chkrootkit Logo

chkrootkit

0
Free
Visit Website

Chkrootkit is a tool to locally check for signs of a rootkit, including checking system binaries for rootkit modification, interface promiscuous mode, lastlog and wtmp deletions, LKM trojans, strings replacement, and more. It has been recognized as one of the Top 10 Tools to Scan Linux Servers for Vulnerability and Malware by Cyber Security News, with continuous updates and bug fixes for over 25 years.

FEATURES

ALTERNATIVES

A collection of Yara rules for identifying malicious PEs with unique or suspicious PDB paths.

A yara module for searching strings inside zip files

Repository of YARA rules for Trellix ATR blogposts and investigations

A tool for deep analysis of malicious files using ClamAV and YARA rules, with features like scoring suspect files, building visual tree graphs, and extracting specific patterns.

Find exploits in local and online databases instantly

Yabin creates Yara signatures from malware to find similar samples.

A suite of secret scanners built in Rust for performance.

A tool to detect, manage and exploit Blind Cross-site scripting (XSS) vulnerabilities.

PINNED