Bug#624694: Please try unhide.rb

2013-01-07 Thread Johan Walles
Well, the only thing this proves is really that unhide.rb didn't show false positives which is good I guess... rkhunter supports using both variants though, so feel free to keep the one you find more useful. And if you *do* run into something, unhide.rb will tell you the name of the suspicious

Bug#624694: Please try unhide.rb

2013-01-06 Thread Johan Walles
#624694: Please try unhide.rb Resent-Date:Sat, 05 Jan 2013 13:45:04 + Resent-From:Debian BTS debb...@buxtehude.debian.org Resent-To: xiscu xi...@email.de Date: Sat, 05 Jan 2013 14:43:50 +0100 From: xiscu xi...@email.de Reply-To: xiscu xi...@email.de, 624694-qu

Bug#624694: Please try unhide.rb

2013-01-06 Thread xiscu
The result is: # unhide.rb -v Scanning for hidden processes... No hidden processes found! ___ forensics-devel mailing list forensics-devel@lists.alioth.debian.org http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/forensics-devel

Bug#624694: Please try unhide.rb

2013-01-06 Thread Yago Jesus
Hi, There is a bug in sysinfo, some kernel schedulers are not reliable. You can try the latest version of Unhide (not yet released) where this test is removed http://sourceforge.net/projects/unhide/files/unhide_20121229.tgz/download 2013/1/6 xiscu xi...@email.de The result is: # unhide.rb