Ubuntu 18.04
Sponsored Link

RKHunter : Detect Rootkit2018/11/29

 
Install RKHunter which is the Rootkit Detection tool.
[1] Install RKHunter.
root@dlp:~#
apt -y install rkhunter
[2] Configure and Use RKHunter.
root@dlp:~#
vi /etc/default/rkhunter
# line 9: run daily

CRON_DAILY_RUN="
true
"
# line 13: update DB weekly

CRON_DB_UPDATE="
true
"
# line 17: send report mail when updated DB

DB_UPDATE_EMAIL="
true
"
# update system's info

root@dlp:~#
rkhunter --propupd
[ Rootkit Hunter version 1.4.6 ]
File updated: searched for 180 files, found 147
# run checking

# --sk means skip to push Enter key

# --rwo means display only warnings

root@dlp:~#
rkhunter --check --sk
[ Rootkit Hunter version 1.4.6 ]

Checking system commands...

  Performing 'strings' command checks
    Checking 'strings' command                               [ OK ]

  Performing 'shared libraries' checks
    Checking for preloading variables                        [ None found ]
    Checking for preloaded libraries                         [ None found ]
    Checking LD_LIBRARY_PATH variable                        [ Not found ]

  Performing file properties checks
    Checking for prerequisites                               [ OK ]
    /usr/sbin/adduser                                        [ OK ]
    /usr/sbin/chroot                                         [ OK ]
    /usr/sbin/cron                                           [ OK ]
    /usr/sbin/groupadd                                       [ OK ]
    /usr/sbin/groupdel                                       [ OK ]
    /usr/sbin/groupmod                                       [ OK ]
    /usr/sbin/grpck                                          [ OK ]
    /usr/sbin/nologin                                        [ OK ]
    /usr/sbin/pwck                                           [ OK ]
    /usr/sbin/rsyslogd                                       [ OK ]
    /usr/sbin/sshd                                           [ OK ]

.....
.....

System checks summary
=====================

File properties checks...
    Files checked: 147
    Suspect files: 0

Rootkit checks...
    Rootkits checked : 501
    Possible rootkits: 0

Applications checks...
    All checks skipped

The system checks took: 2 minutes and 17 seconds

All results have been written to the log file: /var/log/rkhunter.log

One or more warnings have been found while checking the system.
Please check the log file (/var/log/rkhunter.log)
Matched Content