LKM Trojan?

FreeBSD MailingLists freebsd.ml at gmail.com
Sun Feb 18 14:04:20 UTC 2007


When I run chkrootkit I get the following lines.

>Checking `lkm'... You have   107 process hidden for readdir command
>chkproc: Warning: Possible LKM Trojan installed

rkhunter doesn't seem to find anything.
I suspect that my machine might be compromised.
running "ls" in the /proc directory returns an empty list.
I have recompiled the kernel and world but the problem persists.
Any suggestions on how to fix this without having to reinstall from scratch?

TIA,
Tomoki


More information about the freebsd-questions mailing list