Free download manager releases scripts to test for Linux malware

2023, Sep 23

The developers of Free Download Manager (FDM) have published a script to check if Linux devices have been infected through a recently reported supply chain attack.

Free Download Manager is a popular cross-platform download manager that offers torrent downloading, proxies, and online video downloads through a user-friendly interface.
Mr. Kaspersky revealed that the project's website was compromised at some point in 2020, redirecting a portion of Linux users who tried to download the software to a malicious website.
This website has dropped a trojanized FDM installer for Linux. This installer installed the Bash information stealer and a backdoor that established a reverse shell from the attacker's server.

Although many users reported strange behavior after installing the malicious installer, the infection remained undetected for three years until Kaspersky's report was published.

Free Download Manager Response
As the issue gained traction, FDM investigated and discovered that reports by Kaspersky and other companies about their websites being compromised were ignored due to errors in their contact systems. Surname.

The security notice on the FDM site explains: “It appears that a specific web page on our website has been compromised by a group of Ukrainian hackers, exploiting it to distribute malware.”

“Only a small group of users, especially those who attempted to download FDM for Linux between 2020 and 2022, were potentially exposed.”

"Interestingly, this vulnerability was accidentally resolved during a routine website update in 2022."

The developers say the site was compromised through a website vulnerability, which allowed attackers to inject malicious code that altered the download page for a small percentage of visitors.

Today, FDM released a script that will scan Linux computers to check if they are infected with information-stealing malware from this campaign.

The script is available from here and running it is a two-step process from the terminal:

chmod +x linux_malware_check.sh
./linux_malware_check.sh
Users should note that the scanning script will only determine if malware is installed by looking for the presence of certain files on the system, not removing them.

Therefore, if the scanner finds anything, users must manually remove the malware or use additional security tools to locate and remove the malware files.

FDM's recommended action is to reinstall the system.

News Related

Mar 17, 2026

What is an alias email address? A complete guide to managing alias emails.

Your email address is used and shared in more places than you realize. You enter it when shopping online, signing up for social media, receiving newsletters, using work tools, or activating free trials. Over time, the number of services holding your address increases. Many companies store this
Mar 17, 2026

What is a Generating Adversarial Network (GAN)?

Generative Adversarial Networks (GANs) are a type of deep learning model capable of generating artificial data that closely resembles real data. This technology is commonly used to create new images, although researchers have also applied it to the synthesis of text, audio, and many other types of
Mar 17, 2026

How to set up your X account to private: A comprehensive guide

X (formerly Twitter) offers users greater control over who can see and interact with their content. When private mode is enabled, your account can still post, read, share, and comment as usual, but visibility is limited to those you allow. This provides an extra layer of privacy protection while
Mar 17, 2026

Automated data collection: Concept and how it works

The internet is a vast data repository, with much of its content collected and processed by automated systems. Techniques like data scraping are widely used today in business, marketing, and research to gather information from online sources on a large scale and at high speed.However, these
Mar 17, 2026

What is Wi-Fi 6? A complete guide to the next-generation wireless standard.

Wi-Fi 6 is a modern wireless connectivity standard developed to meet the growing demands of today's home networks, where multiple devices access the internet simultaneously. These devices include smartphones, laptops, smart TVs, cameras, gaming consoles, and a host of other devices that remain
Mar 17, 2026

What is an intranet? Understanding its role in a business.

Internal networks (intranets) play a crucial role in the operations of both public and private organizations. While it may sound highly technical, the concept of an intranet is actually quite simple to understand. It's a private network owned by an organization, allowing authorized users access
Mar 17, 2026

What is a P2P VPN and how does it work?

Peer-to-peer (P2P) VPNs are an alternative model to traditional VPNs, which rely on centralized servers to route traffic. Instead of concentrating all data at a single central point, P2P VPNs operate on a distributed network where users directly participate as network nodes. Traffic is transmitted
Mar 17, 2026

What is password cracking and how can you prevent it?

Password cracking is a method used by malicious actors to find passwords by systematically guessing or analyzing stolen and encrypted password data. The use of weak passwords or passwords shared across multiple services makes this type of attack far more effective than most users realize.This
Mar 17, 2026

How can I stop receiving spam messages and stay safe?

Spam messages are unwanted content that appears in your inbox, causing a rapid increase in messages and disrupting the tracking of important conversations or notifications. Beyond simply being annoying, many spam messages pose security risks. While some are harmless mass advertisements or marketing
Mar 17, 2026

What is website copying scam and how can you avoid being scammed?

Overview of Clone Phishing Attacks In recent years, online phishing attacks have steadily increased in both scale and sophistication, making it increasingly difficult to distinguish between legitimate and malicious messages. Among the variations of phishing, clone phishing is considered
Exclusive Offer
Get your Free 30 days access