[solution] chkrootkit reports infected files

From: Yonatan Bokovza (Yonatan_at_xpert.com)
Date: 08/24/03

  • Next message: Yonatan Bokovza: "RE: [solution] chkrootkit reports infected files"
    Date: Sun, 24 Aug 2003 13:41:52 +0300
    To: <freebsd-security@freebsd.org>, <cordeiro@luinil.nic.br>, <nelson@pangeia.com.br>, <jessen@nic.br>
    
    

    Hey all,
    I've submitted a fix for chkrootkit port, to solve the
    false positives on FreeBSD 5 and higher:
    http://www.freebsd.org/cgi/query-pr.cgi?pr=55919
    The topic, btw, should be "Teach security/chkrootkit
    about FreeBSD 5", but it's not my first typo today.

    Maintainer, please approve.
    Authors, please see if you can include the changes.
    I also fixed a minor bug in chk_vdir.
    Everyone else, please test it, as it was only tested
    on my 5.0 box.

    Best Regards,
    Yonatan
    _______________________________________________
    freebsd-security@freebsd.org mailing list
    http://lists.freebsd.org/mailman/listinfo/freebsd-security
    To unsubscribe, send any mail to "freebsd-security-unsubscribe@freebsd.org"


  • Next message: Yonatan Bokovza: "RE: [solution] chkrootkit reports infected files"

    Relevant Pages

    • Re: interesting past 4 hours...
      ... > BTW what version of FreeBSD are you running on it? ... Gary Kline kline@thought.org www.thought.org Public service Unix ...
      (freebsd-questions)
    • Re: [HEADS UP] perl symlinks in /usr/bin will be gone
      ... >> FreeBSD, if requested via use.perl script. ... > BTW, this goes beyond what I was asking for, which was just "remove ...
      (freebsd-stable)
    • Re: interesting past 4 hours...
      ... >> BTW what version of FreeBSD are you running on it? ... >> do with cpu cx states, acpi, or something like that, that my ...
      (freebsd-questions)
    • Re: external usb disk
      ... I've made 3 partitions under linux, ext2, all works fine. ... btw, I also wasn't able to create slice/label under freebsd ...
      (freebsd-stable)
    • Re: fsck in -current
      ... > There are plenty of papers on it, some even focused on FreeBSD. ... BTW. Scott, do we have a TODO list for ...
      (freebsd-current)