RKHunter : Detect Rootkit2018/11/29 |
Install RKHunter which is the Rootkit Detection tool.
|
|
[1] | Install RKHunter. |
root@dlp:~# apt -y install rkhunter
|
[2] | Configure and Use RKHunter. |
root@dlp:~#
vi /etc/default/rkhunter # line 9: run daily CRON_DAILY_RUN=" true "
# line 13: update DB weekly CRON_DB_UPDATE=" true "
# line 17: send report mail when updated DB DB_UPDATE_EMAIL=" true "
# update system's info root@dlp:~# rkhunter --propupd
[ Rootkit Hunter version 1.4.6 ]File updated: searched for 180 files, found 147 # run checking # --sk means skip to push Enter key # --rwo means display only warnings root@dlp:~# rkhunter --check --sk
[ Rootkit Hunter version 1.4.6 ] Checking system commands... Performing 'strings' command checks Checking 'strings' command [ OK ] Performing 'shared libraries' checks Checking for preloading variables [ None found ] Checking for preloaded libraries [ None found ] Checking LD_LIBRARY_PATH variable [ Not found ] Performing file properties checks Checking for prerequisites [ OK ] /usr/sbin/adduser [ OK ] /usr/sbin/chroot [ OK ] /usr/sbin/cron [ OK ] /usr/sbin/groupadd [ OK ] /usr/sbin/groupdel [ OK ] /usr/sbin/groupmod [ OK ] /usr/sbin/grpck [ OK ] /usr/sbin/nologin [ OK ] /usr/sbin/pwck [ OK ] /usr/sbin/rsyslogd [ OK ] /usr/sbin/sshd [ OK ] ..... ..... System checks summary ===================== File properties checks... Files checked: 147 Suspect files: 0 Rootkit checks... Rootkits checked : 501 Possible rootkits: 0 Applications checks... All checks skipped The system checks took: 2 minutes and 17 seconds All results have been written to the log file: /var/log/rkhunter.log One or more warnings have been found while checking the system. Please check the log file (/var/log/rkhunter.log) |
Sponsored Link |