unhide-20110113-2-omv2015.0.x86_64.rpm


Advertisement

Description

unhide - Tool to find hidden processes and TCP/UDP ports from rootkits

Property Value
Distribution OpenMandriva Lx 4.0
Repository OpenMandriva Unsupported Release x86_64
Package filename unhide-20110113-2-omv2015.0.x86_64.rpm
Package name unhide
Package version 20110113
Package release 2-omv2015.0
Package architecture x86_64
Package type rpm
Category System/Configuration/Other
Homepage http://www.unhide-forensics.info/
License GPLv3+
Maintainer -
Download size 23.48 KB
Installed size 55.24 KB
Unhide is a forensic tool to find hidden processes and TCP/UDP ports by
rootkits / LKMs or by another hidden technique. It includes two
utilities: unhide and unhide-tcp.
Unhide detects hidden processes using six techniques:
- Compare /proc vs /bin/ps output
- Compare info gathered from /bin/ps with info gathered by walking through
the procfs.
- Compare info gathered from /bin/ps with info gathered from syscalls
(syscall scanning).
- Full PIDs space occupation (PIDs bruteforcing)
- Reverse search, verify that all thread seen by ps are also seen by
the kernel ( /bin/ps output vs /proc, procfs walking and syscall )
- Quick compare /proc, procfs walking and syscall vs /bin/ps output.
Unhide-tcp identifies TCP/UDP ports that are listening but are not listed
in /bin/netstat through brute forcing of all TCP/UDP ports available.

Alternatives

Package Version Architecture Repository
unhide-20110113-2-omv4000.x86_64.rpm 20110113 x86_64 OpenMandriva Unsupported Release
unhide-20110113-2-omv4000.i686.rpm 20110113 i686 OpenMandriva Unsupported Release
unhide-20110113-2-omv2015.0.i586.rpm 20110113 i586 OpenMandriva Unsupported Release
unhide - - -

Requires

Name Value
libc.so.6(GLIBC_2.4)(64bit) -
libpthread.so.0()(64bit) -
libpthread.so.0(GLIBC_2.2.5)(64bit) -

Download

Type URL
Mirror abf-downloads.openmandriva.org
Binary Package unhide-20110113-2-omv2015.0.x86_64.rpm
Source Package unhide-20110113-2.src.rpm

Install Howto

  1. Enable the repository in Software Repository Picker:
    # om-repo-picker
  2. Install unhide rpm package:
    # dnf --refresh install unhide

Files

Path
/usr/sbin/unhide
/usr/sbin/unhide-linux26
/usr/sbin/unhide-tcp
/usr/share/doc/unhide/LEEME.txt
/usr/share/doc/unhide/README.txt
/usr/share/doc/unhide/changelog
/usr/share/man/man8/unhide-linux26.8.xz
/usr/share/man/man8/unhide-tcp.8.xz
/usr/share/man/man8/unhide.8.xz

See Also

Package Description
uniconvertor-1.1.5-6-omv4000.x86_64.rpm Universal vector graphics translator
unignuplot-2.0-9-omv2015.0.noarch.rpm Simplify the command line interface with GNUPlot
unignuplot-2.0-9-omv4000.noarch.rpm Simplify the command line interface with GNUPlot
unison-2.40.102-2-omv2015.0.x86_64.rpm File-synchronization tool for Unix and Windows
unity-asset-pool-0.8.23-2-omv2015.0.noarch.rpm Pool of assets for Unity (icons)
unity-asset-pool-0.8.23-2-omv4000.noarch.rpm Pool of assets for Unity (icons)
unix2dos-2.2-12-omv4000.x86_64.rpm UNIX to DOS text file format converter
unixcw-3.1.1-1-omv2015.0.x86_64.rpm Shared library for Morse programs
unixcw-3.1.1-1-omv4000.x86_64.rpm Shared library for Morse programs
unknown-horizons-2013.2-1-omv2013.0.noarch.rpm A popular economy and city building 2D RTS game
unknown-horizons-data-2013.2-1-omv2013.0.noarch.rpm Games data for the unknown-horizons game
unpackssi-20030612-2-omv2015.0.x86_64.rpm .SSI File Unpacker
unpackssi-20030612-2-omv4000.x86_64.rpm .SSI File Unpacker
unpaper-6.1-2-omv4000.x86_64.rpm Post-processing scanned and photocopied book pages
unrtf-0.21.9-2-omv2015.0.x86_64.rpm RTF to other formats converter
Advertisement
Advertisement