ssh as root user# wget ftp://ftp.pangeia.com.br/pub/seg/pac/chkrootkit.tar.gz# tar xvzf chkrootkit.tar.gz# cd chkrootkit# make sense# chkrootkit# crontab -e # crontab -e -u username
0 3 * * * (./usr/sbin/chkrootkit 2>&1 | mail -s "chkrootkit output" -c
This email address is being protected from spambots. You need JavaScript enabled to view it.
,
This email address is being protected from spambots. You need JavaScript enabled to view it.
This email address is being protected from spambots. You need JavaScript enabled to view it.
)
which chkrootkit
This email address is being protected from spambots. You need JavaScript enabled to view it.
and copies to
This email address is being protected from spambots. You need JavaScript enabled to view it.
and
This email address is being protected from spambots. You need JavaScript enabled to view it.
"Checking `bindshell'... INFECTED (PORTS: 465)" This is normal and NOT really a rootkit.
Privacy Statement | Copyright Notice | Licenses
© 1999-2012 Waltercedric.com. Designed by Cédric Walter. Sitemap
Reproduction without explicit permission is prohibited. All Rights Reserved. All photos remain copyright © their rightful owners. No copyright infringement is intended.
Disclaimer: The editor(s) reserve the right to edit any comments that are found to be abusive, offensive, contain profanity, serves as spam, is largely self-promotional, or displaying attempts to harbour irrelevant text links for any purpose.