Rookit infections: AARRGH!

Steven W. Orr steveo at syslang.net
Mon May 9 09:50:01 EDT 2005


On Monday, May 9th 2005 at 09:38 -0400, quoth Fred:

=>Well, this generated some good ideas, but I could use more. Thanks.

One more for aftermath cleanup if you're running an rpm-based setup:

rpm -Va will check every file in the installation for integrity.

Also, are you running ftp or telnet? Is your apache code the latest? Have 
you shut off all unneeded services? Are you running identd? Do you block 
unused *outgoing* ports?

-- 
Time flies like the wind. Fruit flies like a banana. Stranger things have  .0.
happened but none stranger than this. Does your driver's license say Organ ..0
Donor?Black holes are where God divided by zero. Listen to me! We are all- 000
individuals! What if this weren't a hypothetical question?
steveo at syslang.net



More information about the gnhlug-discuss mailing list