Only CUPS, privoxy and tor are running:
Code:
Aktive Internetverbindungen (Nur Server)
Proto Recv-Q Send-Q Local Address Foreign Address State PID/Program name
tcp 0 0 127.0.0.1:8118 0.0.0.0:* LISTEN 5246/privoxy
tcp 0 0 0.0.0.0:631 0.0.0.0:* LISTEN 2891/cupsd
tcp 0 0 127.0.0.1:9050 0.0.0.0:* LISTEN 2560/tor
tcp6 0 0 :::631 :::* LISTEN 2891/cupsd
Additional information:
Thanks for the rootkit tip. I installed rkhunter but got only few warnings, which do not appear to be dangerous to me?:
Code:
/usr/sbin/unhide [ Warning ]
(...)
/usr/sbin/unhide-linux26 [ Warning ]
[Press <ENTER> to continue]
Performing filesystem checks
Checking /dev for suspicious file types [ Warning ]
and in the log file this information is provided:
[17:12:07] Warning: Suspicious file types found in /dev:
[17:12:07] /dev/shm/pulse-shm-190707849: data