[CentOS] TRD like tool for linux?

zep

zgreenfelder at gmail.com
Wed Apr 16 14:57:11 UTC 2014


so I found that one of my VM hosts seems to have been compromised in
some way; I've shut it down, isolated it, found a few odd things like
gibberish comments and odd hostnames that I don't recognise pointed back
to 127.0.0.1 in /etc/hosts.  I tried TRD and it seems mildly useful, but
has more of a windowsy feel for what it wants to be able to fix.   does
anyone know of something with more linux rootkit detection as a focus?  
I could just rebuild this machine, but I'd like to know for sure what
all/how bad this was broken so I can avoid it for next time.

thanks.



More information about the CentOS mailing list