Hi Aaron,
Aaron M. Ucko ha scritto: > In addition, I've found that lines can run into each other: > > ! 116 25903 tty8 daemon --foreground --respawn --attempts=20 > --delay=10 --name=8-_-_var_-_log_-_exim4_-_mainlog > --pidfile=/var/run/console-log/Debian-console-log/8-_-_var_-_log_-_exim4_-_mainlog > --user Debian-console-log adm /usr/share/console-log/logpager -- less > /var/log/e! 116 6586 pts/2 less -Pwless /var/log/syslog +F > /var/log/syslog > > Fixing that in chkutmp would be best, but if that's not feasible > changing the sed command to .../g should at least compensate by masking > all the PIDs. I can't reproduce that, could you send me your full /var/log/chkrootkit/log.today.raw please? Cheers, Giuseppe.
signature.asc
Description: OpenPGP digital signature