SEARCH
NEW RPMS
DIRECTORIES
ABOUT
FAQ
VARIOUS
BLOG

 
 

unhide rpm build for : RedHat EL 6. For other distributions click unhide.

Name : unhide
Version : 1.0 Vendor : GhettoForge
Release : 11.gf.el6.20121229 Date : 2013-11-01 13:38:13
Group : Applications/System Source RPM : unhide-1.0-11.gf.el6.20121229.src.rpm
Size : 0.12 MB
Packager : builder_ghettoforge_org
Summary : Tool to find hidden processes and TCP/UDP ports from rootkits
Description :
Unhide is a forensic tool to find processes and TCP/UDP ports hidden by
rootkits, Linux kernel modules or by other techniques. It includes two
utilities: unhide and unhide-tcp.

Unhide detects hidden processes using three techniques:

- comparing the output of /proc and /bin/ps
- comparing the information gathered from /bin/ps with the one gathered
from system calls (syscall scanning)
- full scan of the process ID space (PIDs bruteforcing)

unhide-tcp identifies TCP/UDP ports that are listening but are not listed
in /bin/netstat through brute forcing of all TCP/UDP ports available.

RPM found in directory: /packages/linux-pbone/archive/mirror.symnds.com/distributions/gf/el/6Server/gf/i386

Content of RPM  Changelog  Provides Requires

Download
ftp.icm.edu.pl  unhide-1.0-11.gf.el6.20121229.i686.rpm
ftp.icm.edu.pl  unhide-1.0-11.gf.el6.20121229.i686.rpm
ftp.icm.edu.pl  unhide-1.0-11.gf.el6.20121229.i686.rpm
ftp.icm.edu.pl  unhide-1.0-11.gf.el6.20121229.i686.rpm
     Search for other platforms
unhide-1.0-11.gf.el6.20121229.sparc.rpm
unhide-1.0-11.gf.el6.20121229.alpha.rpm
unhide-1.0-11.gf.el6.20121229.ppc.rpm
unhide-1.0-11.gf.el6.20121229.ia64.rpm
unhide-1.0-11.gf.el6.20121229.s390.rpm

Provides :
unhide
unhide(x86-32)

Requires :
rpmlib(FileDigests) <= 4.6.0-1
rpmlib(CompressedFileNames) <= 3.0.4-1
libc.so.6(GLIBC_2.4)
libpthread.so.0
libc.so.6(GLIBC_2.1)
libc.so.6(GLIBC_2.0)
rpmlib(PayloadIsXz) <= 5.2-1
rtld(GNU_HASH)
libpthread.so.0(GLIBC_2.0)
libpthread.so.0(GLIBC_2.1)
rpmlib(PayloadFilesHavePrefix) <= 4.0-1
libc.so.6(GLIBC_2.7)
libc.so.6
libc.so.6(GLIBC_2.3)
libc.so.6(GLIBC_2.3.4)


Content of RPM :
/usr/sbin/unhide
/usr/sbin/unhide-tcp
/usr/sbin/unhide_rb
/usr/share/doc/unhide-1.0
/usr/share/doc/unhide-1.0/COPYING
/usr/share/doc/unhide-1.0/NEWS
/usr/share/doc/unhide-1.0/README.txt
/usr/share/doc/unhide-1.0/changelog
/usr/share/doc/unhide-1.0/sanity-tcp.sh
/usr/share/doc/unhide-1.0/sanity.sh
/usr/share/man/man8/unhide-tcp.8.gz
/usr/share/man/man8/unhide.8.gz

 
ICM