[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [cobalt-users] Interface Promiscuous Mode and FTP Hacks



Using ./chkrootkit on RaQ3 server:

i got checking lkm
you have 4 processes hidden for readdir command
you have 4 processes hidden for ps command
possible LKM Trojan

Checking again 30 minutes later gives
Checking `lkm'... Nothing detected

Using ./chkrootkit on another RaQ3 server:
Checking `bindshell'... INFECTED

Checking again 30 minutes later gives

Checking `bindshell'... Not vulnerable


How can i double check those informations?

chris