Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 7 Jul 2003 09:06:04 -0400
From:      "Dave [Hawk-Systems]" <dave@hawk-systems.com>
To:        =?iso-8859-1?Q?Michael_B=FCttner?= <m.buettner@bnt-gmbh.de>, <freebsd-questions@FreeBSD.ORG>
Subject:   RE: (* chtoorkit) 
Message-ID:  <DBEIKNMKGOBGNDHAAKGNIEMFCBAC.dave@hawk-systems.com>
In-Reply-To: <KGEJJJMCLLKCBAGGBCMDKEBJCJAA.m.buettner@bnt-gmbh.de>

next in thread | previous in thread | raw e-mail | index | archive | help
>I found the following a day on our Mailserver (* chtoorkit) What means that?

/usr/ports/security/chkrootkit

does a batch of scans and comparisons to see if a root kit has been installed on
your system.

If you are using it, just a warning, that if you have a busy web server, you may
get false lkm positives from time to time regarding hidden processes.

Dave




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?DBEIKNMKGOBGNDHAAKGNIEMFCBAC.dave>