wgetpaste source = http://paste.pocoo.org/show/494461/
-----------------------------------------------
After running chkrootkit from the package manager,
I found "login" & "netcat" to be infected. Strange
part of this is that the two programs still report
to be infected even with a fresh install. Could it
be that stable 3.0 comes with the files already
infected, or is this a false positive.
-----------------------------------------------
---------------
INFECTED FILES:
---------------
line 28
-Checking `login'... INFECTED
line 33
-Checking `netstat'... INFECTED
-------------
ROOTKIT ALERT
-------------
line 86:
Searching for Suckit rootkit... Warning: /sbin/init INFECTED
-----------------------------------------------------
rkhunter shown no rootkits, but chkrootkit did.......
-----------------------------------------------------
SucKIT: did some reasearch, chkroot is known for
false positives, I aslo used "rkhunter" which returned
no rootkits installed.
check this out...
Searching for anomalies in shell history files...
Warning: `//root/.bash_history' file size is zero
This is enough to make anyone weary, so what gives???
Any intelligent advice & wisdom would greatly be
appreciated at this time of questionable
activity.......
-[tru_fighter]-