rkhunter
보고했다
[17:15:45] Checking for hidden files and directories [ Warning ]
[17:15:45] Warning: Hidden file found: /etc/.updated: ASCII text
[17:15:45] Warning: Hidden file found: /usr/share/man/man5/.k5identity.5.gz: gzip compressed data, max compression, from Unix, truncated
[17:15:45] Warning: Hidden file found: /usr/share/man/man5/.k5login.5.gz: gzip compressed data, max compression, from Unix, truncate
파일 보기
vorac@msi:/usr/share/man/man5$ ll .k5*
-rw-r--r-- 1 root root 42 Nov 13 20:07 .k5identity.5.gz
-rw-r--r-- 1 root root 39 Nov 13 20:07 .k5login.5.gz
vorac@msi:/usr/share/man/man5$ file .k5*
.k5identity.5.gz: gzip compressed data, max compression, from Unix, truncated
.k5login.5.gz: gzip compressed data, max compression, from Unix, truncated
vorac@msi:/usr/share/man/man5$ pacman -F .k5*
core/krb5 1.19.2-2 [installed]
usr/share/man/man5/.k5identity.5.gz
core/krb5 1.19.2-2 [installed]
usr/share/man/man5/.k5login.5.gz
이것이 악의적일 수 있습니까?
답변1
/etc/.updated
사용된 것은systemd-update-done.service
그리고 /usr/share/man/man5/
계획 대로 man
.
ALLOWHIDDENFILE=/path/to/hidden/file
config를 사용하여 rkhinter 경고를 비활성화 할 수 있습니다 .