On Thu, 30 Jun 2005, Robert S wrote:
> > Newer versions of chkrootkit (0.45, for example) allow you to run in a
> > "diff mode" that suppresses day-to-day duplicate hits. You can turn
> > this option on with 'dpkg-reconfigure chkrootkit'.
> >
> The Sarge version is 0.44-2. The "diff" mode sound
> Newer versions of chkrootkit (0.45, for example) allow you to run in a
> "diff mode" that suppresses day-to-day duplicate hits. You can turn this
> option on with 'dpkg-reconfigure chkrootkit'.
>
The Sarge version is 0.44-2. The "diff" mode sounds good. Is a newer
version available in any of
On Wed, 29 Jun 2005, Nikita V. Youshchenko wrote:
> > I've recently updated to sarge.
> >
> > When chkrootkit runs daily, I get a (presumed) false positive:
> >
> > # chkrootkit -q
> >
> > /usr/lib/mindi/rootfs/proc/.keep /usr/lib/mindi/rootfs/root/.profile
> >
> > I assume that this is due to
> I've recently updated to sarge.
>
> When chkrootkit runs daily, I get a (presumed) false positive:
>
> # chkrootkit -q
>
> /usr/lib/mindi/rootfs/proc/.keep /usr/lib/mindi/rootfs/root/.profile
>
> I assume that this is due to the presence of "dotfiles" installed by
> mindi. I've tried suppre
I've recently updated to sarge.
When chkrootkit runs daily, I get a (presumed) false positive:
# chkrootkit -q
/usr/lib/mindi/rootfs/proc/.keep /usr/lib/mindi/rootfs/root/.profile
I assume that this is due to the presence of "dotfiles" installed by mindi.
I've tried suppressing this output usi
5 matches
Mail list logo