ElfStat - detecte any kernel level rootkit or other malwares


Size:
24KB
Category:
Security
Anti Virus
Requirements:
No special requirements
Price:
Free
System:
Linux
Rating:
4.7
License:
Freeware

Description - ElfStat - detecte any kernel level rootkit or other malwares



ElfStat is a tool designed for detecting any kernel level rootkit [or other malwares] that modifies the text segment of the kernel in memory -- this implies any malware that modifies the code of the running kernel. This tool has some nice kernel Analysis features, which are good for security analysts who want to dissasemble the malware code and even Patch IT. I`ve included `kmp` kernel memory Patcher. This tool allows you to patch /dev/kmem which is GeneRally more writable in FreeBSD than in Linux. The only real inconvenience with ElfStat is that it requires you have a copy of your uncompressed kernel image to use as a signature. In Linux this is created as vmlinux (not vmlinuz) and in FreeBSD it may be /boot/kernel/kernel. For complete instructions read the README file included with elfstat-version.tgz.



More in Anti Virus-ElfStat - detecte any kernel level rootkit or other malwares

Malwares Elfstat Level Rootkit Kernel Level Rootkit