Free download manager releases scripts to test for Linux malware

2023, Sep 23

The developers of Free Download Manager (FDM) have published a script to check if Linux devices have been infected through a recently reported supply chain attack.

Free Download Manager is a popular cross-platform download manager that offers torrent downloading, proxies, and online video downloads through a user-friendly interface.
Mr. Kaspersky revealed that the project's website was compromised at some point in 2020, redirecting a portion of Linux users who tried to download the software to a malicious website.
This website has dropped a trojanized FDM installer for Linux. This installer installed the Bash information stealer and a backdoor that established a reverse shell from the attacker's server.

Although many users reported strange behavior after installing the malicious installer, the infection remained undetected for three years until Kaspersky's report was published.

Free Download Manager Response
As the issue gained traction, FDM investigated and discovered that reports by Kaspersky and other companies about their websites being compromised were ignored due to errors in their contact systems. Surname.

The security notice on the FDM site explains: “It appears that a specific web page on our website has been compromised by a group of Ukrainian hackers, exploiting it to distribute malware.”

“Only a small group of users, especially those who attempted to download FDM for Linux between 2020 and 2022, were potentially exposed.”

"Interestingly, this vulnerability was accidentally resolved during a routine website update in 2022."

The developers say the site was compromised through a website vulnerability, which allowed attackers to inject malicious code that altered the download page for a small percentage of visitors.

Today, FDM released a script that will scan Linux computers to check if they are infected with information-stealing malware from this campaign.

The script is available from here and running it is a two-step process from the terminal:

chmod +x linux_malware_check.sh
./linux_malware_check.sh
Users should note that the scanning script will only determine if malware is installed by looking for the presence of certain files on the system, not removing them.

Therefore, if the scanner finds anything, users must manually remove the malware or use additional security tools to locate and remove the malware files.

FDM's recommended action is to reinstall the system.

News Related

Aug 26, 2025

Learn what a QR code is?

You must have seen these characteristic black and white squares on restaurant menus, concert tickets or boarding passes. With just one scan with your phone camera, you can quickly open a website, order food or get the necessary information in a snap.So what is a QR code really, how does it work and
Aug 26, 2025

Step by step guide on how to delete Facebook account

Are you thinking about leaving Facebook for good? Whether it’s because of privacy concerns or you simply want to get away from everyday distractions, deleting your account is a big decision. In this guide, you’ll learn how to deactivate or delete your Facebook account permanently on
Aug 26, 2025

What does a VPN hide? What is protected and what is not protected?

You may already know that a VPN hides your IP address, but it actually protects much more than that. Thanks to encryption technology, a VPN keeps all your online activities hidden from your Internet Service Provider (ISP), Wi-Fi network administrators, and other organizations or individuals who
Aug 26, 2025

What does a VPN hide? What is protected and what is not protected?

You may already know that a VPN hides your IP address, but it actually protects much more than that. Thanks to encryption technology, a VPN keeps all your online activities hidden from your Internet Service Provider (ISP), Wi-Fi network administrators, and other organizations or individuals who
Aug 26, 2025

Steps to train employees on cybersecurity

The Insider Threat: Why Cybersecurity Training is a Must  Many data breaches are caused by simple employee oversight. A click on a malicious link or sending information over an unsecured connection can quickly turn into a disaster: systems are paralyzed, customer data is leaked on the Dark
Aug 26, 2025

Things you can do with a VPN

1. Protect your online privacyA VPN helps you maintain your privacy while browsing the internet by encrypting all of your traffic, making it impossible for anyone – your ISP, hackers, governments, or even ad trackers – to read your data. VPNs also change your IP address, preventing
Aug 26, 2025

Change iPhone privacy settings for better security

The iPhone comes with a host of powerful security features that you can customize to protect your personal information and increase your internet safety. However, with so many options scattered across different menus, it can be difficult to know which settings are really necessary. This guide will
Aug 26, 2025

The best way to store passwords securely

How to Secure Your Passwords: Comparing MethodsPasswords have been used by humans for a long time as a basic security measure. However, while they are useful, they are not a perfect solution. The best way to manage your passwords depends on your habits, your level of tech savvy, and the number of
Aug 26, 2025

Official Announcement: RICE VPN for macOS is Coming Soon!

We are pleased to announce: VPNRice – the leading secure VPN application – is now officially available on macOS.After months of research and development, VPNRice for macOS was born with the goal of bringing Apple computer users a secure, fast and absolutely private connection
Aug 26, 2025

How to get virtual phone number

Virtual phone numbers rely on an internet connection instead of traditional phone infrastructure. So you don’t need a SIM card (Subscriber Identity Module), a separate device, or be tied to a fixed location. There are many ways to get a virtual phone number, but the quickest and easiest way
Exclusive Offer
Get your Free 30 days access