There is a very small possibility that someone has intruded into our
network. I would like to test my 3 woody machines for possible root
kits. What is the best way of doing this? Should I check the md5sum of
programs such as find, ps and ifconfig against the packaged versions?

Also, is there any way of checking for a kernel module type root kit?

Cheers
Rory
-- 
Rory Campbell-Lange 
<[EMAIL PROTECTED]>
<www.campbell-lange.net>


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED] 
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to