\u0ec0\u0ea7\u0eb5\u0e82\u0ead\u0e87\u0e9c\u0eb9\u0ec9\u0e9e\u0eb1\u0e94\u0e97\u0eb0\u0e99\u0eb2\u0ea2\u0eb9\u0ec8\u0eaa\u0eb0\u0ec0\u0edd\u0eb5) \u0ec1\u0ea5\u0eb0 \u0e88\u0eb2\u0e81\u0e97\u0eb5\u0ec8\u0ec0\u0eae\u0ebb\u0eb2\u0e97\u0ebb\u0e94\u0ea5\u0ead\u0e87\u0ec3\u0e8a\u0ec9\u0ea1\u0eb2\u0e81\u0ecd\u0e96\u0eb7\u0ea7\u0ec8\u0eb2\u0e82\u0ec9\u0ead\u0e99\u0e82\u0ec9\u0eb2\u0e87\u0e96\u0eb7\u0e81\u0e95\u0ec9\u0ead\u0e87 \u0ec1\u0ea5\u0eb0 \u0ec0\u0edd\u0eb2\u0eb0\u0eaa\u0ebb\u0ea1\u0e81\u0eb1\u0e9a\u0ec0\u0ea7\u0eb1\u0e9a\u0ec0\u0e8a\u0eb5\u0e9a\u0ec0\u0ea7\u0eb5\u0eab\u0ebc\u0eb2\u0e8d \u0e88\u0eb6\u0ec8\u0e87\u0ea2\u0eb2\u0e81\u0ec1\u0e99\u0eb0\u0e99\u0ecd\u0eb2\u0ec3\u0eab\u0ec9\u0ec4\u0e94\u0ec9\u0e97\u0ebb\u0e94\u0ea5\u0ead\u0e87\u0ec3\u0e8a\u0ec9 \u0e97\u0eb5\u0ec8\u0eaa\u0ecd\u0eb2\u0e84\u0eb1\u0e99\u0ec0\u0e9b\u0eb1\u0e99 Open Source Features: \u2013 MD5 file hash detection for quick threat identification \u2013 HEX based pattern matching for identifying threat variants \u2013 statistical analysis component for [&hellip;]","og_url":"https:\/\/help.ruk-com.in.th\/topic\/21695\/","og_site_name":"Ruk-Com Hosting","og_image":[{"url":"https:\/\/www.ruk-com.in.th\/wp-content\/uploads\/2013\/09\/malware-bug.jpg"}],"twitter_card":"summary_large_image","twitter_misc":{"Est. reading time":"3 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/help.ruk-com.in.th\/topic\/21695\/","url":"https:\/\/help.ruk-com.in.th\/topic\/21695\/","name":"\u0e81\u0ea7\u0e94\u0eab\u0eb2\u0ea1\u0eb1\u0e94\u0ec1\u0ea7\u0ec3\u0e99\u0ec0\u0e84\u0eb7\u0ec8\u0ead\u0e87\u0ec0\u0e8a\u0eb5\u0e9a\u0ec0\u0ea7\u0eb5\u0e94\u0ec9\u0ea7\u0e8d LMD (CENTOS 6.4) - Ruk-Com Hosting","isPartOf":{"@id":"https:\/\/help.ruk-com.in.th\/#website"},"primaryImageOfPage":{"@id":"https:\/\/help.ruk-com.in.th\/topic\/21695\/#primaryimage"},"image":{"@id":"https:\/\/help.ruk-com.in.th\/topic\/21695\/#primaryimage"},"thumbnailUrl":"https:\/\/help.ruk-com.in.th\/wp-content\/uploads\/2017\/11\/antivirus_002.jpg","datePublished":"2017-11-09T05:43:06+00:00","dateModified":"2017-11-09T05:43:06+00:00","breadcrumb":{"@id":"https:\/\/help.ruk-com.in.th\/topic\/21695\/#breadcrumb"},"inLanguage":"lo-LA","potentialAction":[{"@type":"ReadAction","target":["https:\/\/help.ruk-com.in.th\/topic\/21695\/"]}]},{"@type":"ImageObject","inLanguage":"lo-LA","@id":"https:\/\/help.ruk-com.in.th\/topic\/21695\/#primaryimage","url":"https:\/\/help.ruk-com.in.th\/wp-content\/uploads\/2017\/11\/antivirus_002.jpg","contentUrl":"https:\/\/help.ruk-com.in.th\/wp-content\/uploads\/2017\/11\/antivirus_002.jpg","width":600,"height":277},{"@type":"BreadcrumbList","@id":"https:\/\/help.ruk-com.in.th\/topic\/21695\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/help.ruk-com.in.th\/"},{"@type":"ListItem","position":2,"name":"Articles","item":"https:\/\/help.ruk-com.in.th\/topic\/"},{"@type":"ListItem","position":3,"name":"\u0e81\u0ea7\u0e94\u0eab\u0eb2\u0ea1\u0eb1\u0e94\u0ec1\u0ea7\u0ec3\u0e99\u0ec0\u0e84\u0eb7\u0ec8\u0ead\u0e87\u0ec0\u0e8a\u0eb5\u0e9a\u0ec0\u0ea7\u0eb5\u0e94\u0ec9\u0ea7\u0e8d LMD (CENTOS 6.4)"}]},{"@type":"WebSite","@id":"https:\/\/help.ruk-com.in.th\/#website","url":"https:\/\/help.ruk-com.in.th\/","name":"Ruk-Com Hosting","description":"Knowledgebase System","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/help.ruk-com.in.th\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"lo-LA"}]}},"_links":{"self":[{"href":"https:\/\/help.ruk-com.in.th\/lo-la\/wp-json\/wp\/v2\/dt_articles\/21695"}],"collection":[{"href":"https:\/\/help.ruk-com.in.th\/lo-la\/wp-json\/wp\/v2\/dt_articles"}],"about":[{"href":"https:\/\/help.ruk-com.in.th\/lo-la\/wp-json\/wp\/v2\/types\/dt_articles"}],"author":[{"embeddable":true,"href":"https:\/\/help.ruk-com.in.th\/lo-la\/wp-json\/wp\/v2\/users\/1"}],"version-history":[{"count":0,"href":"https:\/\/help.ruk-com.in.th\/lo-la\/wp-json\/wp\/v2\/dt_articles\/21695\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/help.ruk-com.in.th\/lo-la\/wp-json\/wp\/v2\/media\/16771"}],"wp:attachment":[{"href":"https:\/\/help.ruk-com.in.th\/lo-la\/wp-json\/wp\/v2\/media?parent=21695"}],"wp:term":[{"taxonomy":"article_entries","embeddable":true,"href":"https:\/\/help.ruk-com.in.th\/lo-la\/wp-json\/wp\/v2\/article_entries?post=21695"},{"taxonomy":"article_tags","embeddable":true,"href":"https:\/\/help.ruk-com.in.th\/lo-la\/wp-json\/wp\/v2\/article_tags?post=21695"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}