|
|||
|
I installed the latest "Rkhunter 1.3.6 ", but according the Chirpy from "Configserver" he says that the "It does appear to currently throw a false-positive on CentOS v4.8 systems, but you should check this:Possible rootkit: Xzibit Rootkit"
What does this mean, Should we ignore it or do we have to do something about it, coz my server never reported any rootkit on the server prior to 1.3.6 ver. Some one Please assist. Thank you |
|
|||
|
Try installing & running chkrootkit and see if that picks it up as well.
The best thing to do is to try to verify if it exists by using multiple resources to try to find it. If only rkhunter detects it, and chirpy (who is very respected in terms of server management) is advising it could be a false-positive in rkhunter, then it may be safe to ignore it. I say "may be" because there is the remote possibility, of course, the rootkit does indeed exist. So I say "may be safe to ignore it" implying that it's ultimately 100% your decision, and you have to decide what is acceptable risk for yourself. Sorry it's not more cut-and-dry. Bailey
__________________
toast and jam. |
|
|||
|
You should be good to go then.
__________________
Upload Guardian 2.0 - Sign up for our early beta ServerProgress - Server security, consulting and assistance |
![]() |
| Thread Tools | |
| Display Modes | |
|
|
Similar Threads
|
||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| rootkit hunter | Sheldon | cPanel and WHM Discussions | 3 | 03-14-2010 10:20 AM |
| How to install and cofigure rootkit ? | beanth | cPanel Newbies | 1 | 10-22-2008 12:03 PM |
| Rootkit Hunter 1.1.5 | eazistore | Developer Discussions | 26 | 07-06-2005 02:33 PM |
| RootKit Problem | Etheral | cPanel and WHM Discussions | 17 | 06-01-2005 10:39 AM |
| Help With Possibile Rootkit | Chris2k3 | cPanel and WHM Discussions | 0 | 05-17-2004 08:19 AM |