If this indeed is related to the aptly named http://www.linuxquestions.org/questi...e-help-777297/
and given similarities with post #4 I'd say you have trouble searching
. Which doesn't spell any good for somebody studying at a university
. Given rootkit names and filenames that OSSEC HIDS, Chkrootkit or Rootkit Hunter search for you should be able to find accounts of breaches of security easily. Often those will list archive names you can subsequently search for. But even without going down that path you should be able to find nfo at common resources like Packetstorm or lotek.