diff --git a/chkrootkit b/chkrootkit index 71869d1..e4c3d8f 100644 --- a/chkrootkit +++ b/chkrootkit @@ -1006,8 +1006,7 @@ ${find} ${ROOTDIR}usr/sbin -name in.slogind` ### Suckit if [ -f ${ROOTDIR}sbin/init ]; then if [ "${QUIET}" != "t" ];then printn "Searching for Suckit rootkit... "; fi - if [ ${SYSTEM} != "HP-UX" ] && ( ${strings} ${ROOTDIR}sbin/init | ${egrep} '\.sniffer' || \ - cat ${ROOTDIR}/proc/1/maps | ${egrep} "init." ) >/dev/null 2>&1 + if [ ${SYSTEM} != "HP-UX" ] && cat ${ROOTDIR}/proc/1/maps | ${egrep} "init." >/dev/null 2>&1 then echo "Warning: ${ROOTDIR}sbin/init INFECTED" else