Find the answer to your Linux question:
Results 1 to 3 of 3
I ran chkrootkit and got Code: Searching for suspicious files and dirs, it may take a while... The following suspicious files and directories were found: /usr/lib/jvm/.java-1.6.0-openjdk-amd64.jinfo I still get it ...
Enjoy an ad free experience by logging in. Not a member yet? Register.
  1. #1
    Just Joined!
    Join Date
    Jan 2013
    Posts
    10

    How do you whitelist files for chkrootkit


    I ran chkrootkit and got
    Code:
    Searching for suspicious files and dirs, it may take a while... The following suspicious files and directories were found:  
    /usr/lib/jvm/.java-1.6.0-openjdk-amd64.jinfo
    I still get it after editing /etc/chkrootkit.conf and adding

    Code:
    IGNORE="/usr/lib/jvm/.java-1.6.0-openjdk-amd64.jinfo"
    Thx,
    OH.

  2. #2
    Trusted Penguin
    Join Date
    May 2011
    Posts
    4,353
    hi,

    try the patch and instructions explained here. they seem to explain a reasonable way to ignore false-positives, though it will require a little work.

  3. #3
    Linux Guru Rubberman's Avatar
    Join Date
    Apr 2009
    Location
    I can be found either 40 miles west of Chicago, in Chicago, or in a galaxy far, far away.
    Posts
    11,753
    This is what I find on my system: /usr/lib/jvm/java-1.6.0-openjdk-1.6.0.0.x86_64/bin/jinfo
    So, it is possible you may have been munged. Don't whitelist that file until you have validated that it is correct. I would be suspicious since it is a "hidden" file (starts with a dot).
    Sometimes, real fast is almost as good as real time.
    Just remember, Semper Gumbi - always be flexible!

  4. $spacer_open
    $spacer_close

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •