Turtle rootkit for FreeBSD. This kernel module hooks unlink() so the protected file cannot be deleted, hooks kill() so the protected process cannot be killed, and has various other nice bells and whistles.
Changes: This rootkit now hides processes and has a remote shell over ICMP packets.
Comments
No comments yet, be the first!