HOME   ·Î±×ÀΠ  ȸ¿ø°¡ÀÔ
    
ȸ¿ø°¡ÀÔ
ºñ¹Ð¹øÈ£ ã±â ÀÚµ¿·Î±ä
ÀÌÀü°Ô½ÃÆÇ
   free_board
   °Ç°­°Ô½ÃÆÇ
   ¿À¶óŬDB
   Linux
   HTML/javascript
   Áú¹®°ú ´ä
È£¼­±â
   À̹ÌÁö°Ô½ÃÆÇ  
   °Ç°­°Ô½ÃÆÇ  
   À½¾ÇÀÚ·á  
   ¼ºÁØÀÌ °Ô½ÃÆÇ  
 Hit : 5016
 À̸§ : È£¼®  (211.¢½.74.31)
 ³¯Â¥ : 2006-06-13 17:39:23
 Á¦¸ñ : [º¸¾È] rkhunter ·Î ·çƮŶÀ» È®ÀÎÇÑ´Ù.
wget http://downloads.rootkit.nl/rkhunter-1.2.1.tar.gz ´Ù¿î ¹Þ´Â´Ù

 ./install.sh  ½ÇÇàÇÑ´Ù.

 rkhunter -c  üũÇÑ´Ù.

 ³¡




http://blog.naver.com/realnaut/120018264227
 
 
¾È³çÇϼ¼¿ä.
http://www.rootman.co.kr ¿î¿µÀÚ Á¤ÂùÈ£ÀÔ´Ï´Ù.

rkhunter´Â rootkitÀ» ã¾Æ ÁÖ´Â À¯Æ¿¸®Æ¼·Î ¼³Ä¡µµ °£´ÜÇÏ°í º¸´Â ¹ýµµ °£´ÜÇÕ´Ï´Ù.
¶ÇÇÑ Áß¿ä ÆÄÀÏ¿¡ ´ëÇÑ À§, º¯Á¶¸¦ ¾Ë·Á ÁÖ¾î °ü¸®ÀÚ·Î ÇÏ¿©±Ý ¾à°£ ¾Èµµ°¨À» ÁÖ´Â^^ ÇÁ·Î±×·¥ÀÌÁÒ.

Ȥ½Ã ¸ð¸£¼Ì´ø ºÐµé ÇÑ ¹ø ½á º¸¼¼¿ä.
µµ¿òÀÌ ²À µÇ½Ã±æ ¹Ù¶ó¸é¼­.

Have a good time !


1. °ü·Ã»çÀÌÆ®
   http://www.rootkit.nl/projects/rootkit_hunter.html


2. ¼Ò½º ´Ù¿î·Îµå
   (1) http://downloads.rootkit.nl/rkhunter-1.2.7.tar.gz
   (2) http://mirror.1day.co.kr/download/Security/rkhunter-1.2.7.tar.tar


3. ¼³Ä¡
[root@ns1 /usr/local/src]# tar xvfz rkhunter-1.2.7.tar.tar
[root@ns1 /usr/local/src]# cd rkhunter-1.2.7
[root@ns1 rkhunter-1.2.7]# ./installer.sh
Rootkit Hunter installer 1.2.7 (Copyright 2003-2005, Michael Boelen)
---------------
Starting installation/update

Checking  /usr/local... OK
Checking file retrieval tools... /usr/bin/wget
Checking installation directories...
- Checking /usr/local/rkhunter...Created
- Checking /usr/local/rkhunter/etc...Created
- Checking /usr/local/rkhunter/bin...Created
- Checking /usr/local/rkhunter/lib/rkhunter/db...Created
- Checking /usr/local/rkhunter/lib/rkhunter/docs...Created
- Checking /usr/local/rkhunter/lib/rkhunter/scripts...Created
- Checking /usr/local/rkhunter/lib/rkhunter/tmp...Created
- Checking /usr/local/etc...Exists
- Checking /usr/local/bin...Exists
Checking system settings...
    - Perl... OK
Installing files...
Installing  Perl module checker... OK
Installing  Database updater... OK
Installing  Portscanner... OK
Installing  MD5 Digest generator... OK
Installing  SHA1 Digest generator... OK
Installing  Directory viewer... OK
Installing  Database Backdoor ports... OK
Installing  Database Update mirrors... OK
Installing  Database Operating Systems... OK
Installing  Database Program versions... OK
Installing  Database Program versions... OK
Installing  Database Default file hashes... OK
Installing  Database MD5 blacklisted files... OK
Installing  Changelog... OK
Installing  Readme and FAQ... OK
Installing  Wishlist and TODO... OK
Installing  RK Hunter configuration file... OK
Installing  RK Hunter binary... OK
Configuration updated with installation path (/usr/local/rkhunter)

Installation ready.
See /usr/local/rkhunter/lib/rkhunter/docs for more information. Run 'rkhunter' (/usr/local/bin/rkhunter)


4. ½ÇÇà ÆÄÀÏ º¹»ç
[root@ns1 rkhunter-1.2.7]# cp rkhunter /usr/sbin/


5. ½Ã½ºÅÛ °Ë»çÇϱâ
(1) °Ë»ç ·¹Æ÷Æ® crt Ãâ·Â
[root@ns1 rkhunter-1.2.7]# rkhunter -c

(2) °Ë»ç ÆÄÀÏ ÀúÀåÇϱâ
[root@ns1 rkhunter-1.2.7]# rkhunter --checkall --createlogfile
....
....
---------------------------- Scan results ----------------------------
MD5
MD5 compared: 0
Incorrect MD5 checksums: 0

File scan
Scanned files: 342
Possible infected files: 0

Application scan
Vulnerable applications: 3

Scanning took 365 seconds
Scan results written to logfile (/var/log/rkhunter.log)


6. ¹öÀü È®ÀÎÇϱâ
[root@ns1 rkhunter-1.2.7]# /usr/local/bin/rkhunter --versioncheck
http://www.rootkit.nl/rkhunter/rkhunter_latest.dat

Rootkit Hunter 1.2.3, copyright Michael Boelen

This version:   1.2.3
Latest version: 1.2.7
Update available


7. rkhunter ¾÷µ¥ÀÌÆ®Çϱâ
[root@ns1 root]# /usr/local/bin/rkhunter --update     
Running updater...

Mirrorfile /usr/local/rkhunter/lib/rkhunter/db/mirrors.dat rotated
Using mirror http://www.rootkit.nl/rkhunter
[DB] Mirror file                      : Update available
  Action: Database updated (current version: 2005033000, new version 2005050700)
[DB] MD5 hashes system binaries       : Update available
  Action: Database updated (current version: 2005041000, new version 2005080200)
[DB] Operating System information     : Update available
  Action: Database updated (current version: 2005032500, new version 2005091100)
[DB] MD5 blacklisted tools/binaries   : Up to date
[DB] Known good program versions      : Update available
  Action: Database updated (current version: 2005040300, new version 2005071500)
[DB] Known bad program versions       : Update available
  Action: Database updated (current version: 2005040300, new version 2005071500)

Ready.

- ÀÌ»ó -
°Ô½Ã¹° 121°Ç
¹øÈ£ ºÐ·ù Á¦¸ñ
À̸§
³¯Â¥ ÀÐÀ½
26 ÀÏ¹Ý   APM ¿¬µ¿ httpd-2.0.55 mysql-5.0.18 php-4.4.2 (2) È£¼® 06-03-24 5462
27 ÀÏ¹Ý   Server/Mail/qmail_install È£¼® 06-03-28 4373
28 ÀÏ¹Ý   [¹æ¾î] prevent ÇÁ·Î±×·¥ ssh 5¹ø ÀÌ»ó½ÇÆнà ÀÚµ¿µî·Ï (1) È£¼® 06-03-29 5354
29 ÀÏ¹Ý   À¥ÇØÅ· ¸ðÀ½. È£¼® 06-04-14 5400
30 ÀÏ¹Ý   À¥ÇØÅ· ¸ðÀ½2 È£¼® 06-04-14 4863
32 ÀÏ¹Ý   [apm¼³Ä¡]Apache, PHP, MySQL, LibXML Source Compile È£¼® 06-04-22 5370
33 ÀÏ¹Ý   iptraf ³×Æ®¿÷ Æ®·¹ÇÈ °¨½Ã È®ÀÎ ÇÁ·Î±×·¥ (good ) È£¼® 06-05-01 6379
34 ÀÏ¹Ý   ÀÌ¿ÂÅ¥ºê php encoder ÀÇ ¼³Ä¡ È£¼® 06-05-26 5485
35 ÀÏ¹Ý   ÇØ´çÆÄÀÏÀÇ size¸¦ ã¾Æ¼­ 1¸Þ°¡ ÃÊ°ú½Ã ÇØ´çÆÄÀÏÀ» º¹»çÈÄ ÃʱâÈ­ÇÑ´Ù. È£¼® 06-06-01 4730
¡æ ÀÏ¹Ý   [º¸¾È] rkhunter ·Î ·çƮŶÀ» È®ÀÎÇÑ´Ù. È£¼® 06-06-13 5017
37 ÀÏ¹Ý   rsync »ç¿ëÇϱâ È£¼® 06-08-02 5548
  ÀÏ¹Ý      rsync »ç¿ëÇϱâ 2 È£¼® 06-08-02 5481
38 ÀÏ¹Ý   ¸®´ª½º º¸¾È ÇÏ¿ìÅõ kldp http://kldp.org/HOWTO/Security-HOWTO È£¼® 06-08-25 8080
39 ÀÏ¹Ý   ½ºÆԾ½Å(SpamAssassin) ¼³Ä¡ ¹× »ç¿ë È£¼® 06-08-25 4071
40 ÀÏ¹Ý   iptables ·Î °£´ÜÇÑ ¹æÈ­º®À» ±¸ÃàÇÏÀÚ (1) È£¼® 06-09-16 5102
óÀ½ÀÌÀü  [1] [2] 3 [4] [5] [6] [7] [8] [9]  ´ÙÀ½¸Ç³¡
 
Copyright © zenos.pe.kr. All rights reserved.