files/journal/2022-09-02_11-59-20-000000_418.png

Asian Journal of Information Technology

ISSN: Online 1993-5994
ISSN: Print 1682-3915
125
Views
1
Downloads

Finding Hided Processes in Linux

Yuan Yuan and Dai Guanzhong
Page: 618-621 | Received 21 Sep 2022, Published online: 21 Sep 2022

Full Text Reference XML File PDF File

Abstract

This research analyses the mechanism of using LKMs backdoors to hide processes. According to the flaw in backdoors’ design and the characteristics of/proc filesystem, a new method for finding hided processes is presented. That is traversing all possible PID directories to find out each existent process in fact. Through comparing them with the ordinary output, the hided processes would be discovered. At last the code realized in Perl has been presented. The experiment shows that this method can find the processes hided by LKMs backdoors efficiently.


How to cite this article:

Yuan Yuan and Dai Guanzhong . Finding Hided Processes in Linux.
DOI: https://doi.org/10.36478/ajit.2007.618.621
URL: https://www.makhillpublications.co/view-article/1682-3915/ajit.2007.618.621