<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="it">
	<id>http://www.lumacaonline.org/kiwi/index.php?action=history&amp;feed=atom&amp;title=Antivirus_%2F_RootKit</id>
	<title>Antivirus / RootKit - Cronologia</title>
	<link rel="self" type="application/atom+xml" href="http://www.lumacaonline.org/kiwi/index.php?action=history&amp;feed=atom&amp;title=Antivirus_%2F_RootKit"/>
	<link rel="alternate" type="text/html" href="http://www.lumacaonline.org/kiwi/index.php?title=Antivirus_/_RootKit&amp;action=history"/>
	<updated>2026-05-11T20:26:48Z</updated>
	<subtitle>Cronologia della pagina su questo sito</subtitle>
	<generator>MediaWiki 1.39.1</generator>
	<entry>
		<id>http://www.lumacaonline.org/kiwi/index.php?title=Antivirus_/_RootKit&amp;diff=10&amp;oldid=prev</id>
		<title>Award: Creata pagina con &quot;'''Zeppoo Software'''  Zeppoo - Zeppoo allows you to detect rootkits on i386 and x86_64 architecture under Linux,  by using /dev/kmem and /dev/mem.  Moreover it can also detec...&quot;</title>
		<link rel="alternate" type="text/html" href="http://www.lumacaonline.org/kiwi/index.php?title=Antivirus_/_RootKit&amp;diff=10&amp;oldid=prev"/>
		<updated>2017-08-16T22:20:49Z</updated>

		<summary type="html">&lt;p&gt;Creata pagina con &amp;quot;&amp;#039;&amp;#039;&amp;#039;Zeppoo Software&amp;#039;&amp;#039;&amp;#039;  Zeppoo - Zeppoo allows you to detect rootkits on i386 and x86_64 architecture under Linux,  by using /dev/kmem and /dev/mem.  Moreover it can also detec...&amp;quot;&lt;/p&gt;
&lt;p&gt;&lt;b&gt;Nuova pagina&lt;/b&gt;&lt;/p&gt;&lt;div&gt;'''Zeppoo Software'''&lt;br /&gt;
&lt;br /&gt;
Zeppoo - Zeppoo allows you to detect rootkits on i386 and x86_64 architecture under Linux,&lt;br /&gt;
&lt;br /&gt;
by using /dev/kmem and /dev/mem.&lt;br /&gt;
&lt;br /&gt;
Moreover it can also detect hidden tasks, connections, corrupted symbols, system calls and so many other things.&lt;br /&gt;
Download source code [http://sourceforge.net/projects/zeppoo]&lt;br /&gt;
&lt;br /&gt;
'''Chkrootkit Software'''&lt;br /&gt;
&lt;br /&gt;
Chkrootkit - chkrootkit is a tool to locally check for signs of a rootkit. Type the following command to install chkrootkit&lt;br /&gt;
&lt;br /&gt;
 $ sudo apt-get install chkrootkit&lt;br /&gt;
&lt;br /&gt;
Start looking for rootkits, enter:&lt;br /&gt;
&lt;br /&gt;
 $ sudo chkrootkit&lt;br /&gt;
&lt;br /&gt;
Look for suspicious strings, enter:&lt;br /&gt;
&lt;br /&gt;
 $ sudo chkrootkit -x | less&lt;br /&gt;
&lt;br /&gt;
You need to specify the path for the external commands used by chkrootkit such as awk, grep and others.&lt;br /&gt;
&lt;br /&gt;
Mount /mnt/safe using nfs in read-only mode and set /mnt/safe binaries PATH as trusted one, enter:&lt;br /&gt;
&lt;br /&gt;
 $ sudo chkrootkit -p /mnt/safe&lt;br /&gt;
&lt;br /&gt;
'''rkhunter software'''&lt;br /&gt;
&lt;br /&gt;
rkhunter - rkhunter (Rootkit Hunter) is a Unix-based tool that scans for rootkits, backdoors and possible local exploits.&lt;br /&gt;
&lt;br /&gt;
 rkhunter is a shell script which carries out various checks on the local system to try and detect known rootkits and malware.&lt;br /&gt;
&lt;br /&gt;
 It also performs checks to see if commands have been modified, if the system startup files have been modified, &lt;br /&gt;
&lt;br /&gt;
and various checks on the network interfaces, including checks for listening applications. &lt;br /&gt;
&lt;br /&gt;
Type the following command to install rkhunter:&lt;br /&gt;
&lt;br /&gt;
 $ sudo apt-get install rkhunter&lt;br /&gt;
&lt;br /&gt;
The following command option tells rkhunter to perform various checks on the local system:&lt;br /&gt;
&lt;br /&gt;
 $ sudo rkhunter --check&lt;br /&gt;
&lt;br /&gt;
The following command option causes rkhunter to check if there is a later version of any of its text data files:&lt;br /&gt;
&lt;br /&gt;
 $ sudo rkhunter --update&lt;br /&gt;
&lt;br /&gt;
The following option tells rkhunter which directories to look in to find the various commands it requires:&lt;br /&gt;
 $ sudo rkhunter --check --bindir /mnt/safe&lt;br /&gt;
&lt;br /&gt;
'''Recommended readings:'''&lt;br /&gt;
    man pages - rkhunter and chkrootkit&lt;br /&gt;
    [http://rkhunter.sourceforge.net/] Rkhunter Project home page&lt;br /&gt;
    [http://www.chkrootkit.org/] chkrootkit Project home page&lt;/div&gt;</summary>
		<author><name>Award</name></author>
	</entry>
</feed>