Installing RKHunter

Product Name: RKHunter


Description: rkhunter (Rootkit Hunter) is a Unix-based tool that scans for rootkits, backdoors and possible local exploits. It does this by comparing MD5 hashes of important files with known good ones in online database, searching for default directories (of rootkits), wrong permissions, hidden files, suspicious strings in kernel modules, and special tests for Linux and FreeBSD.

Step 1: Downloading, Installing and Updateing

cd /usr/local/src
wget wget
tar -zxvf rkhunter-1.3.6.tar.gz
cd rkhunter-1.3.6
./ --layout default --install
/usr/local/bin/rkhunter --update
/usr/local/bin/rkhunter --propupd
rm -Rf /usr/local/src/rkhunter*

Step 2: Adding daily cron job

Step 2.1: Create run-file

nano -w /etc/cron.daily/

Step 2.2: Add this text to

/usr/local/bin/rkhunter --versioncheck
/usr/local/bin/rkhunter --update
/usr/local/bin/rkhunter --cronjob --report-warnings-only
) | /bin/mail -s 'rkhunter Daily Run (PutYourServerNameHere)'


Step 2.3: Chmod to root only

chmod 700 /etc/cron.daily/
