Print
-
Tuesday 26th July 2016 17:06
-
The LKM appear whenever "hidden" processes are found. They're usually
processes that have started between the different checks that chkrootkit
runs while processing. Usually, they're named mysql httpd or exim
processes. You can get more information about which processes are being
caught using:
cd /root/chkrootkit-0.*
./chkrootkit -x lkm
When you run it you will probably find that it returns anything from none to several processes.
Related Articles
Self-Hosted Help Desk Software by
SupportPal