Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 29 May 2001 14:46:47 -0400 (EDT)
From:      Alex <alex@nixfreak.org>
To:        <freebsd-security@FreeBSD.org>
Subject:   Re: freebsd rootkit
Message-ID:  <Pine.BSF.4.32.0105291446270.20750-100000@magnetar.blackhatnetworks.com>

next in thread | raw e-mail | index | archive | help
Hello Lim,

	Please referance the following URL for a very preliminary checking
utility:

	http://www.chkrootkit.org/

		Also, consider creating a CD with a clean kernel, shell,
and various system checking utilities such as systat, netstat, fstat,
lsof, etc.  Booting from the CD, and testing the integrity of the system.


	Also, please consider installing a HIDS or NIDS after recovery:

	http://www.cerias.purdue.edu/coast/intrusion-detection/welcome.html



Best wishes,
Alex



To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Pine.BSF.4.32.0105291446270.20750-100000>