PDA

View Full Version : [ubuntu] Running rkhunter



bradthewanderer
March 15th, 2009, 09:38 PM
I ran rkhunter and got these results that concern me:

/usr/sbin/unhide [ Warning ]

/usr/sbin/unhide-linux26 [ Warning ]

Are these of concern or just false positives?

I run Ubuntu 8.10 on a PowerSpec P4 system.

Thank you for any help.

bradthewanderer
March 15th, 2009, 10:16 PM
I now know those 2 are false positives thanks to someone else's post, but I got one more warning and wondered if anyone can tell me what it means:

Checking /dev for suspicious file types [ Warning ]

Thanks for any help

bradthewanderer
March 16th, 2009, 02:08 PM
bump

slowth5
March 17th, 2009, 01:34 AM
http://ubuntuforums.org/showthread.php?t=1006870

If the /dev warning is related to pulse, it's most likely a false positive.

bradthewanderer
March 17th, 2009, 01:45 AM
Thanks but the Checking /dev for suspicious file types [ Warning ] was the only thing that came up, no file was listed after that. That is why I am confused slightly.

slowth5
March 17th, 2009, 02:03 AM
The log at /var/log/rkhunter.log should list the suspicious files.

bradthewanderer
March 17th, 2009, 05:25 PM
Thanks for the help. :)