-
This is a request rather than a bug.
The executable files in /tmp/user/0/timeshift are being seen by chkrootkit as a possible rootkit infection.
Can they be stored outside of /tmp someplace instead …
-
Hi! First of all, thank you for providing this source code.
I have an issue regarding running it, unlike the AI Aimbot that RootKit has provided us, it was well discussed on how to operate it and h…
-
You can sign GRUB or whatever bootloader you use and after that the UEFI will check the signature before loading it. The same way you can build a chain e.g. GRUB checkes the OS before loading it, the …
ghost updated
3 years ago
-
It was mentioned in #379 that the code for OSSEC was not updated and after review not considered a reliable malware scanner. Has anything changed to allow/add Wazuh to check for rootkits since then to…
-
when i try to install ISPConfig for Ubuntu 18.04 script stuck on this message
"Installing Antivirus utilities (Amavisd-new, ClamAV), Spam filtering (SpamAssassin), Greylisting (Postgrey) and Rootki…
-
Hi,
the 0.3.0 branch comes with a `RUNCOMMAND()` function which allows to execute any external command.
This, IMHO is a major security issue.
It would be extremely simple to introduce a keylogger…
-
**Reported by Mel on 23 Mar 2013 16:35 UTC**
After uninstalling Jajuk there is huge quantity of .jajuk folders on my computer and it's impossible to remove them.. I have tried almost everything with m…
-
After the first success, I hit Ctrl+ C and run the prompt again
smbexec_windows.exe -hashes :ae···························· rootkit/administrator@192.168.0.1
Cannot determine Impacket version. If…
-
1) I think that the name of the module should be created on random basis.
2) there should be some default argument so that I can "insmod" the module without any arguments.
For example:
`# insmod ./…
-
We should have a strategy for dealing with direct syscalls / invocations of SVC.
This paper https://www.usenix.org/system/files/conference/woot16/woot16-paper-spisak.pdf which used PMUs for a rootk…