Index index by Group index by Distribution index by Vendor index by creation date index by Name Mirrors Help Search

unhide-0.0.20110113-1.el3.rf RPM for i386

From DAG packages for Red Hat Linux el3 i386

Name: unhide Distribution: Dag Apt Repository for Red Hat Enterprise Linux 3
Version: 0.0.20110113 Vendor: Dag Apt Repository,
Release: 1.el3.rf Build date: Thu Apr 5 23:49:27 2012
Group: Applications/System Build host:
Size: 878744 Source RPM: unhide-0.0.20110113-1.el3.rf.src.rpm
Packager: Dag Wieers <>
Summary: Tool to find hidden processes and TCP/UDP ports from rootkits
Unhide is a forensic tool to find processes and TCP/UDP ports hidden by
rootkits, Linux kernel modules or by other techniques. It includes two
utilities: unhide and unhide-tcp.

Unhide detects hidden processes using three techniques:

 - comparing the output of /proc and /bin/ps
 - comparing the information gathered from /bin/ps with the one gathered
   from system calls (syscall scanning)
 - full scan of the process ID space (PIDs bruteforcing)

unhide-tcp identifies TCP/UDP ports that are listening but are not listed
in /bin/netstat through brute forcing of all TCP/UDP ports available.






* Sun Feb 19 2012 David HrbÃ¡Ä <> - 0.0.20110113-1
  - new upstream release
* Tue Jul 01 2008 Dag Wieers <> - 0.0.20080519-1
  - Initial package. (using DAR)



Generated by rpm2html 1.8.1

Fabrice Bellet, Tue Nov 10 18:27:43 2015