diff options
Diffstat (limited to 'extra/chkrootkit')
-rw-r--r-- | extra/chkrootkit/PKGBUILD | 42 | ||||
-rw-r--r-- | extra/chkrootkit/backslashes.patch | 22 | ||||
-rw-r--r-- | extra/chkrootkit/chkrootkit.cron | 2 | ||||
-rw-r--r-- | extra/chkrootkit/fix-tools-path.patch | 11 | ||||
-rw-r--r-- | extra/chkrootkit/kallsyms.patch | 30 |
5 files changed, 0 insertions, 107 deletions
diff --git a/extra/chkrootkit/PKGBUILD b/extra/chkrootkit/PKGBUILD deleted file mode 100644 index 3e0a2bd04..000000000 --- a/extra/chkrootkit/PKGBUILD +++ /dev/null @@ -1,42 +0,0 @@ -# $Id: PKGBUILD 143673 2011-11-28 09:58:36Z eric $ -# Maintainer: Eric BĂ©langer <eric@archlinux.org> - -pkgname=chkrootkit -pkgver=0.49 -pkgrel=3.1 -pkgdesc="Locally checks for signs of a rootkit" -arch=('i686' 'x86_64' 'mips64el') -url="http://www.chkrootkit.org" -depends=('sh' 'net-tools') -license=('BSD') -source=(http://www.reznor.com/tools/chkrootkit.tar.gz chkrootkit.cron \ - fix-tools-path.patch backslashes.patch kallsyms.patch) -md5sums=('304d840d52840689e0ab0af56d6d3a18' - 'f4b6494270f708bf016e087104681739' - '3e5f2d5e2f4fa7a0d780baec9039c07f' - '758f892dcf73e8a2a4694662fba366d4' - 'd087f3aad8a9e97fea496ef83e4f1d48') -sha1sums=('cec1a3c482b95b20d3a946b07fffb23290abc4a6' - '6dda90abf779b6f5c3bacd638e1231f34635575d' - '7fcad8117a064f0a6910134e8bb3a55de110650f' - 'e22546f445c145cf05dbc1a10f7b196fcd1c8202' - 'dc5b402ee69a7a5ae622ecfd733682516df54e88') - -build() { - cd "${srcdir}/${pkgname}-${pkgver}" - sed -i 's|/var/adm|/var/log|' check_wtmpx.c chklastlog.c chkutmp.c chkwtmp.c - patch -p0 -i "${srcdir}/fix-tools-path.patch" - patch -p1 -i "${srcdir}/backslashes.patch" - patch -p1 -i "${srcdir}/kallsyms.patch" - make -} - -package() { - cd "${srcdir}/${pkgname}-${pkgver}" - for i in check_wtmpx chkdirs chklastlog chkproc chkrootkit \ - chkutmp chkwtmp ifpromisc strings-static ; do - install -D -m755 $i "${pkgdir}/usr/sbin/$i" - done - install -D -m744 "${srcdir}/chkrootkit.cron" "${pkgdir}/etc/cron.weekly/chkrootkit" - install -D -m644 COPYRIGHT "${pkgdir}/usr/share/licenses/${pkgname}/LICENSE" -} diff --git a/extra/chkrootkit/backslashes.patch b/extra/chkrootkit/backslashes.patch deleted file mode 100644 index 6ac981441..000000000 --- a/extra/chkrootkit/backslashes.patch +++ /dev/null @@ -1,22 +0,0 @@ -Author: James R. Van Zandt <jrv@debian.org> -Description: Two of the chkrootkit messages have unnecessary backslashes (#498063) ---- a/chkrootkit -+++ b/chkrootkit -@@ -672,7 +672,7 @@ etc/ld.so.hash sbin/init.zk usr/lib/in.h - if [ "`find ${LIBS} -name libproc.a 2> /dev/null`" != "" -a \ - "$SYSTEM" != "FreeBSD" ] - then -- echo "Possible t0rn v8 \(or variation\) rootkit installed" -+ echo "Possible t0rn v8 (or variation) rootkit installed" - else - if [ "${QUIET}" != "t" ]; then echo "nothing found"; fi - fi -@@ -726,7 +726,7 @@ etc/ld.so.hash sbin/init.zk usr/lib/in.h - - if [ -d ${ROOTDIR}dev/ptyxx -o -r "${ROOTDIR}usr/lib/.ark?" -o \ - -d ${ROOTDIR}usr/doc/"... " ]; then -- echo "Possible Ambient's rootkit \(ark\) installed" -+ echo "Possible Ambient's rootkit (ark) installed" - else - if [ "${QUIET}" != "t" ]; then echo "nothing found"; fi - fi diff --git a/extra/chkrootkit/chkrootkit.cron b/extra/chkrootkit/chkrootkit.cron deleted file mode 100644 index 0fc84ded8..000000000 --- a/extra/chkrootkit/chkrootkit.cron +++ /dev/null @@ -1,2 +0,0 @@ -#!/bin/sh -/usr/sbin/chkrootkit -q diff --git a/extra/chkrootkit/fix-tools-path.patch b/extra/chkrootkit/fix-tools-path.patch deleted file mode 100644 index d45f07901..000000000 --- a/extra/chkrootkit/fix-tools-path.patch +++ /dev/null @@ -1,11 +0,0 @@ ---- chkrootkit -+++ chkrootkit -@@ -17,6 +17,8 @@ unalias netstat > /dev/null 2>&1 - unalias ps > /dev/null 2>&1 - unalias dirname > /dev/null 2>&1 - -+cd /usr/sbin -+ - # Workaround for recent GNU coreutils - _POSIX2_VERSION=199209 - export _POSIX2_VERSION diff --git a/extra/chkrootkit/kallsyms.patch b/extra/chkrootkit/kallsyms.patch deleted file mode 100644 index 4e3694aad..000000000 --- a/extra/chkrootkit/kallsyms.patch +++ /dev/null @@ -1,30 +0,0 @@ ---- a/chkrootkit -+++ b/chkrootkit -@@ -308,7 +316,7 @@ lkm () - fi - - if [ "${EXPERT}" = "t" ]; then -- [ -r /proc/ksyms ] && ${egrep} -i "adore|sebek" < /proc/ksyms 2>/dev/null -+ [ -r /proc/kallsyms ] && ${egrep} -i "adore|sebek" < /proc/kallsyms 2>/dev/null - [ -d /proc/knark ] && ${ls} -la /proc/knark 2> /dev/null - PV=`$ps -V 2>/dev/null| $cut -d " " -f 3 |${awk} -F . '{ print $1 "." $2 $3 }' | ${awk} '{ if ($0 > 3.19) print 3; else if ($0 < 2.015) print 1; else print 2 }'` - [ "$PV" = "" ] && PV=2 -@@ -318,14 +326,14 @@ lkm () - fi - - ### adore LKM -- [ -r /proc/ksyms ] && \ -- if `${egrep} -i adore < /proc/ksyms >/dev/null 2>&1`; then -+ [ -r /proc/kallsyms ] && \ -+ if `${egrep} -i adore < /proc/kallsyms >/dev/null 2>&1`; then - echo "Warning: Adore LKM installed" - fi - - ### sebek LKM (Adore based) -- [ -r /proc/ksyms ] && \ -- if `${egrep} -i sebek < /proc/ksyms >/dev/null 2>&1`; then -+ [ -r /proc/kallsyms ] && \ -+ if `${egrep} -i sebek < /proc/kallsyms >/dev/null 2>&1`; then - echo "Warning: Sebek LKM installed" - fi - |