Dennis Myers wrote:
Below is output from chkrootkit on my workstation. Notice the third line. I have looked for the files that this infection is supposed to put in /tmp and found nothing. The next variant "slapper" as you see is not detected. I have updated openssl and do not run Apache on this machine, so the point of this is what to check further and why would chkrootkit see this at all. Anyone have a similar readout? Any suggestions are appreciated. TIA
<snipped the readout above this cause all was nothing found>

Checking `rexedcs'... not found
Checking `sniffer'... Checking `wted'... nothing deleted
Checking `scalper'... Warning: Possible Scalper Worm installed
Checking `slapper'... not infected
Checking `z2'...
nothing deleted
Dennis,

How exstensively is this machine configured? It may just be easier to reload the machine after datafiles are backed up.

Mark


Want to buy your Pack or Services from MandrakeSoft? 
Go to http://www.mandrakestore.com


Reply via email to