Chkrootkit

Chkrootkit

Infobox Software
name = chkrootkit


caption = chrootkit on Mac OS X
developer = Pangeia Informatica
latest_release_version = 0.48
latest_release_date = December 17th, 2007
operating_system = Linux, FreeBSD, OpenBSD, NetBSD, Solaris, HP-UX, Tru64, BSDI, Mac OS X
genre = Rootkit Detector
license =
website = http://www.chkrootkit.org/

chkrootkit (Check Rootkit) is a common Unix-based program intended to help system administrators check their system for known rootkits. It is a shell script using common UNIX/Linux tools like the "strings" and "grep" commands to search core system programs for signatures and for comparing a traversal of the "/proc" filesystem with the output of the "ps" (process status) command to look for discrepancies.

It can be used from a "rescue disc" (typically a Live CD) or it can optionally use an alternative directory from which to run all of its own commands. These techniques allow chkrootkit to trust the commands upon which it depends a bit more.

There are inherent limitations to the reliability of any program that attempts to detect compromises (such as rootkits and computer viruses). Newer rootkits may specifically attempt to detect and compromise copies of the chkrootkit programs or take other measures to evade detection by them.

ee also

*rkhunter

External links

* [http://www.chkrootkit.org/ Site for Chkrootkit]
* [http://freshmeat.net/projects/chkrootkit/ Chkrootkit Freshmeat Project page]


Wikimedia Foundation. 2010.

Игры ⚽ Поможем написать реферат

Look at other dictionaries:

  • Chkrootkit — Développeur Pangeia Informatica Dernière version …   Wikipédia en Français

  • Chkrootkit — chrootkit en Linux Desarrollador Pangeia Informática …   Wikipedia Español

  • chkrootkit — chrootkit on Mac OS X Developer(s) Pangeia Informatica Stable release 0.49 / July 30, 2009 …   Wikipedia

  • chkrootkit — Développeur Pangeia Informatica Dernière version 0.49 ( …   Wikipédia en Français

  • Rootkit — Saltar a navegación, búsqueda Un rootkit es una herramienta, o un grupo de ellas que tiene como finalidad esconderse a sí misma y esconder otros programas, procesos, archivos, directorios, claves de registro, y puertos que permiten al intruso… …   Wikipedia Español

  • Bootkit — Rootkit Cet article fait partie de la série Programmes malveillants Virus Cabir MyDoom.A Tchernobyl Yam …   Wikipédia en Français

  • Rootkit — Pronunciation of Rootkit in US English Un rootkit (le nom « outil de dissimulation d activité » est également utilisé[1]), parfois simplement « kit », est un ensemble de techniques mises en œuvre par un ou plusieurs logiciels …   Wikipédia en Français

  • Rootkit — A rootkit is software that enables continued privileged access to a computer while actively hiding its presence from administrators by subverting standard operating system functionality or other applications. The term rootkit is a concatenation… …   Wikipedia

  • Unix security — Unix security: maintaining a secure environment on Unix and Unix like operating systems is dependent on design concepts of these operating systems, but vigilance through user and administrative techniques is important to maintain security… …   Wikipedia

  • Knoppix STD — (Security Tools Distribution) is a Live CD Linux distribution based on Knoppix that focuses on computer security tools. It includes GPL licensed tools in the following categories: authentication, password cracking, encryption, forensics,… …   Wikipedia

Share the article and excerpts

Direct link
Do a right-click on the link above
and select “Copy Link”