Community Forums
Connect with us on LinkedIn
+ Reply to Thread
Results 1 to 2 of 2
  1. #1
    Member
    Join Date
    May 2003
    Posts
    73

    Default Am I rooted?

    See the four bad System tools. Am I in trouble here?

    Code:
    Rootkit Hunter 1.2.8 is running
    
    Determining OS... Ready
    
    
    Checking binaries
    * Selftests
        Strings (command)     [ OK ]
    
    
    * System tools
     Performing 'known good' check...
      /bin/cat  [ OK ]
      /bin/chmod  [ OK ]
      /bin/chown  [ OK ]
      /bin/dmesg  [ BAD ]
      /bin/egrep  [ OK ]
      /bin/env  [ OK ]
      /bin/fgrep  [ OK ]
      /bin/grep  [ OK ]
      /bin/kill  [ BAD ]
      /bin/login  [ BAD ]
      /bin/ls  [ OK ]
      /bin/mount  [ BAD ]
      /bin/netstat  [ OK ]
      /bin/ps  [ OK ]
      /bin/su  [ OK ]
      /sbin/chkconfig  [ OK ]
      /sbin/depmod  [ OK ]
      /sbin/ifconfig  [ OK ]
      /sbin/init  [ OK ]
      /sbin/insmod  [ OK ]
      /sbin/modinfo  [ OK ]
      /sbin/runlevel  [ OK ]
      /sbin/sysctl  [ OK ]
      /sbin/syslogd  [ OK ]
      /usr/bin/file  [ OK ]
      /usr/bin/find  [ OK ]
      /usr/bin/kill  [ OK ]
      /usr/bin/killall  [ OK ]
      /usr/bin/lsattr  [ OK ]
      /usr/bin/pstree  [ OK ]
      /usr/bin/sha1sum  [ OK ]
      /usr/bin/stat  [ OK ]
      /usr/bin/users  [ OK ]
      /usr/bin/w  [ OK ]
      /usr/bin/watch  [ OK ]
      /usr/bin/who  [ OK ]
      /usr/bin/whoami  [ OK ]
    --------------------------------------------------------------------------------
    Rootkit Hunter found some bad or unknown hashes. This can be happen due replaced
    binaries or updated packages (which give other hashes). Be sure your hashes are
    fully updated (rkhunter --update). If you're in doubt about these hashes, contact
    the author (fill in the contact form).
    --------------------------------------------------------------------------------

  2. #2
    Super Moderator This forum account has been confirmed by cPanel staff to represent a vendor. chirpy's Avatar
    Join Date
    Jun 2002
    Location
    Go on, have a guess
    Posts
    13,495

    Default

    Not necessarily. What OS are you running? If it's RH9 with FedoraLegacy updates then it's because the rkhunter developers haven't updated 4 of the md5sums for those RH9 binaries and so shouldn't be anything to worry about.
    Jonathan Michaelson

    Need your cPanel servers secured and tuned?
    cPanel Server Configuration, Security, Recovery and Antivirus/AntiSpam Services
    Developers of the most effective (and free) Firewall & Security Solution for cPanel Servers - csf
    http://www.configserver.com

Similar Threads & Tags
Similar threads

  1. How the heck did I get rooted??!??
    By jandafields in forum Security
    Replies: 30
    Last Post: 06-15-2011, 01:28 PM
  2. server rooted
    By jfall in forum cPanel and WHM Discussions
    Replies: 2
    Last Post: 03-12-2005, 08:57 PM
  3. Email issue .. Did i got Rooted
    By Gregd in forum cPanel and WHM Discussions
    Replies: 2
    Last Post: 09-16-2004, 10:38 PM
Linkedin       Facebook       Twitter       RSS       Flickr       YouTube