Index index by Group index by Distribution index by Vendor index by creation date index by Name Mirrors Help Search

unhide-0.0.20080519-1.el2.rf RPM for i386

From DAG packages for Red Hat Linux el2.1 i386

Name: unhide Distribution: Dag Apt Repository for Red Hat Enterprise Linux 2.1
Version: 0.0.20080519 Vendor: Dag Apt Repository,
Release: 1.el2.rf Build date: Tue Jul 1 00:28:52 2008
Group: Applications/System Build host:
Size: 906192 Source RPM: unhide-0.0.20080519-1.el2.rf.src.rpm
Packager: Dag Wieers <>
Summary: Tool to find hidden processes and TCP/UDP ports from rootkits
Unhide is a forensic tool to find processes and TCP/UDP ports hidden by
rootkits, Linux kernel modules or by other techniques. It includes two
utilities: unhide and unhide-tcp.

Unhide detects hidden processes using three techniques:

 - comparing the output of /proc and /bin/ps
 - comparing the information gathered from /bin/ps with the one gathered
   from system calls (syscall scanning)
 - full scan of the process ID space (PIDs bruteforcing)

unhide-tcp identifies TCP/UDP ports that are listening but are not listed
in /bin/netstat through brute forcing of all TCP/UDP ports available.






* Tue Jul 01 2008 Dag Wieers <> - 0.0.20080519-1 - +/
  - Initial package. (using DAR)



Generated by rpm2html 1.8.1

Fabrice Bellet, Thu Dec 13 21:11:47 2018