Files ≈ Packet Storm Packet Storm - Information Security News, Files, Tools, Exploits, Advisories and Whitepapers http://packetstormsecurity.org/ en-us Mon, 28 May 2012 11:53:37 GMT Packet Storm 144400 http://packetstormsecurity.org/ http://www.google-analytics.com/__utm.gif?utmwv=1.3&utmn=2235012391&utmcs=ISO-8859-1&utmsr=31337x31337&utmsc=32-bit&utmul=en-us&utmje=0&utmfl=-&utmcn=1&utmdt=Files%u2248%20Packet%20Storm&utmhn=packetstormsecurity.org&utmr=-&utmp=%2Fgroups%2Fs0ftpj%2Fkstat.tar.gz%2F&utmac=UA-18885198-1&utmcc=__utma%3D32867617.2235012391.1338206017.1338206017.1338206017.1%3B%2B__utmz%3D32867617.1338206017.1.1.utmccn%3D(direct)%7Cutmcsr%3D(direct)%7Cutmcmd%3D(none) kstat.tar.gz http://packetstormsecurity.org/files/24001/kstat.tar.gz http://packetstormsecurity.org/files/24001/kstat.tar.gz http://packetstormsecurity.org/files/24001/kstat.tar.gz.html Thu, 04 Jan 2001 22:54:20 GMT Kstat is a tool for Linux which can find an attacker in your system by a direct analysis of the kernel via /dev/kmem, bypassing the hiding techniques of the intruder (kernel static recompilation/use of LKMs). Kstat can find the syscalls which were modified by a LKM, list the linked LKMs, query one or all the network interfaces of the system, list all the processes and much more.